Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-03-2015 Ran by Max (administrator) on MAX-PC on 03-04-2015 20:25:17 Running from K:\ Loaded Profiles: Max (Available profiles: Max) Platform: Windows 7 Ultimate Service Pack 1 (X64) OS Language: Nederlands (Nederland) Internet Explorer Version 11 (Default browser: IE) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (DT Soft Ltd) C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe (DuckLink Software) C:\Program Files (x86)\DuckLink\DuckCapture\DuckCapture.exe () C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsusFanControlService\1.03.03\AsusFanControlService.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (cFos Software GmbH) C:\Program Files\ASUS\ROG GameFirst II\spd.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe (Skype Technologies) C:\Program Files (x86)\Skype\Updater\Updater.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\x64\wmi64.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\x64\wmi64.exe (Farbar) K:\FRST64 (1).exe (Microsoft Corporation) C:\Windows\SysWOW64\regsvr32.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [112512 2010-03-13] (Microsoft Corporation) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [169768 2015-02-13] (Apple Inc.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7569624 2014-04-03] (Realtek Semiconductor) HKLM-x32\...\Run: [AVP] => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe [356128 2015-03-23] (Kaspersky Lab ZAO) HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr\raptrstub.exe [55568 2015-03-25] (Raptr, Inc) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-03-20] (Advanced Micro Devices, Inc.) HKU\S-1-5-21-2449853672-1911796663-2586537646-1000\...\Run: [DuckCapture] => C:\Program Files (x86)\DuckLink\DuckCapture\DuckCapture.exe [436736 2011-11-03] (DuckLink Software) HKU\S-1-5-21-2449853672-1911796663-2586537646-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [2888896 2015-03-24] (Valve Corporation) HKU\S-1-5-21-2449853672-1911796663-2586537646-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [31682144 2015-03-25] (Skype Technologies S.A.) HKU\S-1-5-21-2449853672-1911796663-2586537646-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\scrnsave.scr [11264 2009-07-14] (Microsoft Corporation) Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\RUN.CMD () Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\RUN.CMD () ShellIconOverlayIdentifiers: [AsusWSShellExt_B] -> {6D4133E5-0742-4ADC-8A8C-9303440F7190} => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.11.125\ASUSWSShellExt64.dll (ASUS Cloud Corporation.) ShellIconOverlayIdentifiers: [AsusWSShellExt_O] -> {64174815-8D98-4CE6-8646-4C039977D808} => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.11.125\ASUSWSShellExt64.dll (ASUS Cloud Corporation.) ShellIconOverlayIdentifiers: [AsusWSShellExt_U] -> {1C5AB7B1-0B38-4EC4-9093-7FD277E2AF4D} => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.11.125\ASUSWSShellExt64.dll (ASUS Cloud Corporation.) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKU\S-1-5-21-2449853672-1911796663-2586537646-1000\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.nl HKU\S-1-5-21-2449853672-1911796663-2586537646-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.nl/ SearchScopes: HKU\S-1-5-21-2449853672-1911796663-2586537646-1000 -> DefaultScope {68662AA7-13C9-477E-AF8F-FFFFE8BFD642} URL = https://www.google.com/search?q={searchTerms} SearchScopes: HKU\S-1-5-21-2449853672-1911796663-2586537646-1000 -> {68662AA7-13C9-477E-AF8F-FFFFE8BFD642} URL = https://www.google.com/search?q={searchTerms} BHO: Content Blocker Plugin -> {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll [2013-05-28] (Kaspersky Lab ZAO) BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2011-02-12] (Microsoft Corporation) BHO: Virtual Keyboard Plugin -> {73455575-E40C-433C-9784-C78DC7761455} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll [2015-03-23] (Kaspersky Lab ZAO) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2015-01-25] (Oracle Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-12-21] (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2015-01-25] (Oracle Corporation) BHO: URL Advisor Plugin -> {E33CF602-D945-461A-83F0-819F76A199F8} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\x64\IEExt\UrlAdvisor\klwtbbho.dll [2013-05-28] (Kaspersky Lab ZAO) BHO-x32: RealPlayer Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll [2015-03-23] (RealPlayer) BHO-x32: Content Blocker Plugin -> {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\ContentBlocker\ie_content_blocker_plugin.dll [2013-05-28] (Kaspersky Lab ZAO) BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2011-02-12] (Microsoft Corporation) BHO-x32: Virtual Keyboard Plugin -> {73455575-E40C-433C-9784-C78DC7761455} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll [2015-03-23] (Kaspersky Lab ZAO) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2015-01-25] (Oracle Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-12-21] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2015-01-25] (Oracle Corporation) BHO-x32: URL Advisor Plugin -> {E33CF602-D945-461A-83F0-819F76A199F8} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\IEExt\UrlAdvisor\klwtbbho.dll [2013-05-28] (Kaspersky Lab ZAO) Winsock: Missing Catalog9 entry, broken internet access. <===== ATTENTION. Winsock: Missing Catalog9-x64 entry, broken internet access. <===== ATTENTION. FireFox: ======== FF ProfilePath: C:\Users\Max\AppData\Roaming\Mozilla\Firefox\Profiles\turf8hsi.default FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_17_0_0_134.dll [2015-03-24] () FF Plugin: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2015-01-25] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2015-01-25] (Oracle Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_134.dll [2015-03-24] () FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll [2014-06-19] (Adobe Systems, Inc.) FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.0.72 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-03-12] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-03-12] (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll [2015-01-25] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [2015-01-25] (Oracle Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation) FF Plugin-x32: @real.com/nppl3260;version=15.0.5.109 -> C:\Program Files (x86)\Real\RealPlayer\Netscape6\nppl3260.dll [2015-03-23] (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprjplug;version=15.0.5.109 -> C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprjplug.dll [2015-03-23] (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprpchromebrowserrecordext;version=15.0.5.109 -> C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll [2015-03-23] (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprphtml5videoshim;version=15.0.5.109 -> C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll [2015-03-23] (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprpplugin;version=15.0.5.109 -> C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprpplugin.dll [2015-03-23] (RealPlayer) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.) FF HKLM-x32\...\Firefox\Extensions: [{C3949AC2-4B17-43ee-B4F1-D26B9D42404D}] - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext FF Extension: RealPlayer Browser Record Plugin - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2015-03-23] FF HKLM-x32\...\Firefox\Extensions: [url_advisor@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\url_advisor@kaspersky.com FF Extension: Kaspersky URL Advisor - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\url_advisor@kaspersky.com [2015-03-23] FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\virtual_keyboard@kaspersky.com FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\virtual_keyboard@kaspersky.com [2015-03-23] FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\content_blocker@kaspersky.com FF Extension: Content Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\FFExt\content_blocker@kaspersky.com [2015-03-23] Chrome: ======= CHR Profile: C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Slides) - C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-01-26] CHR Extension: (Google Docs) - C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-01-26] CHR Extension: (Google Drive) - C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-01-26] CHR Extension: (YouTube) - C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-01-26] CHR Extension: (Adblock Plus) - C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-01-26] CHR Extension: (Google Search) - C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-01-26] CHR Extension: (Kaspersky URL Advisor) - C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj [2015-03-23] CHR Extension: (Google Sheets) - C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-01-26] CHR Extension: (Content Blocker) - C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Extensions\hghkgaeecgjhjkannahfamoehjmkjail [2015-03-23] CHR Extension: (Virtual Keyboard) - C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh [2015-03-23] CHR Extension: (RealPlayer HTML5Video Downloader Extension) - C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfmjfhklogoienhpfnppmbcbjfjnkonk [2015-03-23] CHR Extension: (Google Wallet) - C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-01-26] CHR Extension: (Gmail) - C:\Users\Max\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-01-26] CHR HKLM-x32\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\ChromeExt\urladvisor.crx [2013-05-28] CHR HKLM-x32\...\Chrome\Extension: [hghkgaeecgjhjkannahfamoehjmkjail] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\ChromeExt\content_blocker_chrome.crx [2013-05-28] CHR HKLM-x32\...\Chrome\Extension: [jagncdcchgajhfhijbbhecadmaiegcmh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\ChromeExt\virtkbd.crx [2013-05-28] CHR HKLM-x32\...\Chrome\Extension: [jfmjfhklogoienhpfnppmbcbjfjnkonk] - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Chrome\Ext\rphtml5video.crx [2015-03-23] ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) S2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-01-20] (Apple Inc.) R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe [920736 2012-06-01] () R2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe [954648 2013-08-01] (ASUSTeK Computer Inc.) R2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.03.03\AsusFanControlService.exe [1660728 2013-07-31] (ASUSTeK Computer Inc.) R2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2013\avp.exe [356128 2015-03-23] (Kaspersky Lab ZAO) R2 cFosSpeedS; C:\Program Files\ASUS\ROG GameFirst II\spd.exe [860072 2012-08-09] (cFos Software GmbH) S2 CGVPNCliService; C:\Program Files\CyberGhost 5\Service.exe [64616 2014-11-03] (CyberGhost S.R.L) S3 EasyAntiCheat; C:\Windows\SysWOW64\EasyAntiCheat.exe [174112 2014-11-26] (EasyAntiCheat Ltd) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [731648 2013-02-13] (Intel(R) Corporation) [File not signed] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [820184 2013-02-13] (Intel(R) Corporation) S2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-03-12] (Intel Corporation) S3 SandraAgentSrv; C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2015.SP1a\RpcAgentSrv.exe [73200 2015-03-17] (SiSoftware) [File not signed] S2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R3 AiCharger; C:\Windows\SysWow64\drivers\AiCharger.sys [14848 2012-03-22] (ASUSTek Computer Inc.) R0 amdkmpfd; C:\Windows\System32\DRIVERS\amdkmpfd.sys [62152 2014-10-28] (Advanced Micro Devices, Inc.) R2 ASInsHelp; C:\Windows\SysWow64\drivers\AsInsHelp64.sys [11832 2013-01-08] () R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2012-08-21] () R2 AsRamDisk; C:\Windows\System32\DRIVERS\asramdisk.sys [106296 2013-04-09] (Asus) R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2012-09-14] () R3 ASUSFILTER; C:\Windows\SysWow64\drivers\ASUSFILTER.sys [46152 2011-09-20] (MCCI Corporation) S3 AWEAlloc; C:\Windows\System32\DRIVERS\awealloc.sys [21456 2012-12-20] (Olof Lagerkvist) S3 b06diag; C:\Windows\system32\drivers\bxdiaga.sys [88104 2012-03-08] (Broadcom Corporation) S3 BFN7x64; C:\Windows\system32\drivers\Xeno7x64.sys [157288 2012-02-22] (Bigfoot Networks, Inc.) S3 BFNVis64; C:\Windows\system32\drivers\XenoVa64.sys [157288 2012-02-22] (Bigfoot Networks, Inc.) S3 bxfcoe; C:\Windows\system32\drivers\bxfcoe.sys [178216 2012-02-22] (Broadcom Corporation) S3 bxois; C:\Windows\system32\drivers\bxois.sys [539176 2012-02-22] (Broadcom Corporation) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2015-03-23] (DT Soft Ltd) R3 e1dexpress; C:\Windows\System32\DRIVERS\e1d62x64.sys [495376 2013-05-30] (Intel Corporation) S3 IAMTVE; C:\Windows\system32\drivers\IAMTVE.sys [43416 2007-04-11] (Intel Corporation) S3 IAMTXPE; C:\Windows\system32\drivers\IAMTXPE.sys [51096 2007-04-11] (Intel Corporation) S3 IFCoEMP; C:\Windows\system32\drivers\ifM60x64.sys [387344 2012-04-21] (Intel(R) Corporation) S3 IFCoEVB; C:\Windows\system32\drivers\ifP60X64.sys [77584 2012-04-21] (Intel(R) Corporation) R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [7717984 2015-03-23] (Kaspersky Lab ZAO) U5 klflt; C:\Windows\System32\Drivers\klflt.sys [90208 2015-03-23] (Kaspersky Lab ZAO) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [626272 2015-03-23] (Kaspersky Lab ZAO) R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [28504 2012-08-02] (Kaspersky Lab ZAO) R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [29280 2015-03-23] (Kaspersky Lab ZAO) R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29280 2015-03-23] (Kaspersky Lab ZAO) R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [54368 2015-03-23] (Kaspersky Lab ZAO) R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [178448 2015-03-23] (Kaspersky Lab ZAO) S3 SANDRA; C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2015.SP1a\WNt600x64\Sandra.sys [23112 2009-08-07] (SiSoftware) U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [12352 2010-07-01] () S3 VGPU; System32\drivers\rdvgkmd.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2015-04-03 20:25 - 2015-04-03 20:25 - 00000000 ____D () C:\FRST 2015-04-03 19:09 - 2015-04-03 19:09 - 00012872 _____ (SurfRight B.V.) C:\Windows\system32\bootdelete.exe 2015-04-03 19:07 - 2015-04-03 19:10 - 00000000 ____D () C:\ProgramData\HitmanPro 2015-04-03 19:07 - 2015-04-03 19:07 - 00001883 _____ () C:\Users\Public\Desktop\HitmanPro.lnk 2015-04-03 19:07 - 2015-04-03 19:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HitmanPro 2015-04-03 19:07 - 2015-04-03 19:07 - 00000000 ____D () C:\Program Files\HitmanPro 2015-04-03 19:06 - 2015-04-03 19:06 - 11028616 _____ (SurfRight B.V.) C:\Users\Max\Downloads\HitmanPro_x64.exe 2015-04-03 19:03 - 2015-04-03 19:03 - 00000000 ____D () C:\Users\Max\Tracing 2015-04-03 19:02 - 2015-04-03 19:10 - 00000000 ____D () C:\Users\Max\AppData\Roaming\Skype 2015-04-03 19:02 - 2015-04-03 19:02 - 00000000 ____D () C:\Users\Max\AppData\Local\Skype 2015-04-03 19:01 - 2015-04-03 19:02 - 00000000 ____D () C:\ProgramData\Skype 2015-04-03 19:01 - 2015-04-03 19:01 - 00002691 _____ () C:\Users\Public\Desktop\Skype.lnk 2015-04-03 19:01 - 2015-04-03 19:01 - 00000000 ___RD () C:\Program Files (x86)\Skype 2015-04-03 19:01 - 2015-04-03 19:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2015-04-03 19:00 - 2015-04-03 19:00 - 00003172 _____ () C:\Windows\System32\Tasks\{488F7E1A-7705-4E03-9072-EF979FC163D1} 2015-04-03 18:58 - 2015-04-03 18:58 - 00003172 _____ () C:\Windows\System32\Tasks\{2174D339-6C09-48F0-A33C-67753E36ED53} 2015-04-03 18:56 - 2015-04-03 18:56 - 01380960 _____ (Skype Technologies S.A.) C:\Users\Max\Downloads\SkypeSetup.exe 2015-04-03 18:20 - 2015-04-03 18:20 - 00003110 _____ () C:\Windows\System32\Tasks\{4ABA9BF4-D172-4CB9-A9D4-C6696FF19C8D} 2015-04-03 16:42 - 2015-04-03 16:52 - 00000000 ____D () C:\Program Files\AMD 2015-04-03 16:20 - 2015-04-03 16:20 - 302470552 _____ (AMD Inc.) C:\Users\Max\Downloads\amd-catalyst-omega-14.12-with-dotnet45-win7-64bit (1).exe 2015-04-02 18:01 - 2015-04-02 18:01 - 00000604 _____ () C:\Users\Public\Desktop\TriadWars.lnk 2015-04-02 18:01 - 2015-04-02 18:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TriadWars 2015-04-02 18:00 - 2015-04-02 18:00 - 30176056 _____ (Square Enix Ltd.) C:\Users\Max\Downloads\triadwars-setup.exe 2015-04-02 17:57 - 2015-04-02 17:58 - 00000000 ____D () C:\Users\Max\AppData\Local\Sid Meier's Starships 2015-04-02 17:57 - 2015-04-02 17:57 - 00466456 _____ (Creative Labs) C:\Windows\system32\wrap_oal.dll 2015-04-02 17:57 - 2015-04-02 17:57 - 00444952 _____ (Creative Labs) C:\Windows\SysWOW64\wrap_oal.dll 2015-04-02 17:57 - 2015-04-02 17:57 - 00122904 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\system32\OpenAL32.dll 2015-04-02 17:57 - 2015-04-02 17:57 - 00109080 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\SysWOW64\OpenAL32.dll 2015-04-02 17:57 - 2015-04-02 17:57 - 00000000 ____D () C:\Program Files (x86)\OpenAL 2015-04-02 15:55 - 2015-04-02 15:55 - 00000000 ____D () C:\ProgramData\ATI 2015-04-02 15:47 - 2015-04-02 15:47 - 00053736 _____ () C:\Windows\SysWOW64\CCCInstall_201504021547036344.log 2015-04-02 15:47 - 2015-04-02 15:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center 2015-04-02 15:47 - 2015-04-02 15:47 - 00000000 ____D () C:\Program Files (x86)\AMD AVT 2015-04-02 15:46 - 2015-04-02 15:46 - 00000000 ____D () C:\Program Files (x86)\AMD 2015-04-02 15:41 - 2015-04-02 15:42 - 305196944 _____ (AMD Inc.) C:\Users\Max\Downloads\amd-catalyst-15.3beta-64bit-win7-mar20.exe 2015-04-01 23:23 - 2015-04-01 23:23 - 01771680 _____ (techPowerUp (www.techpowerup.com)) C:\Users\Max\Downloads\GPU-Z_ASUS_ROG_0.8.2.exe 2015-04-01 23:22 - 2015-04-01 23:22 - 00000000 ____D () C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RivaTuner Statistics Server 2015-04-01 23:22 - 2015-04-01 23:22 - 00000000 ____D () C:\Program Files (x86)\RivaTuner Statistics Server 2015-04-01 23:21 - 2015-04-01 23:21 - 00001090 _____ () C:\Users\Max\Desktop\MSI Afterburner.lnk 2015-04-01 23:21 - 2015-04-01 23:21 - 00000000 ____D () C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner 2015-04-01 23:21 - 2015-04-01 23:21 - 00000000 ____D () C:\Program Files (x86)\MSI Afterburner 2015-04-01 23:20 - 2015-04-01 23:20 - 36210245 _____ () C:\Users\Max\Downloads\MSIAfterburnerSetup.zip 2015-03-30 20:37 - 2015-03-30 20:37 - 00020428 _____ () C:\Users\Max\Downloads\30x_10lvl_Smooth_Scope_Zoom_096_by_Artasan.zip 2015-03-30 20:34 - 2015-03-30 20:34 - 119309249 _____ () C:\Users\Max\Downloads\HRMOD_Gun_Sounds_1.951.zip 2015-03-30 14:33 - 2015-03-30 14:33 - 05995160 _____ (Wargaming.net ) C:\Users\Max\Downloads\WoT_internet_install_eu (1).exe 2015-03-30 14:33 - 2015-03-30 14:33 - 05475848 _____ (Wargaming.net ) C:\Users\Max\Downloads\WoT_internet_install_na.exe 2015-03-30 14:33 - 2015-03-30 14:33 - 00000769 _____ () C:\Users\Max\Desktop\World of Tanks.lnk 2015-03-30 14:33 - 2015-03-30 14:33 - 00000000 ____D () C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\World of Tanks 2015-03-30 14:30 - 2015-03-30 14:30 - 00000000 ____D () C:\Freemake 2015-03-29 23:02 - 2015-03-29 23:02 - 00000064 _____ () C:\Users\Max\AppData\Roaming\Sandra.ldb 2015-03-29 23:02 - 2015-03-10 11:06 - 14438400 _____ () C:\Users\Max\AppData\Roaming\Sandra.mdb 2015-03-29 20:35 - 2015-03-29 20:35 - 00001183 _____ () C:\Users\Public\Desktop\SiSoftware Sandra Lite 2015.SP1a.lnk 2015-03-29 20:35 - 2015-03-29 20:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SiSoftware 2015-03-29 20:35 - 2015-03-29 20:35 - 00000000 ____D () C:\Program Files\SiSoftware 2015-03-29 20:33 - 2015-03-29 20:33 - 76074088 _____ (SiSoftware ) C:\Users\Max\Downloads\sisoftware_sandra_lite_2015_san2132.exe 2015-03-27 19:41 - 2015-03-27 19:41 - 00013722 _____ () C:\Users\Max\Downloads\[kickass.to]snowpiercer.2013.brrip.x264.aac.720p.tale.torrent.loaded 2015-03-27 19:32 - 2015-03-27 19:32 - 01744472 _____ (BitTorrent Inc.) C:\Users\Max\Downloads\BitTorrent (1).exe 2015-03-27 19:28 - 2015-03-27 19:28 - 00039390 _____ () C:\Users\Max\Downloads\[kickass.to]district.9.2009.dvdrip.x264.subs.english.nordic (1).torrent.loaded 2015-03-27 19:26 - 2015-03-27 19:26 - 00039390 _____ () C:\Users\Max\Downloads\[kickass.to]district.9.2009.dvdrip.x264.subs.english.nordic.torrent.loaded 2015-03-24 20:54 - 2015-03-24 20:54 - 07035835 _____ () C:\Users\Max\Downloads\AutumnColorJapan.themepack 2015-03-24 20:52 - 2015-03-24 20:54 - 00013217 _____ () C:\Users\Max\Desktop\gates_of_hades_nebula-wallpaper-1440x900.lnk 2015-03-24 20:51 - 2015-03-24 20:51 - 07884764 _____ () C:\Users\Max\Downloads\AuroraBorealis.themepack 2015-03-24 18:16 - 2015-03-24 18:16 - 00000000 ____D () C:\Users\Max\AppData\Local\Macromedia 2015-03-24 18:07 - 2015-03-24 18:07 - 00000000 ____D () C:\Users\Max\AppData\Roaming\Macromedia 2015-03-24 00:20 - 2015-03-24 17:25 - 00000000 ____D () C:\Program Files\Unlocker 2015-03-24 00:20 - 2015-03-24 00:20 - 00000000 ____D () C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker 2015-03-23 17:20 - 2015-03-23 17:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sonic Radar 2015-03-23 17:20 - 2015-03-23 17:20 - 00000000 ____D () C:\Program Files\ASUSTeKcomputer.Inc 2015-03-23 17:19 - 2015-03-23 17:19 - 00000000 ____H () C:\ProgramData\DP45977C.lfl 2015-03-23 17:19 - 2015-03-23 17:19 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2015-03-23 17:19 - 2015-03-23 17:19 - 00000000 ____D () C:\Program Files\Realtek 2015-03-23 17:19 - 2014-04-08 19:57 - 03917272 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2015-03-23 17:19 - 2014-04-08 15:27 - 00948440 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2015-03-23 17:19 - 2014-04-07 19:32 - 00973751 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT 2015-03-23 17:19 - 2014-04-07 19:20 - 58101760 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat 2015-03-23 17:19 - 2014-04-07 11:35 - 02832088 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2015-03-23 17:19 - 2014-04-07 11:35 - 02798296 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll 2015-03-23 17:19 - 2014-04-02 17:27 - 02102576 _____ () C:\Windows\system32\SStudio.dll 2015-03-23 17:19 - 2014-03-28 19:03 - 00628952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2015-03-23 17:19 - 2014-03-19 20:19 - 28324440 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnA64.dll 2015-03-23 17:19 - 2014-03-19 20:19 - 14844504 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll 2015-03-23 17:19 - 2014-03-19 20:19 - 12889176 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO3064.dll 2015-03-23 17:19 - 2014-03-19 20:19 - 03937368 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnN64.dll 2015-03-23 17:19 - 2014-03-19 20:19 - 02101848 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2015-03-23 17:19 - 2014-03-19 20:19 - 02041432 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2015-03-23 17:19 - 2014-03-19 20:19 - 01933400 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek264.dll 2015-03-23 17:19 - 2014-03-19 20:19 - 01313368 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO6064.dll 2015-03-23 17:19 - 2014-03-19 20:19 - 01168984 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll 2015-03-23 17:19 - 2014-03-19 20:19 - 01137240 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll 2015-03-23 17:19 - 2014-03-19 20:19 - 01049688 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2015-03-23 17:19 - 2014-03-19 20:19 - 00956504 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll 2015-03-23 17:19 - 2014-03-19 20:19 - 00889944 _____ (Waves Audio Ltd.) C:\Windows\SysWOW64\MaxxAudioAPOShell.dll 2015-03-23 17:19 - 2014-03-06 17:35 - 01959128 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2015-03-23 17:19 - 2014-03-05 06:11 - 01048824 _____ (SRS Labs, Inc.) C:\Windows\system32\slcnt64.dll 2015-03-23 17:19 - 2014-03-05 06:11 - 00889592 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll 2015-03-23 17:19 - 2014-03-05 06:11 - 00724728 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll 2015-03-23 17:19 - 2014-03-05 06:11 - 00246008 _____ (TODO: ) C:\Windows\system32\slprp64.dll 2015-03-23 17:19 - 2014-03-03 21:21 - 01019608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2015-03-23 17:19 - 2014-02-27 21:02 - 02162992 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE.dll 2015-03-23 17:19 - 2014-02-26 16:48 - 00942384 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOSettingsIPC.dll 2015-03-23 17:19 - 2014-02-26 16:47 - 05751048 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOlfx.dll 2015-03-23 17:19 - 2014-02-18 18:04 - 02770976 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2015-03-23 17:19 - 2014-02-06 12:28 - 05804772 _____ () C:\Windows\system32\Drivers\rtvienna.dat 2015-03-23 17:19 - 2014-01-31 18:27 - 01313904 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll 2015-03-23 17:19 - 2014-01-28 12:48 - 01286872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2015-03-23 17:19 - 2013-10-16 04:43 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2015-03-23 17:19 - 2013-10-11 13:47 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2015-03-23 17:19 - 2013-10-11 12:31 - 00947760 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll 2015-03-23 17:19 - 2013-10-07 01:26 - 00501184 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll 2015-03-23 17:19 - 2013-10-07 01:26 - 00487360 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll 2015-03-23 17:19 - 2013-10-07 01:26 - 00415680 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll 2015-03-23 17:19 - 2013-09-10 05:02 - 06217904 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll 2015-03-23 17:19 - 2013-09-10 05:02 - 00313520 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll 2015-03-23 17:19 - 2013-09-10 05:01 - 01938608 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll 2015-03-23 17:19 - 2013-09-10 05:01 - 00260272 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll 2015-03-23 17:19 - 2013-08-20 18:37 - 00605496 _____ () C:\Windows\system32\audioLibVc.dll 2015-03-23 17:19 - 2013-08-14 16:36 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll 2015-03-23 17:19 - 2013-08-14 16:35 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2015-03-23 17:19 - 2013-06-25 13:47 - 00871856 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll 2015-03-23 17:19 - 2013-06-25 13:47 - 00162224 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll 2015-03-23 17:19 - 2013-06-25 13:46 - 00582056 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll 2015-03-23 17:19 - 2013-06-21 12:01 - 00109848 _____ () C:\Windows\system32\AcpiServiceVnA64.dll 2015-03-23 17:19 - 2013-04-03 15:13 - 00906800 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll 2015-03-23 17:19 - 2012-08-31 20:18 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll 2015-03-23 17:19 - 2012-08-31 20:17 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll 2015-03-23 17:19 - 2012-08-31 20:17 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll 2015-03-23 17:19 - 2012-08-31 20:17 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll 2015-03-23 17:19 - 2012-08-31 20:17 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll 2015-03-23 17:19 - 2012-03-08 12:47 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2015-03-23 17:19 - 2012-01-30 12:43 - 00836544 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll 2015-03-23 17:19 - 2012-01-10 11:20 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll 2015-03-23 17:19 - 2011-12-20 16:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2015-03-23 17:19 - 2011-11-22 17:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2015-03-23 17:19 - 2011-09-02 15:21 - 00221024 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll 2015-03-23 17:19 - 2011-09-02 15:21 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll 2015-03-23 17:19 - 2011-09-02 15:21 - 00078688 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll 2015-03-23 17:19 - 2011-08-23 18:00 - 00603984 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll 2015-03-23 17:19 - 2011-05-31 10:42 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll 2015-03-23 17:19 - 2011-05-31 10:42 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll 2015-03-23 17:19 - 2011-05-31 10:42 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll 2015-03-23 17:19 - 2011-05-31 10:42 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll 2015-03-23 17:19 - 2011-05-31 10:42 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll 2015-03-23 17:19 - 2011-05-31 10:42 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll 2015-03-23 17:19 - 2011-05-31 10:42 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll 2015-03-23 17:19 - 2011-05-31 10:42 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll 2015-03-23 17:19 - 2011-05-31 10:42 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll 2015-03-23 17:19 - 2011-05-31 10:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll 2015-03-23 17:19 - 2011-05-31 10:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll 2015-03-23 17:19 - 2011-05-31 10:42 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll 2015-03-23 17:19 - 2011-03-17 13:17 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll 2015-03-23 17:19 - 2011-03-07 18:11 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll 2015-03-23 17:19 - 2010-11-08 08:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2015-03-23 17:19 - 2010-11-08 08:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2015-03-23 17:19 - 2010-11-08 08:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2015-03-23 17:19 - 2010-11-08 08:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2015-03-23 17:19 - 2010-11-08 08:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2015-03-23 17:19 - 2010-11-08 08:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2015-03-23 17:19 - 2010-11-03 19:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2015-03-23 17:19 - 2010-09-27 10:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2015-03-23 17:19 - 2010-07-22 17:48 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll 2015-03-23 17:19 - 2009-11-24 10:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll 2015-03-23 17:19 - 2009-11-24 10:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll 2015-03-23 17:19 - 2009-11-24 10:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll 2015-03-23 17:19 - 2009-11-24 10:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll 2015-03-23 17:15 - 2015-03-23 17:16 - 328777557 _____ () C:\Users\Max\Downloads\Realtek_Audio_Win7-8-8-1_VER6017218.zip 2015-03-23 16:33 - 2015-04-03 20:24 - 00000000 ____D () C:\ProgramData\Kaspersky Lab 2015-03-23 16:33 - 2015-03-23 17:40 - 00626272 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klif.sys 2015-03-23 16:33 - 2015-03-23 17:40 - 00090208 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klflt.sys 2015-03-23 16:33 - 2015-03-23 16:33 - 07158722 _____ () C:\install.log 2015-03-23 16:33 - 2015-03-23 16:33 - 00000000 ____D () C:\Windows\ELAMBKUP 2015-03-23 16:33 - 2015-03-23 16:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Anti-Virus 2013 2015-03-23 16:33 - 2015-03-23 16:33 - 00000000 ____D () C:\Program Files (x86)\Kaspersky Lab 2015-03-23 16:33 - 2012-07-11 18:09 - 00064856 _____ (Kaspersky Lab) C:\Windows\system32\klfphc.dll 2015-03-23 16:27 - 2015-03-23 16:27 - 00283200 _____ (DT Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys 2015-03-23 16:27 - 2015-03-23 16:27 - 00000164 _____ () C:\Windows\MemTweakIt.log 2015-03-23 16:27 - 2015-03-23 16:27 - 00000090 _____ () C:\Windows\FastBoot.log 2015-03-23 16:27 - 2015-03-23 16:27 - 00000000 ____D () C:\Users\Max\Documents\Asus WebStorage 2015-03-23 16:27 - 2015-03-23 16:27 - 00000000 ____D () C:\Users\Max\AppData\Roaming\DAEMON Tools Pro 2015-03-23 16:27 - 2015-03-23 16:27 - 00000000 ____D () C:\Users\Max\AppData\Roaming\ASUS WebStorage 2015-03-23 16:27 - 2015-03-23 16:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Pro 2015-03-23 16:27 - 2015-03-23 16:27 - 00000000 ____D () C:\ProgramData\ASUS WebStorage 2015-03-23 16:27 - 2015-03-23 16:27 - 00000000 ____D () C:\Program Files (x86)\DAEMON Tools Pro 2015-03-23 16:27 - 2011-04-26 10:53 - 00192512 _____ (ASUSTeK Computer Inc.) C:\Windows\SysWOW64\Drivers\UpdateHelper.dll 2015-03-23 16:26 - 2015-03-23 16:26 - 00499712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp71.dll 2015-03-23 16:26 - 2015-03-23 16:26 - 00348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr71.dll 2015-03-23 16:26 - 2015-03-23 16:26 - 00272896 _____ (Progressive Networks) C:\Windows\SysWOW64\pncrt.dll 2015-03-23 16:26 - 2015-03-23 16:26 - 00198864 _____ (RealNetworks, Inc.) C:\Windows\SysWOW64\rmoc3260.dll 2015-03-23 16:26 - 2015-03-23 16:26 - 00006656 _____ (RealNetworks, Inc.) C:\Windows\SysWOW64\pndx5016.dll 2015-03-23 16:26 - 2015-03-23 16:26 - 00005632 _____ (RealNetworks, Inc.) C:\Windows\SysWOW64\pndx5032.dll 2015-03-23 16:26 - 2015-03-23 16:26 - 00000000 ____D () C:\Users\Max\AppData\Roaming\Real 2015-03-23 16:26 - 2015-03-23 16:26 - 00000000 ____D () C:\ProgramData\Real 2015-03-23 16:26 - 2015-03-23 16:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RealNetworks 2015-03-23 16:26 - 2015-03-23 16:26 - 00000000 ____D () C:\Program Files (x86)\Real 2015-03-23 16:23 - 2015-03-23 16:35 - 00067013 _____ () C:\Windows\Ascd_log.ini 2015-03-23 16:23 - 2015-03-23 16:23 - 00000000 _____ () C:\Windows\Ascd_err.ini 2015-03-21 23:38 - 2015-04-02 17:57 - 00000000 ____D () C:\Users\Max\AppData\Roaming\FiraxisLive 2015-03-21 21:57 - 2015-03-21 21:57 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2015-03-20 06:49 - 2014-11-21 04:09 - 00095744 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdave64.dll 2015-03-20 06:49 - 2014-11-21 04:09 - 00090112 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdave32.dll 2015-03-20 06:48 - 2014-11-21 04:44 - 00118096 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiu9p64.dll 2015-03-20 06:47 - 2014-11-21 04:43 - 08379720 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd6a.dll 2015-03-20 06:47 - 2014-11-21 04:43 - 08369408 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd64.dll 2015-03-20 06:21 - 2014-11-21 04:33 - 47899136 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl64.dll 2015-03-20 06:13 - 2014-11-21 04:31 - 00065024 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2015-03-20 03:44 - 2014-11-21 04:09 - 01214976 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll 2015-03-20 03:44 - 2014-11-21 04:08 - 00146944 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll 2015-03-20 00:39 - 2015-03-20 00:39 - 00051200 _____ () C:\Windows\system32\kdbsdk64.dll 2015-03-20 00:31 - 2015-03-20 00:31 - 00038912 _____ () C:\Windows\SysWOW64\kdbsdk32.dll 2015-03-19 19:06 - 2015-03-19 19:13 - 00000000 ____D () C:\Users\Max\Documents\Assassin's Creed IV Black Flag 2015-03-19 17:19 - 2015-03-19 17:19 - 00000000 ____D () C:\Users\Max\AppData\Roaming\DuckLink 2015-03-19 17:19 - 2015-03-19 17:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DuckLink 2015-03-19 17:19 - 2015-03-19 17:19 - 00000000 ____D () C:\Program Files (x86)\DuckLink 2015-03-19 17:18 - 2015-03-19 17:19 - 06142695 _____ (DuckLink Software ) C:\Users\Max\Downloads\Install_DuckCapture_Standard (1).exe 2015-03-19 17:18 - 2015-03-19 17:18 - 06142695 _____ (DuckLink Software ) C:\Users\Max\Downloads\Install_DuckCapture_Standard.exe 2015-03-19 17:15 - 2015-03-29 21:33 - 00000000 ____D () C:\Users\Max\Desktop\screenshots 2015-03-19 16:01 - 2015-04-02 16:00 - 00000000 _____ () C:\Windows\Path.idx 2015-03-19 15:34 - 2015-04-03 16:55 - 01048576 _____ () C:\Windows\PE_Rom.dll 2015-03-19 15:34 - 2015-03-19 15:34 - 04374592 _____ () C:\Windows\PE_File.dll 2015-03-19 15:33 - 2015-03-19 15:33 - 00000000 _____ () C:\Windows\SysWOW64\Drivers\1043_ASUSTeK_MAXIMUS VI HERO.alu 2015-03-19 15:22 - 2015-03-19 15:51 - 00000000 ____D () C:\ProgramData\ASUS 2015-03-19 15:21 - 2015-03-19 15:21 - 00000000 ____D () C:\ProgramData\Intel 2015-03-19 15:21 - 2013-03-12 14:19 - 00016344 _____ (Intel Corporation) C:\Windows\system32\Drivers\IntelMEFWVer.dll 2015-03-19 15:20 - 2014-04-14 18:52 - 00003008 ____N () C:\Windows\system32\Drivers\DTSU2P.DAT 2015-03-19 15:19 - 2015-03-23 17:20 - 00000000 ___HD () C:\Program Files (x86)\Temp 2015-03-19 15:19 - 2015-03-19 15:19 - 00000000 ____D () C:\Program Files (x86)\Realtek 2015-03-19 15:19 - 2014-02-26 16:16 - 02080472 _____ (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll 2015-03-19 15:13 - 2015-03-19 15:13 - 00002179 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\WinZip.lnk 2015-03-19 15:11 - 2015-03-19 15:11 - 24405639 _____ () C:\Users\Max\Downloads\ROGGameFirst_II_Win7_8_VER10203.zip 2015-03-19 15:07 - 2015-03-24 20:57 - 00000000 ____D () C:\Users\Max\Desktop\ROG 2015-03-19 15:07 - 2012-04-27 16:40 - 01671552 _____ (cFos Software GmbH) C:\Windows\system32\Drivers\cfosspeed6.sys 2015-03-19 15:06 - 2015-03-19 15:06 - 00000000 ____D () C:\Users\Max\AppData\Local\cFos 2015-03-19 15:05 - 2015-03-23 17:16 - 00000000 ____D () C:\ProgramData\WinZip 2015-03-19 15:05 - 2015-03-19 15:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip 2015-03-19 15:05 - 2015-03-19 15:05 - 00000000 ____D () C:\ProgramData\cFos 2015-03-19 15:05 - 2015-03-19 15:05 - 00000000 ____D () C:\Program Files\WinZip 2015-03-19 15:04 - 2015-03-19 15:04 - 00000000 ____D () C:\Users\Max\Documents\Add-in Express 2015-03-19 15:01 - 2015-03-19 15:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID 2015-03-19 15:01 - 2015-03-19 15:01 - 00000000 ____D () C:\Program Files\CPUID 2015-03-19 15:00 - 2012-03-22 17:10 - 00014848 _____ (ASUSTek Computer Inc.) C:\Windows\SysWOW64\Drivers\AiCharger.sys 2015-03-17 11:47 - 2015-03-17 11:47 - 01054912 _____ (Adobe) C:\Users\Max\Downloads\install_flashplayer17x32au_mssd_aaa_aih.exe 2015-03-16 14:15 - 2015-03-23 16:13 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2015-03-16 14:15 - 2015-03-16 14:15 - 00243416 _____ () C:\Users\Max\Downloads\Firefox Setup Stub 36.0.1.exe 2015-03-16 14:15 - 2015-03-16 14:15 - 00001163 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2015-03-16 14:15 - 2015-03-16 14:15 - 00001151 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2015-03-16 14:15 - 2015-03-16 14:15 - 00000000 ____D () C:\Users\Max\AppData\Roaming\Mozilla 2015-03-16 14:15 - 2015-03-16 14:15 - 00000000 ____D () C:\Users\Max\AppData\Local\Mozilla 2015-03-16 14:15 - 2015-03-16 14:15 - 00000000 ____D () C:\ProgramData\Mozilla 2015-03-15 22:05 - 2015-03-15 22:05 - 00237808 _____ () C:\Users\Max\Downloads\Ad Familiares 7.1 - De Spelen van Pompeius.pptx 2015-03-15 22:05 - 2015-03-15 22:05 - 00206362 _____ () C:\Users\Max\Downloads\Ad Familiares 14.3 - Schuldgevoel en hoop op redding.pptx 2015-03-15 22:05 - 2015-03-15 22:05 - 00188999 _____ () C:\Users\Max\Downloads\Ad Familiares 14.2 - Tussen vrees en een sprankje hoop.pptx 2015-03-15 22:05 - 2015-03-15 22:05 - 00133983 _____ () C:\Users\Max\Downloads\Ad Atticum 5.16 - Gouverneur in Ciliciâ.pptx 2015-03-15 22:05 - 2015-03-15 22:05 - 00129578 _____ () C:\Users\Max\Downloads\Ad Familiares 14.18 - Moeten Terentia en Tullia in Rome blijven.pptx 2015-03-15 22:05 - 2015-03-15 22:05 - 00118436 _____ () C:\Users\Max\Downloads\Ad Familiares 14.7 - Op weg naar Pompeius.pptx 2015-03-15 22:05 - 2015-03-15 22:05 - 00115619 _____ () C:\Users\Max\Downloads\Ad Atticum 12.14.3 - Kapot van verdriet.pptx 2015-03-15 22:05 - 2015-03-15 22:05 - 00080801 _____ () C:\Users\Max\Downloads\Ad Familiares 14.19 - Terug naar Italiâ.pptx 2015-03-13 00:42 - 2015-03-13 00:42 - 00014081 _____ () C:\Users\Max\Downloads\rekentoets.xlsx 2015-03-12 17:20 - 2015-03-12 17:20 - 01062912 _____ () C:\Users\Max\Downloads\catullus carmen 3.ppt 2015-03-12 17:20 - 2015-03-12 17:20 - 00690176 _____ () C:\Users\Max\Downloads\catullus carmen 5.ppt 2015-03-12 17:20 - 2015-03-12 17:20 - 00578560 _____ () C:\Users\Max\Downloads\catullus carmen 2.ppt 2015-03-12 17:20 - 2015-03-12 17:20 - 00509440 _____ () C:\Users\Max\Downloads\catullus carmen 8.ppt 2015-03-08 21:48 - 2015-03-08 21:48 - 00001089 _____ () C:\Users\Max\Desktop\Cheat Engine.lnk 2015-03-08 21:48 - 2015-03-08 21:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cheat Engine 6.4 2015-03-08 21:48 - 2015-03-08 21:48 - 00000000 ____D () C:\Program Files (x86)\Cheat Engine 6.4 2015-03-08 20:35 - 2015-03-08 20:59 - 00000000 ____D () C:\Users\Max\Downloads\The.Hobbit.The.Battle.of.the.Five.Armies.2014.1080p.BluRay.H264.AAC-RARBG 2015-03-08 20:34 - 2015-03-08 20:34 - 00057805 _____ () C:\Users\Max\Downloads\[kickass.to]the.hobbit.the.battle.of.the.five.armies.2014.1080p.bluray.h264.aac.rarbg.torrent.loaded 2015-03-08 20:08 - 2015-03-09 16:37 - 00000000 ____D () C:\Users\Max\Downloads\The.Hobbit.The.Battle.of.the.Five.Armies.2014.1080p.BluRay.x264-SPARKS[rarbg] 2015-03-08 20:08 - 2015-03-08 20:08 - 00057316 _____ () C:\Users\Max\Downloads\[kickass.to]the.hobbit.the.battle.of.the.five.armies.2014.1080p.bluray.x264.sparks.rarbg.torrent.loaded 2015-03-08 14:52 - 2015-03-08 23:45 - 00000000 ____D () C:\Users\Max\Documents\My Cheat Tables 2015-03-08 14:52 - 2014-06-19 12:51 - 00330008 _____ () C:\Users\Max\Desktop\Cheat Engine.exe 2015-03-08 14:51 - 2015-03-08 14:51 - 07902751 _____ () C:\Users\Max\Downloads\cheatengine64_NoSetup.rar 2015-03-07 17:39 - 2015-03-07 17:40 - 00000000 ____D () C:\Users\Max\Documents\Caribbean! 2015-03-07 17:39 - 2015-03-07 17:40 - 00000000 ____D () C:\Users\Max\AppData\Roaming\Caribbean! 2015-03-07 00:23 - 2015-03-07 00:23 - 00000000 ____D () C:\Users\Max\AppData\Roaming\Bitdreamers 2015-03-07 00:22 - 2015-03-07 00:22 - 00001006 _____ () C:\Users\Max\Desktop\TimeComX.lnk 2015-03-07 00:22 - 2015-03-07 00:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdreamers 2015-03-07 00:22 - 2015-03-07 00:22 - 00000000 ____D () C:\Program Files\Bitdreamers 2015-03-07 00:20 - 2015-03-07 00:20 - 04519144 _____ (Bitdreamers) C:\Users\Max\Downloads\timecomx_basic-132-x64.exe 2015-03-06 21:08 - 2015-03-07 00:42 - 00000000 ____D () C:\Users\Max\Desktop\POTO CAE 2015-03-06 21:07 - 2015-03-06 21:08 - 03442002 _____ () C:\Users\Max\Downloads\Dropbox.zip 2015-03-06 17:33 - 2015-03-06 17:33 - 04691200 _____ (Wargaming.net ) C:\Users\Max\Downloads\WoT_internet_install_ct (1).exe 2015-03-05 22:50 - 2015-03-06 17:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Tanks - Common Test 2015-03-05 22:49 - 2015-03-05 22:49 - 04691200 _____ (Wargaming.net ) C:\Users\Max\Downloads\WoT_internet_install_ct.exe ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2015-04-03 20:24 - 2015-01-26 22:03 - 00000000 ____D () C:\Program Files (x86)\Raptr 2015-04-03 20:21 - 2015-01-26 20:51 - 00016762 _____ () C:\Windows\setupact.log 2015-04-03 20:20 - 2015-01-26 20:55 - 01181464 _____ () C:\Windows\WindowsUpdate.log 2015-04-03 20:20 - 2009-07-14 06:45 - 00026352 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2015-04-03 20:20 - 2009-07-14 06:45 - 00026352 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2015-04-03 20:09 - 2015-01-26 21:59 - 00001056 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2015-04-03 20:02 - 2015-01-26 22:06 - 00000000 ____D () C:\Program Files (x86)\Steam 2015-04-03 19:25 - 2015-01-25 21:30 - 00000940 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2015-04-03 19:03 - 2015-01-25 21:31 - 00000000 ____D () C:\Users\Max 2015-04-03 18:59 - 2015-01-26 22:39 - 00000000 ____D () C:\Users\Max\AppData\Roaming\BitTorrent 2015-04-03 17:17 - 2015-01-26 22:03 - 00000000 ____D () C:\Users\Max\AppData\Roaming\Raptr 2015-04-03 16:59 - 2011-04-12 15:00 - 00745424 _____ () C:\Windows\system32\perfh013.dat 2015-04-03 16:59 - 2011-04-12 15:00 - 00153376 _____ () C:\Windows\system32\perfc013.dat 2015-04-03 16:59 - 2009-07-14 07:13 - 01669560 _____ () C:\Windows\system32\PerfStringBackup.INI 2015-04-03 16:55 - 2015-01-26 21:59 - 00001052 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2015-04-03 16:55 - 2015-01-26 20:09 - 00003486 _____ () C:\Windows\System32\Tasks\AutoKMS 2015-04-03 16:54 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2015-04-03 16:45 - 2015-01-26 22:01 - 00000000 ____D () C:\AMD 2015-04-02 18:01 - 2015-01-26 22:02 - 00000000 ____D () C:\ProgramData\Package Cache 2015-04-02 15:47 - 2015-01-26 22:03 - 00000000 ____D () C:\ProgramData\AMD 2015-04-01 23:22 - 2015-01-27 21:09 - 00000000 ____D () C:\Windows\SysWOW64\directx 2015-04-01 23:08 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\LiveKernelReports 2015-04-01 22:11 - 2015-01-26 21:59 - 00002203 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2015-04-01 21:41 - 2015-01-30 21:59 - 00000000 ____D () C:\Users\Max\AppData\Roaming\TS3Client 2015-03-30 14:33 - 2015-01-27 21:09 - 00000000 ____D () C:\Games 2015-03-28 18:47 - 2015-01-26 22:04 - 01005976 _____ () C:\Windows\PFRO.log 2015-03-27 20:02 - 2015-01-26 22:39 - 00000000 ____D () C:\Users\Max\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2015-03-27 19:48 - 2015-01-27 22:42 - 00000000 ____D () C:\Users\Max\AppData\Roaming\vlc 2015-03-24 18:16 - 2015-01-26 20:57 - 00000000 ____D () C:\Users\Max\AppData\Local\Adobe 2015-03-24 18:13 - 2015-01-25 21:30 - 00778928 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2015-03-24 18:13 - 2015-01-25 21:30 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2015-03-24 18:13 - 2015-01-25 21:30 - 00003878 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2015-03-24 18:06 - 2015-01-25 21:30 - 00000000 ____D () C:\Windows\SysWOW64\Macromed 2015-03-24 18:06 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\registration 2015-03-23 17:40 - 2012-08-13 17:49 - 00178448 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\kneps.sys 2015-03-23 17:40 - 2012-07-25 15:53 - 00029280 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klmouflt.sys 2015-03-23 17:40 - 2012-06-19 18:28 - 07717984 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\kl1.sys 2015-03-23 17:40 - 2012-06-08 12:38 - 00054368 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\kltdi.sys 2015-03-23 17:40 - 2012-05-25 20:38 - 00029280 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klkbdflt.sys 2015-03-23 17:19 - 2015-01-31 13:20 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2015-03-23 17:16 - 2014-05-16 16:09 - 00000000 ____D () C:\Users\Max\Desktop\Realtek_Audio_Win7-8-8-1_VER6017218 2015-03-23 16:27 - 2015-01-31 13:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS 2015-03-23 16:27 - 2015-01-25 21:33 - 00000000 ____D () C:\Program Files (x86)\ASUS 2015-03-23 16:22 - 2015-01-25 21:32 - 00046934 _____ () C:\Windows\Ascd_tmp.ini 2015-03-21 23:38 - 2015-01-31 23:05 - 00000000 ____D () C:\Users\Max\AppData\Local\My Games 2015-03-21 23:38 - 2015-01-26 22:13 - 00000000 ____D () C:\Users\Max\Documents\my games 2015-03-21 20:33 - 2015-01-27 21:44 - 00212358 _____ () C:\Windows\DirectX.log 2015-03-19 19:06 - 2009-07-14 07:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2015-03-19 15:24 - 2015-01-25 21:34 - 00000000 ____D () C:\Windows\System32\Tasks\ASUS 2015-03-19 15:24 - 2015-01-25 21:33 - 00000000 ____D () C:\Program Files\ASUS 2015-03-19 15:23 - 2015-01-25 21:35 - 00000000 ____D () C:\Program Files (x86)\Intel 2015-03-19 15:21 - 2015-01-26 19:34 - 00000000 ____D () C:\Program Files\Intel 2015-03-19 15:16 - 2015-01-25 21:31 - 00000000 ____D () C:\Users\Max\AppData\Roaming\Adobe 2015-03-12 16:50 - 2015-02-26 16:18 - 00000000 ____D () C:\Users\Max\AppData\Roaming\Mount&Blade Warband 2015-03-11 21:06 - 2015-02-26 16:22 - 00000000 ____D () C:\Users\Max\Documents\Mount&Blade Warband Savegames ==================== Files in the root of some directories ======= 2015-03-29 23:02 - 2015-03-29 23:02 - 0000064 _____ () C:\Users\Max\AppData\Roaming\Sandra.ldb 2015-03-29 23:02 - 2015-03-10 11:06 - 14438400 _____ () C:\Users\Max\AppData\Roaming\Sandra.mdb 2015-03-23 17:19 - 2015-03-23 17:19 - 0000000 ____H () C:\ProgramData\DP45977C.lfl Some content of TEMP: ==================== C:\Users\Max\AppData\Local\Temp\AutoDetectUtilApp.exe C:\Users\Max\AppData\Local\Temp\bitool.dll C:\Users\Max\AppData\Local\Temp\FreemakeVideoConverterFull.exe C:\Users\Max\AppData\Local\Temp\raptrpatch.exe C:\Users\Max\AppData\Local\Temp\raptr_stub.exe C:\Users\Max\AppData\Local\Temp\SkypeSetup.exe C:\Users\Max\AppData\Local\Temp\uttF59D.tmp.exe C:\Users\Max\AppData\Local\Temp\xmlUpdater.exe C:\Users\Max\AppData\Local\Temp\_is2D56.exe ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2015-03-25 19:53 ==================== End Of Log ============================