Hi Ron! Thanks so much for replying!

Here are the requested logs.
Btw my external harddrive that i suspect may be infected is currently plugged in. However, I also have a thumbdrive which may be infected. But that is not plugged in at the moment. So, im not sure if that may be a problem.
========== OTL ==========
64bit-Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}\ not found.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\wmi32 deleted successfully.
C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Yuuguu.lnk moved successfully.
C:\Users\Owner\AppData\Roaming\Yuuguu\yuuguu.exe moved successfully.
Starting removal of ActiveX control {8AD9C840-044E-11D1-B3E9-00805F499D93}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ deleted successfully.
Registry key HKEY_USERS\S-1-5-21-3533916949-36865485-774322356-1002\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}\ not found.
Starting removal of ActiveX control {C3F79A2B-B9B4-4A66-B012-3EE46475B072}
Registry error reading value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{C3F79A2B-B9B4-4A66-B012-3EE46475B072}\DownloadInformation\\INF .
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{C3F79A2B-B9B4-4A66-B012-3EE46475B072}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C3F79A2B-B9B4-4A66-B012-3EE46475B072}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{C3F79A2B-B9B4-4A66-B012-3EE46475B072}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C3F79A2B-B9B4-4A66-B012-3EE46475B072}\ not found.
Starting removal of ActiveX control {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_USERS\S-1-5-21-3533916949-36865485-774322356-1002\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}\ not found.
Starting removal of ActiveX control {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_USERS\S-1-5-21-3533916949-36865485-774322356-1002\SOFTWARE\Classes\CLSID\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}\ not found.
F:\AUTORUN_.INF moved successfully.
F:\AuToRUn.iNf moved successfully.
File move failed. G:\autorun.inf scheduled to be moved on reboot.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{4d54b29f-69f0-11e2-8ad2-8c89a58433e4}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4d54b29f-69f0-11e2-8ad2-8c89a58433e4}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{4d54b29f-69f0-11e2-8ad2-8c89a58433e4}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4d54b29f-69f0-11e2-8ad2-8c89a58433e4}\ not found.
File move failed. G:\setup.exe scheduled to be moved on reboot.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{d8b116b5-6ab3-11e1-9dd9-8c89a58433e4}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d8b116b5-6ab3-11e1-9dd9-8c89a58433e4}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{d8b116b5-6ab3-11e1-9dd9-8c89a58433e4}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d8b116b5-6ab3-11e1-9dd9-8c89a58433e4}\ not found.
File move failed. G:\setup.exe scheduled to be moved on reboot.
========== FILES ==========
C:\Users\Owner\AppData\Roaming\Yuuguu\native folder moved successfully.
C:\Users\Owner\AppData\Roaming\Yuuguu\libs folder moved successfully.
C:\Users\Owner\AppData\Roaming\Yuuguu\jre\lib\zi\SystemV folder moved successfully.
C:\Users\Owner\AppData\Roaming\Yuuguu\jre\lib\zi\Pacific folder moved successfully.
C:\Users\Owner\AppData\Roaming\Yuuguu\jre\lib\zi\Indian folder moved successfully.
C:\Users\Owner\AppData\Roaming\Yuuguu\jre\lib\zi\Europe folder moved successfully.
C:\Users\Owner\AppData\Roaming\Yuuguu\jre\lib\zi\Etc folder moved successfully.
C:\Users\Owner\AppData\Roaming\Yuuguu\jre\lib\zi\Australia folder moved successfully.
C:\Users\Owner\AppData\Roaming\Yuuguu\jre\lib\zi\Atlantic folder moved successfully.
C:\Users\Owner\AppData\Roaming\Yuuguu\jre\lib\zi\Asia folder moved successfully.
C:\Users\Owner\AppData\Roaming\Yuuguu\jre\lib\zi\Antarctica folder moved successfully.
C:\Users\Owner\AppData\Roaming\Yuuguu\jre\lib\zi\America\North_Dakota folder moved successfully.
C:\Users\Owner\AppData\Roaming\Yuuguu\jre\lib\zi\America\Kentucky folder moved successfully.
C:\Users\Owner\AppData\Roaming\Yuuguu\jre\lib\zi\America\Indiana folder moved successfully.
C:\Users\Owner\AppData\Roaming\Yuuguu\jre\lib\zi\America\Argentina folder moved successfully.
C:\Users\Owner\AppData\Roaming\Yuuguu\jre\lib\zi\America folder moved successfully.
C:\Users\Owner\AppData\Roaming\Yuuguu\jre\lib\zi\Africa folder moved successfully.
C:\Users\Owner\AppData\Roaming\Yuuguu\jre\lib\zi folder moved successfully.
C:\Users\Owner\AppData\Roaming\Yuuguu\jre\lib\security folder moved successfully.
C:\Users\Owner\AppData\Roaming\Yuuguu\jre\lib\management folder moved successfully.
C:\Users\Owner\AppData\Roaming\Yuuguu\jre\lib\images\cursors folder moved successfully.
C:\Users\Owner\AppData\Roaming\Yuuguu\jre\lib\images folder moved successfully.
C:\Users\Owner\AppData\Roaming\Yuuguu\jre\lib\im folder moved successfully.
C:\Users\Owner\AppData\Roaming\Yuuguu\jre\lib\i386 folder moved successfully.
C:\Users\Owner\AppData\Roaming\Yuuguu\jre\lib\fonts folder moved successfully.
C:\Users\Owner\AppData\Roaming\Yuuguu\jre\lib\ext folder moved successfully.
C:\Users\Owner\AppData\Roaming\Yuuguu\jre\lib\cmm folder moved successfully.
C:\Users\Owner\AppData\Roaming\Yuuguu\jre\lib\audio folder moved successfully.
C:\Users\Owner\AppData\Roaming\Yuuguu\jre\lib\applet folder moved successfully.
C:\Users\Owner\AppData\Roaming\Yuuguu\jre\lib folder moved successfully.
C:\Users\Owner\AppData\Roaming\Yuuguu\jre\bin\client folder moved successfully.
C:\Users\Owner\AppData\Roaming\Yuuguu\jre\bin folder moved successfully.
C:\Users\Owner\AppData\Roaming\Yuuguu\jre folder moved successfully.
C:\Users\Owner\AppData\Roaming\Yuuguu\config folder moved successfully.
C:\Users\Owner\AppData\Roaming\Yuuguu\cache\avatars folder moved successfully.
C:\Users\Owner\AppData\Roaming\Yuuguu\cache folder moved successfully.
C:\Users\Owner\AppData\Roaming\Yuuguu folder moved successfully.
========== COMMANDS ==========
[EMPTYFLASH]
User: All Users
User: Default
User: Default User
User: fbwuser
User: Owner
->Flash cache emptied: 984 bytes
User: Public
User: UpdatusUser
Total Flash Files Cleaned = 0.00 mb
[EMPTYJAVA]
User: All Users
User: Default
User: Default User
User: fbwuser
User: Owner
->Java cache emptied: 45946 bytes
User: Public
User: UpdatusUser
Total Java Files Cleaned = 0.00 mb
OTL by OldTimer - Version 3.2.69.0 log created on 10192013_094418
Files\Folders moved on Reboot...
File\Folder G:\autorun.inf not found!
File\Folder G:\setup.exe not found!
PendingFileRenameOperations files...
Registry entries deleted on Reboot...
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 02-10-2013
Ran by Owner (administrator) on PRABHU on 19-10-2013 09:51:00
Running from C:\Users\Owner\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: English(US)
Internet Explorer Version 10
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TouchService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(AnchorFree Inc.) C:\Program Files (x86)\Hotspot Shield\bin\cmw_srv.exe
() C:\Program Files (x86)\Hotspot Shield\bin\hsswd.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Razer) C:\Program Files (x86)\Razer\Core\64bit\rzovlmon.exe
() C:\Program Files (x86)\Garena Plus\ggdllhost.exe
(Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.165\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.165\GoogleCrashHandler64.exe
(Panda Security) C:\Program Files (x86)\Panda USB Vaccine\USBVaccine.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Korg Inc.) C:\Windows\System32\InitJam.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
(Logitech Inc.) C:\Program Files\Logitech\Gaming Software\LWEMon.exe
() C:\Program Files (x86)\Vtune\TBPANEL.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE
() C:\Program Files (x86)\Garena Plus\GarenaMessenger.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Valve Corporation) C:\Program Files (x86)\steam\Steam.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(Razer) C:\Program Files (x86)\Razer\Core\RazerCore.exe
() C:\Program Files (x86)\VOX\JamVOX\JVExec.exe
(Dropbox, Inc.) C:\Users\Owner\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
(Marvell Inc) C:\ProgramData\Application Data\wmimgmt.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(AnchorFree Inc.) C:\Program Files (x86)\Hotspot Shield\bin\hsscp.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [JamInit] - C:\Windows\system32\InitJam.exe [253008 2009-04-15] (Korg Inc.)
HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1028896 2013-08-28] (NVIDIA Corporation)
HKLM\...\Run: [Start WingMan Profiler] - C:\Program Files\Logitech\Gaming Software\LWEMon.exe [190536 2010-06-15] (Logitech Inc.)
HKCU\...\Run: [TBPanel] - C:\Program Files (x86)\Vtune\TBPanel.exe [2248704 2011-08-02] ()
HKCU\...\Run: [OfficeSyncProcess] - C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE [717696 2010-01-16] (Microsoft Corporation)
HKCU\...\Run: [GarenaPlus] - C:\Program Files (x86)\Garena Plus\GarenaMessenger.exe [9739056 2013-08-06] ()
HKCU\...\Run: [DAEMON Tools Lite] - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3674320 2013-01-08] (DT Soft Ltd)
HKCU\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [19875432 2013-06-21] (Skype Technologies S.A.)
HKCU\...\Run: [Steam] - C:\program files (x86)\steam\Steam.exe [1813928 2013-10-09] (Valve Corporation)
HKCU\...\Run: [GoogleDriveSync] - C:\Program Files (x86)\Google\Drive\googledrivesync.exe [20133824 2013-09-25] (Google)
HKCU\...\Run: [Razer Comms] - C:\Program Files (x86)\Razer\Core\RazerCore.exe [1091264 2013-08-27] (Razer)
HKCU\...\Run: [wmi32] - C:\ProgramData\Application Data\wmimgmt.exe [0 ] (Marvell Inc)
MountPoints2: G - G:\Autorun.exe
MountPoints2: {4d54b29f-69f0-11e2-8ad2-8c89a58433e4} - G:\setup.exe
HKLM-x32\...\Run: [NUSB3MON] - C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-11-17] (Renesas Electronics Corporation)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-05] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [BCSSync] - C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [91520 2010-01-21] (Microsoft Corporation)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation)
HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-08-16] (Apple Inc.)
Startup: C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Owner\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache =
http://xin.msn.com/?...&ocid=iehp&tc=2
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x6C74DD0E4612CE01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-US
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: BitComet Helper - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.5.4.11.dll (BitComet)
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
DPF: HKLM-x32 {5D6F45B3-9043-443D-A792-115447494D24}
http://messenger.zon...1/GAME_UNO1.cab
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000}
http://fpdownload2.m...ash/swflash.cab
DPF: HKLM-x32 {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48}
http://messenger.zon...er.cab56986.cab
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.254
FireFox:
========
FF ProfilePath: C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\11n5c59f.default
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll ()
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @t.garena.com/garenatalk - C:\Program Files (x86)\Garena Plus\bbtalk\plugins\npPlugin\npGarenaTalkPlugin.dll ( Garena)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @wacom.com/wacom-plugin,version=1.1.0.10 - C:\Program Files (x86)\TabletPlugins\npwacom.dll (Wacom, Inc.)
FF Plugin-x32: @wacom.com/wtPlugin,version=2.0.0.6 - C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll (Wacom)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: wacom.com/WacomTabletPlugin - C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll (Wacom)
FF Extension: Виявлення пристроїв Logitech - C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\11n5c59f.default\Extensions\
[email protected]
FF Extension: BitComet 视频下载器 - C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\11n5c59f.default\Extensions\{B042753D-F57E-4e8e-A01B-7379A6D4CEFB}
FF Extension: No Name - C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\11n5c59f.default\Extensions\{35106bca-6c78-48c7-ac28-56df30b51d2a}.xpi
FF Extension: No Name - C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\11n5c59f.default\Extensions\{c0c9a2c7-2e5c-4447-bc53-97718bc91e1b}.xpi
FF Extension: No Name - C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\11n5c59f.default\Extensions\{CE6E6E3B-84DD-4cac-9F63-8D2AE4F30A4B}.xpi
FF Extension: No Name - C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\11n5c59f.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
FF Extension: No Name - C:\Users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\11n5c59f.default\Extensions\{f701c26a-479a-4724-b4f1-870db12f063c}.xpi
FF Extension: Hotspot Shield Helper (Please allow this installation) - C:\Program Files (x86)\Mozilla Firefox\extensions\
[email protected]
FF Extension: Hotspot Shield Extension - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\
[email protected]
Chrome:
=======
CHR HomePage: hxxp://www.google.com/
CHR DefaultSearchURL: (Google) -
https://www.google.c...q=t&channel=rcs
CHR DefaultSuggestURL: (Google) -
https://www.google.c...q={searchTerms}
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\30.0.1599.69\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\30.0.1599.69\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\30.0.1599.69\pdf.dll ()
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (BitCometAgent) - C:\Program Files (x86)\Mozilla Firefox\plugins\npBitCometAgent.dll (BitComet)
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll No File
CHR Plugin: (Java Platform SE 7 U21) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
CHR Plugin: (Silverlight Plug-In) - C:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll No File
CHR Plugin: (NVIDIA 3D Vision) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
CHR Plugin: (NVIDIA 3D VISION) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
CHR Plugin: (WacomTabletPlugin) - C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll (Wacom)
CHR Plugin: ( Wacom Dynamic Link Library) - C:\Program Files (x86)\TabletPlugins\npwacom.dll (Wacom, Inc.)
CHR Plugin: (iTunes Application Detector) - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_6_602_180.dll No File
CHR Extension: (Google Docs) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0
CHR Extension: (Google Drive) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0
CHR Extension: (YouTube) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
CHR Extension: (Google Search) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
CHR Extension: (AdBlock) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.10_0
CHR Extension: (Dropdown List of Most Visited Links) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\logbmehmiacemkimbpcbjgaikobdndah\0.5_0
CHR Extension: (Chrome In-App Payments service) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_0
CHR Extension: (Gmail) - C:\Users\Owner\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0
==================== Services (Whitelisted) =================
R2 hshld; C:\Program Files (x86)\Hotspot Shield\bin\cmw_srv.exe [878888 2013-09-18] (AnchorFree Inc.)
S3 HssTrayService; C:\Program Files (x86)\Hotspot Shield\bin\HssTrayService.EXE [78512 2013-09-18] ()
R2 HssWd; C:\Program Files (x86)\Hotspot Shield\bin\hsswd.exe [556840 2013-09-18] ()
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
S3 npggsvc; C:\Windows\SysWow64\GameMon.des [5117384 2013-04-30] (INCA Internet Co., Ltd.)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [14997280 2013-08-28] (NVIDIA Corporation)
R2 RzOvlMon; C:\Program Files (x86)\Razer\Core\64bit\rzovlmon.exe [32960 2013-08-27] (Razer)
S3 TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [757144 2013-08-16] (Tunngle.net GmbH)
==================== Drivers (Whitelisted) ====================
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2013-01-29] (DT Soft Ltd)
R1 HssDRV6; C:\Windows\System32\DRIVERS\hssdrv6.sys [46792 2013-09-18] (AnchorFree Inc.)
R3 JAMVOX_01; C:\Windows\System32\DRIVERS\JamWdm.sys [31824 2009-04-15] ()
R1 JAMVOX_AA; C:\Windows\System32\DRIVERS\JamDRV.sys [62544 2009-04-15] ()
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-08-20] (NVIDIA Corporation)
R3 RzDxgk; C:\Windows\system32\drivers\RzDxgk.sys [128984 2013-08-27] (Razer USA Ltd)
R0 RzFilter; C:\Windows\System32\drivers\RzFilter.sys [74456 2013-08-27] (Razer USA Ltd)
R3 tap0901t; C:\Windows\System32\DRIVERS\tap0901t.sys [31232 2009-09-16] (Tunngle.net)
R3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42184 2013-04-25] (Anchorfree Inc.)
S3 GGSAFERDriver; \??\C:\Program Files (x86)\Garena Plus\Room\safedrv.sys [x]
S3 JamVOXUSBAudioSrv; system32\drivers\jamvox.sys [x]
S3 NTIOLib_1_0_C; \??\E:\NTIOLib_X64.sys [x]
S3 TBPanel; No ImagePath
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-10-19 09:50 - 2013-10-19 09:50 - 01954124 _____ (Farbar) C:\Users\Owner\Downloads\FRST64.exe
2013-10-19 09:50 - 2013-10-19 09:50 - 01954124 _____ (Farbar) C:\Users\Owner\Desktop\FRST64.exe
2013-10-19 09:50 - 2013-10-19 09:50 - 00000000 ____D C:\FRST
2013-10-19 09:48 - 2013-10-19 09:48 - 00017640 _____ C:\Users\Owner\Desktop\10192013_094418.log
2013-10-19 09:44 - 2013-10-19 09:44 - 00000000 ____D C:\_OTL
2013-10-17 22:53 - 2013-10-17 22:53 - 00104885 _____ C:\Users\Owner\Downloads\[kickass.to]wowgirls.lets.come.together.paloma.and.klara.1080p.mp4.torrent
2013-10-17 22:52 - 2013-10-17 22:52 - 00011271 _____ C:\Users\Owner\Downloads\[kickass.to]wowgirls.alyona.klara.paloma.strap.on.adventure.torrent
2013-10-17 22:52 - 2013-10-17 22:52 - 00011271 _____ C:\Users\Owner\Downloads\[kickass.to]wowgirls.alyona.klara.paloma.strap.on.adventure (1).torrent
2013-10-17 22:49 - 2013-10-17 22:49 - 00034444 _____ C:\Users\Owner\Downloads\[kickass.to]younglegalporn.klara.take.me.right.here.torrent
2013-10-17 11:37 - 2013-10-17 11:37 - 00085800 _____ C:\Users\Owner\Desktop\Extras.Txt
2013-10-17 11:36 - 2013-10-17 11:36 - 00120468 _____ C:\Users\Owner\Desktop\OTL.Txt
2013-10-17 11:32 - 2013-10-17 11:32 - 00602112 _____ (OldTimer Tools) C:\Users\Owner\Downloads\OTL.exe
2013-10-17 11:32 - 2013-10-17 11:32 - 00602112 _____ (OldTimer Tools) C:\Users\Owner\Desktop\OTL.exe
2013-10-17 10:16 - 2013-10-17 10:16 - 01198941 _____ C:\Users\Owner\Downloads\Folder_SLFiles (4).zip
2013-10-17 10:16 - 2013-10-17 10:16 - 01198941 _____ C:\Users\Owner\Desktop\Folder_SLFiles (4).zip
2013-10-15 16:14 - 2013-10-15 16:14 - 00000897 _____ C:\Users\Owner\Desktop\Yuuguu.lnk
2013-10-15 16:14 - 2013-10-15 16:14 - 00000000 ____D C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Yuuguu
2013-10-15 15:51 - 2013-10-15 15:52 - 13122144 _____ C:\Users\Owner\Downloads\yuuguu-PC-installer.exe
2013-10-15 11:02 - 2013-09-04 20:12 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2013-10-15 11:02 - 2013-09-04 20:11 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2013-10-15 11:02 - 2013-09-04 20:11 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2013-10-15 11:02 - 2013-09-04 20:11 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2013-10-15 11:02 - 2013-09-04 20:11 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2013-10-15 11:02 - 2013-09-04 20:11 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2013-10-15 11:02 - 2013-09-04 20:11 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2013-10-14 22:36 - 2013-10-18 23:11 - 00000220 _____ C:\Users\Owner\Desktop\Sid Meier's Civilization V.url
2013-10-13 08:20 - 2013-10-13 08:20 - 00000000 ____D C:\Users\Default\AppData\Local\Google
2013-10-13 08:20 - 2013-10-13 08:20 - 00000000 ____D C:\Users\Default User\AppData\Local\Google
2013-10-12 15:55 - 2013-10-12 15:54 - 00370894 _____ C:\Users\Owner\Desktop\refacilitiesmaintainabilityinterviewrequestfromnusst.zip
2013-10-12 15:54 - 2013-10-12 15:54 - 00370894 _____ C:\Users\Owner\Downloads\refacilitiesmaintainabilityinterviewrequestfromnusst.zip
2013-10-10 23:13 - 2013-09-23 07:28 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-10-10 23:13 - 2013-09-23 07:28 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-10-10 23:13 - 2013-09-23 07:27 - 14335488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-10-10 23:13 - 2013-09-23 07:27 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-10-10 23:13 - 2013-09-23 07:27 - 02876928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-10-10 23:13 - 2013-09-23 07:27 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-10-10 23:13 - 2013-09-23 07:27 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-10-10 23:13 - 2013-09-23 07:27 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-10-10 23:13 - 2013-09-23 07:27 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-10-10 23:13 - 2013-09-23 07:27 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-10-10 23:13 - 2013-09-23 07:27 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-10-10 23:13 - 2013-09-23 07:27 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-10-10 23:13 - 2013-09-23 07:27 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-10-10 23:13 - 2013-09-23 06:55 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-10-10 23:13 - 2013-09-23 06:55 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-10-10 23:13 - 2013-09-23 06:55 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-10-10 23:13 - 2013-09-23 06:54 - 19252224 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-10-10 23:13 - 2013-09-23 06:54 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-10-10 23:13 - 2013-09-23 06:54 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-10-10 23:13 - 2013-09-23 06:54 - 02647552 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-10-10 23:13 - 2013-09-23 06:54 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-10-10 23:13 - 2013-09-23 06:54 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-10-10 23:13 - 2013-09-23 06:54 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-10-10 23:13 - 2013-09-23 06:54 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-10-10 23:13 - 2013-09-23 06:54 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-10-10 23:13 - 2013-09-23 06:54 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-10-10 23:13 - 2013-09-23 06:54 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-10-10 23:13 - 2013-09-21 11:38 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-10-10 23:13 - 2013-09-21 11:30 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-10-10 23:13 - 2013-09-21 10:48 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-10-10 23:13 - 2013-09-21 10:39 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-10-10 22:06 - 2013-07-04 20:50 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2013-10-10 22:06 - 2013-07-04 19:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2013-10-10 22:06 - 2013-06-06 13:50 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2013-10-10 22:06 - 2013-06-06 13:49 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2013-10-10 22:06 - 2013-06-06 13:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2013-10-10 22:06 - 2013-06-06 13:47 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2013-10-10 22:06 - 2013-06-06 12:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2013-10-10 22:06 - 2013-06-06 12:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2013-10-10 22:06 - 2013-06-06 12:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2013-10-10 22:06 - 2013-06-06 11:30 - 00368128 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2013-10-10 22:06 - 2013-06-06 11:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2013-10-10 22:06 - 2013-06-06 11:01 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2013-10-10 22:05 - 2013-09-14 09:10 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2013-10-10 22:05 - 2013-09-08 10:30 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2013-10-10 22:05 - 2013-09-08 10:27 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2013-10-10 22:05 - 2013-09-08 10:03 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2013-10-10 22:05 - 2013-07-12 18:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys
2013-10-10 22:05 - 2013-07-12 18:40 - 00109824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBAUDIO.sys
2013-10-10 22:05 - 2013-07-04 20:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2013-10-10 22:05 - 2013-07-04 20:50 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2013-10-10 22:05 - 2013-07-04 19:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2013-10-10 22:05 - 2013-07-04 19:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2013-10-10 22:05 - 2013-07-04 18:11 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2013-10-10 22:05 - 2013-07-03 12:40 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbscan.sys
2013-10-10 22:05 - 2013-07-03 12:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2013-10-10 22:05 - 2013-07-03 12:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2013-10-10 22:05 - 2013-06-26 06:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2013-10-10 22:04 - 2013-08-29 10:17 - 05549504 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2013-10-10 22:04 - 2013-08-29 10:16 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2013-10-10 22:04 - 2013-08-29 10:16 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2013-10-10 22:04 - 2013-08-29 10:16 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2013-10-10 22:04 - 2013-08-29 10:13 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2013-10-10 22:04 - 2013-08-29 09:51 - 03969472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2013-10-10 22:04 - 2013-08-29 09:51 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2013-10-10 22:04 - 2013-08-29 09:50 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2013-10-10 22:04 - 2013-08-29 09:50 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2013-10-10 22:04 - 2013-08-29 09:50 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2013-10-10 22:04 - 2013-08-29 09:48 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2013-10-10 22:04 - 2013-08-29 08:49 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2013-10-10 22:04 - 2013-08-29 08:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2013-10-10 22:04 - 2013-08-29 08:49 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2013-10-10 22:04 - 2013-08-29 08:49 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2013-10-10 22:04 - 2013-08-28 09:21 - 03155968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-10-10 22:04 - 2013-08-01 20:09 - 00983488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2013-10-10 22:04 - 2013-07-20 18:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-10-10 22:04 - 2013-07-20 18:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-10-10 22:03 - 2013-08-28 09:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2013-10-08 08:49 - 2013-10-08 08:49 - 00000000 ____D C:\Users\Owner\AppData\Local\CrashDumps
2013-10-03 11:22 - 2013-10-03 11:22 - 09786880 _____ C:\Users\Owner\Downloads\PF3302 Lecture 1 LSE 2012 (2).ppt
2013-10-02 21:44 - 2013-10-02 21:44 - 01439232 _____ C:\Users\Owner\Downloads\PF3302 Lecture 2 LSE 2010.ppt
2013-10-02 21:43 - 2013-10-02 21:43 - 09786880 _____ C:\Users\Owner\Downloads\PF3302 Lecture 1 LSE 2012 (1).ppt
2013-10-02 21:41 - 2013-10-02 21:41 - 09786880 _____ C:\Users\Owner\Downloads\PF3302 Lecture 1 LSE 2012.ppt
2013-10-02 21:41 - 2013-10-02 21:41 - 06520832 _____ C:\Users\Owner\Downloads\Lecture - CS11 - 2013 updated (1).ppt
2013-10-02 21:40 - 2013-10-02 21:40 - 00474112 _____ C:\Users\Owner\Downloads\Lecture - CS9and10 - 2011 (3).ppt
2013-10-02 21:40 - 2013-10-02 21:40 - 00474112 _____ C:\Users\Owner\Downloads\Lecture - CS9and10 - 2011 (2).ppt
2013-10-02 07:18 - 2013-09-27 16:57 - 30334752 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2013-10-02 07:18 - 2013-09-27 16:57 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2013-10-02 07:18 - 2013-09-27 16:57 - 22925088 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2013-10-02 07:18 - 2013-09-27 16:57 - 18229224 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2013-10-02 07:18 - 2013-09-27 16:57 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2013-10-02 07:18 - 2013-09-27 16:57 - 15832920 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2013-10-02 07:18 - 2013-09-27 16:57 - 12528416 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2013-10-02 07:18 - 2013-09-27 16:57 - 11345168 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2013-10-02 07:18 - 2013-09-27 16:57 - 11292144 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2013-10-02 07:18 - 2013-09-27 16:57 - 09480840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2013-10-02 07:18 - 2013-09-27 16:57 - 09436544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2013-10-02 07:18 - 2013-09-27 16:57 - 03130144 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2013-10-02 07:18 - 2013-09-27 16:57 - 03121952 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll
2013-10-02 07:18 - 2013-09-27 16:57 - 02945312 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2013-10-02 07:18 - 2013-09-27 16:57 - 02745632 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll
2013-10-02 07:18 - 2013-09-27 16:57 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433140.dll
2013-10-02 07:18 - 2013-09-27 16:57 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433140.dll
2013-10-02 07:18 - 2013-09-27 16:57 - 01239304 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2013-10-02 07:18 - 2013-09-27 16:57 - 00696096 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2013-10-02 07:18 - 2013-09-27 16:57 - 00654624 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2013-10-02 07:18 - 2013-09-27 16:57 - 00599840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2013-10-02 07:18 - 2013-09-27 16:57 - 00559904 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2013-10-02 07:18 - 2013-09-27 16:57 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2013-10-02 07:18 - 2013-09-27 16:57 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2013-10-02 07:18 - 2013-09-27 16:57 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2013-10-02 07:18 - 2013-09-27 16:57 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2013-10-01 23:27 - 2013-10-01 23:27 - 00065182 _____ C:\Users\Owner\Desktop\Prabhu-IT1004slides.pptx
2013-09-29 22:14 - 2013-10-19 09:46 - 00011500 _____ C:\Windows\setupact.log
2013-09-29 22:14 - 2013-09-29 22:14 - 00000000 _____ C:\Windows\setuperr.log
2013-09-29 21:45 - 2013-09-29 21:45 - 00003042 _____ C:\Windows\System32\Tasks\PandaUSBVaccine
2013-09-29 21:45 - 2013-09-29 21:45 - 00000000 ____D C:\ProgramData\Panda Security
2013-09-29 21:45 - 2013-09-29 21:45 - 00000000 ____D C:\Program Files (x86)\Panda USB Vaccine
2013-09-29 21:44 - 2013-09-29 21:44 - 00823346 _____ C:\Users\Owner\Downloads\USBVaccine.zip
2013-09-29 21:44 - 2013-09-29 21:44 - 00000000 ____D C:\Users\Owner\Desktop\usbvaccine
2013-09-29 21:38 - 2013-09-29 21:38 - 00132597 _____ C:\Users\Owner\Desktop\Flash_Disinfector.exe
2013-09-29 21:12 - 2013-09-29 21:12 - 00000349 _____ C:\Users\Owner\Downloads\RegisterActxprxyAndIeproxy.zip
2013-09-29 21:03 - 2013-09-29 21:03 - 00000541 _____ C:\Users\Owner\Downloads\Elevated_Command_Prompt.zip
2013-09-29 20:48 - 2013-09-29 20:48 - 00003090 _____ C:\Windows\System32\Tasks\{B64D6685-769D-4AE9-AD29-55343D8256E9}
2013-09-27 23:50 - 2013-09-28 16:38 - 04860346 _____ C:\Users\Owner\Desktop\TP1_V12.pptx
2013-09-27 14:00 - 2013-09-27 14:10 - 00000000 ____D C:\Users\Owner\Desktop\Maintainability
2013-09-27 13:32 - 2013-09-27 13:32 - 00258048 ____N (Marvell Inc) C:\ProgramData\wmimgmt.exe
2013-09-27 13:10 - 2013-10-15 23:30 - 00000000 ____D C:\Users\Owner\Desktop\scheduling
2013-09-27 02:37 - 2013-09-27 02:37 - 00587040 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2013-09-24 22:15 - 2013-10-19 09:48 - 00224256 _____ C:\Users\Owner\AppData\Roaming\RZR_006005584beb94ed127de6940afb.db
2013-09-24 22:13 - 2013-09-24 22:13 - 00000000 ____D C:\Users\Owner\AppData\Local\Razer
2013-09-24 22:04 - 2013-09-24 22:04 - 00001242 _____ C:\Users\Public\Desktop\Razer Comms.lnk
2013-09-24 22:04 - 2013-09-24 22:04 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_RzFilter_01009.Wdf
2013-09-24 22:04 - 2013-09-24 22:04 - 00000000 ____D C:\Windows\Razer Core
2013-09-24 22:04 - 2013-09-24 22:04 - 00000000 ____D C:\ProgramData\Razer
2013-09-24 22:04 - 2013-09-24 22:04 - 00000000 ____D C:\Program Files (x86)\Razer
2013-09-24 22:04 - 2013-08-27 03:05 - 00128984 _____ (Razer USA Ltd) C:\Windows\system32\Drivers\RzDxgk.sys
2013-09-24 22:04 - 2013-08-27 03:05 - 00074456 _____ (Razer USA Ltd) C:\Windows\system32\Drivers\RzFilter.sys
2013-09-24 22:03 - 2013-09-24 22:04 - 39691960 _____ (Razer Inc.) C:\Users\Owner\Downloads\RazerComms1.60.26.exe
2013-09-23 21:22 - 2013-09-23 23:40 - 00000639 _____ C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\3d Girlz.lnk
2013-09-23 21:22 - 2013-09-23 23:40 - 00000611 _____ C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\3d Girlz Uninstall.lnk
2013-09-23 21:21 - 2013-09-23 21:21 - 00000056 _____ C:\Windows\kgt2k.INI
2013-09-23 03:20 - 2013-09-18 04:31 - 00046792 _____ (AnchorFree Inc.) C:\Windows\system32\Drivers\hssdrv6.sys
2013-09-22 13:01 - 2013-09-22 13:01 - 00038748 _____ C:\Users\Owner\Downloads\[kickass.to]the.queen.of.fighters.hentai.mugen.fullgame.final.version.torrent
2013-09-21 20:22 - 2013-09-21 20:40 - 00155960 _____ C:\Users\Owner\Desktop\timelines.pptx
2013-09-21 11:02 - 2013-10-19 09:47 - 00000000 ___RD C:\Users\Owner\Google Drive
2013-09-21 11:02 - 2013-09-21 11:02 - 00001653 _____ C:\Users\Owner\Desktop\Google Drive.lnk
2013-09-21 11:01 - 2013-09-21 11:01 - 00002044 _____ C:\Users\Public\Desktop\Google Slides.lnk
2013-09-21 11:01 - 2013-09-21 11:01 - 00002040 _____ C:\Users\Public\Desktop\Google Sheets.lnk
2013-09-21 11:01 - 2013-09-21 11:01 - 00002028 _____ C:\Users\Public\Desktop\Google Docs.lnk
2013-09-21 11:00 - 2013-09-21 11:00 - 00784832 _____ (Google Inc.) C:\Users\Owner\Downloads\googledrivesync.exe
2013-09-20 22:03 - 2013-09-12 16:58 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6432723.dll
2013-09-20 22:03 - 2013-09-12 16:58 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6432723.dll
2013-09-19 22:46 - 2013-09-19 22:46 - 06520832 _____ C:\Users\Owner\Downloads\Lecture - CS11 - 2013 updated.ppt
2013-09-19 22:45 - 2013-09-19 22:45 - 00474112 _____ C:\Users\Owner\Downloads\Lecture - CS9and10 - 2011 (1).ppt
==================== One Month Modified Files and Folders =======
2013-10-19 09:50 - 2013-10-19 09:50 - 01954124 _____ (Farbar) C:\Users\Owner\Downloads\FRST64.exe
2013-10-19 09:50 - 2013-10-19 09:50 - 01954124 _____ (Farbar) C:\Users\Owner\Desktop\FRST64.exe
2013-10-19 09:50 - 2013-10-19 09:50 - 00000000 ____D C:\FRST
2013-10-19 09:50 - 2012-12-24 12:09 - 00000000 ____D C:\Users\Owner\AppData\Roaming\GarenaPlus
2013-10-19 09:50 - 2012-12-24 12:05 - 00000000 ____D C:\ProgramData\GarenaMessenger
2013-10-19 09:49 - 2013-05-31 23:41 - 00000000 ____D C:\Program Files (x86)\steam
2013-10-19 09:49 - 2012-10-18 20:29 - 00000000 ____D C:\Users\Owner\AppData\Roaming\Skype
2013-10-19 09:48 - 2013-10-19 09:48 - 00017640 _____ C:\Users\Owner\Desktop\10192013_094418.log
2013-10-19 09:48 - 2013-09-24 22:15 - 00224256 _____ C:\Users\Owner\AppData\Roaming\RZR_006005584beb94ed127de6940afb.db
2013-10-19 09:47 - 2013-09-21 11:02 - 00000000 ___RD C:\Users\Owner\Google Drive
2013-10-19 09:47 - 2012-04-05 22:33 - 00000000 ___RD C:\Users\Owner\Dropbox
2013-10-19 09:47 - 2012-04-05 22:31 - 00000000 ____D C:\Users\Owner\AppData\Roaming\Dropbox
2013-10-19 09:46 - 2013-09-29 22:14 - 00011500 _____ C:\Windows\setupact.log
2013-10-19 09:46 - 2013-05-02 20:52 - 00000892 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-10-19 09:46 - 2012-12-25 10:40 - 00003496 _____ C:\Windows\System32\Tasks\gg_uac_daemon_Owner
2013-10-19 09:46 - 2012-03-10 20:00 - 00000000 ____D C:\ProgramData\NVIDIA
2013-10-19 09:46 - 2009-07-14 13:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-10-19 09:44 - 2013-10-19 09:44 - 00000000 ____D C:\_OTL
2013-10-19 09:44 - 2012-03-10 19:36 - 00000000 ___RD C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-10-19 09:44 - 2012-03-10 19:35 - 01656129 _____ C:\Windows\WindowsUpdate.log
2013-10-19 09:44 - 2009-07-14 12:45 - 00022064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-10-19 09:44 - 2009-07-14 12:45 - 00022064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-10-19 02:17 - 2012-04-26 06:05 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-10-19 02:16 - 2013-05-02 20:52 - 00000896 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-10-18 23:11 - 2013-10-14 22:36 - 00000220 _____ C:\Users\Owner\Desktop\Sid Meier's Civilization V.url
2013-10-17 23:41 - 2012-03-11 14:58 - 00000000 ____D C:\Users\Owner\AppData\Roaming\BitComet
2013-10-17 22:53 - 2013-10-17 22:53 - 00104885 _____ C:\Users\Owner\Downloads\[kickass.to]wowgirls.lets.come.together.paloma.and.klara.1080p.mp4.torrent
2013-10-17 22:52 - 2013-10-17 22:52 - 00011271 _____ C:\Users\Owner\Downloads\[kickass.to]wowgirls.alyona.klara.paloma.strap.on.adventure.torrent
2013-10-17 22:52 - 2013-10-17 22:52 - 00011271 _____ C:\Users\Owner\Downloads\[kickass.to]wowgirls.alyona.klara.paloma.strap.on.adventure (1).torrent
2013-10-17 22:49 - 2013-10-17 22:49 - 00034444 _____ C:\Users\Owner\Downloads\[kickass.to]younglegalporn.klara.take.me.right.here.torrent
2013-10-17 11:37 - 2013-10-17 11:37 - 00085800 _____ C:\Users\Owner\Desktop\Extras.Txt
2013-10-17 11:36 - 2013-10-17 11:36 - 00120468 _____ C:\Users\Owner\Desktop\OTL.Txt
2013-10-17 11:32 - 2013-10-17 11:32 - 00602112 _____ (OldTimer Tools) C:\Users\Owner\Downloads\OTL.exe
2013-10-17 11:32 - 2013-10-17 11:32 - 00602112 _____ (OldTimer Tools) C:\Users\Owner\Desktop\OTL.exe
2013-10-17 10:16 - 2013-10-17 10:16 - 01198941 _____ C:\Users\Owner\Downloads\Folder_SLFiles (4).zip
2013-10-17 10:16 - 2013-10-17 10:16 - 01198941 _____ C:\Users\Owner\Desktop\Folder_SLFiles (4).zip
2013-10-15 23:30 - 2013-09-27 13:10 - 00000000 ____D C:\Users\Owner\Desktop\scheduling
2013-10-15 16:14 - 2013-10-15 16:14 - 00000897 _____ C:\Users\Owner\Desktop\Yuuguu.lnk
2013-10-15 16:14 - 2013-10-15 16:14 - 00000000 ____D C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Yuuguu
2013-10-15 15:52 - 2013-10-15 15:51 - 13122144 _____ C:\Users\Owner\Downloads\yuuguu-PC-installer.exe
2013-10-14 22:36 - 2012-12-19 21:23 - 00000000 ____D C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2013-10-13 08:20 - 2013-10-13 08:20 - 00000000 ____D C:\Users\Default\AppData\Local\Google
2013-10-13 08:20 - 2013-10-13 08:20 - 00000000 ____D C:\Users\Default User\AppData\Local\Google
2013-10-12 15:54 - 2013-10-12 15:55 - 00370894 _____ C:\Users\Owner\Desktop\refacilitiesmaintainabilityinterviewrequestfromnusst.zip
2013-10-12 15:54 - 2013-10-12 15:54 - 00370894 _____ C:\Users\Owner\Downloads\refacilitiesmaintainabilityinterviewrequestfromnusst.zip
2013-10-12 15:38 - 2012-09-23 18:55 - 00000000 _____ C:\Windows\SysWOW64\Access.dat
2013-10-12 12:42 - 2012-04-05 22:33 - 00000979 _____ C:\Users\Owner\Desktop\Dropbox.lnk
2013-10-12 12:42 - 2012-04-05 22:32 - 00000000 ____D C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2013-10-11 22:11 - 2013-05-02 20:52 - 00003892 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2013-10-11 22:11 - 2013-05-02 20:52 - 00003640 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2013-10-11 06:43 - 2009-07-14 13:13 - 00779306 _____ C:\Windows\system32\PerfStringBackup.INI
2013-10-11 06:36 - 2012-03-11 11:30 - 00000000 ____D C:\Windows\Panther
2013-10-11 06:36 - 2009-07-14 12:45 - 00607288 _____ C:\Windows\system32\FNTCACHE.DAT
2013-10-10 23:14 - 2012-03-14 20:05 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-10-10 23:12 - 2013-03-27 21:09 - 00773030 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2013-10-10 23:12 - 2012-05-18 11:02 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2013-10-10 23:12 - 2012-05-18 11:02 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2013-10-10 23:10 - 2013-07-30 00:05 - 00000000 ____D C:\Windows\system32\MRT
2013-10-10 23:09 - 2013-05-02 21:27 - 80541720 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-10-09 23:17 - 2012-04-26 06:05 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-10-09 23:17 - 2012-04-26 06:05 - 00003768 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-10-09 23:17 - 2012-03-10 22:01 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-10-08 15:29 - 2013-09-02 18:21 - 00000000 ____D C:\Users\Owner\Desktop\IT1004
2013-10-08 08:49 - 2013-10-08 08:49 - 00000000 ____D C:\Users\Owner\AppData\Local\CrashDumps
2013-10-07 23:11 - 2013-05-02 20:53 - 00002183 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2013-10-03 11:22 - 2013-10-03 11:22 - 09786880 _____ C:\Users\Owner\Downloads\PF3302 Lecture 1 LSE 2012 (2).ppt
2013-10-02 21:44 - 2013-10-02 21:44 - 01439232 _____ C:\Users\Owner\Downloads\PF3302 Lecture 2 LSE 2010.ppt
2013-10-02 21:43 - 2013-10-02 21:43 - 09786880 _____ C:\Users\Owner\Downloads\PF3302 Lecture 1 LSE 2012 (1).ppt
2013-10-02 21:41 - 2013-10-02 21:41 - 09786880 _____ C:\Users\Owner\Downloads\PF3302 Lecture 1 LSE 2012.ppt
2013-10-02 21:41 - 2013-10-02 21:41 - 06520832 _____ C:\Users\Owner\Downloads\Lecture - CS11 - 2013 updated (1).ppt
2013-10-02 21:40 - 2013-10-02 21:40 - 00474112 _____ C:\Users\Owner\Downloads\Lecture - CS9and10 - 2011 (3).ppt
2013-10-02 21:40 - 2013-10-02 21:40 - 00474112 _____ C:\Users\Owner\Downloads\Lecture - CS9and10 - 2011 (2).ppt
2013-10-02 07:20 - 2012-03-10 20:00 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2013-10-01 23:27 - 2013-10-01 23:27 - 00065182 _____ C:\Users\Owner\Desktop\Prabhu-IT1004slides.pptx
2013-10-01 17:46 - 2009-07-14 11:20 - 00000000 ____D C:\Windows\system32\NDF
2013-09-29 22:14 - 2013-09-29 22:14 - 00000000 _____ C:\Windows\setuperr.log
2013-09-29 22:11 - 2012-03-11 14:51 - 00000000 ____D C:\Users\Owner\Documents\CCLEANER
2013-09-29 21:45 - 2013-09-29 21:45 - 00003042 _____ C:\Windows\System32\Tasks\PandaUSBVaccine
2013-09-29 21:45 - 2013-09-29 21:45 - 00000000 ____D C:\ProgramData\Panda Security
2013-09-29 21:45 - 2013-09-29 21:45 - 00000000 ____D C:\Program Files (x86)\Panda USB Vaccine
2013-09-29 21:44 - 2013-09-29 21:44 - 00823346 _____ C:\Users\Owner\Downloads\USBVaccine.zip
2013-09-29 21:44 - 2013-09-29 21:44 - 00000000 ____D C:\Users\Owner\Desktop\usbvaccine
2013-09-29 21:38 - 2013-09-29 21:38 - 00132597 _____ C:\Users\Owner\Desktop\Flash_Disinfector.exe
2013-09-29 21:12 - 2013-09-29 21:12 - 00000349 _____ C:\Users\Owner\Downloads\RegisterActxprxyAndIeproxy.zip
2013-09-29 21:03 - 2013-09-29 21:03 - 00000541 _____ C:\Users\Owner\Downloads\Elevated_Command_Prompt.zip
2013-09-29 20:48 - 2013-09-29 20:48 - 00003090 _____ C:\Windows\System32\Tasks\{B64D6685-769D-4AE9-AD29-55343D8256E9}
2013-09-28 16:38 - 2013-09-27 23:50 - 04860346 _____ C:\Users\Owner\Desktop\TP1_V12.pptx
2013-09-28 00:27 - 2012-03-10 22:55 - 00000000 ____D C:\Users\Owner\AppData\Roaming\vlc
2013-09-27 16:57 - 2013-10-02 07:18 - 30334752 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2013-09-27 16:57 - 2013-10-02 07:18 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2013-09-27 16:57 - 2013-10-02 07:18 - 22925088 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2013-09-27 16:57 - 2013-10-02 07:18 - 18229224 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2013-09-27 16:57 - 2013-10-02 07:18 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2013-09-27 16:57 - 2013-10-02 07:18 - 15832920 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2013-09-27 16:57 - 2013-10-02 07:18 - 12528416 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2013-09-27 16:57 - 2013-10-02 07:18 - 11345168 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2013-09-27 16:57 - 2013-10-02 07:18 - 11292144 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2013-09-27 16:57 - 2013-10-02 07:18 - 09480840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2013-09-27 16:57 - 2013-10-02 07:18 - 09436544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2013-09-27 16:57 - 2013-10-02 07:18 - 03130144 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2013-09-27 16:57 - 2013-10-02 07:18 - 03121952 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll
2013-09-27 16:57 - 2013-10-02 07:18 - 02945312 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2013-09-27 16:57 - 2013-10-02 07:18 - 02745632 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll
2013-09-27 16:57 - 2013-10-02 07:18 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433140.dll
2013-09-27 16:57 - 2013-10-02 07:18 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433140.dll
2013-09-27 16:57 - 2013-10-02 07:18 - 01239304 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2013-09-27 16:57 - 2013-10-02 07:18 - 00696096 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2013-09-27 16:57 - 2013-10-02 07:18 - 00654624 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2013-09-27 16:57 - 2013-10-02 07:18 - 00599840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2013-09-27 16:57 - 2013-10-02 07:18 - 00559904 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2013-09-27 16:57 - 2013-10-02 07:18 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2013-09-27 16:57 - 2013-10-02 07:18 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2013-09-27 16:57 - 2013-10-02 07:18 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2013-09-27 16:57 - 2013-10-02 07:18 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2013-09-27 16:57 - 2012-10-12 00:34 - 15232424 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2013-09-27 16:57 - 2012-03-10 21:42 - 18259624 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2013-09-27 16:57 - 2012-03-10 21:42 - 01432408 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2013-09-27 16:57 - 2012-03-10 20:00 - 03052616 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2013-09-27 16:57 - 2012-03-10 20:00 - 02682816 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2013-09-27 16:57 - 2012-03-10 20:00 - 00023307 _____ C:\Windows\system32\nvinfo.pb
2013-09-27 15:45 - 2012-03-10 20:00 - 06641440 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2013-09-27 15:45 - 2012-03-10 20:00 - 03483424 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2013-09-27 15:44 - 2012-03-10 20:00 - 00922912 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2013-09-27 15:44 - 2012-03-10 20:00 - 00219424 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2013-09-27 15:44 - 2012-03-10 20:00 - 00063776 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2013-09-27 14:10 - 2013-09-27 14:00 - 00000000 ____D C:\Users\Owner\Desktop\Maintainability
2013-09-27 13:32 - 2013-09-27 13:32 - 00258048 ____N (Marvell Inc) C:\ProgramData\wmimgmt.exe
2013-09-27 02:37 - 2013-09-27 02:37 - 00587040 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2013-09-26 21:32 - 2012-03-10 21:42 - 03386608 _____ C:\Windows\system32\nvcoproc.bin
2013-09-24 22:13 - 2013-09-24 22:13 - 00000000 ____D C:\Users\Owner\AppData\Local\Razer
2013-09-24 22:13 - 2012-03-10 21:39 - 00127000 _____ C:\Users\Owner\AppData\Local\GDIPFONTCACHEV1.DAT
2013-09-24 22:04 - 2013-09-24 22:04 - 00001242 _____ C:\Users\Public\Desktop\Razer Comms.lnk
2013-09-24 22:04 - 2013-09-24 22:04 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_RzFilter_01009.Wdf
2013-09-24 22:04 - 2013-09-24 22:04 - 00000000 ____D C:\Windows\Razer Core
2013-09-24 22:04 - 2013-09-24 22:04 - 00000000 ____D C:\ProgramData\Razer
2013-09-24 22:04 - 2013-09-24 22:04 - 00000000 ____D C:\Program Files (x86)\Razer
2013-09-24 22:04 - 2013-09-24 22:03 - 39691960 _____ (Razer Inc.) C:\Users\Owner\Downloads\RazerComms1.60.26.exe
2013-09-23 23:40 - 2013-09-23 21:22 - 00000639 _____ C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\3d Girlz.lnk
2013-09-23 23:40 - 2013-09-23 21:22 - 00000611 _____ C:\Users\Owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\3d Girlz Uninstall.lnk
2013-09-23 21:21 - 2013-09-23 21:21 - 00000056 _____ C:\Windows\kgt2k.INI
2013-09-23 21:21 - 2012-03-10 19:36 - 00000000 ____D C:\Users\Owner\AppData\Local\VirtualStore
2013-09-23 07:28 - 2013-10-10 23:13 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-09-23 07:28 - 2013-10-10 23:13 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-09-23 07:27 - 2013-10-10 23:13 - 14335488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-09-23 07:27 - 2013-10-10 23:13 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-09-23 07:27 - 2013-10-10 23:13 - 02876928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-09-23 07:27 - 2013-10-10 23:13 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-09-23 07:27 - 2013-10-10 23:13 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-09-23 07:27 - 2013-10-10 23:13 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-09-23 07:27 - 2013-10-10 23:13 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-09-23 07:27 - 2013-10-10 23:13 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-09-23 07:27 - 2013-10-10 23:13 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-09-23 07:27 - 2013-10-10 23:13 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-09-23 07:27 - 2013-10-10 23:13 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-09-23 06:55 - 2013-10-10 23:13 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-09-23 06:55 - 2013-10-10 23:13 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-09-23 06:55 - 2013-10-10 23:13 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-09-23 06:54 - 2013-10-10 23:13 - 19252224 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-09-23 06:54 - 2013-10-10 23:13 - 15404544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-09-23 06:54 - 2013-10-10 23:13 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-09-23 06:54 - 2013-10-10 23:13 - 02647552 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-09-23 06:54 - 2013-10-10 23:13 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-09-23 06:54 - 2013-10-10 23:13 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-09-23 06:54 - 2013-10-10 23:13 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-09-23 06:54 - 2013-10-10 23:13 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-09-23 06:54 - 2013-10-10 23:13 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-09-23 06:54 - 2013-10-10 23:13 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-09-23 06:54 - 2013-10-10 23:13 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-09-23 03:20 - 2013-06-25 23:36 - 00001048 _____ C:\Users\Public\Desktop\Hotspot Shield.lnk
2013-09-23 03:20 - 2013-03-09 01:02 - 00000000 ____D C:\Program Files (x86)\Hotspot Shield
2013-09-22 23:23 - 2013-09-03 22:04 - 00000000 __SHD C:\Users\Public\Documents\Media
2013-09-22 13:01 - 2013-09-22 13:01 - 00038748 _____ C:\Users\Owner\Downloads\[kickass.to]the.queen.of.fighters.hentai.mugen.fullgame.final.version.torrent
2013-09-21 20:40 - 2013-09-21 20:22 - 00155960 _____ C:\Users\Owner\Desktop\timelines.pptx
2013-09-21 11:38 - 2013-10-10 23:13 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-09-21 11:30 - 2013-10-10 23:13 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-09-21 11:02 - 2013-09-21 11:02 - 00001653 _____ C:\Users\Owner\Desktop\Google Drive.lnk
2013-09-21 11:02 - 2012-03-10 19:35 - 00000000 ____D C:\Users\Owner
2013-09-21 11:01 - 2013-09-21 11:01 - 00002044 _____ C:\Users\Public\Desktop\Google Slides.lnk
2013-09-21 11:01 - 2013-09-21 11:01 - 00002040 _____ C:\Users\Public\Desktop\Google Sheets.lnk
2013-09-21 11:01 - 2013-09-21 11:01 - 00002028 _____ C:\Users\Public\Desktop\Google Docs.lnk
2013-09-21 11:01 - 2013-05-02 20:52 - 00000000 ____D C:\Users\Owner\AppData\Local\Google
2013-09-21 11:01 - 2013-05-02 20:52 - 00000000 ____D C:\Program Files (x86)\Google
2013-09-21 11:00 - 2013-09-21 11:00 - 00784832 _____ (Google Inc.) C:\Users\Owner\Downloads\googledrivesync.exe
2013-09-21 10:48 - 2013-10-10 23:13 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-09-21 10:39 - 2013-10-10 23:13 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-09-19 22:46 - 2013-09-19 22:46 - 06520832 _____ C:\Users\Owner\Downloads\Lecture - CS11 - 2013 updated.ppt
2013-09-19 22:45 - 2013-09-19 22:45 - 00474112 _____ C:\Users\Owner\Downloads\Lecture - CS9and10 - 2011 (1).ppt
Files to move or delete:
====================
C:\ProgramData\wmimgmt.exe
Some content of TEMP:
====================
C:\Users\Owner\AppData\Local\Temp\nircmd.exe
C:\Users\Owner\AppData\Local\Temp\nvSCPAPI.dll
C:\Users\Owner\AppData\Local\Temp\nvSCPAPI64.dll
C:\Users\Owner\AppData\Local\Temp\nvStInst.exe
C:\Users\Owner\AppData\Local\Temp\pv.exe
C:\Users\Owner\AppData\Local\Temp\vfind.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2012-05-19 10:44
==================== End Of Log ============================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 02-10-2013
Ran by Owner at 2013-10-19 09:53:49
Running from C:\Users\Owner\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
3d Girlz (x32)
Adobe Flash Player 11 ActiveX (x32 Version: 11.9.900.117)
Adobe Flash Player 11 Plugin (x32 Version: 11.9.900.117)
Adobe Reader X (10.1.8) (x32 Version: 10.1.8)
Age of Empires II HD © Microsoft Studios version 1 (x32 Version: 1)
Alice: Madness Returns (x32)
Apple Application Support (x32 Version: 2.3.4)
Apple Mobile Device Support (Version: 6.1.0.13)
Apple Software Update (x32 Version: 2.1.3.127)
Auslogics Disk Defrag (x32 Version: version 3.3)
BioShock Infinite (x32)
BitComet 1.35 64-bit (x32 Version: 1.35)
Bonjour (Version: 3.0.0.10)
Call of Duty Black Ops II (x32)
Canon MP140 series
CCleaner (Version: 3.16)
D3DX10 (x32 Version: 15.4.2368.0902)
DAEMON Tools Lite (x32 Version: 4.46.1.0328)
DarkSiders II version 5.1 (x32 Version: 5.1)
Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition (x32)
Dishonored (x32)
DmC Devil may Cry version 5.1 (x32 Version: 5.1)
Dota 2 (x32)
Dropbox (HKCU Version: 2.4.2)
Far Cry 3 (x32 Version: 1.01)
FarCry 3 version 5.1 (x32 Version: 5.1)
FLAC 1.2.1b (remove only) (x32 Version: 1.2.1b)
Fraps (x32)
Frhed 1.6.0 (x32 Version: 1.6.0)
GameRanger (HKCU)
Garena - BlackShot (x32 Version: 2.172)
Garena - League of Legends (x32)
Garena Plus (x32 Version: 2011)
GeForce Experience NvStream Client Components (Version: 0.1.87)
Google Chrome (x32 Version: 30.0.1599.69)
Google Drive (x32 Version: 1.12.5329.1887)
Google Update Helper (x32 Version: 1.3.21.165)
Grand Theft Auto IV (x32 Version: 1.0.0013.131)
Grand Theft Auto IV (x32 Version: 1.00.0000)
Grid 2 version 5.1 (x32 Version: 5.1)
Guitar Pro 6 (x32)
Hitman Absolution (x32)
Hotspot Shield 3.17 (x32 Version: 3.17)
Intel® Management Engine Components (x32 Version: 7.0.0.1144)
iTunes (Version: 11.0.5.5)
JamVOX (x32 Version: 1.52.4)
Java 7 Update 25 (x32 Version: 7.0.250)
Java Auto Updater (x32 Version: 2.1.9.5)
Java 6 Update 29 (x32 Version: 6.0.290)
Logitech Gaming Software 5.10 (Version: 5.10.127)
Malwarebytes Anti-Malware version 1.75.0.1300 (x32 Version: 1.75.0.1300)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft .NET Framework 4 Extended (Version: 4.0.30319)
Microsoft Age of Empires II (x32)
Microsoft Age of Empires II: The Conquerors Expansion (x32)
Microsoft Application Error Reporting (Version: 12.0.6015.5000)
Microsoft Games for Windows - LIVE (x32 Version: 3.3.24.0)
Microsoft Games for Windows - LIVE Redistributable (x32 Version: 3.2.3.0)
Microsoft Office 2007 Service Pack 3 (SP3) (x32)
Microsoft Office Access MUI (English) 2010 (x32 Version: 14.0.4734.1000)
Microsoft Office Access Setup Metadata MUI (English) 2010 (x32 Version: 14.0.4734.1000)
Microsoft Office Excel MUI (English) 2010 (x32 Version: 14.0.4734.1000)
Microsoft Office Groove MUI (English) 2010 (x32 Version: 14.0.4734.1000)
Microsoft Office InfoPath MUI (English) 2010 (x32 Version: 14.0.4734.1000)
Microsoft Office Office 64-bit Components 2007 (Version: 12.0.6612.1000)
Microsoft Office Office 64-bit Components 2010 (Version: 14.0.4734.1000)
Microsoft Office OneNote MUI (English) 2010 (x32 Version: 14.0.4734.1000)
Microsoft Office Outlook MUI (English) 2010 (x32 Version: 14.0.4734.1000)
Microsoft Office PowerPoint MUI (English) 2010 (x32 Version: 14.0.4734.1000)
Microsoft Office Professional Plus 2010 (x32 Version: 14.0.4734.1000)
Microsoft Office Proof (English) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Proof (English) 2010 (x32 Version: 14.0.4734.1000)
Microsoft Office Proof (French) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Proof (French) 2010 (x32 Version: 14.0.4734.1000)
Microsoft Office Proof (Spanish) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Proof (Spanish) 2010 (x32 Version: 14.0.4734.1000)
Microsoft Office Proofing (English) 2007 (x32 Version: 12.0.4518.1014)
Microsoft Office Proofing (English) 2010 (x32 Version: 14.0.4734.1000)
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (x32)
Microsoft Office Publisher MUI (English) 2010 (x32 Version: 14.0.4734.1000)
Microsoft Office Shared 64-bit MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Shared 64-bit MUI (English) 2010 (Version: 14.0.4734.1000)
Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2010 (Version: 14.0.4734.1000)
Microsoft Office Shared MUI (English) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Shared MUI (English) 2010 (x32 Version: 14.0.4734.1000)
Microsoft Office Shared Setup Metadata MUI (English) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Shared Setup Metadata MUI (English) 2010 (x32 Version: 14.0.4734.1000)
Microsoft Office SharePoint Designer 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office SharePoint Designer 2007 Service Pack 3 (SP3) (x32)
Microsoft Office SharePoint Designer MUI (English) 2007 (x32 Version: 12.0.6612.1000)
Microsoft Office Word MUI (English) 2010 (x32 Version: 14.0.4734.1000)
Microsoft Silverlight (Version: 5.1.20913.0)
Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.59192)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (Version: 10.0.30319)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (x32 Version: 11.0.60610.1)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (x32 Version: 11.0.60610.1)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610)
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610)
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 (x32 Version: 11.0.60610)
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 (x32 Version: 11.0.60610)
Movie Maker (x32 Version: 16.4.3508.0205)
Mozilla Firefox 21.0 (x86 en-US) (x32 Version: 21.0)
Mozilla Maintenance Service (x32 Version: 21.0)
MSVCRT (x32 Version: 15.4.2862.0708)
MSVCRT110 (x32 Version: 16.4.1108.0727)
MSVCRT110_amd64 (Version: 16.4.1109.0912)
MusicPod (x32 Version: 1.73)
Nexus Mod Manager (Version: 0.44.13)
NVIDIA 3D Vision Controller Driver (x32 Version: 280.19)
NVIDIA 3D Vision Controller Driver 331.40 (Version: 331.40)
NVIDIA 3D Vision Driver 331.40 (Version: 331.40)
NVIDIA Control Panel 331.40 (Version: 331.40)
NVIDIA GeForce Experience 1.6.1 (Version: 1.6.1)
NVIDIA Graphics Driver 331.40 (Version: 331.40)
NVIDIA HD Audio Driver 1.3.26.4 (Version: 1.3.26.4)
NVIDIA Install Application (Version: 2.1002.133.902)
NVIDIA PhysX (x32 Version: 9.13.0725)
NVIDIA PhysX System Software 9.13.0725 (Version: 9.13.0725)
NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.3140)
NVIDIA Update 8.3.14 (Version: 8.3.14)
NVIDIA Update Components (Version: 8.3.14)
NVIDIA Virtual Audio 1.2.5 (Version: 1.2.5)
Panda USB Vaccine 1.0.1.4 (x32)
PAYDAY 2 (x32)
Photo Common (x32 Version: 16.4.3508.0205)
Photo Gallery (x32 Version: 16.4.3508.0205)
PixRecovery (x32)
PlayClaw 3 (x32 Version: 3)
PlayClaw 4 (x32 Version: 4)
Prototype 2 version 5.1 (x32 Version: 5.1)
Razer Comms (x32 Version: 1.60.26)
Razer Core (x32 Version: 1.0.1.29)
Realtek Ethernet Controller Driver (x32 Version: 7.46.610.2011)
Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.0.34.0)
Resident Evil 6 version 5.1 (x32 Version: 5.1)
Saints Row IV (x32 Version: 1)
Saints Row The Third (x32)
SHIELD Streaming (Version: 1.05.28)
Sid Meier's Civilization V (x32)
Simple Port Forwarding (x32 Version: 3.8.1)
Skype™ 6.6 (x32 Version: 6.6.106)
Split/Second (x32 Version: 1.00.0000)
Steam (x32 Version: 1.0.0.0)
Super Street Fighter IV: Arcade Edition (x32 Version: 1.0.0000.129)
System Requirements Lab CYRI (x32 Version: 4.5.1.0)
Tunngle beta (x32)
Ubisoft Game Launcher (x32 Version: 1.0.0.0)
Update for 2007 Microsoft Office System (KB967642) (x32)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (x32 Version: 3)
Update for Microsoft .NET Framework 4 Extended (KB2468871) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2533523) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2600217) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2836939) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2836939v3) (x32 Version: 3)
Update for Microsoft Office 2007 Help for Common Features (KB963673) (x32)
Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (x32)
Update for Microsoft Office 2007 suites (KB2687493) 32-Bit Edition (x32)
Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (x32)
Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2494150) (x32)
Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2825640) 32-Bit Edition (x32)
Update for Microsoft Office Script Editor Help (KB963671) (x32)
Update for Microsoft Office Sharepoint Designer 2007 Help (KB963675) (x32)
Vtune 7.21 (x32)
Wacom Tablet (Version: 6.3.1w3)
WebTablet FB Plugin (x32 Version: 2.0.0.6)
WebTablet IE Plugin (x32 Version: 1.1.0.12)
WebTablet Netscape Plugin (x32 Version: 1.1.0.10)
Windows Live Communications Platform (x32 Version: 16.4.3508.0205)
Windows Live Essentials (x32 Version: 16.4.3508.0205)
Windows Live ID Sign-in Assistant (Version: 7.250.4311.0)
Windows Live Installer (x32 Version: 16.4.3508.0205)
Windows Live Messenger (x32 Version: 16.4.3508.0205)
Windows Live Photo Common (x32 Version: 16.4.3508.0205)
Windows Live PIMT Platform (x32 Version: 16.4.3508.0205)
Windows Live SOXE (x32 Version: 16.4.3508.0205)
Windows Live SOXE Definitions (x32 Version: 16.4.3508.0205)
Windows Live UX Platform (x32 Version: 16.4.3508.0205)
Windows Live UX Platform Language Pack (x32 Version: 16.4.3508.0205)
Windows Movie Maker 2.6 (x32 Version: 2.6.4037.0)
WinRAR 4.11 (64-bit) (Version: 4.11.0)
==================== Restore Points =========================
08-10-2013 12:46:53 Windows Update
10-10-2013 15:06:26 Windows Update
15-10-2013 10:29:47 Windows Update
15-10-2013 15:49:18 Windows Update
==================== Hosts content: ==========================
2009-07-14 10:34 - 2009-06-11 05:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {40EF3E66-C1F0-428B-BC4A-AB685213B6EF} - System32\Tasks\{78F1AFD8-EDB4-4C8E-A2B8-D30C6B647D31} => C:\Program Files (x86)\VOX\JamVOX\JamVox.exe [2009-10-08] (Korg Inc.)
Task: {4BC5591C-3E70-4547-9F67-AEECE9481B00} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {85233DE6-CEE0-4A40-8B06-0243A5FE7485} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-05-02] (Google Inc.)
Task: {898F653F-958E-4FAA-B8F3-F95E14553493} - System32\Tasks\{FB840E68-C47B-44B8-963B-21CDD4943AE7} => C:\Program Files (x86)\Skype\Phone\Skype.exe [2013-06-21] (Skype Technologies S.A.)
Task: {91A52AA3-38FB-4FF2-9D79-496F5775BDA3} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-10-09] (Adobe Systems Incorporated)
Task: {A4F9537A-D4BF-4BDB-AA0B-41C5FC9B81DF} - System32\Tasks\gg_uac_daemon_Owner => C:\Program Files (x86)\Garena Plus\ggdllhost.exe [2013-07-10] ()
Task: {AF81FCDC-4B9A-4142-8F4F-D816A427865A} - System32\Tasks\{E6C1C498-8B79-46EE-9CCA-EC9233DBF8A1} => C:\Program Files (x86)\Skype\Phone\Skype.exe [2013-06-21] (Skype Technologies S.A.)
Task: {D0A77AC5-8F91-4F16-B0D0-37BCD0B6AD85} - System32\Tasks\{014410D8-C95E-419D-B3CE-B5E9B8522788} => C:\Program Files (x86)\Skype\Phone\Skype.exe [2013-06-21] (Skype Technologies S.A.)
Task: {E2545116-E7EC-4489-848A-ED1051D7382E} - System32\Tasks\{A71ED85F-3B97-4FB1-A53E-811DFFC77E94} => Firefox.exe
http://www.skype.com...LastError=12002
Task: {F4FB1C01-A971-47E9-BB11-FA832B73A3F6} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: {F8D86314-58AD-4577-8C5B-D15CAB62BF17} - System32\Tasks\PandaUSBVaccine => C:\Program Files (x86)\Panda USB Vaccine\RunInteractiveWin.exe [2009-09-23] ()
Task: {FC4F8DE8-D63F-420E-9C8F-9E2F0C52B868} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-05-02] (Google Inc.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) =============
2012-04-26 20:27 - 2012-04-18 09:47 - 01184632 _____ () C:\Program Files\Tablet\Wacom\libxml2.dll
2010-01-09 20:17 - 2010-01-09 20:17 - 04254560 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF
2010-01-21 01:40 - 2010-01-21 01:40 - 08794464 _____ () C:\Program Files\Microsoft Office\Office14\1033\GrooveIntlResource.dll
2012-03-14 21:12 - 2012-02-17 20:55 - 00193536 _____ () C:\Program Files\WinRAR\rarext.dll
2012-02-20 21:29 - 2012-02-20 21:29 - 00087912 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2012-02-20 21:28 - 2012-02-20 21:28 - 01242472 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2013-09-18 06:18 - 2013-09-18 06:18 - 00902440 _____ () C:\Program Files (x86)\Hotspot Shield\bin\af_proxy.dll
2012-11-08 19:28 - 2013-07-18 22:09 - 00529200 _____ () C:\Program Files (x86)\Garena Plus\ggspawn.dll
2012-03-10 19:47 - 1998-10-31 04:55 - 00005120 _____ () C:\Program Files (x86)\Vtune\TBManage.dll
2012-02-22 16:52 - 2013-01-30 16:26 - 00104752 _____ () C:\Program Files (x86)\Garena Plus\CommonLib.dll
2012-11-08 19:28 - 2013-02-07 17:11 - 00033584 _____ () C:\Program Files (x86)\Garena Plus\DibModule.dll
2012-11-30 19:53 - 2013-08-07 15:33 - 00027952 _____ () C:\Program Files (x86)\Garena Plus\VersionModule.dll
2012-11-08 19:28 - 2013-02-07 17:11 - 00051504 _____ () C:\Program Files (x86)\Garena Plus\FileLoader.dll
2012-11-08 19:27 - 2013-02-07 17:11 - 00087344 _____ () C:\Program Files (x86)\Garena Plus\PluginKernel.dll
2012-11-30 19:40 - 2013-03-07 10:10 - 00487216 _____ () C:\Program Files (x86)\Garena Plus\CxImage.dll
2012-11-08 19:27 - 2013-02-07 17:11 - 00025392 _____ () C:\Program Files (x86)\Garena Plus\PluginModule.dll
2012-11-08 19:27 - 2013-04-10 17:23 - 00170800 _____ () C:\Program Files (x86)\Garena Plus\lib\fs\YYFileSystem.dll
2012-11-29 19:42 - 2013-03-13 18:05 - 00374064 _____ () C:\Program Files (x86)\Garena Plus\lib\Http.dll
2012-02-22 16:52 - 2012-02-22 16:52 - 00178176 _____ () C:\Program Files (x86)\Garena Plus\lib\MP3Module.dll
2012-02-22 16:52 - 2012-02-22 16:52 - 00162304 _____ () C:\Program Files (x86)\Garena Plus\lame_enc.DLL
2012-02-22 16:52 - 2013-01-14 19:57 - 00219952 _____ () C:\Program Files (x86)\Garena Plus\lib\TaskManagerLib.dll
2012-11-09 17:34 - 2013-03-07 10:10 - 00106288 _____ () C:\Program Files (x86)\Garena Plus\lib\UILayout.dll
2012-11-28 19:13 - 2013-07-26 14:18 - 00957232 _____ () C:\Program Files (x86)\Garena Plus\lib\XLL.dll
2012-11-09 17:34 - 2012-11-09 17:34 - 00048640 _____ () C:\Program Files (x86)\Garena Plus\lib\XmlUIModule.dll
2012-02-22 16:52 - 2012-02-22 16:52 - 00573100 _____ () C:\Program Files (x86)\Garena Plus\sqlite3.dll
2012-11-28 19:00 - 2013-03-07 10:10 - 00224560 _____ () C:\Program Files (x86)\Garena Plus\Plugins\StatsPlugin.dll
2012-11-28 19:03 - 2013-08-06 19:01 - 00864560 _____ () C:\Program Files (x86)\Garena Plus\Plugins\ggplugin.dll
2012-11-15 19:19 - 2013-02-07 17:11 - 00192816 _____ () C:\Program Files (x86)\Garena Plus\ImageModule.dll
2013-05-10 17:47 - 2013-04-10 17:22 - 00155440 _____ () C:\Program Files (x86)\Garena Plus\libmpg123.dll
2012-08-30 21:43 - 2013-01-30 16:26 - 02941232 _____ () C:\Program Files (x86)\Garena Plus\ggdownloader.dll
2012-04-13 11:12 - 2012-04-13 11:12 - 00059392 _____ () C:\Program Files (x86)\Garena Plus\lib\delay_load\AudioMixerLib.dll
2012-11-08 19:28 - 2012-11-08 19:28 - 00010240 _____ () C:\Program Files (x86)\Garena Plus\lib\delay_load\ClientTcp.dll
2012-11-23 17:02 - 2013-07-15 22:29 - 01545520 _____ () C:\Program Files (x86)\Garena Plus\lib\delay_load\FileSender.dll
2012-07-31 18:38 - 2013-02-01 13:42 - 00153088 _____ () C:\Program Files (x86)\Garena Plus\libzmq.dll
2012-11-19 12:25 - 2013-01-14 19:57 - 01092912 _____ () C:\Program Files (x86)\Garena Plus\lib\delay_load\GaFileTransfer.dll
2012-04-24 09:19 - 2012-04-24 09:19 - 00238592 _____ () C:\Program Files (x86)\Garena Plus\lib\delay_load\MediaEngine.dll
2012-04-13 11:12 - 2012-04-13 11:12 - 00019968 _____ () C:\Program Files (x86)\Garena Plus\ServerMemAlloc.dll
2012-03-08 16:56 - 2012-03-08 16:56 - 00510464 _____ () C:\Program Files (x86)\Garena Plus\lib\delay_load\RSALib.dll
2012-11-08 19:27 - 2012-11-08 19:27 - 00061952 _____ () C:\Program Files (x86)\Garena Plus\lib\delay_load\UdtLib.dll
2010-01-09 20:18 - 2010-01-09 20:18 - 04254560 _____ () C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
2010-01-21 01:34 - 2010-01-21 01:34 - 08793952 _____ () C:\Program Files (x86)\Microsoft Office\Office14\1033\GrooveIntlResource.dll
2013-03-22 14:01 - 2013-02-13 09:42 - 05407744 _____ () C:\Program Files (x86)\PlayClaw4\playclaw-vcam.dll
2013-04-23 18:30 - 2013-08-22 06:18 - 00687104 _____ () C:\Program Files (x86)\steam\SDL2.dll
2013-05-03 15:35 - 2013-10-09 10:19 - 01121704 _____ () C:\Program Files (x86)\steam\bin\chromehtml.DLL
2013-03-26 16:16 - 2013-09-11 06:20 - 20625832 _____ () C:\Program Files (x86)\steam\bin\libcef.dll
2012-12-11 09:51 - 2013-06-15 07:49 - 01100800 _____ () C:\Program Files (x86)\steam\bin\avcodec-53.dll
2012-12-11 09:51 - 2013-06-15 07:49 - 00124416 _____ () C:\Program Files (x86)\steam\bin\avutil-51.dll
2012-12-11 09:51 - 2013-06-15 07:49 - 00192000 _____ () C:\Program Files (x86)\steam\bin\avformat-53.dll
2013-05-03 15:35 - 2013-10-09 10:19 - 00120744 _____ () C:\Program Files (x86)\steam\bin\audio.dll
2012-09-07 15:37 - 2013-06-15 07:49 - 00071680 _____ () C:\Program Files (x86)\steam\bin\mssmp3.asi
2013-07-10 21:11 - 2013-06-15 07:49 - 00153088 _____ () C:\Program Files (x86)\steam\bin\mssvoice.asi
2012-03-23 18:15 - 2012-03-23 18:15 - 00988160 _____ () C:\Program Files (x86)\Razer\Core\Plugins\ChatApplet\libssh2.dll
2012-03-02 16:23 - 2012-03-02 16:23 - 00577621 _____ () C:\Program Files (x86)\Razer\Core\Plugins\ChatApplet\sqlite3.dll
2013-03-14 04:48 - 2013-03-14 04:48 - 24978944 _____ () C:\Users\Owner\AppData\Roaming\Dropbox\bin\libcef.dll
2013-10-19 09:47 - 2013-10-19 09:47 - 00098816 _____ () C:\Users\Owner\AppData\Local\Temp\_MEI37202\win32api.pyd
2013-10-19 09:47 - 2013-10-19 09:47 - 00110080 _____ () C:\Users\Owner\AppData\Local\Temp\_MEI37202\pywintypes27.dll
2013-10-19 09:47 - 2013-10-19 09:47 - 00364544 _____ () C:\Users\Owner\AppData\Local\Temp\_MEI37202\pythoncom27.dll
2013-10-19 09:47 - 2013-10-19 09:47 - 00044032 _____ () C:\Users\Owner\AppData\Local\Temp\_MEI37202\_socket.pyd
2013-10-19 09:47 - 2013-10-19 09:47 - 01153024 _____ () C:\Users\Owner\AppData\Local\Temp\_MEI37202\_ssl.pyd
2013-10-19 09:47 - 2013-10-19 09:47 - 00320512 _____ () C:\Users\Owner\AppData\Local\Temp\_MEI37202\win32com.shell.shell.pyd
2013-10-19 09:47 - 2013-10-19 09:47 - 00711680 _____ () C:\Users\Owner\AppData\Local\Temp\_MEI37202\_hashlib.pyd
2013-10-19 09:47 - 2013-10-19 09:47 - 01175040 _____ () C:\Users\Owner\AppData\Local\Temp\_MEI37202\wx._core_.pyd
2013-10-19 09:47 - 2013-10-19 09:47 - 00805888 _____ () C:\Users\Owner\AppData\Local\Temp\_MEI37202\wx._gdi_.pyd
2013-10-19 09:47 - 2013-10-19 09:47 - 00811008 _____ () C:\Users\Owner\AppData\Local\Temp\_MEI37202\wx._windows_.pyd
2013-10-19 09:47 - 2013-10-19 09:47 - 01062400 _____ () C:\Users\Owner\AppData\Local\Temp\_MEI37202\wx._controls_.pyd
2013-10-19 09:47 - 2013-10-19 09:47 - 00735232 _____ () C:\Users\Owner\AppData\Local\Temp\_MEI37202\wx._misc_.pyd
2013-10-19 09:47 - 2013-10-19 09:47 - 00128512 _____ () C:\Users\Owner\AppData\Local\Temp\_MEI37202\_elementtree.pyd
2013-10-19 09:47 - 2013-10-19 09:47 - 00127488 _____ () C:\Users\Owner\AppData\Local\Temp\_MEI37202\pyexpat.pyd
2013-10-19 09:47 - 2013-10-19 09:47 - 00557056 _____ () C:\Users\Owner\AppData\Local\Temp\_MEI37202\pysqlite2._sqlite.pyd
2013-10-19 09:47 - 2013-10-19 09:47 - 00087040 _____ () C:\Users\Owner\AppData\Local\Temp\_MEI37202\_ctypes.pyd
2013-10-19 09:47 - 2013-10-19 09:47 - 00119808 _____ () C:\Users\Owner\AppData\Local\Temp\_MEI37202\win32file.pyd
2013-10-19 09:47 - 2013-10-19 09:47 - 00108544 _____ () C:\Users\Owner\AppData\Local\Temp\_MEI37202\win32security.pyd
2013-10-19 09:47 - 2013-10-19 09:47 - 00018432 _____ () C:\Users\Owner\AppData\Local\Temp\_MEI37202\win32event.pyd
2013-10-19 09:47 - 2013-10-19 09:47 - 00038912 _____ () C:\Users\Owner\AppData\Local\Temp\_MEI37202\win32inet.pyd
2013-10-19 09:47 - 2013-10-19 09:47 - 00122368 _____ () C:\Users\Owner\AppData\Local\Temp\_MEI37202\wx._wizard.pyd
2013-10-19 09:47 - 2013-10-19 09:47 - 00686080 _____ () C:\Users\Owner\AppData\Local\Temp\_MEI37202\unicodedata.pyd
2013-10-19 09:47 - 2013-10-19 09:47 - 00026624 _____ () C:\Users\Owner\AppData\Local\Temp\_MEI37202\_multiprocessing.pyd
2013-10-19 09:47 - 2013-10-19 09:47 - 00070656 _____ () C:\Users\Owner\AppData\Local\Temp\_MEI37202\wx._html2.pyd
2013-10-19 09:47 - 2013-10-19 09:47 - 00010240 _____ () C:\Users\Owner\AppData\Local\Temp\_MEI37202\select.pyd
2013-10-19 09:47 - 2013-10-19 09:47 - 00025600 _____ () C:\Users\Owner\AppData\Local\Temp\_MEI37202\win32pdh.pyd
2013-10-19 09:47 - 2013-10-19 09:47 - 00504832 _____ () C:\Users\Owner\AppData\Local\Temp\_MEI37202\windows._cacheinvalidation.pyd
2013-10-19 09:47 - 2013-10-19 09:47 - 00011264 _____ () C:\Users\Owner\AppData\Local\Temp\_MEI37202\win32crypt.pyd
2013-10-19 09:47 - 2013-10-19 09:47 - 00035840 _____ () C:\Users\Owner\AppData\Local\Temp\_MEI37202\win32process.pyd
2013-10-19 09:47 - 2013-10-19 09:47 - 00017408 _____ () C:\Users\Owner\AppData\Local\Temp\_MEI37202\win32profile.pyd
2013-10-19 09:47 - 2013-10-19 09:47 - 00022528 _____ () C:\Users\Owner\AppData\Local\Temp\_MEI37202\win32ts.pyd
2013-10-07 23:11 - 2013-10-03 14:02 - 00698832 _____ () C:\Program Files (x86)\Google\Chrome\Application\30.0.1599.69\libglesv2.dll
2013-10-07 23:11 - 2013-10-03 14:02 - 00099792 _____ () C:\Program Files (x86)\Google\Chrome\Application\30.0.1599.69\libegl.dll
2013-10-07 23:11 - 2013-10-03 14:03 - 04055504 _____ () C:\Program Files (x86)\Google\Chrome\Application\30.0.1599.69\pdf.dll
2013-10-07 23:11 - 2013-10-03 14:03 - 00415184 _____ () C:\Program Files (x86)\Google\Chrome\Application\30.0.1599.69\ppGoogleNaClPluginChrome.dll
2013-10-07 23:11 - 2013-10-03 14:02 - 01604560 _____ () C:\Program Files (x86)\Google\Chrome\Application\30.0.1599.69\ffmpegsumo.dll
==================== Alternate Data Streams (whitelisted) =========
==================== Safe Mode (whitelisted) ===================
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (10/19/2013 09:48:12 AM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (10/19/2013 09:39:45 AM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (10/18/2013 10:59:09 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (10/18/2013 06:32:59 AM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (10/17/2013 08:29:03 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (10/17/2013 09:32:16 AM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (10/16/2013 05:28:38 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (10/16/2013 08:06:48 AM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (10/15/2013 09:48:02 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (10/15/2013 03:14:55 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
System errors:
=============
Error: (10/19/2013 09:53:37 AM) (Source: Service Control Manager) (User: )
Description: The Windows Update service hung on starting.
Error: (10/19/2013 09:44:56 AM) (Source: Service Control Manager) (User: )
Description: The Intel® Management and Security Application User Notification Service service failed to start due to the following error:
%%109
Error: (10/18/2013 10:59:04 PM) (Source: Service Control Manager) (User: )
Description: The Razer Overlay Subsystem Emergency Service service failed to start due to the following error:
%%1053
Error: (10/18/2013 10:59:04 PM) (Source: Service Control Manager) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the Razer Overlay Subsystem Emergency Service service to connect.
Error: (10/18/2013 06:38:12 AM) (Source: Service Control Manager) (User: )
Description: The Windows Update service hung on starting.
Error: (10/17/2013 08:34:18 PM) (Source: Service Control Manager) (User: )
Description: The Windows Update service hung on starting.
Error: (10/17/2013 09:37:40 AM) (Source: Service Control Manager) (User: )
Description: The Windows Update service hung on starting.
Error: (10/17/2013 09:31:21 AM) (Source: WMPNetworkSvc) (User: )
Description: WMPNetworkSvc0x80004005
Error: (10/16/2013 05:35:19 PM) (Source: Service Control Manager) (User: )
Description: The Windows Update service hung on starting.
Error: (10/16/2013 08:15:07 AM) (Source: Service Control Manager) (User: )
Description: The Intel® Management and Security Application User Notification Service service hung on starting.
Microsoft Office Sessions:
=========================
==================== Memory info ===========================
Percentage of memory in use: 30%
Total physical RAM: 8172.83 MB
Available physical RAM: 5657.16 MB
Total Pagefile: 16343.84 MB
Available Pagefile: 13506.44 MB
Total Virtual: 8192 MB
Available Virtual: 8191.83 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:488.18 GB) (Free:20.73 GB) NTFS
Drive d: () (Fixed) (Total:443.23 GB) (Free:56.66 GB) NTFS
Drive f: (ACER) (Fixed) (Total:931.28 GB) (Free:121.6 GB) FAT32
Drive g: (SAINTSROW4) (CDROM) (Total:7.86 GB) (Free:0 GB) CDFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: 0B1A8F22)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=488 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=443 GB) - (Type=07 NTFS)
========================================================
Disk: 1 (Size: 932 GB) (Disk ID: 24D7DB2A)
Partition 1: (Not Active) - (Size=932 GB) - (Type=0C)
==================== End Of Log ============================
ComboFix 13-10-16.02 - Owner 10/19/2013 9:59.1.4 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.8173.5845 [GMT 8:00]
Running from: c:\users\Owner\Desktop\ComboFix.exe
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Created a new restore point
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\programdata\wmimgmt.exe
c:\users\Owner\AppData\Local\Microsoft\Windows\Temporary Internet Files\tmp~ghi.log
c:\users\Owner\AppData\Local\Temp\_MEI37202\_ctypes.pyd
c:\users\Owner\AppData\Local\Temp\_MEI37202\_elementtree.pyd
c:\users\Owner\AppData\Local\Temp\_MEI37202\_hashlib.pyd
c:\users\Owner\AppData\Local\Temp\_MEI37202\_multiprocessing.pyd
c:\users\Owner\AppData\Local\Temp\_MEI37202\_socket.pyd
c:\users\Owner\AppData\Local\Temp\_MEI37202\_ssl.pyd
c:\users\Owner\AppData\Local\Temp\_MEI37202\msvcp100.dll
c:\users\Owner\AppData\Local\Temp\_MEI37202\msvcr100.dll
c:\users\Owner\AppData\Local\Temp\_MEI37202\pyexpat.pyd
c:\users\Owner\AppData\Local\Temp\_MEI37202\pysqlite2._sqlite.pyd
c:\users\Owner\AppData\Local\Temp\_MEI37202\python27.dll
c:\users\Owner\AppData\Local\Temp\_MEI37202\pythoncom27.dll
c:\users\Owner\AppData\Local\Temp\_MEI37202\PyWinTypes27.dll
c:\users\Owner\AppData\Local\Temp\_MEI37202\select.pyd
c:\users\Owner\AppData\Local\Temp\_MEI37202\unicodedata.pyd
c:\users\Owner\AppData\Local\Temp\_MEI37202\win32api.pyd
c:\users\Owner\AppData\Local\Temp\_MEI37202\win32com.shell.shell.pyd
c:\users\Owner\AppData\Local\Temp\_MEI37202\win32crypt.pyd
c:\users\Owner\AppData\Local\Temp\_MEI37202\win32event.pyd
c:\users\Owner\AppData\Local\Temp\_MEI37202\win32file.pyd
c:\users\Owner\AppData\Local\Temp\_MEI37202\win32inet.pyd
c:\users\Owner\AppData\Local\Temp\_MEI37202\win32pdh.pyd
c:\users\Owner\AppData\Local\Temp\_MEI37202\win32process.pyd
c:\users\Owner\AppData\Local\Temp\_MEI37202\win32profile.pyd
c:\users\Owner\AppData\Local\Temp\_MEI37202\win32security.pyd
c:\users\Owner\AppData\Local\Temp\_MEI37202\win32ts.pyd
c:\users\Owner\AppData\Local\Temp\_MEI37202\windows._cacheinvalidation.pyd
c:\users\Owner\AppData\Local\Temp\_MEI37202\wx._controls_.pyd
c:\users\Owner\AppData\Local\Temp\_MEI37202\wx._core_.pyd
c:\users\Owner\AppData\Local\Temp\_MEI37202\wx._gdi_.pyd
c:\users\Owner\AppData\Local\Temp\_MEI37202\wx._html2.pyd
c:\users\Owner\AppData\Local\Temp\_MEI37202\wx._misc_.pyd
c:\users\Owner\AppData\Local\Temp\_MEI37202\wx._windows_.pyd
c:\users\Owner\AppData\Local\Temp\_MEI37202\wx._wizard.pyd
c:\users\Owner\AppData\Local\Temp\_MEI37202\wxbase294u_net_vc90.dll
c:\users\Owner\AppData\Local\Temp\_MEI37202\wxbase294u_vc90.dll
c:\users\Owner\AppData\Local\Temp\_MEI37202\wxmsw294u_adv_vc90.dll
c:\users\Owner\AppData\Local\Temp\_MEI37202\wxmsw294u_core_vc90.dll
c:\users\Owner\AppData\Local\Temp\_MEI37202\wxmsw294u_html_vc90.dll
c:\users\Owner\AppData\Local\Temp\_MEI37202\wxmsw294u_webview_vc90.dll
c:\windows\SysWow64\frapsvid.dll
c:\windows\SysWow64\g
F:\$AVG.exe
F:\$RECYCLE.BIN.exe
F:\031787ae8e4990d58c3eead7.exe
F:\1101 project.exe
F:\1102 project.exe
F:\1e47a7d5502eef6a279564c4752c06.exe
F:\27e86901d3d7868815e1bd02c5252a32.exe
F:\3c946a3a5ee6892a650c43daa4.exe
F:\7589d30e928a547cc2c6e46e0f8f.exe
F:\AuToRUn.iNf
F:\Backup D drive.exe
F:\backup Prabhu folder.exe
F:\Bioshock2.exe
F:\CDtools.exe
F:\CE.exe
F:\codecs.exe
F:\ConverterOutput.exe
F:\db37c78e88b1216de9b5cca8.exe
F:\declub posters.exe
F:\desktop folders.exe
F:\economics.exe
F:\English Songs.exe
F:\FOUND.000.exe
F:\FOUND.001.exe
F:\FOUND.002.exe
F:\FOUND.003.exe
F:\FOUND.004.exe
F:\Games.exe
F:\Movies.exe
F:\msdownld.tmp.exe
F:\Music.exe
F:\NUS MATTERS.exe
F:\photos.exe
F:\Photoshop CS5.exe
F:\Photoshop.exe
F:\pics.exe
F:\PSP Games.exe
F:\PSP Updates.exe
F:\school.exe
F:\Sketch PS.exe
F:\Sociology tutorial 2.exe
F:\toshiba.exe
F:\Total Video Converter.exe
F:\TV Shows.exe
F:\TVC.exe
F:\Z.exe
.
.
((((((((((((((((((((((((( Files Created from 2013-09-19 to 2013-10-19 )))))))))))))))))))))))))))))))
.
.
2013-10-19 02:05 . 2013-10-19 02:05 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2013-10-19 02:05 . 2013-10-19 02:05 -------- d-----w- c:\users\fbwuser\AppData\Local\temp
2013-10-19 01:50 . 2013-10-19 01:50 -------- d-----w- C:\FRST
2013-10-19 01:44 . 2013-10-19 01:44 -------- d-----w- C:\_OTL
2013-10-15 10:30 . 2013-09-05 05:32 9694160 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{ABDFC8B4-B744-484D-901F-776A0CCCB0AC}\mpengine.dll
2013-10-15 03:02 . 2013-09-04 12:12 343040 ----a-w- c:\windows\system32\drivers\usbhub.sys
2013-10-15 03:02 . 2013-09-04 12:11 325120 ----a-w- c:\windows\system32\drivers\usbport.sys
2013-10-15 03:02 . 2013-09-04 12:11 99840 ----a-w- c:\windows\system32\drivers\usbccgp.sys
2013-10-15 03:02 . 2013-09-04 12:11 52736 ----a-w- c:\windows\system32\drivers\usbehci.sys
2013-10-15 03:02 . 2013-09-04 12:11 30720 ----a-w- c:\windows\system32\drivers\usbuhci.sys
2013-10-15 03:02 . 2013-09-04 12:11 25600 ----a-w- c:\windows\system32\drivers\usbohci.sys
2013-10-15 03:02 . 2013-09-04 12:11 7808 ----a-w- c:\windows\system32\drivers\usbd.sys
2013-10-13 00:20 . 2013-10-13 00:20 -------- d-----w- c:\users\Default\AppData\Local\Google
2013-10-10 14:06 . 2013-07-04 12:50 633856 ----a-w- c:\windows\system32\comctl32.dll
2013-10-10 14:06 . 2013-07-04 11:50 530432 ----a-w- c:\windows\SysWow64\comctl32.dll
2013-10-10 14:06 . 2013-06-06 03:30 368128 ----a-w- c:\windows\system32\atmfd.dll
2013-10-10 14:06 . 2013-06-06 05:50 41472 ----a-w- c:\windows\system32\lpk.dll
2013-10-10 14:06 . 2013-06-06 05:49 100864 ----a-w- c:\windows\system32\fontsub.dll
2013-10-10 14:06 . 2013-06-06 05:49 14336 ----a-w- c:\windows\system32\dciman32.dll
2013-10-10 14:06 . 2013-06-06 05:47 46080 ----a-w- c:\windows\system32\atmlib.dll
2013-10-10 14:06 . 2013-06-06 04:57 25600 ----a-w- c:\windows\SysWow64\lpk.dll
2013-10-10 14:06 . 2013-06-06 04:51 70656 ----a-w- c:\windows\SysWow64\fontsub.dll
2013-10-10 14:06 . 2013-06-06 04:50 10240 ----a-w- c:\windows\SysWow64\dciman32.dll
2013-10-10 14:06 . 2013-06-06 03:01 295424 ----a-w- c:\windows\SysWow64\atmfd.dll
2013-10-10 14:06 . 2013-06-06 03:01 34304 ----a-w- c:\windows\SysWow64\atmlib.dll
2013-10-10 14:04 . 2013-08-28 01:21 3155968 ----a-w- c:\windows\system32\win32k.sys
2013-10-10 14:03 . 2013-08-28 01:12 461312 ----a-w- c:\windows\system32\scavengeui.dll
2013-10-08 00:49 . 2013-10-08 00:49 -------- d-----w- c:\users\Owner\AppData\Local\CrashDumps
2013-09-29 13:45 . 2013-09-29 13:45 -------- d-----w- c:\programdata\Panda Security
2013-09-29 13:45 . 2013-09-29 13:45 -------- d-----w- c:\program files (x86)\Panda USB Vaccine
2013-09-26 18:37 . 2013-09-26 18:37 587040 ----a-w- c:\windows\SysWow64\nvStreaming.exe
2013-09-24 14:13 . 2013-09-24 14:13 -------- d-----w- c:\users\Owner\AppData\Local\Razer
2013-09-24 14:04 . 2013-08-26 19:05 74456 ----a-w- c:\windows\system32\drivers\RzFilter.sys
2013-09-24 14:04 . 2013-08-26 19:05 128984 ----a-w- c:\windows\system32\drivers\RzDxgk.sys
2013-09-24 14:04 . 2013-09-24 14:04 -------- d-----w- c:\programdata\Razer
2013-09-24 14:04 . 2013-09-24 14:04 -------- d-----w- c:\windows\Razer Core
2013-09-24 14:04 . 2013-09-24 14:04 -------- d-----w- c:\program files (x86)\Razer
2013-09-22 19:20 . 2013-09-17 20:31 46792 ----a-w- c:\windows\system32\drivers\hssdrv6.sys
2013-09-21 03:02 . 2013-10-19 01:47 -------- d-----r- c:\users\Owner\Google Drive
2013-09-20 14:03 . 2013-09-12 08:58 1884448 ----a-w- c:\windows\system32\nvdispco6432723.dll
2013-09-20 14:03 . 2013-09-12 08:58 1511712 ----a-w- c:\windows\system32\nvdispgenco6432723.dll
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-10-10 15:09 . 2013-05-02 13:27 80541720 ----a-w- c:\windows\system32\MRT.exe
2013-10-09 15:17 . 2012-04-25 22:05 692616 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2013-10-09 15:17 . 2012-03-10 14:01 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2013-09-27 08:57 . 2012-10-11 16:34 15232424 ----a-w- c:\windows\SysWow64\nvd3dum.dll
2013-09-27 08:57 . 2012-03-10 13:42 18259624 ----a-w- c:\windows\system32\nvwgf2umx.dll
2013-09-27 08:57 . 2012-03-10 13:42 1432408 ----a-w- c:\windows\system32\nvumdshimx.dll
2013-09-27 08:57 . 2012-03-10 12:00 3052616 ----a-w- c:\windows\system32\nvapi64.dll
2013-09-27 08:57 . 2012-03-10 12:00 2682816 ----a-w- c:\windows\SysWow64\nvapi.dll
2013-09-27 07:45 . 2012-03-10 12:00 6641440 ----a-w- c:\windows\system32\nvcpl.dll
2013-09-27 07:45 . 2012-03-10 12:00 3483424 ----a-w- c:\windows\system32\nvsvc64.dll
2013-09-27 07:44 . 2012-03-10 12:00 922912 ----a-w- c:\windows\system32\nvvsvc.exe
2013-09-27 07:44 . 2012-03-10 12:00 63776 ----a-w- c:\windows\system32\nvshext.dll
2013-09-27 07:44 . 2012-03-10 12:00 219424 ----a-w- c:\windows\system32\nvmctray.dll
2013-09-26 13:32 . 2012-03-10 13:42 3386608 ----a-w- c:\windows\system32\nvcoproc.bin
2013-08-29 05:23 . 2013-08-29 05:23 96168 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll
2013-08-29 05:23 . 2012-12-04 11:51 867240 ----a-w- c:\windows\SysWow64\npDeployJava1.dll
2013-08-29 05:23 . 2012-03-10 16:45 789416 ----a-w- c:\windows\SysWow64\deployJava1.dll
2013-08-29 01:48 . 2013-10-10 14:04 44032 ----a-w- c:\windows\apppatch\acwow64.dll
2013-08-24 02:50 . 2013-08-24 02:50 22240 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2013-08-20 13:33 . 2013-08-29 05:20 39200 ----a-w- c:\windows\system32\drivers\nvvad64v.sys
2013-08-20 13:32 . 2013-08-29 05:20 29984 ----a-w- c:\windows\system32\nvaudcap64v.dll
2013-08-20 13:32 . 2013-08-29 05:20 28448 ----a-w- c:\windows\SysWow64\nvaudcap32v.dll
2013-08-18 21:02 . 2013-08-29 05:32 1884448 ----a-w- c:\windows\system32\nvdispco6432680.dll
2013-08-18 21:02 . 2013-08-29 05:32 1511712 ----a-w- c:\windows\system32\nvdispgenco6432680.dll
2013-08-06 20:22 . 2010-11-21 03:27 278800 ------w- c:\windows\system32\MpSigStub.exe
2013-08-05 02:25 . 2013-09-11 16:53 155584 ----a-w- c:\windows\system32\drivers\ataport.sys
2013-08-02 02:14 . 2013-09-11 16:53 215040 ----a-w- c:\windows\system32\winsrv.dll
2013-08-02 02:13 . 2013-09-11 16:53 424448 ----a-w- c:\windows\system32\KernelBase.dll
2013-08-02 02:13 . 2013-09-11 16:53 1161216 ----a-w- c:\windows\system32\kernel32.dll
2013-08-02 02:12 . 2013-09-11 16:53 43520 ----a-w- c:\windows\system32\csrsrv.dll
2013-08-02 02:12 . 2013-09-11 16:53 6656 ----a-w- c:\windows\system32\apisetschema.dll
2013-08-02 02:12 . 2013-09-11 16:53 6144 ---ha-w- c:\windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-08-02 02:12 . 2013-09-11 16:53 4608 ---ha-w- c:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-08-02 02:12 . 2013-09-11 16:53 4096 ---ha-w- c:\windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-08-02 02:12 . 2013-09-11 16:53 4096 ---ha-w- c:\windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-08-02 02:12 . 2013-09-11 16:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-08-02 02:12 . 2013-09-11 16:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-08-02 02:12 . 2013-09-11 16:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-08-02 02:12 . 2013-09-11 16:53 4608 ---ha-w- c:\windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-08-02 02:12 . 2013-09-11 16:53 4096 ---ha-w- c:\windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-08-02 02:12 . 2013-09-11 16:53 4096 ---ha-w- c:\windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-08-02 02:12 . 2013-09-11 16:53 3584 ---ha-w- c:\windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-08-02 02:12 . 2013-09-11 16:53 3584 ---ha-w- c:\windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-08-02 02:12 . 2013-09-11 16:53 3584 ---ha-w- c:\windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-08-02 02:12 . 2013-09-11 16:53 3584 ---ha-w- c:\windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-08-02 02:12 . 2013-09-11 16:53 3584 ---ha-w- c:\windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-08-02 02:12 . 2013-09-11 16:53 3584 ---ha-w- c:\windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-08-02 02:12 . 2013-09-11 16:53 3584 ---ha-w- c:\windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-08-02 02:12 . 2013-09-11 16:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-08-02 02:12 . 2013-09-11 16:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-08-02 02:12 . 2013-09-11 16:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-08-02 02:12 . 2013-09-11 16:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-08-02 02:12 . 2013-09-11 16:53 5120 ---ha-w- c:\windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-08-02 02:12 . 2013-09-11 16:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-08-02 02:12 . 2013-09-11 16:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-08-02 02:12 . 2013-09-11 16:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-08-02 02:12 . 2013-09-11 16:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-08-02 02:12 . 2013-09-11 16:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-08-02 02:12 . 2013-09-11 16:53 3072 ---ha-w- c:\windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-08-02 01:50 . 2013-09-11 16:53 274944 ----a-w- c:\windows\SysWow64\KernelBase.dll
2013-08-02 01:48 . 2013-09-11 16:53 6656 ----a-w- c:\windows\SysWow64\apisetschema.dll
2013-08-02 01:48 . 2013-09-11 16:53 5120 ---ha-w- c:\windows\SysWow64\api-ms-win-core-file-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 16:53 4608 ---ha-w- c:\windows\SysWow64\api-ms-win-core-processthreads-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 16:53 4096 ---ha-w- c:\windows\SysWow64\api-ms-win-core-sysinfo-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 16:53 4096 ---ha-w- c:\windows\SysWow64\api-ms-win-core-synch-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 16:53 4096 ---ha-w- c:\windows\SysWow64\api-ms-win-core-misc-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 16:53 4096 ---ha-w- c:\windows\SysWow64\api-ms-win-core-localregistry-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 16:53 4096 ---ha-w- c:\windows\SysWow64\api-ms-win-core-localization-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 16:53 3584 ---ha-w- c:\windows\SysWow64\api-ms-win-core-processenvironment-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 16:53 3584 ---ha-w- c:\windows\SysWow64\api-ms-win-core-namedpipe-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 16:53 3584 ---ha-w- c:\windows\SysWow64\api-ms-win-core-memory-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 16:53 3584 ---ha-w- c:\windows\SysWow64\api-ms-win-core-libraryloader-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 16:53 3584 ---ha-w- c:\windows\SysWow64\api-ms-win-core-interlocked-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 16:53 3584 ---ha-w- c:\windows\SysWow64\api-ms-win-core-heap-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 16:53 3072 ---ha-w- c:\windows\SysWow64\api-ms-win-core-string-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 16:53 3072 ---ha-w- c:\windows\SysWow64\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 16:53 3072 ---ha-w- c:\windows\SysWow64\api-ms-win-core-profile-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 16:53 3072 ---ha-w- c:\windows\SysWow64\api-ms-win-core-io-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 16:53 3072 ---ha-w- c:\windows\SysWow64\api-ms-win-core-handle-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 16:53 3072 ---ha-w- c:\windows\SysWow64\api-ms-win-core-fibers-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 16:53 3072 ---ha-w- c:\windows\SysWow64\api-ms-win-core-errorhandling-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 16:53 3072 ---ha-w- c:\windows\SysWow64\api-ms-win-core-delayload-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 16:53 3072 ---ha-w- c:\windows\SysWow64\api-ms-win-core-debug-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 16:53 3072 ---ha-w- c:\windows\SysWow64\api-ms-win-core-datetime-l1-1-0.dll
2013-08-02 01:48 . 2013-09-11 16:53 3072 ---ha-w- c:\windows\SysWow64\api-ms-win-core-console-l1-1-0.dll
2013-08-02 01:09 . 2013-09-11 16:53 338432 ----a-w- c:\windows\system32\conhost.exe
2013-08-02 00:59 . 2013-09-11 16:53 112640 ----a-w- c:\windows\system32\smss.exe
2013-08-02 00:43 . 2013-09-11 16:53 6144 ---ha-w- c:\windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
2013-08-02 00:43 . 2013-09-11 16:53 4608 ---ha-w- c:\windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
2013-08-02 00:43 . 2013-09-11 16:53 3584 ---ha-w- c:\windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
2013-08-02 00:43 . 2013-09-11 16:53 3072 ---ha-w- c:\windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
2013-07-26 02:24 . 2013-09-11 16:51 14172672 ----a-w- c:\windows\system32\shell32.dll
2013-07-26 02:24 . 2013-09-11 16:51 197120 ----a-w- c:\windows\system32\shdocvw.dll
2013-07-25 09:25 . 2013-08-14 14:47 1888768 ----a-w- c:\windows\system32\WMVDECOD.DLL
2013-07-25 08:57 . 2013-08-14 14:47 1620992 ----a-w- c:\windows\SysWow64\WMVDECOD.DLL
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Owner\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Owner\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 131248 ----a-w- c:\users\Owner\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"TBPanel"="c:\program files (x86)\Vtune\TBPanel.exe" [2011-08-02 2248704]
"OfficeSyncProcess"="c:\program files (x86)\Microsoft Office\Office14\MSOSYNC.EXE" [2010-01-16 717696]
"GarenaPlus"="c:\program files (x86)\Garena Plus\GarenaMessenger.exe" [2013-08-06 9739056]
"DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2013-01-08 3674320]
"Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2013-06-21 19875432]
"Steam"="c:\program files (x86)\steam\Steam.exe" [2013-10-09 1813928]
"GoogleDriveSync"="c:\program files (x86)\Google\Drive\googledrivesync.exe" [2013-09-25 20133824]
"Razer Comms"="c:\program files (x86)\Razer\Core\RazerCore.exe" [2013-08-26 1091264]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"NUSB3MON"="c:\program files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" [2010-11-17 113288]
"APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2013-04-21 59720]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-04-04 958576]
"BCSSync"="c:\program files (x86)\Microsoft Office\Office14\BCSSync.exe" [2010-01-21 91520]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2013-03-11 253816]
"iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe" [2013-08-16 152392]
.
c:\users\Owner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Dropbox.lnk - c:\users\Owner\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup [2013-10-11 29768376]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
JVExec.lnk - c:\program files (x86)\VOX\JamVOX\JVExec.exe [2009-4-15 980280]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
R2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [x]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
R3 GGSAFERDriver;GGSAFER Driver;c:\program files (x86)\Garena Plus\Room\safedrv.sys;c:\program files (x86)\Garena Plus\Room\safedrv.sys [x]
R3 hidkmdf;KMDF Driver;c:\windows\system32\DRIVERS\hidkmdf.sys;c:\windows\SYSNATIVE\DRIVERS\hidkmdf.sys [x]
R3 JamVOXUSBAudioSrv;CEntrance USB Audio Driver Service for JamVOX;c:\windows\system32\drivers\jamvox.sys;c:\windows\SYSNATIVE\drivers\jamvox.sys [x]
R3 Netaapl;Apple Mobile Device Ethernet Service;c:\windows\system32\DRIVERS\netaapl64.sys;c:\windows\SYSNATIVE\DRIVERS\netaapl64.sys [x]
R3 npggsvc;nProtect GameGuard Service;c:\windows\system32\GameMon.des;c:\windows\SYSNATIVE\GameMon.des [x]
R3 NTIOLib_1_0_C;NTIOLib_1_0_C;e:\ntiolib_x64.sys;e:\NTIOLib_X64.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 TunngleService;TunngleService;c:\program files (x86)\Tunngle\TnglCtrl.exe;c:\program files (x86)\Tunngle\TnglCtrl.exe [x]
R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys;c:\windows\SYSNATIVE\Drivers\usbaapl64.sys [x]
R3 WacHidRouter;Wacom Hid Router;c:\windows\system32\DRIVERS\wachidrouter.sys;c:\windows\SYSNATIVE\DRIVERS\wachidrouter.sys [x]
R3 wacomrouterfilter;Wacom Router Filter Driver;c:\windows\system32\DRIVERS\wacomrouterfilter.sys;c:\windows\SYSNATIVE\DRIVERS\wacomrouterfilter.sys [x]
R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
R3 WDC_SAM;WD SCSI Pass Thru driver;c:\windows\system32\DRIVERS\wdcsam64.sys;c:\windows\SYSNATIVE\DRIVERS\wdcsam64.sys [x]
S0 RzFilter;RzFilter;c:\windows\system32\drivers\RzFilter.sys;c:\windows\SYSNATIVE\drivers\RzFilter.sys [x]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x]
S1 HssDRV6;Hotspot Shield Routing Driver 6;c:\windows\system32\DRIVERS\hssdrv6.sys;c:\windows\SYSNATIVE\DRIVERS\hssdrv6.sys [x]
S1 JAMVOX_AA;Service for JamVOX Controller driver;c:\windows\system32\DRIVERS\JamDRV.sys;c:\windows\SYSNATIVE\DRIVERS\JamDRV.sys [x]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
S2 hshld;Hotspot Shield Service;c:\program files (x86)\Hotspot Shield\bin\cmw_srv.exe;c:\program files (x86)\Hotspot Shield\bin\cmw_srv.exe [x]
S2 HssWd;Hotspot Shield Monitoring Service;c:\program files (x86)\Hotspot Shield\bin\hsswd.exe;c:\program files (x86)\Hotspot Shield\bin\hsswd.exe [x]
S2 MBAMScheduler;MBAMScheduler;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [x]
S2 NvStreamSvc;NVIDIA Streamer Service;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [x]
S2 RzOvlMon;Razer Overlay Subsystem Emergency Service;c:\program files (x86)\Razer\Core\64bit\rzovlmon.exe;c:\program files (x86)\Razer\Core\64bit\rzovlmon.exe [x]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x]
S2 TabletServiceWacom;TabletServiceWacom;c:\program files\Tablet\Wacom\Wacom_Tablet.exe;c:\program files\Tablet\Wacom\Wacom_Tablet.exe [x]
S2 TouchServiceWacom;Wacom Professional Touch Service;c:\program files\Tablet\Wacom\Wacom_TouchService.exe;c:\program files\Tablet\Wacom\Wacom_TouchService.exe [x]
S2 UNS;Intel® Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe;c:\program files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe [x]
S3 JAMVOX_01;Service for JamVOX Audio driver;c:\windows\system32\DRIVERS\JamWdm.sys;c:\windows\SYSNATIVE\DRIVERS\JamWdm.sys [x]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys;c:\windows\SYSNATIVE\drivers\mbam.sys [x]
S3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\nusb3hub.sys;c:\windows\SYSNATIVE\DRIVERS\nusb3hub.sys [x]
S3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\nusb3xhc.sys;c:\windows\SYSNATIVE\DRIVERS\nusb3xhc.sys [x]
S3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad64v.sys;c:\windows\SYSNATIVE\drivers\nvvad64v.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
S3 RzDxgk;RzDxgk;c:\windows\system32\drivers\RzDxgk.sys;c:\windows\SYSNATIVE\drivers\RzDxgk.sys [x]
S3 tap0901t;TAP-Win32 Adapter V9 (Tunngle);c:\windows\system32\DRIVERS\tap0901t.sys;c:\windows\SYSNATIVE\DRIVERS\tap0901t.sys [x]
S3 taphss6;Anchorfree HSS VPN Adapter;c:\windows\system32\DRIVERS\taphss6.sys;c:\windows\SYSNATIVE\DRIVERS\taphss6.sys [x]
.
.
--- Other Services/Drivers In Memory ---
.
*NewlyCreated* - WS2IFSL
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2013-10-07 15:10 1185744 ----a-w- c:\program files (x86)\Google\Chrome\Application\30.0.1599.69\Installer\chrmstp.exe
.
Contents of the 'Scheduled Tasks' folder
.
2013-10-18 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-25 15:17]
.
2013-10-19 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2013-05-02 12:52]
.
2013-10-18 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2013-05-02 12:52]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 164016 ----a-w- c:\users\Owner\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 164016 ----a-w- c:\users\Owner\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 164016 ----a-w- c:\users\Owner\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2013-09-11 02:09 164016 ----a-w- c:\users\Owner\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveBlacklistedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}]
2013-09-25 09:37 778704 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedEditOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}]
2013-09-25 09:37 778704 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedViewOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}]
2013-09-25 09:37 778704 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}]
2013-09-25 09:37 778704 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncingOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}]
2013-09-25 09:37 778704 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"JamInit"="InitJam.exe" [2009-04-14 253008]
"Nvtmru"="c:\program files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" [2013-08-27 1028896]
"Start WingMan Profiler"="c:\program files\Logitech\Gaming Software\LWEMon.exe" [2010-06-14 190536]
.
------- Supplementary Scan -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SysWOW64\blank.htm
uInternet Settings,ProxyOverride = *.local
IE: &D&ownload &with BitComet - c:\program files\BitComet\BitComet.exe/AddLink.htm
IE: &D&ownload all with BitComet - c:\program files\BitComet\BitComet.exe/AddAllLink.htm
IE: E&xport to Microsoft Excel - c:\progra~2\MICROS~1\Office14\EXCEL.EXE/3000
IE: Se&nd to OneNote - c:\progra~2\MICROS~1\Office14\ONBttnIE.dll/105
TCP: DhcpNameServer = 192.168.1.254
FF - ProfilePath - c:\users\Owner\AppData\Roaming\Mozilla\Firefox\Profiles\11n5c59f.default\
FF - ExtSQL: 2013-09-01 23:36;
[email protected]; c:\program files (x86)\Mozilla Firefox\browser\extensions\
[email protected]
.
- - - - ORPHANS REMOVED - - - -
.
Wow6432Node-HKCU-Run-wmi32 - c:\programdata\Application Data\wmimgmt.exe
HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start
AddRemove-{E3B9C5A9-BD7A-4B56-B754-FAEA7DD6FA88} - c:\program files (x86)\InstallShield Installation Information\{E3B9C5A9-BD7A-4B56-B754-FAEA7DD6FA88}\setup.exe
.
.
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\services\npggsvc]
"ImagePath"="c:\windows\system32\GameMon.des -service"
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_USERS\S-1-5-21-3533916949-36865485-774322356-1000\¬ ë*W*]
@Allowed: (Read) (RestrictedCode)
DUMPHIVE0.003 (REGF)
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_9_900_117_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_9_900_117_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_9_900_117_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_9_900_117_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_9_900_117.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.11"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_9_900_117.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_9_900_117.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_9_900_117.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\software\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}]
@Denied: (A) (Everyone)
"Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}"
.
[HKEY_LOCAL_MACHINE\software\Wow6432Node\Microsoft\Schema Library\ActionsPane3]
@Denied: (A) (Everyone)
.
[HKEY_LOCAL_MACHINE\software\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0]
"Key"="ActionsPane3"
"Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd"
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Other Running Processes ------------------------
.
c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
c:\program files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
c:\program files (x86)\Google\Update\1.3.21.165\GoogleCrashHandler.exe
c:\program files (x86)\Garena Plus\ggdllhost.exe
c:\program files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
c:\program files (x86)\Panda USB Vaccine\USBVaccine.exe
c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
c:\program files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
.
**************************************************************************
.
Completion time: 2013-10-19 10:11:03 - machine was rebooted
ComboFix-quarantined-files.txt 2013-10-19 02:11
.
Pre-Run: 23,148,347,392 bytes free
Post-Run: 23,045,144,576 bytes free
.
- - End Of File - - 6A760F46DAC44A1010F5C2FC1B9C991A
A36C5E4F47E84449FF07ED3517B43A31
10:13:34.0189 4508 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
10:13:35.0298 4508 ============================================================
10:13:35.0298 4508 Current date / time: 2013/10/19 10:13:35.0298
10:13:35.0298 4508 SystemInfo:
10:13:35.0298 4508
10:13:35.0298 4508 OS Version: 6.1.7601 ServicePack: 1.0
10:13:35.0298 4508 Product type: Workstation
10:13:35.0298 4508 ComputerName: PRABHU
10:13:35.0298 4508 UserName: Owner
10:13:35.0298 4508 Windows directory: C:\Windows
10:13:35.0298 4508 System windows directory: C:\Windows
10:13:35.0298 4508 Running under WOW64
10:13:35.0298 4508 Processor architecture: Intel x64
10:13:35.0298 4508 Number of processors: 4
10:13:35.0298 4508 Page size: 0x1000
10:13:35.0298 4508 Boot type: Normal boot
10:13:35.0298 4508 ============================================================
10:13:36.0660 4508 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
10:13:36.0670 4508 Drive \Device\Harddisk1\DR1 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
10:13:36.0671 4508 ============================================================
10:13:36.0671 4508 \Device\Harddisk0\DR0:
10:13:36.0671 4508 MBR partitions:
10:13:36.0671 4508 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
10:13:36.0671 4508 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x3D05D800
10:13:36.0671 4508 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x3D090000, BlocksNum 0x37676000
10:13:36.0671 4508 \Device\Harddisk1\DR1:
10:13:36.0672 4508 MBR partitions:
10:13:36.0672 4508 \Device\Harddisk1\DR1\Partition1: MBR, Type 0xC, StartLBA 0x3F, BlocksNum 0x74705982
10:13:36.0672 4508 ============================================================
10:13:36.0715 4508 C: <-> \Device\Harddisk0\DR0\Partition2
10:13:37.0386 4508 D: <-> \Device\Harddisk0\DR0\Partition3
10:13:37.0397 4508 F: <-> \Device\Harddisk1\DR1\Partition1
10:13:37.0397 4508 ============================================================
10:13:37.0397 4508 Initialize success
10:13:37.0398 4508 ============================================================
10:14:31.0513 4616 ============================================================
10:14:31.0513 4616 Scan started
10:14:31.0513 4616 Mode: Manual; SigCheck; TDLFS;
10:14:31.0513 4616 ============================================================
10:14:32.0160 4616 ================ Scan system memory ========================
10:14:32.0161 4616 System memory - ok
10:14:32.0161 4616 ================ Scan services =============================
10:14:33.0417 4616 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
10:14:33.0502 4616 1394ohci - ok
10:14:33.0535 4616 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\Windows\system32\drivers\ACPI.sys
10:14:33.0554 4616 ACPI - ok
10:14:33.0571 4616 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
10:14:33.0616 4616 AcpiPmi - ok
10:14:33.0752 4616 [ ADDA5E1951B90D3D23C56D3CF0622ADC ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
10:14:33.0765 4616 AdobeARMservice - ok
10:14:33.0931 4616 [ A283108E14F3970432C21AF4C0CB1BCE ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
10:14:33.0976 4616 AdobeFlashPlayerUpdateSvc - ok
10:14:34.0020 4616 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
10:14:34.0042 4616 adp94xx - ok
10:14:34.0055 4616 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\drivers\adpahci.sys
10:14:34.0065 4616 adpahci - ok
10:14:34.0081 4616 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
10:14:34.0089 4616 adpu320 - ok
10:14:34.0113 4616 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
10:14:34.0147 4616 AeLookupSvc - ok
10:14:34.0198 4616 [ 314C17917AC8523EC77A710215012A65 ] AFD C:\Windows\system32\drivers\afd.sys
10:14:34.0227 4616 AFD - ok
10:14:34.0247 4616 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\drivers\agp440.sys
10:14:34.0258 4616 agp440 - ok
10:14:34.0289 4616 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe
10:14:34.0317 4616 ALG - ok
10:14:34.0356 4616 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\drivers\aliide.sys
10:14:34.0366 4616 aliide - ok
10:14:34.0390 4616 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\drivers\amdide.sys
10:14:34.0400 4616 amdide - ok
10:14:34.0415 4616 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
10:14:34.0428 4616 AmdK8 - ok
10:14:34.0432 4616 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\drivers\amdppm.sys
10:14:34.0460 4616 AmdPPM - ok
10:14:34.0491 4616 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\Windows\system32\drivers\amdsata.sys
10:14:34.0505 4616 amdsata - ok
10:14:34.0518 4616 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
10:14:34.0534 4616 amdsbs - ok
10:14:34.0544 4616 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\Windows\system32\drivers\amdxata.sys
10:14:34.0554 4616 amdxata - ok
10:14:34.0587 4616 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\Windows\system32\drivers\appid.sys
10:14:34.0656 4616 AppID - ok
10:14:34.0667 4616 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll
10:14:34.0694 4616 AppIDSvc - ok
10:14:34.0741 4616 [ 9D2A2369AB4B08A4905FE72DB104498F ] Appinfo C:\Windows\System32\appinfo.dll
10:14:34.0769 4616 Appinfo - ok
10:14:34.0818 4616 [ 4FE5C6D40664AE07BE5105874357D2ED ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
10:14:34.0831 4616 Apple Mobile Device - ok
10:14:34.0878 4616 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\drivers\arc.sys
10:14:34.0892 4616 arc - ok
10:14:34.0902 4616 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\drivers\arcsas.sys
10:14:34.0914 4616 arcsas - ok
10:14:35.0058 4616 [ 9217D874131AE6FF8F642F124F00A555 ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
10:14:35.0070 4616 aspnet_state - ok
10:14:35.0131 4616 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
10:14:35.0164 4616 AsyncMac - ok
10:14:35.0192 4616 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\drivers\atapi.sys
10:14:35.0199 4616 atapi - ok
10:14:35.0240 4616 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
10:14:35.0281 4616 AudioEndpointBuilder - ok
10:14:35.0286 4616 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\Windows\System32\Audiosrv.dll
10:14:35.0309 4616 AudioSrv - ok
10:14:35.0358 4616 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\Windows\System32\AxInstSV.dll
10:14:35.0418 4616 AxInstSV - ok
10:14:35.0436 4616 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\drivers\bxvbda.sys
10:14:35.0478 4616 b06bdrv - ok
10:14:35.0555 4616 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
10:14:35.0573 4616 b57nd60a - ok
10:14:35.0622 4616 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll
10:14:35.0662 4616 BDESVC - ok
10:14:35.0698 4616 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys
10:14:35.0751 4616 Beep - ok
10:14:35.0831 4616 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\Windows\System32\bfe.dll
10:14:35.0902 4616 BFE - ok
10:14:35.0937 4616 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\Windows\system32\qmgr.dll
10:14:35.0975 4616 BITS - ok
10:14:35.0978 4616 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
10:14:35.0985 4616 blbdrive - ok
10:14:36.0059 4616 [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
10:14:36.0077 4616 Bonjour Service - ok
10:14:36.0122 4616 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
10:14:36.0167 4616 bowser - ok
10:14:36.0171 4616 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys
10:14:36.0187 4616 BrFiltLo - ok
10:14:36.0190 4616 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys
10:14:36.0204 4616 BrFiltUp - ok
10:14:36.0251 4616 [ 5C2F352A4E961D72518261257AAE204B ] BridgeMP C:\Windows\system32\DRIVERS\bridge.sys
10:14:36.0288 4616 BridgeMP - ok
10:14:36.0334 4616 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\Windows\System32\browser.dll
10:14:36.0349 4616 Browser - ok
10:14:36.0362 4616 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys
10:14:36.0414 4616 Brserid - ok
10:14:36.0417 4616 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
10:14:36.0432 4616 BrSerWdm - ok
10:14:36.0435 4616 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
10:14:36.0446 4616 BrUsbMdm - ok
10:14:36.0448 4616 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
10:14:36.0454 4616 BrUsbSer - ok
10:14:36.0456 4616 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
10:14:36.0464 4616 BTHMODEM - ok
10:14:36.0479 4616 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll
10:14:36.0535 4616 bthserv - ok
10:14:36.0578 4616 catchme - ok
10:14:36.0603 4616 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
10:14:36.0649 4616 cdfs - ok
10:14:36.0659 4616 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
10:14:36.0681 4616 cdrom - ok
10:14:36.0708 4616 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\Windows\System32\certprop.dll
10:14:36.0750 4616 CertPropSvc - ok
10:14:36.0763 4616 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\drivers\circlass.sys
10:14:36.0781 4616 circlass - ok
10:14:36.0806 4616 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys
10:14:36.0815 4616 CLFS - ok
10:14:36.0992 4616 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
10:14:37.0005 4616 clr_optimization_v2.0.50727_32 - ok
10:14:37.0136 4616 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
10:14:37.0149 4616 clr_optimization_v2.0.50727_64 - ok
10:14:37.0234 4616 [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
10:14:37.0246 4616 clr_optimization_v4.0.30319_32 - ok
10:14:37.0305 4616 [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
10:14:37.0317 4616 clr_optimization_v4.0.30319_64 - ok
10:14:37.0321 4616 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\drivers\CmBatt.sys
10:14:37.0334 4616 CmBatt - ok
10:14:37.0365 4616 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys
10:14:37.0372 4616 cmdide - ok
10:14:37.0419 4616 [ 9AC4F97C2D3E93367E2148EA940CD2CD ] CNG C:\Windows\system32\Drivers\cng.sys
10:14:37.0464 4616 CNG - ok
10:14:37.0484 4616 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\drivers\compbatt.sys
10:14:37.0496 4616 Compbatt - ok
10:14:37.0527 4616 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
10:14:37.0545 4616 CompositeBus - ok
10:14:37.0558 4616 COMSysApp - ok
10:14:37.0572 4616 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
10:14:37.0583 4616 crcdisk - ok
10:14:37.0619 4616 [ 6B400F211BEE880A37A1ED0368776BF4 ] CryptSvc C:\Windows\system32\cryptsvc.dll
10:14:37.0633 4616 CryptSvc - ok
10:14:37.0690 4616 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll
10:14:37.0735 4616 DcomLaunch - ok
10:14:37.0744 4616 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll
10:14:37.0767 4616 defragsvc - ok
10:14:37.0797 4616 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys
10:14:37.0833 4616 DfsC - ok
10:14:37.0861 4616 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll
10:14:37.0902 4616 Dhcp - ok
10:14:37.0915 4616 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys
10:14:37.0968 4616 discache - ok
10:14:37.0989 4616 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\drivers\disk.sys
10:14:37.0995 4616 Disk - ok
10:14:38.0015 4616 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\Windows\System32\dnsrslvr.dll
10:14:38.0041 4616 Dnscache - ok
10:14:38.0055 4616 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll
10:14:38.0107 4616 dot3svc - ok
10:14:38.0112 4616 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll
10:14:38.0138 4616 DPS - ok
10:14:38.0168 4616 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
10:14:38.0196 4616 drmkaud - ok
10:14:38.0280 4616 [ 46571ED73AE84469DCA53081D33CF3C8 ] dtsoftbus01 C:\Windows\system32\DRIVERS\dtsoftbus01.sys
10:14:38.0303 4616 dtsoftbus01 - ok
10:14:38.0335 4616 [ 88612F1CE3BF42256913BF6E61C70D52 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
10:14:38.0364 4616 DXGKrnl - ok
10:14:38.0386 4616 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll
10:14:38.0424 4616 EapHost - ok
10:14:38.0482 4616 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\drivers\evbda.sys
10:14:38.0558 4616 ebdrv - ok
10:14:38.0592 4616 [ C118A82CD78818C29AB228366EBF81C3 ] EFS C:\Windows\System32\lsass.exe
10:14:38.0599 4616 EFS - ok
10:14:38.0671 4616 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
10:14:38.0708 4616 ehRecvr - ok
10:14:38.0742 4616 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe
10:14:38.0757 4616 ehSched - ok
10:14:38.0776 4616 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\drivers\elxstor.sys
10:14:38.0792 4616 elxstor - ok
10:14:38.0805 4616 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys
10:14:38.0830 4616 ErrDev - ok
10:14:38.0858 4616 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll
10:14:38.0890 4616 EventSystem - ok
10:14:38.0918 4616 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys
10:14:38.0940 4616 exfat - ok
10:14:38.0954 4616 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys
10:14:38.0977 4616 fastfat - ok
10:14:39.0014 4616 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe
10:14:39.0055 4616 Fax - ok
10:14:39.0060 4616 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\drivers\fdc.sys
10:14:39.0091 4616 fdc - ok
10:14:39.0118 4616 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll
10:14:39.0152 4616 fdPHost - ok
10:14:39.0159 4616 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll
10:14:39.0181 4616 FDResPub - ok
10:14:39.0209 4616 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
10:14:39.0216 4616 FileInfo - ok
10:14:39.0220 4616 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
10:14:39.0257 4616 Filetrace - ok
10:14:39.0259 4616 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\drivers\flpydisk.sys
10:14:39.0266 4616 flpydisk - ok
10:14:39.0287 4616 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
10:14:39.0296 4616 FltMgr - ok
10:14:39.0326 4616 [ C4C183E6551084039EC862DA1C945E3D ] FontCache C:\Windows\system32\FntCache.dll
10:14:39.0369 4616 FontCache - ok
10:14:39.0391 4616 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
10:14:39.0402 4616 FontCache3.0.0.0 - ok
10:14:39.0406 4616 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
10:14:39.0417 4616 FsDepends - ok
10:14:39.0428 4616 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
10:14:39.0436 4616 Fs_Rec - ok
10:14:39.0493 4616 [ 8F6322049018354F45F05A2FD2D4E5E0 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
10:14:39.0512 4616 fvevol - ok
10:14:39.0527 4616 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
10:14:39.0540 4616 gagp30kx - ok
10:14:39.0587 4616 [ 8E98D21EE06192492A5671A6144D092F ] GEARAspiWDM C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
10:14:39.0596 4616 GEARAspiWDM - ok
10:14:39.0685 4616 GGSAFERDriver - ok
10:14:39.0704 4616 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll
10:14:39.0749 4616 gpsvc - ok
10:14:39.0821 4616 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
10:14:39.0828 4616 gupdate - ok
10:14:39.0858 4616 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
10:14:39.0866 4616 gupdatem - ok
10:14:39.0879 4616 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
10:14:39.0918 4616 hcw85cir - ok
10:14:39.0955 4616 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
10:14:39.0989 4616 HdAudAddService - ok
10:14:40.0022 4616 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
10:14:40.0053 4616 HDAudBus - ok
10:14:40.0057 4616 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\drivers\HidBatt.sys
10:14:40.0073 4616 HidBatt - ok
10:14:40.0077 4616 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\drivers\hidbth.sys
10:14:40.0088 4616 HidBth - ok
10:14:40.0101 4616 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\drivers\hidir.sys
10:14:40.0111 4616 HidIr - ok
10:14:40.0134 4616 [ 3CC53BC405F609F61D4A879F3E7EBC4A ] hidkmdf C:\Windows\system32\DRIVERS\hidkmdf.sys
10:14:40.0140 4616 hidkmdf - ok
10:14:40.0150 4616 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\System32\hidserv.dll
10:14:40.0187 4616 hidserv - ok
10:14:40.0221 4616 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\drivers\hidusb.sys
10:14:40.0253 4616 HidUsb - ok
10:14:40.0278 4616 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll
10:14:40.0314 4616 hkmsvc - ok
10:14:40.0329 4616 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
10:14:40.0350 4616 HomeGroupListener - ok
10:14:40.0368 4616 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
10:14:40.0392 4616 HomeGroupProvider - ok
10:14:40.0404 4616 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
10:14:40.0411 4616 HpSAMD - ok
10:14:40.0687 4616 [ 44A86ACCA8530CC6002F83F701BA7484 ] hshld C:\Program Files (x86)\Hotspot Shield\bin\cmw_srv.exe
10:14:40.0737 4616 hshld - ok
10:14:40.0781 4616 [ 9C21C4CDA3564AD2EFC312459746229B ] HssDRV6 C:\Windows\system32\DRIVERS\hssdrv6.sys
10:14:40.0790 4616 HssDRV6 - ok
10:14:40.0851 4616 [ 8EA9CE2B1AC604A8995834E9B8F1E0DD ] HssTrayService C:\Program Files (x86)\Hotspot Shield\bin\HssTrayService.EXE
10:14:40.0863 4616 HssTrayService - ok
10:14:40.0999 4616 [ 67A2B219D8D91C1BC66A6A5EF507CE6C ] HssWd C:\Program Files (x86)\Hotspot Shield\bin\hsswd.exe
10:14:41.0020 4616 HssWd - ok
10:14:41.0058 4616 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\Windows\system32\drivers\HTTP.sys
10:14:41.0117 4616 HTTP - ok
10:14:41.0133 4616 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
10:14:41.0138 4616 hwpolicy - ok
10:14:41.0149 4616 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
10:14:41.0157 4616 i8042prt - ok
10:14:41.0172 4616 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
10:14:41.0182 4616 iaStorV - ok
10:14:41.0224 4616 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
10:14:41.0246 4616 idsvc - ok
10:14:41.0249 4616 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\drivers\iirsp.sys
10:14:41.0256 4616 iirsp - ok
10:14:41.0283 4616 [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT C:\Windows\System32\ikeext.dll
10:14:41.0325 4616 IKEEXT - ok
10:14:41.0363 4616 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\drivers\intelide.sys
10:14:41.0375 4616 intelide - ok
10:14:41.0400 4616 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys
10:14:41.0432 4616 intelppm - ok
10:14:41.0469 4616 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll
10:14:41.0518 4616 IPBusEnum - ok
10:14:41.0536 4616 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
10:14:41.0558 4616 IpFilterDriver - ok
10:14:41.0625 4616 [ 08C2957BB30058E663720C5606885653 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
10:14:41.0674 4616 iphlpsvc - ok
10:14:41.0688 4616 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
10:14:41.0716 4616 IPMIDRV - ok
10:14:41.0720 4616 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys
10:14:41.0775 4616 IPNAT - ok
10:14:41.0861 4616 [ 78486992AC657AE5065C4A2135838570 ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
10:14:41.0882 4616 iPod Service - ok
10:14:41.0904 4616 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys
10:14:41.0922 4616 IRENUM - ok
10:14:41.0955 4616 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys
10:14:41.0967 4616 isapnp - ok
10:14:41.0995 4616 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
10:14:42.0013 4616 iScsiPrt - ok
10:14:42.0036 4616 JamVOXUSBAudioSrv - ok
10:14:42.0062 4616 [ F315BA6BC1DF8AD5711423618A823CF2 ] JAMVOX_01 C:\Windows\system32\DRIVERS\JamWdm.sys
10:14:42.0073 4616 JAMVOX_01 - ok
10:14:42.0093 4616 [ 193F0D20865291C22305901F671A170C ] JAMVOX_AA C:\Windows\system32\DRIVERS\JamDRV.sys
10:14:42.0104 4616 JAMVOX_AA - ok
10:14:42.0133 4616 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
10:14:42.0145 4616 kbdclass - ok
10:14:42.0159 4616 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
10:14:42.0172 4616 kbdhid - ok
10:14:42.0209 4616 [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso C:\Windows\system32\lsass.exe
10:14:42.0222 4616 KeyIso - ok
10:14:42.0238 4616 [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
10:14:42.0251 4616 KSecDD - ok
10:14:42.0273 4616 [ 26C43A7C2862447EC59DEDA188D1DA07 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
10:14:42.0287 4616 KSecPkg - ok
10:14:42.0312 4616 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
10:14:42.0353 4616 ksthunk - ok
10:14:42.0459 4616 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll
10:14:42.0542 4616 KtmRm - ok
10:14:42.0604 4616 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\System32\srvsvc.dll
10:14:42.0658 4616 LanmanServer - ok
10:14:42.0687 4616 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
10:14:42.0708 4616 LanmanWorkstation - ok
10:14:42.0740 4616 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
10:14:42.0779 4616 lltdio - ok
10:14:42.0788 4616 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll
10:14:42.0816 4616 lltdsvc - ok
10:14:42.0850 4616 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll
10:14:42.0875 4616 lmhosts - ok
10:14:42.0945 4616 [ DF86570FFC4F8A7E38595CC072B19A5B ] LMS C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
10:14:42.0961 4616 LMS - ok
10:14:42.0976 4616 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
10:14:42.0988 4616 LSI_FC - ok
10:14:43.0001 4616 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
10:14:43.0012 4616 LSI_SAS - ok
10:14:43.0014 4616 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
10:14:43.0021 4616 LSI_SAS2 - ok
10:14:43.0034 4616 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
10:14:43.0042 4616 LSI_SCSI - ok
10:14:43.0052 4616 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys
10:14:43.0089 4616 luafv - ok
10:14:43.0145 4616 [ 0BB97D43299910CBFBA59C461B99B910 ] MBAMProtector C:\Windows\system32\drivers\mbam.sys
10:14:43.0158 4616 MBAMProtector - ok
10:14:43.0212 4616 [ 65085456FD9A74D7F1A999520C299ECB ] MBAMScheduler C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
10:14:43.0230 4616 MBAMScheduler - ok
10:14:43.0271 4616 [ E0D7732F2D2E24B2DB3F67B6750295B8 ] MBAMService C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
10:14:43.0294 4616 MBAMService - ok
10:14:43.0340 4616 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
10:14:43.0356 4616 Mcx2Svc - ok
10:14:43.0365 4616 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\drivers\megasas.sys
10:14:43.0375 4616 megasas - ok
10:14:43.0400 4616 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
10:14:43.0411 4616 MegaSR - ok
10:14:43.0433 4616 [ A6518DCC42F7A6E999BB3BEA8FD87567 ] MEIx64 C:\Windows\system32\DRIVERS\HECIx64.sys
10:14:43.0440 4616 MEIx64 - ok
10:14:43.0486 4616 Microsoft SharePoint Workspace Audit Service - ok
10:14:43.0526 4616 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll
10:14:43.0575 4616 MMCSS - ok
10:14:43.0588 4616 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys
10:14:43.0642 4616 Modem - ok
10:14:43.0661 4616 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys
10:14:43.0693 4616 monitor - ok
10:14:43.0713 4616 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
10:14:43.0725 4616 mouclass - ok
10:14:43.0736 4616 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
10:14:43.0751 4616 mouhid - ok
10:14:43.0790 4616 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
10:14:43.0797 4616 mountmgr - ok
10:14:43.0860 4616 [ 825BF0E46B4470A463AEB641480C5FCA ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
10:14:43.0867 4616 MozillaMaintenance - ok
10:14:43.0870 4616 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys
10:14:43.0877 4616 mpio - ok
10:14:43.0894 4616 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
10:14:43.0921 4616 mpsdrv - ok
10:14:43.0933 4616 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\Windows\system32\mpssvc.dll
10:14:43.0961 4616 MpsSvc - ok
10:14:43.0990 4616 [ 1A4F75E63C9FB84B85DFFC6B63FD5404 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
10:14:44.0013 4616 MRxDAV - ok
10:14:44.0035 4616 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
10:14:44.0059 4616 mrxsmb - ok
10:14:44.0071 4616 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
10:14:44.0088 4616 mrxsmb10 - ok
10:14:44.0098 4616 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
10:14:44.0108 4616 mrxsmb20 - ok
10:14:44.0138 4616 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys
10:14:44.0145 4616 msahci - ok
10:14:44.0149 4616 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys
10:14:44.0161 4616 msdsm - ok
10:14:44.0172 4616 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe
10:14:44.0185 4616 MSDTC - ok
10:14:44.0213 4616 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys
10:14:44.0243 4616 Msfs - ok
10:14:44.0267 4616 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
10:14:44.0306 4616 mshidkmdf - ok
10:14:44.0308 4616 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
10:14:44.0315 4616 msisadrv - ok
10:14:44.0352 4616 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
10:14:44.0400 4616 MSiSCSI - ok
10:14:44.0402 4616 msiserver - ok
10:14:44.0435 4616 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
10:14:44.0459 4616 MSKSSRV - ok
10:14:44.0473 4616 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
10:14:44.0495 4616 MSPCLOCK - ok
10:14:44.0498 4616 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
10:14:44.0521 4616 MSPQM - ok
10:14:44.0540 4616 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
10:14:44.0551 4616 MsRPC - ok
10:14:44.0557 4616 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
10:14:44.0564 4616 mssmbios - ok
10:14:44.0573 4616 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
10:14:44.0613 4616 MSTEE - ok
10:14:44.0615 4616 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\drivers\MTConfig.sys
10:14:44.0623 4616 MTConfig - ok
10:14:44.0638 4616 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys
10:14:44.0644 4616 Mup - ok
10:14:44.0669 4616 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll
10:14:44.0707 4616 napagent - ok
10:14:44.0727 4616 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
10:14:44.0757 4616 NativeWifiP - ok
10:14:44.0786 4616 [ 760E38053BF56E501D562B70AD796B88 ] NDIS C:\Windows\system32\drivers\ndis.sys
10:14:44.0813 4616 NDIS - ok
10:14:44.0842 4616 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
10:14:44.0879 4616 NdisCap - ok
10:14:44.0906 4616 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
10:14:44.0928 4616 NdisTapi - ok
10:14:44.0945 4616 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
10:14:44.0965 4616 Ndisuio - ok
10:14:44.0993 4616 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
10:14:45.0032 4616 NdisWan - ok
10:14:45.0050 4616 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
10:14:45.0070 4616 NDProxy - ok
10:14:45.0105 4616 [ 6F4607E2333FE21E9E3FF8133A88B35B ] Netaapl C:\Windows\system32\DRIVERS\netaapl64.sys
10:14:45.0146 4616 Netaapl - ok
10:14:45.0169 4616 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
10:14:45.0219 4616 NetBIOS - ok
10:14:45.0250 4616 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
10:14:45.0299 4616 NetBT - ok
10:14:45.0325 4616 [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon C:\Windows\system32\lsass.exe
10:14:45.0331 4616 Netlogon - ok
10:14:45.0378 4616 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll
10:14:45.0417 4616 Netman - ok
10:14:45.0468 4616 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
10:14:45.0478 4616 NetMsmqActivator - ok
10:14:45.0503 4616 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
10:14:45.0515 4616 NetPipeActivator - ok
10:14:45.0534 4616 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll
10:14:45.0580 4616 netprofm - ok
10:14:45.0596 4616 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
10:14:45.0601 4616 NetTcpActivator - ok
10:14:45.0603 4616 [ D22CD77D4F0D63D1169BB35911BFF12D ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
10:14:45.0609 4616 NetTcpPortSharing - ok
10:14:45.0627 4616 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
10:14:45.0637 4616 nfrd960 - ok
10:14:45.0707 4616 [ 8AD77806D336673F270DB31645267293 ] NlaSvc C:\Windows\System32\nlasvc.dll
10:14:45.0729 4616 NlaSvc - ok
10:14:45.0748 4616 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys
10:14:45.0782 4616 Npfs - ok
10:14:45.0807 4616 npggsvc - ok
10:14:45.0825 4616 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll
10:14:45.0848 4616 nsi - ok
10:14:45.0852 4616 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
10:14:45.0874 4616 nsiproxy - ok
10:14:45.0915 4616 [ B98F8C6E31CD07B2E6F71F7F648E38C0 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
10:14:45.0935 4616 Ntfs - ok
10:14:45.0937 4616 NTIOLib_1_0_C - ok
10:14:45.0952 4616 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys
10:14:45.0972 4616 Null - ok
10:14:46.0022 4616 [ 0EBC9D13CD96C15B1B18D8678A609E4B ] nusb3hub C:\Windows\system32\DRIVERS\nusb3hub.sys
10:14:46.0041 4616 nusb3hub - ok
10:14:46.0058 4616 [ 7BDEC000D56D485021D9C1E63C2F81CA ] nusb3xhc C:\Windows\system32\DRIVERS\nusb3xhc.sys
10:14:46.0078 4616 nusb3xhc - ok
10:14:46.0136 4616 [ 554964B900AE2954B8B589B6287034AC ] NVHDA C:\Windows\system32\drivers\nvhda64v.sys
10:14:46.0151 4616 NVHDA - ok
10:14:47.0843 4616 [ E873E4986FC3BC32EFCAE9B289373BBC ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
10:14:47.0962 4616 nvlddmkm - ok
10:14:48.0005 4616 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\Windows\system32\drivers\nvraid.sys
10:14:48.0020 4616 nvraid - ok
10:14:48.0046 4616 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\Windows\system32\drivers\nvstor.sys
10:14:48.0059 4616 nvstor - ok
10:14:49.0003 4616 [ 63B5DCF3A9EEA1C418468A312B54E612 ] NvStreamSvc C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
10:14:49.0277 4616 NvStreamSvc - ok
10:14:49.0407 4616 [ 9E9E75C74A715B6AD71C2009C8F9F2F8 ] nvsvc C:\Windows\system32\nvvsvc.exe
10:14:49.0436 4616 nvsvc - ok
10:14:49.0717 4616 [ 005E474630A7AA05A617C574B702FEED ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
10:14:49.0790 4616 nvUpdatusService - ok
10:14:49.0902 4616 [ 220B120EF4C36B4A3E23FAEC91E2FCE3 ] nvvad_WaveExtensible C:\Windows\system32\drivers\nvvad64v.sys
10:14:49.0914 4616 nvvad_WaveExtensible - ok
10:14:49.0941 4616 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
10:14:49.0955 4616 nv_agp - ok
10:14:50.0182 4616 [ 785F487A64950F3CB8E9F16253BA3B7B ] odserv C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
10:14:50.0230 4616 odserv - ok
10:14:50.0260 4616 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
10:14:50.0269 4616 ohci1394 - ok
10:14:50.0335 4616 [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
10:14:50.0348 4616 ose - ok
10:14:50.0439 4616 [ 61BFFB5F57AD12F83AB64B7181829B34 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
10:14:50.0546 4616 osppsvc - ok
10:14:50.0563 4616 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
10:14:50.0599 4616 p2pimsvc - ok
10:14:50.0627 4616 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll
10:14:50.0642 4616 p2psvc - ok
10:14:50.0651 4616 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\DRIVERS\parport.sys
10:14:50.0661 4616 Parport - ok
10:14:50.0691 4616 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\Windows\system32\drivers\partmgr.sys
10:14:50.0704 4616 partmgr - ok
10:14:50.0725 4616 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll
10:14:50.0763 4616 PcaSvc - ok
10:14:50.0807 4616 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys
10:14:50.0822 4616 pci - ok
10:14:50.0855 4616 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys
10:14:50.0867 4616 pciide - ok
10:14:50.0877 4616 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
10:14:50.0893 4616 pcmcia - ok
10:14:50.0903 4616 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys
10:14:50.0911 4616 pcw - ok
10:14:51.0022 4616 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys
10:14:51.0108 4616 PEAUTH - ok
10:14:51.0170 4616 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe
10:14:51.0196 4616 PerfHost - ok
10:14:51.0363 4616 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll
10:14:51.0431 4616 pla - ok
10:14:51.0482 4616 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
10:14:51.0534 4616 PlugPlay - ok
10:14:51.0548 4616 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
10:14:51.0575 4616 PNRPAutoReg - ok
10:14:51.0581 4616 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
10:14:51.0599 4616 PNRPsvc - ok
10:14:51.0627 4616 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
10:14:51.0685 4616 PolicyAgent - ok
10:14:51.0729 4616 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll
10:14:51.0775 4616 Power - ok
10:14:51.0814 4616 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
10:14:51.0865 4616 PptpMiniport - ok
10:14:51.0868 4616 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\drivers\processr.sys
10:14:51.0897 4616 Processor - ok
10:14:51.0931 4616 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\Windows\system32\profsvc.dll
10:14:51.0972 4616 ProfSvc - ok
10:14:51.0982 4616 [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe
10:14:51.0995 4616 ProtectedStorage - ok
10:14:52.0035 4616 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys
10:14:52.0072 4616 Psched - ok
10:14:52.0113 4616 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\drivers\ql2300.sys
10:14:52.0159 4616 ql2300 - ok
10:14:52.0186 4616 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
10:14:52.0197 4616 ql40xx - ok
10:14:52.0213 4616 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll
10:14:52.0238 4616 QWAVE - ok
10:14:52.0246 4616 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
10:14:52.0260 4616 QWAVEdrv - ok
10:14:52.0272 4616 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
10:14:52.0298 4616 RasAcd - ok
10:14:52.0340 4616 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
10:14:52.0377 4616 RasAgileVpn - ok
10:14:52.0385 4616 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll
10:14:52.0407 4616 RasAuto - ok
10:14:52.0432 4616 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
10:14:52.0463 4616 Rasl2tp - ok
10:14:52.0484 4616 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll
10:14:52.0507 4616 RasMan - ok
10:14:52.0535 4616 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
10:14:52.0557 4616 RasPppoe - ok
10:14:52.0585 4616 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
10:14:52.0605 4616 RasSstp - ok
10:14:52.0616 4616 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
10:14:52.0637 4616 rdbss - ok
10:14:52.0646 4616 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\drivers\rdpbus.sys
10:14:52.0655 4616 rdpbus - ok
10:14:52.0696 4616 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
10:14:52.0734 4616 RDPCDD - ok
10:14:52.0747 4616 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
10:14:52.0771 4616 RDPENCDD - ok
10:14:52.0802 4616 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
10:14:52.0822 4616 RDPREFMP - ok
10:14:52.0839 4616 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
10:14:52.0865 4616 RDPWD - ok
10:14:52.0894 4616 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
10:14:52.0910 4616 rdyboost - ok
10:14:52.0927 4616 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll
10:14:52.0996 4616 RemoteAccess - ok
10:14:53.0062 4616 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll
10:14:53.0099 4616 RemoteRegistry - ok
10:14:53.0132 4616 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
10:14:53.0154 4616 RpcEptMapper - ok
10:14:53.0161 4616 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe
10:14:53.0168 4616 RpcLocator - ok
10:14:53.0178 4616 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\System32\rpcss.dll
10:14:53.0201 4616 RpcSs - ok
10:14:53.0231 4616 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
10:14:53.0251 4616 rspndr - ok
10:14:53.0306 4616 [ EE082E06A82FF630351D1E0EBBD3D8D0 ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys
10:14:53.0326 4616 RTL8167 - ok
10:14:53.0400 4616 [ 444CBF28D86C2CD47A6A3B1FC9B591DD ] RzDxgk C:\Windows\system32\drivers\RzDxgk.sys
10:14:53.0413 4616 RzDxgk - ok
10:14:53.0464 4616 [ A565A5C81047658FCB06804F085396D4 ] RzFilter C:\Windows\system32\drivers\RzFilter.sys
10:14:53.0477 4616 RzFilter - ok
10:14:53.0634 4616 [ 44E7610BCCE8C7AD9E0610D0F4F1AA6F ] RzOvlMon C:\Program Files (x86)\Razer\Core\64bit\rzovlmon.exe
10:14:53.0646 4616 RzOvlMon - ok
10:14:53.0666 4616 [ C118A82CD78818C29AB228366EBF81C3 ] SamSs C:\Windows\system32\lsass.exe
10:14:53.0680 4616 SamSs - ok
10:14:53.0708 4616 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
10:14:53.0722 4616 sbp2port - ok
10:14:53.0742 4616 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll
10:14:53.0786 4616 SCardSvr - ok
10:14:53.0794 4616 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
10:14:53.0833 4616 scfilter - ok
10:14:53.0860 4616 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll
10:14:53.0888 4616 Schedule - ok
10:14:53.0914 4616 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll
10:14:53.0933 4616 SCPolicySvc - ok
10:14:53.0976 4616 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll
10:14:54.0020 4616 SDRSVC - ok
10:14:54.0031 4616 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys
10:14:54.0087 4616 secdrv - ok
10:14:54.0105 4616 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll
10:14:54.0126 4616 seclogon - ok
10:14:54.0151 4616 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\system32\sens.dll
10:14:54.0173 4616 SENS - ok
10:14:54.0203 4616 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll
10:14:54.0253 4616 SensrSvc - ok
10:14:54.0266 4616 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys
10:14:54.0296 4616 Serenum - ok
10:14:54.0322 4616 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys
10:14:54.0355 4616 Serial - ok
10:14:54.0390 4616 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\drivers\sermouse.sys
10:14:54.0415 4616 sermouse - ok
10:14:54.0441 4616 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll
10:14:54.0505 4616 SessionEnv - ok
10:14:54.0507 4616 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
10:14:54.0516 4616 sffdisk - ok
10:14:54.0518 4616 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
10:14:54.0526 4616 sffp_mmc - ok
10:14:54.0528 4616 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
10:14:54.0552 4616 sffp_sd - ok
10:14:54.0554 4616 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
10:14:54.0561 4616 sfloppy - ok
10:14:54.0582 4616 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll
10:14:54.0605 4616 SharedAccess - ok
10:14:54.0618 4616 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
10:14:54.0640 4616 ShellHWDetection - ok
10:14:54.0667 4616 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
10:14:54.0674 4616 SiSRaid2 - ok
10:14:54.0679 4616 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
10:14:54.0685 4616 SiSRaid4 - ok
10:14:54.0743 4616 [ 3E587DBBDFF938DDE5D4CE4047BE9041 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
10:14:54.0756 4616 SkypeUpdate - ok
10:14:54.0785 4616 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys
10:14:54.0822 4616 Smb - ok
10:14:54.0847 4616 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe
10:14:54.0878 4616 SNMPTRAP - ok
10:14:54.0897 4616 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys
10:14:54.0908 4616 spldr - ok
10:14:54.0944 4616 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\Windows\System32\spoolsv.exe
10:14:54.0963 4616 Spooler - ok
10:14:55.0370 4616 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe
10:14:55.0438 4616 sppsvc - ok
10:14:55.0458 4616 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll
10:14:55.0481 4616 sppuinotify - ok
10:14:55.0724 4616 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\Windows\system32\DRIVERS\srv.sys
10:14:55.0801 4616 srv - ok
10:14:55.0824 4616 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
10:14:55.0852 4616 srv2 - ok
10:14:55.0879 4616 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
10:14:55.0894 4616 srvnet - ok
10:14:55.0925 4616 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
10:14:55.0972 4616 SSDPSRV - ok
10:14:56.0019 4616 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll
10:14:56.0059 4616 SstpSvc - ok
10:14:56.0141 4616 [ BC76D75A372BC02831A6A6AEA66510F8 ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe
10:14:56.0162 4616 Steam Client Service - ok
10:14:56.0246 4616 [ 8E7F555E134B59146D795BC3B5428875 ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
10:14:56.0266 4616 Stereo Service - ok
10:14:56.0306 4616 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\drivers\stexstor.sys
10:14:56.0318 4616 stexstor - ok
10:14:56.0355 4616 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\Windows\System32\wiaservc.dll
10:14:56.0395 4616 stisvc - ok
10:14:56.0412 4616 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
10:14:56.0423 4616 swenum - ok
10:14:56.0453 4616 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll
10:14:56.0517 4616 swprv - ok
10:14:57.0017 4616 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\Windows\system32\sysmain.dll
10:14:57.0100 4616 SysMain - ok
10:14:57.0126 4616 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll
10:14:57.0138 4616 TabletInputService - ok
10:14:58.0641 4616 [ 17A341D41F30FEA2EFF7223148899FEC ] TabletServiceWacom C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe
10:14:58.0782 4616 TabletServiceWacom - ok
10:14:58.0825 4616 [ B08740047145B9BCE15BF75CA0F9718A ] tap0901t C:\Windows\system32\DRIVERS\tap0901t.sys
10:14:58.0853 4616 tap0901t ( UnsignedFile.Multi.Generic ) - warning
10:14:58.0853 4616 tap0901t - detected UnsignedFile.Multi.Generic (1)
10:14:58.0912 4616 [ 83C57F165F0216E5CE40D7E4E00DC76D ] taphss6 C:\Windows\system32\DRIVERS\taphss6.sys
10:14:58.0918 4616 taphss6 - ok
10:14:58.0952 4616 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\Windows\System32\tapisrv.dll
10:14:58.0975 4616 TapiSrv - ok
10:14:58.0989 4616 TBPanel - ok
10:14:59.0012 4616 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll
10:14:59.0034 4616 TBS - ok
10:14:59.0075 4616 [ 40AF23633D197905F03AB5628C558C51 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
10:14:59.0098 4616 Tcpip - ok
10:14:59.0150 4616 [ 40AF23633D197905F03AB5628C558C51 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
10:14:59.0173 4616 TCPIP6 - ok
10:14:59.0216 4616 [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
10:14:59.0224 4616 tcpipreg - ok
10:14:59.0241 4616 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
10:14:59.0271 4616 TDPIPE - ok
10:14:59.0296 4616 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
10:14:59.0315 4616 TDTCP - ok
10:14:59.0343 4616 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
10:14:59.0364 4616 tdx - ok
10:14:59.0397 4616 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
10:14:59.0403 4616 TermDD - ok
10:14:59.0439 4616 [ 2E648163254233755035B46DD7B89123 ] TermService C:\Windows\System32\termsrv.dll
10:14:59.0464 4616 TermService - ok
10:14:59.0480 4616 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll
10:14:59.0492 4616 Themes - ok
10:14:59.0508 4616 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll
10:14:59.0529 4616 THREADORDER - ok
10:14:59.0563 4616 [ A15A789141C74AAD7971FBCB4847A593 ] TouchServiceWacom C:\Program Files\Tablet\Wacom\Wacom_TouchService.exe
10:14:59.0574 4616 TouchServiceWacom - ok
10:14:59.0600 4616 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll
10:14:59.0656 4616 TrkWks - ok
10:14:59.0712 4616 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
10:14:59.0753 4616 TrustedInstaller - ok
10:14:59.0784 4616 [ 4CE278FC9671BA81A138D70823FCAA09 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
10:14:59.0832 4616 tssecsrv - ok
10:14:59.0844 4616 [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
10:14:59.0864 4616 TsUsbFlt - ok
10:14:59.0868 4616 [ 9CC2CCAE8A84820EAECB886D477CBCB8 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys
10:14:59.0880 4616 TsUsbGD - ok
10:14:59.0885 4616 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
10:14:59.0917 4616 tunnel - ok
10:14:59.0997 4616 [ 57D1025FD44FA47BAE92EDF4D7645BD5 ] TunngleService C:\Program Files (x86)\Tunngle\TnglCtrl.exe
10:15:00.0021 4616 TunngleService - ok
10:15:00.0024 4616 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\drivers\uagp35.sys
10:15:00.0030 4616 uagp35 - ok
10:15:00.0050 4616 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
10:15:00.0090 4616 udfs - ok
10:15:00.0116 4616 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe
10:15:00.0137 4616 UI0Detect - ok
10:15:00.0167 4616 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
10:15:00.0177 4616 uliagpkx - ok
10:15:00.0210 4616 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\Windows\system32\DRIVERS\umbus.sys
10:15:00.0241 4616 umbus - ok
10:15:00.0252 4616 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\drivers\umpass.sys
10:15:00.0280 4616 UmPass - ok
10:15:00.0459 4616 [ 1D2596FE2D7CF36C6F5F0D6B71E90E1E ] UNS C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
10:15:00.0531 4616 UNS - ok
10:15:00.0549 4616 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll
10:15:00.0598 4616 upnphost - ok
10:15:00.0636 4616 [ C9E9D59C0099A9FF51697E9306A44240 ] USBAAPL64 C:\Windows\system32\Drivers\usbaapl64.sys
10:15:00.0673 4616 USBAAPL64 - ok
10:15:00.0716 4616 [ B0435098C81D04CAFFF80DDB746CD3A2 ] usbaudio C:\Windows\system32\drivers\usbaudio.sys
10:15:00.0752 4616 usbaudio - ok
10:15:00.0795 4616 [ ACCEA6BC68D0C9A78EB97EE159028B4E ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
10:15:00.0821 4616 usbccgp - ok
10:15:00.0844 4616 [ 80B0F7D5CCF86CEB5D402EAAF61FEC31 ] usbcir C:\Windows\system32\drivers\usbcir.sys
10:15:00.0884 4616 usbcir - ok
10:15:00.0927 4616 [ 311C1DD1088E55BEAE15954D17F50646 ] usbehci C:\Windows\system32\drivers\usbehci.sys
10:15:00.0955 4616 usbehci - ok
10:15:00.0977 4616 [ 280E90CBF4B2DDD169F0728CB44D726F ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
10:15:00.0995 4616 usbhub - ok
10:15:01.0022 4616 [ 9406D801042FAF859CF81B2C886413DC ] usbohci C:\Windows\system32\drivers\usbohci.sys
10:15:01.0035 4616 usbohci - ok
10:15:01.0063 4616 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys
10:15:01.0101 4616 usbprint - ok
10:15:01.0115 4616 [ 9661DA76B4531B2DA272ECCE25A8AF24 ] usbscan C:\Windows\system32\drivers\usbscan.sys
10:15:01.0151 4616 usbscan - ok
10:15:01.0183 4616 [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
10:15:01.0221 4616 USBSTOR - ok
10:15:01.0262 4616 [ A83D0EC9AE4C31704442099D40BA2471 ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
10:15:01.0275 4616 usbuhci - ok
10:15:01.0297 4616 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll
10:15:01.0347 4616 UxSms - ok
10:15:01.0365 4616 [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc C:\Windows\system32\lsass.exe
10:15:01.0371 4616 VaultSvc - ok
10:15:01.0401 4616 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
10:15:01.0413 4616 vdrvroot - ok
10:15:01.0442 4616 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\Windows\System32\vds.exe
10:15:01.0502 4616 vds - ok
10:15:01.0520 4616 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
10:15:01.0531 4616 vga - ok
10:15:01.0547 4616 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys
10:15:01.0590 4616 VgaSave - ok
10:15:01.0594 4616 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
10:15:01.0604 4616 vhdmp - ok
10:15:01.0628 4616 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\drivers\viaide.sys
10:15:01.0634 4616 viaide - ok
10:15:01.0647 4616 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\Windows\system32\drivers\volmgr.sys
10:15:01.0654 4616 volmgr - ok
10:15:01.0668 4616 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
10:15:01.0677 4616 volmgrx - ok
10:15:01.0691 4616 [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap C:\Windows\system32\drivers\volsnap.sys
10:15:01.0699 4616 volsnap - ok
10:15:01.0714 4616 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
10:15:01.0721 4616 vsmraid - ok
10:15:01.0750 4616 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\Windows\system32\vssvc.exe
10:15:01.0804 4616 VSS - ok
10:15:01.0820 4616 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys
10:15:01.0844 4616 vwifibus - ok
10:15:01.0872 4616 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll
10:15:01.0896 4616 W32Time - ok
10:15:01.0915 4616 [ 7CB1898A29188FB8DB102406EF0D8D9E ] WacHidRouter C:\Windows\system32\DRIVERS\wachidrouter.sys
10:15:01.0921 4616 WacHidRouter - ok
10:15:01.0937 4616 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\drivers\wacompen.sys
10:15:01.0958 4616 WacomPen - ok
10:15:01.0985 4616 [ B59EC4DD1026F059CD95C1627562F3F3 ] wacomrouterfilter C:\Windows\system32\DRIVERS\wacomrouterfilter.sys
10:15:01.0994 4616 wacomrouterfilter - ok
10:15:02.0030 4616 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
10:15:02.0071 4616 WANARP - ok
10:15:02.0085 4616 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
10:15:02.0105 4616 Wanarpv6 - ok
10:15:02.0331 4616 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
10:15:02.0370 4616 WatAdminSvc - ok
10:15:02.0466 4616 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\Windows\system32\wbengine.exe
10:15:02.0520 4616 wbengine - ok
10:15:02.0543 4616 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
10:15:02.0567 4616 WbioSrvc - ok
10:15:02.0579 4616 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\Windows\System32\wcncsvc.dll
10:15:02.0606 4616 wcncsvc - ok
10:15:02.0631 4616 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
10:15:02.0643 4616 WcsPlugInService - ok
10:15:02.0658 4616 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\drivers\wd.sys
10:15:02.0664 4616 Wd - ok
10:15:02.0683 4616 [ A3D04EBF5227886029B4532F20D026F7 ] WDC_SAM C:\Windows\system32\DRIVERS\wdcsam64.sys
10:15:02.0694 4616 WDC_SAM - ok
10:15:02.0733 4616 [ E2C933EDBC389386EBE6D2BA953F43D8 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
10:15:02.0756 4616 Wdf01000 - ok
10:15:02.0821 4616 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll
10:15:02.0883 4616 WdiServiceHost - ok
10:15:02.0886 4616 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll
10:15:02.0904 4616 WdiSystemHost - ok
10:15:02.0929 4616 [ 0EB0E5D22B1760F2DBCE632F2DD7A54D ] WebClient C:\Windows\System32\webclnt.dll
10:15:02.0938 4616 WebClient - ok
10:15:02.0966 4616 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll
10:15:02.0989 4616 Wecsvc - ok
10:15:03.0009 4616 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll
10:15:03.0030 4616 wercplsupport - ok
10:15:03.0048 4616 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll
10:15:03.0071 4616 WerSvc - ok
10:15:03.0107 4616 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
10:15:03.0144 4616 WfpLwf - ok
10:15:03.0151 4616 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys
10:15:03.0157 4616 WIMMount - ok
10:15:03.0168 4616 WinDefend - ok
10:15:03.0186 4616 WinHttpAutoProxySvc - ok
10:15:03.0226 4616 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
10:15:03.0262 4616 Winmgmt - ok
10:15:03.0621 4616 [ BCB1310604AA415C4508708975B3931E ] WinRM C:\Windows\system32\WsmSvc.dll
10:15:03.0721 4616 WinRM - ok
10:15:03.0750 4616 [ FE88B288356E7B47B74B13372ADD906D ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
10:15:03.0759 4616 WinUsb - ok
10:15:03.0779 4616 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll
10:15:03.0808 4616 Wlansvc - ok
10:15:03.0901 4616 [ 357CABBF155AFD1D3926E62539D2A3A7 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
10:15:03.0960 4616 wlidsvc - ok
10:15:03.0999 4616 [ 680A7846370000D20D7E74917D5B7936 ] WmBEnum C:\Windows\system32\drivers\WmBEnum.sys
10:15:04.0004 4616 WmBEnum - ok
10:15:04.0059 4616 [ 14C35BA8189C6F65D839163AA285E954 ] WmFilter C:\Windows\system32\drivers\WmFilter.sys
10:15:04.0070 4616 WmFilter - ok
10:15:04.0074 4616 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys
10:15:04.0103 4616 WmiAcpi - ok
10:15:04.0122 4616 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
10:15:04.0138 4616 wmiApSrv - ok
10:15:04.0152 4616 WMPNetworkSvc - ok
10:15:04.0168 4616 [ 8488DD91A3EE54A8E29F02AD7BB8201E ] WmVirHid C:\Windows\system32\drivers\WmVirHid.sys
10:15:04.0178 4616 WmVirHid - ok
10:15:04.0191 4616 [ 14802B3A30AA849C97CB968CCC813BF3 ] WmXlCore C:\Windows\system32\drivers\WmXlCore.sys
10:15:04.0200 4616 WmXlCore - ok
10:15:04.0219 4616 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll
10:15:04.0243 4616 WPCSvc - ok
10:15:04.0256 4616 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
10:15:04.0272 4616 WPDBusEnum - ok
10:15:04.0275 4616 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
10:15:04.0299 4616 ws2ifsl - ok
10:15:04.0307 4616 [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc C:\Windows\system32\wscsvc.dll
10:15:04.0330 4616 wscsvc - ok
10:15:04.0332 4616 WSearch - ok
10:15:04.0372 4616 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\Windows\system32\wuaueng.dll
10:15:04.0416 4616 wuauserv - ok
10:15:04.0454 4616 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
10:15:04.0498 4616 WudfPf - ok
10:15:04.0528 4616 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
10:15:04.0561 4616 WUDFRd - ok
10:15:04.0649 4616 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
10:15:04.0680 4616 wudfsvc - ok
10:15:04.0798 4616 [ FE90B750AB808FB9DD8FBB428B5FF83B ] WwanSvc C:\Windows\System32\wwansvc.dll
10:15:04.0829 4616 WwanSvc - ok
10:15:05.0015 4616 [ 38F55D07B1D3391065C40EC065F984E2 ] xusb21 C:\Windows\system32\DRIVERS\xusb21.sys
10:15:05.0089 4616 xusb21 - ok
10:15:05.0097 4616 ================ Scan global ===============================
10:15:05.0122 4616 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
10:15:05.0153 4616 [ 88EDD0B34EED542745931E581AD21A32 ] C:\Windows\system32\winsrv.dll
10:15:05.0161 4616 [ 88EDD0B34EED542745931E581AD21A32 ] C:\Windows\system32\winsrv.dll
10:15:05.0185 4616 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
10:15:05.0208 4616 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
10:15:05.0212 4616 [Global] - ok
10:15:05.0213 4616 ================ Scan MBR ==================================
10:15:05.0217 4616 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
10:15:07.0834 4616 \Device\Harddisk0\DR0 - ok
10:15:07.0838 4616 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk1\DR1
10:15:07.0934 4616 \Device\Harddisk1\DR1 - ok
10:15:07.0934 4616 ================ Scan VBR ==================================
10:15:07.0964 4616 [ E6272A58A52B118754530EC7BCF56BEE ] \Device\Harddisk0\DR0\Partition1
10:15:07.0972 4616 \Device\Harddisk0\DR0\Partition1 - ok
10:15:07.0995 4616 [ D9011594000D182B5C695827E87B2D36 ] \Device\Harddisk0\DR0\Partition2
10:15:07.0997 4616 \Device\Harddisk0\DR0\Partition2 - ok
10:15:08.0020 4616 [ A5E5CA06E3349E8A384F3AE26877BC03 ] \Device\Harddisk0\DR0\Partition3
10:15:08.0023 4616 \Device\Harddisk0\DR0\Partition3 - ok
10:15:08.0026 4616 [ 9919D6CB7DCDBC349E82A6D96B9ECC25 ] \Device\Harddisk1\DR1\Partition1
10:15:08.0028 4616 \Device\Harddisk1\DR1\Partition1 - ok
10:15:08.0028 4616 ============================================================
10:15:08.0028 4616 Scan finished
10:15:08.0028 4616 ============================================================
10:15:08.0038 4608 Detected object count: 1
10:15:08.0038 4608 Actual detected object count: 1
10:15:34.0581 4608 tap0901t ( UnsignedFile.Multi.Generic ) - skipped by user
10:15:34.0581 4608 tap0901t ( UnsignedFile.Multi.Generic ) - User select action: Skip
10:15:41.0189 3184 Deinitialize success