Thanks Ron. Ive done everything you asked, here are the logs.
# AdwCleaner v3.012 - Report created 12/11/2013 at 10:22:03
# Updated 11/11/2013 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Zer0 - ZER0-PC
# Running from : C:\Users\Zer0\Desktop\AdwCleaner_2.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\ProgramData\NCH Software
Folder Deleted : C:\Users\Zer0\AppData\Roaming\NCH Software
***** [ Shortcuts ] *****
***** [ Registry ] *****
***** [ Browsers ] *****
-\\ Internet Explorer v9.0.8112.16514
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\SearchUrl [Default]
Setting Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchUrl [Default]
-\\ Mozilla Firefox v25.0 (en-US)
[ File : C:\Users\Zer0\AppData\Roaming\Mozilla\Firefox\Profiles\yuohtlfh.default-1379735746604\prefs.js ]
Line Deleted : user_pref("browser.newtab.url", "hxxp://feed.snapdo.com/?publisher=ShoppingHelper&dpid=ShopHelp&co=AU&userid=d20292fa-4ac8-f278-fd6c-8fc793c0dc4a&searchtype=nt&installDate=22/10/2013");
Line Deleted : user_pref("keyword.URL", "hxxp://feed.snapdo.com/?publisher=ShoppingHelper&dpid=ShopHelp&co=AU&userid=d20292fa-4ac8-f278-fd6c-8fc793c0dc4a&searchtype=ds&installDate=22/10/2013&q=");
[ File : C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\s7wgemff.default\prefs.js ]
Line Deleted : user_pref("browser.startup.homepage", "hxxp://feed.snapdo.com/?publisher=ShoppingHelper&dpid=ShopHelp&co=AU&userid=d20292fa-4ac8-f278-fd6c-8fc793c0dc4a&searchtype=hp&installDate=22/10/2013");
Line Deleted : user_pref("keyword.URL", "hxxp://feed.snapdo.com/?publisher=ShoppingHelper&dpid=ShopHelp&co=AU&userid=d20292fa-4ac8-f278-fd6c-8fc793c0dc4a&searchtype=ds&installDate=22/10/2013&q=");
Line Deleted : user_pref("browser.newtab.url", "hxxp://feed.snapdo.com/?publisher=ShoppingHelper&dpid=ShopHelp&co=AU&userid=d20292fa-4ac8-f278-fd6c-8fc793c0dc4a&searchtype=nt&installDate=22/10/2013");
-\\ Google Chrome v30.0.1599.101
[ File : C:\Users\Zer0\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Deleted : homepage
Deleted : urls_to_restore_on_startup
*************************
AdwCleaner[R3].txt - [2670 octets] - [12/11/2013 09:39:12]
AdwCleaner[R4].txt - [2778 octets] - [12/11/2013 10:21:15]
AdwCleaner[S3].txt - [345 octets] - [12/11/2013 09:57:17]
AdwCleaner[S4].txt - [2391 octets] - [12/11/2013 10:22:03]
########## EOF - C:\AdwCleaner\AdwCleaner[S4].txt - [2451 octets] ##########
Vino's Event Viewer v01c run on Windows 2008 in English
Report run at 12/11/2013 10:30:06 AM
Note: All dates below are in the format dd/mm/yyyy
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Critical Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Error Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 11/11/2013 11:29:26 PM
Type: Error Category: 0
Event: 7034 Source: Service Control Manager
The Superfetch service terminated unexpectedly. It has done this 3 time(s).
Log: 'System' Date/Time: 11/11/2013 11:29:25 PM
Type: Error Category: 0
Event: 7 Source: Disk
The device, \Device\Harddisk0\DR0, has a bad block.
Log: 'System' Date/Time: 11/11/2013 11:28:22 PM
Type: Error Category: 0
Event: 7031 Source: Service Control Manager
The Superfetch service terminated unexpectedly. It has done this 2 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service.
Log: 'System' Date/Time: 11/11/2013 11:28:21 PM
Type: Error Category: 0
Event: 7 Source: Disk
The device, \Device\Harddisk0\DR0, has a bad block.
Log: 'System' Date/Time: 11/11/2013 11:27:17 PM
Type: Error Category: 0
Event: 7031 Source: Service Control Manager
The Superfetch service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service.
Log: 'System' Date/Time: 11/11/2013 11:26:38 PM
Type: Error Category: 0
Event: 7 Source: Disk
The device, \Device\Harddisk0\DR0, has a bad block.
Log: 'System' Date/Time: 11/11/2013 11:23:44 PM
Type: Error Category: 2
Event: 35 Source: Microsoft-Windows-Kernel-Processor-Power
Performance power management features on processor 1 in group 0 are disabled due to a firmware problem. Check with the computer manufacturer for updated firmware.
Log: 'System' Date/Time: 11/11/2013 11:23:44 PM
Type: Error Category: 2
Event: 35 Source: Microsoft-Windows-Kernel-Processor-Power
Performance power management features on processor 3 in group 0 are disabled due to a firmware problem. Check with the computer manufacturer for updated firmware.
Log: 'System' Date/Time: 11/11/2013 11:23:44 PM
Type: Error Category: 2
Event: 35 Source: Microsoft-Windows-Kernel-Processor-Power
Performance power management features on processor 5 in group 0 are disabled due to a firmware problem. Check with the computer manufacturer for updated firmware.
Log: 'System' Date/Time: 11/11/2013 11:23:44 PM
Type: Error Category: 2
Event: 35 Source: Microsoft-Windows-Kernel-Processor-Power
Performance power management features on processor 7 in group 0 are disabled due to a firmware problem. Check with the computer manufacturer for updated firmware.
Log: 'System' Date/Time: 11/11/2013 11:23:44 PM
Type: Error Category: 2
Event: 35 Source: Microsoft-Windows-Kernel-Processor-Power
Performance power management features on processor 2 in group 0 are disabled due to a firmware problem. Check with the computer manufacturer for updated firmware.
Log: 'System' Date/Time: 11/11/2013 11:23:44 PM
Type: Error Category: 2
Event: 35 Source: Microsoft-Windows-Kernel-Processor-Power
Performance power management features on processor 4 in group 0 are disabled due to a firmware problem. Check with the computer manufacturer for updated firmware.
Log: 'System' Date/Time: 11/11/2013 11:23:44 PM
Type: Error Category: 2
Event: 35 Source: Microsoft-Windows-Kernel-Processor-Power
Performance power management features on processor 6 in group 0 are disabled due to a firmware problem. Check with the computer manufacturer for updated firmware.
Log: 'System' Date/Time: 11/11/2013 11:23:44 PM
Type: Error Category: 2
Event: 35 Source: Microsoft-Windows-Kernel-Processor-Power
Performance power management features on processor 0 in group 0 are disabled due to a firmware problem. Check with the computer manufacturer for updated firmware.
Log: 'System' Date/Time: 11/11/2013 8:33:53 PM
Type: Error Category: 0
Event: 7034 Source: Service Control Manager
The Superfetch service terminated unexpectedly. It has done this 3 time(s).
Log: 'System' Date/Time: 11/11/2013 8:33:52 PM
Type: Error Category: 0
Event: 7 Source: Disk
The device, \Device\Harddisk0\DR0, has a bad block.
Log: 'System' Date/Time: 11/11/2013 8:33:49 PM
Type: Error Category: 0
Event: 7 Source: Disk
The device, \Device\Harddisk0\DR0, has a bad block.
Log: 'System' Date/Time: 11/11/2013 8:32:46 PM
Type: Error Category: 0
Event: 7031 Source: Service Control Manager
The Superfetch service terminated unexpectedly. It has done this 2 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service.
Log: 'System' Date/Time: 11/11/2013 8:32:45 PM
Type: Error Category: 0
Event: 7 Source: Disk
The device, \Device\Harddisk0\DR0, has a bad block.
Log: 'System' Date/Time: 11/11/2013 8:31:41 PM
Type: Error Category: 0
Event: 7031 Source: Service Control Manager
The Superfetch service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service.
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'System' Log - Warning Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'System' Date/Time: 11/11/2013 11:23:44 PM
Type: Warning Category: 212
Event: 219 Source: Microsoft-Windows-Kernel-PnP
The driver \Driver\WUDFRd failed to load for the device Root\SIDESHOW\0001.
Log: 'System' Date/Time: 11/11/2013 11:23:44 PM
Type: Warning Category: 212
Event: 219 Source: Microsoft-Windows-Kernel-PnP
The driver \Driver\WUDFRd failed to load for the device Root\SIDESHOW\0000.
Log: 'System' Date/Time: 11/11/2013 8:26:12 PM
Type: Warning Category: 212
Event: 219 Source: Microsoft-Windows-Kernel-PnP
The driver \Driver\usbccgp failed to load for the device USB\VID_046D&PID_C22D\5&2ae1af5b&0&2.
Log: 'System' Date/Time: 11/11/2013 8:26:04 PM
Type: Warning Category: 212
Event: 219 Source: Microsoft-Windows-Kernel-PnP
The driver \Driver\WUDFRd failed to load for the device Root\SIDESHOW\0001.
Log: 'System' Date/Time: 11/11/2013 8:26:04 PM
Type: Warning Category: 212
Event: 219 Source: Microsoft-Windows-Kernel-PnP
The driver \Driver\WUDFRd failed to load for the device Root\SIDESHOW\0000.
Vino's Event Viewer v01c run on Windows 2008 in English
Report run at 12/11/2013 10:30:41 AM
Note: All dates below are in the format dd/mm/yyyy
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Critical Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Error Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'Application' Date/Time: 11/11/2013 11:29:26 PM
Type: Error Category: 100
Event: 1005 Source: Application Error
Windows cannot access the file C:\Windows\Prefetch\AgAppLaunch.db for one of the following reasons: there is a problem with the network connection, the disk that the file is stored on, or the storage drivers installed on this computer; or the disk is missing. Windows closed the program Host Process for Windows Services because of this error. Program: Host Process for Windows Services File: C:\Windows\Prefetch\AgAppLaunch.db The error value is listed in the Additional Data section. User Action 1. Open the file again. This situation might be a temporary problem that corrects itself when the program runs again. 2. If the file still cannot be accessed and - It is on the network, your network administrator should verify that there is not a problem with the network and that the server can be contacted. - It is on a removable disk, for example, a floppy disk or CD-ROM, verify that the disk is fully inserted into the computer. 3. Check and repair the file system by running CHKDSK. To run CHKDSK, click Start, click Run, type CMD, and then click OK. At the command prompt, type CHKDSK /F, and then press ENTER. 4. If the problem persists, restore the file from a backup copy. 5. Determine whether other files on the same disk can be opened. If not, the disk might be damaged. If it is a hard disk, contact your administrator or computer hardware vendor for further assistance. Additional Data Error value: C000009C Disk type: 3
Log: 'Application' Date/Time: 11/11/2013 11:29:26 PM
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application name: svchost.exe_SysMain, version: 6.1.7600.16385, time stamp: 0x4a5bc3c1 Faulting module name: sysmain.dll, version: 6.1.7601.17514, time stamp: 0x4ce7c9db Exception code: 0xc0000006 Fault offset: 0x000000000002277f Faulting process id: 0x13a4 Faulting application start time: 0x01cedf35da1cb52b Faulting application path: C:\Windows\system32\svchost.exe Faulting module path: c:\windows\system32\sysmain.dll Report Id: 19d4eec7-4b29-11e3-a116-001fbc028851
Log: 'Application' Date/Time: 11/11/2013 11:28:21 PM
Type: Error Category: 100
Event: 1005 Source: Application Error
Windows cannot access the file C:\Windows\Prefetch\AgAppLaunch.db for one of the following reasons: there is a problem with the network connection, the disk that the file is stored on, or the storage drivers installed on this computer; or the disk is missing. Windows closed the program Host Process for Windows Services because of this error. Program: Host Process for Windows Services File: C:\Windows\Prefetch\AgAppLaunch.db The error value is listed in the Additional Data section. User Action 1. Open the file again. This situation might be a temporary problem that corrects itself when the program runs again. 2. If the file still cannot be accessed and - It is on the network, your network administrator should verify that there is not a problem with the network and that the server can be contacted. - It is on a removable disk, for example, a floppy disk or CD-ROM, verify that the disk is fully inserted into the computer. 3. Check and repair the file system by running CHKDSK. To run CHKDSK, click Start, click Run, type CMD, and then click OK. At the command prompt, type CHKDSK /F, and then press ENTER. 4. If the problem persists, restore the file from a backup copy. 5. Determine whether other files on the same disk can be opened. If not, the disk might be damaged. If it is a hard disk, contact your administrator or computer hardware vendor for further assistance. Additional Data Error value: C000009C Disk type: 3
Log: 'Application' Date/Time: 11/11/2013 11:28:21 PM
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application name: svchost.exe_SysMain, version: 6.1.7600.16385, time stamp: 0x4a5bc3c1 Faulting module name: sysmain.dll, version: 6.1.7601.17514, time stamp: 0x4ce7c9db Exception code: 0xc0000006 Fault offset: 0x000000000002277f Faulting process id: 0x1e0c Faulting application start time: 0x01cedf35b3379911 Faulting application path: C:\Windows\system32\svchost.exe Faulting module path: c:\windows\system32\sysmain.dll Report Id: f398d461-4b28-11e3-a116-001fbc028851
Log: 'Application' Date/Time: 11/11/2013 11:26:57 PM
Type: Error Category: 100
Event: 1005 Source: Application Error
Windows cannot access the file C:\Windows\Prefetch\AgAppLaunch.db for one of the following reasons: there is a problem with the network connection, the disk that the file is stored on, or the storage drivers installed on this computer; or the disk is missing. Windows closed the program Host Process for Windows Services because of this error. Program: Host Process for Windows Services File: C:\Windows\Prefetch\AgAppLaunch.db The error value is listed in the Additional Data section. User Action 1. Open the file again. This situation might be a temporary problem that corrects itself when the program runs again. 2. If the file still cannot be accessed and - It is on the network, your network administrator should verify that there is not a problem with the network and that the server can be contacted. - It is on a removable disk, for example, a floppy disk or CD-ROM, verify that the disk is fully inserted into the computer. 3. Check and repair the file system by running CHKDSK. To run CHKDSK, click Start, click Run, type CMD, and then click OK. At the command prompt, type CHKDSK /F, and then press ENTER. 4. If the problem persists, restore the file from a backup copy. 5. Determine whether other files on the same disk can be opened. If not, the disk might be damaged. If it is a hard disk, contact your administrator or computer hardware vendor for further assistance. Additional Data Error value: C000009C Disk type: 3
Log: 'Application' Date/Time: 11/11/2013 11:26:57 PM
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application name: svchost.exe_SysMain, version: 6.1.7600.16385, time stamp: 0x4a5bc3c1 Faulting module name: sysmain.dll, version: 6.1.7601.17514, time stamp: 0x4ce7c9db Exception code: 0xc0000006 Fault offset: 0x000000000002277f Faulting process id: 0x1014 Faulting application start time: 0x01cedf355cbb1df4 Faulting application path: C:\Windows\system32\svchost.exe Faulting module path: c:\windows\system32\sysmain.dll Report Id: c134f72c-4b28-11e3-a116-001fbc028851
Log: 'Application' Date/Time: 11/11/2013 11:21:12 PM
Type: Error Category: 101
Event: 1002 Source: Application Hang
The program AdwCleaner_2.exe version 3.0.1.2 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: 318 Start Time: 01cedf29c74ba3b5 Termination Time: 0 Application Path: C:\Users\Zer0\Downloads\Programs\AdwCleaner_2.exe Report Id: de7f201a-4b27-11e3-8324-001fbc028851
Log: 'Application' Date/Time: 11/11/2013 8:33:49 PM
Type: Error Category: 100
Event: 1005 Source: Application Error
Windows cannot access the file C:\Windows\Prefetch\AgAppLaunch.db for one of the following reasons: there is a problem with the network connection, the disk that the file is stored on, or the storage drivers installed on this computer; or the disk is missing. Windows closed the program Host Process for Windows Services because of this error. Program: Host Process for Windows Services File: C:\Windows\Prefetch\AgAppLaunch.db The error value is listed in the Additional Data section. User Action 1. Open the file again. This situation might be a temporary problem that corrects itself when the program runs again. 2. If the file still cannot be accessed and - It is on the network, your network administrator should verify that there is not a problem with the network and that the server can be contacted. - It is on a removable disk, for example, a floppy disk or CD-ROM, verify that the disk is fully inserted into the computer. 3. Check and repair the file system by running CHKDSK. To run CHKDSK, click Start, click Run, type CMD, and then click OK. At the command prompt, type CHKDSK /F, and then press ENTER. 4. If the problem persists, restore the file from a backup copy. 5. Determine whether other files on the same disk can be opened. If not, the disk might be damaged. If it is a hard disk, contact your administrator or computer hardware vendor for further assistance. Additional Data Error value: C000009C Disk type: 3
Log: 'Application' Date/Time: 11/11/2013 8:33:49 PM
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application name: svchost.exe_SysMain, version: 6.1.7600.16385, time stamp: 0x4a5bc3c1 Faulting module name: sysmain.dll, version: 6.1.7601.17514, time stamp: 0x4ce7c9db Exception code: 0xc0000006 Fault offset: 0x000000000002277f Faulting process id: 0x1cf8 Faulting application start time: 0x01cedf1d51fa2d9a Faulting application path: C:\Windows\system32\svchost.exe Faulting module path: c:\windows\system32\sysmain.dll Report Id: 91c03a21-4b10-11e3-8324-001fbc028851
Log: 'Application' Date/Time: 11/11/2013 8:32:45 PM
Type: Error Category: 100
Event: 1005 Source: Application Error
Windows cannot access the file C:\Windows\Prefetch\AgAppLaunch.db for one of the following reasons: there is a problem with the network connection, the disk that the file is stored on, or the storage drivers installed on this computer; or the disk is missing. Windows closed the program Host Process for Windows Services because of this error. Program: Host Process for Windows Services File: C:\Windows\Prefetch\AgAppLaunch.db The error value is listed in the Additional Data section. User Action 1. Open the file again. This situation might be a temporary problem that corrects itself when the program runs again. 2. If the file still cannot be accessed and - It is on the network, your network administrator should verify that there is not a problem with the network and that the server can be contacted. - It is on a removable disk, for example, a floppy disk or CD-ROM, verify that the disk is fully inserted into the computer. 3. Check and repair the file system by running CHKDSK. To run CHKDSK, click Start, click Run, type CMD, and then click OK. At the command prompt, type CHKDSK /F, and then press ENTER. 4. If the problem persists, restore the file from a backup copy. 5. Determine whether other files on the same disk can be opened. If not, the disk might be damaged. If it is a hard disk, contact your administrator or computer hardware vendor for further assistance. Additional Data Error value: C000009C Disk type: 3
Log: 'Application' Date/Time: 11/11/2013 8:32:45 PM
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application name: svchost.exe_SysMain, version: 6.1.7600.16385, time stamp: 0x4a5bc3c1 Faulting module name: sysmain.dll, version: 6.1.7601.17514, time stamp: 0x4ce7c9db Exception code: 0xc0000006 Fault offset: 0x000000000002277f Faulting process id: 0x17e0 Faulting application start time: 0x01cedf1d2b75b098 Faulting application path: C:\Windows\system32\svchost.exe Faulting module path: c:\windows\system32\sysmain.dll Report Id: 6b4fba9b-4b10-11e3-8324-001fbc028851
Log: 'Application' Date/Time: 11/11/2013 8:29:37 PM
Type: Error Category: 100
Event: 1005 Source: Application Error
Windows cannot access the file C:\Windows\Prefetch\AgAppLaunch.db for one of the following reasons: there is a problem with the network connection, the disk that the file is stored on, or the storage drivers installed on this computer; or the disk is missing. Windows closed the program Host Process for Windows Services because of this error. Program: Host Process for Windows Services File: C:\Windows\Prefetch\AgAppLaunch.db The error value is listed in the Additional Data section. User Action 1. Open the file again. This situation might be a temporary problem that corrects itself when the program runs again. 2. If the file still cannot be accessed and - It is on the network, your network administrator should verify that there is not a problem with the network and that the server can be contacted. - It is on a removable disk, for example, a floppy disk or CD-ROM, verify that the disk is fully inserted into the computer. 3. Check and repair the file system by running CHKDSK. To run CHKDSK, click Start, click Run, type CMD, and then click OK. At the command prompt, type CHKDSK /F, and then press ENTER. 4. If the problem persists, restore the file from a backup copy. 5. Determine whether other files on the same disk can be opened. If not, the disk might be damaged. If it is a hard disk, contact your administrator or computer hardware vendor for further assistance. Additional Data Error value: C000009C Disk type: 3
Log: 'Application' Date/Time: 11/11/2013 8:29:37 PM
Type: Error Category: 100
Event: 1000 Source: Application Error
Faulting application name: svchost.exe_SysMain, version: 6.1.7600.16385, time stamp: 0x4a5bc3c1 Faulting module name: sysmain.dll, version: 6.1.7601.17514, time stamp: 0x4ce7c9db Exception code: 0xc0000006 Fault offset: 0x000000000002277f Faulting process id: 0xf20 Faulting application start time: 0x01cedf1c923ac5ea Faulting application path: C:\Windows\system32\svchost.exe Faulting module path: c:\windows\system32\sysmain.dll Report Id: fb258a14-4b0f-11e3-8324-001fbc028851
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
'Application' Log - Warning Type
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Log: 'Application' Date/Time: 11/11/2013 11:22:15 PM
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 1 user registry handles leaked from \Registry\User\S-1-5-21-3687147164-1298252514-2334443246-1000:
Process 1936 (\Device\HarddiskVolume2\Windows\SysWOW64\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3687147164-1298252514-2334443246-1000
Log: 'Application' Date/Time: 11/11/2013 8:24:27 PM
Type: Warning Category: 0
Event: 1530 Source: Microsoft-Windows-User Profiles Service
Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards. DETAIL - 1 user registry handles leaked from \Registry\User\S-1-5-21-3687147164-1298252514-2334443246-1000:
Process 2136 (\Device\HarddiskVolume2\Windows\SysWOW64\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-3687147164-1298252514-2334443246-1000
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.8 (11.05.2013:1)
OS: Windows 7 Home Premium x64
Ran by Zer0 on Tue 12/11/2013 at 12:55:27.29
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\yt.ytnavassistplugin
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\yt.ytnavassistplugin.1
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\dt soft\daemon tools toolbar
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\DealPlyUpdateVer_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\DealPlyUpdateVer_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\pricepeep_1_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\pricepeep_1_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\DealPlyUpdateVer_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\DealPlyUpdateVer_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\pricepeep_1_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\pricepeep_1_RASMANCS
~~~ Files
~~~ Folders
Successfully deleted: [Folder] "C:\Windows\syswow64\ai_recyclebin"
~~~ FireFox
Successfully deleted: [File] C:\user.js
Emptied folder: C:\Users\Zer0\AppData\Roaming\mozilla\firefox\profiles\yuohtlfh.default-1379735746604\minidumps [37 files]
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Tue 12/11/2013 at 13:01:56.50
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 10-11-2013 01
Ran by Zer0 (administrator) on ZER0-PC on 12-11-2013 13:05:45
Running from C:\Users\Zer0\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: English(US)
Internet Explorer Version 9
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(Logitech Inc.) C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
(SANDBOXIE L.T.D) C:\Program Files\Sandboxie\SbieSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Saitek) C:\Program Files\SmartTechnology\Software\SaiMfd.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Logitech Inc.) C:\Program Files\Logitech\GamePanel Software\LGDevAgt.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Logitech Inc.) C:\Program Files\Logitech\GamePanel Software\G-series Software\LGDCore.exe
(Logitech Inc.) C:\Program Files\Logitech\GamePanel Software\LCD Manager\lcdmon.exe
(SANDBOXIE L.T.D) C:\Program Files\Sandboxie\SbieCtrl.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Akamai Technologies, Inc.) C:\Users\Zer0\AppData\Local\Akamai\netsession_win.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Akamai Technologies, Inc.) C:\Users\Zer0\AppData\Local\Akamai\netsession_win.exe
(SmoothPing) C:\Program Files (x86)\Smoothping Elite\SmoothPingProxy.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
(Logitech Inc.) C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
() C:\Program Files (x86)\NETGEAR\WNA3100\WifiSvc.exe
(Yahoo! Inc.) C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
() C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe
() C:\Riot Games\League of Legends\RADS\projects\lol_launcher\releases\0.0.0.191\deploy\LoLLauncher.exe
() C:\Riot Games\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.56\deploy\LolClient.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
() C:\Program Files (x86)\VideoLAN\VLC\vlc.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [SaiMfd] - C:\Program Files\SmartTechnology\Software\SaiMfd.exe [158208 2012-10-15] (Saitek)
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [8067616 2009-08-18] (Realtek Semiconductor)
HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe [1028384 2013-10-18] (NVIDIA Corporation)
HKLM\...\Run: [MSC] - C:\Program Files\Microsoft Security Client\msseces.exe [1356240 2013-08-12] (Microsoft Corporation)
HKLM\...\Run: [Launch LgDeviceAgent] - C:\Program Files\Logitech\GamePanel Software\LGDevAgt.exe [415816 2010-08-03] (Logitech Inc.)
HKLM\...\Run: [Launch LGDCore] - C:\Program Files\Logitech\GamePanel Software\G-series Software\LGDCore.exe [4725320 2010-08-03] (Logitech Inc.)
HKLM\...\Run: [Launch LCDMon] - C:\Program Files\Logitech\GamePanel Software\LCD Manager\LCDMon.exe [2412616 2010-08-03] (Logitech Inc.)
HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKCU\...\Run: [Steam] - C:\Program Files (x86)\Steam\Steam.exe [1820584 2013-10-31] (Valve Corporation)
HKCU\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [17706088 2013-02-07] (Skype Technologies S.A.)
HKCU\...\Run: [SandboxieControl] - C:\Program Files\Sandboxie\SbieCtrl.exe [668944 2012-04-10] (SANDBOXIE L.T.D)
HKCU\...\Run: [Akamai NetSession Interface] - C:\Users\Zer0\AppData\Local\Akamai\netsession_win.exe [4489472 2013-06-05] (Akamai Technologies, Inc.)
HKCU\...\Run: [IDMan] - C:\Program Files (x86)\Internet Download Manager\IDMan.exe [3825232 2013-11-09] (Tonec Inc.)
HKCU\...\Policies\Explorer: [HideSCAHealth] 1
MountPoints2: {fe28be3b-318c-11e0-8da5-001fbc028851} - G:\setup_vmc_lite.exe /checkApplicationPresence
HKLM-x32\...\Run: [LWS] - C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe [190808 2011-03-02] (Logitech Inc.)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-05] (Adobe Systems Incorporated)
HKU\Administrator\...\Run: [IDMan] - C:\Program Files (x86)\Internet Download Manager\IDMan.exe [3825232 2013-11-09] (Tonec Inc.)
HKU\Administrator\...\Run: [Steam] - C:\Program Files (x86)\Steam\Steam.exe [1820584 2013-10-31] (Valve Corporation)
HKU\Administrator\...\Run: [Akamai NetSession Interface] - C:\Users\Zer0\AppData\Local\Akamai\netsession_win.exe [4489472 2013-06-05] (Akamai Technologies, Inc.)
HKU\Administrator\...\Run: [Facebook Update] - C:\Users\Zer0\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2012-08-16] (Facebook Inc.)
HKU\Administrator\...\Run: [Spotify Web Helper] - C:\Users\Zer0\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1199576 2012-12-21] (Spotify Ltd)
HKU\Administrator\...\Run: [OfficeSyncProcess] - C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE [720064 2013-04-22] (Microsoft Corporation)
HKU\Administrator\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [17706088 2013-02-07] (Skype Technologies S.A.)
HKU\Administrator\...\Run: [Doxeoqbuyh] - C:\Users\Administrator\AppData\Roaming\Uxeb\azro.exe
HKU\Administrator\...\Run: [Exetender] - "C:\Program Files (x86)\Free Ride Games\GPlayer.exe" /schedule 300000
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache =
http://ninemsn.com.au/?ocid=iehpHKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-AU
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xE413385B6EAFCE01
StartMenuInternet: IEXPLORE.EXE - %ProgramFiles(x86)%\Internet Explorer\iexplore.exe
SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: IDM integration (IDMIEHlprObj Class) - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll (Internet Download Manager, Tonec Inc.)
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: IDM integration (IDMIEHlprObj Class) - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll (Internet Download Manager, Tonec Inc.)
BHO-x32: DivX Plus Web Player HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: No Name - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - No File
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: No Name - {DBC80044-A445-435b-BC74-9C25C1C588A9} - No File
DPF: HKLM-x32 {166B1BCA-3F9C-11CF-8075-444553540000}
http://download.macr...director/sw.cabDPF: HKLM-x32 {1E54D648-B804-468d-BC78-4AFFED8E262F}
http://www.nvidia.co...sreqlab_nvd.cabDPF: HKLM-x32 {67DABFBF-D0AB-41FA-9C46-CC0F21721616}
http://download.divx...owserPlugin.cabDPF: HKLM-x32 {6A060448-60F9-11D5-A6CD-0002B31F7455}
DPF: HKLM-x32 {E2883E8F-472F-4FB0-9522-AC9BF37916A7}
http://platformdl.ad...Plus/1.6/gp.cabDPF: HKLM-x32 {E6F480FC-BD44-4CBA-B74A-89AF7842937D}
http://content.syste...ri_4.4.21.0.cabHandler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Winsock: Catalog9 01 C:\Windows\SysWOW64\SmoothPingProxy.dll [315392] (SmoothPing)
Winsock: Catalog9 02 C:\Windows\SysWOW64\SmoothPingProxy.dll [315392] (SmoothPing)
Winsock: Catalog9 03 C:\Windows\SysWOW64\SmoothPingProxy.dll [315392] (SmoothPing)
Winsock: Catalog9 04 C:\Windows\SysWOW64\SmoothPingProxy.dll [315392] (SmoothPing)
Winsock: Catalog9 15 C:\Windows\SysWOW64\SmoothPingProxy.dll [315392] (SmoothPing)
Winsock: Catalog9-x64 01 C:\Windows\system32\SmoothPingProxy64.dll [430592] (SmoothPing)
Winsock: Catalog9-x64 02 C:\Windows\system32\SmoothPingProxy64.dll [430592] (SmoothPing)
Winsock: Catalog9-x64 03 C:\Windows\system32\SmoothPingProxy64.dll [430592] (SmoothPing)
Winsock: Catalog9-x64 04 C:\Windows\system32\SmoothPingProxy64.dll [430592] (SmoothPing)
Winsock: Catalog9-x64 15 C:\Windows\system32\SmoothPingProxy64.dll [430592] (SmoothPing)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{09422DDC-6800-45E3-9216-B5095F00AEB7}: [NameServer]8.8.8.8,8.8.8.4
FireFox:
========
FF ProfilePath: C:\Users\Zer0\AppData\Roaming\Mozilla\Firefox\Profiles\yuohtlfh.default-1379735746604
FF Homepage:
https://www.google.com.au/FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll ()
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin: @java.com/DTPlugin,version=10.4.0 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\Microsoft Office\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @divx.com/DivX Browser Plugin,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin-x32: @esn.me/esnsonar,version=0.70.0 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.0\npesnsonar.dll No File
FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB)
FF Plugin-x32: @esn/esnlaunch,version=1.104.0 - C:\Program Files (x86)\Battlelog Web Plugins\1.104.0\npesnlaunch.dll No File
FF Plugin-x32: @esn/esnlaunch,version=1.96.0 - C:\Program Files (x86)\Battlelog Web Plugins\1.96.0\npesnlaunch.dll No File
FF Plugin-x32: @esn/esnlaunch,version=2.3.0 - C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll (ESN Social Software AB)
FF Plugin-x32: @java.com/DTPlugin,version=1.6.0_35 - C:\Windows\SysWOW64\npdeployJava1.dll (Sun Microsystems, Inc.)
FF Plugin-x32: @messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6 - C:\Program Files (x86)\Yahoo!\Shared\npYState.dll (Yahoo! Inc.)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\Microsoft Office\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\Microsoft Office\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @nexon.net/NxGame - C:\ProgramData\NexonUS\NGM\npNxGameUS.dll (Nexon)
FF Plugin-x32: @ngm.nexoneu.com/NxGame - C:\ProgramData\NexonEU\NGM\npNxGameeu.dll (Nexon)
FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
FF Plugin-x32: @raidcall.en/RCplugin - C:\Users\Zer0\AppData\Roaming\raidcall\plugins\nprcplugin.dll (Raidcall)
FF Plugin-x32: @real.com/nppl3260;version=6.0.12.450 - C:\Program Files (x86)\Real Alternative\browser\plugins\nppl3260.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprpjplug;version=6.0.12.448 - C:\Program Files (x86)\Real Alternative\browser\plugins\nprpjplug.dll (RealNetworks, Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\Zer0\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
FF Plugin HKCU: ubisoft.com/uplaypc - C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll (Ubisoft)
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF HKLM-x32\...\Firefox\Extensions: [{23fcfd51-4958-4f00-80a3-ae97e717ed8b}] - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5
FF Extension: DivX Plus Web Player HTML5 <video> - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5
FF HKLM-x32\...\Thunderbird\Extensions: [
[email protected]] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird
FF HKCU\...\Firefox\Extensions: [
[email protected]] - C:\Users\Zer0\AppData\Roaming\IDM\idmmzcc5
FF Extension: IDM CC - C:\Users\Zer0\AppData\Roaming\IDM\idmmzcc5
FF HKCU\...\SeaMonkey\Extensions: [
[email protected]] - C:\Users\Zer0\AppData\Roaming\IDM\idmmzcc5
FF Extension: IDM CC - C:\Users\Zer0\AppData\Roaming\IDM\idmmzcc5
Chrome:
=======
CHR HKLM-x32\...\Chrome\Extension: [jeaohhlajejodfjadcponpnjgkiikocn] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx
CHR HKLM-x32\...\Chrome\Extension: [nneajnkjbffgblleaoojgaacokifdkhm] - C:\Program Files (x86)\DivX\DivX Plus Web Player\chrome\DivXHTML5\DivXHTML5.crx
==================== Services (Whitelisted) =================
R2 Akamai; c:\program files (x86)\common files\akamai/netsession_win_8fa3539.dll [4569856 2013-07-02] (Akamai Technologies, Inc.)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [49152 2013-09-14] ()
R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2013-08-12] (Microsoft Corporation)
R3 NisSrv; C:\Program Files\Microsoft Security Client\NisSrv.exe [366600 2013-08-12] (Microsoft Corporation)
S3 npggsvc; C:\Windows\SysWow64\GameMon.des [4266480 2011-01-13] (INCA Internet Co., Ltd.)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15122208 2013-10-18] (NVIDIA Corporation)
R2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2013-11-01] ()
R2 SbieSvc; C:\Program Files\Sandboxie\SbieSvc.exe [97552 2012-04-10] (SANDBOXIE L.T.D)
R2 SmoothPingProxy; C:\Program Files (x86)\Smoothping Elite\SmoothPingProxy.exe [2297856 2013-05-09] (SmoothPing)
S4 TlntSvr; C:\Windows\System32\tlntsvr.exe [81920 2009-07-14] (Microsoft Corporation)
S3 TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [757144 2013-08-16] (Tunngle.net GmbH)
R2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [453120 2010-11-21] (Microsoft Corporation)
R2 WSWNA3100; C:\Program Files (x86)\NETGEAR\WNA3100\WifiSvc.exe [285152 2010-08-26] ()
==================== Drivers (Whitelisted) ====================
S3 ewusbnet; C:\Windows\System32\DRIVERS\ewusbnet.sys [132608 2009-06-29] (Huawei Technologies Co., Ltd.)
S3 LVPr2M64; C:\Windows\System32\DRIVERS\LVPr2M64.sys [30304 2010-05-07] ()
S3 LVPr2Mon; C:\Windows\System32\DRIVERS\LVPr2M64.sys [30304 2010-05-07] ()
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [247216 2013-06-18] (Microsoft Corporation)
R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [139616 2013-06-18] (Microsoft Corporation)
S3 NPPTNT2; C:\Windows\SysWow64\npptNT2.sys [4682 2005-01-04] (INCA Internet Co., Ltd.)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-09-28] (NVIDIA Corporation)
S3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [13368 2013-08-16] ()
S3 SaiK0ccf; C:\Windows\System32\DRIVERS\SaiK0ccf.sys [180544 2012-09-20] (Saitek)
R3 SaiMini; C:\Windows\System32\DRIVERS\SaiMini.sys [24680 2012-10-15] (Saitek)
R3 SaiNtBus; C:\Windows\System32\drivers\SaiBus.sys [52200 2012-10-15] (Saitek)
S3 SaiU0CCF; C:\Windows\System32\DRIVERS\SaiU0CCF.sys [47168 2012-09-20] (Saitek)
R3 SbieDrv; C:\Program Files\Sandboxie\SbieDrv.sys [164528 2012-04-10] (SANDBOXIE L.T.D)
S3 Serial; C:\Windows\system32\DRIVERS\serial.sys [94208 2009-07-14] (Brother Industries Ltd.)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [834544 2010-09-17] ()
R3 tap0901t; C:\Windows\System32\DRIVERS\tap0901t.sys [31232 2009-09-16] (Tunngle.net)
S3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42184 2013-08-13] (Anchorfree Inc.)
R3 VCSVADHWSer; C:\Windows\System32\DRIVERS\vcsvad.sys [21504 2008-12-26] (Avnex)
U3 ah9wk9ro; C:\Windows\System32\Drivers\ah9wk9ro.sys [0 ] (Microsoft Corporation)
S3 dump_wmimmc; \??\C:\Program Files (x86)\gPotato\IrisOnline\GameGuard\dump_wmimmc.sys [x]
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [x]
S3 NLNdisMP; system32\DRIVERS\nlndis.sys [x]
S3 NLNdisPT; system32\DRIVERS\nlndis.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-11-12 13:05 - 2013-11-12 13:05 - 00000000 ____D C:\FRST
2013-11-12 13:01 - 2013-11-12 13:01 - 00002049 _____ C:\Users\Zer0\Desktop\JRT.txt
2013-11-12 12:56 - 2013-11-12 12:56 - 01957590 _____ (Farbar) C:\Users\Zer0\Desktop\FRST64.exe
2013-11-12 12:55 - 2013-11-12 12:55 - 00000000 ____D C:\Windows\ERUNT
2013-11-12 12:54 - 2013-11-12 12:54 - 01034531 _____ (Thisisu) C:\Users\Zer0\Desktop\JRT.exe
2013-11-12 12:01 - 2013-11-09 14:31 - 388544932 _____ C:\Users\Zer0\Desktop\Atlantis.2013.S01E07.HDTV.XviD-AFG.avi
2013-11-12 12:00 - 2013-11-02 19:56 - 312958111 _____ C:\Users\Zer0\Desktop\atlantis.2013.s01e06.hdtv.x264-tla.mp4
2013-11-12 10:29 - 2013-11-12 13:04 - 00026169 _____ C:\Users\Zer0\Desktop\AdwCleaner[S4].txt
2013-11-12 09:02 - 2013-11-12 10:22 - 00000000 ____D C:\AdwCleaner
2013-11-12 09:02 - 2013-11-12 09:02 - 01085542 _____ C:\Users\Zer0\Desktop\AdwCleaner_2.exe
2013-11-12 08:29 - 2013-11-12 10:30 - 00015212 _____ C:\VEW.txt
2013-11-12 08:03 - 2013-11-12 08:03 - 00061440 _____ ( ) C:\Users\Zer0\Desktop\VEW.exe
2013-11-12 07:26 - 2013-11-12 07:26 - 00006678 _____ C:\Windows\PFRO.log
2013-11-12 07:19 - 2013-11-12 10:25 - 00000336 _____ C:\Windows\setupact.log
2013-11-12 07:19 - 2013-11-12 07:19 - 00000000 _____ C:\Windows\setuperr.log
2013-11-11 11:26 - 2013-10-26 16:29 - 380193538 _____ C:\Users\Zer0\Desktop\Atlantis.2013.S01E05.HDTV.XviD-AFG.avi
2013-11-11 11:25 - 2013-10-19 15:38 - 379118552 _____ C:\Users\Zer0\Desktop\Atlantis.2013.1x04.Twist.Of.Fate.HDTV.XviD-AFG.avi
2013-11-11 11:25 - 2013-10-14 17:32 - 388571140 _____ C:\Users\Zer0\Desktop\Atlantis.2013.1x03.The.Boy.Must.Die.HDTV.XviD-AFG.avi
2013-11-11 11:25 - 2013-10-05 21:46 - 379392696 _____ C:\Users\Zer0\Desktop\Atlantis.2013.1x02.A.Girl.By.Any.Other.Name.HDTV.XviD-AFG.avi
2013-11-11 09:03 - 2013-09-28 20:46 - 397472086 _____ C:\Users\Zer0\Desktop\Atlantis.2013.1x01.The.Earth.Bull.HDTV.XviD-AFG.avi
2013-11-11 05:03 - 2013-11-11 05:19 - 423572207 _____ C:\Users\Zer0\Downloads\Windows6.1-KB947821-v28-x64.msu
2013-11-11 02:57 - 2013-11-11 02:57 - 00000000 ____D C:\Program Files (x86)\ESET
2013-11-11 02:36 - 2013-11-11 02:57 - 00000000 ____D C:\Users\Zer0\AppData\Roaming\IDM
2013-11-11 02:36 - 2013-11-11 02:37 - 00000000 ____D C:\Program Files (x86)\Internet Download Manager
2013-11-11 02:36 - 2013-11-11 02:36 - 00000000 ____D C:\Users\Zer0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
2013-11-11 02:36 - 2013-11-11 02:36 - 00000000 ____D C:\ProgramData\IDM
2013-11-11 01:36 - 2013-11-11 22:26 - 00000000 ____D C:\Users\Zer0\AppData\Local\CrashDumps
2013-11-11 01:22 - 2013-09-23 01:33 - 01392128 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-11-11 01:22 - 2013-09-23 01:23 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2013-11-11 01:22 - 2013-09-23 01:16 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2013-11-11 01:22 - 2013-09-23 01:15 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-11-11 01:22 - 2013-09-23 01:07 - 00248320 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-11-11 01:22 - 2013-09-22 21:13 - 01129472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-11-11 01:22 - 2013-09-22 21:12 - 00231936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2013-11-11 01:22 - 2013-09-22 21:08 - 00142848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2013-11-11 01:22 - 2013-09-22 21:06 - 00420864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2013-11-11 01:22 - 2013-09-22 21:03 - 02382848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-11-11 01:22 - 2013-09-22 21:03 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2013-11-11 01:22 - 2013-09-22 20:59 - 00176640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-11-11 01:21 - 2013-09-23 02:43 - 17833984 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-11-11 01:21 - 2013-09-23 02:01 - 10926080 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-11-11 01:21 - 2013-09-23 01:42 - 02312704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-11-11 01:21 - 2013-09-23 01:36 - 01346560 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-11-11 01:21 - 2013-09-23 01:33 - 01494528 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-11-11 01:21 - 2013-09-23 01:30 - 00237056 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2013-11-11 01:21 - 2013-09-23 01:27 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-11-11 01:21 - 2013-09-23 01:22 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-11-11 01:21 - 2013-09-23 01:21 - 00599040 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2013-11-11 01:21 - 2013-09-23 01:19 - 02147840 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-11-11 01:21 - 2013-09-23 01:19 - 00729088 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-11-11 01:21 - 2013-09-22 21:29 - 12336128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-11-11 01:21 - 2013-09-22 21:22 - 09739264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-11-11 01:21 - 2013-09-22 21:22 - 01800704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-11-11 01:21 - 2013-09-22 21:14 - 01427968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2013-11-11 01:21 - 2013-09-22 21:13 - 01104896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-11-11 01:21 - 2013-09-22 21:09 - 00065024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-11-11 01:21 - 2013-09-22 21:07 - 00717824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-11-11 01:21 - 2013-09-22 21:05 - 00607744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-11-11 01:21 - 2013-09-22 21:03 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-11-10 22:29 - 2013-11-10 22:12 - 00000683 ___SH C:\ProgramData\62f33931-3f95-403b-bd84-bc136fa2417d
2013-11-10 22:12 - 2013-11-10 22:12 - 00000000 ____D C:\ProgramData\c8865564-28bf-4d35-8039-1f4e8b199063
2013-11-10 22:11 - 2013-11-10 22:14 - 00000000 ____D C:\MyBootCD
2013-11-10 20:25 - 2013-11-02 06:26 - 786553176 _____ C:\Users\Zer0\Desktop\The.To.Do.List.2013.720p.BluRay.750MB.HPHD.mkv
2013-11-10 20:16 - 2013-11-10 20:17 - 05941185 _____ C:\Users\Zer0\Downloads\Hirens.BootCD.15.2.zip.part
2013-11-10 03:00 - 2013-08-29 13:17 - 05549504 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2013-11-10 03:00 - 2013-08-29 13:16 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2013-11-10 03:00 - 2013-08-29 13:16 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2013-11-10 03:00 - 2013-08-29 13:16 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2013-11-10 03:00 - 2013-08-29 13:13 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2013-11-10 03:00 - 2013-08-29 12:51 - 03969472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2013-11-10 03:00 - 2013-08-29 12:51 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2013-11-10 03:00 - 2013-08-29 12:50 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2013-11-10 03:00 - 2013-08-29 12:50 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2013-11-10 03:00 - 2013-08-29 12:50 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2013-11-10 03:00 - 2013-08-29 12:48 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2013-11-10 03:00 - 2013-08-29 11:49 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2013-11-10 03:00 - 2013-08-29 11:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2013-11-10 03:00 - 2013-08-29 11:49 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2013-11-10 03:00 - 2013-08-29 11:49 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2013-11-10 03:00 - 2013-08-28 12:21 - 03155968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-11-10 03:00 - 2013-07-20 21:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-11-10 03:00 - 2013-07-20 21:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-11-10 03:00 - 2013-07-04 23:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2013-11-10 03:00 - 2013-07-04 23:50 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2013-11-10 03:00 - 2013-07-04 22:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2013-11-10 03:00 - 2013-07-04 22:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2013-11-10 03:00 - 2013-07-04 21:11 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2013-11-10 03:00 - 2013-06-06 16:50 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2013-11-10 03:00 - 2013-06-06 16:49 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2013-11-10 03:00 - 2013-06-06 16:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2013-11-10 03:00 - 2013-06-06 16:47 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2013-11-10 03:00 - 2013-06-06 15:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2013-11-10 03:00 - 2013-06-06 15:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2013-11-10 03:00 - 2013-06-06 15:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2013-11-10 03:00 - 2013-06-06 14:30 - 00368128 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2013-11-10 03:00 - 2013-06-06 14:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2013-11-10 03:00 - 2013-06-06 14:01 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2013-11-10 02:59 - 2013-09-14 12:10 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2013-11-10 02:59 - 2013-09-08 13:30 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2013-11-10 02:59 - 2013-09-08 13:27 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2013-11-10 02:59 - 2013-09-08 13:03 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2013-11-10 02:59 - 2013-07-12 21:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys
2013-11-10 02:59 - 2013-07-12 21:40 - 00109824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBAUDIO.sys
2013-11-10 02:59 - 2013-07-04 23:50 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2013-11-10 02:59 - 2013-07-04 22:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2013-11-10 02:59 - 2013-07-03 15:40 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbscan.sys
2013-11-10 02:59 - 2013-07-03 15:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2013-11-10 02:59 - 2013-07-03 15:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2013-11-10 02:59 - 2013-06-26 09:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2013-11-10 02:57 - 2013-08-28 12:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2013-11-10 02:56 - 2013-09-04 23:12 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2013-11-10 02:56 - 2013-09-04 23:11 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2013-11-10 02:56 - 2013-09-04 23:11 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2013-11-10 02:56 - 2013-09-04 23:11 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2013-11-10 02:56 - 2013-09-04 23:11 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2013-11-10 02:56 - 2013-09-04 23:11 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2013-11-10 02:56 - 2013-09-04 23:11 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2013-11-10 02:56 - 2013-08-01 23:09 - 00983488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2013-11-09 16:08 - 2013-11-08 10:41 - 00174968 _____ (Tonec Inc.) C:\Windows\system32\Drivers\idmwfp.sys
2013-11-08 05:24 - 2013-11-08 05:56 - 279399490 _____ C:\Users\Zer0\Downloads\The.Tomorrow.People.US.S01E05.HDTV.x264-LOL.mp4
2013-11-08 05:24 - 2013-11-08 05:49 - 259246346 _____ C:\Users\Zer0\Downloads\The.Tomorrow.People.US.S01E04.HDTV.x264-LOL.mp4
2013-11-08 05:11 - 2013-11-08 05:48 - 282521080 _____ C:\Users\Zer0\Downloads\The.Tomorrow.People.US.S01E03.HDTV.x264-LOL.mp4
2013-11-08 04:59 - 2013-11-08 05:18 - 271163068 _____ C:\Users\Zer0\Downloads\The.Tomorrow.People.US.S01E02.HDTV.x264-LOL.mp4
2013-11-08 04:24 - 2013-11-08 04:47 - 301646643 _____ C:\Users\Zer0\Downloads\The.Tomorrow.People.US.S01E01.HDTV.x264-LOL.mp4
2013-11-08 04:20 - 2013-11-08 04:20 - 11032296 _____ C:\Users\Zer0\Downloads\TTDL.2013.720p.BR.750MB-HPHD.rar.part
2013-11-02 20:47 - 2013-11-02 20:47 - 00001157 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2013-11-01 17:23 - 2013-10-23 21:30 - 30344480 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2013-11-01 17:23 - 2013-10-23 21:30 - 25257248 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2013-11-01 17:23 - 2013-10-23 21:30 - 22933792 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2013-11-01 17:23 - 2013-10-23 21:30 - 18199872 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2013-11-01 17:23 - 2013-10-23 21:30 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2013-11-01 17:23 - 2013-10-23 21:30 - 15855568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2013-11-01 17:23 - 2013-10-23 21:30 - 12572960 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2013-11-01 17:23 - 2013-10-23 21:30 - 11426568 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2013-11-01 17:23 - 2013-10-23 21:30 - 11374520 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2013-11-01 17:23 - 2013-10-23 21:30 - 09524088 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2013-11-01 17:23 - 2013-10-23 21:30 - 09480328 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2013-11-01 17:23 - 2013-10-23 21:30 - 03131680 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2013-11-01 17:23 - 2013-10-23 21:30 - 03124512 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll
2013-11-01 17:23 - 2013-10-23 21:30 - 02946848 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2013-11-01 17:23 - 2013-10-23 21:30 - 02747168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll
2013-11-01 17:23 - 2013-10-23 21:30 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433165.dll
2013-11-01 17:23 - 2013-10-23 21:30 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433165.dll
2013-11-01 17:23 - 2013-10-23 21:30 - 01241376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2013-11-01 17:23 - 2013-10-23 21:30 - 00696096 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2013-11-01 17:23 - 2013-10-23 21:30 - 00655136 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2013-11-01 17:23 - 2013-10-23 21:30 - 00599840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2013-11-01 17:23 - 2013-10-23 21:30 - 00560416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2013-11-01 17:23 - 2013-10-23 21:30 - 00479520 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2013-11-01 17:23 - 2013-10-23 21:30 - 00405280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2013-11-01 17:23 - 2013-10-23 21:30 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2013-11-01 17:23 - 2013-10-23 21:30 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2013-11-01 17:23 - 2013-10-23 21:30 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2013-11-01 17:23 - 2013-10-23 21:30 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2013-11-01 17:23 - 2013-01-29 19:35 - 01510176 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco64.dll
2013-11-01 15:28 - 2013-11-01 15:55 - 00001205 _____ C:\Users\Public\Desktop\Battlefield 4(64 bit).lnk
2013-10-30 19:50 - 2013-10-18 12:36 - 01063200 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2013-10-30 19:50 - 2013-10-18 12:36 - 00955168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2013-10-30 19:49 - 2013-09-28 10:01 - 00039200 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2013-10-30 19:49 - 2013-09-28 10:01 - 00028960 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2013-10-29 21:20 - 2013-10-29 21:20 - 00000000 ____D C:\Users\Zer0\AppData\Local\UWebKit
2013-10-23 15:50 - 2013-10-16 11:48 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433158.dll
2013-10-23 15:50 - 2013-10-16 11:48 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433158.dll
2013-10-23 03:02 - 2013-10-23 03:02 - 00589600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2013-10-23 00:11 - 2013-10-23 00:11 - 00000000 ____D C:\Users\Zer0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AC3Filter
2013-10-23 00:11 - 2013-10-23 00:11 - 00000000 ____D C:\Program Files (x86)\AC3Filter
2013-10-23 00:11 - 2008-07-09 19:05 - 00421888 _____ C:\Windows\system32\ac3filter.acm
2013-10-19 00:06 - 2013-10-19 00:28 - 569983472 _____ C:\Users\Zer0\Downloads\Strike.Back.S03E03.HDTV.x264-LOL.mp4
2013-10-18 17:21 - 2013-10-19 16:30 - 00000000 ____D C:\Users\Zer0\Downloads\Toto - Falling In Between(2006)Remastered 2013
2013-10-18 16:11 - 2013-10-18 16:37 - 576908296 _____ C:\Users\Zer0\Downloads\Strike.Back.S02E10.HDTV.XviD-FQM.avi
2013-10-18 16:10 - 2013-10-18 16:32 - 576898268 _____ C:\Users\Zer0\Downloads\Strike.Back.S02E09.HDTV.XviD-FQM.avi
2013-10-18 15:33 - 2013-10-18 15:36 - 00000000 ____D C:\Users\Zer0\Downloads\iwin-MahJong Quest III -by ozgurd
2013-10-16 17:58 - 2013-10-16 18:16 - 366955670 _____ C:\Users\Zer0\Downloads\Strike.Back.S02E08.HDTV.XviD-ASAP.avi
2013-10-15 20:06 - 2013-10-23 15:47 - 00000000 ____D C:\ProgramData\WarThunder
2013-10-15 20:06 - 2013-10-23 15:04 - 00000000 ____D C:\Program Files (x86)\WarThunder
2013-10-15 20:06 - 2013-10-15 20:06 - 00001107 _____ C:\Users\Public\Desktop\WarThunder.lnk
2013-10-15 20:06 - 2013-10-15 20:06 - 00000000 ____D C:\Users\Zer0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WarThunder
2013-10-15 20:06 - 2013-10-15 20:06 - 00000000 ____D C:\Users\Zer0\AppData\Local\WarThunder
2013-10-14 22:18 - 2013-10-14 22:57 - 576323696 _____ C:\Users\Zer0\Downloads\Strike.Back.S02E03.HDTV.XviD-LOL.avi
2013-10-14 22:17 - 2013-10-16 18:51 - 576899134 _____ C:\Users\Zer0\Downloads\Strike.Back.S02E07.HDTV.XviD-FQM.avi
2013-10-14 22:17 - 2013-10-15 21:35 - 575172218 _____ C:\Users\Zer0\Downloads\Strike.Back.S02E06.HDTV.XviD-LOL.avi
2013-10-14 22:17 - 2013-10-15 19:12 - 577246604 _____ C:\Users\Zer0\Downloads\Strike.Back.S02E05.HDTV.XviD-FQM.avi
2013-10-14 22:17 - 2013-10-15 18:30 - 576246262 _____ C:\Users\Zer0\Downloads\Strike.Back.S02E04.HDTV.XviD-LOL.avi
2013-10-14 18:47 - 2013-10-14 19:47 - 576089160 _____ C:\Users\Zer0\Downloads\Strike.Back.S02E02.HDTV.XviD-LOL.avi
2013-10-14 18:47 - 2013-10-14 19:19 - 576338328 _____ C:\Users\Zer0\Downloads\Strike.Back.S02E01.HDTV.XviD-LOL.avi
2013-10-14 13:46 - 2013-10-14 14:01 - 364892160 _____ C:\Users\Zer0\Downloads\Strike.Back.S01E06.HDTV.XviD-BiA.avi
2013-10-14 00:03 - 2013-10-14 11:27 - 00000000 ____D C:\Users\Zer0\Downloads\CODE HUNTER [2002][AC3][DVDRip]-FLAWL3SS
==================== One Month Modified Files and Folders =======
2013-11-12 13:05 - 2013-11-12 13:05 - 00000000 ____D C:\FRST
2013-11-12 13:04 - 2013-11-12 10:29 - 00026169 _____ C:\Users\Zer0\Desktop\AdwCleaner[S4].txt
2013-11-12 13:01 - 2013-11-12 13:01 - 00002049 _____ C:\Users\Zer0\Desktop\JRT.txt
2013-11-12 13:01 - 2013-04-28 17:02 - 00000894 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-11-12 12:56 - 2013-11-12 12:56 - 01957590 _____ (Farbar) C:\Users\Zer0\Desktop\FRST64.exe
2013-11-12 12:55 - 2013-11-12 12:55 - 00000000 ____D C:\Windows\ERUNT
2013-11-12 12:54 - 2013-11-12 12:54 - 01034531 _____ (Thisisu) C:\Users\Zer0\Desktop\JRT.exe
2013-11-12 12:51 - 2010-11-08 16:27 - 00000000 ____D C:\Users\Zer0\AppData\Roaming\Skype
2013-11-12 12:36 - 2013-09-17 17:57 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-11-12 12:30 - 2012-08-16 01:25 - 00000924 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3687147164-1298252514-2334443246-1000UA.job
2013-11-12 12:00 - 2010-09-05 00:19 - 00000000 ____D C:\Users\Zer0\AppData\Roaming\DMCache
2013-11-12 11:00 - 2009-07-14 14:20 - 00000000 ____D C:\Windows\rescache
2013-11-12 10:35 - 2009-07-14 15:45 - 00015040 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-11-12 10:35 - 2009-07-14 15:45 - 00015040 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-11-12 10:31 - 2012-03-08 14:09 - 01427302 _____ C:\Windows\WindowsUpdate.log
2013-11-12 10:30 - 2013-11-12 08:29 - 00015212 _____ C:\VEW.txt
2013-11-12 10:26 - 2010-09-04 18:44 - 00000000 ____D C:\Program Files (x86)\Steam
2013-11-12 10:25 - 2013-11-12 07:19 - 00000336 _____ C:\Windows\setupact.log
2013-11-12 10:25 - 2013-04-28 17:02 - 00000890 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-11-12 10:24 - 2010-09-04 16:48 - 00000000 ____D C:\ProgramData\NVIDIA
2013-11-12 10:24 - 2009-07-14 16:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-11-12 10:22 - 2013-11-12 09:02 - 00000000 ____D C:\AdwCleaner
2013-11-12 09:02 - 2013-11-12 09:02 - 01085542 _____ C:\Users\Zer0\Desktop\AdwCleaner_2.exe
2013-11-12 08:03 - 2013-11-12 08:03 - 00061440 _____ ( ) C:\Users\Zer0\Desktop\VEW.exe
2013-11-12 07:26 - 2013-11-12 07:26 - 00006678 _____ C:\Windows\PFRO.log
2013-11-12 07:26 - 2012-06-12 21:20 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2013-11-12 07:26 - 2012-06-12 21:20 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2013-11-12 07:19 - 2013-11-12 07:19 - 00000000 _____ C:\Windows\setuperr.log
2013-11-12 07:18 - 2012-08-16 01:25 - 00000902 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3687147164-1298252514-2334443246-1000Core.job
2013-11-11 22:26 - 2013-11-11 01:36 - 00000000 ____D C:\Users\Zer0\AppData\Local\CrashDumps
2013-11-11 22:13 - 2012-12-01 00:02 - 00214392 _____ C:\Windows\SysWOW64\PnkBstrB.exe
2013-11-11 22:01 - 2012-12-01 00:02 - 00214392 _____ C:\Windows\SysWOW64\PnkBstrB.ex0
2013-11-11 20:51 - 2011-07-01 13:37 - 00000000 ____D C:\Program Files (x86)\Origin
2013-11-11 19:26 - 2010-09-05 00:31 - 00000000 ____D C:\Windows\Minidump
2013-11-11 11:36 - 2013-09-10 17:49 - 00000000 ____D C:\Users\Zer0\Downloads\Compressed
2013-11-11 05:19 - 2013-11-11 05:03 - 423572207 _____ C:\Users\Zer0\Downloads\Windows6.1-KB947821-v28-x64.msu
2013-11-11 05:01 - 2012-01-18 17:08 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-11-11 02:57 - 2013-11-11 02:57 - 00000000 ____D C:\Program Files (x86)\ESET
2013-11-11 02:57 - 2013-11-11 02:36 - 00000000 ____D C:\Users\Zer0\AppData\Roaming\IDM
2013-11-11 02:37 - 2013-11-11 02:36 - 00000000 ____D C:\Program Files (x86)\Internet Download Manager
2013-11-11 02:36 - 2013-11-11 02:36 - 00000000 ____D C:\Users\Zer0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
2013-11-11 02:36 - 2013-11-11 02:36 - 00000000 ____D C:\ProgramData\IDM
2013-11-11 02:04 - 2009-07-14 15:45 - 04972352 _____ C:\Windows\system32\FNTCACHE.DAT
2013-11-11 01:10 - 2013-09-01 18:29 - 00235143 ___SH C:\ProgramData\8d9221f8-e7a0-45a5-9c38-fd27fa08bbc7
2013-11-10 23:17 - 2012-10-11 16:37 - 00000000 ____D C:\Users\Zer0\AppData\Roaming\IMVU
2013-11-10 22:14 - 2013-11-10 22:11 - 00000000 ____D C:\MyBootCD
2013-11-10 22:12 - 2013-11-10 22:29 - 00000683 ___SH C:\ProgramData\62f33931-3f95-403b-bd84-bc136fa2417d
2013-11-10 22:12 - 2013-11-10 22:12 - 00000000 ____D C:\ProgramData\c8865564-28bf-4d35-8039-1f4e8b199063
2013-11-10 20:52 - 2009-07-14 16:13 - 00006884 _____ C:\Windows\system32\PerfStringBackup.INI
2013-11-10 20:17 - 2013-11-10 20:16 - 05941185 _____ C:\Users\Zer0\Downloads\Hirens.BootCD.15.2.zip.part
2013-11-10 16:44 - 2013-09-01 18:11 - 00000000 ____D C:\ProgramData\c68dac03-3d23-4f11-a555-bcd5fdf56017
2013-11-10 04:26 - 2011-02-26 12:29 - 00002064 _____ C:\Windows\Sandboxie.ini
2013-11-10 03:46 - 2013-09-26 04:43 - 00000594 _____ C:\Users\Zer0\Desktop\anime.txt
2013-11-10 03:32 - 2013-08-22 20:40 - 00000000 ____D C:\Windows\system32\MRT
2013-11-10 03:19 - 2010-09-04 17:40 - 80541720 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-11-10 03:11 - 2011-01-26 13:45 - 00001945 _____ C:\Windows\epplauncher.mif
2013-11-10 03:10 - 2012-05-02 02:40 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client
2013-11-10 03:10 - 2011-01-26 13:44 - 00000000 ____D C:\Program Files\Microsoft Security Client
2013-11-09 19:18 - 2010-12-18 02:16 - 00000000 ____D C:\Users\Zer0\AppData\Roaming\TS3Client
2013-11-09 14:31 - 2013-11-12 12:01 - 388544932 _____ C:\Users\Zer0\Desktop\Atlantis.2013.S01E07.HDTV.XviD-AFG.avi
2013-11-08 21:56 - 2010-09-23 15:13 - 00000000 ____D C:\Users\Zer0\AppData\Roaming\uTorrent
2013-11-08 21:54 - 2012-12-21 06:46 - 00000000 ____D C:\Users\Zer0\AppData\Local\Spotify
2013-11-08 21:54 - 2012-12-21 06:45 - 00000000 ____D C:\Users\Zer0\AppData\Roaming\Spotify
2013-11-08 17:46 - 2011-05-18 19:51 - 00000000 ____D C:\Users\DefaultAppPool
2013-11-08 10:41 - 2013-11-09 16:08 - 00174968 _____ (Tonec Inc.) C:\Windows\system32\Drivers\idmwfp.sys
2013-11-08 05:56 - 2013-11-08 05:24 - 279399490 _____ C:\Users\Zer0\Downloads\The.Tomorrow.People.US.S01E05.HDTV.x264-LOL.mp4
2013-11-08 05:49 - 2013-11-08 05:24 - 259246346 _____ C:\Users\Zer0\Downloads\The.Tomorrow.People.US.S01E04.HDTV.x264-LOL.mp4
2013-11-08 05:48 - 2013-11-08 05:11 - 282521080 _____ C:\Users\Zer0\Downloads\The.Tomorrow.People.US.S01E03.HDTV.x264-LOL.mp4
2013-11-08 05:18 - 2013-11-08 04:59 - 271163068 _____ C:\Users\Zer0\Downloads\The.Tomorrow.People.US.S01E02.HDTV.x264-LOL.mp4
2013-11-08 04:47 - 2013-11-08 04:24 - 301646643 _____ C:\Users\Zer0\Downloads\The.Tomorrow.People.US.S01E01.HDTV.x264-LOL.mp4
2013-11-08 04:20 - 2013-11-08 04:20 - 11032296 _____ C:\Users\Zer0\Downloads\TTDL.2013.720p.BR.750MB-HPHD.rar.part
2013-11-05 14:54 - 2010-09-04 16:39 - 00000000 ____D C:\Users\Zer0
2013-11-02 20:47 - 2013-11-02 20:47 - 00001157 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2013-11-02 20:47 - 2013-10-01 08:38 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-11-02 19:56 - 2013-11-12 12:00 - 312958111 _____ C:\Users\Zer0\Desktop\atlantis.2013.s01e06.hdtv.x264-tla.mp4
2013-11-02 06:26 - 2013-11-10 20:25 - 786553176 _____ C:\Users\Zer0\Desktop\The.To.Do.List.2013.720p.BluRay.750MB.HPHD.mkv
2013-11-02 04:06 - 2013-03-13 18:20 - 00000000 ____D C:\Program Files\TeamSpeak 3 Client
2013-11-01 17:28 - 2010-09-04 16:47 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2013-11-01 15:55 - 2013-11-01 15:28 - 00001205 _____ C:\Users\Public\Desktop\Battlefield 4(64 bit).lnk
2013-11-01 15:28 - 2011-09-29 16:36 - 00000000 ____D C:\Program Files (x86)\Battlelog Web Plugins
2013-11-01 15:27 - 2012-12-01 00:02 - 00076888 _____ C:\Windows\SysWOW64\PnkBstrA.exe
2013-11-01 14:40 - 2012-09-14 21:10 - 00000000 ____D C:\Program Files (x86)\Electronic Arts
2013-10-30 19:51 - 2010-09-04 17:48 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2013-10-30 19:50 - 2010-09-04 16:46 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2013-10-29 21:20 - 2013-10-29 21:20 - 00000000 ____D C:\Users\Zer0\AppData\Local\UWebKit
2013-10-26 16:29 - 2013-11-11 11:26 - 380193538 _____ C:\Users\Zer0\Desktop\Atlantis.2013.S01E05.HDTV.XviD-AFG.avi
2013-10-23 21:30 - 2013-11-01 17:23 - 30344480 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2013-10-23 21:30 - 2013-11-01 17:23 - 25257248 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2013-10-23 21:30 - 2013-11-01 17:23 - 22933792 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2013-10-23 21:30 - 2013-11-01 17:23 - 18199872 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2013-10-23 21:30 - 2013-11-01 17:23 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2013-10-23 21:30 - 2013-11-01 17:23 - 15855568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2013-10-23 21:30 - 2013-11-01 17:23 - 12572960 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2013-10-23 21:30 - 2013-11-01 17:23 - 11426568 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2013-10-23 21:30 - 2013-11-01 17:23 - 11374520 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2013-10-23 21:30 - 2013-11-01 17:23 - 09524088 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2013-10-23 21:30 - 2013-11-01 17:23 - 09480328 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2013-10-23 21:30 - 2013-11-01 17:23 - 03131680 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2013-10-23 21:30 - 2013-11-01 17:23 - 03124512 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll
2013-10-23 21:30 - 2013-11-01 17:23 - 02946848 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2013-10-23 21:30 - 2013-11-01 17:23 - 02747168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll
2013-10-23 21:30 - 2013-11-01 17:23 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433165.dll
2013-10-23 21:30 - 2013-11-01 17:23 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433165.dll
2013-10-23 21:30 - 2013-11-01 17:23 - 01241376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2013-10-23 21:30 - 2013-11-01 17:23 - 00696096 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2013-10-23 21:30 - 2013-11-01 17:23 - 00655136 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2013-10-23 21:30 - 2013-11-01 17:23 - 00599840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2013-10-23 21:30 - 2013-11-01 17:23 - 00560416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2013-10-23 21:30 - 2013-11-01 17:23 - 00479520 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2013-10-23 21:30 - 2013-11-01 17:23 - 00405280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2013-10-23 21:30 - 2013-11-01 17:23 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2013-10-23 21:30 - 2013-11-01 17:23 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2013-10-23 21:30 - 2013-11-01 17:23 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2013-10-23 21:30 - 2013-11-01 17:23 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2013-10-23 21:30 - 2013-03-15 20:53 - 00023287 _____ C:\Windows\system32\nvinfo.pb
2013-10-23 21:30 - 2012-10-15 16:19 - 15212336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2013-10-23 21:30 - 2012-10-15 16:19 - 02695200 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2013-10-23 21:30 - 2012-02-22 12:57 - 01435504 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2013-10-23 21:30 - 2010-07-10 06:38 - 18286416 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2013-10-23 21:30 - 2010-03-17 12:07 - 03067560 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2013-10-23 19:20 - 2012-02-22 12:59 - 03426956 _____ C:\Windows\system32\nvcoproc.bin
2013-10-23 19:20 - 2011-02-23 02:39 - 06669600 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2013-10-23 19:20 - 2011-02-23 02:39 - 03489568 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2013-10-23 19:20 - 2011-02-23 02:38 - 00922912 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2013-10-23 19:20 - 2011-02-23 02:38 - 00219424 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2013-10-23 19:20 - 2010-03-16 22:50 - 00063776 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2013-10-23 15:47 - 2013-10-15 20:06 - 00000000 ____D C:\ProgramData\WarThunder
2013-10-23 15:26 - 2013-09-15 18:41 - 00000000 ____D C:\Program Files (x86)\RivaTuner Statistics Server
2013-10-23 15:04 - 2013-10-15 20:06 - 00000000 ____D C:\Program Files (x86)\WarThunder
2013-10-23 13:24 - 2013-08-10 20:49 - 00000000 ____D C:\TERA
2013-10-23 03:02 - 2013-10-23 03:02 - 00589600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2013-10-23 00:11 - 2013-10-23 00:11 - 00000000 ____D C:\Users\Zer0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AC3Filter
2013-10-23 00:11 - 2013-10-23 00:11 - 00000000 ____D C:\Program Files (x86)\AC3Filter
2013-10-23 00:00 - 2010-09-04 16:39 - 00000000 ___RD C:\Users\Zer0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-10-22 21:29 - 2013-09-15 18:41 - 00000000 ____D C:\Program Files (x86)\MSI Afterburner
2013-10-19 16:30 - 2013-10-18 17:21 - 00000000 ____D C:\Users\Zer0\Downloads\Toto - Falling In Between(2006)Remastered 2013
2013-10-19 15:38 - 2013-11-11 11:25 - 379118552 _____ C:\Users\Zer0\Desktop\Atlantis.2013.1x04.Twist.Of.Fate.HDTV.XviD-AFG.avi
2013-10-19 00:28 - 2013-10-19 00:06 - 569983472 _____ C:\Users\Zer0\Downloads\Strike.Back.S03E03.HDTV.x264-LOL.mp4
2013-10-18 16:37 - 2013-10-18 16:11 - 576908296 _____ C:\Users\Zer0\Downloads\Strike.Back.S02E10.HDTV.XviD-FQM.avi
2013-10-18 16:32 - 2013-10-18 16:10 - 576898268 _____ C:\Users\Zer0\Downloads\Strike.Back.S02E09.HDTV.XviD-FQM.avi
2013-10-18 15:36 - 2013-10-18 15:33 - 00000000 ____D C:\Users\Zer0\Downloads\iwin-MahJong Quest III -by ozgurd
2013-10-18 12:36 - 2013-10-30 19:50 - 01063200 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2013-10-18 12:36 - 2013-10-30 19:50 - 00955168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2013-10-16 18:51 - 2013-10-14 22:17 - 576899134 _____ C:\Users\Zer0\Downloads\Strike.Back.S02E07.HDTV.XviD-FQM.avi
2013-10-16 18:16 - 2013-10-16 17:58 - 366955670 _____ C:\Users\Zer0\Downloads\Strike.Back.S02E08.HDTV.XviD-ASAP.avi
2013-10-16 16:30 - 2011-11-22 06:08 - 00000000 ____D C:\Users\Zer0\AppData\Roaming\Windows Live Writer
2013-10-16 11:48 - 2013-10-23 15:50 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433158.dll
2013-10-16 11:48 - 2013-10-23 15:50 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433158.dll
2013-10-15 21:35 - 2013-10-14 22:17 - 575172218 _____ C:\Users\Zer0\Downloads\Strike.Back.S02E06.HDTV.XviD-LOL.avi
2013-10-15 20:06 - 2013-10-15 20:06 - 00001107 _____ C:\Users\Public\Desktop\WarThunder.lnk
2013-10-15 20:06 - 2013-10-15 20:06 - 00000000 ____D C:\Users\Zer0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WarThunder
2013-10-15 20:06 - 2013-10-15 20:06 - 00000000 ____D C:\Users\Zer0\AppData\Local\WarThunder
2013-10-15 20:06 - 2010-09-23 21:53 - 00000000 ____D C:\Users\Zer0\Documents\My Games
2013-10-15 19:12 - 2013-10-14 22:17 - 577246604 _____ C:\Users\Zer0\Downloads\Strike.Back.S02E05.HDTV.XviD-FQM.avi
2013-10-15 18:30 - 2013-10-14 22:17 - 576246262 _____ C:\Users\Zer0\Downloads\Strike.Back.S02E04.HDTV.XviD-LOL.avi
2013-10-14 22:57 - 2013-10-14 22:18 - 576323696 _____ C:\Users\Zer0\Downloads\Strike.Back.S02E03.HDTV.XviD-LOL.avi
2013-10-14 19:47 - 2013-10-14 18:47 - 576089160 _____ C:\Users\Zer0\Downloads\Strike.Back.S02E02.HDTV.XviD-LOL.avi
2013-10-14 19:19 - 2013-10-14 18:47 - 576338328 _____ C:\Users\Zer0\Downloads\Strike.Back.S02E01.HDTV.XviD-LOL.avi
2013-10-14 17:32 - 2013-11-11 11:25 - 388571140 _____ C:\Users\Zer0\Desktop\Atlantis.2013.1x03.The.Boy.Must.Die.HDTV.XviD-AFG.avi
2013-10-14 14:01 - 2013-10-14 13:46 - 364892160 _____ C:\Users\Zer0\Downloads\Strike.Back.S01E06.HDTV.XviD-BiA.avi
2013-10-14 11:27 - 2013-10-14 00:03 - 00000000 ____D C:\Users\Zer0\Downloads\CODE HUNTER [2002][AC3][DVDRip]-FLAWL3SS
Files to move or delete:
====================
C:\ProgramData\hash.dat
C:\Users\Zer0\jagex_cl_runescape_LIVE.dat
C:\Users\Zer0\random.dat
Some content of TEMP:
====================
C:\Users\Zer0\AppData\Local\Temp\ntdll_dump.dll
C:\Users\Zer0\AppData\Local\Temp\Quarantine.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-11-11 08:57
==================== End Of Log ============================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 10-11-2013 01
Ran by Zer0 at 2013-11-12 13:06:41
Running from C:\Users\Zer0\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Microsoft Security Essentials (Disabled - Up to date) {108DAC43-C256-20B7-BB05-914135DA5160}
AS: Microsoft Security Essentials (Disabled - Up to date) {ABEC4DA7-E46C-2F39-81B5-AA334E5D1BDD}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
µTorrent (x32 Version: 2.0.4)
AC3Filter (remove only) (x32)
Adobe AIR (x32 Version: 3.2.0.2070)
Adobe Community Help (x32 Version: 3.4.980)
Adobe Download Assistant (x32 Version: 1.0.6)
Adobe Flash Player 11 ActiveX (x32 Version: 11.9.900.117)
Adobe Flash Player 11 Plugin (x32 Version: 11.9.900.117)
Adobe Reader X (10.1.8) (x32 Version: 10.1.8)
Adobe Shockwave Player 11.6 (x32 Version: 11.6.5.635)
Akamai NetSession Interface (HKCU)
Akamai NetSession Interface Service (x32)
Alcatel SpeedTouch USB Software (x32)
AMIP for foobar2000 (remove only) (x32)
Any Video Converter 3.5.8 (x32)
APB Reloaded (x32)
Apple Application Support (x32 Version: 2.3)
Apple Mobile Device Support (Version: 5.1.1.4)
Apple Software Update (x32 Version: 2.1.3.127)
Arma 3 (x32)
Audacity 1.2.6 (x32)
Audacity 1.3.12 (Unicode) (x32)
AV Voice Changer Software DIAMOND 7.0 (x32 Version: 7.0.29)
AVS Screen Capture version 2.0.1 (x32)
AVS Update Manager 1.0 (x32)
AVS Video Editor 6 (x32)
AVS Video Recorder 2.4 (x32)
AVS4YOU Software Navigator 1.4 (x32)
Battlefield 3™ (x32 Version: 1.6.0.0)
Battlefield 4™ (x32 Version: 1.0.0.0)
Battlelog Web Plugins (x32 Version: 2.3.0)
Bejeweled 3 (x32 Version: 1.0.8.6128)
BigPond Broadband ADSL (x32 Version: 11.0)
Bonjour (Version: 3.0.0.10)
Call of Duty® 4 - Modern Warfare 1.1 Patch (x32)
Call of Duty® 4 - Modern Warfare 1.2 Patch (x32)
Call of Duty® 4 - Modern Warfare 1.3 Patch (x32)
Call of Duty® 4 - Modern Warfare 1.4 Patch (x32)
Call of Duty® 4 - Modern Warfare 1.5 Multiplayer Patch (x32)
Call of Duty® 4 - Modern Warfare 1.6 Patch (x32)
Call of Duty® 4 - Modern Warfare 1.7 Patch (x32)
CameraHelperMsi (x32 Version: 13.25.1010.0)
CCleaner (Version: 3.16)
ConvertXtoDVD 4.1.2.336 (x32 Version: 4.1.2.336)
Counter-Strike: Source (x32)
Counter-Strike: Source Beta (x32)
Creatures of Darkness (x32 Version: 3.3.0)
Curse Client (HKCU Version: 4.0.1.260)
D3DX10 (x32 Version: 15.4.2368.0902)
Deep Space Voices (x32 Version: 3.3.1)
Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition (x32)
DivX Setup (x32 Version: 2.6.1.41)
erLT (x32 Version: 1.20.138.34)
ESET Online Scanner v3 (x32)
EVGA Precision X 4.1.0 (x32 Version: 4.1.0)
Fable III (x32 Version: 1.0.0001.131)
Facebook Video Calling 1.2.0.287 (x32 Version: 1.2.287)
Fantasy Voice Pack (x32 Version: 1.3.0)
Far Cry® 3 (x32)
Female Voice Pack (x32 Version: 3.3.2)
FileZilla Client 3.6.0.2 (x32 Version: 3.6.0.2)
FlashFXP v4.2 (x32 Version: 4.2.3.1771)
foobar2000 v1.1.14a (x32 Version: 1.1.14a)
FORCED (x32)
Fraps (remove only) (x32)
Furry Voices for Second Life (x32 Version: 1.3.0)
Galactic Voices (x32 Version: 1.3.0)
Garry's Mod (x32)
GeForce Experience NvStream Client Components (Version: 1.6.28)
GoldWave v5.58 (x32)
Google Chrome (x32 Version: 30.0.1599.101)
Google Maps Radar - Made by OVPD Badge 169 (x32)
Google Update Helper (x32 Version: 1.3.21.165)
Grand Theft Auto IV (x32)
Half-Life Dedicated Server Update Tool (x32)
HashTab 4.0.0.2 (Version: 4.0.0.2)
HLSW v1.4.0.2 (x32)
ImgBurn (x32 Version: 2.5.5.0)
IMVU Avatar Chat Software (HKCU)
Internet Download Manager (x32)
Internet Explorer (x32)
iTunes (Version: 10.6.1.7)
Joystix Pro (x32 Version: 2.0.0.0)
Junk Mail filter update (x32 Version: 15.4.3502.0922)
LAME v3.98.3 for Audacity (x32)
League of Legends (x32 Version: 1.3)
LockHunter 2.0 beta 2, 64 bit
Logitech GamePanel Software 3.06.109 (Version: 3.06.109)
Logitech Webcam Software (x32 Version: 2.0)
LOLReplay (x32 Version: 0.8.1.4)
LWS Facebook (x32 Version: 13.20.1166.0)
LWS Gallery (x32 Version: 13.20.1166.0)
LWS Help_main (x32 Version: 13.25.1016.0)
LWS Launcher (x32 Version: 13.20.1166.0)
LWS Motion Detection (x32 Version: 13.20.1176.0)
LWS Pictures And Video (x32 Version: 13.25.1010.0)
LWS Twitter (x32 Version: 13.20.1166.0)
LWS Video Mask Maker (x32 Version: 13.10.1216.0)
LWS VideoEffects (Version: 13.25.1005.0)
LWS Webcam Software (x32 Version: 13.20.1168.0)
LWS WLM Plugin (x32 Version: 1.20.1166.0)
LWS YouTube Plugin (x32 Version: 13.20.1166.0)
Malwarebytes Anti-Malware version 1.75.0.1300 (x32 Version: 1.75.0.1300)
Max Payne 3 (x32)
Microsoft .NET Framework 2.0 SDK - ENU (x32 Version: 2.0.50727)
Microsoft .NET Framework 2.0 SDK - ENU (x32)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft .NET Framework 4 Extended (Version: 4.0.30319)
Microsoft .NET Framework 4 Multi-Targeting Pack (x32 Version: 4.0.30319)
Microsoft Application Error Reporting (Version: 12.0.6015.5000)
Microsoft Application Error Reporting (x32 Version: 12.0.6012.5000)
Microsoft Games for Windows - LIVE Redistributable (x32 Version: 3.5.92.0)
Microsoft Games for Windows Marketplace (x32 Version: 3.5.50.0)
Microsoft Office 2010 Service Pack 1 (SP1) (x32)
Microsoft Office Access MUI (English) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Access Setup Metadata MUI (English) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Excel MUI (English) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Groove MUI (English) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office InfoPath MUI (English) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Office 64-bit Components 2010 (Version: 14.0.6029.1000)
Microsoft Office OneNote MUI (English) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Outlook MUI (English) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office PowerPoint MUI (English) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Professional Plus 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Proof (English) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Proof (French) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Proof (Spanish) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Proofing (English) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Publisher MUI (English) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Shared 64-bit MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2010 (Version: 14.0.6029.1000)
Microsoft Office Shared MUI (English) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Shared Setup Metadata MUI (English) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Word MUI (English) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Security Client (Version: 4.3.0219.0)
Microsoft Security Essentials (Version: 4.3.219.0)
Microsoft Silverlight (Version: 5.1.20913.0)
Microsoft SQL Server Compact 3.5 SP2 ENU (x32 Version: 3.5.8080.0)
Microsoft SQL Server Compact 3.5 SP2 x64 ENU (Version: 3.5.8080.0)
Microsoft Text-to-Speech Engine 4.0 (English) (x32)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (x32 Version: 8.0.50727.4053)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.56336)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (x32 Version: 9.0.30729.5570)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (x32 Version: 9.0.21022)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (x32 Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219)
Microsoft Visual C++ 2010 Express - ENU (x32 Version: 10.0.30319)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (x32 Version: 11.0.60610.1)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 (x32 Version: 11.0.51106.1)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610)
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610)
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.51106 (x32 Version: 11.0.51106)
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.51106 (x32 Version: 11.0.51106)
Microsoft Visual Studio 2010 Express Prerequisites x64 - ENU (Version: 10.0.30319)
Microsoft XNA Framework Redistributable 4.0 (x32 Version: 4.0.20823.0)
Microsoft_VC80_ATL_x86 (x32 Version: 8.0.50727.4053)
Microsoft_VC80_ATL_x86_x64 (Version: 8.0.50727.4053)
Microsoft_VC80_CRT_x86 (x32 Version: 8.0.50727.4053)
Microsoft_VC80_CRT_x86_x64 (Version: 8.0.50727.4053)
Microsoft_VC80_MFC_x86 (x32 Version: 8.0.50727.4053)
Microsoft_VC80_MFC_x86_x64 (Version: 8.0.50727.4053)
Microsoft_VC80_MFCLOC_x86 (x32 Version: 8.0.50727.4053)
Microsoft_VC80_MFCLOC_x86_x64 (Version: 80.50727.4053)
Microsoft_VC90_ATL_x86 (x32 Version: 1.00.0000)
Microsoft_VC90_ATL_x86_x64 (Version: 1.00.0000)
Microsoft_VC90_CRT_x86 (x32 Version: 1.00.0000)
Microsoft_VC90_CRT_x86_x64 (Version: 1.00.0000)
Microsoft_VC90_MFC_x86 (x32 Version: 1.00.0000)
Microsoft_VC90_MFC_x86_x64 (Version: 1.00.0000)
Microsoft_VC90_MFCLOC_x86 (x32 Version: 1.00.0000)
Microsoft_VC90_MFCLOC_x86_x64 (Version: 1.00.0000)
MKVToolNix 5.9.0 (x32 Version: 5.9.0)
Mozilla Firefox 25.0 (x86 en-US) (x32 Version: 25.0)
MSI Afterburner 3.0.0 Beta 14 (x32 Version: 3.0.0 Beta 14)
MSI GamingApp (x32 Version: 1.0.0.5)
MSI Kombustor 2.5.2 (x32)
MSVCRT (x32 Version: 15.4.2862.0708)
MSVCRT Redists (Version: 1.0)
MSVCRT Redists (x32 Version: 1.0)
MSVCRT_amd64 (x32 Version: 15.4.2862.0708)
Mumble 1.2.3 (x32 Version: 1.2.3)
Natural Selection 2 (x32)
NCsoft Launcher (x32 Version: 1.5.6001)
Nero 9.0.9.4 Lite (x32 Version: 9.0.9.4)
NETGEAR WNA3100 wireless USB 2.0 adapter (x32 Version: 1.01.206)
Nexon Game Manager (x32)
No-IP DUC (x32 Version: 3.0.4)
NVIDIA 3D Vision Controller Driver (x32 Version: 280.19)
NVIDIA 3D Vision Controller Driver 331.65 (Version: 331.65)
NVIDIA 3D Vision Driver 331.65 (Version: 331.65)
NVIDIA Control Panel 331.65 (Version: 331.65)
NVIDIA GeForce Experience 1.7 (Version: 1.7)
NVIDIA Graphics Driver 331.65 (Version: 331.65)
NVIDIA HD Audio Driver 1.3.26.4 (Version: 1.3.26.4)
NVIDIA Install Application (Version: 2.1002.140.952)
NVIDIA LED Visualizer 1.0 (Version: 1.0)
NVIDIA PhysX (x32 Version: 9.13.0725)
NVIDIA PhysX System Software 9.13.0725 (Version: 9.13.0725)
NVIDIA ShadowPlay 9.3.16 (Version: 9.3.16)
NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.3165)
NVIDIA Update 9.3.16 (Version: 9.3.16)
NVIDIA Update Components (Version: 9.3.16)
NVIDIA Virtual Audio 1.2.9 (Version: 1.2.9)
Open Broadcaster Software (x32)
OpenAL (x32)
Origin (x32 Version: 9.1.11.2678)
Paint.NET v3.5.10 (Version: 3.60.0)
Path of Exile (x32)
PAYDAY 2 (x32)
Personality Voices (x32 Version: 1.0.0)
PFConfig 1.0.296 (x32 Version: 1.0.296)
PFPortChecker 1.0.39 (x32 Version: 1.0.39)
Portforward Static IP Address 1.0.47 (x32 Version: 1.0.47)
PunkBuster Services (x32 Version: 0.993)
PVSonyDll (Version: 1.00.0001)
QuickTime (x32 Version: 7.73.80.64)
RaidCall (x32 Version: 7.2.4-1.0.7299.14)
Real Alternative 2.0.2 (x32 Version: 2.0.2)
Realtek Ethernet Controller Driver (x32 Version: 1.00.0008)
Realtek High Definition Audio Driver (x32 Version: 6.0.1.5919)
RivaTuner Statistics Server 5.3.0 (x32 Version: 5.3.0)
Rockstar Games Social Club (x32 Version: 1.1.0.6)
Sandboxie 3.68 (64-bit) (Version: 3.68)
Sci-Fi Voice Pack (x32 Version: 1.3.1)
ScreenSnapr version 4.0.0.2 (x32 Version: 4.0.0.2)
SecurityKISS Tunnel v0.2.2
SHIELD Streaming (Version: 1.6.34)
SimCity™ (x32 Version: 1.0.0.0)
Skype™ 6.2 (x32 Version: 6.2.106)
Sleeping Dogs™ (x32)
Smart Technology Programming Software 7.0.23.0 (Version: 7.0.23.0)
Smoothping Elite (x32 Version: 2.2.0.1)
SolarWinds Real-time NetFlow Analyzer (HKCU Version: 10.6.1)
SolarWinds Real-time NetFlow Analyzer (x32 Version: 10.6.1)
Source SDK (x32)
Source SDK Base 2006 (x32)
Spotify (HKCU Version: 0.8.5.1333.g822e0de8)
Steam (x32 Version: 1.0.0.0)
swMSM (x32 Version: 12.0.0.1)
System Requirements Lab (x32)
System Requirements Lab CYRI (x32 Version: 4.4.21.0)
TeamSpeak 3 Client (Version: 3.0.13.1)
TeamSpeak 3 Client (x32 Version: 3.0.9.2)
TeamViewer 8 (x32 Version: 8.0.19045)
The Binding of Isaac (x32)
Tom Clancy`s Splinter Cell® Blacklist™ (x32 Version: 1.01)
Tom Clancy's Splinter Cell® Blacklist™ (x32 Version: 1.01)
Torchlight II (x32)
Translator Fun Voice Pack (x32 Version: 1.5.1)
Tunngle beta (x32)
Ubisoft Game Launcher (x32 Version: 1.0.0.0)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2473228) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (x32 Version: 3)
Update for Microsoft .NET Framework 4 Extended (KB2468871) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2533523) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2600217) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2836939) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2836939v3) (x32 Version: 3)
Update for Microsoft Access 2010 (KB2553446) 32-Bit Edition (x32)
Update for Microsoft Filter Pack 2.0 (KB2810071) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2494150) (x32)
Update for Microsoft Office 2010 (KB2553065) (x32)
Update for Microsoft Office 2010 (KB2553181) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2553267) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2553310) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2566458) (x32)
Update for Microsoft Office 2010 (KB2589298) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2589375) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2596964) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2598242) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2687503) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2767886) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2794737) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2825640) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2826026) 32-Bit Edition (x32)
Update for Microsoft OneNote 2010 (KB2553290) 32-Bit Edition (x32)
Update for Microsoft OneNote 2010 (KB2810072) 32-Bit Edition (x32)
Update for Microsoft Outlook 2010 (KB2687623) 32-Bit Edition (x32)
Update for Microsoft Outlook Social Connector 2010 (KB2553406) 32-Bit Edition (x32)
Update for Microsoft PowerPoint 2010 (KB2553145) 32-Bit Edition (x32)
Update for Microsoft SharePoint Workspace 2010 (KB2589371) 32-Bit Edition (x32)
Update for Microsoft Visio Viewer 2010 (KB2810066) 32-Bit Edition (x32)
Update for Microsoft Word 2010 (KB2827323) 32-Bit Edition (x32)
Uplay (x32 Version: 2.0)
v0.2.2
VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0)
Vegas Pro 12.0 (64-bit) (Version: 12.0.367)
Ventrilo Client for Windows x64 (Version: 3.0.5.0)
Virtual Audio Cable 4.10
VLC media player 1.1.4 (x32 Version: 1.1.4)
VTFEdit 1.2.5 (x32)
VTFEdit 1.3.3
War Thunder Launcher 1.0.1.278 (x32)
Windows Driver Package - Atheros Communications Inc. (arusb_lhx) Net (09/25/2008 3.1.0.101) (Version: 09/25/2008 3.1.0.101)
Windows Driver Package - NETGEAR Inc. (RTL8187) Net (12/01/2006 6.1258.1201.2006) (Version: 12/01/2006 6.1258.1201.2006)
Windows Driver Package - Thomson (USB_RNDIS) Net (02/15/2007 2.0.0.0) (Version: 02/15/2007 2.0.0.0)
Windows Live Communications Platform (x32 Version: 15.4.3502.0922)
Windows Live Essentials (x32 Version: 15.4.3502.0922)
Windows Live Essentials (x32 Version: 15.4.3555.0308)
Windows Live ID Sign-in Assistant (Version: 7.250.4232.0)
Windows Live Installer (x32 Version: 15.4.3502.0922)
Windows Live Language Selector (Version: 15.4.3555.0308)
Windows Live Mail (x32 Version: 15.4.3502.0922)
Windows Live Messenger (x32 Version: 15.4.3538.0513)
Windows Live MIME IFilter (Version: 15.4.3502.0922)
Windows Live Photo Common (x32 Version: 15.4.3502.0922)
Windows Live PIMT Platform (x32 Version: 15.4.3508.1109)
Windows Live SOXE (x32 Version: 15.4.3502.0922)
Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922)
Windows Live UX Platform (x32 Version: 15.4.3502.0922)
Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109)
Windows Live Writer (x32 Version: 15.4.3502.0922)
Windows Live Writer Resources (x32 Version: 15.4.3502.0922)
WinRAR archiver
World of Warcraft (x32 Version: 4.3.4.15595)
Xiph.Org Open Codecs 0.85.17777 (x32 Version: 0.85.17777)
XSplit (x32 Version: 1.2.1303.0101)
Yahoo! Software Update (x32)
Yahoo!7 Messenger (x32)
Yahoo!7 Toolbar (x32)
==================== Restore Points =========================
07-11-2013 11:18:36 Removed LogMeIn Hamachi
08-11-2013 06:28:23 Windows Update
09-11-2013 16:08:09 Windows Update
10-11-2013 14:12:51 Windows Modules Installer
10-11-2013 14:19:25 Software Distribution Service 3.0
10-11-2013 15:49:23 Software Distribution Service 3.0
10-11-2013 17:49:41 Software Distribution Service 3.0
10-11-2013 18:19:55 Software Distribution Service 3.0
10-11-2013 19:04:08 Software Distribution Service 3.0
10-11-2013 21:15:07 Software Distribution Service 3.0
==================== Hosts content: ==========================
2009-07-14 13:34 - 2012-10-20 23:26 - 00000325 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 novirusthanks.org
127.0.0.1 94.23.68.174
127.0.0.1 vscan.novirusthanks.org
127.0.0.1 www.vscan.novirusthanks.org
127.0.0.1 188.165.234.50
127.0.0.1 38.101.213.249
119.42.146.34 www.warez-bb.org
119.42.146.34 warez-bb.org
119.42.146.36 www.warez-bb.org
119.42.146.36 warez-bb.org
==================== Scheduled Tasks (whitelisted) =============
Task: {3797B773-2167-4988-8F7B-32F21B0D15F4} - System32\Tasks\{E95F1984-E9F4-46ED-93B4-5818A4018D16} => Iexplore.exe
http://ui.skype.com/...?LastError=1603Task: {3D7CBBC4-1E1F-43A5-A94D-86E77D7C4772} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3687147164-1298252514-2334443246-1000Core => C:\Users\Zer0\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-08-16] (Facebook Inc.)
Task: {6488510B-FD1D-4149-BD37-7BEA27AC2072} - System32\Tasks\{ED8C019C-6F9D-4B69-8714-6A726D5F34EA} => Iexplore.exe
http://ui.skype.com/...?LastError=1603Task: {69CC9C0D-7708-452D-B211-DF3AB0654EC3} - System32\Tasks\{3B36327A-2EF7-2E0A-3E55-08186775483F} => C:\Users\Zer0\AppData\Roaming\.minecraft\bin\backup\xmzzdgi.exe
Task: {793C6C67-2AF1-48DD-9801-66FFE1CA548D} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS.exe
Task: {796053B4-9AAD-485F-879D-EC74DB80A61A} - System32\Tasks\{5DDADFFF-9BA7-48E2-A2B6-4BC021FDC6C5} => Iexplore.exe
http://ui.skype.com/...led;madedefaultTask: {79AA5B3E-B26D-43CD-BD68-2A043E2C4273} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {8270840D-A130-4F00-9A08-BDB4152D6D08} - System32\Tasks\{B108F9AB-5529-4306-BA53-59BA00A81726} => C:\Program Files (x86)\Skype\\Phone\Skype.exe [2013-02-07] (Skype Technologies S.A.)
Task: {8D087215-7BEF-4794-BB61-B8AD5137351E} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3687147164-1298252514-2334443246-1000UA => C:\Users\Zer0\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-08-16] (Facebook Inc.)
Task: {C76BBB95-D78A-4700-9AE6-65EE71BD72E5} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-04-28] (Google Inc.)
Task: {E2488AD6-8BB7-42DE-9E11-0158646B39C9} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: {E56EE6BB-DD7B-42BA-A310-4876E002E12F} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-04-28] (Google Inc.)
Task: {E94D857F-B158-47A2-A297-47DECA5ABFD9} - System32\Tasks\{CA86B1F2-2FF6-4D8F-BF32-57EFE0D4AF84} => C:\Program Files (x86)\RaidCall\raidcall.exe [2013-08-27] (RAIDCALL.COM)
Task: {EFC05F52-4206-412E-9770-6B5B1CCA2E93} - System32\Tasks\{9D8E66A5-6286-4E40-B336-BAAB2D4343DF} => Iexplore.exe
http://ui.skype.com/...?LastError=1603Task: {F5A023C1-3799-44A1-AD68-136CF6E5946E} - System32\Tasks\{84867A06-259D-4637-9811-AE71B32E7642} => C:\Program Files (x86)\RaidCall\raidcall.exe [2013-08-27] (RAIDCALL.COM)
Task: {FDB40931-8E47-449B-9C81-133C5C39A39D} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-10-09] (Adobe Systems Incorporated)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3687147164-1298252514-2334443246-1000Core.job => C:\Users\Zer0\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3687147164-1298252514-2334443246-1000UA.job => C:\Users\Zer0\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) =============
2011-03-17 00:07 - 2011-03-17 00:07 - 04297568 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF
2010-10-20 15:23 - 2010-10-20 15:23 - 08801632 _____ () C:\Program Files\Microsoft Office\Office14\1033\GrooveIntlResource.dll
2010-01-03 01:42 - 2010-01-03 01:42 - 00098304 _____ () C:\Program Files (x86)\FileZilla FTP Client\fzshellext_64.dll
2011-09-27 07:23 - 2011-09-27 07:23 - 00087912 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2011-09-27 07:22 - 2011-09-27 07:22 - 01242472 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2010-05-07 18:35 - 2010-05-07 18:35 - 02143576 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\QtCore4.dll
2010-05-07 18:35 - 2010-05-07 18:35 - 07954776 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\QtGui4.dll
2010-05-07 18:36 - 2010-05-07 18:36 - 00340824 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\QtXml4.dll
2010-05-07 18:37 - 2010-05-07 18:37 - 00027480 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\imageformats\QGif4.dll
2010-05-07 18:37 - 2010-05-07 18:37 - 00126808 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\imageformats\QJpeg4.dll
2012-07-31 17:54 - 2010-10-28 12:37 - 00368640 _____ () C:\Program Files (x86)\NETGEAR\WNA3100\WifiLib.dll
2013-09-10 11:30 - 2013-11-09 15:31 - 00124928 _____ () C:\Riot Games\League of Legends\RADS\projects\lol_launcher\releases\0.0.0.191\deploy\RiotLauncher.dll
2011-03-17 00:11 - 2011-03-17 00:11 - 04297568 _____ () C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
2010-10-20 15:45 - 2010-10-20 15:45 - 08801120 _____ () C:\Program Files (x86)\Microsoft Office\Office14\1033\GrooveIntlResource.dll
2013-10-09 15:13 - 2013-07-12 01:50 - 04774248 _____ () C:\Riot Games\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.56\deploy\Adobe AIR\Versions\1.0\Resources\WebKit.dll
2012-04-30 18:55 - 2012-04-30 18:55 - 08358400 _____ () C:\Program Files (x86)\SplitMediaLabs\XSplit\avcodec-54.dll
2012-04-30 18:55 - 2012-04-30 18:55 - 00151040 _____ () C:\Program Files (x86)\SplitMediaLabs\XSplit\avutil-51.dll
2012-04-30 18:55 - 2012-04-30 18:55 - 01152512 _____ () C:\Program Files (x86)\SplitMediaLabs\XSplit\avformat-54.dll
2012-04-30 18:55 - 2012-04-30 18:55 - 00333824 _____ () C:\Program Files (x86)\SplitMediaLabs\XSplit\swscale-2.dll
2012-04-30 18:55 - 2012-04-30 18:55 - 00026112 _____ () C:\Program Files (x86)\SplitMediaLabs\XSplit\swresample-0.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00101376 _____ () C:\Program Files (x86)\VideoLAN\VLC\libvlc.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 02263552 _____ () C:\Program Files (x86)\VideoLAN\VLC\libvlccore.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00047104 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libaout_directx_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00067072 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libdirectx_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00210944 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libdshow_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 02153984 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libskins2_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00046592 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libwaveout_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00033792 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libmemcpymmxext_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00090112 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libaccess_bd_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00231424 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libdvdnav_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00039424 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libfilesystem_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00034304 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libstream_filter_rar_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00078848 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libzip_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00031232 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libstream_filter_record_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00108032 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libplaylist_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 01199104 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libtaglib_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00336384 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\liblua_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 01141248 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libxml_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00046592 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libhotkeys_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00033792 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libglobalhotkeys_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00194048 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libmp4_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 11043840 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libqt4_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00037376 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libfake_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00034304 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libcdg_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00237568 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libpng_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00768512 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libschroedinger_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00265216 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libflac_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 01711616 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libvorbis_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00130048 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libspeex_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 01761280 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\liblibass_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00045568 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libaraw_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00033280 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libaes3_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00039424 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libdts_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00309760 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libfaad_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00367616 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libtheora_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00037888 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libmpeg_audio_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00035840 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\liblpcm_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00036352 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\liba52_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00258048 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libfluidsynth_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 07124992 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libavcodec_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 01760256 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libfreetype_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00048640 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libi420_yuy2_sse2_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00039936 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libi420_yuy2_mmx_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00243200 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libswscale_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00046080 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libi422_yuy2_sse2_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00135680 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libi420_rgb_sse2_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00037888 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libi422_yuy2_mmx_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00073728 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libi420_rgb_mmx_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00036352 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libi422_yuy2_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00040448 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libyuy2_i420_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00052224 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libi420_rgb_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00032768 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libgrey_yuv_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00038400 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libi420_yuy2_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00036864 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libyuy2_i422_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00032768 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libi422_i420_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00031744 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libscale_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00031232 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libyuvp_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00038912 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libvout_wrapper_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00061440 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libdirect3d_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00031232 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libdrawable_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00128000 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libmpgatofixed32_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00178176 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libdtstofloat32_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00065536 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\liba52tofloat32_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00047104 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libbandlimited_resampler_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00032768 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libconverter_fixed_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00032256 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libdtstospdif_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00033792 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libsimple_channel_mixer_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00030720 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\liba52tospdif_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00032256 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libdolby_surround_decoder_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00031232 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libugly_resampler_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00038912 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libmono_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00032256 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libtrivial_channel_mixer_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00041472 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libaudio_format_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00031744 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libfloat32_mixer_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00036864 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libscaletempo_plugin.dll
2010-08-27 10:34 - 2010-08-27 10:34 - 00057344 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\libblend_plugin.dll
2013-11-02 20:47 - 2013-10-26 12:53 - 03368048 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
==================== Alternate Data Streams (whitelisted) =========
AlternateDataStreams: C:\ProgramData\TEMP:073341D1
AlternateDataStreams: C:\ProgramData\TEMP:F2096E4C
==================== Safe Mode (whitelisted) ===================
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SmoothPingProxy => ""="service"
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
System errors:
=============
Microsoft Office Sessions:
=========================
CodeIntegrity Errors:
===================================
Date: 2012-04-14 23:51:19.236
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Users\Zer0\Desktop\Rhc1\53e102a4.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2012-04-14 23:51:19.195
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Users\Zer0\Desktop\Rhc1\53e102a4.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2012-04-14 23:51:18.152
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Users\Zer0\Desktop\Rhc1\53e102a4.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2012-04-14 23:51:18.111
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Users\Zer0\Desktop\Rhc1\53e102a4.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2012-04-14 23:51:17.067
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Users\Zer0\Desktop\Rhc1\53e102a4.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2012-04-14 23:51:17.026
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Users\Zer0\Desktop\Rhc1\53e102a4.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2012-04-14 23:51:15.983
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Users\Zer0\Desktop\Rhc1\53e102a4.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2012-04-14 23:51:15.943
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Users\Zer0\Desktop\Rhc1\53e102a4.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2012-04-14 23:51:14.900
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Users\Zer0\Desktop\Rhc1\53e102a4.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2012-04-14 23:51:14.858
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Users\Zer0\Desktop\Rhc1\53e102a4.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
==================== Memory info ===========================
Percentage of memory in use: 47%
Total physical RAM: 6135.18 MB
Available physical RAM: 3245.19 MB
Total Pagefile: 12268.54 MB
Available Pagefile: 9247.2 MB
Total Virtual: 8192 MB
Available Virtual: 8191.74 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:1397.17 GB) (Free:673.53 GB) NTFS
Drive f: (Elements) (Fixed) (Total:1863.01 GB) (Free:1002.08 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 1397 GB) (Disk ID: BD85911E)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=-698828718080) - (Type=07 NTFS)
========================================================
Disk: 1 (MBR Code: Windows XP) (Size: 1863 GB) (Disk ID: 000C15B5)
Partition 1: (Not Active) - (Size=-198627557376) - (Type=07 NTFS)
==================== End Of Log ============================
OTL logfile created on: 12/11/2013 1:10:17 PM - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Zer0\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000c09 | Country: Australia | Language: ENA | Date Format: d/MM/yyyy
5.99 Gb Total Physical Memory | 3.17 Gb Available Physical Memory | 52.90% Memory free
11.98 Gb Paging File | 9.02 Gb Available in Paging File | 75.28% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 1397.17 Gb Total Space | 673.53 Gb Free Space | 48.21% Space Free | Partition Type: NTFS
Drive F: | 1863.01 Gb Total Space | 1002.08 Gb Free Space | 53.79% Space Free | Partition Type: NTFS
Computer Name: ZER0-PC | User Name: Zer0 | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ========== PRC - [2013/11/12 13:09:19 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Zer0\Desktop\OTL.exe
PRC - [2013/11/09 17:52:21 | 003,825,232 | ---- | M] (Tonec Inc.) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe
PRC - [2013/11/09 15:31:37 | 004,089,696 | ---- | M] () -- C:\Riot Games\League of Legends\RADS\projects\lol_launcher\releases\0.0.0.191\deploy\LoLLauncher.exe
PRC - [2013/11/07 22:17:30 | 000,269,848 | ---- | M] (Tonec Inc.) -- C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe
PRC - [2013/11/01 15:27:41 | 000,076,888 | ---- | M] () -- C:\Windows\SysWOW64\PnkBstrA.exe
PRC - [2013/10/26 12:53:21 | 000,275,568 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
PRC - [2013/10/23 03:02:32 | 000,414,496 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
PRC - [2013/10/18 12:35:01 | 001,028,384 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
PRC - [2013/10/18 12:34:28 | 001,914,656 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
PRC - [2013/10/09 15:21:39 | 000,074,752 | ---- | M] () -- C:\Riot Games\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.56\deploy\LolClient.exe
PRC - [2013/06/13 20:17:51 | 004,150,112 | ---- | M] (TeamViewer GmbH) -- C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
PRC - [2013/06/05 02:01:52 | 004,489,472 | ---- | M] (Akamai Technologies, Inc.) -- C:\Users\Zer0\AppData\Local\Akamai\netsession_win.exe
PRC - [2013/05/10 18:57:22 | 000,065,640 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2013/05/09 03:15:37 | 002,297,856 | ---- | M] (SmoothPing) -- C:\Program Files (x86)\Smoothping Elite\SmoothPingProxy.exe
PRC - [2012/08/15 17:32:55 | 001,302,528 | ---- | M] () -- C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe
PRC - [2011/04/01 16:11:52 | 000,428,640 | ---- | M] (Logitech Inc.) -- C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
PRC - [2011/03/02 00:14:08 | 000,190,808 | ---- | M] (Logitech Inc.) -- C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe
PRC - [2010/11/20 23:17:56 | 000,164,864 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe
PRC - [2010/08/27 10:34:22 | 000,107,008 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\vlc.exe
PRC - [2010/08/26 18:48:00 | 000,285,152 | ---- | M] () -- C:\Program Files (x86)\NETGEAR\WNA3100\WifiSvc.exe
PRC - [2008/11/10 07:48:14 | 000,602,392 | ---- | M] (Yahoo! Inc.) -- C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe
========== Modules (No Company Name) ========== MOD - [2013/11/09 15:31:38 | 000,124,928 | ---- | M] () -- C:\Riot Games\League of Legends\RADS\projects\lol_launcher\releases\0.0.0.191\deploy\RiotLauncher.dll
MOD - [2013/11/09 15:31:37 | 004,089,696 | ---- | M] () -- C:\Riot Games\League of Legends\RADS\projects\lol_launcher\releases\0.0.0.191\deploy\LoLLauncher.exe
MOD - [2013/10/26 12:53:40 | 003,368,048 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
MOD - [2013/10/09 15:21:39 | 000,074,752 | ---- | M] () -- C:\Riot Games\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.56\deploy\LolClient.exe
MOD - [2013/07/12 01:50:17 | 004,774,248 | ---- | M] () -- C:\Riot Games\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.56\deploy\Adobe AIR\Versions\1.0\Resources\WebKit.dll
MOD - [2012/08/15 17:32:55 | 001,302,528 | ---- | M] () -- C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe
MOD - [2012/04/30 18:55:48 | 000,026,112 | ---- | M] () -- C:\Program Files (x86)\SplitMediaLabs\XSplit\swresample-0.dll
MOD - [2012/04/30 18:55:45 | 008,358,400 | ---- | M] () -- C:\Program Files (x86)\SplitMediaLabs\XSplit\avcodec-54.dll
MOD - [2012/04/30 18:55:45 | 001,152,512 | ---- | M] () -- C:\Program Files (x86)\SplitMediaLabs\XSplit\avformat-54.dll
MOD - [2012/04/30 18:55:45 | 000,333,824 | ---- | M] () -- C:\Program Files (x86)\SplitMediaLabs\XSplit\swscale-2.dll
MOD - [2012/04/30 18:55:45 | 000,151,040 | ---- | M] () -- C:\Program Files (x86)\SplitMediaLabs\XSplit\avutil-51.dll
MOD - [2011/03/17 00:11:16 | 004,297,568 | ---- | M] () -- C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
MOD - [2010/10/20 15:45:26 | 008,801,120 | ---- | M] () -- C:\Program Files (x86)\Microsoft Office\Office14\1033\GrooveIntlResource.dll
MOD - [2010/08/27 10:34:36 | 001,711,616 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libvorbis_plugin.dll
MOD - [2010/08/27 10:34:36 | 001,141,248 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libxml_plugin.dll
MOD - [2010/08/27 10:34:36 | 000,078,848 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libzip_plugin.dll
MOD - [2010/08/27 10:34:36 | 000,046,592 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libwaveout_plugin.dll
MOD - [2010/08/27 10:34:36 | 000,040,448 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libyuy2_i420_plugin.dll
MOD - [2010/08/27 10:34:36 | 000,038,912 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libvout_wrapper_plugin.dll
MOD - [2010/08/27 10:34:36 | 000,036,864 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libyuy2_i422_plugin.dll
MOD - [2010/08/27 10:34:36 | 000,031,232 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libyuvp_plugin.dll
MOD - [2010/08/27 10:34:36 | 000,031,232 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libugly_resampler_plugin.dll
MOD - [2010/08/27 10:34:34 | 001,199,104 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libtaglib_plugin.dll
MOD - [2010/08/27 10:34:34 | 000,367,616 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libtheora_plugin.dll
MOD - [2010/08/27 10:34:34 | 000,243,200 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libswscale_plugin.dll
MOD - [2010/08/27 10:34:34 | 000,032,256 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libtrivial_channel_mixer_plugin.dll
MOD - [2010/08/27 10:34:32 | 011,043,840 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libqt4_plugin.dll
MOD - [2010/08/27 10:34:32 | 002,153,984 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libskins2_plugin.dll
MOD - [2010/08/27 10:34:32 | 000,768,512 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libschroedinger_plugin.dll
MOD - [2010/08/27 10:34:32 | 000,130,048 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libspeex_plugin.dll
MOD - [2010/08/27 10:34:32 | 000,036,864 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libscaletempo_plugin.dll
MOD - [2010/08/27 10:34:32 | 000,034,304 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libstream_filter_rar_plugin.dll
MOD - [2010/08/27 10:34:32 | 000,033,792 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libsimple_channel_mixer_plugin.dll
MOD - [2010/08/27 10:34:32 | 000,031,744 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libscale_plugin.dll
MOD - [2010/08/27 10:34:32 | 000,031,232 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libstream_filter_record_plugin.dll
MOD - [2010/08/27 10:34:30 | 000,237,568 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libpng_plugin.dll
MOD - [2010/08/27 10:34:30 | 000,194,048 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libmp4_plugin.dll
MOD - [2010/08/27 10:34:30 | 000,128,000 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libmpgatofixed32_plugin.dll
MOD - [2010/08/27 10:34:30 | 000,108,032 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libplaylist_plugin.dll
MOD - [2010/08/27 10:34:30 | 000,038,912 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libmono_plugin.dll
MOD - [2010/08/27 10:34:30 | 000,037,888 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libmpeg_audio_plugin.dll
MOD - [2010/08/27 10:34:28 | 001,761,280 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\liblibass_plugin.dll
MOD - [2010/08/27 10:34:28 | 001,760,256 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libfreetype_plugin.dll
MOD - [2010/08/27 10:34:28 | 000,336,384 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\liblua_plugin.dll
MOD - [2010/08/27 10:34:28 | 000,265,216 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libflac_plugin.dll
MOD - [2010/08/27 10:34:28 | 000,258,048 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libfluidsynth_plugin.dll
MOD - [2010/08/27 10:34:28 | 000,135,680 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libi420_rgb_sse2_plugin.dll
MOD - [2010/08/27 10:34:28 | 000,073,728 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libi420_rgb_mmx_plugin.dll
MOD - [2010/08/27 10:34:28 | 000,052,224 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libi420_rgb_plugin.dll
MOD - [2010/08/27 10:34:28 | 000,048,640 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libi420_yuy2_sse2_plugin.dll
MOD - [2010/08/27 10:34:28 | 000,046,592 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libhotkeys_plugin.dll
MOD - [2010/08/27 10:34:28 | 000,046,080 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libi422_yuy2_sse2_plugin.dll
MOD - [2010/08/27 10:34:28 | 000,039,936 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libi420_yuy2_mmx_plugin.dll
MOD - [2010/08/27 10:34:28 | 000,039,424 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libfilesystem_plugin.dll
MOD - [2010/08/27 10:34:28 | 000,038,400 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libi420_yuy2_plugin.dll
MOD - [2010/08/27 10:34:28 | 000,037,888 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libi422_yuy2_mmx_plugin.dll
MOD - [2010/08/27 10:34:28 | 000,036,352 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libi422_yuy2_plugin.dll
MOD - [2010/08/27 10:34:28 | 000,035,840 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\liblpcm_plugin.dll
MOD - [2010/08/27 10:34:28 | 000,033,792 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libmemcpymmxext_plugin.dll
MOD - [2010/08/27 10:34:28 | 000,033,792 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libglobalhotkeys_plugin.dll
MOD - [2010/08/27 10:34:28 | 000,032,768 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libi422_i420_plugin.dll
MOD - [2010/08/27 10:34:28 | 000,032,768 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libgrey_yuv_plugin.dll
MOD - [2010/08/27 10:34:28 | 000,031,744 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libfloat32_mixer_plugin.dll
MOD - [2010/08/27 10:34:26 | 000,309,760 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libfaad_plugin.dll
MOD - [2010/08/27 10:34:26 | 000,037,376 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libfake_plugin.dll
MOD - [2010/08/27 10:34:24 | 000,231,424 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libdvdnav_plugin.dll
MOD - [2010/08/27 10:34:24 | 000,210,944 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libdshow_plugin.dll
MOD - [2010/08/27 10:34:24 | 000,178,176 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libdtstofloat32_plugin.dll
MOD - [2010/08/27 10:34:24 | 000,067,072 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libdirectx_plugin.dll
MOD - [2010/08/27 10:34:24 | 000,061,440 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libdirect3d_plugin.dll
MOD - [2010/08/27 10:34:24 | 000,057,344 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libblend_plugin.dll
MOD - [2010/08/27 10:34:24 | 000,047,104 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libbandlimited_resampler_plugin.dll
MOD - [2010/08/27 10:34:24 | 000,039,424 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libdts_plugin.dll
MOD - [2010/08/27 10:34:24 | 000,034,304 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libcdg_plugin.dll
MOD - [2010/08/27 10:34:24 | 000,032,768 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libconverter_fixed_plugin.dll
MOD - [2010/08/27 10:34:24 | 000,032,256 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libdtstospdif_plugin.dll
MOD - [2010/08/27 10:34:24 | 000,032,256 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libdolby_surround_decoder_plugin.dll
MOD - [2010/08/27 10:34:24 | 000,031,232 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libdrawable_plugin.dll
MOD - [2010/08/27 10:34:22 | 007,124,992 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libavcodec_plugin.dll
MOD - [2010/08/27 10:34:22 | 002,263,552 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\libvlccore.dll
MOD - [2010/08/27 10:34:22 | 000,107,008 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\vlc.exe
MOD - [2010/08/27 10:34:22 | 000,101,376 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\libvlc.dll
MOD - [2010/08/27 10:34:22 | 000,090,112 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libaccess_bd_plugin.dll
MOD - [2010/08/27 10:34:22 | 000,065,536 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\liba52tofloat32_plugin.dll
MOD - [2010/08/27 10:34:22 | 000,047,104 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libaout_directx_plugin.dll
MOD - [2010/08/27 10:34:22 | 000,045,568 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libaraw_plugin.dll
MOD - [2010/08/27 10:34:22 | 000,041,472 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libaudio_format_plugin.dll
MOD - [2010/08/27 10:34:22 | 000,036,352 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\liba52_plugin.dll
MOD - [2010/08/27 10:34:22 | 000,033,280 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\libaes3_plugin.dll
MOD - [2010/08/27 10:34:22 | 000,030,720 | ---- | M] () -- C:\Program Files (x86)\VideoLAN\VLC\plugins\liba52tospdif_plugin.dll
MOD - [2010/05/07 18:37:40 | 000,126,808 | ---- | M] () -- C:\Program Files (x86)\Logitech\LWS\Webcam Software\ImageFormats\QJpeg4.dll
MOD - [2010/05/07 18:37:40 | 000,027,480 | ---- | M] () -- C:\Program Files (x86)\Logitech\LWS\Webcam Software\ImageFormats\QGif4.dll
MOD - [2010/05/07 18:36:54 | 000,340,824 | ---- | M] () -- C:\Program Files (x86)\Logitech\LWS\Webcam Software\QTXml4.dll
MOD - [2010/05/07 18:35:56 | 007,954,776 | ---- | M] () -- C:\Program Files (x86)\Logitech\LWS\Webcam Software\QTGui4.dll
MOD - [2010/05/07 18:35:44 | 002,143,576 | ---- | M] () -- C:\Program Files (x86)\Logitech\LWS\Webcam Software\QTCore4.dll
========== Services (SafeList) ========== SRV:
64bit: - [2013/10/18 12:35:51 | 015,122,208 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe -- (NvStreamSvc)
SRV:
64bit: - [2013/08/12 14:11:04 | 000,366,600 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Program Files\Microsoft Security Client\NisSrv.exe -- (NisSrv)
SRV:
64bit: - [2013/08/12 14:11:04 | 000,023,808 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)
SRV:
64bit: - [2013/05/27 16:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:
64bit: - [2012/04/10 21:17:16 | 000,097,552 | ---- | M] (SANDBOXIE L.T.D) [Auto | Running] -- C:\Program Files\Sandboxie\SbieSvc.exe -- (SbieSvc)
SRV:
64bit: - [2009/07/14 12:39:47 | 000,081,920 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\SysNative\tlntsvr.exe -- (TlntSvr)
SRV - [2013/11/01 15:27:41 | 000,076,888 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\PnkBstrA.exe -- (PnkBstrA)
SRV - [2013/10/31 06:25:56 | 000,566,696 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2013/10/23 03:02:32 | 000,414,496 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service)
SRV - [2013/10/18 12:34:28 | 001,914,656 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe -- (nvUpdatusService)
SRV - [2013/10/09 08:36:53 | 000,257,416 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2013/09/14 23:23:55 | 000,049,152 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\BattlEye\BEService.exe -- (BEService)
SRV - [2013/08/16 18:37:02 | 000,757,144 | ---- | M] (Tunngle.net GmbH) [On_Demand | Stopped] -- C:\Program Files (x86)\Tunngle\TnglCtrl.exe -- (TunngleService)
SRV - [2013/07/02 10:14:56 | 004,569,856 | ---- | M] () [Auto | Running] -- c:\program files (x86)\common files\akamai/netsession_win_8fa3539.dll -- (Akamai)
SRV - [2013/06/13 20:17:51 | 004,150,112 | ---- | M] (TeamViewer GmbH) [Auto | Running] -- C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe -- (TeamViewer8)
SRV - [2013/05/10 18:57:22 | 000,065,640 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2013/05/09 03:15:37 | 002,297,856 | ---- | M] (SmoothPing) [Auto | Running] -- C:\Program Files (x86)\Smoothping Elite\SmoothPingProxy.exe -- (SmoothPingProxy)
SRV - [2013/02/07 13:10:08 | 000,161,384 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2011/04/01 16:11:52 | 000,428,640 | ---- | M] (Logitech Inc.) [Auto | Running] -- C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe -- (UMVPFSrv)
SRV - [2011/01/13 04:15:37 | 004,266,480 | ---- | M] (INCA Internet Co., Ltd.) [On_Demand | Stopped] -- C:\Windows\SysWOW64\GameMon.des -- (npggsvc)
SRV - [2010/11/20 23:19:20 | 000,397,824 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\inetsrv\iisw3adm.dll -- (WAS)
SRV - [2010/11/20 23:19:20 | 000,397,824 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\inetsrv\iisw3adm.dll -- (W3SVC)
SRV - [2010/11/20 23:18:03 | 000,061,440 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\inetsrv\apphostsvc.dll -- (AppHostSvc)
SRV - [2010/08/26 18:48:00 | 000,285,152 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\NETGEAR\WNA3100\WifiSvc.exe -- (WSWNA3100)
SRV - [2010/03/18 14:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009/06/11 08:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2008/11/10 07:48:14 | 000,602,392 | ---- | M] (Yahoo! Inc.) [Auto | Running] -- C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe -- (YahooAUService)
========== Driver Services (SafeList) ========== DRV:
64bit: - [2013/11/08 10:41:38 | 000,174,968 | ---- | M] (Tonec Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\idmwfp.sys -- (IDMWFP)
DRV:
64bit: - [2013/09/28 10:01:44 | 000,039,200 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvvad64v.sys -- (nvvad_WaveExtensible)
DRV:
64bit: - [2013/08/13 10:10:26 | 000,042,184 | ---- | M] (Anchorfree Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\taphss6.sys -- (taphss6)
DRV:
64bit: - [2013/06/18 22:50:08 | 000,139,616 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\NisDrvWFP.sys -- (NisDrv)
DRV:
64bit: - [2013/06/16 23:38:15 | 000,196,384 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvhda64v.sys -- (NVHDA)
DRV:
64bit: - [2012/10/15 14:31:32 | 000,052,200 | ---- | M] (Saitek) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SaiBus.sys -- (SaiNtBus)
DRV:
64bit: - [2012/10/15 14:31:32 | 000,024,680 | ---- | M] (Saitek) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SaiMini.sys -- (SaiMini)
DRV:
64bit: - [2012/09/20 14:45:36 | 000,047,168 | ---- | M] (Saitek) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SaiU0CCF.sys -- (SaiU0CCF)
DRV:
64bit: - [2012/09/20 14:45:34 | 000,180,544 | ---- | M] (Saitek) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SaiK0ccf.sys -- (SaiK0ccf)
DRV:
64bit: - [2012/08/24 01:10:20 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:
64bit: - [2012/08/24 01:07:35 | 000,057,856 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:
64bit: - [2012/04/10 21:17:14 | 000,164,528 | ---- | M] (SANDBOXIE L.T.D) [Kernel | On_Demand | Running] -- C:\Program Files\Sandboxie\SbieDrv.sys -- (SbieDrv)
DRV:
64bit: - [2012/03/01 17:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:
64bit: - [2012/02/15 12:01:50 | 000,052,736 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:
64bit: - [2011/12/03 13:24:08 | 000,077,352 | ---- | M] (Eugene V. Muzychenko) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vrtaucbl.sys -- (EuMusDesignVirtualAudioCableWdm)
DRV:
64bit: - [2011/07/01 10:46:40 | 000,031,232 | ---- | M] (The OpenVPN Project) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tap0901.sys -- (tap0901)
DRV:
64bit: - [2011/06/10 07:34:52 | 000,539,240 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:
64bit: - [2011/04/01 16:07:54 | 004,184,672 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\LVUVC64.sys -- (LVUVC64)
DRV:
64bit: - [2011/04/01 16:06:22 | 000,341,856 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lvrs64.sys -- (LVRS64)
DRV:
64bit: - [2011/03/11 17:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:
64bit: - [2011/03/11 17:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:
64bit: - [2010/11/21 00:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:
64bit: - [2010/09/17 16:49:45 | 000,834,544 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\sptd.sys -- (sptd)
DRV:
64bit: - [2010/07/01 16:21:50 | 000,038,992 | ---- | M] (Screaming Bee LLC) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ScreamingBAudio64.sys -- (ScreamBAudioSvc)
DRV:
64bit: - [2010/05/07 18:43:30 | 000,030,304 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\LVPr2M64.sys -- (LVPr2Mon)
DRV:
64bit: - [2010/05/07 18:43:30 | 000,030,304 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\LVPr2M64.sys -- (LVPr2M64)
DRV:
64bit: - [2009/11/23 17:38:00 | 000,016,008 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LGVirHid.sys -- (LGVirHid)
DRV:
64bit: - [2009/11/23 17:37:50 | 000,022,408 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LGBusEnum.sys -- (LGBusEnum)
DRV:
64bit: - [2009/09/16 08:02:42 | 000,031,232 | ---- | M] (Tunngle.net) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tap0901t.sys -- (tap0901t)
DRV:
64bit: - [2009/08/13 23:10:18 | 000,073,984 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\xusb21.sys -- (xusb21)
DRV:
64bit: - [2009/07/14 12:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:
64bit: - [2009/07/14 12:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:
64bit: - [2009/07/14 12:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:
64bit: - [2009/06/29 18:00:50 | 000,132,608 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ewusbnet.sys -- (ewusbnet)
DRV:
64bit: - [2009/06/11 07:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:
64bit: - [2009/06/11 07:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:
64bit: - [2009/06/11 07:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:
64bit: - [2009/06/11 07:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:
64bit: - [2009/05/18 13:17:08 | 000,034,152 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:
64bit: - [2009/04/09 13:38:24 | 000,116,864 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ewusbmdm.sys -- (hwdatacard)
DRV:
64bit: - [2009/03/18 19:35:42 | 000,033,856 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hamachi.sys -- (hamachi)
DRV:
64bit: - [2008/12/26 13:56:04 | 000,021,504 | ---- | M] (Avnex) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vcsvad.sys -- (VCSVADHWSer)
DRV:
64bit: - [2007/01/19 19:24:24 | 000,025,312 | ---- | M] (Windows ® Codename Longhorn DDK provider) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\SCMNdisP.sys -- (SCMNdisP)
DRV - [2013/08/16 14:51:52 | 000,013,368 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Program Files (x86)\MSI Afterburner\RTCore64.sys -- (RTCore64)
DRV - [2009/07/14 12:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
DRV - [2005/01/04 11:43:08 | 000,004,682 | ---- | M] (INCA Internet Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysWOW64\npptNT2.sys -- (NPPTNT2)
========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE:
64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:
64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" =
http://www.bing.com/...ms}&FORM=IE8SRCIE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" =
http://www.bing.com/...ms}&FORM=IE8SRC IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar =
http://www.google.comIE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page =
http://www.google.comIE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.com/IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache =
http://ninemsn.com.au/?ocid=iehpIE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-AU
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = E4 13 38 5B 6E AF CE 01 [binary data]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL =
http://www.google.comIE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant =
http://www.google.comIE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local;127.0.0.1:9421;<local>
========== FireFox ========== FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "
https://www.google.com.au/"FF - prefs.js..extensions.enabledAddons: mozilla_cc%40internetdownloadmanager.com:7.3.64
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:25.0
FF - user.js - File not found
FF:
64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll File not found
FF:
64bit: - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF:
64bit: - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.4.0: C:\Windows\system32\npDeployJava1.dll (Sun Microsystems, Inc.)
FF:
64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:
64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF:
64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\Microsoft Office\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF - HKLM\Software\MozillaPlugins\@esn.me/esnsonar,version=0.70.0: C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.0\npesnsonar.dll File not found
FF - HKLM\Software\MozillaPlugins\@esn.me/esnsonar,version=0.70.4: C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB)
FF - HKLM\Software\MozillaPlugins\@esn/esnlaunch,version=1.104.0: C:\Program Files (x86)\Battlelog Web Plugins\1.104.0\npesnlaunch.dll File not found
FF - HKLM\Software\MozillaPlugins\@esn/esnlaunch,version=1.96.0: C:\Program Files (x86)\Battlelog Web Plugins\1.96.0\npesnlaunch.dll File not found
FF - HKLM\Software\MozillaPlugins\@esn/esnlaunch,version=2.3.0: C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll (ESN Social Software AB)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=1.6.0_35: C:\Windows\SysWOW64\npdeployJava1.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6: C:\Program Files (x86)\Yahoo!\Shared\npYState.dll (Yahoo! Inc.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~2\Microsoft Office\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\Microsoft Office\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nexon.net/NxGame: C:\ProgramData\NexonUS\NGM\npNxGameUS.dll (Nexon)
FF - HKLM\Software\MozillaPlugins\@ngm.nexoneu.com/NxGame: C:\ProgramData\NexonEU\NGM\npNxGameeu.dll (Nexon)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll File not found
FF - HKLM\Software\MozillaPlugins\@raidcall.en/RCplugin: C:\Users\Zer0\AppData\Roaming\raidcall\plugins\nprcplugin.dll (Raidcall)
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.12.450: C:\Program Files (x86)\Real Alternative\browser\plugins\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.448: C:\Program Files (x86)\Real Alternative\browser\plugins\nprpjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@Skype Limited.com/Facebook Video Calling Plugin: C:\Users\Zer0\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
FF - HKCU\Software\MozillaPlugins\ubisoft.com/uplaypc: C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll (Ubisoft)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b}: C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5 [2011/10/17 01:39:54 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 25.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013/10/01 08:38:04 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 25.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2013/10/01 08:38:05 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\
[email protected]: C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\
[email protected]: C:\Users\Zer0\AppData\Roaming\IDM\idmmzcc5 [2013/11/11 02:37:05 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\SeaMonkey\Extensions\\
[email protected]: C:\Users\Zer0\AppData\Roaming\IDM\idmmzcc5 [2013/11/11 02:37:05 | 000,000,000 | ---D | M]
[2010/09/11 13:36:29 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Zer0\AppData\Roaming\Mozilla\Extensions
[2010/09/11 13:36:29 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Zer0\AppData\Roaming\Mozilla\Extensions\
[email protected][2013/10/26 18:41:57 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Zer0\AppData\Roaming\Mozilla\Firefox\Profiles\yuohtlfh.default-1379735746604\extensions
[2013/11/02 20:44:31 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2013/10/01 08:38:04 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
[2013/11/02 20:47:44 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
[2013/11/02 20:47:44 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2013/11/11 02:37:05 | 000,000,000 | ---D | M] (IDM CC) -- C:\USERS\ZER0\APPDATA\ROAMING\IDM\IDMMZCC5
========== Chrome ========== CHR - default_search_provider: ()
CHR - default_search_provider: search_url =
CHR - default_search_provider: suggest_url =
CHR - homepage:
http://www.google.com O1 HOSTS File: ([2012/10/20 23:26:19 | 000,000,325 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 novirusthanks.org
O1 - Hosts: 127.0.0.1 94.23.68.174
O1 - Hosts: 127.0.0.1 vscan.novirusthanks.org
O1 - Hosts: 127.0.0.1 www.vscan.novirusthanks.org
O1 - Hosts: 127.0.0.1 188.165.234.50
O1 - Hosts: 127.0.0.1 38.101.213.249
O1 - Hosts: 119.42.146.34 www.warez-bb.org
O1 - Hosts: 119.42.146.34 warez-bb.org
O1 - Hosts: 119.42.146.36 www.warez-bb.org
O1 - Hosts: 119.42.146.36 warez-bb.org
O2:
64bit: - BHO: (IDM integration (IDMIEHlprObj Class)) - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll (Internet Download Manager, Tonec Inc.)
O2 - BHO: (IDM integration (IDMIEHlprObj Class)) - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll (Internet Download Manager, Tonec Inc.)
O2 - BHO: (DivX Plus Web Player HTML5 <video>) - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
O2 - BHO: (no name) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - No CLSID value found.
O2 - BHO: (no name) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O4:
64bit: - HKLM..\Run: [Launch LCDMon] C:\Program Files\Logitech\GamePanel Software\LCD Manager\LCDMon.exe (Logitech Inc.)
O4:
64bit: - HKLM..\Run: [Launch LGDCore] C:\Program Files\Logitech\GamePanel Software\G-series Software\LGDCore.exe (Logitech Inc.)
O4:
64bit: - HKLM..\Run: [Launch LgDeviceAgent] C:\Program Files\Logitech\GamePanel Software\LgDevAgt.exe (Logitech Inc.)
O4:
64bit: - HKLM..\Run: [MSC] C:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
O4:
64bit: - HKLM..\Run: [Nvtmru] C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe (NVIDIA Corporation)
O4:
64bit: - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4:
64bit: - HKLM..\Run: [SaiMfd] C:\Program Files\SmartTechnology\Software\SaiMfd.exe (Saitek)
O4:
64bit: - HKLM..\Run: [ShadowPlay] C:\Windows\SysNative\nvspcap64.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [LWS] C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe (Logitech Inc.)
O4 - HKCU..\Run: [Akamai NetSession Interface] C:\Users\Zer0\AppData\Local\Akamai\netsession_win.exe (Akamai Technologies, Inc.)
O4 - HKCU..\Run: [IDMan] C:\Program Files (x86)\Internet Download Manager\IDMan.exe (Tonec Inc.)
O4 - HKCU..\Run: [SandboxieControl] C:\Program Files\Sandboxie\SbieCtrl.exe (SANDBOXIE L.T.D)
O4 - HKCU..\Run: [Steam] C:\Program Files (x86)\Steam\steam.exe (Valve Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HideSCAHealth = 1
O8:
64bit: - Extra context menu item: Download all links with IDM - C:\Program Files (x86)\Internet Download Manager\IEGetAll.htm ()
O8:
64bit: - Extra context menu item: Download with IDM - C:\Program Files (x86)\Internet Download Manager\IEExt.htm ()
O8 - Extra context menu item: Download all links with IDM - C:\Program Files (x86)\Internet Download Manager\IEGetAll.htm ()
O8 - Extra context menu item: Download with IDM - C:\Program Files (x86)\Internet Download Manager\IEExt.htm ()
O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - Reg Error: Key error. File not found
O9 - Extra Button: Run IMVU - {d9288080-1baa-4bc4-9cf8-a92d743db949} - C:\Users\Zer0\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IMVU\Run IMVU.lnk ()
O10:
64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000009 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10:
64bit: - Protocol_Catalog9\Catalog_Entries64\000000000001 - C:\Windows\SysNative\SmoothPingProxy64.dll (SmoothPing)
O10:
64bit: - Protocol_Catalog9\Catalog_Entries64\000000000002 - C:\Windows\SysNative\SmoothPingProxy64.dll (SmoothPing)
O10:
64bit: - Protocol_Catalog9\Catalog_Entries64\000000000003 - C:\Windows\SysNative\SmoothPingProxy64.dll (SmoothPing)
O10:
64bit: - Protocol_Catalog9\Catalog_Entries64\000000000004 - C:\Windows\SysNative\SmoothPingProxy64.dll (SmoothPing)
O10:
64bit: - Protocol_Catalog9\Catalog_Entries64\000000000015 - C:\Windows\SysNative\SmoothPingProxy64.dll (SmoothPing)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000009 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Windows\SysWow64\SmoothPingProxy.dll (SmoothPing)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Windows\SysWow64\SmoothPingProxy.dll (SmoothPing)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Windows\SysWow64\SmoothPingProxy.dll (SmoothPing)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Windows\SysWow64\SmoothPingProxy.dll (SmoothPing)
O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - C:\Windows\SysWow64\SmoothPingProxy.dll (SmoothPing)
O13
64bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O15 - HKCU\..Trusted Domains: battlefield.com ([battlelog] https in Trusted sites)
O15 - HKCU\..Trusted Domains: clonewarsadventures.com ([]* in Trusted sites)
O15 - HKCU\..Trusted Domains: cumshotsurprise.com ([www] https in Trusted sites)
O15 - HKCU\..Trusted Domains: freerealms.com ([]* in Trusted sites)
O15 - HKCU\..Trusted Domains: safelinking.net ([]https in Trusted sites)
O15 - HKCU\..Trusted Domains: soe.com ([]* in Trusted sites)
O15 - HKCU\..Trusted Domains: sony.com ([]* in Trusted sites)
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000}
http://download.macr...director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F}
http://www.nvidia.co...sreqlab_nvd.cab (System Requirements Lab Class)
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616}
http://download.divx...owserPlugin.cab (DivXBrowserPlugin Object)
O16 - DPF: {6A060448-60F9-11D5-A6CD-0002B31F7455} (ExentInf Class)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7}
http://platformdl.ad...Plus/1.6/gp.cab (Reg Error: Key error.)
O16 - DPF: {E6F480FC-BD44-4CBA-B74A-89AF7842937D}
http://content.syste...ri_4.4.21.0.cab (SysInfo Class)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.0.0.138
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{09422DDC-6800-45E3-9216-B5095F00AEB7}: DhcpNameServer = 10.0.0.138
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{09422DDC-6800-45E3-9216-B5095F00AEB7}: NameServer = 8.8.8.8,8.8.8.4
O18:
64bit: - Protocol\Handler\livecall - No CLSID value found
O18:
64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:
64bit: - Protocol\Handler\msnim - No CLSID value found
O18:
64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:
64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18 - Protocol\Handler\livecall - No CLSID value found
O18 - Protocol\Handler\msnim - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20:
64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:
64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O21:
64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010/03/15 20:48:58 | 000,000,000 | RH-D | M] - F:\autorun -- [ NTFS ]
O33 - MountPoints2\{fe28be3b-318c-11e0-8da5-001fbc028851}\Shell - "" = AutoRun
O33 - MountPoints2\{fe28be3b-318c-11e0-8da5-001fbc028851}\Shell\AutoRun\command - "" = G:\setup_vmc_lite.exe /checkApplicationPresence
O34 - HKLM BootExecute: (autocheck autochk *)
O35:
64bit: - HKLM\..comfile [open] -- "%1" %*
O35:
64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:
64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:
64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
MsConfig:64bit - StartUpFolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^GamersFirst LIVE!.lnk - - File not found
MsConfig:64bit - StartUpFolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^LOLRecorder.lnk - C:\Program Files (x86)\LOLReplay\LOLRecorder.exe - (LOL Replay)
MsConfig:64bit - StartUpReg:
Adobe CSS5.1 Manager - hkey= - key= - File not found
MsConfig:64bit - StartUpReg:
APSDaemon - hkey= - key= - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
MsConfig:64bit - StartUpReg:
BCSSync - hkey= - key= - C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe (Microsoft Corporation)
MsConfig:64bit - StartUpReg:
DivXUpdate - hkey= - key= - C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe ()
MsConfig:64bit - StartUpReg:
Facebook Update - hkey= - key= - C:\Users\Zer0\AppData\Local\Facebook\Update\FacebookUpdate.exe (Facebook Inc.)
MsConfig:64bit - StartUpReg:
FileServe Manager Task - hkey= - key= - File not found
MsConfig:64bit - StartUpReg:
HTV Agent - hkey= - key= - File not found
MsConfig:64bit - StartUpReg:
ISUSScheduler - hkey= - key= - C:\Program Files (x86)\Common Files\InstallShield\UpdateService\issch.exe (Macrovision Corporation)
MsConfig:64bit - StartUpReg:
iTunesHelper - hkey= - key= - C:\Program Files (x86)\iTunes\iTunesHelper.exe (Apple Inc.)
MsConfig:64bit - StartUpReg:
librtexec - hkey= - key= - File not found
MsConfig:64bit - StartUpReg:
LogMeIn Hamachi Ui - hkey= - key= - File not found
MsConfig:64bit - StartUpReg:
Messenger (Yahoo!) - hkey= - key= - C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe (Yahoo! Inc.)
MsConfig:64bit - StartUpReg:
msnmsgr - hkey= - key= - File not found
MsConfig:64bit - StartUpReg:
OfficeSyncProcess - hkey= - key= - C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE (Microsoft Corporation)
MsConfig:64bit - StartUpReg:
ooVoo.exe - hkey= - key= - File not found
MsConfig:64bit - StartUpReg:
ProfilerU - hkey= - key= - C:\Program Files\SmartTechnology\Software\ProfilerU.exe (Saitek)
MsConfig:64bit - StartUpReg:
QuickTime Task - hkey= - key= - C:\Program Files (x86)\QuickTime\QTTask.exe (Apple Inc.)
MsConfig:64bit - StartUpReg:
SpeedTouch USB Diagnostics - hkey= - key= - C:\Program Files (x86)\Alcatel\SpeedTouch USB\Dragdiag.exe (THOMSON multimedia)
MsConfig:64bit - StartUpReg:
Spotify Web Helper - hkey= - key= - C:\Users\Zer0\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (Spotify Ltd)
MsConfig:64bit - StartUpReg:
SwitchBoard - hkey= - key= - File not found
MsConfig:64bit - State: "startup" - Reg Error: Key error.
MsConfig:64bit - State: "services" - Reg Error: Key error.
MsConfig:64bit - State: "bootini" - Reg Error: Key error.
SafeBootMin:
64bit: AppMgmt - Service
SafeBootMin:
64bit: Base - Driver Group
SafeBootMin:
64bit: Boot Bus Extender - Driver Group
SafeBootMin:
64bit: Boot file system - Driver Group
SafeBootMin:
64bit: File system - Driver Group
SafeBootMin:
64bit: Filter - Driver Group
SafeBootMin:
64bit: HelpSvc - Service
SafeBootMin:
64bit: MsMpSvc - C:\Program Files\Microsoft Security Client\MsMpEng.exe (Microsoft Corporation)
SafeBootMin:
64bit: PCI Configuration - Driver Group
SafeBootMin:
64bit: PNP Filter - Driver Group
SafeBootMin:
64bit: Primary disk - Driver Group
SafeBootMin:
64bit: sacsvr - Service
SafeBootMin:
64bit: SCSI Class - Driver Group
SafeBootMin:
64bit: System Bus Extender - Driver Group
SafeBootMin:
64bit: vmms - Service
SafeBootMin:
64bit: WinDefend - C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SafeBootMin:
64bit: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootMin:
64bit: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootMin:
64bit: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootMin:
64bit: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootMin:
64bit: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootMin:
64bit: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootMin:
64bit: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootMin:
64bit: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootMin:
64bit: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootMin:
64bit: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootMin:
64bit: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootMin:
64bit: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootMin:
64bit: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootMin:
64bit: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootMin:
64bit: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootMin:
64bit: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootMin:
64bit: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices
SafeBootMin: AppMgmt - Service
SafeBootMin: Base - Driver Group
SafeBootMin: Boot Bus Extender - Driver Group
SafeBootMin: Boot file system - Driver Group
SafeBootMin: File system - Driver Group
SafeBootMin: Filter - Driver Group
SafeBootMin: HelpSvc - Service
SafeBootMin: PCI Configuration - Driver Group
SafeBootMin: PNP Filter - Driver Group
SafeBootMin: Primary disk - Driver Group
SafeBootMin: sacsvr - Service
SafeBootMin: SCSI Class - Driver Group
SafeBootMin: System Bus Extender - Driver Group
SafeBootMin: vmms - Service
SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootMin: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootMin: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootMin: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices
SafeBootNet:
64bit: AppMgmt - Service
SafeBootNet:
64bit: Base - Driver Group
SafeBootNet:
64bit: Boot Bus Extender - Driver Group
SafeBootNet:
64bit: Boot file system - Driver Group
SafeBootNet:
64bit: File system - Driver Group
SafeBootNet:
64bit: Filter - Driver Group
SafeBootNet:
64bit: HelpSvc - Service
SafeBootNet:
64bit: Messenger - Service
SafeBootNet:
64bit: MsMpSvc - C:\Program Files\Microsoft Security Client\MsMpEng.exe (Microsoft Corporation)
SafeBootNet:
64bit: NDIS Wrapper - Driver Group
SafeBootNet:
64bit: NetBIOSGroup - Driver Group
SafeBootNet:
64bit: NetDDEGroup - Driver Group
SafeBootNet:
64bit: Network - Driver Group
SafeBootNet:
64bit: NetworkProvider - Driver Group
SafeBootNet:
64bit: PCI Configuration - Driver Group
SafeBootNet:
64bit: PNP Filter - Driver Group
SafeBootNet:
64bit: PNP_TDI - Driver Group
SafeBootNet:
64bit: Primary disk - Driver Group
SafeBootNet:
64bit: rdsessmgr - Service
SafeBootNet:
64bit: sacsvr - Service
SafeBootNet:
64bit: SCSI Class - Driver Group
SafeBootNet:
64bit: Streams Drivers - Driver Group
SafeBootNet:
64bit: System Bus Extender - Driver Group
SafeBootNet:
64bit: TDI - Driver Group
SafeBootNet:
64bit: vmms - Service
SafeBootNet:
64bit: WinDefend - C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SafeBootNet:
64bit: WudfUsbccidDriver - Driver
SafeBootNet:
64bit: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootNet:
64bit: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootNet:
64bit: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootNet:
64bit: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootNet:
64bit: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootNet:
64bit: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootNet:
64bit: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootNet:
64bit: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
SafeBootNet:
64bit: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
SafeBootNet:
64bit: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
SafeBootNet:
64bit: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
SafeBootNet:
64bit: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootNet:
64bit: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootNet:
64bit: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootNet:
64bit: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootNet:
64bit: {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers
SafeBootNet:
64bit: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootNet:
64bit: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootNet:
64bit: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootNet:
64bit: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootNet:
64bit: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootNet:
64bit: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices
SafeBootNet: AppMgmt - Service
SafeBootNet: Base - Driver Group
SafeBootNet: Boot Bus Extender - Driver Group
SafeBootNet: Boot file system - Driver Group
SafeBootNet: File system - Driver Group
SafeBootNet: Filter - Driver Group
SafeBootNet: HelpSvc - Service
SafeBootNet: Messenger - Service
SafeBootNet: NDIS Wrapper - Driver Group
SafeBootNet: NetBIOSGroup - Driver Group
SafeBootNet: NetDDEGroup - Driver Group
SafeBootNet: Network - Driver Group
SafeBootNet: NetworkProvider - Driver Group
SafeBootNet: PCI Configuration - Driver Group
SafeBootNet: PNP Filter - Driver Group
SafeBootNet: PNP_TDI - Driver Group
SafeBootNet: Primary disk - Driver Group
SafeBootNet: rdsessmgr - Service
SafeBootNet: sacsvr - Service
SafeBootNet: SCSI Class - Driver Group
SafeBootNet: SmoothPingProxy - C:\Program Files (x86)\Smoothping Elite\SmoothPingProxy.exe (SmoothPing)
SafeBootNet: Streams Drivers - Driver Group
SafeBootNet: System Bus Extender - Driver Group
SafeBootNet: TDI - Driver Group
SafeBootNet: vmms - Service
SafeBootNet: WudfUsbccidDriver - Driver
SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootNet: {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers
SafeBootNet: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootNet: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers
SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices
SafeBootNet: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices
SafeBootNet: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices
ActiveX:
64bit: {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 12.0
ActiveX:
64bit: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll
ActiveX:
64bit: {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack
ActiveX:
64bit: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles%\Windows Mail\WinMail.exe" OCInstallUserConfigOE
ActiveX:
64bit: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx
ActiveX:
64bit: {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help
ActiveX:
64bit: {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.6
ActiveX:
64bit: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools
ActiveX:
64bit: {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements
ActiveX:
64bit: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player
ActiveX:
64bit: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access
ActiveX:
64bit: {7790769C-0471-11d2-AF11-00C04FA35D02} - Address Book 7
ActiveX:
64bit: {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll
ActiveX:
64bit: {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\Windows\System32\ie4uinit.exe -BaseSettings
ActiveX:
64bit: {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding
ActiveX:
64bit: {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts
ActiveX:
64bit: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help
ActiveX:
64bit: {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface
ActiveX:
64bit: {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4} - .NET Framework
ActiveX:
64bit: {FEBEF00C-046D-438D-8A88-BF94A6C9E703} - .NET Framework
ActiveX:
64bit: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - %SystemRoot%\system32\unregmp2.exe /ShowWMP
ActiveX:
64bit: >{26923b43-4d38-484f-9b9e-de460746276c} - C:\Windows\System32\ie4uinit.exe -UserIconConfig
ActiveX:
64bit: >{60B49E34-C7CC-11D0-8953-00A0C90347FF} - "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\iedkcs32.dll",BrandIEActiveSetup SIGNUP
ActiveX: {08B0E5C0-4FCB-11CF-AAA5-00401C608500} - Microsoft VM
ActiveX: {22d6f312-b0f6-11d0-94ab-0080c74c7e95} - Microsoft Windows Media Player 12.0
ActiveX: {2C7339CF-2B09-4501-B3F3-F3508C9228ED} - %SystemRoot%\system32\regsvr32.exe /s /n /i:/UserInstall %SystemRoot%\system32\themeui.dll
ActiveX: {3af36230-a269-11d1-b5bf-0000f8051515} - Offline Browsing Pack
ActiveX: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "%ProgramFiles(x86)%\Windows Mail\WinMail.exe" OCInstallUserConfigOE
ActiveX: {44BBA855-CC51-11CF-AAFA-00AA00B6015F} - DirectDrawEx
ActiveX: {45ea75a0-a269-11d1-b5bf-0000f8051515} - Internet Explorer Help
ActiveX: {4f645220-306d-11d2-995d-00c04f98bbc9} - Microsoft Windows Script 5.6
ActiveX: {5fd399c0-a70a-11d1-9948-00c04f98bbc9} - Internet Explorer Setup Tools
ActiveX: {630b1da0-b465-11d1-9948-00c04f98bbc9} - Browsing Enhancements
ActiveX: {6BF52A52-394A-11d3-B153-00C04F79FAA6} - Microsoft Windows Media Player
ActiveX: {6fab99d0-bab8-11d1-994a-00c04f98bbc9} - MSN Site Access
ActiveX: {7790769C-0471-11d2-AF11-00C04FA35D02} - Address Book 7
ActiveX: {7C028AF8-F614-47B3-82DA-BA94E41B1089} - .NET Framework
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4340} - regsvr32.exe /s /n /i:U shell32.dll
ActiveX: {89820200-ECBD-11cf-8B85-00AA005B4383} - C:\Windows\SysWOW64\ie4uinit.exe -BaseSettings
ActiveX: {89B4C1CD-B018-4511-B0A1-5476DBF70820} - C:\Windows\SysWOW64\Rundll32.exe C:\Windows\SysWOW64\mscories.dll,Install
ActiveX: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\30.0.1599.101\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
ActiveX: {9381D8F2-0288-11D0-9501-00AA00B911A5} - Dynamic HTML Data Binding
ActiveX: {C9E9A340-D1F1-11D0-821E-444553540600} - Internet Explorer Core Fonts
ActiveX: {de5aed00-a4bf-11d1-9948-00c04f98bbc9} - HTML Help
ActiveX: {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - Reg Error: Value error.
ActiveX: {E92B03AB-B707-11d2-9CBD-0000F87A369E} - Active Directory Service Interface
ActiveX: {F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4} - .NET Framework
ActiveX: >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} - %SystemRoot%\system32\unregmp2.exe /ShowWMP
ActiveX: >{26923b43-4d38-484f-9b9e-de460746276c} - C:\Windows\SysWOW64\ie4uinit.exe -UserIconConfig
ActiveX: >{60B49E34-C7CC-11D0-8953-00A0C90347FF} - "C:\Windows\SysWOW64\rundll32.exe" "C:\Windows\SysWOW64\iedkcs32.dll",BrandIEActiveSetup SIGNUP
Drivers32:
64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32:
64bit: VIDC.FPS1 - frapsv64.dll (Beepa P/L)
Drivers32:
64bit: vidc.i420 - lvcod64.dll (Logitech Inc.)
Drivers32:
64bit: VIDC.RTV1 - rtvcvfw64.dll ()
Drivers32: msacm.ac3filter - ac3filter.acm File not found
Drivers32: msacm.l3acm - C:\Windows\SysWOW64\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: vidc.cvid - C:\Windows\SysWow64\iccvid.dll (Radius Inc.)
Drivers32: vidc.DIVX - C:\Windows\SysWow64\DivX.dll (DivX, Inc.)
Drivers32: VIDC.FPS1 - C:\Windows\SysWow64\frapsvid.dll (Beepa P/L)
Drivers32: vidc.i420 - C:\Windows\SysWow64\LVCodec2.dll (Logitech Inc.)
Drivers32: VIDC.RTV1 - C:\Windows\SysWow64\rtvcvfw32.dll ()
Drivers32: vidc.yv12 - C:\Windows\SysWow64\DivX.dll (DivX, Inc.)