Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Virus Infection - computer won't download anything


  • Please log in to reply

#1
sonnym

sonnym

    New Member

  • Member
  • Pip
  • 1 posts
I had a major virus infection a week ago on both my desktop and laptop computers. I was unable to clear it out so I had to go to my computer guy and get my desktop reformatted and I was able to reformat my laptop. I opened a noepad file that was attached to an email that I shouldn't have opened and it took over my computer.
When I got the computer back, it was working fine. I had copied all my files to a portable hardrive and I scan that drive with malwarebytes, superantisyware and avira until there were no more detections.
I need some information from the portable hardrive so I opened it to look at a notepad file. I copied the info and pasted it into a notepad file on my desktop. I have not transferred any files. It must be infected as well.
Now, I am unable to download anything from the internet. I am unable to watch videos as the shockwave plugin crashes and freezes my browzer (firefox). I thought it was firefox so I deleted it and I couldn't download it again. I had get a friend to send me the .exe file so I could load firefox that way.
I have used superantispyware, combofix, c cleaner, norton, and bitdefender. I could not update superantispyware or malwarebytes

I also was not able to network my computers for the first time.

How do I clean up my desktop?

How do I clean out my portable hardrive. It has all my files from both computers?

Thank you.

Here is Malwarebytes results

Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org

Database version: v2014.01.15.07

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 10.0.9200.16750
Judy :: JUDY-PC [administrator]

1/23/2014 7:06:22 PM
mbam-log-2014-01-23 (19-06-22).txt

Scan type: Full scan (C:\|)
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 364541
Time elapsed: 34 minute(s), 3 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 1
HKLM\SOFTWARE\SWEETIM (PUP.Optional.SweetIM.A) -> Quarantined and deleted successfully.

Registry Values Detected: 1
HKLM\Software\SweetIM|simapp_id (PUP.Optional.SweetIM.A) -> Data: 1763663313695473663 -> Quarantined and deleted successfully.

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 5
C:\Users\Judy\Desktop\Software\SFInstaller_SFFZ_filezilla_8992693_.exe (PUP.Optional.Spigot.A) -> Quarantined and deleted successfully.
C:\Users\Judy\Desktop\Software\Adobe Dreamweaver CS6\Adobe Dreamweaver CS6\DLL FILE\32bit\amtlib.dll (PUP.RiskwareTool.CK) -> Quarantined and deleted successfully.
C:\Users\Judy\Desktop\Software\Adobe Dreamweaver CS6\Adobe Dreamweaver CS6\DLL FILE\Original - 32bit\Dreamweaver\amtlib.dll (PUP.RiskwareTool.CK) -> Quarantined and deleted successfully.
C:\Users\Judy\Downloads\BitLordSetup.exe (PUP.Optional.Conduit.A) -> Quarantined and deleted successfully.
C:\Users\Judy\Downloads\SFInstaller_SFFZ_filezilla_8992693_.exe (PUP.Optional.Spigot.A) -> Quarantined and deleted successfully.


Here if the OTL file


OTL logfile created on: 1/23/2014 6:41:10 PM - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Judy\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16750)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

7.97 Gb Total Physical Memory | 5.58 Gb Available Physical Memory | 70.06% Memory free
15.93 Gb Paging File | 13.24 Gb Available in Paging File | 83.10% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 698.54 Gb Total Space | 647.17 Gb Free Space | 92.65% Space Free | Partition Type: NTFS
Drive J: | 931.48 Gb Total Space | 164.78 Gb Free Space | 17.69% Space Free | Partition Type: NTFS

Computer Name: JUDY-PC | User Name: Judy | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2014/01/23 18:40:46 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Judy\Downloads\OTL.exe
PRC - [2014/01/14 13:20:12 | 001,862,536 | ---- | M] (Adobe Systems, Inc.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe
PRC - [2014/01/02 19:32:12 | 033,508,336 | ---- | M] (Dropbox, Inc.) -- C:\Users\Judy\AppData\Roaming\Dropbox\bin\Dropbox.exe
PRC - [2013/12/21 01:04:16 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2013/12/20 16:02:25 | 000,166,352 | ---- | M] (APN LLC.) -- C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe
PRC - [2013/12/20 16:02:16 | 001,778,640 | ---- | M] (APN) -- C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe
PRC - [2013/12/05 14:34:42 | 000,275,568 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
PRC - [2013/10/09 10:58:16 | 003,275,136 | ---- | M] (Skype Technologies S.A.) -- C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
PRC - [2013/10/08 06:46:16 | 000,262,288 | R--- | M] (Symantec Corporation) -- C:\Program Files (x86)\Norton AntiVirus\Engine\21.1.0.18\NAV.exe
PRC - [2013/10/05 22:27:28 | 000,129,424 | R--- | M] (Symantec Corporation) -- C:\Program Files (x86)\Norton Identity Safe\Engine\2014.6.0.27\NST.exe


========== Modules (No Company Name) ==========

MOD - [2014/01/23 17:29:48 | 000,041,984 | ---- | M] () -- c:\Users\Judy\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpnuegdd.dll
MOD - [2014/01/14 13:20:12 | 016,242,056 | ---- | M] () -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll
MOD - [2013/12/17 21:25:54 | 003,610,624 | ---- | M] () -- C:\Users\Judy\AppData\Roaming\Dropbox\bin\wxmsw28uh_vc.dll
MOD - [2013/12/05 14:36:56 | 003,559,024 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
MOD - [2013/11/26 09:05:08 | 000,127,400 | ---- | M] () -- C:\Program Files (x86)\HMA! Pro VPN\bin\ForceInterfaceLSP.dll
MOD - [2013/10/18 18:55:02 | 025,100,288 | ---- | M] () -- C:\Users\Judy\AppData\Roaming\Dropbox\bin\libcef.dll
MOD - [2013/09/13 19:51:44 | 000,087,952 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
MOD - [2013/09/13 19:51:20 | 001,242,952 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll


========== Services (SafeList) ==========

SRV:64bit: - [2013/10/23 18:24:26 | 000,069,368 | ---- | M] (Bitdefender) [Auto | Running] -- C:\Program Files\Bitdefender\Antivirus Free Edition\gzserv.exe -- (gzserv)
SRV:64bit: - [2013/10/10 17:54:28 | 000,144,152 | ---- | M] (SUPERAntiSpyware.com) [Auto | Running] -- C:\Program Files\SUPERAntiSpyware\SASCore64.exe -- (!SASCORE)
SRV:64bit: - [2013/05/27 00:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2014/01/14 13:20:12 | 000,257,416 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2013/12/21 01:04:16 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2013/12/20 16:02:25 | 000,166,352 | ---- | M] (APN LLC.) [Auto | Running] -- C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe -- (APNMCP)
SRV - [2013/11/21 08:44:34 | 000,037,176 | ---- | M] (The OpenVPN Project) [On_Demand | Stopped] -- C:\Program Files (x86)\HMA! Pro VPN\bin\openvpnserv.exe -- (OpenVPNService)
SRV - [2013/10/23 08:15:08 | 000,172,192 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2013/10/09 10:58:16 | 003,275,136 | ---- | M] (Skype Technologies S.A.) [Auto | Running] -- C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe -- (Skype C2C Service)
SRV - [2013/10/08 06:46:16 | 000,262,288 | R--- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files (x86)\Norton AntiVirus\Engine\21.1.0.18\NAV.exe -- (NAV)
SRV - [2013/10/05 22:27:28 | 000,129,424 | R--- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files (x86)\Norton Identity Safe\Engine\2014.6.0.27\NST.exe -- (NCO)
SRV - [2013/09/11 21:21:54 | 000,105,144 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009/06/10 16:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2014/01/23 17:30:14 | 000,096,856 | ---- | M] (Symantec Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\SMR410.SYS -- (SMR410)
DRV:64bit: - [2014/01/14 11:29:33 | 000,177,752 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SYMEVENT64x86.SYS -- (SymEvent)
DRV:64bit: - [2013/11/21 08:44:34 | 000,040,664 | ---- | M] (The OpenVPN Project) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tap0901.sys -- (tap0901)
DRV:64bit: - [2013/09/27 14:23:26 | 000,162,392 | R--- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\NSTx64\7DE06000.01B\ccSetx64.sys -- (ccSet_NST)
DRV:64bit: - [2013/09/26 22:18:30 | 001,147,480 | R--- | M] (Symantec Corporation) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\NAVx64\1501000.012\SymEFA64.sys -- (SymEFA)
DRV:64bit: - [2013/09/26 21:45:56 | 000,264,280 | R--- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\NAVx64\1501000.012\Ironx64.sys -- (SymIRON)
DRV:64bit: - [2013/09/26 21:26:03 | 000,858,200 | R--- | M] (Symantec Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\NAVx64\1501000.012\srtsp64.sys -- (SRTSP)
DRV:64bit: - [2013/09/25 22:28:00 | 000,590,936 | R--- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\NAVx64\1501000.012\symnets.sys -- (SymNetS)
DRV:64bit: - [2013/09/25 21:50:25 | 000,162,392 | R--- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\NAVx64\1501000.012\ccSetx64.sys -- (ccSet_NAV)
DRV:64bit: - [2013/09/09 21:47:26 | 000,493,656 | R--- | M] (Symantec Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\NAVx64\1501000.012\SymDS64.sys -- (SymDS)
DRV:64bit: - [2013/09/09 20:49:49 | 000,036,952 | R--- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\NAVx64\1501000.012\srtspx64.sys -- (SRTSPX)
DRV:64bit: - [2013/07/02 14:04:11 | 000,121,928 | ---- | M] (Bitdefender SRL) [Kernel | System | Running] -- C:\Program Files\Bitdefender\Antivirus Free Edition\bdfwfpf.sys -- (bdfwfpf)
DRV:64bit: - [2013/05/28 12:12:19 | 000,382,536 | ---- | M] (BitDefender S.R.L.) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\trufos.sys -- (trufos)
DRV:64bit: - [2013/04/22 13:21:00 | 000,148,696 | ---- | M] (BitDefender LLC) [File_System | System | Running] -- C:\Windows\SysNative\drivers\gzflt.sys -- (gzflt)
DRV:64bit: - [2013/04/17 14:59:58 | 000,593,144 | ---- | M] (BitDefender) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\avckf.sys -- (avckf)
DRV:64bit: - [2013/04/17 14:59:56 | 000,718,840 | ---- | M] (BitDefender) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\avc3.sys -- (avc3)
DRV:64bit: - [2012/08/23 09:10:20 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2012/08/23 09:08:26 | 000,030,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:64bit: - [2012/08/23 09:07:35 | 000,057,856 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2012/08/21 13:01:20 | 000,033,240 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:64bit: - [2012/03/01 01:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2011/07/22 11:26:56 | 000,014,928 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\sasdifsv64.sys -- (SASDIFSV)
DRV:64bit: - [2011/07/12 16:55:18 | 000,012,368 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\saskutil64.sys -- (SASKUTIL)
DRV:64bit: - [2011/06/10 01:34:52 | 000,539,240 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2011/03/11 01:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011/03/11 01:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2011/02/11 19:16:38 | 010,628,640 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:64bit: - [2010/11/20 22:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2009/07/15 22:38:40 | 000,015,416 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ASACPI.sys -- (MTsensor)
DRV:64bit: - [2009/07/13 20:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/13 20:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/13 20:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/06/10 15:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 15:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 15:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 15:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2008/05/06 16:06:00 | 000,014,464 | ---- | M] (Western Digital Technologies) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\wdcsam64.sys -- (WDC_SAM)
DRV - [2014/01/20 18:22:05 | 000,521,944 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files (x86)\Norton AntiVirus\NortonData\21.1.0.18\Definitions\IPSDefs\20140122.001\IDSviA64.sys -- (IDSVia64)
DRV - [2014/01/14 12:04:26 | 002,099,288 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files (x86)\Norton AntiVirus\NortonData\21.1.0.18\Definitions\VirusDefs\20140119.019\ex64.sys -- (NAVEX15)
DRV - [2014/01/14 12:04:26 | 000,126,040 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files (x86)\Norton AntiVirus\NortonData\21.1.0.18\Definitions\VirusDefs\20140119.019\eng64.sys -- (NAVENG)
DRV - [2014/01/14 05:19:59 | 000,484,952 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys -- (eeCtrl)
DRV - [2014/01/14 05:19:59 | 000,137,648 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys -- (EraserUtilRebootDrv)
DRV - [2014/01/09 21:48:03 | 001,526,488 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files (x86)\Norton AntiVirus\NortonData\21.1.0.18\Definitions\BASHDefs\20140121.001\BHDrvx64.sys -- (BHDrvx64)
DRV - [2009/07/13 20:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKCU\..\SearchScopes,DefaultScope = {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}
IE - HKCU\..\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}: "URL" = http://search.condui...rchTerms}&SSPV=
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...Box&FORM=IE10SR
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

========== FireFox ==========

FF - prefs.js..browser.search.order.3: "Bing "
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.search.suggest.enabled: false
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "ca.msn.com"
FF - prefs.js..extensions.enabledAddons: support%40lastpass.com:2.0.20
FF - prefs.js..extensions.enabledAddons: %7Bb9db16a4-6edc-47ec-a1f4-b86292ed211d%7D:4.9.21
FF - prefs.js..extensions.enabledAddons: clickclean%40hotcleaner.com:4.1
FF - prefs.js..extensions.enabledAddons: %7Be968fc70-8f95-4ab9-9e79-304de2a66ee1%7D:2.6.8
FF - prefs.js..extensions.enabledAddons: extension%40hidemyass.com:1.2.7
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:26.0
FF - user.js - File not found

FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.45.2: C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.45.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll ()
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.6: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@citrixonline.com/appdetectorplugin: C:\Users\Judy\AppData\Local\Citrix\Plugins\104\npappdetector.dll (Citrix Online)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{BBDA0591-3099-440a-AA10-41764D9DB4DB}: C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NAV_21.1.0.18\IPSFF [2014/01/14 11:30:15 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{F04D2D30-776C-4d02-8627-8E4385ECA58D}: C:\ProgramData\Norton\{92622AAD-05E8-4459-B256-765CE1E929FB}\NST_2014.6.0.27\coFFPlgn\ [2014/01/23 17:29:02 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 26.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 26.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins

[2014/01/14 12:03:46 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Judy\AppData\Roaming\Mozilla\Extensions
[2014/01/22 10:17:51 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Judy\AppData\Roaming\Mozilla\Firefox\Profiles\rtm0ngzw.default\extensions
[2014/01/14 15:46:58 | 000,000,000 | ---D | M] (DownloadHelper) -- C:\Users\Judy\AppData\Roaming\Mozilla\Firefox\Profiles\rtm0ngzw.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
[2014/01/22 10:04:54 | 000,000,000 | ---D | M] (Click&Clean) -- C:\Users\Judy\AppData\Roaming\Mozilla\Firefox\Profiles\rtm0ngzw.default\extensions\[email protected]
[2014/01/14 12:04:37 | 000,000,000 | ---D | M] (LastPass) -- C:\Users\Judy\AppData\Roaming\Mozilla\Firefox\Profiles\rtm0ngzw.default\extensions\[email protected]
[2014/01/22 10:17:51 | 000,053,803 | ---- | M] () (No name found) -- C:\Users\Judy\AppData\Roaming\Mozilla\Firefox\Profiles\rtm0ngzw.default\extensions\[email protected]
[2014/01/22 10:16:58 | 001,267,418 | ---- | M] () (No name found) -- C:\Users\Judy\AppData\Roaming\Mozilla\Firefox\Profiles\rtm0ngzw.default\extensions\[email protected]
[2013/12/20 16:03:19 | 001,127,901 | ---- | M] () (No name found) -- C:\Users\Judy\AppData\Roaming\Mozilla\Firefox\Profiles\rtm0ngzw.default\extensions\[email protected]
[2014/01/22 10:17:51 | 000,096,720 | ---- | M] () (No name found) -- C:\Users\Judy\AppData\Roaming\Mozilla\Firefox\Profiles\rtm0ngzw.default\extensions\{e968fc70-8f95-4ab9-9e79-304de2a66ee1}.xpi
[2014/01/14 13:48:37 | 000,002,273 | ---- | M] () -- C:\Users\Judy\AppData\Roaming\Mozilla\Firefox\Profiles\rtm0ngzw.default\searchplugins\bingp.xml
[2014/01/15 14:28:29 | 000,000,975 | ---- | M] () -- C:\Users\Judy\AppData\Roaming\Mozilla\Firefox\Profiles\rtm0ngzw.default\searchplugins\conduit-search.xml
[2014/01/23 12:48:07 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
[2014/01/23 12:48:07 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

========== Chrome ==========

CHR - default_search_provider: Bing (Enabled)
CHR - default_search_provider: search_url = http://www.bing.com/...q={searchTerms}
CHR - default_search_provider: suggest_url = http://api.bing.com/...=UP97DF&PC=UP97,
CHR - homepage: http://www.google.com
CHR - Extension: Google Docs = C:\Users\Judy\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_1\
CHR - Extension: Google Drive = C:\Users\Judy\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_1\
CHR - Extension: YouTube = C:\Users\Judy\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_1\
CHR - Extension: Google Search = C:\Users\Judy\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\
CHR - Extension: Skype Click to Call = C:\Users\Judy\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\6.13.0.13771_0\
CHR - Extension: Google Wallet = C:\Users\Judy\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\
CHR - Extension: Norton Identity Protection = C:\Users\Judy\AppData\Local\Google\Chrome\User Data\Default\Extensions\nppllibpnmahfaklnpggkibhkapjkeob\2014.6.0.27_1\
CHR - Extension: Gmail = C:\Users\Judy\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_2\

O1 HOSTS File: ([2014/01/14 15:20:35 | 000,000,866 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 activation.cloud.techsmith.com
O2:64bit: - BHO: (Avira SearchFree Toolbar) - {41564952-412D-5637-4300-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport_x64.dll (APN LLC.)
O2:64bit: - BHO: (Java™ Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2:64bit: - BHO: (Norton Identity Protection) - {AB4C7833-A6EC-433f-B9FE-6B14B1A2F836} - C:\Program Files (x86)\Norton Identity Safe\Engine64\2014.6.0.27\CoIEPlg.dll (Symantec Corporation)
O2:64bit: - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
O2:64bit: - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (Avira SearchFree Toolbar) - {41564952-412D-5637-4300-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport.dll (APN LLC.)
O2 - BHO: (Norton Vulnerability Protection) - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton AntiVirus\Engine\21.1.0.18\IPS\ipsbho.dll (Symantec Corporation)
O2 - BHO: (Norton Identity Protection) - {AB4C7833-A6EC-433f-B9FE-6B14B1A2F836} - C:\Program Files (x86)\Norton Identity Safe\Engine\2014.6.0.27\CoIEPlg.dll (Symantec Corporation)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O3:64bit: - HKLM\..\Toolbar: (Avira SearchFree Toolbar) - {41564952-412D-5637-4300-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport_x64.dll (APN LLC.)
O3:64bit: - HKLM\..\Toolbar: (Norton Identity Safe Toolbar) - {A13C2648-91D4-4bf3-BC6D-0079707C4389} - C:\Program Files (x86)\Norton Identity Safe\Engine64\2014.6.0.27\CoIEPlg.dll (Symantec Corporation)
O3 - HKLM\..\Toolbar: (Avira SearchFree Toolbar) - {41564952-412D-5637-4300-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport.dll (APN LLC.)
O3 - HKLM\..\Toolbar: (Norton Identity Safe Toolbar) - {A13C2648-91D4-4bf3-BC6D-0079707C4389} - C:\Program Files (x86)\Norton Identity Safe\Engine\2014.6.0.27\CoIEPlg.dll (Symantec Corporation)
O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [ApnTBMon] C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe (APN)
O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [LanguageShortcut] C:\Program Files (x86)\CyberLink\PowerDVD\Language\Language.exe ()
O4 - HKCU..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (SUPERAntiSpyware)
O4 - Startup: C:\Users\Judy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk = C:\Users\Judy\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O9:64bit: - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Program Files (x86)\HMA! Pro VPN\bin\ForceInterfaceLSP.dll ()
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Program Files (x86)\HMA! Pro VPN\bin\ForceInterfaceLSP.dll ()
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Program Files (x86)\HMA! Pro VPN\bin\ForceInterfaceLSP.dll ()
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Program Files (x86)\HMA! Pro VPN\bin\ForceInterfaceLSP.dll ()
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Program Files (x86)\HMA! Pro VPN\bin\ForceInterfaceLSP.dll ()
O10 - Protocol_Catalog9\Catalog_Entries\000000000016 - C:\Program Files (x86)\HMA! Pro VPN\bin\ForceInterfaceLSP.dll ()
O13 - gopher Prefix: missing
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{55173D22-3048-40EA-AF7C-33A66D56C718}: DhcpNameServer = 192.168.0.1
O18:64bit: - Protocol\Handler\grooveLocalGWS - No CLSID value found
O18:64bit: - Protocol\Handler\ms-help - No CLSID value found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = ComFile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

========== Files/Folders - Created Within 30 Days ==========

[2014/01/23 17:30:14 | 000,096,856 | ---- | C] (Symantec Corporation) -- C:\Windows\SysNative\drivers\SMR410.SYS
[2014/01/23 13:34:16 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Antivirus Free Edition
[2014/01/23 13:34:12 | 001,721,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WdfCoInstaller01009.dll
[2014/01/23 13:34:11 | 000,718,840 | ---- | C] (BitDefender) -- C:\Windows\SysNative\drivers\avc3.sys
[2014/01/23 13:34:11 | 000,593,144 | ---- | C] (BitDefender) -- C:\Windows\SysNative\drivers\avckf.sys
[2014/01/23 13:34:11 | 000,261,056 | ---- | C] (BitDefender) -- C:\Windows\SysNative\drivers\avchv.sys
[2014/01/23 13:33:19 | 000,000,000 | ---D | C] -- C:\Program Files\Bitdefender
[2014/01/23 13:33:11 | 000,148,696 | ---- | C] (BitDefender LLC) -- C:\Windows\SysNative\drivers\gzflt.sys
[2014/01/23 13:33:10 | 000,382,536 | ---- | C] (BitDefender S.R.L.) -- C:\Windows\SysNative\drivers\trufos.sys
[2014/01/23 13:25:32 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Roaming\QuickScan
[2014/01/23 13:21:45 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2014/01/23 13:21:40 | 000,000,000 | ---D | C] -- C:\Windows\temp
[2014/01/23 13:13:16 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2014/01/23 13:13:16 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2014/01/23 13:13:16 | 000,060,416 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2014/01/23 13:10:45 | 000,000,000 | ---D | C] -- C:\Qoobox
[2014/01/23 13:10:25 | 000,000,000 | ---D | C] -- C:\Windows\erdnt
[2014/01/23 12:48:10 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Maintenance Service
[2014/01/23 12:48:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[2014/01/23 12:38:25 | 000,000,000 | ---D | C] -- C:\Users\Judy\Desktop\Downloads
[2014/01/23 12:38:16 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Roaming\GetRightToGo
[2014/01/22 10:50:45 | 000,000,000 | R--D | C] -- C:\Users\Judy\Dropbox
[2014/01/22 10:48:15 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Roaming\DropboxMaster
[2014/01/22 10:47:54 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
[2014/01/22 10:47:24 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Roaming\Dropbox
[2014/01/22 10:01:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HMA! Pro VPN
[2014/01/22 10:00:59 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\HMA! Pro VPN
[2014/01/21 20:10:30 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Roaming\TechSmith
[2014/01/21 20:10:24 | 000,000,000 | ---D | C] -- C:\Users\Judy\Documents\Camtasia Studio
[2014/01/21 19:56:32 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Local\Citrix
[2014/01/21 16:54:22 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
[2014/01/21 16:54:21 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\FileZilla FTP Client
[2014/01/21 14:37:41 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Local\Diagnostics
[2014/01/21 10:08:11 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\sweetpacks bundle uninstaller
[2014/01/21 09:53:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Market Samurai
[2014/01/21 09:21:26 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Roaming\MarketSamurai
[2014/01/21 09:21:25 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Roaming\MarketSamurai.6E37012E1CBD7F47B14488FCC715944F3EBDCEDC.1
[2014/01/20 08:36:24 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Local\ElevatedDiagnostics
[2014/01/19 12:21:15 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Roaming\OpenOffice
[2014/01/17 01:07:57 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Local\CrashDumps
[2014/01/16 11:38:41 | 000,000,000 | ---D | C] -- C:\Users\Judy\Documents\PLANTS
[2014/01/16 11:01:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SRWare Iron
[2014/01/16 11:01:32 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Local\Chromium
[2014/01/16 11:01:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SRWare Iron
[2014/01/15 22:33:15 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Local\Microsoft Games
[2014/01/15 17:21:48 | 000,000,000 | ---D | C] -- C:\ProgramData\AskPartnerNetwork
[2014/01/15 17:21:48 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AskPartnerNetwork
[2014/01/15 17:21:34 | 000,000,000 | ---D | C] -- C:\ProgramData\APN
[2014/01/15 16:30:12 | 000,000,000 | ---D | C] -- C:\Users\Judy\Documents\Snagit
[2014/01/15 16:30:09 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Local\assembly
[2014/01/15 14:16:42 | 000,000,000 | ---D | C] -- C:\Users\Judy\Documents\Micro Niche Finder
[2014/01/15 14:16:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Micro Niche Finder 5.0
[2014/01/15 14:16:32 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Micro Niche Finder 5.0
[2014/01/15 14:11:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
[2014/01/15 14:11:10 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\VideoLAN
[2014/01/15 14:09:30 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Roaming\vlc
[2014/01/15 14:08:44 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeMind
[2014/01/15 14:08:43 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\FreeMind
[2014/01/15 14:05:20 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Roaming\Python-Eggs
[2014/01/15 14:05:11 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Roaming\BitLord
[2014/01/15 14:05:09 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitLord
[2014/01/15 14:04:13 | 000,000,000 | ---D | C] -- C:\Users\Judy\Documents\BitLord
[2014/01/15 14:04:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\BitLord 2
[2014/01/15 14:00:39 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Roaming\kompozer.net
[2014/01/15 14:00:39 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Local\kompozer.net
[2014/01/15 14:00:36 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KompoZer
[2014/01/15 14:00:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\KompoZer
[2014/01/15 13:54:44 | 000,000,000 | ---D | C] -- C:\ProgramData\regid.1995-08.com.techsmith
[2014/01/15 13:54:36 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\TechSmith Shared
[2014/01/15 13:48:11 | 000,000,000 | ---D | C] -- C:\ProgramData\MAGIX
[2014/01/15 13:48:09 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Roaming\MAGIX
[2014/01/15 13:47:44 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Local\Xara
[2014/01/15 13:47:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xara
[2014/01/15 13:46:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Xara
[2014/01/15 13:46:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Xara
[2014/01/15 12:08:55 | 000,000,000 | ---D | C] -- C:\Windows\Minidump
[2014/01/15 12:05:20 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Roaming\Malwarebytes
[2014/01/15 12:04:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2014/01/15 12:04:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2014/01/15 12:04:42 | 000,025,928 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
[2014/01/15 12:04:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
[2014/01/15 12:02:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
[2014/01/15 12:02:56 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2014/01/15 12:01:51 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Local\Programs
[2014/01/15 11:57:37 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Roaming\SUPERAntiSpyware.com
[2014/01/15 11:57:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
[2014/01/15 11:57:25 | 000,000,000 | ---D | C] -- C:\ProgramData\SUPERAntiSpyware.com
[2014/01/15 11:57:25 | 000,000,000 | ---D | C] -- C:\Program Files\SUPERAntiSpyware
[2014/01/15 07:24:51 | 000,325,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usbport.sys
[2014/01/15 07:24:51 | 000,007,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usbd.sys
[2014/01/15 07:24:50 | 000,376,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\netio.sys
[2014/01/14 17:37:44 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Local\NPE
[2014/01/14 16:23:19 | 000,000,000 | ---D | C] -- C:\Users\Judy\Documents\Newcomers
[2014/01/14 16:23:19 | 000,000,000 | ---D | C] -- C:\Users\Judy\Documents\New folder
[2014/01/14 16:11:42 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Roaming\FileZilla
[2014/01/14 16:03:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\slf
[2014/01/14 15:53:52 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Roaming\com.aligmarketing.slf
[2014/01/14 15:52:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Adobe AIR
[2014/01/14 15:47:43 | 000,000,000 | ---D | C] -- C:\Users\Judy\dwhelper
[2014/01/14 15:40:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++
[2014/01/14 15:40:03 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++
[2014/01/14 15:40:00 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Roaming\Notepad++
[2014/01/14 15:40:00 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Notepad++
[2014/01/14 15:37:49 | 000,000,000 | ---D | C] -- C:\Users\Judy\Documents\Pinterest_Domination
[2014/01/14 15:36:57 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\FBMatic
[2014/01/14 15:36:56 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FBMatic
[2014/01/14 15:33:19 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Local\join.me
[2014/01/14 15:18:30 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Local\IsolatedStorage
[2014/01/14 15:17:53 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Roaming\JonathanLeger.com
[2014/01/14 15:17:08 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Local\JonathanLeger.com
[2014/01/14 15:15:51 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TheBestSpinner3
[2014/01/14 15:15:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TheBestSpinner3
[2014/01/14 15:15:51 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\TheBestSpinner3
[2014/01/14 15:14:56 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Local\xheader-data
[2014/01/14 15:14:37 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\XHeader
[2014/01/14 15:14:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\XHeader
[2014/01/14 15:14:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Thraex Software
[2014/01/14 15:12:16 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechSmith
[2014/01/14 15:12:13 | 000,000,000 | ---D | C] -- C:\ProgramData\TechSmith
[2014/01/14 15:12:10 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Local\TechSmith
[2014/01/14 15:12:10 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\TechSmith
[2014/01/14 15:03:39 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
[2014/01/14 15:02:07 | 000,000,000 | R--D | C] -- C:\Users\Judy\Documents\Scanned Documents
[2014/01/14 15:02:07 | 000,000,000 | ---D | C] -- C:\Users\Judy\Documents\Fax
[2014/01/14 15:01:59 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Works
[2014/01/14 15:01:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Visual Studio
[2014/01/14 15:01:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\DESIGNER
[2014/01/14 15:01:26 | 000,000,000 | ---D | C] -- C:\Windows\PCHEALTH
[2014/01/14 14:58:58 | 000,000,000 | --SD | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.0.1
[2014/01/14 14:58:33 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\OpenOffice 4
[2014/01/14 14:57:47 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Office
[2014/01/14 14:57:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Visual Studio 8
[2014/01/14 14:55:15 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Local\Microsoft Help
[2014/01/14 14:55:13 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Office
[2014/01/14 14:55:12 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft Help
[2014/01/14 14:54:37 | 000,000,000 | R--D | C] -- C:\MSOCache
[2014/01/14 14:51:25 | 000,000,000 | ---D | C] -- C:\Users\Judy\Desktop\Resources
[2014/01/14 14:11:39 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Roaming\UBot Studio
[2014/01/14 14:07:22 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Roaming\WinRAR
[2014/01/14 14:06:48 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
[2014/01/14 14:06:48 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
[2014/01/14 14:06:35 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR
[2014/01/14 13:53:16 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Local\Apps
[2014/01/14 13:49:28 | 000,000,000 | R--D | C] -- C:\Users\Judy\Desktop\Cleaners
[2014/01/14 13:10:36 | 000,000,000 | ---D | C] -- C:\Users\Judy\Desktop\Software
[2014/01/14 13:09:19 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Roaming\Skype
[2014/01/14 13:09:06 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
[2014/01/14 13:09:04 | 000,000,000 | R--D | C] -- C:\Program Files (x86)\Skype
[2014/01/14 13:09:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Skype
[2014/01/14 13:09:00 | 000,000,000 | ---D | C] -- C:\ProgramData\Skype
[2014/01/14 12:17:44 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MSXML 4.0
[2014/01/14 12:06:43 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Local\Macromedia
[2014/01/14 12:03:39 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Roaming\Mozilla
[2014/01/14 12:03:39 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Local\Mozilla
[2014/01/14 12:03:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Mozilla
[2014/01/14 11:46:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Symantec Shared
[2014/01/14 11:29:57 | 000,000,000 | ---D | C] -- C:\ProgramData\NCOTEMP
[2014/01/14 11:29:52 | 000,162,392 | R--- | C] (Symantec Corporation) -- C:\Windows\SysNative\drivers\NSTx64\7DE06000.01B\ccSetx64.sys
[2014/01/14 11:29:50 | 002,871,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\explorer.exe
[2014/01/14 11:29:50 | 002,616,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\explorer.exe
[2014/01/14 11:29:48 | 000,465,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMPhoto.dll
[2014/01/14 11:29:48 | 000,417,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMPhoto.dll
[2014/01/14 11:29:48 | 000,000,000 | R--D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Identity Safe
[2014/01/14 11:29:48 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\NSTx64
[2014/01/14 11:29:48 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Norton Identity Safe
[2014/01/14 11:29:48 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\NSTx64\7DE06000.01B
[2014/01/14 11:29:38 | 002,565,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\esent.dll
[2014/01/14 11:29:38 | 001,699,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\esent.dll
[2014/01/14 11:29:38 | 000,189,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\storport.sys
[2014/01/14 11:29:38 | 000,107,904 | ---- | C] (Advanced Micro Devices) -- C:\Windows\SysNative\drivers\amdsata.sys
[2014/01/14 11:29:38 | 000,096,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fsutil.exe
[2014/01/14 11:29:38 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fsutil.exe
[2014/01/14 11:29:38 | 000,027,008 | ---- | C] (Advanced Micro Devices) -- C:\Windows\SysNative\drivers\amdxata.sys
[2014/01/14 11:29:34 | 001,424,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsCodecs.dll
[2014/01/14 11:29:33 | 000,177,752 | ---- | C] (Symantec Corporation) -- C:\Windows\SysNative\drivers\SYMEVENT64x86.SYS
[2014/01/14 11:29:33 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Symantec Shared
[2014/01/14 11:29:17 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\splwow64.exe
[2014/01/14 11:29:03 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Roaming\Macromedia
[2014/01/14 11:28:57 | 001,147,480 | R--- | C] (Symantec Corporation) -- C:\Windows\SysNative\drivers\NAVx64\1501000.012\SymEFA64.sys
[2014/01/14 11:28:57 | 000,858,200 | R--- | C] (Symantec Corporation) -- C:\Windows\SysNative\drivers\NAVx64\1501000.012\srtsp64.sys
[2014/01/14 11:28:57 | 000,590,936 | R--- | C] (Symantec Corporation) -- C:\Windows\SysNative\drivers\NAVx64\1501000.012\symnets.sys
[2014/01/14 11:28:57 | 000,493,656 | R--- | C] (Symantec Corporation) -- C:\Windows\SysNative\drivers\NAVx64\1501000.012\SymDS64.sys
[2014/01/14 11:28:57 | 000,264,280 | R--- | C] (Symantec Corporation) -- C:\Windows\SysNative\drivers\NAVx64\1501000.012\Ironx64.sys
[2014/01/14 11:28:57 | 000,162,392 | R--- | C] (Symantec Corporation) -- C:\Windows\SysNative\drivers\NAVx64\1501000.012\ccSetx64.sys
[2014/01/14 11:28:57 | 000,036,952 | R--- | C] (Symantec Corporation) -- C:\Windows\SysNative\drivers\NAVx64\1501000.012\srtspx64.sys
[2014/01/14 11:28:57 | 000,023,568 | R--- | C] (Symantec Corporation) -- C:\Windows\SysNative\drivers\NAVx64\1501000.012\SymELAM.sys
[2014/01/14 11:28:35 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\NAVx64
[2014/01/14 11:28:35 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\NAVx64\1501000.012
[2014/01/14 11:28:34 | 000,000,000 | R--D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton AntiVirus
[2014/01/14 11:28:33 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Norton AntiVirus
[2014/01/14 11:28:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Norton
[2014/01/14 11:28:26 | 000,000,000 | ---D | C] -- C:\ProgramData\NortonInstaller
[2014/01/14 11:28:26 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\NortonInstaller
[2014/01/14 11:26:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
[2014/01/14 11:26:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\QuickTime
[2014/01/14 11:25:21 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Local\Apple Computer
[2014/01/14 11:25:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
[2014/01/14 11:25:00 | 000,033,240 | ---- | C] (GEAR Software Inc.) -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys
[2014/01/14 11:25:00 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\DRVSTORE
[2014/01/14 11:24:40 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
[2014/01/14 11:24:39 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes
[2014/01/14 11:24:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\iTunes
[2014/01/14 11:24:39 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple Computer
[2014/01/14 11:24:39 | 000,000,000 | ---D | C] -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
[2014/01/14 11:20:45 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Roaming\Apple Computer
[2014/01/14 11:17:23 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Local\Adobe
[2014/01/14 11:16:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Oracle
[2014/01/14 11:16:24 | 000,312,744 | ---- | C] (Oracle Corporation) -- C:\Windows\SysNative\javaws.exe
[2014/01/14 11:16:21 | 000,189,352 | ---- | C] (Oracle Corporation) -- C:\Windows\SysNative\javaw.exe
[2014/01/14 11:16:21 | 000,189,352 | ---- | C] (Oracle Corporation) -- C:\Windows\SysNative\java.exe
[2014/01/14 11:16:21 | 000,108,968 | ---- | C] (Oracle Corporation) -- C:\Windows\SysNative\WindowsAccessBridge-64.dll
[2014/01/14 11:16:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
[2014/01/14 11:16:18 | 000,000,000 | ---D | C] -- C:\Program Files\Java
[2014/01/14 11:14:49 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Adobe
[2014/01/14 11:14:49 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Adobe
[2014/01/14 11:13:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Adobe
[2014/01/14 11:11:19 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Google
[2014/01/14 11:11:14 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Local\Google
[2014/01/14 11:08:30 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Apple Software Update
[2014/01/14 11:08:30 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Local\Apple
[2014/01/14 11:08:12 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Apple
[2014/01/14 11:08:05 | 000,000,000 | ---D | C] -- C:\Program Files\Bonjour
[2014/01/14 11:08:05 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Bonjour
[2014/01/14 11:08:04 | 000,692,616 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2014/01/14 11:08:04 | 000,071,048 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2014/01/14 11:08:03 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\Macromed
[2014/01/14 11:08:02 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\Macromed
[2014/01/14 11:07:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple
[2014/01/14 11:07:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Apple
[2014/01/14 11:01:24 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Local\Ahead
[2014/01/14 11:01:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero 7 Essentials
[2014/01/14 10:51:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Ahead
[2014/01/14 10:51:11 | 000,000,000 | ---D | C] -- C:\ProgramData\Nero
[2014/01/14 10:51:11 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Nero
[2014/01/14 10:51:11 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Ahead
[2014/01/14 10:50:12 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink DVD Suite
[2014/01/14 10:50:00 | 000,027,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msxml3a.dll
[2014/01/14 10:49:46 | 002,388,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_30.dll
[2014/01/14 10:49:46 | 002,323,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_28.dll
[2014/01/14 10:49:19 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\CyberLink
[2014/01/14 10:42:23 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\Wat
[2014/01/14 10:42:22 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\Wat
[2014/01/14 10:37:39 | 012,625,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmploc.DLL
[2014/01/14 10:37:39 | 012,625,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmploc.DLL
[2014/01/14 10:37:39 | 011,410,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmp.dll
[2014/01/14 10:37:37 | 014,631,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmp.dll
[2014/01/14 10:34:34 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Roaming\Adobe
[2014/01/13 19:53:43 | 000,000,000 | ---D | C] -- C:\Windows\Prefetch
[2014/01/13 19:53:13 | 000,000,000 | -HSD | C] -- C:\System Volume Information
[2014/01/13 19:52:34 | 000,000,000 | ---D | C] -- C:\Windows\Panther
[2014/01/13 19:01:49 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft.NET
[2014/01/13 19:01:48 | 000,000,000 | ---D | C] -- C:\Windows\Migration
[2014/01/13 19:01:44 | 000,000,000 | -HSD | C] -- C:\Windows\Installer
[2014/01/13 18:28:14 | 003,959,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2014/01/13 18:28:14 | 001,509,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2014/01/13 18:28:14 | 001,441,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2014/01/13 18:28:14 | 001,400,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dat
[2014/01/13 18:28:14 | 001,400,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dat
[2014/01/13 18:28:14 | 001,054,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MsSpellCheckingFacility.exe
[2014/01/13 18:28:14 | 000,905,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmlmedia.dll
[2014/01/13 18:28:14 | 000,855,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
[2014/01/13 18:28:14 | 000,762,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll
[2014/01/13 18:28:14 | 000,719,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmlmedia.dll
[2014/01/13 18:28:14 | 000,690,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2014/01/13 18:28:14 | 000,629,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
[2014/01/13 18:28:14 | 000,603,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2014/01/13 18:28:14 | 000,599,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
[2014/01/13 18:28:14 | 000,526,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2014/01/13 18:28:14 | 000,452,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtmsft.dll
[2014/01/13 18:28:14 | 000,441,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\html.iec
[2014/01/13 18:28:14 | 000,391,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2014/01/13 18:28:14 | 000,361,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\html.iec
[2014/01/13 18:28:14 | 000,281,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll
[2014/01/13 18:28:14 | 000,235,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\url.dll
[2014/01/13 18:28:14 | 000,232,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\url.dll
[2014/01/13 18:28:14 | 000,226,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\elshyph.dll
[2014/01/13 18:28:14 | 000,216,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msls31.dll
[2014/01/13 18:28:14 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msrating.dll
[2014/01/13 18:28:14 | 000,185,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\elshyph.dll
[2014/01/13 18:28:14 | 000,173,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
[2014/01/13 18:28:14 | 000,167,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iexpress.exe
[2014/01/13 18:28:14 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
[2014/01/13 18:28:14 | 000,150,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iexpress.exe
[2014/01/13 18:28:14 | 000,149,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\occache.dll
[2014/01/13 18:28:14 | 000,144,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wextract.exe
[2014/01/13 18:28:14 | 000,138,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wextract.exe
[2014/01/13 18:28:14 | 000,137,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2014/01/13 18:28:14 | 000,136,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesysprep.dll
[2014/01/13 18:28:14 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iepeers.dll
[2014/01/13 18:28:14 | 000,135,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\IEAdvpack.dll
[2014/01/13 18:28:14 | 000,125,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\occache.dll
[2014/01/13 18:28:14 | 000,117,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iepeers.dll
[2014/01/13 18:28:14 | 000,110,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\IEAdvpack.dll
[2014/01/13 18:28:14 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesysprep.dll
[2014/01/13 18:28:14 | 000,102,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inseng.dll
[2014/01/13 18:28:14 | 000,097,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2014/01/13 18:28:14 | 000,092,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SetIEInstalledDate.exe
[2014/01/13 18:28:14 | 000,089,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RegisterIEPKEYs.exe
[2014/01/13 18:28:14 | 000,082,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inseng.dll
[2014/01/13 18:28:14 | 000,081,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\icardie.dll
[2014/01/13 18:28:14 | 000,079,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2014/01/13 18:28:14 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tdc.ocx
[2014/01/13 18:28:14 | 000,073,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SetIEInstalledDate.exe
[2014/01/13 18:28:14 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RegisterIEPKEYs.exe
[2014/01/13 18:28:14 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\icardie.dll
[2014/01/13 18:28:14 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll
[2014/01/13 18:28:14 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pngfilt.dll
[2014/01/13 18:28:14 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tdc.ocx
[2014/01/13 18:28:14 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
[2014/01/13 18:28:14 | 000,057,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pngfilt.dll
[2014/01/13 18:28:14 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
[2014/01/13 18:28:14 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imgutil.dll
[2014/01/13 18:28:14 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmler.dll
[2014/01/13 18:28:14 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmler.dll
[2014/01/13 18:28:14 | 000,039,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll
[2014/01/13 18:28:14 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
[2014/01/13 18:28:14 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\licmgr10.dll
[2014/01/13 18:28:14 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\licmgr10.dll
[2014/01/13 18:28:14 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshta.exe
[2014/01/13 18:28:14 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeedssync.exe
[2014/01/13 18:28:14 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeedssync.exe
[2014/01/13 18:21:04 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys
[2014/01/13 18:21:04 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\TsUsbGD.sys
[2014/01/13 18:21:04 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\rdpvideominiport.sys
[2014/01/13 18:21:04 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RdpGroupPolicyExtension.dll
[2014/01/13 18:21:04 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TsUsbRedirectionGroupPolicyExtension.dll
[2014/01/13 18:21:04 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TsUsbRedirectionGroupPolicyControl.exe
[2014/01/13 18:21:03 | 004,916,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstscax.dll
[2014/01/13 18:21:03 | 003,174,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcorets.dll
[2014/01/13 18:21:03 | 001,123,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstsc.exe
[2014/01/13 18:21:03 | 001,048,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstsc.exe
[2014/01/13 18:21:03 | 000,384,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wksprt.exe
[2014/01/13 18:21:03 | 000,322,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aaclient.dll
[2014/01/13 18:21:03 | 000,269,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\aaclient.dll
[2014/01/13 18:21:03 | 000,243,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpudd.dll
[2014/01/13 18:21:03 | 000,228,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpendp_winip.dll
[2014/01/13 18:21:03 | 000,192,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdpendp_winip.dll
[2014/01/13 18:21:03 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TSWbPrxy.exe
[2014/01/13 18:21:03 | 000,054,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MsRdpWebAccess.dll
[2014/01/13 18:21:03 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MsRdpWebAccess.dll
[2014/01/13 18:21:03 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tsgqec.dll
[2014/01/13 18:21:03 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TsUsbGDCoInstaller.dll
[2014/01/13 18:21:03 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tsgqec.dll
[2014/01/13 18:21:03 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wksprtPS.dll
[2014/01/13 18:21:03 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wksprtPS.dll
[2014/01/13 18:21:02 | 005,773,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstscax.dll
[2014/01/13 18:04:50 | 000,744,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUDFx.dll
[2014/01/13 18:04:50 | 000,229,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUDFHost.exe
[2014/01/13 18:04:50 | 000,194,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUDFPlatform.dll
[2014/01/13 18:04:50 | 000,045,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUDFCoinstaller.dll
[2014/01/13 17:59:32 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\MRT
[2014/01/13 17:58:40 | 002,776,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msmpeg2vdec.dll
[2014/01/13 17:58:40 | 002,284,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msmpeg2vdec.dll
[2014/01/13 17:58:40 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\UIAnimation.dll
[2014/01/13 17:58:40 | 000,187,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\UIAnimation.dll
[2014/01/13 17:58:38 | 002,565,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10warp.dll
[2014/01/13 17:58:38 | 001,238,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10.dll
[2014/01/13 17:58:38 | 000,648,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10level9.dll
[2014/01/13 17:58:38 | 000,522,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsGdiConverter.dll
[2014/01/13 17:58:38 | 000,364,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsGdiConverter.dll
[2014/01/13 17:58:38 | 000,363,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxgi.dll
[2014/01/13 17:58:38 | 000,333,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10_1core.dll
[2014/01/13 17:58:38 | 000,296,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10core.dll
[2014/01/13 17:58:38 | 000,194,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10_1.dll
[2014/01/13 17:58:38 | 000,010,752 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-advapi32-l1-1-0.dll
[2014/01/13 17:58:38 | 000,010,752 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-advapi32-l1-1-0.dll
[2014/01/13 17:58:38 | 000,009,728 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
[2014/01/13 17:58:38 | 000,009,728 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-shlwapi-l1-1-0.dll
[2014/01/13 17:58:38 | 000,005,632 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
[2014/01/13 17:58:38 | 000,005,632 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-shlwapi-l2-1-0.dll
[2014/01/13 17:58:38 | 000,005,632 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-ole32-l1-1-0.dll
[2014/01/13 17:58:38 | 000,005,632 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-ole32-l1-1-0.dll
[2014/01/13 17:58:38 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-user32-l1-1-0.dll
[2014/01/13 17:58:38 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-user32-l1-1-0.dll
[2014/01/13 17:58:38 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-advapi32-l2-1-0.dll
[2014/01/13 17:58:38 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-advapi32-l2-1-0.dll
[2014/01/13 17:58:38 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-version-l1-1-0.dll
[2014/01/13 17:58:38 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-version-l1-1-0.dll
[2014/01/13 17:58:38 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-shell32-l1-1-0.dll
[2014/01/13 17:58:38 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-shell32-l1-1-0.dll
[2014/01/13 17:58:38 | 000,002,560 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-normaliz-l1-1-0.dll
[2014/01/13 17:58:38 | 000,002,560 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-normaliz-l1-1-0.dll
[2014/01/13 17:58:37 | 003,928,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d2d1.dll
[2014/01/13 17:58:37 | 001,682,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsPrint.dll
[2014/01/13 17:58:37 | 001,643,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DWrite.dll
[2014/01/13 17:58:37 | 001,158,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsPrint.dll
[2014/01/13 17:58:37 | 000,245,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsCodecsExt.dll
[2014/01/13 17:58:15 | 000,023,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\fs_rec.sys
[2014/01/13 17:55:42 | 000,509,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntshrui.dll
[2014/01/13 17:55:41 | 000,514,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qdvd.dll
[2014/01/13 17:55:41 | 000,366,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qdvd.dll
[2014/01/13 17:55:31 | 002,315,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tquery.dll
[2014/01/13 17:55:31 | 002,223,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssrch.dll
[2014/01/13 17:55:31 | 001,549,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tquery.dll
[2014/01/13 17:55:31 | 001,401,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssrch.dll
[2014/01/13 17:55:31 | 000,778,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssvp.dll
[2014/01/13 17:55:31 | 000,666,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssvp.dll
[2014/01/13 17:55:31 | 000,491,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssph.dll
[2014/01/13 17:55:31 | 000,337,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssph.dll
[2014/01/13 17:55:31 | 000,288,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssphtb.dll
[2014/01/13 17:55:31 | 000,249,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SearchProtocolHost.exe
[2014/01/13 17:55:31 | 000,113,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SearchFilterHost.exe
[2014/01/13 17:55:31 | 000,075,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msscntrs.dll
[2014/01/13 17:55:31 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msscntrs.dll
[2014/01/13 17:55:29 | 000,224,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wintrust.dll
[2014/01/13 17:55:02 | 000,362,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64win.dll
[2014/01/13 17:55:01 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntvdm64.dll
[2014/01/13 17:55:01 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64cpu.dll
[2014/01/13 17:54:57 | 001,930,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\authui.dll
[2014/01/13 17:54:57 | 001,796,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\authui.dll
[2014/01/13 17:54:57 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\credui.dll
[2014/01/13 17:54:57 | 000,190,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SmartcardCredentialProvider.dll
[2014/01/13 17:54:57 | 000,152,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SmartcardCredentialProvider.dll
[2014/01/13 17:54:51 | 002,746,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\gameux.dll
[2014/01/13 17:54:51 | 002,576,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\gameux.dll
[2014/01/13 17:54:51 | 000,441,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Wpc.dll
[2014/01/13 17:54:51 | 000,308,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Wpc.dll
[2014/01/13 17:54:51 | 000,051,712 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\esrb.rs
[2014/01/13 17:54:51 | 000,046,592 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\fpb.rs
[2014/01/13 17:54:51 | 000,046,592 | ---- | C] (Microsoft) -- C:\Windows\SysNative\fpb.rs
[2014/01/13 17:54:51 | 000,045,568 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\oflc-nz.rs
[2014/01/13 17:54:51 | 000,045,568 | ---- | C] (Microsoft) -- C:\Windows\SysNative\oflc-nz.rs
[2014/01/13 17:54:51 | 000,044,544 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\pegibbfc.rs
[2014/01/13 17:54:51 | 000,044,544 | ---- | C] (Microsoft) -- C:\Windows\SysNative\pegibbfc.rs
[2014/01/13 17:54:51 | 000,043,520 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\csrr.rs
[2014/01/13 17:54:51 | 000,043,520 | ---- | C] (Microsoft) -- C:\Windows\SysNative\csrr.rs
[2014/01/13 17:54:51 | 000,040,960 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\cob-au.rs
[2014/01/13 17:54:51 | 000,040,960 | ---- | C] (Microsoft) -- C:\Windows\SysNative\cob-au.rs
[2014/01/13 17:54:51 | 000,030,720 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\usk.rs
[2014/01/13 17:54:51 | 000,030,720 | ---- | C] (Microsoft) -- C:\Windows\SysNative\usk.rs
[2014/01/13 17:54:51 | 000,021,504 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\grb.rs
[2014/01/13 17:54:51 | 000,021,504 | ---- | C] (Microsoft) -- C:\Windows\SysNative\grb.rs
[2014/01/13 17:54:51 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\pegi-pt.rs
[2014/01/13 17:54:51 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\SysNative\pegi-pt.rs
[2014/01/13 17:54:51 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\pegi.rs
[2014/01/13 17:54:51 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\SysNative\pegi.rs
[2014/01/13 17:54:51 | 000,015,360 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\djctq.rs
[2014/01/13 17:54:51 | 000,015,360 | ---- | C] (Microsoft) -- C:\Windows\SysNative\djctq.rs
[2014/01/13 17:54:50 | 000,055,296 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\cero.rs
[2014/01/13 17:54:50 | 000,055,296 | ---- | C] (Microsoft) -- C:\Windows\SysNative\cero.rs
[2014/01/13 17:54:50 | 000,051,712 | ---- | C] (Microsoft) -- C:\Windows\SysNative\esrb.rs
[2014/01/13 17:54:50 | 000,023,552 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\oflc.rs
[2014/01/13 17:54:50 | 000,023,552 | ---- | C] (Microsoft) -- C:\Windows\SysNative\oflc.rs
[2014/01/13 17:54:50 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\pegi-fi.rs
[2014/01/13 17:54:50 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\SysNative\pegi-fi.rs
[2014/01/13 17:54:47 | 000,142,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\poqexec.exe
[2014/01/13 17:54:47 | 000,123,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\poqexec.exe
[2014/01/13 17:54:45 | 001,118,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sbe.dll
[2014/01/13 17:54:45 | 000,961,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\CPFilters.dll
[2014/01/13 17:54:45 | 000,850,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sbe.dll
[2014/01/13 17:54:45 | 000,642,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\CPFilters.dll
[2014/01/13 17:54:45 | 000,259,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mpg2splt.ax
[2014/01/13 17:54:45 | 000,199,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mpg2splt.ax
[2014/01/13 17:54:42 | 000,111,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\consent.exe
[2014/01/13 17:54:36 | 000,199,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xmllite.dll
[2014/01/13 17:54:35 | 001,192,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\certutil.exe
[2014/01/13 17:54:35 | 000,903,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\certutil.exe
[2014/01/13 17:54:35 | 000,052,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\certenc.dll
[2014/01/13 17:54:35 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\certenc.dll
[2014/01/13 17:54:27 | 001,572,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\quartz.dll
[2014/01/13 17:54:27 | 001,328,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\quartz.dll
[2014/01/13 17:54:22 | 000,226,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dhcpcore6.dll
[2014/01/13 17:54:22 | 000,193,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dhcpcore6.dll
[2014/01/13 17:54:22 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dhcpcsvc6.dll
[2014/01/13 17:54:21 | 000,335,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msieftp.dll
[2014/01/13 17:54:21 | 000,301,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msieftp.dll
[2014/01/13 17:54:20 | 000,319,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbcjt32.dll
[2014/01/13 17:54:20 | 000,212,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbctrac.dll
[2014/01/13 17:54:20 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbctrac.dll
[2014/01/13 17:54:20 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbccp32.dll
[2014/01/13 17:54:20 | 000,122,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbccp32.dll
[2014/01/13 17:54:20 | 000,106,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbccu32.dll
[2014/01/13 17:54:20 | 000,106,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbccr32.dll
[2014/01/13 17:54:20 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbccu32.dll
[2014/01/13 17:54:20 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbccr32.dll
[2014/01/13 17:54:17 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cryptdlg.dll
[2014/01/13 17:54:17 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cryptdlg.dll
[2014/01/13 17:54:16 | 000,633,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\comctl32.dll
[2014/01/13 17:53:51 | 001,447,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll
[2014/01/13 17:53:51 | 000,307,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncrypt.dll
[2014/01/13 17:53:51 | 000,135,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspicli.dll
[2014/01/13 17:53:51 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspisrv.dll
[2014/01/13 17:53:51 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secur32.dll
[2014/01/13 17:53:43 | 005,549,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntoskrnl.exe
[2014/01/13 17:53:43 | 003,969,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntkrnlpa.exe
[2014/01/13 17:53:42 | 003,914,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntoskrnl.exe
[2014/01/13 17:53:42 | 001,732,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntdll.dll
[2014/01/13 17:53:42 | 000,878,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\advapi32.dll
[2014/01/13 17:53:42 | 000,859,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tdh.dll
[2014/01/13 17:53:42 | 000,619,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tdh.dll
[2014/01/13 17:53:42 | 000,243,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64.dll
[2014/01/13 17:53:42 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\setup16.exe
[2014/01/13 17:53:42 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntvdm64.dll
[2014/01/13 17:53:42 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\instnm.exe
[2014/01/13 17:53:42 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wow32.dll
[2014/01/13 17:53:42 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\user.exe
[2014/01/13 17:53:35 | 001,161,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kernel32.dll
[2014/01/13 17:53:35 | 000,424,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KernelBase.dll
[2014/01/13 17:53:35 | 000,338,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\conhost.exe
[2014/01/13 17:53:35 | 000,215,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winsrv.dll
[2014/01/13 17:53:35 | 000,112,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\smss.exe
[2014/01/13 17:53:35 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\csrsrv.dll
[2014/01/13 17:53:35 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\apisetschema.dll
[2014/01/13 17:53:35 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\apisetschema.dll
[2014/01/13 17:53:35 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
[2014/01/13 17:53:35 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-security-base-l1-1-0.dll
[2014/01/13 17:53:35 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-file-l1-1-0.dll
[2014/01/13 17:53:35 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-file-l1-1-0.dll
[2014/01/13 17:53:35 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
[2014/01/13 17:53:35 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-threadpool-l1-1-0.dll
[2014/01/13 17:53:35 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-processthreads-l1-1-0.dll
[2014/01/13 17:53:35 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-processthreads-l1-1-0.dll
[2014/01/13 17:53:35 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-sysinfo-l1-1-0.dll
[2014/01/13 17:53:35 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-sysinfo-l1-1-0.dll
[2014/01/13 17:53:35 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-synch-l1-1-0.dll
[2014/01/13 17:53:35 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-synch-l1-1-0.dll
[2014/01/13 17:53:35 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-misc-l1-1-0.dll
[2014/01/13 17:53:35 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-localregistry-l1-1-0.dll
[2014/01/13 17:53:35 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-localregistry-l1-1-0.dll
[2014/01/13 17:53:35 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-localization-l1-1-0.dll
[2014/01/13 17:53:35 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-localization-l1-1-0.dll
[2014/01/13 17:53:35 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
[2014/01/13 17:53:35 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-rtlsupport-l1-1-0.dll
[2014/01/13 17:53:35 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-processenvironment-l1-1-0.dll
[2014/01/13 17:53:35 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-processenvironment-l1-1-0.dll
[2014/01/13 17:53:35 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-namedpipe-l1-1-0.dll
[2014/01/13 17:53:35 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-namedpipe-l1-1-0.dll
[2014/01/13 17:53:35 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-misc-l1-1-0.dll
[2014/01/13 17:53:35 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-memory-l1-1-0.dll
[2014/01/13 17:53:35 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-memory-l1-1-0.dll
[2014/01/13 17:53:35 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-libraryloader-l1-1-0.dll
[2014/01/13 17:53:35 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-libraryloader-l1-1-0.dll
[2014/01/13 17:53:35 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-interlocked-l1-1-0.dll
[2014/01/13 17:53:35 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-heap-l1-1-0.dll
[2014/01/13 17:53:35 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-heap-l1-1-0.dll
[2014/01/13 17:53:35 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-xstate-l1-1-0.dll
[2014/01/13 17:53:35 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
[2014/01/13 17:53:35 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-util-l1-1-0.dll
[2014/01/13 17:53:35 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-string-l1-1-0.dll
[2014/01/13 17:53:35 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-string-l1-1-0.dll
[2014/01/13 17:53:35 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-rtlsupport-l1-1-0.dll
[2014/01/13 17:53:35 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-profile-l1-1-0.dll
[2014/01/13 17:53:35 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-profile-l1-1-0.dll
[2014/01/13 17:53:35 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-io-l1-1-0.dll
[2014/01/13 17:53:35 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-io-l1-1-0.dll
[2014/01/13 17:53:35 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-interlocked-l1-1-0.dll
[2014/01/13 17:53:35 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-handle-l1-1-0.dll
[2014/01/13 17:53:35 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-handle-l1-1-0.dll
[2014/01/13 17:53:35 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-fibers-l1-1-0.dll
[2014/01/13 17:53:35 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-fibers-l1-1-0.dll
[2014/01/13 17:53:35 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-errorhandling-l1-1-0.dll
[2014/01/13 17:53:35 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-errorhandling-l1-1-0.dll
[2014/01/13 17:53:35 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-delayload-l1-1-0.dll
[2014/01/13 17:53:35 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-delayload-l1-1-0.dll
[2014/01/13 17:53:35 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-debug-l1-1-0.dll
[2014/01/13 17:53:35 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-debug-l1-1-0.dll
[2014/01/13 17:53:35 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-datetime-l1-1-0.dll
[2014/01/13 17:53:35 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-datetime-l1-1-0.dll
[2014/01/13 17:53:35 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-console-l1-1-0.dll
[2014/01/13 17:53:35 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-console-l1-1-0.dll
[2014/01/13 17:53:32 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shdocvw.dll
[2014/01/13 17:53:29 | 000,216,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncsi.dll
[2014/01/13 17:53:29 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ncsi.dll
[2014/01/13 17:53:28 | 000,246,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netcorehc.dll
[2014/01/13 17:53:28 | 000,175,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netcorehc.dll
[2014/01/13 17:53:28 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netevent.dll
[2014/01/13 17:53:28 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netevent.dll
[2014/01/13 17:53:25 | 000,395,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\webio.dll
[2014/01/13 17:53:25 | 000,314,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\webio.dll
[2014/01/13 17:53:24 | 000,102,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\davclnt.dll
[2014/01/13 17:53:20 | 001,474,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\crypt32.dll
[2014/01/13 17:53:20 | 000,139,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cryptnet.dll
[2014/01/13 17:53:17 | 000,503,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srcore.dll
[2014/01/13 17:53:16 | 001,395,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfc42.dll
[2014/01/13 17:53:16 | 001,359,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfc42u.dll
[2014/01/13 17:53:16 | 001,164,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc42u.dll
[2014/01/13 17:53:16 | 001,137,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc42.dll
[2014/01/13 17:53:15 | 000,642,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winload.efi
[2014/01/13 17:53:15 | 000,605,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winload.exe
[2014/01/13 17:53:15 | 000,566,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winresume.efi
[2014/01/13 17:53:15 | 000,518,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winresume.exe
[2014/01/13 17:53:15 | 000,020,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kdusb.dll
[2014/01/13 17:53:15 | 000,019,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kd1394.dll
[2014/01/13 17:53:15 | 000,017,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kdcom.dll
[2014/01/13 17:53:14 | 000,751,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\win32spl.dll
[2014/01/13 17:53:14 | 000,515,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\timedate.cpl
[2014/01/13 17:53:14 | 000,492,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\win32spl.dll
[2014/01/13 17:53:14 | 000,478,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\timedate.cpl
[2014/01/13 17:53:14 | 000,149,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcorekmts.dll
[2014/01/13 17:53:14 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpwsx.dll
[2014/01/13 17:53:14 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdrmemptylst.exe
[2014/01/13 17:53:13 | 000,081,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imagehlp.dll
[2014/01/13 17:53:12 | 000,265,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\dxgmms1.sys
[2014/01/13 17:53:12 | 000,245,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\OxpsConverter.exe
[2014/01/13 17:53:12 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cdd.dll
[2014/01/13 17:53:11 | 003,216,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msi.dll
[2014/01/13 17:53:11 | 000,027,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\Diskdump.sys
[2014/01/13 17:53:10 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wwanprotdim.dll
[2014/01/13 17:53:01 | 000,252,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drvinst.exe
[2014/01/13 17:53:01 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\devrtl.dll
[2014/01/13 17:52:56 | 000,068,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskhost.exe
[2014/01/13 17:52:44 | 001,887,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d11.dll
[2014/01/13 17:52:44 | 001,505,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d11.dll
[2014/01/13 17:52:43 | 001,888,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMVDECOD.DLL
[2014/01/13 17:52:43 | 001,620,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMVDECOD.DLL
[2014/01/13 17:52:42 | 000,054,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\WdfLdr.sys
[2014/01/13 17:52:42 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Wdfres.dll
[2014/01/13 17:52:40 | 000,288,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\FWPKCLNT.SYS
[2014/01/13 17:52:39 | 000,267,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FXSCOVER.exe
[2014/01/13 17:52:38 | 000,095,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\synceng.dll
[2014/01/13 17:52:38 | 000,078,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\synceng.dll
[2014/01/13 17:52:36 | 000,723,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\EncDec.dll
[2014/01/13 17:52:36 | 000,534,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\EncDec.dll
[2014/01/13 17:52:36 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msxml3r.dll
[2014/01/13 17:52:36 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msxml3r.dll
[2014/01/13 17:52:34 | 001,133,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cdosys.dll
[2014/01/13 17:52:34 | 000,805,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cdosys.dll
[2014/01/13 17:52:32 | 000,634,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msvcrt.dll
[2014/01/13 17:52:32 | 000,202,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scrrun.dll
[2014/01/13 17:52:32 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scrrun.dll
[2014/01/13 17:52:32 | 000,156,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cscript.exe
[2014/01/13 17:52:32 | 000,150,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wshom.ocx
[2014/01/13 17:52:32 | 000,126,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cscript.exe
[2014/01/13 17:52:32 | 000,121,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wshom.ocx
[2014/01/13 17:52:31 | 000,404,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\gdi32.dll
[2014/01/13 17:52:26 | 000,613,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\psisdecd.dll
[2014/01/13 17:52:26 | 000,465,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\psisdecd.dll
[2014/01/13 17:52:26 | 000,155,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ataport.sys
[2014/01/13 17:52:26 | 000,108,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\psisrndr.ax
[2014/01/13 17:52:26 | 000,075,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\psisrndr.ax
[2014/01/13 17:52:25 | 001,217,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rpcrt4.dll
[2014/01/13 17:52:25 | 000,800,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\usp10.dll
[2014/01/13 17:52:22 | 000,368,128 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysNative\atmfd.dll
[2014/01/13 17:52:22 | 000,295,424 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\atmfd.dll
[2014/01/13 17:52:22 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fontsub.dll
[2014/01/13 17:52:22 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\hidclass.sys
[2014/01/13 17:52:22 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fontsub.dll
[2014/01/13 17:52:22 | 000,046,080 | ---- | C] (Adobe Systems) -- C:\Windows\SysNative\atmlib.dll
[2014/01/13 17:52:22 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\RNDISMP.sys
[2014/01/13 17:52:22 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lpk.dll
[2014/01/13 17:52:22 | 000,034,304 | ---- | C] (Adobe Systems) -- C:\Windows\SysWow64\atmlib.dll
[2014/01/13 17:52:22 | 000,032,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\hidparse.sys
[2014/01/13 17:52:22 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dciman32.dll
[2014/01/13 17:52:21 | 000,624,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qedit.dll
[2014/01/13 17:52:21 | 000,509,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qedit.dll
[2014/01/13 17:52:21 | 000,230,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\portcls.sys
[2014/01/13 17:52:21 | 000,116,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\drmk.sys
[2014/01/13 17:52:20 | 000,357,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dnsapi.dll
[2014/01/13 17:52:20 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dnscacheugc.exe
[2014/01/13 17:52:20 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dnscacheugc.exe
[2014/01/13 17:52:19 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netapi32.dll
[2014/01/13 17:52:19 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\browcli.dll
[2014/01/13 17:52:19 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\browcli.dll
[2014/01/13 17:52:17 | 000,124,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PresentationCFFRasterizerNative_v0300.dll
[2014/01/13 17:52:17 | 000,102,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PresentationCFFRasterizerNative_v0300.dll
[2014/01/13 17:52:16 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\prevhost.exe
[2014/01/13 17:52:16 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\prevhost.exe
[2014/01/13 17:52:16 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usb8023.sys
[2014/01/13 17:52:14 | 000,861,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\oleaut32.dll
[2014/01/13 17:52:14 | 000,331,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\oleacc.dll
[2014/01/13 17:52:12 | 000,478,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dpnet.dll
[2014/01/13 17:52:12 | 000,376,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dpnet.dll
[2014/01/13 17:52:10 | 000,956,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\localspl.dll
[2014/01/13 17:51:42 | 000,830,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nshwfp.dll
[2014/01/13 17:51:42 | 000,656,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nshwfp.dll
[2014/01/13 17:51:42 | 000,324,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FWPUCLNT.DLL
[2014/01/13 17:51:42 | 000,216,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\FWPUCLNT.DLL
[2014/01/13 17:50:33 | 000,461,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scavengeui.dll
[2014/01/13 17:42:26 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\packager.dll
[2014/01/13 17:42:26 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\packager.dll
[2014/01/13 17:41:04 | 001,031,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcore.dll
[2014/01/13 17:41:04 | 000,826,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdpcore.dll
[2014/01/13 17:38:34 | 002,622,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wucltux.dll
[2014/01/13 17:38:34 | 000,057,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuauclt.exe
[2014/01/13 17:38:34 | 000,044,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wups2.dll
[2014/01/13 17:38:26 | 000,701,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuapi.dll
[2014/01/13 17:38:26 | 000,099,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wudriver.dll
[2014/01/13 17:38:26 | 000,038,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wups.dll
[2014/01/13 17:38:20 | 000,186,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuwebv.dll
[2014/01/13 17:38:20 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuapp.exe
[2014/01/13 17:07:46 | 005,195,776 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\ig4dev64.dll
[2014/01/13 17:07:46 | 003,839,488 | ---- | C] (Intel Corporation) -- C:\Windows\SysWow64\ig4dev32.dll
[2014/01/13 17:07:46 | 001,306,112 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxCoIn_v1851.dll
[2014/01/13 17:07:46 | 000,845,848 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxcfg.exe
[2014/01/13 17:07:46 | 000,830,464 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxress.dll
[2014/01/13 17:07:46 | 000,305,152 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxresp.lrc
[2014/01/13 17:07:46 | 000,272,896 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxdev.dll
[2014/01/13 17:07:46 | 000,108,544 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\hccutils.dll
[2014/01/13 17:07:46 | 000,061,952 | ---- | C] (Intel Corporation) -- C:\Windows\SysNative\igfxsrvc.dll
[2014/01/13 17:07:46 | 000,059,392 | ---- | C] (Intel Corporation) -- C:\Windows\SysWow64\oemdspif.dll
[2014/01/13 17:07:35 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\Lang
[2014/01/13 17:07:34 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\x64
[2014/01/13 17:06:35 | 000,539,240 | ---- | C] (Realtek ) -- C:\Windows\SysNative\drivers\Rt64win7.sys
[2014/01/13 17:06:35 | 000,107,552 | ---- | C] (Realtek Semiconductor Corporation) -- C:\Windows\SysNative\RTNUninst64.dll
[2014/01/13 17:06:00 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\RTCOM
[2014/01/13 17:06:00 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek
[2014/01/13 17:05:49 | 002,604,376 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\WavesGUILib.dll
[2014/01/13 17:05:49 | 000,518,896 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSTSX64.dll
[2014/01/13 17:05:49 | 000,332,392 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtlCPAPI64.dll
[2014/01/13 17:05:49 | 000,220,512 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SFNHK64.dll
[2014/01/13 17:05:49 | 000,211,184 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSTSH64.dll
[2014/01/13 17:05:49 | 000,198,896 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSHP64.dll
[2014/01/13 17:05:49 | 000,155,888 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSWOW64.dll
[2014/01/13 17:05:49 | 000,149,608 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkCfg64.dll
[2014/01/13 17:05:49 | 000,121,744 | ---- | C] (Sony Corporation) -- C:\Windows\SysNative\SFSS_APO.dll
[2014/01/13 17:05:49 | 000,081,248 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SFCOM64.dll
[2014/01/13 17:05:49 | 000,078,176 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SFAPO64.dll
[2014/01/13 17:05:49 | 000,074,064 | ---- | C] (Virage Logic Corporation / Sonic Focus) -- C:\Windows\SysWow64\SFCOM.dll
[2014/01/13 17:05:48 | 003,115,112 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkAPO64.dll
[2014/01/13 17:05:48 | 002,428,520 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtPgEx64.dll
[2014/01/13 17:05:48 | 001,805,928 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkApi64.dll
[2014/01/13 17:05:48 | 001,560,680 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RTSnMg64.cpl
[2014/01/13 17:05:48 | 001,245,288 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RTCOM64.dll
[2014/01/13 17:05:48 | 000,375,128 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEP64A.dll
[2014/01/13 17:05:48 | 000,310,104 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DHT64.dll
[2014/01/13 17:05:48 | 000,204,120 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEED64A.dll
[2014/01/13 17:05:48 | 000,101,208 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEL64A.dll
[2014/01/13 17:05:48 | 000,078,680 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEG64A.dll
[2014/01/13 17:05:47 | 001,474,048 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RCoRes64.dat
[2014/01/13 17:05:47 | 000,310,104 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DAA64.dll
[2014/01/13 17:05:47 | 000,092,264 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RCoInst64.dll
[2014/01/13 17:05:46 | 003,768,152 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioRealtek.dll
[2014/01/13 17:05:46 | 003,308,376 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEP64A.dll
[2014/01/13 17:05:46 | 000,426,328 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EED64A.dll
[2014/01/13 17:05:46 | 000,334,680 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxVolumeSDAPO.dll
[2014/01/13 17:05:46 | 000,136,024 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEL64A.dll
[2014/01/13 17:05:46 | 000,118,104 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEA64A.dll
[2014/01/13 17:05:46 | 000,074,072 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEG64A.dll
[2014/01/13 17:05:45 | 002,197,264 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioEQ.dll
[2014/01/13 17:05:45 | 000,603,472 | ---- | C] (Knowles Acoustics ) -- C:\Windows\SysNative\KAAPORT64.dll
[2014/01/13 17:05:45 | 000,341,336 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPO30.dll
[2014/01/13 17:05:45 | 000,318,808 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPO20.dll
[2014/01/13 17:05:42 | 002,085,440 | ---- | C] (Fortemedia Corporation) -- C:\Windows\SysNative\FMAPO64.dll
[2014/01/13 17:05:42 | 001,756,264 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSS2SpeakerDLL64.dll
[2014/01/13 17:05:42 | 001,568,360 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSS2HeadphoneDLL64.dll
[2014/01/13 17:05:42 | 000,712,296 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSSymmetryDLL64.dll
[2014/01/13 17:05:42 | 000,693,352 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSVoiceClarityDLL64.dll
[2014/01/13 17:05:42 | 000,491,112 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSNeoPCDLL64.dll
[2014/01/13 17:05:42 | 000,432,744 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSLimiterDLL64.dll
[2014/01/13 17:05:42 | 000,428,648 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSGainCompensatorDLL64.dll
[2014/01/13 17:05:42 | 000,242,792 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSLFXAPO64.dll
[2014/01/13 17:05:42 | 000,242,792 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSGFXAPO64.dll
[2014/01/13 17:05:42 | 000,241,768 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSGFXAPONS64.dll
[2014/01/13 17:05:41 | 001,486,952 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSBoostDLL64.dll
[2014/01/13 17:05:41 | 000,728,680 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSBassEnhancementDLL64.dll
[2014/01/13 17:05:41 | 000,200,800 | ---- | C] (Andrea Electronics Corporation) -- C:\Windows\SysNative\AERTAC64.dll
[2014/01/13 17:05:41 | 000,108,960 | ---- | C] (Andrea Electronics Corporation) -- C:\Windows\SysNative\AERTAR64.dll
[2014/01/13 17:05:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Realtek
[2014/01/13 17:05:40 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\Temp
[2014/01/13 17:05:40 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\InstallShield Installation Information
[2014/01/13 17:05:39 | 001,698,408 | R--- | C] (Realtek Semiconductor Corp.) -- C:\Windows\RtlExUpd.dll
[2014/01/13 17:05:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\InstallShield
[2014/01/13 17:05:18 | 000,053,248 | R--- | C] (Windows XP Bundled build C-Centric Single User) -- C:\Windows\SysWow64\CSVer.dll
[2014/01/13 17:05:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Intel
[2014/01/13 17:05:02 | 000,000,000 | ---D | C] -- C:\Intel
[2014/01/13 16:58:36 | 000,000,000 | R--D | C] -- C:\Users\Judy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
[2014/01/13 16:58:36 | 000,000,000 | R--D | C] -- C:\Users\Judy\Searches
[2014/01/13 16:58:36 | 000,000,000 | R--D | C] -- C:\Users\Judy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
[2014/01/13 16:58:36 | 000,000,000 | -H-D | C] -- C:\Users\Judy\Application Data\Microsoft\Internet Explorer\Quick Launch\User Pinned
[2014/01/13 16:58:27 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Roaming\Identities
[2014/01/13 16:58:25 | 000,000,000 | R--D | C] -- C:\Users\Judy\Contacts
[2014/01/13 16:58:24 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Local\VirtualStore
[2014/01/13 16:58:16 | 000,000,000 | -HSD | C] -- C:\Users\Judy\AppData\Local\Temporary Internet Files
[2014/01/13 16:58:16 | 000,000,000 | -HSD | C] -- C:\Users\Judy\Templates
[2014/01/13 16:58:16 | 000,000,000 | -HSD | C] -- C:\Users\Judy\Start Menu
[2014/01/13 16:58:16 | 000,000,000 | -HSD | C] -- C:\Users\Judy\SendTo
[2014/01/13 16:58:16 | 000,000,000 | -HSD | C] -- C:\Users\Judy\Recent
[2014/01/13 16:58:16 | 000,000,000 | -HSD | C] -- C:\Users\Judy\PrintHood
[2014/01/13 16:58:16 | 000,000,000 | -HSD | C] -- C:\Users\Judy\NetHood
[2014/01/13 16:58:16 | 000,000,000 | -HSD | C] -- C:\Users\Judy\Documents\My Videos
[2014/01/13 16:58:16 | 000,000,000 | -HSD | C] -- C:\Users\Judy\Documents\My Pictures
[2014/01/13 16:58:16 | 000,000,000 | -HSD | C] -- C:\Users\Judy\Documents\My Music
[2014/01/13 16:58:16 | 000,000,000 | -HSD | C] -- C:\Users\Judy\My Documents
[2014/01/13 16:58:16 | 000,000,000 | -HSD | C] -- C:\Users\Judy\Local Settings
[2014/01/13 16:58:16 | 000,000,000 | -HSD | C] -- C:\Users\Judy\AppData\Local\History
[2014/01/13 16:58:16 | 000,000,000 | -HSD | C] -- C:\Users\Judy\Cookies
[2014/01/13 16:58:16 | 000,000,000 | -HSD | C] -- C:\Users\Judy\Application Data
[2014/01/13 16:58:16 | 000,000,000 | -HSD | C] -- C:\Users\Judy\AppData\Local\Application Data
[2014/01/13 16:58:15 | 000,000,000 | --SD | C] -- C:\Users\Judy\AppData\Roaming\Microsoft
[2014/01/13 16:58:15 | 000,000,000 | R--D | C] -- C:\Users\Judy\Videos
[2014/01/13 16:58:15 | 000,000,000 | R--D | C] -- C:\Users\Judy\Saved Games
[2014/01/13 16:58:15 | 000,000,000 | R--D | C] -- C:\Users\Judy\Pictures
[2014/01/13 16:58:15 | 000,000,000 | R--D | C] -- C:\Users\Judy\Music
[2014/01/13 16:58:15 | 000,000,000 | R--D | C] -- C:\Users\Judy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
[2014/01/13 16:58:15 | 000,000,000 | R--D | C] -- C:\Users\Judy\Links
[2014/01/13 16:58:15 | 000,000,000 | R--D | C] -- C:\Users\Judy\Favorites
[2014/01/13 16:58:15 | 000,000,000 | R--D | C] -- C:\Users\Judy\Downloads
[2014/01/13 16:58:15 | 000,000,000 | R--D | C] -- C:\Users\Judy\Documents
[2014/01/13 16:58:15 | 000,000,000 | R--D | C] -- C:\Users\Judy\Desktop
[2014/01/13 16:58:15 | 000,000,000 | R--D | C] -- C:\Users\Judy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
[2014/01/13 16:58:15 | 000,000,000 | -H-D | C] -- C:\Users\Judy\AppData
[2014/01/13 16:58:15 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Local\Temp
[2014/01/13 16:58:15 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Local\Microsoft
[2014/01/13 16:58:15 | 000,000,000 | ---D | C] -- C:\Users\Judy\AppData\Roaming\Media Center Programs
[2014/01/13 16:58:10 | 000,000,000 | ---D | C] -- C:\Recovery
[2014/01/13 16:58:07 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution

========== Files - Modified Within 30 Days ==========

[2014/01/23 18:20:00 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2014/01/23 17:36:14 | 000,022,064 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2014/01/23 17:36:14 | 000,022,064 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2014/01/23 17:35:04 | 000,781,298 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2014/01/23 17:35:04 | 000,661,656 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2014/01/23 17:35:04 | 000,121,524 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2014/01/23 17:30:17 | 000,000,020 | ---- | M] () -- C:\Windows\SysNative\drivers\SMR410.dat
[2014/01/23 17:30:14 | 000,096,856 | ---- | M] (Symantec Corporation) -- C:\Windows\SysNative\drivers\SMR410.SYS
[2014/01/23 17:28:35 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2014/01/23 17:28:30 | 2120,048,639 | -HS- | M] () -- C:\hiberfil.sys
[2014/01/23 13:37:11 | 000,199,747 | ---- | M] () -- C:\ProgramData\1390501976.bdinstall.bin
[2014/01/23 13:34:16 | 000,002,207 | ---- | M] () -- C:\Users\Public\Desktop\Bitdefender Antivirus Free Edition.lnk
[2014/01/23 13:34:14 | 001,710,025 | ---- | M] () -- C:\Windows\SysNative\drivers\NAVx64\1501000.012\Cat.DB
[2014/01/23 13:30:45 | 000,044,432 | ---- | M] () -- C:\ProgramData\1390501834.1728.bin
[2014/01/23 13:30:45 | 000,002,049 | ---- | M] () -- C:\ProgramData\1390501834.3236.bin
[2014/01/23 13:30:45 | 000,000,810 | ---- | M] () -- C:\ProgramData\1390501834.1320.bin
[2014/01/23 13:29:58 | 000,045,467 | ---- | M] () -- C:\ProgramData\1390501781.bdinstall.bin
[2014/01/23 13:25:57 | 000,045,598 | ---- | M] () -- C:\ProgramData\1390501532.bdinstall.bin
[2014/01/23 12:48:20 | 000,001,182 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2014/01/23 11:24:39 | 000,000,206 | ---- | M] () -- C:\Users\Judy\Documents\cc_20140123_112436.reg
[2014/01/23 11:24:23 | 000,004,134 | ---- | M] () -- C:\Users\Judy\Documents\cc_20140123_112420.reg
[2014/01/23 11:24:05 | 000,000,206 | ---- | M] () -- C:\Users\Judy\Documents\cc_20140123_112401.reg
[2014/01/23 11:23:26 | 000,001,438 | ---- | M] () -- C:\Users\Judy\Documents\cc_20140123_112323.reg
[2014/01/23 11:23:10 | 000,053,554 | ---- | M] () -- C:\Users\Judy\Documents\cc_20140123_112305.reg
[2014/01/22 12:26:12 | 000,049,238 | ---- | M] () -- C:\Users\Judy\Documents\Evergreenonlinemedia.com purchase 1and1.png
[2014/01/22 10:50:45 | 000,001,037 | ---- | M] () -- C:\Users\Judy\Desktop\Dropbox.lnk
[2014/01/22 10:48:30 | 000,001,047 | ---- | M] () -- C:\Users\Judy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
[2014/01/22 10:01:01 | 000,001,186 | ---- | M] () -- C:\Users\Public\Desktop\HMA! Pro VPN.lnk
[2014/01/21 21:02:33 | 000,004,608 | ---- | M] () -- C:\Users\Judy\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2014/01/21 16:54:26 | 000,002,035 | ---- | M] () -- C:\Users\Public\Desktop\FileZilla Client.lnk
[2014/01/20 10:28:16 | 000,010,696 | ---- | M] () -- C:\Users\Judy\Documents\index.rar
[2014/01/20 10:13:51 | 000,057,959 | ---- | M] () -- C:\Users\Judy\Documents\index.html
[2014/01/19 16:33:10 | 000,026,631 | ---- | M] () -- C:\Users\Judy\Documents\Resume.odt
[2014/01/19 16:32:07 | 000,025,330 | ---- | M] () -- C:\Users\Judy\Desktop\Resume.odt
[2014/01/19 16:13:46 | 000,022,516 | ---- | M] () -- C:\Users\Judy\Documents\Cover Letter.odt
[2014/01/19 13:23:04 | 000,057,959 | ---- | M] () -- C:\Users\Judy\Desktop\index.html
[2014/01/16 15:33:03 | 000,024,908 | ---- | M] () -- C:\Windows\SysNative\drivers\NAVx64\1501000.012\VT20140116.020
[2014/01/16 11:01:35 | 000,001,004 | ---- | M] () -- C:\Users\Public\Desktop\SRWare Iron.lnk
[2014/01/16 08:12:58 | 000,441,960 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2014/01/15 13:54:49 | 000,001,168 | ---- | M] () -- C:\Users\Public\Desktop\Camtasia Studio 8.lnk
[2014/01/15 13:47:42 | 000,001,030 | ---- | M] () -- C:\Users\Public\Desktop\Xara Designer Pro 7.lnk
[2014/01/15 12:04:26 | 000,004,320 | ---- | M] () -- C:\Users\Judy\Documents\cc_20140115_120416.reg
[2014/01/14 16:03:44 | 000,000,809 | ---- | M] () -- C:\Users\Public\Desktop\slf.lnk
[2014/01/14 15:40:05 | 000,001,051 | ---- | M] () -- C:\Users\Judy\Desktop\Notepad++.lnk
[2014/01/14 15:37:01 | 000,001,101 | ---- | M] () -- C:\Users\Public\Desktop\FBMatic - Automates Facebook.lnk
[2014/01/14 15:33:20 | 000,001,056 | ---- | M] () -- C:\Users\Judy\Desktop\join.me.lnk
[2014/01/14 15:20:35 | 000,000,866 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
[2014/01/14 15:14:39 | 000,205,692 | ---- | M] () -- C:\Windows\XHeader Uninstaller.exe
[2014/01/14 15:12:21 | 000,001,176 | ---- | M] () -- C:\Users\Public\Desktop\Snagit 11 Editor.lnk
[2014/01/14 15:12:21 | 000,001,156 | ---- | M] () -- C:\Users\Judy\Application Data\Microsoft\Internet Explorer\Quick Launch\Snagit 11.lnk
[2014/01/14 15:12:20 | 000,001,132 | ---- | M] () -- C:\Users\Public\Desktop\Snagit 11.lnk
[2014/01/14 13:20:12 | 000,692,616 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2014/01/14 13:20:12 | 000,071,048 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2014/01/14 13:09:06 | 000,002,697 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk
[2014/01/14 12:59:09 | 000,060,794 | ---- | M] () -- C:\Users\Judy\Desktop\Voice Message.zip
[2014/01/14 11:29:33 | 000,177,752 | ---- | M] (Symantec Corporation) -- C:\Windows\SysNative\drivers\SYMEVENT64x86.SYS
[2014/01/14 11:29:33 | 000,008,222 | ---- | M] () -- C:\Windows\SysNative\drivers\SYMEVENT64x86.CAT
[2014/01/14 11:29:33 | 000,000,854 | ---- | M] () -- C:\Windows\SysNative\drivers\SYMEVENT64x86.INF
[2014/01/14 11:28:38 | 000,001,407 | ---- | M] () -- C:\Users\Judy\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2014/01/14 11:16:19 | 000,312,744 | ---- | M] (Oracle Corporation) -- C:\Windows\SysNative\javaws.exe
[2014/01/14 11:16:19 | 000,189,352 | ---- | M] (Oracle Corporation) -- C:\Windows\SysNative\javaw.exe
[2014/01/14 11:16:19 | 000,189,352 | ---- | M] (Oracle Corporation) -- C:\Windows\SysNative\java.exe
[2014/01/14 11:16:19 | 000,108,968 | ---- | M] (Oracle Corporation) -- C:\Windows\SysNative\WindowsAccessBridge-64.dll
[2014/01/14 11:01:22 | 000,002,766 | ---- | M] () -- C:\Users\Judy\Application Data\Microsoft\Internet Explorer\Quick Launch\Nero StartSmart Essentials.lnk
[2014/01/13 19:56:10 | 000,115,640 | ---- | M] () -- C:\Windows\SysWow64\license.rtf
[2014/01/13 19:56:10 | 000,115,640 | ---- | M] () -- C:\Windows\SysNative\license.rtf
[2014/01/13 19:54:15 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2014/01/13 19:02:37 | 000,757,660 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2014/01/13 18:28:14 | 003,959,808 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2014/01/13 18:28:14 | 001,509,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2014/01/13 18:28:14 | 001,441,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2014/01/13 18:28:14 | 001,400,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dat
[2014/01/13 18:28:14 | 001,400,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dat
[2014/01/13 18:28:14 | 001,054,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\MsSpellCheckingFacility.exe
[2014/01/13 18:28:14 | 000,905,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmlmedia.dll
[2014/01/13 18:28:14 | 000,855,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
[2014/01/13 18:28:14 | 000,762,368 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll
[2014/01/13 18:28:14 | 000,719,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmlmedia.dll
[2014/01/13 18:28:14 | 000,690,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2014/01/13 18:28:14 | 000,629,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
[2014/01/13 18:28:14 | 000,603,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2014/01/13 18:28:14 | 000,599,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
[2014/01/13 18:28:14 | 000,526,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2014/01/13 18:28:14 | 000,452,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\dxtmsft.dll
[2014/01/13 18:28:14 | 000,441,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\html.iec
[2014/01/13 18:28:14 | 000,391,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2014/01/13 18:28:14 | 000,361,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\html.iec
[2014/01/13 18:28:14 | 000,281,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll
[2014/01/13 18:28:14 | 000,235,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\url.dll
[2014/01/13 18:28:14 | 000,232,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\url.dll
[2014/01/13 18:28:14 | 000,226,304 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\elshyph.dll
[2014/01/13 18:28:14 | 000,216,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msls31.dll
[2014/01/13 18:28:14 | 000,197,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msrating.dll
[2014/01/13 18:28:14 | 000,185,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\elshyph.dll
[2014/01/13 18:28:14 | 000,173,568 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
[2014/01/13 18:28:14 | 000,167,424 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iexpress.exe
[2014/01/13 18:28:14 | 000,163,840 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
[2014/01/13 18:28:14 | 000,150,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iexpress.exe
[2014/01/13 18:28:14 | 000,149,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\occache.dll
[2014/01/13 18:28:14 | 000,144,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wextract.exe
[2014/01/13 18:28:14 | 000,138,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\wextract.exe
[2014/01/13 18:28:14 | 000,137,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2014/01/13 18:28:14 | 000,136,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iesysprep.dll
[2014/01/13 18:28:14 | 000,136,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iepeers.dll
[2014/01/13 18:28:14 | 000,135,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\IEAdvpack.dll
[2014/01/13 18:28:14 | 000,125,440 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\occache.dll
[2014/01/13 18:28:14 | 000,117,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iepeers.dll
[2014/01/13 18:28:14 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\IEAdvpack.dll
[2014/01/13 18:28:14 | 000,109,056 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iesysprep.dll
[2014/01/13 18:28:14 | 000,102,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\inseng.dll
[2014/01/13 18:28:14 | 000,097,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2014/01/13 18:28:14 | 000,092,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\SetIEInstalledDate.exe
[2014/01/13 18:28:14 | 000,089,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\RegisterIEPKEYs.exe
[2014/01/13 18:28:14 | 000,082,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\inseng.dll
[2014/01/13 18:28:14 | 000,081,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\icardie.dll
[2014/01/13 18:28:14 | 000,079,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2014/01/13 18:28:14 | 000,077,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\tdc.ocx
[2014/01/13 18:28:14 | 000,073,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\SetIEInstalledDate.exe
[2014/01/13 18:28:14 | 000,071,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\RegisterIEPKEYs.exe
[2014/01/13 18:28:14 | 000,069,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\icardie.dll
[2014/01/13 18:28:14 | 000,067,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll
[2014/01/13 18:28:14 | 000,062,976 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\pngfilt.dll
[2014/01/13 18:28:14 | 000,061,952 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\tdc.ocx
[2014/01/13 18:28:14 | 000,061,440 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
[2014/01/13 18:28:14 | 000,057,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\pngfilt.dll
[2014/01/13 18:28:14 | 000,051,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
[2014/01/13 18:28:14 | 000,051,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\imgutil.dll
[2014/01/13 18:28:14 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmler.dll
[2014/01/13 18:28:14 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmler.dll
[2014/01/13 18:28:14 | 000,039,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll
[2014/01/13 18:28:14 | 000,033,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
[2014/01/13 18:28:14 | 000,027,648 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\licmgr10.dll
[2014/01/13 18:28:14 | 000,025,185 | ---- | M] () -- C:\Windows\SysWow64\ieuinit.inf
[2014/01/13 18:28:14 | 000,025,185 | ---- | M] () -- C:\Windows\SysNative\ieuinit.inf
[2014/01/13 18:28:14 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\licmgr10.dll
[2014/01/13 18:28:14 | 000,013,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshta.exe
[2014/01/13 18:28:14 | 000,012,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msfeedssync.exe
[2014/01/13 18:28:14 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeedssync.exe
[2014/01/13 17:10:18 | 000,015,232 | ---- | M] () -- C:\Windows\SysNative\results.xml
[2014/01/13 17:07:54 | 000,037,393 | ---- | M] () -- C:\Windows\Ascd_log.ini
[2014/01/13 17:04:18 | 000,028,086 | ---- | M] () -- C:\Windows\Ascd_tmp.ini
[2014/01/13 17:04:05 | 000,001,769 | ---- | M] () -- C:\Windows\Language_trs.ini

========== Files Created - No Company Name ==========

[2014/01/23 17:30:16 | 000,000,020 | ---- | C] () -- C:\Windows\SysNative\drivers\SMR410.dat
[2014/01/23 13:37:11 | 000,199,747 | ---- | C] () -- C:\ProgramData\1390501976.bdinstall.bin
[2014/01/23 13:34:15 | 000,002,207 | ---- | C] () -- C:\Users\Public\Desktop\Bitdefender Antivirus Free Edition.lnk
[2014/01/23 13:30:37 | 000,000,810 | ---- | C] () -- C:\ProgramData\1390501834.1320.bin
[2014/01/23 13:30:36 | 000,002,049 | ---- | C] () -- C:\ProgramData\1390501834.3236.bin
[2014/01/23 13:30:34 | 000,044,432 | ---- | C] () -- C:\ProgramData\1390501834.1728.bin
[2014/01/23 13:29:58 | 000,045,467 | ---- | C] () -- C:\ProgramData\1390501781.bdinstall.bin
[2014/01/23 13:25:57 | 000,045,598 | ---- | C] () -- C:\ProgramData\1390501532.bdinstall.bin
[2014/01/23 13:13:16 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
[2014/01/23 13:13:16 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2014/01/23 13:13:16 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2014/01/23 13:13:16 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2014/01/23 13:13:16 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2014/01/23 12:48:18 | 000,001,182 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2014/01/23 12:48:12 | 000,001,194 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
[2014/01/23 11:24:38 | 000,000,206 | ---- | C] () -- C:\Users\Judy\Documents\cc_20140123_112436.reg
[2014/01/23 11:24:21 | 000,004,134 | ---- | C] () -- C:\Users\Judy\Documents\cc_20140123_112420.reg
[2014/01/23 11:24:03 | 000,000,206 | ---- | C] () -- C:\Users\Judy\Documents\cc_20140123_112401.reg
[2014/01/23 11:23:25 | 000,001,438 | ---- | C] () -- C:\Users\Judy\Documents\cc_20140123_112323.reg
[2014/01/23 11:23:07 | 000,053,554 | ---- | C] () -- C:\Users\Judy\Documents\cc_20140123_112305.reg
[2014/01/22 12:25:08 | 000,049,238 | ---- | C] () -- C:\Users\Judy\Documents\Evergreenonlinemedia.com purchase 1and1.png
[2014/01/22 10:50:45 | 000,001,037 | ---- | C] () -- C:\Users\Judy\Desktop\Dropbox.lnk
[2014/01/22 10:48:30 | 000,001,047 | ---- | C] () -- C:\Users\Judy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
[2014/01/22 10:01:01 | 000,001,186 | ---- | C] () -- C:\Users\Public\Desktop\HMA! Pro VPN.lnk
[2014/01/21 20:11:22 | 000,004,608 | ---- | C] () -- C:\Users\Judy\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2014/01/21 16:54:24 | 000,002,035 | ---- | C] () -- C:\Users\Public\Desktop\FileZilla Client.lnk
[2014/01/20 10:28:15 | 000,010,696 | ---- | C] () -- C:\Users\Judy\Documents\index.rar
[2014/01/20 10:13:50 | 000,057,959 | ---- | C] () -- C:\Users\Judy\Documents\index.html
[2014/01/19 16:32:06 | 000,025,330 | ---- | C] () -- C:\Users\Judy\Desktop\Resume.odt
[2014/01/19 13:50:50 | 000,022,516 | ---- | C] () -- C:\Users\Judy\Documents\Cover Letter.odt
[2014/01/19 13:23:03 | 000,057,959 | ---- | C] () -- C:\Users\Judy\Desktop\index.html
[2014/01/19 13:12:36 | 000,026,631 | ---- | C] () -- C:\Users\Judy\Documents\Resume.odt
[2014/01/16 19:11:30 | 000,024,908 | ---- | C] () -- C:\Windows\SysNative\drivers\NAVx64\1501000.012\VT20140116.020
[2014/01/16 11:01:35 | 000,001,004 | ---- | C] () -- C:\Users\Public\Desktop\SRWare Iron.lnk
[2014/01/15 13:54:48 | 000,001,168 | ---- | C] () -- C:\Users\Public\Desktop\Camtasia Studio 8.lnk
[2014/01/15 13:47:41 | 000,001,030 | ---- | C] () -- C:\Users\Public\Desktop\Xara Designer Pro 7.lnk
[2014/01/15 12:04:19 | 000,004,320 | ---- | C] () -- C:\Users\Judy\Documents\cc_20140115_120416.reg
[2014/01/14 16:03:45 | 000,000,821 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\slf.lnk
[2014/01/14 16:03:43 | 000,000,809 | ---- | C] () -- C:\Users\Public\Desktop\slf.lnk
[2014/01/14 15:40:05 | 000,001,051 | ---- | C] () -- C:\Users\Judy\Desktop\Notepad++.lnk
[2014/01/14 15:37:00 | 000,001,101 | ---- | C] () -- C:\Users\Public\Desktop\FBMatic - Automates Facebook.lnk
[2014/01/14 15:33:20 | 000,001,056 | ---- | C] () -- C:\Users\Judy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\join.me.lnk
[2014/01/14 15:33:19 | 000,001,056 | ---- | C] () -- C:\Users\Judy\Desktop\join.me.lnk
[2014/01/14 15:14:37 | 000,205,692 | ---- | C] () -- C:\Windows\XHeader Uninstaller.exe
[2014/01/14 15:12:21 | 000,001,156 | ---- | C] () -- C:\Users\Judy\Application Data\Microsoft\Internet Explorer\Quick Launch\Snagit 11.lnk
[2014/01/14 15:12:20 | 000,001,176 | ---- | C] () -- C:\Users\Public\Desktop\Snagit 11 Editor.lnk
[2014/01/14 15:12:18 | 000,001,132 | ---- | C] () -- C:\Users\Public\Desktop\Snagit 11.lnk
[2014/01/14 13:09:05 | 000,002,697 | ---- | C] () -- C:\Users\Public\Desktop\Skype.lnk
[2014/01/14 12:59:09 | 000,060,794 | ---- | C] () -- C:\Users\Judy\Desktop\Voice Message.zip
[2014/01/14 11:30:08 | 001,710,025 | ---- | C] () -- C:\Windows\SysNative\drivers\NAVx64\1501000.012\Cat.DB
[2014/01/14 11:29:48 | 000,008,202 | R--- | C] () -- C:\Windows\SysNative\drivers\NSTx64\7DE06000.01B\ccSetx64.cat
[2014/01/14 11:29:48 | 000,000,855 | R--- | C] () -- C:\Windows\SysNative\drivers\NSTx64\7DE06000.01B\ccSetx64.inf
[2014/01/14 11:29:48 | 000,000,172 | ---- | C] () -- C:\Windows\SysNative\drivers\NSTx64\7DE06000.01B\isolate.ini
[2014/01/14 11:29:33 | 000,008,222 | ---- | C] () -- C:\Windows\SysNative\drivers\SYMEVENT64x86.CAT
[2014/01/14 11:29:33 | 000,000,854 | ---- | C] () -- C:\Windows\SysNative\drivers\SYMEVENT64x86.INF
[2014/01/14 11:28:48 | 000,003,433 | R--- | C] () -- C:\Windows\SysNative\drivers\NAVx64\1501000.012\SymEFA.inf
[2014/01/14 11:28:48 | 000,002,852 | R--- | C] () -- C:\Windows\SysNative\drivers\NAVx64\1501000.012\SymDS.inf
[2014/01/14 11:28:48 | 000,001,440 | R--- | C] () -- C:\Windows\SysNative\drivers\NAVx64\1501000.012\SymNet.inf
[2014/01/14 11:28:48 | 000,001,437 | R--- | C] () -- C:\Windows\SysNative\drivers\NAVx64\1501000.012\srtsp64.inf
[2014/01/14 11:28:48 | 000,001,420 | R--- | C] () -- C:\Windows\SysNative\drivers\NAVx64\1501000.012\srtspx64.inf
[2014/01/14 11:28:48 | 000,001,098 | R--- | C] () -- C:\Windows\SysNative\drivers\NAVx64\1501000.012\symELAM.inf
[2014/01/14 11:28:48 | 000,000,855 | R--- | C] () -- C:\Windows\SysNative\drivers\NAVx64\1501000.012\ccSetx64.inf
[2014/01/14 11:28:48 | 000,000,767 | R--- | C] () -- C:\Windows\SysNative\drivers\NAVx64\1501000.012\Iron.inf
[2014/01/14 11:28:38 | 000,001,407 | ---- | C] () -- C:\Users\Judy\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2014/01/14 11:28:35 | 000,014,818 | R--- | C] () -- C:\Windows\SysNative\drivers\NAVx64\1501000.012\SymVTcer.dat
[2014/01/14 11:28:35 | 000,009,939 | R--- | C] () -- C:\Windows\SysNative\drivers\NAVx64\1501000.012\SymELAM64.cat
[2014/01/14 11:28:35 | 000,008,202 | R--- | C] () -- C:\Windows\SysNative\drivers\NAVx64\1501000.012\ccSetx64.cat
[2014/01/14 11:28:35 | 000,008,196 | R--- | C] () -- C:\Windows\SysNative\drivers\NAVx64\1501000.012\srtspx64.cat
[2014/01/14 11:28:35 | 000,008,194 | R--- | C] () -- C:\Windows\SysNative\drivers\NAVx64\1501000.012\SymEFA64.cat
[2014/01/14 11:28:35 | 000,008,192 | R--- | C] () -- C:\Windows\SysNative\drivers\NAVx64\1501000.012\symnet64.cat
[2014/01/14 11:28:35 | 000,008,192 | R--- | C] () -- C:\Windows\SysNative\drivers\NAVx64\1501000.012\srtsp64.cat
[2014/01/14 11:28:35 | 000,008,188 | R--- | C] () -- C:\Windows\SysNative\drivers\NAVx64\1501000.012\SymDS64.cat
[2014/01/14 11:28:35 | 000,008,184 | R--- | C] () -- C:\Windows\SysNative\drivers\NAVx64\1501000.012\iron.cat
[2014/01/14 11:28:35 | 000,000,172 | ---- | C] () -- C:\Windows\SysNative\drivers\NAVx64\1501000.012\isolate.ini
[2014/01/14 11:15:04 | 000,002,441 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
[2014/01/14 11:08:30 | 000,002,519 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
[2014/01/14 11:08:06 | 000,000,830 | ---- | C] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2014/01/14 11:01:22 | 000,002,766 | ---- | C] () -- C:\Users\Judy\Application Data\Microsoft\Internet Explorer\Quick Launch\Nero StartSmart Essentials.lnk
[2014/01/13 19:56:02 | 000,001,326 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
[2014/01/13 19:55:59 | 000,001,345 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
[2014/01/13 19:54:15 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2014/01/13 19:53:13 | 2120,048,639 | -HS- | C] () -- C:\hiberfil.sys
[2014/01/13 19:02:37 | 000,757,660 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2014/01/13 18:28:14 | 000,025,185 | ---- | C] () -- C:\Windows\SysWow64\ieuinit.inf
[2014/01/13 18:28:14 | 000,025,185 | ---- | C] () -- C:\Windows\SysNative\ieuinit.inf
[2014/01/13 18:04:50 | 000,000,003 | ---- | C] () -- C:\Windows\SysNative\drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf
[2014/01/13 17:52:41 | 000,000,003 | ---- | C] () -- C:\Windows\SysNative\drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
[2014/01/13 17:10:18 | 000,015,232 | ---- | C] () -- C:\Windows\SysNative\results.xml
[2014/01/13 17:07:46 | 000,134,592 | ---- | C] () -- C:\Windows\SysWow64\igfcg500.bin
[2014/01/13 17:07:46 | 000,134,592 | ---- | C] () -- C:\Windows\SysNative\igfcg500.bin
[2014/01/13 17:06:35 | 000,074,272 | ---- | C] () -- C:\Windows\SysNative\RtNicProp64.dll
[2014/01/13 17:04:56 | 000,037,393 | ---- | C] () -- C:\Windows\Ascd_log.ini
[2014/01/13 17:03:51 | 000,001,769 | ---- | C] () -- C:\Windows\Language_trs.ini
[2014/01/13 17:03:47 | 000,028,086 | ---- | C] () -- C:\Windows\Ascd_tmp.ini
[2014/01/13 16:58:37 | 000,001,413 | ---- | C] () -- C:\Users\Judy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
[2014/01/13 16:58:15 | 000,000,290 | ---- | C] () -- C:\Users\Judy\Application Data\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk
[2014/01/13 16:58:15 | 000,000,272 | ---- | C] () -- C:\Users\Judy\Application Data\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk

========== ZeroAccess Check ==========

[2009/07/13 23:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2013/07/25 21:24:57 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013/07/25 20:55:59 | 012,872,704 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/13 20:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 22:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/13 20:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

< End of report >
  • 0

Advertisements







Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP