Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Computer laggs to no end. Freezing and crashing [Closed]

lagging crashing slow speed slow start-up slow programs

  • This topic is locked This topic is locked

#1
dogonit2

dogonit2

    Member

  • Member
  • PipPip
  • 26 posts

My computer is getting more and more sluggish and continues to crash explorer, lose audio, and have extremely slow load times with pretty much any function.  The fact that I am even able to write this is hard to believe.

 

Obviously the more windows I have open and programs running is gets worse to the point where I can barely save my work or bookmark pages... everything pretty much comes to a halt.

 

I do have a number of cracked tools on my computer and do not know if I have any vulnerabilities with my cmod?

 

Please help!

 

Here is my report from the OTL:

 

 

OTL logfile created on: 5/12/2014 11:27:06 PM - Run 1
OTL by OldTimer - Version 3.2.69.0     Folder = C:\Users\dogonit23\Desktop\Security
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17041)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
 
3.75 Gb Total Physical Memory | 0.74 Gb Available Physical Memory | 19.77% Memory free
7.49 Gb Paging File | 4.61 Gb Available in Paging File | 61.55% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 442.60 Gb Total Space | 179.10 Gb Free Space | 40.47% Space Free | Partition Type: NTFS
Drive D: | 22.87 Gb Total Space | 3.31 Gb Free Space | 14.45% Space Free | Partition Type: NTFS
Drive F: | 232.88 Gb Total Space | 103.48 Gb Free Space | 44.44% Space Free | Partition Type: NTFS
Drive G: | 99.02 Mb Total Space | 89.02 Mb Free Space | 89.90% Space Free | Partition Type: FAT32
Drive H: | 1863.01 Gb Total Space | 0.27 Gb Free Space | 0.01% Space Free | Partition Type: NTFS
 
Computer Name: DOGONIT23-HP | User Name: dogonit23 | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
 
========== Processes (SafeList) ==========
 
PRC - [2014/05/12 23:22:43 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\dogonit23\Desktop\Security\OTL.exe
PRC - [2014/04/11 19:45:50 | 001,764,992 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
PRC - [2014/04/11 19:45:42 | 001,390,720 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
PRC - [2013/11/14 16:29:34 | 004,442,912 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASC.exe
PRC - [2013/11/11 20:31:48 | 002,283,808 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe
PRC - [2013/11/11 18:19:48 | 000,341,824 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe
PRC - [2013/10/25 13:07:24 | 002,151,200 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
PRC - [2013/10/25 13:07:00 | 000,878,368 | ---- | M] (IObit) -- C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe
PRC - [2013/06/26 19:21:50 | 000,207,528 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
PRC - [2013/06/26 19:21:46 | 000,523,944 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
PRC - [2013/05/04 21:43:02 | 000,160,328 | ---- | M] (Siber Systems) -- C:\Program Files (x86)\Siber Systems\AI RoboForm\robotaskbaricon.exe
PRC - [2012/11/23 17:51:52 | 003,540,416 | ---- | M] (Tonec Inc.) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe
PRC - [2012/10/31 11:33:37 | 000,015,104 | ---- | M] (PlumChoice, Inc.) -- C:\Program Files (x86)\Cox, Inc\Cox PC HealthCheck\PCMonitoringService.exe
PRC - [2011/06/14 14:29:22 | 000,026,680 | ---- | M] (Hewlett-Packard Development Company, L.P.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
PRC - [2011/05/21 16:52:16 | 000,103,992 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
PRC - [2010/09/11 02:02:22 | 000,399,344 | ---- | M] (Roxio) -- C:\Program Files (x86)\Roxio\RoxioNow Player\RNowSvc.exe
PRC - [2010/09/03 18:13:30 | 000,136,488 | ---- | M] (CyberLink) -- C:\Program Files (x86)\Hewlett-Packard\Media\Webcam\YCMMirage.exe
PRC - [2010/05/25 05:28:58 | 000,263,600 | ---- | M] (Tonec Inc.) -- C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe
 
 
========== Modules (No Company Name) ==========
 
MOD - [2014/02/14 00:19:18 | 000,220,672 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\CustomMarshalers\d682d06abf8257c72ce11cefd1d74cf5\CustomMarshalers.ni.dll
MOD - [2014/02/14 00:10:38 | 011,922,944 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Web\4b1795df6372b251625f958595e08d3d\System.Web.ni.dll
MOD - [2014/02/14 00:10:06 | 012,436,480 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\8bc548587e91ecf0552a40e47bbf99cc\System.Windows.Forms.ni.dll
MOD - [2014/02/14 00:09:59 | 001,593,344 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\5c24d3b0041ebf4f48a93615b9fa3de9\System.Drawing.ni.dll
MOD - [2014/02/14 00:09:56 | 000,025,600 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\Accessibility\4f5069e6497e5e6a381ab6aadf05d6a5\Accessibility.ni.dll
MOD - [2014/02/14 00:09:53 | 005,464,064 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\217ece46920546d718414291d463bb1c\System.Xml.ni.dll
MOD - [2014/02/14 00:09:50 | 000,978,432 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\5b6ddf934128d538cd5cd77bf4209b93\System.Configuration.ni.dll
MOD - [2014/02/14 00:09:31 | 007,989,760 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\b3a78269847005365001c33870cd121f\System.ni.dll
MOD - [2014/02/14 00:09:26 | 011,499,520 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\ede2c6c842840e009f01bcc74fa4c457\mscorlib.ni.dll
MOD - [2014/01/10 14:33:12 | 000,270,024 | ---- | M] () -- C:\Program Files (x86)\Windows Live\Writer\en\WindowsLive.Writer.Localization.resources.dll
MOD - [2013/10/25 13:08:02 | 000,517,408 | ---- | M] () -- C:\Program Files (x86)\IObit\Advanced SystemCare 7\sqlite3.dll
MOD - [2013/10/25 13:07:44 | 001,233,696 | ---- | M] () -- C:\Program Files (x86)\IObit\Advanced SystemCare 7\Scan.dll
MOD - [2013/09/23 20:09:13 | 000,036,352 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\IEExtension\1.0.0.876__c8e1c1f3d6d8e203\IEExtension.dll
MOD - [2013/09/23 20:09:12 | 000,139,264 | ---- | M] () -- C:\Windows\assembly\GAC_32\Interop.SHDocVw\1.1.0.0__c8e1c1f3d6d8e203\Interop.SHDocVw.dll
MOD - [2013/09/23 20:09:11 | 008,007,680 | ---- | M] () -- C:\Windows\assembly\GAC\Microsoft.mshtml\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.mshtml.dll
MOD - [2013/08/07 12:25:24 | 000,093,696 | ---- | M] () -- C:\Program Files (x86)\FileZilla FTP Client\fzshellext.dll
MOD - [2013/05/08 06:51:49 | 000,019,056 | ---- | M] () -- C:\Program Files (x86)\Adobe\Reader 9.0\Reader\ViewerPS.dll
MOD - [2013/01/15 19:47:56 | 000,893,248 | ---- | M] () -- C:\Program Files (x86)\IObit\Advanced SystemCare 7\webres.dll
MOD - [2010/11/04 18:57:39 | 000,069,120 | ---- | M] () -- C:\Windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
 
 
========== Services (SafeList) ==========
 
SRV:64bit: - [2014/04/09 23:43:36 | 000,111,616 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV:64bit: - [2014/03/11 12:34:10 | 000,347,872 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- c:\Program Files\Microsoft Security Client\NisSrv.exe -- (NisSrv)
SRV:64bit: - [2014/03/11 12:34:10 | 000,023,808 | ---- | M] (Microsoft Corporation) [Auto | Running] -- c:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)
SRV:64bit: - [2013/10/10 15:54:28 | 000,144,152 | ---- | M] (SUPERAntiSpyware.com) [Auto | Running] -- C:\Program Files\SUPERAntiSpyware1\SASCore64.exe -- (!SASCORE)
SRV:64bit: - [2013/05/26 22:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2013/05/07 16:19:12 | 001,025,408 | ---- | M] (Enigma Software Group USA, LLC.) [Auto | Running] -- C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe -- (SpyHunter 4 Service)
SRV:64bit: - [2013/05/01 07:14:32 | 000,230,416 | ---- | M] (Nitro PDF Software) [Auto | Running] -- C:\Program Files\Common Files\Nitro\Reader\3.0\NitroPDFReaderDriverService3x64.exe -- (NitroReaderDriverReadSpool3)
SRV:64bit: - [2011/05/13 18:58:10 | 000,030,520 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Windows\SysNative\hpservice.exe -- (hpsrv)
SRV:64bit: - [2010/10/08 16:17:42 | 000,203,264 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2010/09/14 16:57:34 | 000,263,168 | ---- | M] (IDT, Inc.) [Auto | Running] -- C:\Program Files\IDT\WDM\stacsv64.exe -- (STacSV)
SRV:64bit: - [2010/09/14 16:57:26 | 000,089,600 | ---- | M] (Andrea Electronics Corporation) [Auto | Running] -- C:\Program Files\IDT\WDM\AESTSr64.exe -- (AESTFilters)
SRV:64bit: - [2010/08/05 19:51:08 | 000,291,896 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe -- (HPClientSvc)
SRV:64bit: - [2010/07/21 14:33:00 | 000,103,992 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe -- (HP Wireless Assistant Service)
SRV - [2014/04/11 19:45:50 | 001,764,992 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe -- (c2cpnrsvc)
SRV - [2014/04/11 19:45:42 | 001,390,720 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe -- (c2cautoupdatesvc)
SRV - [2014/04/06 10:57:34 | 000,119,408 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2013/11/11 18:19:48 | 000,341,824 | ---- | M] (IObit) [Auto | Running] -- C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe -- (IMFservice)
SRV - [2013/10/25 13:07:24 | 002,151,200 | ---- | M] (IObit) [Auto | Running] -- C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe -- (LiveUpdateSvc)
SRV - [2013/10/25 13:07:00 | 000,878,368 | ---- | M] (IObit) [Auto | Running] -- C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe -- (AdvancedSystemCareService7)
SRV - [2013/10/23 08:15:08 | 000,172,192 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2013/09/11 22:21:54 | 000,105,144 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2013/06/26 19:21:50 | 000,207,528 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe -- (sftvsa)
SRV - [2013/06/26 19:21:46 | 000,523,944 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe -- (sftlist)
SRV - [2012/11/25 06:13:12 | 000,821,720 | ---- | M] (Mister Group) [On_Demand | Stopped] -- C:\Program Files (x86)\System Explorer\service\SystemExplorerService64.exe -- (SystemExplorerHelpService)
SRV - [2012/10/31 11:33:37 | 000,015,104 | ---- | M] (PlumChoice, Inc.) [Auto | Running] -- C:\Program Files (x86)\Cox, Inc\Cox PC HealthCheck\PCMonitoringService.exe -- (COX CommunicationsMonitoringService)
SRV - [2012/09/27 11:55:16 | 000,086,528 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe -- (HP Support Assistant Service)
SRV - [2011/06/14 14:29:22 | 000,026,680 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe -- (HPWMISVC)
SRV - [2011/05/21 16:52:16 | 000,103,992 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe -- (HPDrvMntSvc.exe)
SRV - [2010/09/21 16:52:04 | 000,245,232 | ---- | M] (CyberLink) [Auto | Stopped] -- C:\Program Files (x86)\Hewlett-Packard\Media\DVD\Kernel\HDDVD\NavFilter\kmsvc.exe -- (CLKMSVC10_C6F09094)
SRV - [2010/09/11 02:02:22 | 000,399,344 | ---- | M] (Roxio) [Auto | Running] -- C:\Program Files (x86)\Roxio\RoxioNow Player\RNowSvc.exe -- (RoxioNow Service)
SRV - [2010/06/18 18:59:12 | 000,246,520 | ---- | M] (WildTangent, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe -- (GameConsoleService)
SRV - [2010/06/01 16:31:28 | 002,804,568 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe -- (NOBU)
SRV - [2009/06/10 14:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
 
 
========== Driver Services (SafeList) ==========
 
DRV:64bit: - [2014/03/11 09:52:30 | 000,133,928 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\NisDrvWFP.sys -- (NisDrv)
DRV:64bit: - [2013/11/25 13:03:00 | 000,413,888 | ---- | M] (EldoS Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\cbfs5.sys -- (cbfs5)
DRV:64bit: - [2013/11/02 11:46:19 | 000,883,928 | ---- | M] (Realtek                                            ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2013/10/01 19:22:20 | 000,056,832 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2013/08/06 12:39:22 | 000,014,456 | ---- | M] (GFI Software) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\gfibto.sys -- (gfibto)
DRV:64bit: - [2013/06/26 19:21:50 | 000,023,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftvollh.sys -- (Sftvol)
DRV:64bit: - [2013/06/26 19:21:48 | 000,028,840 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftredirlh.sys -- (Sftredir)
DRV:64bit: - [2013/06/26 19:21:46 | 000,273,576 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftplaylh.sys -- (Sftplay)
DRV:64bit: - [2013/06/26 19:21:44 | 000,767,144 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftfslh.sys -- (Sftfs)
DRV:64bit: - [2013/05/22 18:49:32 | 000,017,720 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\SmartDefragDriver.sys -- (SmartDefragDriver)
DRV:64bit: - [2013/02/05 22:06:06 | 000,057,840 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fssfltr.sys -- (fssfltr)
DRV:64bit: - [2012/11/21 17:43:14 | 000,165,112 | ---- | M] (Tonec Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\idmwfp.sys -- (IDMWFP)
DRV:64bit: - [2012/08/23 07:10:20 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2012/06/22 12:01:32 | 000,022,704 | ---- | M] () [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\EsgScanner.sys -- (EsgScanner)
DRV:64bit: - [2012/06/20 09:42:44 | 003,678,720 | ---- | M] (Qualcomm Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\athrx.sys -- (athr)
DRV:64bit: - [2012/05/17 14:01:08 | 000,033,872 | ---- | M] (AnvSoft Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\anvsnddrv.sys -- (anvsnddrv)
DRV:64bit: - [2012/02/29 23:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2011/10/23 21:04:32 | 000,223,232 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hw_quusbmdm.sys -- (HWHandSet)
DRV:64bit: - [2011/10/14 04:37:44 | 000,396,848 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:64bit: - [2011/07/22 09:26:56 | 000,014,928 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware1\sasdifsv64.sys -- (SASDIFSV)
DRV:64bit: - [2011/07/12 14:55:18 | 000,012,368 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware1\saskutil64.sys -- (SASKUTIL)
DRV:64bit: - [2011/05/13 18:58:16 | 000,030,008 | ---- | M] (Hewlett-Packard Company) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\hpdskflt.sys -- (hpdskflt)
DRV:64bit: - [2011/05/13 18:57:58 | 000,043,320 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Accelerometer.sys -- (Accelerometer)
DRV:64bit: - [2011/03/10 23:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011/03/10 23:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2010/11/20 06:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010/11/20 02:37:42 | 000,109,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus)
DRV:64bit: - [2010/10/08 16:18:06 | 000,125,456 | ---- | M] (ATI Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtiHdmi.sys -- (AtiHdmiService)
DRV:64bit: - [2010/10/08 16:18:04 | 000,038,528 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\usbfilter.sys -- (usbfilter)
DRV:64bit: - [2010/10/08 16:18:04 | 000,016,440 | ---- | M] (Advanced Micro Devices Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\AtiPcie64.sys -- (AtiPcie)
DRV:64bit: - [2010/10/08 16:17:44 | 007,767,552 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2010/10/08 16:17:44 | 000,279,040 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2010/09/14 17:06:08 | 000,239,136 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RtsUStor.sys -- (RSUSBSTOR)
DRV:64bit: - [2010/09/14 16:57:40 | 000,515,584 | ---- | M] (IDT, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\stwrt64.sys -- (STHDA)
DRV:64bit: - [2010/09/03 18:13:32 | 000,031,088 | ---- | M] (CyberLink Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\clwvd.sys -- (clwvd)
DRV:64bit: - [2010/01/26 19:09:02 | 000,047,632 | ---- | M] (CACE Technologies, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\npf.sys -- (npf)
DRV:64bit: - [2009/07/13 18:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/13 18:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/13 18:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/06/10 14:01:11 | 001,485,312 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTDPV6.SYS -- (SrvHsfV92)
DRV:64bit: - [2009/06/10 14:01:11 | 000,740,864 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTCNXT6.SYS -- (SrvHsfWinac)
DRV:64bit: - [2009/06/10 14:01:11 | 000,292,864 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTAZL6.SYS -- (SrvHsfHDA)
DRV:64bit: - [2009/06/10 13:37:05 | 006,108,416 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:64bit: - [2009/06/10 13:35:33 | 000,389,120 | ---- | M] (Marvell) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\yk62x64.sys -- (yukonw7)
DRV:64bit: - [2009/06/10 13:35:28 | 005,434,368 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\netw5v64.sys -- (netw5v64)
DRV:64bit: - [2009/06/10 13:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 13:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 13:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 13:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009/05/18 13:17:08 | 000,034,152 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:64bit: - [2008/05/06 17:06:00 | 000,014,464 | ---- | M] (Western Digital Technologies) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wdcsam64.sys -- (WDC_SAM)
DRV - [2013/11/19 17:10:34 | 000,034,848 | ---- | M] (IObit.com) [Kernel | On_Demand | Stopped] -- C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\RegFilter.sys -- (RegFilter)
DRV - [2013/11/19 17:10:34 | 000,023,016 | ---- | M] (IObit.com) [Kernel | On_Demand | Stopped] -- C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\UrlFilter.sys -- (UrlFilter)
DRV - [2013/03/23 16:48:48 | 000,023,048 | ---- | M] (IObit) [File_System | Disabled | Stopped] -- C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\FileMonitor.sys -- (FileMonitor)
DRV - [2009/07/13 18:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
 
 
========== Standard Registry (SafeList) ==========
 
 
========== Internet Explorer ==========
 
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {ec29edf6-ad3c-4e1c-a087-d6cb81400c43}
IE:64bit: - HKLM\..\SearchScopes\{d944bb61-2e34-4dbf-a683-47e505c587dc}: "URL" = http://rover.ebay.co...}&mfe=Notebooks
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,Backup.Old.DefaultScope = {ec29edf6-ad3c-4e1c-a087-d6cb81400c43}
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{6DF1C33E-C0B9-75F9-B506-250E091C4DC1}: "URL" = http://www.bing.com/...rc=IE-SearchBox
IE - HKLM\..\SearchScopes\{d944bb61-2e34-4dbf-a683-47e505c587dc}: "URL" = http://rover.ebay.co...}&mfe=Notebooks
 
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://google.com/
IE - HKCU\..\SearchScopes,Backup.Old.DefaultScope = {4408C5D3-D063-47B7-F412-10B06D154E1C}
IE - HKCU\..\SearchScopes,DefaultScope = {ec29edf6-ad3c-4e1c-a087-d6cb81400c43}
IE - HKCU\..\SearchScopes\{6DF1C33E-C0B9-75F9-B506-250E091C4DC1}: "URL" = http://www.bing.com/...referrer:source}
IE - HKCU\..\SearchScopes\{d944bb61-2e34-4dbf-a683-47e505c587dc}: "URL" = http://rover.ebay.co...}&mfe=Notebooks
IE - HKCU\..\SearchScopes\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}: "URL" = http://www.bing.com/...rc=IE-SearchBox
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
========== FireFox ==========
 
FF - prefs.js..browser.startup.homepage: "http://google.com/"
FF - prefs.js..extensions.enabledAddons: ascsurfingprotection%40iobit.com:1.0
FF - prefs.js..extensions.enabledAddons: support%40auto-hide-ip.com:1.0
FF - prefs.js..extensions.enabledAddons: xpirftoolbar%40roboform.com:3.4.9
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:28.0
FF - prefs.js..network.proxy.gopher: ""
FF - prefs.js..network.proxy.gopher_port: 0
FF - prefs.js..network.proxy.share_proxy_settings: true
FF - prefs.js..network.proxy.type: 0
FF - user.js - File not found
 
FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.21.2: C:\Windows\system32\npDeployJava1.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=:  File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.51.2: C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3522.0110: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nitropdf.com/NitroPDF: C:\Program Files (x86)\Nitro\Reader 3\npnitromozilla.dll (Nitro PDF)
FF - HKLM\Software\MozillaPlugins\@photoproduct.rocketlife.com/RocketLife App Viewer;version=0.8:  File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.1.0: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@hulu.com/Hulu Desktop: C:\Windows\..\Users\Default\AppData\Local\HuluDesktop\instances\0.9.13.1\npHDPlg.dll ()
FF - HKCU\Software\MozillaPlugins\@startmeeting.com/launcher: C:\Users\dogonit23\AppData\Local\SMPlugins\npsmlauncher.dll (Start Meeting)
FF - HKCU\Software\MozillaPlugins\@talk.google.com/GoogleTalkPlugin: C:\Users\dogonit23\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
FF - HKCU\Software\MozillaPlugins\@talk.google.com/O1DPlugin: C:\Users\dogonit23\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google)
FF - HKCU\Software\MozillaPlugins\@talk.google.com/O3DPlugin: C:\Users\dogonit23\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll ()
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\dogonit23\AppData\Local\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\dogonit23\AppData\Local\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\vitzo.com/VDownloader: C:\Program Files\VDownloader\Addons\npVDownloader.dll (Vitzo Limited)
 
64bit-FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\PROGRAM FILES\VDOWNLOADER\ADDONS\FIREFOX [2014/02/25 18:01:27 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 28.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2014/04/06 10:56:54 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\[email protected]: C:\Users\dogonit23\AppData\Roaming\IDM\idmmzcc5 [2013/08/11 16:03:03 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\SeaMonkey\Extensions\\[email protected]: C:\Users\dogonit23\AppData\Roaming\IDM\idmmzcc5 [2013/08/11 16:03:03 | 000,000,000 | ---D | M]
 
[2013/05/06 11:53:05 | 000,000,000 | ---D | M] (No name found) -- C:\Users\dogonit23\AppData\Roaming\Mozilla\Extensions
[2014/03/27 23:30:17 | 000,000,000 | ---D | M] (No name found) -- C:\Users\dogonit23\AppData\Roaming\Mozilla\Firefox\Profiles\qfgmkrbu.default\extensions
[2014/02/27 17:33:42 | 000,000,000 | ---D | M] (Ads Removal) -- C:\Users\dogonit23\AppData\Roaming\Mozilla\Firefox\Profiles\qfgmkrbu.default\extensions\[email protected]
[2013/11/17 13:08:33 | 000,000,000 | ---D | M] (Advanced SystemCare Surfing Protection) -- C:\Users\dogonit23\AppData\Roaming\Mozilla\Firefox\Profiles\qfgmkrbu.default\extensions\[email protected]
[2013/06/02 15:09:22 | 000,004,526 | ---- | M] () (No name found) -- C:\Users\dogonit23\AppData\Roaming\Mozilla\Firefox\Profiles\qfgmkrbu.default\extensions\[email protected]
[2013/05/30 15:43:09 | 000,651,703 | ---- | M] () (No name found) -- C:\Users\dogonit23\AppData\Roaming\Mozilla\Firefox\Profiles\qfgmkrbu.default\extensions\[email protected]
[2014/04/16 23:03:32 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
[2014/04/06 10:57:42 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
File not found (No name found) -- C:\PROGRAM FILES (X86)\IOBIT APPS TOOLBAR\FF
 
========== Chrome  ==========
 
CHR - plugin: Error reading preferences file
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.0.0.6_0\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.0.0.6_1\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_1\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.2_0\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.2_1\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_1\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_1\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_1\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_1\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\eoccbpoodnckjdnackiffhjfkogfhnhh\3.2.800\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\fopdddcinljmpmioaklghcalngfhbaen\1.0.0_0\
CHR - Extension: First user = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkcefkcdkepgkpbgncjchhbjgoanleod\1.0.0_0\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\glmfgahfleepmdfffonfckpmkondpdkg\1.2.8_0\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmolcgpienlcieaajfkkdamlngancncm\6.12.25.1_0\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmolcgpienlcieaajfkkdamlngancncm\6.12.25.1_1\
CHR - Extension: Skype Click to Call = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.0.14735.1561_0\
CHR - Extension: Advanced SystemCare Surfing Protection = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\nfengeggddojhakldhlpjdlddgkkjkdd\1.0.0_0\
CHR - Extension: Advanced SystemCare Surfing Protection = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\nfengeggddojhakldhlpjdlddgkkjkdd\1.0.0_1\
CHR - Extension: Google Wallet = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_0\
CHR - Extension: Google Wallet = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_0\
CHR - Extension: Google Wallet = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_2\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_3\
 
Hosts file not found
O2:64bit: - BHO: (IDM integration (IDMIEHlprObj Class)) - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll (Internet Download Manager, Tonec Inc.)
O2:64bit: - BHO: (ExplorerWnd Helper) - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll (IObit)
O2:64bit: - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\SkypeIEPlugin.dll (Microsoft Corporation)
O2:64bit: - BHO: (HP Network Check Helper) - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard)
O2 - BHO: (IDM integration (IDMIEHlprObj Class)) - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll (Internet Download Manager, Tonec Inc.)
O2 - BHO: (Reg Error: Value error.) - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
O2 - BHO: (Java™ Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Ads Removal) - {9D974C8C-6D92-44FB-BEAF-B45A1C0CF17F} - C:\Program Files (x86)\IObit\IObit Malware Fighter\adsremoval\IE\Adblock.dll (Adblock)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
O2 - BHO: (Advanced SystemCare Browser Protection) - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\Program Files (x86)\IObit\Surfing Protection\BrowerProtect\ASCPlugin_Protection.dll (IObit)
O2 - BHO: (no name) - {CF070CB8-F02F-4af4-A7B7-8D45CAD4BB54} - No CLSID value found.
O2 - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (HP Network Check Helper) - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
O3 - HKLM\..\Toolbar: (&RoboForm) - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
O3 - HKCU\..\Toolbar\WebBrowser: (&RoboForm) - {724D43A0-0D85-11D4-9908-00400523E39A} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
O4:64bit: - HKLM..\Run: [MSC] c:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
O4:64bit: - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe (IDT, Inc.)
O4:64bit: - HKLM..\Run: [VDownloader] C:\Program Files\VDownloader\VDownloader.exe (Vitzo)
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKCU..\Run: [IDMan] C:\Program Files (x86)\Internet Download Manager\IDMan.exe (Tonec Inc.)
O4 - HKCU..\Run: [RoboForm] C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe (Siber Systems)
O4:64bit: - HKLM..\RunOnce: [NCPluginUpdater] C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe (Hewlett-Packard)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8:64bit: - Extra context menu item: Customize Menu - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html ()
O8:64bit: - Extra context menu item: Download all links with IDM - C:\Program Files (x86)\Internet Download Manager\IEGetAll.htm ()
O8:64bit: - Extra context menu item: Download with IDM - C:\Program Files (x86)\Internet Download Manager\IEExt.htm ()
O8:64bit: - Extra context menu item: Fill Forms - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComFillForms.html ()
O8:64bit: - Extra context menu item: RoboForm Toolbar - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html ()
O8:64bit: - Extra context menu item: Save Forms - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComSavePass.html ()
O8:64bit: - Extra context menu item: Save Page As PDF ... - C:\Program Files (x86)\Nitro PDF\PDF Download\nitroweb.htm ()
O8 - Extra context menu item: Customize Menu - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html ()
O8 - Extra context menu item: Download all links with IDM - C:\Program Files (x86)\Internet Download Manager\IEGetAll.htm ()
O8 - Extra context menu item: Download with IDM - C:\Program Files (x86)\Internet Download Manager\IEExt.htm ()
O8 - Extra context menu item: Fill Forms - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComFillForms.html ()
O8 - Extra context menu item: RoboForm Toolbar - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html ()
O8 - Extra context menu item: Save Forms - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComSavePass.html ()
O8 - Extra context menu item: Save Page As PDF ... - C:\Program Files (x86)\Nitro PDF\PDF Download\nitroweb.htm ()
O9:64bit: - Extra Button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
O9:64bit: - Extra 'Tools' menuitem : @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
O9:64bit: - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\SkypeIEPlugin.dll (Microsoft Corporation)
O9 - Extra Button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
O9 - Extra 'Tools' menuitem : @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
O9 - Extra Button: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComFillForms.html ()
O9 - Extra 'Tools' menuitem : Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComFillForms.html ()
O9 - Extra Button: Save - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComSavePass.html ()
O9 - Extra 'Tools' menuitem : Save Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComSavePass.html ()
O9 - Extra Button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html ()
O9 - Extra 'Tools' menuitem : RoboForm Toolbar - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html ()
O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O15 - HKCU\..Trusted Domains: blackhatteam.com ([www] http in Trusted sites)
O15 - HKCU\..Trusted Domains: samsungsetup.com ([www] http in Trusted sites)
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset...lineScanner.cab (OnlineScanner Control)
O16 - DPF: {B1E2B96C-12FE-45E2-BEF1-44A219113CDD} http://www.superadbl...ivex/sabspx.cab (SABScanProcesses Class)
O16 - DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} https://akamaicdn.we...ex/ieatgpc1.cab (GpcContainer Class)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{03E2D4D8-4331-4BF1-807E-B2127DD99B44}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{2A907A11-940D-4C2F-BAD7-A1C33153ADAE}: DhcpNameServer = 192.168.1.1
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp\0x00000001 - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp\oledb - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\mso-offdap - No CLSID value found
O18:64bit: - Protocol\Handler\mso-offdap11 - No CLSID value found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\SkypeIEPlugin.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
O18:64bit: - Protocol\Filter\text/xml - No CLSID value found
O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O21:64bit: - SSODL: EldosMountNotificator-cbfs5 - {7250D916-AC6A-452E-8B26-A561D45A18CB} - C:\Windows\SysNative\cbfsMntNtf5.dll (EldoS Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: EldosMountNotificator-cbfs5 - {7250D916-AC6A-452E-8B26-A561D45A18CB} - C:\Windows\SysWOW64\cbfsMntNtf5.dll (EldoS Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O22:64bit: - SharedTaskScheduler: {1984DD45-52CF-49cd-AB77-18F378FEA264} - FencesShellExt - C:\Program Files\Stardock\Fences Pro\FencesMenu64.dll (Stardock)
O22:64bit: - SharedTaskScheduler: {7250D916-AC6A-452E-8B26-A561D45A18CB} - Virtual Storage Mount Notification - C:\Windows\SysNative\cbfsMntNtf5.dll (EldoS Corporation)
O22 - SharedTaskScheduler: {7250D916-AC6A-452E-8B26-A561D45A18CB} - Virtual Storage Mount Notification - C:\Windows\SysWOW64\cbfsMntNtf5.dll (EldoS Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2013/08/05 12:50:06 | 000,000,000 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O32 - AutoRun File - [2011/08/19 00:41:32 | 000,000,000 | R--D | M] - H:\autorun -- [ NTFS ]
O34 - HKLM BootExecute: (RegistryDefragBootTime.exe)
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = ComFile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
 
========== Files/Folders - Created Within 30 Days ==========
 
[2014/05/10 08:40:06 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Documents\Prism II
[2014/05/07 18:05:44 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Video Vantage
[2014/05/07 17:16:01 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Desktop\Videos
[2014/05/02 00:16:44 | 000,000,000 | --SD | C] -- C:\Windows\SysNative\CompatTel
[2014/04/27 12:05:36 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\Skype
[2014/04/27 12:05:14 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
[2014/04/27 12:05:13 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Skype
[2014/04/16 18:19:33 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\com.jayvenka.qilio
[2014/04/16 00:50:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PageOneTraffic
[2014/04/15 23:24:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Tube Sniper Pro
[2014/04/15 23:24:17 | 001,666,371 | ---- | C] (Tube Sniper Pro) -- C:\tsp.exe
[2014/04/14 23:42:03 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Lead Kahuna
[2014/04/13 16:24:25 | 000,000,000 | -HSD | C] -- C:\Users\dogonit23\AppData\Local\EmieUserList
[2014/04/13 16:24:25 | 000,000,000 | -HSD | C] -- C:\Users\dogonit23\AppData\Local\EmieSiteList
[2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
 
========== Files - Modified Within 30 Days ==========
 
[2014/05/12 23:05:44 | 000,000,586 | ---- | M] () -- C:\Windows\tasks\G2MUpdateTask-S-1-5-21-2034785586-1586066431-309787569-1001.job
[2014/05/11 10:08:07 | 000,023,248 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2014/05/11 10:08:07 | 000,023,248 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2014/05/11 10:05:08 | 000,000,286 | ---- | M] () -- C:\Windows\tasks\Driver Booster Update.job
[2014/05/11 10:00:10 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2014/05/11 10:00:01 | 3015,888,896 | -HS- | M] () -- C:\hiberfil.sys
[2014/05/11 00:07:06 | 000,783,360 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2014/05/11 00:07:06 | 000,663,086 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2014/05/11 00:07:06 | 000,122,664 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2014/05/10 21:05:35 | 000,076,094 | ---- | M] () -- C:\Users\dogonit23\Desktop\paypal payment 5-10-14.pdf
[2014/05/10 18:11:06 | 000,000,348 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleFordogonit23.job
[2014/05/10 13:44:04 | 000,000,904 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2014/05/10 13:44:04 | 000,000,900 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2014/05/05 23:53:31 | 024,159,485 | ---- | M] () -- C:\Users\dogonit23\Desktop\Three-nights-with-ClaytonNolte-02.mp3
[2014/05/05 18:25:25 | 002,115,078 | ---- | M] () -- C:\Users\dogonit23\Desktop\AttendeeViewerImage004.bmp
[2014/05/05 18:24:15 | 002,115,078 | ---- | M] () -- C:\Users\dogonit23\Desktop\AttendeeViewerImage003.bmp
[2014/05/04 16:14:35 | 017,312,379 | ---- | M] () -- C:\Users\dogonit23\Desktop\Proven 7 step Blueprint for Finding Your Message, Turning it into Millions, and Building a Lifestyle Friendly Business.mp3
[2014/05/01 22:09:07 | 000,000,350 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleForDOGONIT23-HP$.job
[2014/04/30 20:12:56 | 117,358,787 | ---- | M] () -- C:\Users\dogonit23\Desktop\218440631.mp4
[2014/04/30 17:29:52 | 000,166,832 | ---- | M] () -- C:\Users\dogonit23\Desktop\quickcash.zip
[2014/04/29 17:35:59 | 001,907,760 | ---- | M] () -- C:\Users\dogonit23\Desktop\AttendeeViewerImage002.bmp
[2014/04/28 21:48:51 | 000,002,183 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2014/04/28 19:45:43 | 002,115,078 | ---- | M] () -- C:\Users\dogonit23\Desktop\AttendeeViewerImage001.bmp
[2014/04/28 18:06:30 | 000,187,050 | ---- | M] () -- C:\Users\dogonit23\Desktop\Statement12014.pdf
[2014/04/27 21:49:51 | 001,907,760 | ---- | M] () -- C:\Users\dogonit23\Desktop\AttendeeViewerImage000.bmp
[2014/04/27 12:05:14 | 000,002,697 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk
[2014/04/23 20:40:54 | 000,009,728 | ---- | M] () -- C:\Users\dogonit23\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2014/04/22 20:03:22 | 000,266,527 | ---- | M] () -- C:\Users\dogonit23\Desktop\loa_wealth_prac_sample.pdf
[2014/04/17 19:21:26 | 000,112,152 | ---- | M] () -- C:\Users\dogonit23\Desktop\GoToWebinar_Attendee_QuickRef_Guide.pdf
[2014/04/16 00:50:17 | 000,000,990 | ---- | M] () -- C:\Users\Public\Desktop\Kudani.lnk
[2014/04/15 23:24:43 | 000,001,201 | ---- | M] () -- C:\Users\Public\Desktop\Shortcut to Tube Sniper Pro.exe.lnk
[2014/04/15 23:24:20 | 001,666,371 | ---- | M] (Tube Sniper Pro) -- C:\tsp.exe
[2014/04/14 19:38:00 | 000,798,822 | ---- | M] () -- C:\Users\dogonit23\Desktop\NeverBeClosing_eBook.pdf
[2014/04/14 00:34:26 | 000,000,052 | ---- | M] () -- C:\Users\dogonit23\AppData\Roaming\SARky.dat
[2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
 
========== Files Created - No Company Name ==========
 
[2014/05/10 21:05:35 | 000,076,094 | ---- | C] () -- C:\Users\dogonit23\Desktop\paypal payment 5-10-14.pdf
[2014/05/06 00:08:08 | 024,159,485 | ---- | C] () -- C:\Users\dogonit23\Desktop\Three-nights-with-ClaytonNolte-02.mp3
[2014/05/05 18:25:25 | 002,115,078 | ---- | C] () -- C:\Users\dogonit23\Desktop\AttendeeViewerImage004.bmp
[2014/05/05 18:24:15 | 002,115,078 | ---- | C] () -- C:\Users\dogonit23\Desktop\AttendeeViewerImage003.bmp
[2014/05/04 22:49:47 | 017,312,379 | ---- | C] () -- C:\Users\dogonit23\Desktop\Proven 7 step Blueprint for Finding Your Message, Turning it into Millions, and Building a Lifestyle Friendly Business.mp3
[2014/04/30 21:06:55 | 117,358,787 | ---- | C] () -- C:\Users\dogonit23\Desktop\218440631.mp4
[2014/04/30 17:30:35 | 000,166,832 | ---- | C] () -- C:\Users\dogonit23\Desktop\quickcash.zip
[2014/04/29 17:35:59 | 001,907,760 | ---- | C] () -- C:\Users\dogonit23\Desktop\AttendeeViewerImage002.bmp
[2014/04/28 19:45:43 | 002,115,078 | ---- | C] () -- C:\Users\dogonit23\Desktop\AttendeeViewerImage001.bmp
[2014/04/28 18:06:27 | 000,187,050 | ---- | C] () -- C:\Users\dogonit23\Desktop\Statement12014.pdf
[2014/04/27 21:49:51 | 001,907,760 | ---- | C] () -- C:\Users\dogonit23\Desktop\AttendeeViewerImage000.bmp
[2014/04/27 12:05:14 | 000,002,697 | ---- | C] () -- C:\Users\Public\Desktop\Skype.lnk
[2014/04/22 20:03:35 | 000,266,527 | ---- | C] () -- C:\Users\dogonit23\Desktop\loa_wealth_prac_sample.pdf
[2014/04/17 19:21:32 | 000,112,152 | ---- | C] () -- C:\Users\dogonit23\Desktop\GoToWebinar_Attendee_QuickRef_Guide.pdf
[2014/04/16 00:50:17 | 000,000,990 | ---- | C] () -- C:\Users\Public\Desktop\Kudani.lnk
[2014/04/15 23:24:43 | 000,001,201 | ---- | C] () -- C:\Users\Public\Desktop\Shortcut to Tube Sniper Pro.exe.lnk
[2014/04/14 19:38:05 | 000,798,822 | ---- | C] () -- C:\Users\dogonit23\Desktop\NeverBeClosing_eBook.pdf
[2014/04/14 00:34:26 | 000,000,052 | ---- | C] () -- C:\Users\dogonit23\AppData\Roaming\SARky.dat
[2014/02/25 18:01:28 | 000,444,283 | ---- | C] () -- C:\Program Files\Common Files\WinPcapNmap.exe
[2014/02/23 03:04:15 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
[2014/02/23 03:04:15 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2014/02/23 03:04:15 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2014/02/23 03:04:15 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2014/02/23 03:04:15 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2013/09/14 16:08:03 | 000,268,968 | ---- | C] () -- C:\Windows\SysWow64\sqlite3.dll
[2013/09/02 14:03:12 | 000,205,717 | ---- | C] () -- C:\Windows\XHeader Uninstaller.exe
[2013/08/30 13:37:30 | 000,163,273 | ---- | C] () -- C:\Windows\Nexus Toolbar Uninstaller.exe
[2013/07/31 00:26:00 | 000,009,728 | ---- | C] () -- C:\Users\dogonit23\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2013/05/25 11:52:32 | 000,000,376 | ---- | C] () -- C:\Windows\ODBC.INI
[2013/05/20 14:29:46 | 000,000,000 | ---- | C] () -- C:\Windows\OpPrintServer.INI
[2013/05/06 17:27:50 | 000,775,974 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2013/05/06 15:05:28 | 000,007,603 | ---- | C] () -- C:\Users\dogonit23\AppData\Local\Resmon.ResmonCfg
[2013/05/04 20:13:25 | 252,812,488 | ---- | C] () -- C:\Users\dogonit23\capture-5.camrec
[2013/05/04 20:13:21 | 115,569,164 | ---- | C] () -- C:\Users\dogonit23\capture-4.camrec
[2013/05/04 20:13:12 | 249,367,596 | ---- | C] () -- C:\Users\dogonit23\capture-3.camrec
[2013/05/04 20:12:43 | 863,090,668 | ---- | C] () -- C:\Users\dogonit23\capture-2.camrec
[2013/05/04 20:12:03 | 1171,038,208 | ---- | C] () -- C:\Users\dogonit23\capture-1.camrec
[2013/05/04 20:12:03 | 012,238,848 | ---- | C] () -- C:\Users\dogonit23\capture-8.camrec
[2013/05/04 20:12:03 | 012,083,200 | ---- | C] () -- C:\Users\dogonit23\capture-7.camrec
[2013/05/04 20:12:03 | 000,073,795 | ---- | C] () -- C:\Users\dogonit23\presidential storage payment 2-15-13.pdf
[2013/05/04 20:12:00 | 061,049,468 | ---- | C] () -- C:\Users\dogonit23\capture-6.camrec
[2012/08/24 13:23:53 | 000,002,717 | ---- | C] () -- C:\Users\dogonit23\.recently-used.xbel
[2012/03/31 11:43:19 | 000,134,228 | ---- | C] () -- C:\Users\dogonit23\7 Do Not Eat Foods.pdf
[2011/02/13 14:08:47 | 001,130,348 | ---- | C] () -- C:\Users\dogonit23\hot-minisite-templates.zip
 
========== ZeroAccess Check ==========
 
[2009/07/13 21:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
 
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
 
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
 
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
 
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2013/07/25 19:24:57 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013/07/25 18:55:59 | 012,872,704 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/13 18:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 05:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/13 18:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
 
========== LOP Check ==========
 
[2013/12/22 14:32:03 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\AnvSoft
[2013/12/12 20:18:03 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Audacity
[2013/06/02 15:07:06 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\AutoHideIP
[2014/04/07 20:49:41 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Bitcasa
[2013/09/29 12:01:21 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\com.aligmarketing.slf
[2014/03/16 23:16:43 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\com.bitcasa.Bitcasa
[2014/04/16 18:19:34 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\com.jayvenka.qilio
[2013/10/11 10:51:01 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\com.pageone.FBads
[2013/10/22 17:28:24 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\com.pageone.Kudani
[2014/02/18 23:45:54 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\com.rapidwebsolutions.videovantage
[2014/03/19 23:44:27 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\CommandoHQ
[2014/05/11 10:05:27 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Copy
[2013/10/19 16:45:18 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\CurationSoft
[2014/05/12 19:48:56 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\DMCache
[2013/05/08 15:10:53 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Downloaded Installations
[2013/12/03 19:32:51 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\DVDVideoSoft
[2013/09/19 23:06:13 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\EasyEmailSender
[2013/08/05 13:11:56 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\EasyLeadFinderv2
[2013/05/08 15:18:32 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\FileOpen
[2014/03/18 00:09:51 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\FileZilla
[2013/09/14 16:58:35 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\GlarySoft
[2014/03/13 23:41:36 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\HotProspector
[2014/02/02 12:06:44 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\HydraVidPRO
[2014/05/12 19:16:11 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\IDM
[2013/11/17 13:08:34 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\IObit
[2013/09/19 23:08:11 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\IsolatedStorage
[2013/10/13 18:21:31 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\KompoZer
[2013/09/17 03:03:51 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\LinkWheelData
[2013/05/10 15:10:24 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\LocalizerLeadsTool
[2013/06/02 15:36:44 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Molura
[2013/05/08 15:18:33 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Nitro
[2014/05/10 21:05:33 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Nitro PDF
[2013/07/21 21:42:52 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\OpenOffice.org
[2013/05/04 16:37:14 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\PictureMover
[2013/09/17 02:52:16 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\RankArmoryData
[2013/10/07 16:36:37 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\RockstarSuite
[2014/05/10 14:29:18 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\SoftGrid Client
[2013/05/04 16:36:17 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Stardock
[2013/07/12 11:53:57 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\TechSmith
[2013/10/10 01:41:03 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\teknikforce
[2013/05/23 14:29:43 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Thunderbird
[2013/05/06 17:31:00 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\TP
[2013/08/23 11:48:57 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\TrafficLaunchPad-PRO
[2013/05/14 23:35:34 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\TubeSeoCommando.exe
[2013/10/14 02:06:42 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\UBot Studio
[2014/02/25 21:07:53 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\VDownloader
[2013/05/21 18:27:16 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\webex
[2013/05/09 16:44:24 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Windows Live Writer
[2013/06/02 14:39:46 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\WNR
[2013/06/02 15:36:56 | 000,000,000 | -HSD | M] -- C:\Users\dogonit23\AppData\Roaming\wyUpdate AU
[2013/05/26 17:30:11 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\ZumoDrive
 
========== Purity Check ==========
 
 
 
========== Alternate Data Streams ==========
 
@Alternate Data Stream - 891 bytes -> C:\Users\dogonit23\Desktop\2C9A0269-00000002.eml:OECustomProperty
@Alternate Data Stream - 491 bytes -> C:\Users\dogonit23\Documents\today.eml:OECustomProperty
@Alternate Data Stream - 166 bytes -> C:\ProgramData\Temp:BF3D62E7
@Alternate Data Stream - 1374 bytes -> C:\Users\dogonit23\Desktop\2C9A0269-00000002.eml:OEStandardProperty

< End of report >


  • 0

Advertisements


#2
Pyxis

Pyxis

    Trusted Helper

  • Malware Removal
  • 1,228 posts
Greetings,

Welcome to Geeks to Go--the friendliest online community dedicated to the sole goal of helping people from all around the world! :)

I am Pyxis and I will be assisting you with the problem at hand. Whilst I am taking the time to analyse your set of provided logs, I would like to stress the following reminders:
  • I am a student that is currently undergoing training. As such, my responses have to be checked by a professional before I present them to you to ensure you get the best quality help. If you deem I have overlooked your thread, which is in a matter of more than 24 hours, please send me a PM and I will get back to you shortly.
  • It is important that you do not install anything unless asked while the process is ongoing. Doing so may hinder or even complicate the cleaning of your system. You will get the chance to install things as you would like after the process has been completed.
  • Ensure you take extra caution to precisely follow my instructions. It is important that you only use the tools I have asked you to. The instructions for your computer are unique and should therefore only apply to your system.
I hope you keep in mind these reminders. I will be right back with a full response! :thumbsup:

Thank you.
  • 0

#3
Pyxis

Pyxis

    Trusted Helper

  • Malware Removal
  • 1,228 posts
Hi dogonit2,

I'd like to bring your attention to the site's Terms of Use - Section 3 (P):
 

The posting of links or references to warez or any other type of illegal software is strictly forbidden. By doing so you risk having your user account terminated without warning. We will NOT help anyone we suspect of having obtained their software or services illegally.


If you remove all of the cracked software present in your system, I will be able to continue assisting you. Should that be the case, kindly follow the below steps.
  • Step 1

    Download 'CKScanner by askey127' and save it to your desktop.
    • Simply double-click the program icon to run it. It will ask for administrator privileges.
    • Click Search For Files.
    • Wait for it to finish. It won't take long.
    • Choose Save List to File once your cursor has returned back to normal. Click OK at the prompt.
    • Copy (CTRL + A and CTRL + C) and paste (CTRL + V) the content of ckfiles.txt in your next reply.
  • Logs to Post

    In summary of the above, I will need you to post the following log(s):
    • ckfiles.txt (CKScanner)

  • 0

#4
dogonit2

dogonit2

    Member

  • Topic Starter
  • Member
  • PipPip
  • 26 posts

CKScanner 2.4 - Additional Security Risks - These are not necessarily bad
c:\program files (x86)\hewlett-packard\media\dvd\kernel\hddvd\navfilter\kmsvc.exe
c:\program files (x86)\jdownloader\jd\plugins\hoster\crackedcom.class
c:\users\dogonit23\desktop\extras\dvdfab 9.0.1.5 final cracked full version.rar
c:\users\dogonit23\desktop\security\spyhunter 4.1.11.0 + crackk.rar
c:\users\dogonit23\desktop\security\spyhunter v4.15.1.4270 +crack.rar
c:\users\dogonit23\desktop\security\spyhunter v4.15.1.4270 incl crack\spyhunters4.exe
c:\users\dogonit23\desktop\software downloads\cracksurl any video converter ultimate 2012 and 2013 versions serial key.mht
c:\users\dogonit23\desktop\software downloads\clone dvd\clone dvd - cd\clone dvd - cd\crack\clone dvd - cd crack by xkaos17 [www.killer-system32.tk].exe
c:\users\dogonit23\desktop\software downloads\clone dvd\clonedvd v2.9.3.0 final crack (ixshadowix)\clonedvd v2.9.3.0 final crack\setupclonedvd2930slysoft.exe
c:\users\dogonit23\desktop\software downloads\clone dvd\keygen\orion.nfo
c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab 8.0.9.8 crack (ixshadowix)\dvdfab 8.0.8.9 crack\dvdfab8098qt.exe
c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab 9.0.1.5 final cracked full version\dvdfab 9.0.1.5 final cracked full version.rar
c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab 9.0.1.5 final cracked full version\password for dvdfab 9.0.1.5 final cracked full version.txt
c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab 9.0.1.5 final cracked full version\read me first!.txt
c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab 9.0.1.5 final cracked full version\dvdfab 9.0.1.5 final cracked full version\dvdfab9015.exe
c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab 9.0.1.5 final cracked full version\dvdfab 9.0.1.5 final cracked full version\install note.txt
c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab 9.0.1.5 final cracked full version\dvdfab 9.0.1.5 final cracked full version\cracked exe\dvdfab.exe
c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab 9.0.2.0 final (timc0de)\?dvdfab 9.0.2.0 -crack- for free? - youtube.flv
c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab 9.0.2.0 final (timc0de)\?dvdfab 9_0_2_0 crack for free? - youtube.htm
c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab 9.0.2.0 final (timc0de)\crack- timc0de\dvdfab.exe
c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab8207qt___antaalz\dvdfab 8_2_1_0 qt final incl crack for free ! - youtube.htm
c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab8207qt___antaalz\dvdfab8207qt crack\msvcr90.dll
c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab8207qt___antaalz\dvdfab8207qt crack\read me.txt
c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab9.0.2.8\dvdfab 9_0_2_8 crack for free  no surveys - youtube.mht
c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab9.0.2.8\crack\dvdfab.exe
c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab_8.0.5.0_crack_(ixshadowix)\dvdfab 8.0.5.0 crack\delete old license.reg
c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab_8.0.5.0_crack_(ixshadowix)\dvdfab 8.0.5.0 crack\dvdfab8050.exe
c:\users\dogonit23\documents\elmford backup\data\storagesync\drive_c\documents and settings\desktop\unused desktop shortcuts\anydvd-crack.exe
c:\users\dogonit23\documents\elmford backup\data\storagesync\drive_c\documents and settings\favorites\computer\crack found - crack, cracks, serial, keygen.url
c:\users\dogonit23\documents\elmford backup\data\storagesync\drive_c\documents and settings\favorites\links\computer\crack found - crack, cracks, serial, keygen.url
c:\users\dogonit23\documents\elmford backup\data\storagesync\drive_c\documents and settings\favorites\links\favorites\computer\crack found - crack, cracks, serial, keygen.url
c:\users\dogonit23\documents\my roboform data\default profile\marketing\fbadscracked.rfp
c:\users\dogonit23\documents\my roboform data\default profile\tools\crackit.info - globalwayseo.rfp
c:\users\dogonit23\documents\my roboform data\default profile\tools\mediafire - crackit.rfp
c:\users\dogonit23\favorites\cracked seo tools.url
c:\users\dogonit23\favorites\computing\crack serial keygen free.url
c:\users\dogonit23\favorites\links\6 harsh truths that will make you a better person  cracked.url
c:\users\dogonit23\favorites\links\crackit.info  free crack downloads  black hat seo community.url
c:\users\dogonit23\favorites\links\crackit.info - free crack downloads  best seo & internet marketing tools (2).url
c:\users\dogonit23\favorites\links\crackit.info - free crack downloads  best seo & internet marketing tools.url
c:\users\dogonit23\favorites\links\internet download manager idm 6.15 build 5 new version 2013 full crack 100% woriking serial - youtube.url
c:\users\dogonit23\favorites\links\[get] adobe dreamweaver cs5.5 v11.5 build 5315 - the latest version - cracked.url
c:\users\dogonit23\favorites\marketing\active accounts\crackit.info - globalwayseo.info-members-vip-downloads-catalogue-.url
c:\users\dogonit23\favorites\marketing\active accounts\crackit.info - members area › log in.url
c:\users\dogonit23\favorites\marketing\possibilities\crackit.info - free crack downloads  best seo & internet marketing tools.url
c:\users\dogonit23\favorites\marketing\resources\crackit.info  free crack downloads  black hat seo community.url
c:\users\dogonit23\favorites\marketing\tools\crackit.info - free crack downloads  best seo & internet marketing tools.url
c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\09e947da-00000010.eml
c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\12821bd0-0000000e.eml
c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\1361714b-0000000a.eml
c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\16cd0361-00000001.eml
c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\18c7280c-00000007.eml
c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\3a043eee-00000005.eml
c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\3f191e6e-00000004.eml
c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\506a2fd4-00000009.eml
c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\55b2005d-0000000f.eml
c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\5bda2a0c-00000006.eml
c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\67027608-00000003.eml
c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\679c3ef4-00000002.eml
c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\7059093b-0000000d.eml
c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\7189521f-00000008.eml
c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\72ae6952-0000000c.eml
c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\760d604f-00000011.eml
c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\769b5b52-0000000b.eml
c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\7c242d46-00000012.eml
scanner sequence 3.ZZ.11.REAPIZ
 ----- EOF -----
 


  • 0

#5
Pyxis

Pyxis

    Trusted Helper

  • Malware Removal
  • 1,228 posts
  • Step 1

    Upon careful inspection, your log indicates that the program(s) listed below is installed on your computer. I would like to request for the removal of the program(s) as it is associated with malware, adware or spyware. Please proceed to uninstalling by going to Control Panel (Windows XP) or Programs and Features (Windows Vista or Windows 7). If Windows says it cannot locate the program(s) and that it prompts for it to be removed from the list instead, do so by allowing it.
    • Advanced SystemCare 7
    • IObit Malware Fighter
    • SpyHunter 4
    Inform me if you encounter problems in the removal process.
  • Step 2

    Certain programs will hinder the cleaning process. As such, I ask that you uninstall all the below programs to ensure no such conflict arises. Note that you may choose to disable these instead. However, for a more hassle-free solution in the long run, I recommend removing them now and later re-installing them once I declare you clean:
    • SUPERAntiSpyware
    I advise you to uninstall all of the above programs through Control Panel > Add or Remove Programs (Windows XP) or Control Panel > Programs and Features > Uninstall a Program (Windows Vista & Windows 7):

    If you are having difficulties, please tell me.
  • Step 3

    Run your copy of OTL by double-clicking it.
    • Copy and paste the following into the Custom Scans/Fixes box:
      :Commands
      [createrestorepoint]
      
      :OTL
      SRV:64bit: - [2013/05/07 16:19:12 | 001,025,408 | ---- | M] (Enigma Software Group USA, LLC.) [Auto | Running] -- C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe -- (SpyHunter 4 Service)
      SRV - [2013/11/11 18:19:48 | 000,341,824 | ---- | M] (IObit) [Auto | Running] -- C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe -- (IMFservice)
      SRV - [2013/10/25 13:07:24 | 002,151,200 | ---- | M] (IObit) [Auto | Running] -- C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe -- (LiveUpdateSvc)
      SRV - [2013/10/25 13:07:00 | 000,878,368 | ---- | M] (IObit) [Auto | Running] -- C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe -- (AdvancedSystemCareService7)
      DRV - [2013/11/19 17:10:34 | 000,034,848 | ---- | M] (IObit.com) [Kernel | On_Demand | Stopped] -- C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\RegFilter.sys -- (RegFilter)
      DRV - [2013/11/19 17:10:34 | 000,023,016 | ---- | M] (IObit.com) [Kernel | On_Demand | Stopped] -- C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\UrlFilter.sys -- (UrlFilter)
      DRV - [2013/03/23 16:48:48 | 000,023,048 | ---- | M] (IObit) [File_System | Disabled | Stopped] -- C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\FileMonitor.sys -- (FileMonitor)
      IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {ec29edf6-ad3c-4e1c-a087-d6cb81400c43}
      IE:64bit: - HKLM\..\SearchScopes\{d944bb61-2e34-4dbf-a683-47e505c587dc}: "URL" = http://rover.ebay.co...}&mfe=Notebooks
      IE - HKLM\..\SearchScopes,Backup.Old.DefaultScope = {ec29edf6-ad3c-4e1c-a087-d6cb81400c43}
      IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC
      IE - HKLM\..\SearchScopes\{6DF1C33E-C0B9-75F9-B506-250E091C4DC1}: "URL" = http://www.bing.com/...rc=IE-SearchBox
      IE - HKLM\..\SearchScopes\{d944bb61-2e34-4dbf-a683-47e505c587dc}: "URL" = http://rover.ebay.co...}&mfe=Notebooks
      IE - HKCU\..\SearchScopes,Backup.Old.DefaultScope = {4408C5D3-D063-47B7-F412-10B06D154E1C}
      IE - HKCU\..\SearchScopes,DefaultScope = {ec29edf6-ad3c-4e1c-a087-d6cb81400c43}
      IE - HKCU\..\SearchScopes\{6DF1C33E-C0B9-75F9-B506-250E091C4DC1}: "URL" = http://www.bing.com/...referrer:source}
      IE - HKCU\..\SearchScopes\{d944bb61-2e34-4dbf-a683-47e505c587dc}: "URL" = http://rover.ebay.co...}&mfe=Notebooks
      IE - HKCU\..\SearchScopes\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}: "URL" = http://www.bing.com/...rc=IE-SearchBox
      FF - prefs.js..extensions.enabledAddons: ascsurfingprotection%40iobit.com:1.0
      FF - prefs.js..extensions.enabledAddons: support%40auto-hide-ip.com:1.0
      [2014/02/27 17:33:42 | 000,000,000 | ---D | M] (Ads Removal) -- C:\Users\dogonit23\AppData\Roaming\Mozilla\Firefox\Profiles\qfgmkrbu.default\extensions\[email protected]
      [2013/11/17 13:08:33 | 000,000,000 | ---D | M] (Advanced SystemCare Surfing Protection) -- C:\Users\dogonit23\AppData\Roaming\Mozilla\Firefox\Profiles\qfgmkrbu.default\extensions\[email protected]
      [2013/06/02 15:09:22 | 000,004,526 | ---- | M] () (No name found) -- C:\Users\dogonit23\AppData\Roaming\Mozilla\Firefox\Profiles\qfgmkrbu.default\extensions\[email protected]
      [2014/04/06 10:57:42 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
      File not found (No name found) -- C:\PROGRAM FILES (X86)\IOBIT APPS TOOLBAR\FF
      O2:64bit: - BHO: (ExplorerWnd Helper) - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll (IObit)
      O2 - BHO: (Ads Removal) - {9D974C8C-6D92-44FB-BEAF-B45A1C0CF17F} - C:\Program Files (x86)\IObit\IObit Malware Fighter\adsremoval\IE\Adblock.dll (Adblock)
      O2 - BHO: (Advanced SystemCare Browser Protection) - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\Program Files (x86)\IObit\Surfing Protection\BrowerProtect\ASCPlugin_Protection.dll (IObit)
      O2 - BHO: (no name) - {CF070CB8-F02F-4af4-A7B7-8D45CAD4BB54} - No CLSID value found.
      O4:64bit: - HKLM..\Run: [VDownloader] C:\Program Files\VDownloader\VDownloader.exe (Vitzo)
      FF - HKCU\Software\MozillaPlugins\vitzo.com/VDownloader: C:\Program Files\VDownloader\Addons\npVDownloader.dll (Vitzo Limited)
      64bit-FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\PROGRAM FILES\VDOWNLOADER\ADDONS\FIREFOX [2014/02/25 18:01:27 | 000,000,000 | ---D | M]
      O15 - HKCU\..Trusted Domains: blackhatteam.com ([www] http in Trusted sites)
      O15 - HKCU\..Trusted Domains: samsungsetup.com ([www] http in Trusted sites)
      [2014/05/07 18:05:44 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Video Vantage
      [2014/04/16 18:19:33 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\com.jayvenka.qilio
      [2014/04/16 00:50:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PageOneTraffic
      [2014/04/15 23:24:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Tube Sniper Pro
      [2014/04/15 23:24:17 | 001,666,371 | ---- | C] (Tube Sniper Pro) -- C:\tsp.exe
      [2014/04/14 23:42:03 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Lead Kahuna
      [2014/04/13 16:24:25 | 000,000,000 | -HSD | C] -- C:\Users\dogonit23\AppData\Local\EmieUserList
      [2014/04/13 16:24:25 | 000,000,000 | -HSD | C] -- C:\Users\dogonit23\AppData\Local\EmieSiteList
      [2014/05/12 23:05:44 | 000,000,586 | ---- | M] () -- C:\Windows\tasks\G2MUpdateTask-S-1-5-21-2034785586-1586066431-309787569-1001.job
      [2014/05/11 10:05:08 | 000,000,286 | ---- | M] () -- C:\Windows\tasks\Driver Booster Update.job
      [2014/04/14 00:34:26 | 000,000,052 | ---- | M] () -- C:\Users\dogonit23\AppData\Roaming\SARky.dat
      [2013/06/02 15:07:06 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\AutoHideIP
      [2014/04/07 20:49:41 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Bitcasa
      [2013/09/29 12:01:21 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\com.aligmarketing.slf
      [2014/03/16 23:16:43 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\com.bitcasa.Bitcasa
      [2014/04/16 18:19:34 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\com.jayvenka.qilio
      [2013/10/11 10:51:01 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\com.pageone.FBads
      [2013/10/22 17:28:24 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\com.pageone.Kudani
      [2014/02/18 23:45:54 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\com.rapidwebsolutions.videovantage
      [2014/03/19 23:44:27 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\CommandoHQ
      [2013/09/19 23:06:13 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\EasyEmailSender
      [2013/08/05 13:11:56 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\EasyLeadFinderv2
      [2013/05/08 15:18:32 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\FileOpen
      [2014/03/13 23:41:36 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\HotProspector
      [2014/02/02 12:06:44 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\HydraVidPRO
      [2013/11/17 13:08:34 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\IObit
      [2013/09/17 03:03:51 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\LinkWheelData
      [2013/05/10 15:10:24 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\LocalizerLeadsTool
      [2013/06/02 15:36:44 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\Molura
      [2013/09/17 02:52:16 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\RankArmoryData
      [2013/10/07 16:36:37 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\RockstarSuite
      [2013/08/23 11:48:57 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\TrafficLaunchPad-PRO
      [2013/05/14 23:35:34 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\TubeSeoCommando.exe
      [2013/10/14 02:06:42 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\UBot Studio
      [2014/02/25 21:07:53 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\VDownloader
      [2013/06/02 14:39:46 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\WNR
      @Alternate Data Stream - 891 bytes -> C:\Users\dogonit23\Desktop\2C9A0269-00000002.eml:OECustomProperty
      @Alternate Data Stream - 491 bytes -> C:\Users\dogonit23\Documents\today.eml:OECustomProperty
      @Alternate Data Stream - 166 bytes -> C:\ProgramData\Temp:BF3D62E7
      @Alternate Data Stream - 1374 bytes -> C:\Users\dogonit23\Desktop\2C9A0269-00000002.eml:OEStandardProperty
      
      :Files
      C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\nfengeggddojhakldhlpjdlddgkkjkdd
      C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\glmfgahfleepmdfffonfckpmkondpdkg
      C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmolcgpienlcieaajfkkdamlngancncm
      C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkcefkcdkepgkpbgncjchhbjgoanleod
      C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\fopdddcinljmpmioaklghcalngfhbaen
      C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\eoccbpoodnckjdnackiffhjfkogfhnhh
      c:\users\dogonit23\favorites\cracked seo tools.url
      c:\users\dogonit23\favorites\computing\crack serial keygen free.url
      c:\users\dogonit23\favorites\links\6 harsh truths that will make you a better person cracked.url
      c:\users\dogonit23\favorites\links\crackit.info free crack downloads black hat seo community.url
      c:\users\dogonit23\favorites\links\crackit.info - free crack downloads best seo & internet marketing tools (2).url
      c:\users\dogonit23\favorites\links\crackit.info - free crack downloads best seo & internet marketing tools.url
      c:\users\dogonit23\favorites\links\internet download manager idm 6.15 build 5 new version 2013 full crack 100% woriking serial - youtube.url
      c:\users\dogonit23\favorites\links\[get] adobe dreamweaver cs5.5 v11.5 build 5315 - the latest version - cracked.url
      c:\users\dogonit23\favorites\marketing\active accounts\crackit.info - globalwayseo.info-members-vip-downloads-catalogue-.url
      c:\users\dogonit23\favorites\marketing\active accounts\crackit.info - members area  log in.url
      c:\users\dogonit23\favorites\marketing\possibilities\crackit.info - free crack downloads best seo & internet marketing tools.url
      c:\users\dogonit23\favorites\marketing\resources\crackit.info free crack downloads black hat seo community.url
      c:\users\dogonit23\favorites\marketing\tools\crackit.info - free crack downloads best seo & internet marketing tools.url
      c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\09e947da-00000010.eml
      c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\12821bd0-0000000e.eml
      c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\1361714b-0000000a.eml
      c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\16cd0361-00000001.eml
      c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\18c7280c-00000007.eml
      c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\3a043eee-00000005.eml
      c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\3f191e6e-00000004.eml
      c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\506a2fd4-00000009.eml
      c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\55b2005d-0000000f.eml
      c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\5bda2a0c-00000006.eml
      c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\67027608-00000003.eml
      c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\679c3ef4-00000002.eml
      c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\7059093b-0000000d.eml
      c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\7189521f-00000008.eml
      c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\72ae6952-0000000c.eml
      c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\760d604f-00000011.eml
      c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\769b5b52-0000000b.eml
      c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\7c242d46-00000012.eml
      c:\program files (x86)\jdownloader\jd\plugins\hoster\crackedcom.class
      c:\users\dogonit23\desktop\extras\dvdfab 9.0.1.5 final cracked full version.rar
      c:\users\dogonit23\desktop\security\spyhunter 4.1.11.0 + crackk.rar
      c:\users\dogonit23\desktop\security\spyhunter v4.15.1.4270 +crack.rar
      c:\users\dogonit23\desktop\security\spyhunter v4.15.1.4270 incl crack\spyhunters4.exe
      c:\users\dogonit23\desktop\software downloads\cracksurl any video converter ultimate 2012 and 2013 versions serial key.mht
      c:\users\dogonit23\desktop\software downloads\clone dvd\clone dvd - cd\clone dvd - cd\crack\clone dvd - cd crack by xkaos17 [www.killer-system32.tk].exe
      c:\users\dogonit23\desktop\software downloads\clone dvd\clonedvd v2.9.3.0 final crack (ixshadowix)\clonedvd v2.9.3.0 final crack\setupclonedvd2930slysoft.exe
      c:\users\dogonit23\desktop\software downloads\clone dvd\keygen\orion.nfo
      c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab 8.0.9.8 crack (ixshadowix)\dvdfab 8.0.8.9 crack\dvdfab8098qt.exe
      c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab 9.0.1.5 final cracked full version\dvdfab 9.0.1.5 final cracked full version.rar
      c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab 9.0.1.5 final cracked full version\password for dvdfab 9.0.1.5 final cracked full version.txt
      c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab 9.0.1.5 final cracked full version\read me first!.txt
      c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab 9.0.1.5 final cracked full version\dvdfab 9.0.1.5 final cracked full version\dvdfab9015.exe
      c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab 9.0.1.5 final cracked full version\dvdfab 9.0.1.5 final cracked full version\install note.txt
      c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab 9.0.1.5 final cracked full version\dvdfab 9.0.1.5 final cracked full version\cracked exe\dvdfab.exe
      c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab 9.0.2.0 final (timc0de)\?dvdfab 9.0.2.0 -crack- for free? - youtube.flv
      c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab 9.0.2.0 final (timc0de)\?dvdfab 9_0_2_0 crack for free? - youtube.htm
      c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab 9.0.2.0 final (timc0de)\crack- timc0de\dvdfab.exe
      c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab8207qt___antaalz\dvdfab 8_2_1_0 qt final incl crack for free ! - youtube.htm
      c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab8207qt___antaalz\dvdfab8207qt crack\msvcr90.dll
      c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab8207qt___antaalz\dvdfab8207qt crack\read me.txt
      c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab9.0.2.8\dvdfab 9_0_2_8 crack for free no surveys - youtube.mht
      c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab9.0.2.8\crack\dvdfab.exe
      c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab_8.0.5.0_crack_(ixshadowix)\dvdfab 8.0.5.0 crack\delete old license.reg
      c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab_8.0.5.0_crack_(ixshadowix)\dvdfab 8.0.5.0 crack\dvdfab8050.exe
      c:\users\dogonit23\documents\elmford backup\data\storagesync\drive_c\documents and settings\desktop\unused desktop shortcuts\anydvd-crack.exe
      c:\users\dogonit23\documents\elmford backup\data\storagesync\drive_c\documents and settings\favorites\computer\crack found - crack, cracks, serial, keygen.url
      c:\users\dogonit23\documents\elmford backup\data\storagesync\drive_c\documents and settings\favorites\links\computer\crack found - crack, cracks, serial, keygen.url
      c:\users\dogonit23\documents\elmford backup\data\storagesync\drive_c\documents and settings\favorites\links\favorites\computer\crack found - crack, cracks, serial, keygen.url
      
      :Commands
      [resethosts]
      

      cF4ib.png

    • Click Run Fix.
    • After, a Notepad window will appear, named MMDDYYYY_HHMMSS.log. Alternatively, you can find that log at C:\_OTL\MovedFiles\MMDDYYYY_HHMMSS.log.
    • Copy (CTRL + A and CTRL + C) and paste (CTRL + V) the content of the log in your next reply.
  • Step 4

    Download 'AdwCleaner by Xplode' and save it to your desktop.
    • Simply double-click the program icon to run it. It will ask for administrator privileges.
    • Click Scan and choose Clean after.
    • Wait for it to finish. It won't take long.
    • Click OK for the next prompts. Your system will automatically reboot.
    • A log will automatically pop-up after rebooting. Alternatively, you can find it at C:\AdwCleaner[S*].txt.
    • Copy (CTRL + A and CTRL + C) and paste (CTRL + V) the content of the log in your next reply.
  • Step 5

    Download 'Junkware Removal Tool by thisisu' and save it to your desktop.
    • Ensure all programs and windows are closed before proceeding.
    • Simply double-click the program icon to run it. It will ask for administrator privileges.
    • A black window will appear. Press any key to continue.
    • Wait for it to finish. It won't take long.
    • A log will automatically pop-up once done. Alternatively, you can find JRT.txt at your desktop.
    • Copy (CTRL + A and CTRL + C) and paste (CTRL + V) the content of the log in your next reply.
  • Step 6

    If you haven't already, download 'OTL by OldTimer' and save it to your desktop or move your existing copy into the said location.
    • Simply double-click the program icon to run it. It will ask for administrator privileges.

      SNBlQhy.png

    • Copy and paste the following into the Custom Scans/Fixes box:
      netsvcs
      BASESERVICES
      %SYSTEMDRIVE%\*.exe
      dir "%systemdrive%\*" /S /A:L /C
      /md5start
      services.*
      explorer.exe
      Userinit.exe
      svchost.exe
      /md5stop
      CREATERESTOREPOINT
    • Click Run Scan.
    • Files are being searched and it may take some time. Once done, two Notepad windows will appear, named OTL.txt and Extras.txt. Alternatively, you can also find these at your desktop.
    • Copy and paste (CTRL + A and CTRL + C) the content of these logs in your next reply.
  • Step 7

    Download 'SecurityCheck by screen317' and save it to your desktop.
    • Simply double-click the program icon to run it. It will ask for administrator privileges.
    • A black window will appear. Press any key to continue.
    • Wait for it to finish. It won't take long.
    • A log will automatically pop-up after once done.
    • Copy (CTRL + A and CTRL + C) and paste (CTRL + V) the content of the log in your next reply.
    Note: If you get an error about an unsupported operating system, please reboot your computer and try again.
  • Logs to Post

    In summary of the above, I will need you to post the following log(s):
    • MMDDYYYY_HHMMSS.log (OTL)
    • Extras.txt (OTL)
    • OTL.txt (OTL)
    • AdwCleaner[S*].txt (AdwCleaner)
    • checkup.txt (SecurityCheck)
    • JRT.txt (Junkware Removal Tool)

  • 0

#6
dogonit2

dogonit2

    Member

  • Topic Starter
  • Member
  • PipPip
  • 26 posts

OTL is unresponsive.... just sits and Not-Responding after or during it creates a restore point.

 

Have you given me a good command?


  • 0

#7
Pyxis

Pyxis

    Trusted Helper

  • Malware Removal
  • 1,228 posts

Have you given me a good command?


OTL does not accept invalid commands. It is likely that the problem is at your end (i.e. a faulty System Restore component or a condition preventing a restore point to be created). At any rate, kindly skip the first OTL fix and proceed with the rest of the steps.

Edited by Pyxis, 17 May 2014 - 11:05 PM.

  • 0

#8
dogonit2

dogonit2

    Member

  • Topic Starter
  • Member
  • PipPip
  • 26 posts

I ran and completed the OTL command with the above code in and fix. 

 

Unfortunately I do not know why it won't paste here?.

 

Here I did the scan again and this is the report that comes up.

 

The txt would not paste in here last time that is why I did not get the original to post for you.

 

It is even tried to attach the txt file and it is too big to upload...?

 

Let's see if it works this time.

 

 

 

 

========== COMMANDS ==========
Restore point Set: OTL Restore Point
========== OTL ==========
Error: No service named SpyHunter 4 Service was found to stop!
Service\Driver key SpyHunter 4 Service not found.
File C:\Program Files\Enigma Software Group\SpyHunter\SH4Service.exe not found.
Error: No service named IMFservice was found to stop!
Service\Driver key IMFservice not found.
File C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe not found.
Error: No service named LiveUpdateSvc was found to stop!
Service\Driver key LiveUpdateSvc not found.
File C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe not found.
Error: No service named AdvancedSystemCareService7 was found to stop!
Service\Driver key AdvancedSystemCareService7 not found.
File C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe not found.
Error: No service named RegFilter was found to stop!
Service\Driver key RegFilter not found.
File C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\RegFilter.sys not found.
Error: No service named UrlFilter was found to stop!
Service\Driver key UrlFilter not found.
File C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\UrlFilter.sys not found.
Error: No service named FileMonitor was found to stop!
Service\Driver key FileMonitor not found.
File C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\FileMonitor.sys not found.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{d944bb61-2e34-4dbf-a683-47e505c587dc}\ not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d944bb61-2e34-4dbf-a683-47e505c587dc}\ not found.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6DF1C33E-C0B9-75F9-B506-250E091C4DC1}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6DF1C33E-C0B9-75F9-B506-250E091C4DC1}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{d944bb61-2e34-4dbf-a683-47e505c587dc}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d944bb61-2e34-4dbf-a683-47e505c587dc}\ not found.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope| /E : value set successfully!
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6DF1C33E-C0B9-75F9-B506-250E091C4DC1}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6DF1C33E-C0B9-75F9-B506-250E091C4DC1}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{d944bb61-2e34-4dbf-a683-47e505c587dc}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{d944bb61-2e34-4dbf-a683-47e505c587dc}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ec29edf6-ad3c-4e1c-a087-d6cb81400c43}\ not found.
Prefs.js: ascsurfingprotection%40iobit.com:1.0 removed from extensions.enabledAddons
Prefs.js: support%40auto-hide-ip.com:1.0 removed from extensions.enabledAddons
Folder C:\Users\dogonit23\AppData\Roaming\Mozilla\Firefox\Profiles\qfgmkrbu.default\extensions\[email protected]\ not found.
Folder C:\Users\dogonit23\AppData\Roaming\Mozilla\Firefox\Profiles\qfgmkrbu.default\extensions\[email protected]\ not found.
File C:\Users\dogonit23\AppData\Roaming\Mozilla\Firefox\Profiles\qfgmkrbu.default\extensions\[email protected] not found.
Folder C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}\ not found.
64bit-Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}\ not found.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{10921475-03CE-4E04-90CE-E2E7EF20C814}\ not found.
File C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll not found.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9D974C8C-6D92-44FB-BEAF-B45A1C0CF17F}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9D974C8C-6D92-44FB-BEAF-B45A1C0CF17F}\ not found.
File C:\Program Files (x86)\IObit\IObit Malware Fighter\adsremoval\IE\Adblock.dll not found.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}\ not found.
File C:\Program Files (x86)\IObit\Surfing Protection\BrowerProtect\ASCPlugin_Protection.dll not found.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CF070CB8-F02F-4af4-A7B7-8D45CAD4BB54}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CF070CB8-F02F-4af4-A7B7-8D45CAD4BB54}\ not found.
64bit-Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\VDownloader not found.
File C:\Program Files\VDownloader\VDownloader.exe not found.
Registry key HKEY_CURRENT_USER\Software\MozillaPlugins\vitzo.com/VDownloader\ not found.
File C:\Program Files\VDownloader\Addons\npVDownloader.dll not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\blackhatteam.com\www\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\samsungsetup.com\www\ not found.
Folder C:\Program Files (x86)\Video Vantage\ not found.
Folder C:\Users\dogonit23\AppData\Roaming\com.jayvenka.qilio\ not found.
Folder C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PageOneTraffic\ not found.
Folder C:\Program Files (x86)\Tube Sniper Pro\ not found.
File C:\tsp.exe not found.
Folder C:\Users\dogonit23\Lead Kahuna\ not found.
C:\Users\dogonit23\AppData\Local\EmieUserList folder moved successfully.
C:\Users\dogonit23\AppData\Local\EmieSiteList folder moved successfully.
C:\Windows\Tasks\G2MUpdateTask-S-1-5-21-2034785586-1586066431-309787569-1001.job moved successfully.
File C:\Windows\tasks\Driver Booster Update.job not found.
File C:\Users\dogonit23\AppData\Roaming\SARky.dat not found.
Folder C:\Users\dogonit23\AppData\Roaming\AutoHideIP\ not found.
C:\Users\dogonit23\AppData\Roaming\Bitcasa folder moved successfully.
Folder C:\Users\dogonit23\AppData\Roaming\com.aligmarketing.slf\ not found.
C:\Users\dogonit23\AppData\Roaming\com.bitcasa.Bitcasa\Data\bks\outgoing\a5661bcb-bb8a-406a-a126-d5b01414ca10 folder moved successfully.
C:\Users\dogonit23\AppData\Roaming\com.bitcasa.Bitcasa\Data\bks\outgoing folder moved successfully.
C:\Users\dogonit23\AppData\Roaming\com.bitcasa.Bitcasa\Data\bks\cache\61\92 folder moved successfully.
C:\Users\dogonit23\AppData\Roaming\com.bitcasa.Bitcasa\Data\bks\cache\61 folder moved successfully.
C:\Users\dogonit23\AppData\Roaming\com.bitcasa.Bitcasa\Data\bks\cache\56\a2 folder moved successfully.
C:\Users\dogonit23\AppData\Roaming\com.bitcasa.Bitcasa\Data\bks\cache\56 folder moved successfully.
C:\Users\dogonit23\AppData\Roaming\com.bitcasa.Bitcasa\Data\bks\cache folder moved successfully.
C:\Users\dogonit23\AppData\Roaming\com.bitcasa.Bitcasa\Data\bks folder moved successfully.
C:\Users\dogonit23\AppData\Roaming\com.bitcasa.Bitcasa\Data folder moved successfully.
C:\Users\dogonit23\AppData\Roaming\com.bitcasa.Bitcasa\Application Support\elk\dded933d08f574ec3d13b85932cad60ebf9e3f1823ea9766abece2a1ddb19d96 folder moved successfully.
C:\Users\dogonit23\AppData\Roaming\com.bitcasa.Bitcasa\Application Support\elk\82ce7392e5ad2ea30b6bd64125b94bb86080aa02021c29b739fbe1eb6df80698 folder moved successfully.
C:\Users\dogonit23\AppData\Roaming\com.bitcasa.Bitcasa\Application Support\elk folder moved successfully.
C:\Users\dogonit23\AppData\Roaming\com.bitcasa.Bitcasa\Application Support folder moved successfully.
C:\Users\dogonit23\AppData\Roaming\com.bitcasa.Bitcasa folder moved successfully.
Folder C:\Users\dogonit23\AppData\Roaming\com.jayvenka.qilio\ not found.
Folder C:\Users\dogonit23\AppData\Roaming\com.pageone.FBads\ not found.
Folder C:\Users\dogonit23\AppData\Roaming\com.pageone.Kudani\ not found.
Folder C:\Users\dogonit23\AppData\Roaming\com.rapidwebsolutions.videovantage\ not found.
Folder C:\Users\dogonit23\AppData\Roaming\CommandoHQ\ not found.
Folder C:\Users\dogonit23\AppData\Roaming\EasyEmailSender\ not found.
Folder C:\Users\dogonit23\AppData\Roaming\EasyLeadFinderv2\ not found.
Folder C:\Users\dogonit23\AppData\Roaming\FileOpen\ not found.
Folder C:\Users\dogonit23\AppData\Roaming\HotProspector\ not found.
Folder C:\Users\dogonit23\AppData\Roaming\HydraVidPRO\ not found.
Folder C:\Users\dogonit23\AppData\Roaming\IObit\ not found.
Folder C:\Users\dogonit23\AppData\Roaming\LinkWheelData\ not found.
Folder C:\Users\dogonit23\AppData\Roaming\LocalizerLeadsTool\ not found.
Folder C:\Users\dogonit23\AppData\Roaming\Molura\ not found.
Folder C:\Users\dogonit23\AppData\Roaming\RankArmoryData\ not found.
Folder C:\Users\dogonit23\AppData\Roaming\RockstarSuite\ not found.
Folder C:\Users\dogonit23\AppData\Roaming\TrafficLaunchPad-PRO\ not found.
Folder C:\Users\dogonit23\AppData\Roaming\TubeSeoCommando.exe\ not found.
Folder C:\Users\dogonit23\AppData\Roaming\UBot Studio\ not found.
Folder C:\Users\dogonit23\AppData\Roaming\VDownloader\ not found.
Folder C:\Users\dogonit23\AppData\Roaming\WNR\ not found.
ADS C:\Users\dogonit23\Desktop\2C9A0269-00000002.eml:OECustomProperty deleted successfully.
ADS C:\Users\dogonit23\Documents\today.eml:OECustomProperty deleted successfully.
Unable to delete ADS C:\ProgramData\Temp:BF3D62E7 .
Unable to delete ADS C:\Users\dogonit23\Desktop\2C9A0269-00000002.eml:OEStandardProperty .
========== FILES ==========
File\Folder C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\nfengeggddojhakldhlpjdlddgkkjkdd not found.
File\Folder C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\glmfgahfleepmdfffonfckpmkondpdkg not found.
File\Folder C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmolcgpienlcieaajfkkdamlngancncm not found.
File\Folder C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkcefkcdkepgkpbgncjchhbjgoanleod not found.
File\Folder C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\fopdddcinljmpmioaklghcalngfhbaen not found.
File\Folder C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\eoccbpoodnckjdnackiffhjfkogfhnhh not found.
File\Folder c:\users\dogonit23\favorites\cracked seo tools.url not found.
File\Folder c:\users\dogonit23\favorites\computing\crack serial keygen free.url not found.
File\Folder c:\users\dogonit23\favorites\links\6 harsh truths that will make you a better person cracked.url not found.
File\Folder c:\users\dogonit23\favorites\links\crackit.info free crack downloads black hat seo community.url not found.
File\Folder c:\users\dogonit23\favorites\links\crackit.info - free crack downloads best seo & internet marketing tools (2).url not found.
File\Folder c:\users\dogonit23\favorites\links\crackit.info - free crack downloads best seo & internet marketing tools.url not found.
File\Folder c:\users\dogonit23\favorites\links\internet download manager idm 6.15 build 5 new version 2013 full crack 100% woriking serial - youtube.url not found.
File\Folder c:\users\dogonit23\favorites\links\[get] adobe dreamweaver cs5.5 v11.5 build 5315 - the latest version - cracked.url not found.
File\Folder c:\users\dogonit23\favorites\marketing\active accounts\crackit.info - globalwayseo.info-members-vip-downloads-catalogue-.url not found.
File\Folder c:\users\dogonit23\favorites\marketing\active accounts\crackit.info - members area  log in.url not found.
File\Folder c:\users\dogonit23\favorites\marketing\possibilities\crackit.info - free crack downloads best seo & internet marketing tools.url not found.
File\Folder c:\users\dogonit23\favorites\marketing\resources\crackit.info free crack downloads black hat seo community.url not found.
File\Folder c:\users\dogonit23\favorites\marketing\tools\crackit.info - free crack downloads best seo & internet marketing tools.url not found.
File\Folder c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\09e947da-00000010.eml not found.
File\Folder c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\12821bd0-0000000e.eml not found.
File\Folder c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\1361714b-0000000a.eml not found.
File\Folder c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\16cd0361-00000001.eml not found.
File\Folder c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\18c7280c-00000007.eml not found.
File\Folder c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\3a043eee-00000005.eml not found.
File\Folder c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\3f191e6e-00000004.eml not found.
File\Folder c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\506a2fd4-00000009.eml not found.
File\Folder c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\55b2005d-0000000f.eml not found.
File\Folder c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\5bda2a0c-00000006.eml not found.
File\Folder c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\67027608-00000003.eml not found.
File\Folder c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\679c3ef4-00000002.eml not found.
File\Folder c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\7059093b-0000000d.eml not found.
File\Folder c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\7189521f-00000008.eml not found.
File\Folder c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\72ae6952-0000000c.eml not found.
File\Folder c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\760d604f-00000011.eml not found.
File\Folder c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\769b5b52-0000000b.eml not found.
File\Folder c:\windows live mail\storage folders\imported folder\local folders\marketing\active accounts\tools\crackit.inf 63f\7c242d46-00000012.eml not found.
File\Folder c:\program files (x86)\jdownloader\jd\plugins\hoster\crackedcom.class not found.
File\Folder c:\users\dogonit23\desktop\extras\dvdfab 9.0.1.5 final cracked full version.rar not found.
File\Folder c:\users\dogonit23\desktop\security\spyhunter 4.1.11.0 + crackk.rar not found.
File\Folder c:\users\dogonit23\desktop\security\spyhunter v4.15.1.4270 +crack.rar not found.
File\Folder c:\users\dogonit23\desktop\security\spyhunter v4.15.1.4270 incl crack\spyhunters4.exe not found.
File\Folder c:\users\dogonit23\desktop\software downloads\cracksurl any video converter ultimate 2012 and 2013 versions serial key.mht not found.
File\Folder c:\users\dogonit23\desktop\software downloads\clone dvd\clone dvd - cd\clone dvd - cd\crack\clone dvd - cd crack by xkaos17 [www.killer-system32.tk].exe not found.
File\Folder c:\users\dogonit23\desktop\software downloads\clone dvd\clonedvd v2.9.3.0 final crack (ixshadowix)\clonedvd v2.9.3.0 final crack\setupclonedvd2930slysoft.exe not found.
File\Folder c:\users\dogonit23\desktop\software downloads\clone dvd\keygen\orion.nfo not found.
File\Folder c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab 8.0.9.8 crack (ixshadowix)\dvdfab 8.0.8.9 crack\dvdfab8098qt.exe not found.
File\Folder c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab 9.0.1.5 final cracked full version\dvdfab 9.0.1.5 final cracked full version.rar not found.
File\Folder c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab 9.0.1.5 final cracked full version\password for dvdfab 9.0.1.5 final cracked full version.txt not found.
File\Folder c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab 9.0.1.5 final cracked full version\read me first!.txt not found.
File\Folder c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab 9.0.1.5 final cracked full version\dvdfab 9.0.1.5 final cracked full version\dvdfab9015.exe not found.
File\Folder c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab 9.0.1.5 final cracked full version\dvdfab 9.0.1.5 final cracked full version\install note.txt not found.
File\Folder c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab 9.0.1.5 final cracked full version\dvdfab 9.0.1.5 final cracked full version\cracked exe\dvdfab.exe not found.
File\Folder c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab 9.0.2.0 final (timc0de)\?dvdfab 9.0.2.0 -crack- for free? - youtube.flv not found.
File\Folder c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab 9.0.2.0 final (timc0de)\?dvdfab 9_0_2_0 crack for free? - youtube.htm not found.
File\Folder c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab 9.0.2.0 final (timc0de)\crack- timc0de\dvdfab.exe not found.
File\Folder c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab8207qt___antaalz\dvdfab 8_2_1_0 qt final incl crack for free ! - youtube.htm not found.
File\Folder c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab8207qt___antaalz\dvdfab8207qt crack\msvcr90.dll not found.
File\Folder c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab8207qt___antaalz\dvdfab8207qt crack\read me.txt not found.
File\Folder c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab9.0.2.8\dvdfab 9_0_2_8 crack for free no surveys - youtube.mht not found.
File\Folder c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab9.0.2.8\crack\dvdfab.exe not found.
File\Folder c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab_8.0.5.0_crack_(ixshadowix)\dvdfab 8.0.5.0 crack\delete old license.reg not found.
File\Folder c:\users\dogonit23\desktop\software downloads\dvd fab\dvdfab_8.0.5.0_crack_(ixshadowix)\dvdfab 8.0.5.0 crack\dvdfab8050.exe not found.
File\Folder c:\users\dogonit23\documents\elmford backup\data\storagesync\drive_c\documents and settings\desktop\unused desktop shortcuts\anydvd-crack.exe not found.
File\Folder c:\users\dogonit23\documents\elmford backup\data\storagesync\drive_c\documents and settings\favorites\computer\crack found - crack, cracks, serial, keygen.url not found.
File\Folder c:\users\dogonit23\documents\elmford backup\data\storagesync\drive_c\documents and settings\favorites\links\computer\crack found - crack, cracks, serial, keygen.url not found.
File\Folder c:\users\dogonit23\documents\elmford backup\data\storagesync\drive_c\documents and settings\favorites\links\favorites\computer\crack found - crack, cracks, serial, keygen.url not found.
========== COMMANDS ==========
C:\Windows\System32\drivers\etc\Hosts moved successfully.
HOSTS file reset successfully
 
OTL by OldTimer - Version 3.2.69.0 log created on 05212014_185741
 


Edited by dogonit2, 22 May 2014 - 12:51 AM.

  • 0

#9
dogonit2

dogonit2

    Member

  • Topic Starter
  • Member
  • PipPip
  • 26 posts

AdwCleaner scan

 

 

# AdwCleaner v3.210 - Report created 21/05/2014 at 19:42:12
# Updated 19/05/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : dogonit23 - DOGONIT23-HP
# Running from : C:\Users\dogonit23\Desktop\Security\adwcleaner.exe
# Option : Clean

***** [ Services ] *****

***** [ Files / Folders ] *****

File Deleted : C:\Windows\System32\Tasks\Driver Booster Update

***** [ Shortcuts ] *****

***** [ Registry ] *****

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17041

-\\ Mozilla Firefox v28.0 (en-US)

[ File : C:\Users\dogonit23\AppData\Roaming\Mozilla\Firefox\Profiles\qfgmkrbu.default\prefs.js ]

-\\ Google Chrome v34.0.1847.137

[ File : C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Deleted [Search Provider] : hxxp://search.aol.com/aol/search?query={searchTerms}
Deleted [Search Provider] : hxxp://www.ask.com/web?q={searchTerms}
Deleted [Extension] : gkcefkcdkepgkpbgncjchhbjgoanleod

*************************

AdwCleaner[R0].txt - [4348 octets] - [13/09/2013 12:18:27]
AdwCleaner[R10].txt - [2151 octets] - [21/05/2014 19:22:15]
AdwCleaner[R1].txt - [4408 octets] - [13/09/2013 12:43:24]
AdwCleaner[R2].txt - [3165 octets] - [28/09/2013 00:29:05]
AdwCleaner[R3].txt - [3334 octets] - [28/09/2013 18:12:01]
AdwCleaner[R4].txt - [3394 octets] - [28/09/2013 18:16:38]
AdwCleaner[R5].txt - [1438 octets] - [08/10/2013 22:15:26]
AdwCleaner[R6].txt - [3031 octets] - [07/01/2014 01:25:47]
AdwCleaner[R7].txt - [2822 octets] - [23/02/2014 01:37:30]
AdwCleaner[R8].txt - [2046 octets] - [23/02/2014 02:35:48]
AdwCleaner[R9].txt - [2955 octets] - [01/05/2014 22:34:35]
AdwCleaner[S0].txt - [3959 octets] - [13/09/2013 12:44:46]
AdwCleaner[S1].txt - [3389 octets] - [28/09/2013 18:25:51]
AdwCleaner[S2].txt - [1503 octets] - [08/10/2013 22:34:00]
AdwCleaner[S3].txt - [3000 octets] - [07/01/2014 01:31:06]
AdwCleaner[S4].txt - [2799 octets] - [23/02/2014 02:08:21]
AdwCleaner[S5].txt - [2136 octets] - [23/02/2014 02:42:05]
AdwCleaner[S6].txt - [2079 octets] - [21/05/2014 19:42:12]

########## EOF - C:\AdwCleaner\AdwCleaner[S6].txt - [2139 octets] ##########


  • 0

#10
Pyxis

Pyxis

    Trusted Helper

  • Malware Removal
  • 1,228 posts

Let's see if it works this time.


Looks like it did! Thank you for the logs. :) Please post the remaining ones once you have produced them (Junkware Removal Tool, OTL (Run Scan), and SecurityCheck). All three should not take long to complete. How is your computer running, by the way? We have removed a bunch of bad files.
  • 0

Advertisements


#11
dogonit2

dogonit2

    Member

  • Topic Starter
  • Member
  • PipPip
  • 26 posts

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows 7 Home Premium x64
Ran by dogonit23 on Sat 05/24/2014 at 18:21:27.23
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

 

~~~ Services

 

~~~ Registry Values

 

~~~ Registry Keys

 

~~~ Files

 

~~~ Folders

Successfully deleted: [Folder] "C:\Program Files (x86)\free youtube downloader"

 

~~~ FireFox

Successfully deleted: [File] C:\Users\dogonit23\AppData\Roaming\mozilla\firefox\profiles\qfgmkrbu.default\invalidprefs.js

 

~~~ Event Viewer Logs were cleared

 

 

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Sat 05/24/2014 at 18:31:42.71
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~


  • 0

#12
Pyxis

Pyxis

    Trusted Helper

  • Malware Removal
  • 1,228 posts
2 more to go. :)
  • 0

#13
dogonit2

dogonit2

    Member

  • Topic Starter
  • Member
  • PipPip
  • 26 posts

OTL logfile created on: 5/25/2014 10:38:45 AM - Run 2
OTL by OldTimer - Version 3.2.69.0     Folder = C:\Users\dogonit23\Desktop\Security
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17041)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
 
3.75 Gb Total Physical Memory | 1.30 Gb Available Physical Memory | 34.82% Memory free
7.49 Gb Paging File | 4.32 Gb Available in Paging File | 57.63% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 442.60 Gb Total Space | 163.35 Gb Free Space | 36.91% Space Free | Partition Type: NTFS
Drive D: | 22.87 Gb Total Space | 3.31 Gb Free Space | 14.45% Space Free | Partition Type: NTFS
Drive F: | 232.88 Gb Total Space | 93.89 Gb Free Space | 40.32% Space Free | Partition Type: NTFS
Drive G: | 99.02 Mb Total Space | 89.02 Mb Free Space | 89.90% Space Free | Partition Type: FAT32
Drive H: | 1863.01 Gb Total Space | 0.38 Gb Free Space | 0.02% Space Free | Partition Type: NTFS
 
Computer Name: DOGONIT23-HP | User Name: dogonit23 | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 360 Days
 
========== Processes (SafeList) ==========
 
PRC - [2014/05/12 23:22:43 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\dogonit23\Desktop\Security\OTL.exe
PRC - [2014/04/11 19:45:50 | 001,764,992 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
PRC - [2014/04/11 19:45:42 | 001,390,720 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
PRC - [2013/06/26 19:21:50 | 000,207,528 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
PRC - [2013/06/26 19:21:46 | 000,523,944 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
PRC - [2013/05/04 21:43:02 | 000,160,328 | ---- | M] (Siber Systems) -- C:\Program Files (x86)\Siber Systems\AI RoboForm\robotaskbaricon.exe
PRC - [2012/10/31 11:33:37 | 000,015,104 | ---- | M] (PlumChoice, Inc.) -- C:\Program Files (x86)\Cox, Inc\Cox PC HealthCheck\PCMonitoringService.exe
PRC - [2011/06/14 14:29:22 | 000,026,680 | ---- | M] (Hewlett-Packard Development Company, L.P.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
PRC - [2011/05/21 16:52:16 | 000,103,992 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
PRC - [2010/09/11 02:02:22 | 000,399,344 | ---- | M] (Roxio) -- C:\Program Files (x86)\Roxio\RoxioNow Player\RNowSvc.exe
PRC - [2010/09/03 18:13:30 | 000,136,488 | ---- | M] (CyberLink) -- C:\Program Files (x86)\Hewlett-Packard\Media\Webcam\YCMMirage.exe
 
 
========== Modules (No Company Name) ==========
 
MOD - [2014/03/31 21:35:24 | 000,270,016 | ---- | M] () -- C:\Program Files (x86)\Windows Live\Writer\en\WindowsLive.Writer.Localization.resources.dll
MOD - [2014/02/14 00:10:06 | 012,436,480 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\8bc548587e91ecf0552a40e47bbf99cc\System.Windows.Forms.ni.dll
MOD - [2014/02/14 00:09:59 | 001,593,344 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\5c24d3b0041ebf4f48a93615b9fa3de9\System.Drawing.ni.dll
MOD - [2014/02/14 00:09:56 | 000,025,600 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\Accessibility\4f5069e6497e5e6a381ab6aadf05d6a5\Accessibility.ni.dll
MOD - [2014/02/14 00:09:53 | 005,464,064 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\217ece46920546d718414291d463bb1c\System.Xml.ni.dll
MOD - [2014/02/14 00:09:50 | 000,978,432 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\5b6ddf934128d538cd5cd77bf4209b93\System.Configuration.ni.dll
MOD - [2014/02/14 00:09:31 | 007,989,760 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\b3a78269847005365001c33870cd121f\System.ni.dll
MOD - [2014/02/14 00:09:26 | 011,499,520 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\ede2c6c842840e009f01bcc74fa4c457\mscorlib.ni.dll
MOD - [2013/09/23 20:09:13 | 000,036,352 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\IEExtension\1.0.0.876__c8e1c1f3d6d8e203\IEExtension.dll
MOD - [2013/09/23 20:09:12 | 000,139,264 | ---- | M] () -- C:\Windows\assembly\GAC_32\Interop.SHDocVw\1.1.0.0__c8e1c1f3d6d8e203\Interop.SHDocVw.dll
MOD - [2013/09/23 20:09:11 | 008,007,680 | ---- | M] () -- C:\Windows\assembly\GAC\Microsoft.mshtml\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.mshtml.dll
 
 
========== Services (SafeList) ==========
 
SRV:64bit: - [2014/04/09 23:43:36 | 000,111,616 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV:64bit: - [2014/03/11 12:34:10 | 000,347,872 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- c:\Program Files\Microsoft Security Client\NisSrv.exe -- (NisSrv)
SRV:64bit: - [2014/03/11 12:34:10 | 000,023,808 | ---- | M] (Microsoft Corporation) [Auto | Running] -- c:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)
SRV:64bit: - [2013/05/26 22:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2013/05/01 07:14:32 | 000,230,416 | ---- | M] (Nitro PDF Software) [Auto | Running] -- C:\Program Files\Common Files\Nitro\Reader\3.0\NitroPDFReaderDriverService3x64.exe -- (NitroReaderDriverReadSpool3)
SRV:64bit: - [2011/05/13 18:58:10 | 000,030,520 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Windows\SysNative\hpservice.exe -- (hpsrv)
SRV:64bit: - [2010/10/08 16:17:42 | 000,203,264 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2010/09/14 16:57:34 | 000,263,168 | ---- | M] (IDT, Inc.) [Auto | Running] -- C:\Program Files\IDT\WDM\stacsv64.exe -- (STacSV)
SRV:64bit: - [2010/09/14 16:57:26 | 000,089,600 | ---- | M] (Andrea Electronics Corporation) [Auto | Running] -- C:\Program Files\IDT\WDM\AESTSr64.exe -- (AESTFilters)
SRV:64bit: - [2010/08/05 19:51:08 | 000,291,896 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe -- (HPClientSvc)
SRV:64bit: - [2010/07/21 14:33:00 | 000,103,992 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe -- (HP Wireless Assistant Service)
SRV - [2014/05/24 16:03:55 | 000,119,408 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2014/05/14 23:30:58 | 000,257,712 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2014/04/11 19:45:50 | 001,764,992 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe -- (c2cpnrsvc)
SRV - [2014/04/11 19:45:42 | 001,390,720 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe -- (c2cautoupdatesvc)
SRV - [2013/10/23 08:15:08 | 000,172,192 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2013/09/11 22:21:54 | 000,105,144 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2013/06/26 19:21:50 | 000,207,528 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe -- (sftvsa)
SRV - [2013/06/26 19:21:46 | 000,523,944 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe -- (sftlist)
SRV - [2012/11/25 06:13:12 | 000,821,720 | ---- | M] (Mister Group) [On_Demand | Stopped] -- C:\Program Files (x86)\System Explorer\service\SystemExplorerService64.exe -- (SystemExplorerHelpService)
SRV - [2012/10/31 11:33:37 | 000,015,104 | ---- | M] (PlumChoice, Inc.) [Auto | Running] -- C:\Program Files (x86)\Cox, Inc\Cox PC HealthCheck\PCMonitoringService.exe -- (COX CommunicationsMonitoringService)
SRV - [2012/09/27 11:55:16 | 000,086,528 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe -- (HP Support Assistant Service)
SRV - [2011/06/14 14:29:22 | 000,026,680 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe -- (HPWMISVC)
SRV - [2011/05/21 16:52:16 | 000,103,992 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe -- (HPDrvMntSvc.exe)
SRV - [2010/09/21 16:52:04 | 000,245,232 | ---- | M] (CyberLink) [Auto | Stopped] -- C:\Program Files (x86)\Hewlett-Packard\Media\DVD\Kernel\HDDVD\NavFilter\kmsvc.exe -- (CLKMSVC10_C6F09094)
SRV - [2010/09/11 02:02:22 | 000,399,344 | ---- | M] (Roxio) [Auto | Running] -- C:\Program Files (x86)\Roxio\RoxioNow Player\RNowSvc.exe -- (RoxioNow Service)
SRV - [2010/06/18 18:59:12 | 000,246,520 | ---- | M] (WildTangent, Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe -- (GameConsoleService)
SRV - [2010/06/01 16:31:28 | 002,804,568 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe -- (NOBU)
SRV - [2009/06/10 14:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
 
 
========== Driver Services (SafeList) ==========
 
DRV:64bit: - [2014/03/11 09:52:30 | 000,133,928 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\NisDrvWFP.sys -- (NisDrv)
DRV:64bit: - [2013/11/25 13:03:00 | 000,413,888 | ---- | M] (EldoS Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\cbfs5.sys -- (cbfs5)
DRV:64bit: - [2013/11/02 11:46:19 | 000,883,928 | ---- | M] (Realtek                                            ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2013/10/01 19:22:20 | 000,056,832 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2013/08/06 12:39:22 | 000,014,456 | ---- | M] (GFI Software) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\gfibto.sys -- (gfibto)
DRV:64bit: - [2013/06/26 19:21:50 | 000,023,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftvollh.sys -- (Sftvol)
DRV:64bit: - [2013/06/26 19:21:48 | 000,028,840 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftredirlh.sys -- (Sftredir)
DRV:64bit: - [2013/06/26 19:21:46 | 000,273,576 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftplaylh.sys -- (Sftplay)
DRV:64bit: - [2013/06/26 19:21:44 | 000,767,144 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftfslh.sys -- (Sftfs)
DRV:64bit: - [2013/05/22 18:49:32 | 000,017,720 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\SmartDefragDriver.sys -- (SmartDefragDriver)
DRV:64bit: - [2013/02/05 22:06:06 | 000,057,840 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fssfltr.sys -- (fssfltr)
DRV:64bit: - [2012/11/21 17:43:14 | 000,165,112 | ---- | M] (Tonec Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\idmwfp.sys -- (IDMWFP)
DRV:64bit: - [2012/08/23 07:10:20 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2012/06/20 09:42:44 | 003,678,720 | ---- | M] (Qualcomm Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\athrx.sys -- (athr)
DRV:64bit: - [2012/05/17 14:01:08 | 000,033,872 | ---- | M] (AnvSoft Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\anvsnddrv.sys -- (anvsnddrv)
DRV:64bit: - [2012/02/29 23:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2011/10/23 21:04:32 | 000,223,232 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hw_quusbmdm.sys -- (HWHandSet)
DRV:64bit: - [2011/10/14 04:37:44 | 000,396,848 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:64bit: - [2011/05/13 18:58:16 | 000,030,008 | ---- | M] (Hewlett-Packard Company) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\hpdskflt.sys -- (hpdskflt)
DRV:64bit: - [2011/05/13 18:57:58 | 000,043,320 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Accelerometer.sys -- (Accelerometer)
DRV:64bit: - [2011/03/10 23:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011/03/10 23:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2010/11/20 06:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010/11/20 02:37:42 | 000,109,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus)
DRV:64bit: - [2010/10/08 16:18:06 | 000,125,456 | ---- | M] (ATI Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtiHdmi.sys -- (AtiHdmiService)
DRV:64bit: - [2010/10/08 16:18:04 | 000,038,528 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\usbfilter.sys -- (usbfilter)
DRV:64bit: - [2010/10/08 16:18:04 | 000,016,440 | ---- | M] (Advanced Micro Devices Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\AtiPcie64.sys -- (AtiPcie)
DRV:64bit: - [2010/10/08 16:17:44 | 007,767,552 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2010/10/08 16:17:44 | 000,279,040 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2010/09/14 17:06:08 | 000,239,136 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RtsUStor.sys -- (RSUSBSTOR)
DRV:64bit: - [2010/09/14 16:57:40 | 000,515,584 | ---- | M] (IDT, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\stwrt64.sys -- (STHDA)
DRV:64bit: - [2010/09/03 18:13:32 | 000,031,088 | ---- | M] (CyberLink Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\clwvd.sys -- (clwvd)
DRV:64bit: - [2010/01/26 19:09:02 | 000,047,632 | ---- | M] (CACE Technologies, Inc.) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\npf.sys -- (npf)
DRV:64bit: - [2009/07/13 18:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009/07/13 18:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009/07/13 18:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009/06/10 14:01:11 | 001,485,312 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTDPV6.SYS -- (SrvHsfV92)
DRV:64bit: - [2009/06/10 14:01:11 | 000,740,864 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTCNXT6.SYS -- (SrvHsfWinac)
DRV:64bit: - [2009/06/10 14:01:11 | 000,292,864 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VSTAZL6.SYS -- (SrvHsfHDA)
DRV:64bit: - [2009/06/10 13:37:05 | 006,108,416 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:64bit: - [2009/06/10 13:35:33 | 000,389,120 | ---- | M] (Marvell) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\yk62x64.sys -- (yukonw7)
DRV:64bit: - [2009/06/10 13:35:28 | 005,434,368 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\netw5v64.sys -- (netw5v64)
DRV:64bit: - [2009/06/10 13:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009/06/10 13:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009/06/10 13:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009/06/10 13:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009/05/18 13:17:08 | 000,034,152 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:64bit: - [2008/05/06 17:06:00 | 000,014,464 | ---- | M] (Western Digital Technologies) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wdcsam64.sys -- (WDC_SAM)
DRV - [2009/07/13 18:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
 
 
========== Standard Registry (SafeList) ==========
 
 
========== Internet Explorer ==========
 
IE:64bit: - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,Backup.Old.DefaultScope = {ec29edf6-ad3c-4e1c-a087-d6cb81400c43}
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC
 
 
IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =
 
IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =
 
IE - HKU\S-1-5-21-2034785586-1586066431-309787569-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://google.com/
IE - HKU\S-1-5-21-2034785586-1586066431-309787569-1001\..\SearchScopes,Backup.Old.DefaultScope = {4408C5D3-D063-47B7-F412-10B06D154E1C}
IE - HKU\S-1-5-21-2034785586-1586066431-309787569-1001\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-2034785586-1586066431-309787569-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
========== FireFox ==========
 
FF - prefs.js..browser.startup.homepage: "http://google.com/"
FF - prefs.js..extensions.enabledAddons: xpirftoolbar%40roboform.com:3.4.9
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:29.0.1
FF - user.js - File not found
 
FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.21.2: C:\Windows\system32\npDeployJava1.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=:  File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.51.2: C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3528.0331: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nitropdf.com/NitroPDF: C:\Program Files (x86)\Nitro\Reader 3\npnitromozilla.dll (Nitro PDF)
FF - HKLM\Software\MozillaPlugins\@photoproduct.rocketlife.com/RocketLife App Viewer;version=0.8:  File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.1.0: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@hulu.com/Hulu Desktop: C:\Windows\..\Users\Default\AppData\Local\HuluDesktop\instances\0.9.13.1\npHDPlg.dll ()
FF - HKCU\Software\MozillaPlugins\@startmeeting.com/launcher: C:\Users\dogonit23\AppData\Local\SMPlugins\npsmlauncher.dll (Start Meeting)
FF - HKCU\Software\MozillaPlugins\@talk.google.com/GoogleTalkPlugin: C:\Users\dogonit23\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
FF - HKCU\Software\MozillaPlugins\@talk.google.com/O1DPlugin: C:\Users\dogonit23\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google)
FF - HKCU\Software\MozillaPlugins\@talk.google.com/O3DPlugin: C:\Users\dogonit23\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll ()
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\dogonit23\AppData\Local\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\dogonit23\AppData\Local\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
 
64bit-FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\PROGRAM FILES\VDOWNLOADER\ADDONS\FIREFOX [2014/02/25 18:01:27 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 29.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2014/05/24 16:03:34 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 29.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\[email protected]: C:\Users\dogonit23\AppData\Roaming\IDM\idmmzcc5 [2013/08/11 16:03:03 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\SeaMonkey\Extensions\\[email protected]: C:\Users\dogonit23\AppData\Roaming\IDM\idmmzcc5 [2013/08/11 16:03:03 | 000,000,000 | ---D | M]
 
[2013/05/06 11:53:05 | 000,000,000 | ---D | M] (No name found) -- C:\Users\dogonit23\AppData\Roaming\Mozilla\Extensions
[2014/05/24 15:04:36 | 000,000,000 | ---D | M] (No name found) -- C:\Users\dogonit23\AppData\Roaming\Mozilla\Firefox\Profiles\qfgmkrbu.default\extensions
[2013/05/30 15:43:09 | 000,651,703 | ---- | M] () (No name found) -- C:\Users\dogonit23\AppData\Roaming\Mozilla\Firefox\Profiles\qfgmkrbu.default\extensions\[email protected]
[2014/05/24 16:03:59 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
[2014/05/24 16:03:59 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
 
========== Chrome  ==========
 
CHR - plugin: Error reading preferences file
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.0.0.6_0\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.0.0.6_1\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_1\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.2_0\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.2_1\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_1\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_1\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_1\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_1\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\
CHR - Extension: Skype Click to Call = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\7.0.14735.1561_0\
CHR - Extension: Google Wallet = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_0\
CHR - Extension: Google Wallet = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_0\
CHR - Extension: Google Wallet = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_2\
CHR - Extension: No name found = C:\Users\dogonit23\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_3\
 
O1 HOSTS File: ([2014/05/21 19:07:30 | 000,000,098 | ---- | M]) - C:\Windows\SysNative\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1       localhost
O1 - Hosts: ::1       localhost
O2:64bit: - BHO: (IDM integration (IDMIEHlprObj Class)) - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll (Internet Download Manager, Tonec Inc.)
O2:64bit: - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\SkypeIEPlugin.dll (Microsoft Corporation)
O2:64bit: - BHO: (HP Network Check Helper) - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard)
O2 - BHO: (IDM integration (IDMIEHlprObj Class)) - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll (Internet Download Manager, Tonec Inc.)
O2 - BHO: (Reg Error: Value error.) - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
O2 - BHO: (Java™ Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Skype Browser Helper) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
O2 - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (HP Network Check Helper) - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
O3 - HKLM\..\Toolbar: (&RoboForm) - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
O3 - HKU\.DEFAULT\..\Toolbar\WebBrowser: (&RoboForm) - {724D43A0-0D85-11D4-9908-00400523E39A} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
O3 - HKU\S-1-5-18\..\Toolbar\WebBrowser: (&RoboForm) - {724D43A0-0D85-11D4-9908-00400523E39A} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
O3 - HKU\S-1-5-21-2034785586-1586066431-309787569-1001\..\Toolbar\WebBrowser: (&RoboForm) - {724D43A0-0D85-11D4-9908-00400523E39A} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
O4:64bit: - HKLM..\Run: [MSC] c:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
O4:64bit: - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe (IDT, Inc.)
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKU\.DEFAULT..\Run: [RoboForm] C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe (Siber Systems)
O4 - HKU\S-1-5-18..\Run: [RoboForm] C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe (Siber Systems)
O4 - HKU\S-1-5-21-2034785586-1586066431-309787569-1001..\Run: [IDMan] C:\Program Files (x86)\Internet Download Manager\IDMan.exe (Tonec Inc.)
O4 - HKU\S-1-5-21-2034785586-1586066431-309787569-1001..\Run: [RoboForm] C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe (Siber Systems)
O4:64bit: - HKLM..\RunOnce: [NCPluginUpdater] C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe (Hewlett-Packard)
O4 - HKU\S-1-5-21-2034785586-1586066431-309787569-1001..\RunOnce: [Uninstall C:\Users\dogonit23\AppData\Local\Microsoft\SkyDrive\17.0.4024.1220\amd64] C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\dogonit23\AppData\Local\Microsoft\SkyDrive\17.0.4024.1220\amd64" File not found
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-2034785586-1586066431-309787569-1001\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-2034785586-1586066431-309787569-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8:64bit: - Extra context menu item: Customize Menu - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html ()
O8:64bit: - Extra context menu item: Download all links with IDM - C:\Program Files (x86)\Internet Download Manager\IEGetAll.htm ()
O8:64bit: - Extra context menu item: Download with IDM - C:\Program Files (x86)\Internet Download Manager\IEExt.htm ()
O8:64bit: - Extra context menu item: Fill Forms - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComFillForms.html ()
O8:64bit: - Extra context menu item: RoboForm Toolbar - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html ()
O8:64bit: - Extra context menu item: Save Forms - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComSavePass.html ()
O8:64bit: - Extra context menu item: Save Page As PDF ... - C:\Program Files (x86)\Nitro PDF\PDF Download\nitroweb.htm ()
O8 - Extra context menu item: Customize Menu - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html ()
O8 - Extra context menu item: Download all links with IDM - C:\Program Files (x86)\Internet Download Manager\IEGetAll.htm ()
O8 - Extra context menu item: Download with IDM - C:\Program Files (x86)\Internet Download Manager\IEExt.htm ()
O8 - Extra context menu item: Fill Forms - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComFillForms.html ()
O8 - Extra context menu item: RoboForm Toolbar - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html ()
O8 - Extra context menu item: Save Forms - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComSavePass.html ()
O8 - Extra context menu item: Save Page As PDF ... - C:\Program Files (x86)\Nitro PDF\PDF Download\nitroweb.htm ()
O9:64bit: - Extra Button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
O9:64bit: - Extra 'Tools' menuitem : @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
O9:64bit: - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\SkypeIEPlugin.dll (Microsoft Corporation)
O9 - Extra Button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
O9 - Extra 'Tools' menuitem : @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
O9 - Extra Button: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComFillForms.html ()
O9 - Extra 'Tools' menuitem : Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComFillForms.html ()
O9 - Extra Button: Save - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComSavePass.html ()
O9 - Extra 'Tools' menuitem : Save Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComSavePass.html ()
O9 - Extra Button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html ()
O9 - Extra 'Tools' menuitem : RoboForm Toolbar - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html ()
O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset...lineScanner.cab (OnlineScanner Control)
O16 - DPF: {B1E2B96C-12FE-45E2-BEF1-44A219113CDD} http://www.superadbl...ivex/sabspx.cab (SABScanProcesses Class)
O16 - DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} https://akamaicdn.we...ex/ieatgpc1.cab (GpcContainer Class)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{03E2D4D8-4331-4BF1-807E-B2127DD99B44}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{2A907A11-940D-4C2F-BAD7-A1C33153ADAE}: DhcpNameServer = 192.168.1.1
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp\0x00000001 - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp\oledb - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\mso-offdap - No CLSID value found
O18:64bit: - Protocol\Handler\mso-offdap11 - No CLSID value found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\SkypeIEPlugin.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
O18:64bit: - Protocol\Filter\text/xml - No CLSID value found
O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O21:64bit: - SSODL: EldosMountNotificator-cbfs5 - {7250D916-AC6A-452E-8B26-A561D45A18CB} - C:\Windows\SysNative\cbfsMntNtf5.dll (EldoS Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: EldosMountNotificator-cbfs5 - {7250D916-AC6A-452E-8B26-A561D45A18CB} - C:\Windows\SysWOW64\cbfsMntNtf5.dll (EldoS Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O22:64bit: - SharedTaskScheduler: {1984DD45-52CF-49cd-AB77-18F378FEA264} - FencesShellExt - C:\Program Files\Stardock\Fences Pro\FencesMenu64.dll (Stardock)
O22:64bit: - SharedTaskScheduler: {7250D916-AC6A-452E-8B26-A561D45A18CB} - Virtual Storage Mount Notification - C:\Windows\SysNative\cbfsMntNtf5.dll (EldoS Corporation)
O22 - SharedTaskScheduler: {7250D916-AC6A-452E-8B26-A561D45A18CB} - Virtual Storage Mount Notification - C:\Windows\SysWOW64\cbfsMntNtf5.dll (EldoS Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2013/08/05 12:50:06 | 000,000,000 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O32 - AutoRun File - [2011/08/19 00:41:32 | 000,000,000 | R--D | M] - H:\autorun -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = ComFile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
 
 
CREATERESTOREPOINT
Restore point Set: OTL Restore Point
 
========== Files/Folders - Created Within 360 Days ==========
 
[2014/05/24 16:03:32 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[2014/05/22 18:34:47 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\com.bitcasa.Bitcasa
[2014/05/21 19:10:09 | 000,000,000 | -HSD | C] -- C:\Users\dogonit23\AppData\Local\EmieUserList
[2014/05/21 19:10:09 | 000,000,000 | -HSD | C] -- C:\Users\dogonit23\AppData\Local\EmieSiteList
[2014/05/21 19:09:44 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\Bitcasa
[2014/05/18 11:04:05 | 000,000,000 | ---D | C] -- C:\Windows\en
[2014/05/17 00:00:24 | 000,000,000 | ---D | C] -- C:\_OTL
[2014/05/16 22:59:23 | 000,000,000 | ---D | C] -- C:\Windows\tasks\ImCleanDisabled
[2014/05/14 23:30:39 | 017,938,608 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerInstaller.exe
[2014/05/13 23:21:46 | 000,084,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2014/05/13 23:21:46 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2014/05/13 23:21:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\DESIGNER
[2014/05/13 16:53:45 | 000,477,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aepdu.dll
[2014/05/13 16:53:43 | 000,424,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aeinv.dll
[2014/05/13 16:51:53 | 001,460,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll
[2014/05/13 16:51:51 | 003,969,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntkrnlpa.exe
[2014/05/13 16:51:50 | 003,914,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntoskrnl.exe
[2014/05/13 16:51:49 | 000,722,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\objsel.dll
[2014/05/13 16:51:49 | 000,455,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winlogon.exe
[2014/05/13 16:51:48 | 005,550,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntoskrnl.exe
[2014/05/13 16:51:45 | 000,538,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\objsel.dll
[2014/05/13 16:51:45 | 000,424,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KernelBase.dll
[2014/05/13 16:51:43 | 000,057,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cngprovider.dll
[2014/05/13 16:51:43 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\adprovider.dll
[2014/05/13 16:51:43 | 000,049,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\adprovider.dll
[2014/05/13 16:51:43 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dimsroam.dll
[2014/05/13 16:51:43 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dimsroam.dll
[2014/05/13 16:51:42 | 000,053,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\capiprovider.dll
[2014/05/13 16:51:42 | 000,052,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dpapiprovider.dll
[2014/05/13 16:51:42 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cngprovider.dll
[2014/05/13 16:51:42 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\capiprovider.dll
[2014/05/13 16:51:42 | 000,047,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dpapiprovider.dll
[2014/05/13 16:51:41 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspicli.dll
[2014/05/13 16:51:41 | 000,039,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wincredprovider.dll
[2014/05/13 16:51:41 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wincredprovider.dll
[2014/05/13 16:51:40 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspisrv.dll
[2014/05/13 16:51:40 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secur32.dll
[2014/05/10 08:40:06 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Documents\Prism II
[2014/05/07 17:16:01 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Desktop\Videos
[2014/05/02 00:16:44 | 000,000,000 | --SD | C] -- C:\Windows\SysNative\CompatTel
[2014/04/27 12:05:36 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\Skype
[2014/04/27 12:05:14 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
[2014/04/27 12:05:13 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Skype
[2014/04/10 23:16:42 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\App_Updater
[2014/04/10 23:12:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaboomizer
[2014/04/10 23:11:58 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Kaboomizer
[2014/04/09 23:43:37 | 000,628,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2014/04/09 23:43:37 | 000,574,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2014/04/09 23:43:37 | 000,453,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtmsft.dll
[2014/04/09 23:43:37 | 000,440,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2014/04/09 23:43:37 | 000,296,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll
[2014/04/09 23:43:36 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
[2014/04/09 23:43:36 | 000,112,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2014/04/09 23:43:36 | 000,111,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollector.exe
[2014/04/09 23:43:36 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieetwproxystub.dll
[2014/04/09 23:43:36 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwproxystub.dll
[2014/04/09 23:43:36 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollectorres.dll
[2014/04/09 23:43:35 | 005,784,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2014/04/09 23:43:35 | 000,846,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll
[2014/04/09 23:43:35 | 000,752,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9diag.dll
[2014/04/09 23:43:35 | 000,704,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
[2014/04/09 23:43:35 | 000,592,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript9diag.dll
[2014/04/09 23:43:35 | 000,586,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
[2014/04/09 23:43:35 | 000,548,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
[2014/04/09 23:43:35 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll
[2014/04/09 23:43:35 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
[2014/04/09 23:43:35 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll
[2014/04/09 23:43:35 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
[2014/04/09 23:43:34 | 002,043,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2014/04/09 23:43:34 | 001,967,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2014/04/09 23:43:34 | 000,195,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msrating.dll
[2014/04/09 23:43:34 | 000,164,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
[2014/04/09 23:43:34 | 000,038,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\JavaScriptCollectionAgent.dll
[2014/04/09 23:43:34 | 000,032,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll
[2014/04/09 23:43:33 | 000,940,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MsSpellCheckingFacility.exe
[2014/04/09 17:14:52 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IP-Tools
[2014/04/09 17:14:52 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IP-Tools
[2014/04/09 17:14:27 | 000,000,000 | ---D | C] -- C:\Program Files\IP-Tools
[2014/04/09 17:02:38 | 000,000,000 | ---D | C] -- C:\vince
[2014/04/09 17:01:12 | 000,000,000 | ---D | C] -- C:\SSMG Contacts
[2014/04/08 17:26:21 | 000,190,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\storport.sys
[2014/04/08 17:26:21 | 000,027,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\Diskdump.sys
[2014/04/08 17:26:21 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iologmsg.dll
[2014/04/08 17:26:20 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iologmsg.dll
[2014/04/08 17:26:00 | 001,163,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kernel32.dll
[2014/04/08 17:25:58 | 000,243,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64.dll
[2014/04/08 17:25:57 | 000,362,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64win.dll
[2014/04/08 17:25:55 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\setup16.exe
[2014/04/08 17:25:54 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntvdm64.dll
[2014/04/08 17:25:53 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntvdm64.dll
[2014/04/08 17:25:53 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64cpu.dll
[2014/04/08 17:25:46 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wow32.dll
[2014/04/08 17:25:44 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\instnm.exe
[2014/04/08 17:25:43 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\user.exe
[2014/03/31 21:34:22 | 000,322,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\WLXPGSS.SCR
[2014/03/19 23:44:32 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Documents\CommandoHQ.exe
[2014/03/19 23:44:26 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\CommandoHQLic
[2014/03/19 23:43:53 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\CommandoHQ
[2014/03/19 23:43:51 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Documents\CommandoHQ
[2014/03/19 23:43:08 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CommandoHQ
[2014/03/19 19:32:32 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Fastrack Web Solutions
[2014/03/16 23:16:22 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitcasa
[2014/03/16 23:16:20 | 000,219,944 | ---- | C] (EldoS Corporation) -- C:\Windows\SysWow64\cbfsNetRdr5.dll
[2014/03/16 23:16:20 | 000,183,592 | ---- | C] (EldoS Corporation) -- C:\Windows\SysNative\cbfsMntNtf5.dll
[2014/03/16 23:16:20 | 000,157,480 | ---- | C] (EldoS Corporation) -- C:\Windows\SysWow64\cbfsMntNtf5.dll
[2014/03/16 23:16:20 | 000,120,616 | ---- | C] (EldoS Corporation) -- C:\Windows\SysNative\cbfsNetRdr5.dll
[2014/03/16 23:16:15 | 000,413,888 | ---- | C] (EldoS Corporation) -- C:\Windows\SysNative\drivers\cbfs5.sys
[2014/03/16 23:16:15 | 000,009,000 | ---- | C] (EldoS Corporation) -- C:\Windows\SysNative\elevtmsg.dll
[2014/03/16 23:16:12 | 000,000,000 | ---D | C] -- C:\Program Files\Bitcasa
[2014/03/13 23:42:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Hot Lead Finder
[2014/03/13 00:50:43 | 000,484,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wer.dll
[2014/03/13 00:50:43 | 000,381,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wer.dll
[2014/03/13 00:50:13 | 000,624,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qedit.dll
[2014/03/13 00:50:09 | 000,509,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qedit.dll
[2014/03/13 00:50:00 | 001,424,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsCodecs.dll
[2014/03/11 23:43:01 | 000,090,112 | ---- | C] (MindVision Software) -- C:\Windows\unvise32.exe
[2014/03/11 23:43:01 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The Logo Creator v5.2
[2014/03/11 23:42:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Logo Creator v5.2
[2014/03/11 23:41:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\The Logo Creator v5
[2014/03/08 01:51:14 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\blackMaps
[2014/03/08 01:50:47 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\blackMaps
[2014/03/08 01:27:09 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\PlumChoice, Inc
[2014/03/08 01:26:05 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Cox, Inc
[2014/03/08 01:25:59 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Cox, Inc
[2014/03/01 21:01:31 | 000,077,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_5.dll
[2014/03/01 21:01:31 | 000,074,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_5.dll
[2014/03/01 21:01:30 | 000,527,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_7.dll
[2014/03/01 21:01:30 | 000,518,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_7.dll
[2014/03/01 21:01:26 | 002,526,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_43.dll
[2014/03/01 21:01:26 | 002,106,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_43.dll
[2014/03/01 21:01:22 | 000,276,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx11_43.dll
[2014/03/01 21:01:22 | 000,248,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx11_43.dll
[2014/03/01 21:00:34 | 000,523,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_42.dll
[2014/03/01 21:00:34 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_42.dll
[2014/03/01 20:59:47 | 004,398,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_32.dll
[2014/03/01 20:59:47 | 003,426,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_32.dll
[2014/02/27 23:31:46 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\TrafficJeet
[2014/02/25 20:53:43 | 000,000,000 | ---D | C] -- C:\Windows\Sun
[2014/02/25 19:59:55 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Desktop\RK_Quarantine
[2014/02/25 19:08:26 | 006,574,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstscax.dll
[2014/02/25 19:08:26 | 005,694,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstscax.dll
[2014/02/25 19:00:14 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Documents\Downloads
[2014/02/25 18:57:00 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free YouTube Downloader
[2014/02/25 18:02:08 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\VDownloader
[2014/02/25 18:02:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VDownloader
[2014/02/25 18:00:01 | 000,000,000 | ---D | C] -- C:\Program Files\VDownloader
[2014/02/25 17:46:03 | 000,000,000 | ---D | C] -- C:\Program Files\WinPcap
[2014/02/23 12:09:02 | 000,012,872 | ---- | C] (SurfRight B.V.) -- C:\Windows\SysNative\bootdelete.exe
[2014/02/23 11:38:31 | 000,000,000 | ---D | C] -- C:\ProgramData\HitmanPro
[2014/02/23 03:32:49 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2014/02/23 03:04:15 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2014/02/23 03:04:15 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2014/02/23 03:04:15 | 000,060,416 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2014/02/23 03:03:44 | 000,000,000 | ---D | C] -- C:\Qoobox
[2014/02/23 02:02:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java
[2014/02/23 02:02:11 | 000,000,000 | ---D | C] -- C:\ProgramData\Oracle
[2014/02/23 02:01:40 | 000,264,616 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\javaws.exe
[2014/02/23 02:01:21 | 000,175,016 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\javaw.exe
[2014/02/23 02:01:21 | 000,174,504 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\java.exe
[2014/02/23 02:01:21 | 000,096,168 | ---- | C] (Oracle Corporation) -- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
[2014/02/23 02:01:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
[2014/02/23 01:49:35 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Desktop\JavaRa
[2014/02/23 00:55:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
[2014/02/21 18:57:30 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TsUsbGDCoInstaller.dll
[2014/02/21 18:57:14 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys
[2014/02/21 18:57:14 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TsUsbRedirectionGroupPolicyControl.exe
[2014/02/21 18:57:14 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TsUsbRedirectionGroupPolicyExtension.dll
[2014/02/21 18:57:09 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tsgqec.dll
[2014/02/21 18:57:09 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tsgqec.dll
[2014/02/21 18:57:09 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wksprtPS.dll
[2014/02/21 18:57:09 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wksprtPS.dll
[2014/02/21 18:57:08 | 000,420,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wksprt.exe
[2014/02/21 18:57:08 | 000,083,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TSWbPrxy.exe
[2014/02/21 18:57:08 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MsRdpWebAccess.dll
[2014/02/21 18:57:08 | 000,050,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MsRdpWebAccess.dll
[2014/02/21 18:57:07 | 001,068,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstsc.exe
[2014/02/21 18:57:06 | 001,147,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstsc.exe
[2014/02/21 18:57:03 | 000,855,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdvidcrl.dll
[2014/02/21 18:57:02 | 001,057,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdvidcrl.dll
[2014/02/21 18:56:07 | 001,030,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TSWorkspace.dll
[2014/02/21 18:56:06 | 000,792,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\TSWorkspace.dll
[2014/02/21 18:41:24 | 001,533,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\WUDFUpdate_01007.dll
[2014/02/21 18:41:24 | 001,490,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WdfCoInstaller01007.dll
[2014/02/21 18:41:24 | 001,490,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\WdfCoInstaller01007.dll
[2014/02/21 18:41:24 | 000,708,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\WinUSBCoInstaller.dll
[2014/02/21 18:41:24 | 000,223,232 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\Windows\SysNative\drivers\hw_quusbmdm.sys
[2014/02/21 18:41:24 | 000,116,864 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\Windows\SysNative\drivers\hw_usbdev.sys
[2014/02/21 18:40:56 | 000,708,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WinUSBCoInstaller.dll
[2014/02/21 18:40:51 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Handset WinDriver
[2014/02/18 23:45:53 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Documents\VideoVantage
[2014/02/18 19:47:42 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Documents\Snagit
[2014/02/18 19:47:33 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\assembly
[2014/02/13 19:24:46 | 000,000,000 | ---D | C] -- C:\Config.Msi
[2014/02/12 22:06:47 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msxml3r.dll
[2014/02/12 22:06:47 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msxml3r.dll
[2014/02/12 22:06:33 | 000,658,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate_isv.exe
[2014/02/12 22:06:32 | 000,626,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate.exe
[2014/02/12 22:06:32 | 000,594,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_isv.exe
[2014/02/12 22:06:32 | 000,572,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate.exe
[2014/02/12 22:06:32 | 000,508,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_ssp_isv.exe
[2014/02/12 22:06:31 | 000,553,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate_ssp.exe
[2014/02/12 22:06:31 | 000,552,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate_ssp_isv.exe
[2014/02/12 22:06:31 | 000,510,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_ssp.exe
[2014/02/12 22:06:30 | 000,528,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msdrm.dll
[2014/02/12 22:06:30 | 000,488,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc.dll
[2014/02/12 22:06:30 | 000,485,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc_isv.dll
[2014/02/12 22:06:30 | 000,423,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_isv.dll
[2014/02/12 22:06:29 | 000,428,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc.dll
[2014/02/12 22:06:29 | 000,123,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc_ssp_isv.dll
[2014/02/12 22:06:29 | 000,123,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secproc_ssp.dll
[2014/02/12 22:06:29 | 000,087,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_ssp_isv.dll
[2014/02/12 22:06:29 | 000,087,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_ssp.dll
[2014/02/12 22:06:22 | 002,565,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10warp.dll
[2014/02/12 22:06:20 | 003,928,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d2d1.dll
[2014/02/02 12:07:15 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\HydraVidPRO
[2014/01/19 23:44:01 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MoneyNode
[2014/01/19 23:09:08 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\blackMaps
[2014/01/15 17:36:57 | 000,325,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usbport.sys
[2014/01/15 17:36:56 | 000,007,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usbd.sys
[2014/01/15 17:36:42 | 000,376,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\netio.sys
[2014/01/14 18:18:21 | 000,000,000 | R--D | C] -- C:\Users\dogonit23\Copy
[2014/01/14 18:15:45 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\Copy
[2014/01/14 18:15:43 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Copy
[2014/01/12 11:32:48 | 000,028,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\IEUDINIT.EXE
[2014/01/12 11:29:53 | 000,194,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\elshyph.dll
[2014/01/12 11:29:45 | 000,645,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jsIntl.dll
[2014/01/12 11:29:45 | 000,235,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\elshyph.dll
[2014/01/12 11:29:45 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RegisterIEPKEYs.exe
[2014/01/12 11:29:44 | 001,051,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmlmedia.dll
[2014/01/12 11:29:44 | 000,616,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dat
[2014/01/12 11:29:44 | 000,337,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\html.iec
[2014/01/12 11:29:44 | 000,233,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\url.dll
[2014/01/12 11:29:44 | 000,151,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iexpress.exe
[2014/01/12 11:29:44 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wextract.exe
[2014/01/12 11:29:44 | 000,083,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inseng.dll
[2014/01/12 11:29:44 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\icardie.dll
[2014/01/12 11:29:44 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tdc.ocx
[2014/01/12 11:29:44 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pngfilt.dll
[2014/01/12 11:29:44 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\licmgr10.dll
[2014/01/12 11:29:43 | 000,610,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2014/01/12 11:29:43 | 000,127,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\occache.dll
[2014/01/12 11:29:43 | 000,116,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iepeers.dll
[2014/01/12 11:29:43 | 000,111,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\IEAdvpack.dll
[2014/01/12 11:29:43 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MshtmlDac.dll
[2014/01/12 11:29:43 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeedssync.exe
[2014/01/12 11:29:42 | 000,942,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jsIntl.dll
[2014/01/12 11:29:42 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesysprep.dll
[2014/01/12 11:29:42 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SetIEInstalledDate.exe
[2014/01/12 11:29:42 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmler.dll
[2014/01/12 11:29:41 | 000,247,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msls31.dll
[2014/01/12 11:29:41 | 000,131,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\IEAdvpack.dll
[2014/01/12 11:29:41 | 000,090,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SetIEInstalledDate.exe
[2014/01/12 11:29:41 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RegisterIEPKEYs.exe
[2014/01/12 11:29:41 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeedssync.exe
[2014/01/12 11:29:40 | 001,228,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmlmedia.dll
[2014/01/12 11:29:40 | 000,616,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dat
[2014/01/12 11:29:40 | 000,413,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\html.iec
[2014/01/12 11:29:40 | 000,235,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\url.dll
[2014/01/12 11:29:40 | 000,105,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesysprep.dll
[2014/01/12 11:29:40 | 000,081,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\icardie.dll
[2014/01/12 11:29:40 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tdc.ocx
[2014/01/12 11:29:40 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmler.dll
[2014/01/12 11:29:39 | 000,774,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
[2014/01/12 11:29:39 | 000,167,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iexpress.exe
[2014/01/12 11:29:39 | 000,147,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\occache.dll
[2014/01/12 11:29:39 | 000,143,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wextract.exe
[2014/01/12 11:29:39 | 000,135,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iepeers.dll
[2014/01/12 11:29:39 | 000,101,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inseng.dll
[2014/01/12 11:29:39 | 000,083,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MshtmlDac.dll
[2014/01/12 11:29:39 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pngfilt.dll
[2014/01/12 11:29:39 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imgutil.dll
[2014/01/12 11:29:39 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\licmgr10.dll
[2014/01/12 11:29:39 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshta.exe
[2014/01/12 11:18:58 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\ElevatedDiagnostics
[2014/01/12 11:18:19 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution
[2014/01/12 01:56:13 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\Adobe
[2014/01/07 00:01:06 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Desktop\Scan Results
[2013/12/24 10:05:56 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Documents\Any Video Recorder
[2013/12/22 17:51:38 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Documents\Avatar
[2013/12/22 14:40:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Any Video Recorder
[2013/12/22 14:38:36 | 000,033,872 | ---- | C] (AnvSoft Inc.) -- C:\Windows\SysNative\drivers\anvsnddrv.sys
[2013/12/22 14:38:33 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Any Video Recorder
[2013/12/22 13:27:23 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Documents\Any Video Converter Ultimate
[2013/12/22 13:24:29 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Desktop\Article Marketing
[2013/12/22 13:23:48 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Desktop\Extras 2
[2013/12/22 13:20:43 | 000,000,000 | ---D | C] -- C:\ProgramData\FLV.com FLV Converter
[2013/12/22 13:02:07 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Desktop\BH BOTS
[2013/12/22 12:59:58 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Desktop\Blogging Tools
[2013/12/22 12:59:33 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Desktop\Advertising & Design
[2013/12/22 12:58:24 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Desktop\Audio & Video
[2013/12/21 16:49:00 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Desktop\Lead Finder
[2013/12/21 16:47:00 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\CurationSoft
[2013/12/14 11:43:34 | 012,625,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmploc.DLL
[2013/12/14 11:43:32 | 012,625,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmploc.DLL
[2013/12/14 11:43:32 | 011,410,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmp.dll
[2013/12/14 11:43:30 | 014,631,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmp.dll
[2013/12/14 11:30:34 | 000,335,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msieftp.dll
[2013/12/14 11:30:34 | 000,301,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msieftp.dll
[2013/12/14 11:30:34 | 000,230,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\portcls.sys
[2013/12/14 11:30:34 | 000,116,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\drmk.sys
[2013/12/14 11:30:33 | 000,465,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMPhoto.dll
[2013/12/14 11:30:33 | 000,417,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMPhoto.dll
[2013/12/14 11:30:32 | 000,081,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imagehlp.dll
[2013/12/14 11:28:22 | 000,202,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scrrun.dll
[2013/12/14 11:28:22 | 000,156,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cscript.exe
[2013/12/14 11:28:22 | 000,150,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wshom.ocx
[2013/12/14 11:28:22 | 000,121,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wshom.ocx
[2013/12/14 11:28:21 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scrrun.dll
[2013/12/14 11:28:21 | 000,126,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cscript.exe
[2013/12/07 19:27:14 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\slf
[2013/12/03 20:40:14 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Lame For Audacity
[2013/12/03 19:43:11 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\Audacity
[2013/12/03 19:42:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Audacity 1.3 Beta (Unicode)
[2013/12/03 19:32:27 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
[2013/12/03 19:32:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\DVDVideoSoft
[2013/12/03 19:32:03 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\DVDVideoSoft
[2013/12/03 19:32:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\DVDVideoSoft
[2013/12/02 18:03:12 | 000,000,000 | ---D | C] -- C:\Windows\Migration
[2013/12/01 00:40:54 | 000,000,000 | ---D | C] -- C:\ProgramData\vsosdk
[2013/11/29 12:16:57 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\Citrix
[2013/11/17 13:08:26 | 000,000,000 | ---D | C] -- C:\ProgramData\ProductData
[2013/11/17 13:08:20 | 000,000,000 | ---D | C] -- C:\ProgramData\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D}
[2013/11/12 18:20:46 | 000,307,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncrypt.dll
[2013/11/12 18:20:24 | 001,474,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\crypt32.dll
[2013/11/12 18:20:09 | 001,930,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\authui.dll
[2013/11/12 18:20:08 | 001,796,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\authui.dll
[2013/11/12 18:20:08 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\credui.dll
[2013/11/12 18:20:08 | 000,190,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SmartcardCredentialProvider.dll
[2013/11/12 18:20:08 | 000,152,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SmartcardCredentialProvider.dll
[2013/11/12 18:20:00 | 000,404,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\gdi32.dll
[2013/11/12 18:19:11 | 000,830,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nshwfp.dll
[2013/11/12 18:19:11 | 000,656,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nshwfp.dll
[2013/11/12 18:19:11 | 000,324,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FWPUCLNT.DLL
[2013/11/12 18:19:11 | 000,216,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\FWPUCLNT.DLL
[2013/11/06 23:53:29 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Documents\Any Video Converter
[2013/11/06 23:52:55 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Documents\Any Video Converter Professional
[2013/11/06 23:52:55 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\AnvSoft
[2013/11/06 23:47:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AnvSoft
[2013/11/06 23:47:00 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AnvSoft
[2013/11/05 17:14:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Total Video Converter
[2013/11/05 17:13:55 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Total Video Converter
[2013/11/05 15:49:15 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Documents\JDownloader
[2013/11/02 11:46:19 | 000,074,456 | ---- | C] (Realtek Semiconductor Corporation) -- C:\Windows\SysNative\RtNicProp64.dll
[2013/11/02 11:46:18 | 000,883,928 | ---- | C] (Realtek                                            ) -- C:\Windows\SysNative\drivers\Rt64win7.sys
[2013/11/02 11:39:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster
[2013/10/31 14:42:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Mouse and Keyboard Center
[2013/10/31 14:40:30 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Mouse and Keyboard Center
[2013/10/30 18:43:44 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Desktop\Smart YouTube PRO
[2013/10/28 15:24:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FLV Converter
[2013/10/25 15:23:15 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\InstantArticleSuite
[2013/10/25 15:22:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\InstantArticleSuite
[2013/10/23 01:00:02 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Documents\kudani
[2013/10/22 17:27:53 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\PageOneTraffic
[2013/10/19 16:45:18 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\CurationSoft
[2013/10/13 18:19:30 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\KompoZer
[2013/10/12 14:16:31 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\vlc
[2013/10/12 14:08:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
[2013/10/12 11:42:38 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Documents\Ultimate PLR Collection
[2013/10/12 11:42:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Ultimate PLR Article Collection
[2013/10/12 11:41:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\The Ultimate PLR Article Collection
[2013/10/11 15:42:53 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Desktop\CheckTheseOUt
[2013/10/11 10:54:40 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Documents\FB Ad Express
[2013/10/11 10:50:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\FB Ad Express
[2013/10/10 12:55:54 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Desktop\SEO & Indexer
[2013/10/10 01:44:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Traffic Jeet
[2013/10/10 01:44:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Teknikforce
[2013/10/10 01:41:03 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\teknikforce
[2013/10/08 23:45:14 | 000,000,000 | ---D | C] -- C:\ProgramData\Doctor Web
[2013/10/08 22:51:09 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Doctor Web
[2013/10/08 16:04:41 | 000,633,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\comctl32.dll
[2013/10/08 16:04:32 | 000,368,128 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysNative\atmfd.dll
[2013/10/08 16:04:32 | 000,295,424 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\atmfd.dll
[2013/10/08 16:04:32 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fontsub.dll
[2013/10/08 16:04:32 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lpk.dll
[2013/10/08 16:04:32 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dciman32.dll
[2013/10/08 16:04:31 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fontsub.dll
[2013/10/08 16:04:31 | 000,046,080 | ---- | C] (Adobe Systems) -- C:\Windows\SysNative\atmlib.dll
[2013/10/08 16:04:31 | 000,034,304 | ---- | C] (Adobe Systems) -- C:\Windows\SysWow64\atmlib.dll
[2013/10/08 16:04:24 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\hidclass.sys
[2013/10/08 16:04:24 | 000,032,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\hidparse.sys
[2013/10/08 16:04:22 | 000,102,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\davclnt.dll
[2013/10/08 16:04:15 | 000,878,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\advapi32.dll
[2013/10/08 16:04:14 | 000,859,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tdh.dll
[2013/10/08 16:04:13 | 000,619,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tdh.dll
[2013/10/08 16:04:11 | 001,732,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntdll.dll
[2013/10/08 16:03:55 | 000,102,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PresentationCFFRasterizerNative_v0300.dll
[2013/10/08 16:03:54 | 000,124,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PresentationCFFRasterizerNative_v0300.dll
[2013/10/08 16:03:52 | 000,461,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scavengeui.dll
[2013/10/07 23:16:30 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Local Leads Magic Extractor
[2013/10/07 23:16:25 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Adventure Marketing
[2013/10/07 21:16:34 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Blog Profit Pro
[2013/10/07 15:14:32 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rockstar Power Suite
[2013/10/06 12:19:21 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Tracing
[2013/10/06 12:13:51 | 000,000,000 | R--D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
[2013/10/06 12:13:50 | 000,057,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\fssfltr.sys
[2013/10/06 12:13:43 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Live
[2013/10/06 12:13:34 | 000,000,000 | ---D | C] -- C:\Windows\PCHEALTH
[2013/10/06 12:12:51 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Windows Live
[2013/10/05 00:14:27 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tweaking.com
[2013/10/05 00:14:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Tweaking.com
[2013/10/04 23:47:16 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Documents\My Weblog Posts
[2013/10/04 23:22:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft SkyDrive
[2013/10/04 23:22:49 | 000,000,000 | R--D | C] -- C:\Users\dogonit23\SkyDrive
[2013/10/04 23:22:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft OneDrive
[2013/09/30 23:00:02 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ESET
[2013/09/29 15:06:22 | 000,000,000 | ---D | C] -- C:\Windows\temp
[2013/09/28 19:01:40 | 000,000,000 | ---D | C] -- C:\Windows\ERUNT
[2013/09/24 15:39:12 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FreeScreenSharing
[2013/09/24 15:37:28 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\FreeScreenSharing
[2013/09/20 20:46:20 | 000,000,000 | ---D | C] -- C:\ProgramData\Spybot - Search & Destroy
[2013/09/20 20:44:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Spybot - Search & Destroy 2
[2013/09/19 23:08:11 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\IsolatedStorage
[2013/09/19 23:08:11 | 000,000,000 | ---D | C] -- C:\ProgramData\IsolatedStorage
[2013/09/19 23:06:15 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EasyEmailSender
[2013/09/19 23:06:11 | 000,000,000 | ---D | C] -- C:\temp
[2013/09/19 23:06:11 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\EasyEmailSender
[2013/09/19 22:58:11 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\Downloaded Installations
[2013/09/18 22:06:26 | 000,000,000 | -HSD | C] -- C:\Windows\ftpcache
[2013/09/18 22:05:54 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FLV-Media Player
[2013/09/18 22:05:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FLV-Media Player
[2013/09/18 22:05:45 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\FLV-Media Player
[2013/09/18 03:02:25 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft CAPICOM 2.1.0.2
[2013/09/17 02:04:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Smart Defrag 2
[2013/09/16 14:54:21 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Desktop\Security
[2013/09/16 12:03:44 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ANSMTP SMTP COMPONENT
[2013/09/16 12:03:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AdminSystem.NET
[2013/09/16 03:39:55 | 000,000,000 | ---D | C] -- C:\Windows\erdnt
[2013/09/15 02:33:19 | 000,000,000 | ---D | C] -- C:\ProgramData\RegInOut
[2013/09/15 02:12:39 | 000,000,000 | ---D | C] -- C:\ProgramData\GlarySoft
[2013/09/14 17:19:20 | 000,027,456 | ---- | C] (IObit) -- C:\Windows\SysNative\RegistryDefragBootTime.exe
[2013/09/14 16:58:44 | 000,117,024 | ---- | C] (Glarysoft Ltd) -- C:\Windows\SysNative\BootDefrag.exe
[2013/09/14 16:58:35 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\GlarySoft
[2013/09/14 16:58:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 3
[2013/09/14 16:58:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Glary Utilities 3
[2013/09/14 16:44:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RegInOut System Utilities
[2013/09/14 16:44:19 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\RegInOut System Utilities
[2013/09/14 16:07:42 | 000,000,000 | ---D | C] -- C:\ProgramData\{CED89F1A-945F-46EC-B23C-5EAF6D2DB12A}
[2013/09/14 16:07:05 | 000,000,000 | ---D | C] -- C:\ProgramData\IObit
[2013/09/14 16:06:01 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\IObit
[2013/09/13 12:14:48 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2013/09/11 22:21:54 | 000,863,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msvcr110_clr0400.dll
[2013/09/11 22:21:54 | 000,501,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msvcp110_clr0400.dll
[2013/09/11 22:21:54 | 000,028,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\aspnet_counters.dll
[2013/09/11 22:21:54 | 000,018,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msvcr100_clr0400.dll
[2013/09/11 20:39:06 | 000,855,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msvcr110_clr0400.dll
[2013/09/11 20:39:06 | 000,614,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msvcp110_clr0400.dll
[2013/09/11 20:39:06 | 000,030,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aspnet_counters.dll
[2013/09/11 20:39:06 | 000,018,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msvcr100_clr0400.dll
[2013/09/11 18:14:26 | 000,155,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ataport.sys
[2013/09/11 18:13:56 | 000,112,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\smss.exe
[2013/09/11 18:13:55 | 000,338,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\conhost.exe
[2013/09/11 18:13:55 | 000,215,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winsrv.dll
[2013/09/11 18:13:55 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\csrsrv.dll
[2013/09/11 18:13:53 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-security-base-l1-1-0.dll
[2013/09/11 18:13:53 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-file-l1-1-0.dll
[2013/09/11 18:13:53 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-file-l1-1-0.dll
[2013/09/11 18:13:53 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-threadpool-l1-1-0.dll
[2013/09/11 18:13:53 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-sysinfo-l1-1-0.dll
[2013/09/11 18:13:53 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-sysinfo-l1-1-0.dll
[2013/09/11 18:13:53 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-synch-l1-1-0.dll
[2013/09/11 18:13:53 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-namedpipe-l1-1-0.dll
[2013/09/11 18:13:53 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-misc-l1-1-0.dll
[2013/09/11 18:13:53 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-memory-l1-1-0.dll
[2013/09/11 18:13:53 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-xstate-l1-1-0.dll
[2013/09/11 18:13:53 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-util-l1-1-0.dll
[2013/09/11 18:13:52 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-processthreads-l1-1-0.dll
[2013/09/11 18:13:52 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-processthreads-l1-1-0.dll
[2013/09/11 18:13:52 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-synch-l1-1-0.dll
[2013/09/11 18:13:52 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-rtlsupport-l1-1-0.dll
[2013/09/11 18:13:52 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-string-l1-1-0.dll
[2013/09/11 18:13:52 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-string-l1-1-0.dll
[2013/09/11 18:13:52 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-rtlsupport-l1-1-0.dll
[2013/09/11 18:13:52 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-profile-l1-1-0.dll
[2013/09/11 18:13:52 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-profile-l1-1-0.dll
[2013/09/11 18:13:51 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-misc-l1-1-0.dll
[2013/09/11 18:13:51 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-localregistry-l1-1-0.dll
[2013/09/11 18:13:51 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-localregistry-l1-1-0.dll
[2013/09/11 18:13:51 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-processenvironment-l1-1-0.dll
[2013/09/11 18:13:51 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-processenvironment-l1-1-0.dll
[2013/09/11 18:13:51 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-namedpipe-l1-1-0.dll
[2013/09/11 18:13:51 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-memory-l1-1-0.dll
[2013/09/11 18:13:50 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/09/11 18:13:50 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/09/11 18:13:50 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-interlocked-l1-1-0.dll
[2013/09/11 18:13:50 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-heap-l1-1-0.dll
[2013/09/11 18:13:50 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-heap-l1-1-0.dll
[2013/09/11 18:13:50 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-io-l1-1-0.dll
[2013/09/11 18:13:50 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-io-l1-1-0.dll
[2013/09/11 18:13:50 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-interlocked-l1-1-0.dll
[2013/09/11 18:13:50 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-handle-l1-1-0.dll
[2013/09/11 18:13:50 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-handle-l1-1-0.dll
[2013/09/11 18:13:49 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-fibers-l1-1-0.dll
[2013/09/11 18:13:49 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-fibers-l1-1-0.dll
[2013/09/11 18:13:49 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-errorhandling-l1-1-0.dll
[2013/09/11 18:13:49 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-errorhandling-l1-1-0.dll
[2013/09/11 18:13:49 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-delayload-l1-1-0.dll
[2013/09/11 18:13:49 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-delayload-l1-1-0.dll
[2013/09/11 18:13:49 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-debug-l1-1-0.dll
[2013/09/11 18:13:49 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-debug-l1-1-0.dll
[2013/09/11 18:13:49 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-datetime-l1-1-0.dll
[2013/09/11 18:13:49 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-datetime-l1-1-0.dll
[2013/09/11 18:13:48 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
[2013/09/11 18:13:48 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
[2013/09/11 18:13:48 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
[2013/09/11 18:13:47 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-localization-l1-1-0.dll
[2013/09/11 18:13:47 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
[2013/09/11 18:13:46 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-localization-l1-1-0.dll
[2013/09/11 18:13:46 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-console-l1-1-0.dll
[2013/09/11 18:13:46 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-console-l1-1-0.dll
[2013/09/11 18:13:43 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\apisetschema.dll
[2013/09/11 18:13:43 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\apisetschema.dll
[2013/09/11 18:06:16 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shdocvw.dll
[2013/09/08 23:55:08 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\Geckofx
[2013/09/03 18:40:13 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\7 Minute Research
[2013/09/02 14:03:24 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\xheader-data
[2013/09/02 14:03:12 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\XHeader
[2013/09/02 14:02:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\XHeader
[2013/09/02 14:02:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Thraex Software
[2013/08/30 13:37:08 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Nexus Toolbar
[2013/08/30 13:36:50 | 000,000,000 | ---D | C] -- C:\nexustoolbar
[2013/08/30 12:25:21 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Documents\LeadFinder
[2013/08/30 12:11:24 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\GuideTrade LLC
[2013/08/28 01:57:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Offline Prospector
[2013/08/28 01:57:14 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\The Prospector
[2013/08/25 03:08:55 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\Traffic_Mystic_IM_Solutio
[2013/08/25 03:08:19 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Documents\SEOLR_LOGS
[2013/08/25 03:07:40 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Documents\SEOLR
[2013/08/23 15:07:45 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\.freescreensharing
[2013/08/20 15:36:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MSECache
[2013/08/18 13:34:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Camtasia Studio 7
[2013/08/18 13:34:04 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\QuickTime
[2013/08/18 13:33:31 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\TechSmith Shared
[2013/08/18 13:33:29 | 000,000,000 | ---D | C] -- C:\ProgramData\TechSmith
[2013/08/15 09:50:33 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\MRT
[2013/08/14 10:40:53 | 001,217,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rpcrt4.dll
[2013/08/14 10:39:59 | 000,224,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wintrust.dll
[2013/08/14 10:39:57 | 000,139,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cryptnet.dll
[2013/08/14 10:39:43 | 001,888,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMVDECOD.DLL
[2013/08/14 10:39:41 | 001,620,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMVDECOD.DLL
[2013/08/11 16:03:03 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\IDM
[2013/08/11 16:02:24 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
[2013/08/11 16:02:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager
[2013/08/11 16:02:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Internet Download Manager
[2013/08/11 14:50:48 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
[2013/08/11 14:45:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Google
[2013/08/11 14:45:29 | 000,000,000 | ---D | C] -- C:\Program Files\SUPERAntiSpyware
[2013/08/06 12:47:37 | 000,000,000 | ---D | C] -- C:\ProgramData\Downloaded Installations
[2013/08/06 12:47:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Lavasoft
[2013/08/06 12:39:23 | 000,014,456 | ---- | C] (GFI Software) -- C:\Windows\SysNative\drivers\gfibto.sys
[2013/08/06 12:39:23 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\LavasoftStatistics
[2013/08/05 01:14:15 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Linked Lead Finder 1.0
[2013/08/05 01:14:03 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Documents\Linked Lead Finder 1.0
[2013/07/31 17:14:23 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\Macromedia
[2013/07/30 14:04:57 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\StartMeeting
[2013/07/28 14:32:33 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Documents\Books
[2013/07/23 16:51:19 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eBay
[2013/07/23 16:51:03 | 000,000,000 | ---D | C] -- C:\ProgramData\eBay
[2013/07/23 16:51:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\eBay
[2013/07/21 22:53:35 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Desktop\My Movies
[2013/07/21 21:42:52 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\OpenOffice.org
[2013/07/21 21:37:41 | 000,000,000 | --SD | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice.org 3.4.1
[2013/07/21 21:35:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\OpenOffice.org 3
[2013/07/15 01:12:08 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\HP MediaSmart Video
[2013/07/12 13:53:39 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SQLite.NET
[2013/07/12 13:53:38 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SQLite.NET
[2013/07/12 13:52:41 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System.Data.SQLite
[2013/07/12 13:52:40 | 000,000,000 | ---D | C] -- C:\Program Files\System.Data.SQLite
[2013/07/12 13:50:49 | 000,000,000 | ---D | C] -- C:\ProgramData\DuncanWierman
[2013/07/12 13:50:30 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Duncan Wierman
[2013/07/12 11:53:57 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\TechSmith
[2013/07/09 12:32:06 | 001,643,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DWrite.dll
[2013/07/08 14:56:07 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\.startmeeting
[2013/07/08 14:55:49 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\StartMeeting
[2013/07/08 14:55:49 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\SMPlugins
[2013/07/07 11:04:34 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\TechSmith
[2013/07/07 11:03:35 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\TechSmith
[2013/07/02 18:53:40 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\CyberLink
[2013/07/02 18:08:43 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\Google
[2013/07/01 15:43:28 | 001,044,480 | R--- | C] (eHelp Corporation.) -- C:\Windows\SysWow64\roboex32.dll
[2013/07/01 15:43:28 | 000,049,152 | R--- | C] (Blue Sky Software Corporation.) -- C:\Windows\SysWow64\inetwh32.dll
[2013/06/26 19:21:50 | 000,023,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\Sftvollh.sys
[2013/06/26 19:21:48 | 000,028,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\Sftredirlh.sys
[2013/06/26 19:21:46 | 001,777,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sftldr.dll
[2013/06/26 19:21:46 | 001,130,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sftldr_wow64.dll
[2013/06/26 19:21:46 | 000,273,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\Sftplaylh.sys
[2013/06/26 19:21:44 | 000,767,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\Sftfslh.sys
[2013/06/11 19:31:56 | 000,751,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\win32spl.dll
[2013/06/11 19:31:56 | 000,492,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\win32spl.dll
[2013/06/11 19:31:47 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cryptdlg.dll
[2013/06/11 19:31:47 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cryptdlg.dll
[2013/06/11 19:31:36 | 001,192,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\certutil.exe
[2013/06/11 19:31:35 | 000,903,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\certutil.exe
[2013/06/11 19:31:32 | 000,052,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\certenc.dll
[2013/06/11 19:31:32 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\certenc.dll
[2013/06/11 19:31:10 | 001,887,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d11.dll
[2013/06/11 19:31:09 | 001,505,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d11.dll
[2013/06/03 12:25:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
[2013/06/03 12:25:30 | 000,126,312 | ---- | C] (GEAR Software Inc.) -- C:\Windows\SysNative\GEARAspi64.dll
[2013/06/03 12:25:30 | 000,107,368 | ---- | C] (GEAR Software Inc.) -- C:\Windows\SysWow64\GEARAspi.dll
[2013/06/03 12:25:30 | 000,034,152 | ---- | C] (GEAR Software Inc.) -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys
[2013/06/03 12:24:09 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
[2013/06/03 12:24:06 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes
[2013/06/03 12:24:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\iTunes
[2013/06/03 12:24:06 | 000,000,000 | ---D | C] -- C:\ProgramData\{93E26451-CD9A-43A5-A2FA-C42392EA4001}
[2013/06/03 12:20:29 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Apple
[2013/06/03 12:19:28 | 000,000,000 | ---D | C] -- C:\Program Files\Bonjour
[2013/06/03 12:19:28 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Bonjour
[2013/06/02 15:36:56 | 000,000,000 | -HSD | C] -- C:\Users\dogonit23\wc
[2013/06/02 15:36:43 | 000,000,000 | -HSD | C] -- C:\Users\dogonit23\AppData\Roaming\wyUpdate AU
[2013/06/02 15:36:39 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\Molura
[2013/06/02 15:33:56 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Molura
[2013/06/02 15:33:49 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Molura
[2013/06/02 15:07:06 | 000,000,000 | ---D | C] -- C:\ProgramData\AutoHideIP
[2013/06/02 15:04:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auto Hide IP
[2013/06/02 15:04:44 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AutoHideIP
[2013/06/02 14:47:25 | 000,000,000 | ---D | C] -- C:\ProgramData\WNR
[2013/06/02 14:39:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Proxy Switcher Standard
[2013/06/02 14:39:25 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Proxy Switcher Standard
[2013/05/31 11:46:46 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RdpGroupPolicyExtension.dll
[2013/05/31 11:46:44 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\rdpvideominiport.sys
[2013/05/31 11:46:41 | 000,192,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdpendp_winip.dll
[2013/05/31 11:46:40 | 000,243,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpudd.dll
[2013/05/31 11:46:40 | 000,228,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpendp_winip.dll
[2013/05/31 11:46:39 | 003,174,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcorets.dll
[2013/05/31 11:41:04 | 002,284,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msmpeg2vdec.dll
[2013/05/31 11:41:03 | 002,776,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msmpeg2vdec.dll
[2013/05/31 11:41:03 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\UIAnimation.dll
[2013/05/31 11:41:03 | 000,187,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\UIAnimation.dll
[2013/05/31 11:40:17 | 000,194,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10_1.dll
[2013/05/31 11:40:17 | 000,010,752 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-advapi32-l1-1-0.dll
[2013/05/31 11:40:17 | 000,010,752 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-advapi32-l1-1-0.dll
[2013/05/31 11:40:17 | 000,009,728 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
[2013/05/31 11:40:17 | 000,009,728 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-shlwapi-l1-1-0.dll
[2013/05/31 11:40:17 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-advapi32-l2-1-0.dll
[2013/05/31 11:40:17 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-advapi32-l2-1-0.dll
[2013/05/31 11:40:17 | 000,002,560 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-normaliz-l1-1-0.dll
[2013/05/31 11:40:17 | 000,002,560 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-normaliz-l1-1-0.dll
[2013/05/31 11:40:15 | 000,522,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsGdiConverter.dll
[2013/05/31 11:40:14 | 000,364,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsGdiConverter.dll
[2013/05/31 11:40:14 | 000,005,632 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
[2013/05/31 11:40:14 | 000,005,632 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-shlwapi-l2-1-0.dll
[2013/05/31 11:40:14 | 000,005,632 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-ole32-l1-1-0.dll
[2013/05/31 11:40:14 | 000,005,632 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-ole32-l1-1-0.dll
[2013/05/31 11:40:14 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-user32-l1-1-0.dll
[2013/05/31 11:40:14 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-user32-l1-1-0.dll
[2013/05/31 11:40:14 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-version-l1-1-0.dll
[2013/05/31 11:40:14 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-version-l1-1-0.dll
[2013/05/31 11:40:14 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-shell32-l1-1-0.dll
[2013/05/31 11:40:14 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-shell32-l1-1-0.dll
[2013/05/31 11:40:13 | 000,363,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxgi.dll
[2013/05/31 11:40:12 | 000,648,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10level9.dll
[2013/05/31 11:40:12 | 000,333,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10_1core.dll
[2013/05/31 11:40:12 | 000,296,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10core.dll
[2013/05/31 11:40:11 | 001,682,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsPrint.dll
[2013/05/31 11:40:11 | 001,238,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10.dll
[2013/05/31 11:40:11 | 001,158,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsPrint.dll
[2013/05/31 11:40:09 | 000,245,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsCodecsExt.dll
[2013/05/31 11:39:04 | 000,514,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qdvd.dll
[2013/05/31 11:39:03 | 000,366,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qdvd.dll
[2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
 
========== Files - Modified Within 360 Days ==========
 
[2014/05/25 10:30:07 | 000,000,830 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2014/05/24 17:53:25 | 000,023,248 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2014/05/24 17:53:25 | 000,023,248 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2014/05/24 17:43:53 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2014/05/24 17:43:50 | 3015,888,896 | -HS- | M] () -- C:\hiberfil.sys
[2014/05/24 10:28:02 | 001,492,836 | ---- | M] () -- C:\Users\dogonit23\Desktop\Chapter4_MYS_NEW.pdf
[2014/05/24 09:59:15 | 001,907,760 | ---- | M] () -- C:\Users\dogonit23\Desktop\AttendeeViewerImage005.bmp
[2014/05/24 09:26:53 | 000,478,446 | ---- | M] () -- C:\Users\dogonit23\Desktop\Ultimate Selling Power - Dr. Moine.pdf
[2014/05/24 08:12:35 | 000,000,348 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleFordogonit23.job
[2014/05/21 19:30:30 | 000,008,894 | ---- | M] () -- C:\Users\dogonit23\Desktop\2C9A0269-00000002.eml
[2014/05/21 19:07:30 | 000,000,098 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\Hosts
[2014/05/21 19:07:22 | 000,014,046 | ---- | M] () -- C:\Users\dogonit23\Documents\today.eml
[2014/05/17 18:32:06 | 000,000,990 | ---- | M] () -- C:\Users\Public\Desktop\Kudani.lnk
[2014/05/15 23:23:40 | 000,002,183 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2014/05/15 22:50:50 | 000,783,360 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2014/05/15 22:50:50 | 000,663,086 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2014/05/15 22:50:50 | 000,122,664 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2014/05/14 23:30:58 | 000,692,400 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2014/05/14 23:30:58 | 000,070,832 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2014/05/14 23:30:41 | 017,938,608 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerInstaller.exe
[2014/05/14 23:07:09 | 000,468,480 | ---- | M] () -- C:\Users\dogonit23\Desktop\CKScanner.exe
[2014/05/13 16:26:43 | 000,000,000 | ---- | M] () -- C:\asc_rdflag
[2014/05/10 21:05:35 | 000,076,094 | ---- | M] () -- C:\Users\dogonit23\Desktop\paypal payment 5-10-14.pdf
[2014/05/10 13:44:04 | 000,000,904 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2014/05/10 13:44:04 | 000,000,900 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2014/05/08 23:14:03 | 000,477,184 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\aepdu.dll
[2014/05/08 23:11:23 | 000,424,448 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\aeinv.dll
[2014/05/05 23:53:31 | 024,159,485 | ---- | M] () -- C:\Users\dogonit23\Desktop\Three-nights-with-ClaytonNolte-02.mp3
[2014/05/05 20:00:47 | 000,084,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2014/05/05 19:10:52 | 000,069,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2014/05/05 18:25:25 | 002,115,078 | ---- | M] () -- C:\Users\dogonit23\Desktop\AttendeeViewerImage004.bmp
[2014/05/05 18:24:15 | 002,115,078 | ---- | M] () -- C:\Users\dogonit23\Desktop\AttendeeViewerImage003.bmp
[2014/05/04 16:14:35 | 017,312,379 | ---- | M] () -- C:\Users\dogonit23\Desktop\Proven 7 step Blueprint for Finding Your Message, Turning it into Millions, and Building a Lifestyle Friendly Business.mp3
[2014/05/01 22:09:07 | 000,000,350 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleForDOGONIT23-HP$.job
[2014/04/30 20:12:56 | 117,358,787 | ---- | M] () -- C:\Users\dogonit23\Desktop\218440631.mp4
[2014/04/30 17:29:52 | 000,166,832 | ---- | M] () -- C:\Users\dogonit23\Desktop\quickcash.zip
[2014/04/29 17:35:59 | 001,907,760 | ---- | M] () -- C:\Users\dogonit23\Desktop\AttendeeViewerImage002.bmp
[2014/04/28 19:45:43 | 002,115,078 | ---- | M] () -- C:\Users\dogonit23\Desktop\AttendeeViewerImage001.bmp
[2014/04/28 18:06:30 | 000,187,050 | ---- | M] () -- C:\Users\dogonit23\Desktop\Statement12014.pdf
[2014/04/27 21:49:51 | 001,907,760 | ---- | M] () -- C:\Users\dogonit23\Desktop\AttendeeViewerImage000.bmp
[2014/04/27 12:05:14 | 000,002,697 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk
[2014/04/23 20:40:54 | 000,009,728 | ---- | M] () -- C:\Users\dogonit23\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2014/04/22 20:03:22 | 000,266,527 | ---- | M] () -- C:\Users\dogonit23\Desktop\loa_wealth_prac_sample.pdf
[2014/04/17 19:21:26 | 000,112,152 | ---- | M] () -- C:\Users\dogonit23\Desktop\GoToWebinar_Attendee_QuickRef_Guide.pdf
[2014/04/15 23:24:43 | 000,001,201 | ---- | M] () -- C:\Users\Public\Desktop\Shortcut to Tube Sniper Pro.exe.lnk
[2014/04/14 19:38:00 | 000,798,822 | ---- | M] () -- C:\Users\dogonit23\Desktop\NeverBeClosing_eBook.pdf
[2014/04/11 19:19:38 | 000,136,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\sspicli.dll
[2014/04/11 19:19:38 | 000,029,184 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\sspisrv.dll
[2014/04/11 19:19:37 | 000,028,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\secur32.dll
[2014/04/11 19:19:32 | 001,460,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll
[2014/04/10 23:20:02 | 000,000,876 | ---- | M] () -- C:\Users\dogonit23\Desktop\IP-Tools.lnk
[2014/04/09 23:43:37 | 000,628,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2014/04/09 23:43:37 | 000,574,976 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2014/04/09 23:43:37 | 000,453,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\dxtmsft.dll
[2014/04/09 23:43:37 | 000,440,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2014/04/09 23:43:37 | 000,296,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll
[2014/04/09 23:43:36 | 000,139,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
[2014/04/09 23:43:36 | 000,112,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2014/04/09 23:43:36 | 000,111,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollector.exe
[2014/04/09 23:43:36 | 000,051,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieetwproxystub.dll
[2014/04/09 23:43:36 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwproxystub.dll
[2014/04/09 23:43:36 | 000,032,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
[2014/04/09 23:43:36 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollectorres.dll
[2014/04/09 23:43:35 | 005,784,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2014/04/09 23:43:35 | 000,846,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll
[2014/04/09 23:43:35 | 000,752,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9diag.dll
[2014/04/09 23:43:35 | 000,704,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
[2014/04/09 23:43:35 | 000,592,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript9diag.dll
[2014/04/09 23:43:35 | 000,586,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
[2014/04/09 23:43:35 | 000,548,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
[2014/04/09 23:43:35 | 000,066,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll
[2014/04/09 23:43:35 | 000,061,952 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
[2014/04/09 23:43:35 | 000,033,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll
[2014/04/09 23:43:34 | 002,043,904 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2014/04/09 23:43:34 | 001,967,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2014/04/09 23:43:34 | 000,195,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msrating.dll
[2014/04/09 23:43:34 | 000,164,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
[2014/04/09 23:43:34 | 000,038,400 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\JavaScriptCollectionAgent.dll
[2014/04/09 23:43:34 | 000,032,256 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll
[2014/04/09 23:43:33 | 000,940,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\MsSpellCheckingFacility.exe
[2014/04/03 16:27:29 | 000,002,155 | ---- | M] () -- C:\Windows\epplauncher.mif
[2014/03/31 21:34:22 | 000,322,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\WLXPGSS.SCR
[2014/03/25 22:23:18 | 000,002,251 | ---- | M] () -- C:\Users\dogonit23\Desktop\Kindle.lnk
[2014/03/19 22:33:23 | 001,605,089 | ---- | M] () -- C:\Users\dogonit23\Desktop\Meteor+Comet.pdf
[2014/03/19 00:37:29 | 001,058,540 | ---- | M] () -- C:\Users\dogonit23\Desktop\12-reasons-report.pdf
[2014/03/19 00:14:48 | 000,175,799 | ---- | M] () -- C:\Users\dogonit23\Desktop\108.pdf
[2014/03/17 23:09:37 | 003,767,534 | ---- | M] () -- C:\Users\dogonit23\Desktop\AchieveAnything.pdf
[2014/03/16 23:16:22 | 000,001,668 | ---- | M] () -- C:\Users\Public\Desktop\Bitcasa Infinite Drive.lnk
[2014/03/16 11:05:32 | 000,396,640 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2014/03/12 01:00:55 | 000,309,148 | ---- | M] () -- C:\Users\dogonit23\Documents\Untitled Logo 4.tlc
[2014/03/12 00:51:03 | 000,008,135 | ---- | M] () -- C:\Users\dogonit23\Documents\Untitled Logo 3.png
[2014/03/12 00:38:55 | 000,014,718 | ---- | M] () -- C:\Users\dogonit23\Documents\Untitled Logo 2.png
[2014/03/12 00:33:02 | 000,019,244 | ---- | M] () -- C:\Users\dogonit23\Documents\Untitled Logo 1.png
[2014/03/12 00:32:33 | 000,309,164 | ---- | M] () -- C:\Users\dogonit23\Documents\Untitled Logo 1.tlc
[2014/03/11 23:42:51 | 000,001,053 | ---- | M] () -- C:\Users\dogonit23\Desktop\The Logo Creator v5.2.exe.lnk
[2014/03/11 18:29:24 | 002,240,357 | ---- | M] () -- C:\Users\dogonit23\Desktop\The 10 Best Ways To Get Paid for Changing The World.pdf
[2014/03/11 09:52:30 | 000,133,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\NisDrvWFP.sys
[2014/03/08 11:03:18 | 762,338,589 | ---- | M] () -- C:\Users\dogonit23\Desktop\No_Hype_Marketing_Package.zip
[2014/03/06 21:16:43 | 002,699,572 | ---- | M] () -- C:\Users\dogonit23\Desktop\vinylty33_3  eBay 7.mht
[2014/03/06 21:15:55 | 004,121,369 | ---- | M] () -- C:\Users\dogonit23\Desktop\vinylty33_3  eBay 6.mht
[2014/03/04 02:47:01 | 005,550,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ntoskrnl.exe
[2014/03/04 02:44:21 | 000,362,496 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wow64win.dll
[2014/03/04 02:44:21 | 000,243,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wow64.dll
[2014/03/04 02:44:21 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wow64cpu.dll
[2014/03/04 02:44:20 | 000,039,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wincredprovider.dll
[2014/03/04 02:44:03 | 000,722,944 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\objsel.dll
[2014/03/04 02:44:03 | 000,016,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ntvdm64.dll
[2014/03/04 02:44:00 | 001,163,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\kernel32.dll
[2014/03/04 02:44:00 | 000,424,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\KernelBase.dll
[2014/03/04 02:43:56 | 000,057,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\cngprovider.dll
[2014/03/04 02:43:56 | 000,052,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\dpapiprovider.dll
[2014/03/04 02:43:56 | 000,044,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\dimsroam.dll
[2014/03/04 02:43:55 | 000,056,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\adprovider.dll
[2014/03/04 02:43:55 | 000,053,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\capiprovider.dll
[2014/03/04 02:43:50 | 000,455,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\winlogon.exe
[2014/03/04 02:20:11 | 003,969,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ntkrnlpa.exe
[2014/03/04 02:20:11 | 003,914,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ntoskrnl.exe
[2014/03/04 02:17:38 | 000,035,328 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\wincredprovider.dll
[2014/03/04 02:17:19 | 000,538,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\objsel.dll
[2014/03/04 02:17:19 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ntvdm64.dll
[2014/03/04 02:17:08 | 000,047,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\dpapiprovider.dll
[2014/03/04 02:17:08 | 000,036,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\dimsroam.dll
[2014/03/04 02:17:07 | 000,051,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\cngprovider.dll
[2014/03/04 02:17:06 | 000,048,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\capiprovider.dll
[2014/03/04 02:17:05 | 000,049,664 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\adprovider.dll
[2014/03/04 02:16:54 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\setup16.exe
[2014/03/04 02:16:18 | 000,005,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\wow32.dll
[2014/03/04 01:09:30 | 000,007,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\instnm.exe
[2014/03/04 01:09:29 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\user.exe
[2014/02/28 19:51:56 | 000,000,830 | ---- | M] () -- C:\Users\dogonit23\Documents\ChatLog STARTING NOW___ENCORE___Beyond Business Live_ Webinar _1 LinkedIn Secrets Revealed _ Generate Unlimited Leads for Life 2014_02_28 18_51.rtf
[2014/02/27 17:27:21 | 000,001,108 | ---- | M] () -- C:\Users\Public\Desktop\Driver Booster.lnk
[2014/02/23 12:09:02 | 000,012,872 | ---- | M] (SurfRight B.V.) -- C:\Windows\SysNative\bootdelete.exe
[2014/02/23 03:03:50 | 000,000,332 | ---- | M] () -- C:\Start_.cmd
[2014/02/23 02:00:24 | 000,096,168 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
[2014/02/23 02:00:14 | 000,264,616 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\javaws.exe
[2014/02/23 02:00:14 | 000,175,016 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\javaw.exe
[2014/02/23 02:00:14 | 000,174,504 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\java.exe
[2014/02/21 18:41:48 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_WinUsb_01007.Wdf
[2014/02/18 19:46:33 | 000,001,156 | ---- | M] () -- C:\Users\dogonit23\Application Data\Microsoft\Internet Explorer\Quick Launch\Snagit 11.lnk
[2014/02/13 19:01:49 | 000,775,974 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2014/02/13 01:45:38 | 000,089,832 | ---- | M] () -- C:\Users\dogonit23\Desktop\ssmglv.com.pdf
[2014/02/10 18:49:05 | 002,286,342 | ---- | M] () -- C:\Users\dogonit23\Desktop\seven-stages-ebook.pdf
[2014/02/08 23:01:55 | 002,932,445 | ---- | M] () -- C:\Users\dogonit23\Desktop\newsletter-september-2010.pdf
[2014/02/03 19:35:56 | 000,190,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\storport.sys
[2014/02/03 19:35:35 | 000,027,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\Diskdump.sys
[2014/02/03 19:32:22 | 001,424,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsCodecs.dll
[2014/02/03 19:32:12 | 000,624,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\qedit.dll
[2014/02/03 19:28:36 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iologmsg.dll
[2014/02/03 19:04:11 | 000,509,440 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\qedit.dll
[2014/02/03 19:00:39 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iologmsg.dll
[2014/01/28 19:32:18 | 000,484,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wer.dll
[2014/01/28 19:06:47 | 000,381,440 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\wer.dll
[2014/01/25 12:52:36 | 000,000,822 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2014/01/12 11:29:53 | 000,194,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\elshyph.dll
[2014/01/12 11:29:45 | 000,645,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\jsIntl.dll
[2014/01/12 11:29:45 | 000,235,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\elshyph.dll
[2014/01/12 11:29:45 | 000,071,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\RegisterIEPKEYs.exe
[2014/01/12 11:29:44 | 001,051,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmlmedia.dll
[2014/01/12 11:29:44 | 000,616,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dat
[2014/01/12 11:29:44 | 000,337,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\html.iec
[2014/01/12 11:29:44 | 000,233,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\url.dll
[2014/01/12 11:29:44 | 000,151,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iexpress.exe
[2014/01/12 11:29:44 | 000,139,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\wextract.exe
[2014/01/12 11:29:44 | 000,083,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\inseng.dll
[2014/01/12 11:29:44 | 000,069,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\icardie.dll
[2014/01/12 11:29:44 | 000,062,464 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\tdc.ocx
[2014/01/12 11:29:44 | 000,056,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\pngfilt.dll
[2014/01/12 11:29:44 | 000,024,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\licmgr10.dll
[2014/01/12 11:29:44 | 000,016,284 | ---- | M] () -- C:\Windows\SysWow64\ieuinit.inf
[2014/01/12 11:29:43 | 000,610,304 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2014/01/12 11:29:43 | 000,127,488 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\occache.dll
[2014/01/12 11:29:43 | 000,116,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iepeers.dll
[2014/01/12 11:29:43 | 000,111,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\IEAdvpack.dll
[2014/01/12 11:29:43 | 000,061,952 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\MshtmlDac.dll
[2014/01/12 11:29:43 | 000,012,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeedssync.exe
[2014/01/12 11:29:42 | 000,942,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jsIntl.dll
[2014/01/12 11:29:42 | 000,086,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iesysprep.dll
[2014/01/12 11:29:42 | 000,074,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\SetIEInstalledDate.exe
[2014/01/12 11:29:42 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmler.dll
[2014/01/12 11:29:41 | 000,247,808 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msls31.dll
[2014/01/12 11:29:41 | 000,131,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\IEAdvpack.dll
[2014/01/12 11:29:41 | 000,090,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\SetIEInstalledDate.exe
[2014/01/12 11:29:41 | 000,086,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\RegisterIEPKEYs.exe
[2014/01/12 11:29:41 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msfeedssync.exe
[2014/01/12 11:29:40 | 001,228,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmlmedia.dll
[2014/01/12 11:29:40 | 000,616,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dat
[2014/01/12 11:29:40 | 000,413,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\html.iec
[2014/01/12 11:29:40 | 000,235,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\url.dll
[2014/01/12 11:29:40 | 000,105,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iesysprep.dll
[2014/01/12 11:29:40 | 000,081,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\icardie.dll
[2014/01/12 11:29:40 | 000,077,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\tdc.ocx
[2014/01/12 11:29:40 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmler.dll
[2014/01/12 11:29:40 | 000,016,284 | ---- | M] () -- C:\Windows\SysNative\ieuinit.inf
[2014/01/12 11:29:39 | 000,774,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
[2014/01/12 11:29:39 | 000,167,424 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iexpress.exe
[2014/01/12 11:29:39 | 000,147,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\occache.dll
[2014/01/12 11:29:39 | 000,143,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wextract.exe
[2014/01/12 11:29:39 | 000,135,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iepeers.dll
[2014/01/12 11:29:39 | 000,101,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\inseng.dll
[2014/01/12 11:29:39 | 000,083,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\MshtmlDac.dll
[2014/01/12 11:29:39 | 000,062,464 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\pngfilt.dll
[2014/01/12 11:29:39 | 000,048,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\imgutil.dll
[2014/01/12 11:29:39 | 000,030,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\licmgr10.dll
[2014/01/12 11:29:39 | 000,013,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshta.exe
[2014/01/08 19:22:42 | 005,694,464 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mstscax.dll
[2014/01/03 23:07:09 | 001,288,646 | ---- | M] () -- C:\Users\dogonit23\Desktop\NVSO_ReferralDirectory.pdf
[2014/01/03 15:44:58 | 006,574,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mstscax.dll
[2013/12/24 15:48:32 | 002,565,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10warp.dll
[2013/12/14 15:52:19 | 001,957,413 | ---- | M] () -- C:\Users\dogonit23\Documents\USPS Label 12-14-2013.pdf
[2013/12/05 19:30:08 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msxml3r.dll
[2013/12/05 19:02:08 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msxml3r.dll
[2013/12/03 19:27:33 | 000,485,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\secproc_isv.dll
[2013/12/03 19:27:33 | 000,123,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\secproc_ssp_isv.dll
[2013/12/03 19:27:33 | 000,123,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\secproc_ssp.dll
[2013/12/03 19:27:16 | 000,488,448 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\secproc.dll
[2013/12/03 19:26:32 | 000,528,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msdrm.dll
[2013/12/03 19:16:51 | 000,658,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate_isv.exe
[2013/12/03 19:16:51 | 000,626,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate.exe
[2013/12/03 19:16:50 | 000,552,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate_ssp_isv.exe
[2013/12/03 19:16:48 | 000,553,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\RMActivate_ssp.exe
[2013/12/03 19:03:20 | 000,423,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_isv.dll
[2013/12/03 19:03:20 | 000,087,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_ssp_isv.dll
[2013/12/03 19:03:20 | 000,087,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc_ssp.dll
[2013/12/03 19:03:08 | 000,428,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\secproc.dll
[2013/12/03 18:54:14 | 000,510,976 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_ssp.exe
[2013/12/03 18:54:10 | 000,594,944 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_isv.exe
[2013/12/03 18:54:09 | 000,572,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate.exe
[2013/12/03 18:54:06 | 000,508,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\RMActivate_ssp_isv.exe
[2013/11/26 18:41:11 | 000,325,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usbport.sys
[2013/11/26 18:41:03 | 000,007,808 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usbd.sys
[2013/11/26 04:40:00 | 000,376,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\netio.sys
[2013/11/25 13:14:18 | 000,009,000 | ---- | M] (EldoS Corporation) -- C:\Windows\SysNative\elevtmsg.dll
[2013/11/25 13:13:54 | 000,120,616 | ---- | M] (EldoS Corporation) -- C:\Windows\SysNative\cbfsNetRdr5.dll
[2013/11/25 13:13:46 | 000,219,944 | ---- | M] (EldoS Corporation) -- C:\Windows\SysWow64\cbfsNetRdr5.dll
[2013/11/25 13:12:54 | 000,183,592 | ---- | M] (EldoS Corporation) -- C:\Windows\SysNative\cbfsMntNtf5.dll
[2013/11/25 13:12:14 | 000,157,480 | ---- | M] (EldoS Corporation) -- C:\Windows\SysWow64\cbfsMntNtf5.dll
[2013/11/25 13:03:00 | 000,413,888 | ---- | M] (EldoS Corporation) -- C:\Windows\SysNative\drivers\cbfs5.sys
[2013/11/23 11:26:20 | 000,417,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\WMPhoto.dll
[2013/11/23 10:47:34 | 000,465,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\WMPhoto.dll
[2013/11/22 15:48:21 | 003,928,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\d2d1.dll
[2013/11/02 11:46:19 | 000,883,928 | ---- | M] (Realtek                                            ) -- C:\Windows\SysNative\drivers\Rt64win7.sys
[2013/11/02 11:46:19 | 000,108,760 | ---- | M] (Realtek Semiconductor Corporation) -- C:\Windows\SysNative\RTNUninst64.dll
[2013/11/02 11:46:19 | 000,074,456 | ---- | M] (Realtek Semiconductor Corporation) -- C:\Windows\SysNative\RtNicProp64.dll
[2013/10/29 19:32:01 | 000,335,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msieftp.dll
[2013/10/29 19:19:52 | 000,301,568 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msieftp.dll
[2013/10/29 19:10:19 | 000,000,101 | ---- | M] () -- C:\Users\dogonit23\Desktop\cPix.ini
[2013/10/18 19:18:57 | 000,081,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\imagehlp.dll
[2013/10/14 19:00:00 | 000,028,368 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\IEUDINIT.EXE
[2013/10/12 14:08:47 | 000,001,066 | ---- | M] () -- C:\Users\dogonit23\Desktop\VLC media player.lnk
[2013/10/11 19:32:04 | 000,150,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wshom.ocx
[2013/10/11 19:31:04 | 000,202,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\scrrun.dll
[2013/10/11 19:30:42 | 000,830,464 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\nshwfp.dll
[2013/10/11 19:29:08 | 000,324,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\FWPUCLNT.DLL
[2013/10/11 19:04:36 | 000,121,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\wshom.ocx
[2013/10/11 19:03:31 | 000,163,840 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\scrrun.dll
[2013/10/11 19:03:08 | 000,656,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\nshwfp.dll
[2013/10/11 19:01:25 | 000,216,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\FWPUCLNT.DLL
[2013/10/11 18:33:39 | 000,156,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\cscript.exe
[2013/10/11 18:15:48 | 000,126,976 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\cscript.exe
[2013/10/06 15:59:33 | 000,000,340 | ---- | M] () -- C:\Windows\tasks\GlaryInitialize 3.job
[2013/10/05 13:25:35 | 001,474,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\crypt32.dll
[2013/10/04 13:53:44 | 000,001,133 | ---- | M] () -- C:\Users\dogonit23\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Microsoft Office Outlook.lnk
[2013/10/03 19:28:31 | 000,190,464 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\SmartcardCredentialProvider.dll
[2013/10/03 19:25:17 | 000,197,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\credui.dll
[2013/10/03 19:24:49 | 001,930,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\authui.dll
[2013/10/03 19:16:30 | 000,116,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\drmk.sys
[2013/10/03 18:58:50 | 000,152,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\SmartcardCredentialProvider.dll
[2013/10/03 18:56:00 | 001,796,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\authui.dll
[2013/10/03 18:36:04 | 000,230,400 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\portcls.sys
[2013/10/02 19:23:48 | 000,404,480 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\gdi32.dll
[2013/10/01 21:38:11 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\en-US\tsusbflt.sys.mui
[2013/10/01 19:22:20 | 000,056,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys
[2013/10/01 19:11:13 | 000,013,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\TsUsbRedirectionGroupPolicyControl.exe
[2013/10/01 19:08:53 | 000,012,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\TsUsbRedirectionGroupPolicyExtension.dll
[2013/10/01 18:48:59 | 000,056,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\MsRdpWebAccess.dll
[2013/10/01 18:48:08 | 000,018,944 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wksprtPS.dll
[2013/10/01 18:36:21 | 000,007,603 | ---- | M] () -- C:\Users\dogonit23\AppData\Local\Resmon.ResmonCfg
[2013/10/01 18:29:05 | 000,062,976 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\tsgqec.dll
[2013/10/01 18:10:56 | 000,044,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\TsUsbGDCoInstaller.dll
[2013/10/01 17:15:45 | 001,057,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\rdvidcrl.dll
[2013/10/01 17:14:58 | 000,050,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\MsRdpWebAccess.dll
[2013/10/01 17:14:20 | 000,017,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\wksprtPS.dll
[2013/10/01 17:08:30 | 000,083,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\TSWbPrxy.exe
[2013/10/01 17:01:16 | 000,420,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wksprt.exe
[2013/10/01 16:58:48 | 000,053,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\tsgqec.dll
[2013/10/01 16:31:09 | 001,147,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mstsc.exe
[2013/10/01 16:08:10 | 000,855,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\rdvidcrl.dll
[2013/10/01 15:34:12 | 001,068,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mstsc.exe
[2013/09/24 19:23:41 | 001,030,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\TSWorkspace.dll
[2013/09/24 19:21:50 | 000,307,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ncrypt.dll
[2013/09/24 18:57:53 | 000,792,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\TSWorkspace.dll
[2013/09/18 22:05:54 | 000,001,068 | ---- | M] () -- C:\Users\dogonit23\Desktop\FLV-Media Player.lnk
[2013/09/14 16:58:46 | 000,001,104 | ---- | M] () -- C:\Users\dogonit23\Application Data\Microsoft\Internet Explorer\Quick Launch\Glary Utilities 3.lnk
[2013/09/13 08:36:32 | 000,001,188 | ---- | M] () -- C:\Windows\SysWow64\ServiceConfig.xml
[2013/09/13 08:36:32 | 000,000,796 | ---- | M] () -- C:\Windows\SysWow64\RegistrationConfig.xml
[2013/09/13 08:36:32 | 000,000,722 | ---- | M] () -- C:\Windows\SysWow64\ThreatDefinitionsConfig.xml
[2013/09/11 22:21:54 | 000,863,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msvcr110_clr0400.dll
[2013/09/11 22:21:54 | 000,501,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msvcp110_clr0400.dll
[2013/09/11 22:21:54 | 000,028,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\aspnet_counters.dll
[2013/09/11 22:21:54 | 000,018,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msvcr100_clr0400.dll
[2013/09/11 20:39:06 | 000,855,664 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msvcr110_clr0400.dll
[2013/09/11 20:39:06 | 000,614,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msvcp110_clr0400.dll
[2013/09/11 20:39:06 | 000,030,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\aspnet_counters.dll
[2013/09/11 20:39:06 | 000,018,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msvcr100_clr0400.dll
[2013/09/02 14:03:14 | 000,205,717 | ---- | M] () -- C:\Windows\XHeader Uninstaller.exe
[2013/09/02 14:03:13 | 000,000,991 | ---- | M] () -- C:\Users\dogonit23\Desktop\XHeader.lnk
[2013/09/02 02:09:06 | 000,117,024 | ---- | M] (Glarysoft Ltd) -- C:\Windows\SysNative\BootDefrag.exe
[2013/08/30 13:37:30 | 000,163,273 | ---- | M] () -- C:\Windows\Nexus Toolbar Uninstaller.exe
[2013/08/28 19:16:35 | 001,732,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ntdll.dll
[2013/08/28 19:16:14 | 000,859,648 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\tdh.dll
[2013/08/28 19:13:28 | 000,878,080 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\advapi32.dll
[2013/08/28 18:50:16 | 000,619,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\tdh.dll
[2013/08/27 18:12:33 | 000,461,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\scavengeui.dll
[2013/08/25 03:09:32 | 000,000,191 | ---- | M] () -- C:\Users\dogonit23\Documents\XPROXY.LXS
[2013/08/25 03:08:20 | 000,001,048 | ---- | M] () -- C:\Users\dogonit23\Documents\XSETTINGS.LXS
[2013/08/25 03:08:03 | 000,000,277 | ---- | M] () -- C:\Users\dogonit23\Documents\XREG.LXS
[2013/08/18 13:34:05 | 000,001,168 | ---- | M] () -- C:\Users\Public\Desktop\Camtasia Studio 7.lnk
[2013/08/15 17:31:14 | 000,268,968 | ---- | M] () -- C:\Windows\SysWow64\sqlite3.dll
[2013/08/11 14:54:32 | 000,002,279 | ---- | M] () -- C:\Users\dogonit23\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2013/08/08 16:09:26 | 000,000,438 | ---- | M] () -- C:\Windows\SysWow64\WSCConfig.xml
[2013/08/06 12:39:22 | 000,014,456 | ---- | M] (GFI Software) -- C:\Windows\SysNative\drivers\gfibto.sys
[2013/08/05 12:50:06 | 000,000,000 | ---- | M] () -- C:\autoexec.bat
[2013/08/04 19:25:45 | 000,155,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ataport.sys
[2013/08/01 19:14:57 | 000,215,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\winsrv.dll
[2013/08/01 19:12:47 | 000,043,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\csrsrv.dll
[2013/08/01 19:12:20 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\apisetschema.dll
[2013/08/01 19:12:20 | 000,006,144 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-security-base-l1-1-0.dll
[2013/08/01 19:12:20 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-threadpool-l1-1-0.dll
[2013/08/01 19:12:20 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-sysinfo-l1-1-0.dll
[2013/08/01 19:12:20 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-synch-l1-1-0.dll
[2013/08/01 19:12:20 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-xstate-l1-1-0.dll
[2013/08/01 19:12:20 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-util-l1-1-0.dll
[2013/08/01 19:12:20 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-string-l1-1-0.dll
[2013/08/01 19:12:19 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-processthreads-l1-1-0.dll
[2013/08/01 19:12:19 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-localregistry-l1-1-0.dll
[2013/08/01 19:12:19 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-localization-l1-1-0.dll
[2013/08/01 19:12:19 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-rtlsupport-l1-1-0.dll
[2013/08/01 19:12:19 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-processenvironment-l1-1-0.dll
[2013/08/01 19:12:19 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-namedpipe-l1-1-0.dll
[2013/08/01 19:12:19 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-misc-l1-1-0.dll
[2013/08/01 19:12:19 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-memory-l1-1-0.dll
[2013/08/01 19:12:19 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/08/01 19:12:19 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-heap-l1-1-0.dll
[2013/08/01 19:12:19 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-profile-l1-1-0.dll
[2013/08/01 19:12:19 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-io-l1-1-0.dll
[2013/08/01 19:12:19 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-interlocked-l1-1-0.dll
[2013/08/01 19:12:19 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-handle-l1-1-0.dll
[2013/08/01 19:12:18 | 000,005,120 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-file-l1-1-0.dll
[2013/08/01 19:12:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-fibers-l1-1-0.dll
[2013/08/01 19:12:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-errorhandling-l1-1-0.dll
[2013/08/01 19:12:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-delayload-l1-1-0.dll
[2013/08/01 19:12:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-debug-l1-1-0.dll
[2013/08/01 19:12:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-datetime-l1-1-0.dll
[2013/08/01 19:12:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-console-l1-1-0.dll
[2013/08/01 18:48:15 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\apisetschema.dll
[2013/08/01 18:48:15 | 000,005,120 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-file-l1-1-0.dll
[2013/08/01 18:48:15 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-processthreads-l1-1-0.dll
[2013/08/01 18:48:15 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-sysinfo-l1-1-0.dll
[2013/08/01 18:48:15 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-synch-l1-1-0.dll
[2013/08/01 18:48:15 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-misc-l1-1-0.dll
[2013/08/01 18:48:15 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-localregistry-l1-1-0.dll
[2013/08/01 18:48:15 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-localization-l1-1-0.dll
[2013/08/01 18:48:15 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-processenvironment-l1-1-0.dll
[2013/08/01 18:48:15 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-namedpipe-l1-1-0.dll
[2013/08/01 18:48:15 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-memory-l1-1-0.dll
[2013/08/01 18:48:15 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/08/01 18:48:15 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-interlocked-l1-1-0.dll
[2013/08/01 18:48:15 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-heap-l1-1-0.dll
[2013/08/01 18:48:15 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-string-l1-1-0.dll
[2013/08/01 18:48:15 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-rtlsupport-l1-1-0.dll
[2013/08/01 18:48:15 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-profile-l1-1-0.dll
[2013/08/01 18:48:15 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-io-l1-1-0.dll
[2013/08/01 18:48:15 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-handle-l1-1-0.dll
[2013/08/01 18:48:15 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-fibers-l1-1-0.dll
[2013/08/01 18:48:15 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-errorhandling-l1-1-0.dll
[2013/08/01 18:48:14 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-delayload-l1-1-0.dll
[2013/08/01 18:48:14 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-debug-l1-1-0.dll
[2013/08/01 18:48:14 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-datetime-l1-1-0.dll
[2013/08/01 18:48:14 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-console-l1-1-0.dll
[2013/08/01 18:09:17 | 000,338,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\conhost.exe
[2013/08/01 17:59:09 | 000,112,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\smss.exe
[2013/08/01 17:43:05 | 000,006,144 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
[2013/08/01 17:43:05 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
[2013/08/01 17:43:05 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
[2013/08/01 17:43:05 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
[2013/07/30 14:04:57 | 000,001,131 | ---- | M] () -- C:\Users\dogonit23\Desktop\StartMeeting.lnk
[2013/07/30 11:22:02 | 000,001,950 | ---- | M] () -- C:\Users\dogonit23\Desktop\FLV-Media-Player.lnk
[2013/07/25 19:24:56 | 000,197,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\shdocvw.dll
[2013/07/25 02:25:54 | 001,888,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\WMVDECOD.DLL
[2013/07/25 01:57:27 | 001,620,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\WMVDECOD.DLL
[2013/07/23 16:51:19 | 000,002,045 | ---- | M] () -- C:\Users\Public\Desktop\eBay Turbo Lister 2.lnk
[2013/07/23 16:51:02 | 000,001,800 | ---- | M] () -- C:\Users\dogonit23\Application Data\Microsoft\Internet Explorer\Quick Launch\eBay Turbo Lister 2.lnk
[2013/07/21 21:37:42 | 000,001,168 | ---- | M] () -- C:\Users\Public\Desktop\OpenOffice.org 3.4.1.lnk
[2013/07/20 03:33:12 | 000,102,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\PresentationCFFRasterizerNative_v0300.dll
[2013/07/20 03:33:08 | 000,124,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\PresentationCFFRasterizerNative_v0300.dll
[2013/07/18 11:13:12 | 000,591,310 | ---- | M] () -- C:\Users\dogonit23\Documents\Columbia House Wishlist 1.pdf
[2013/07/18 11:11:52 | 000,179,640 | ---- | M] () -- C:\Users\dogonit23\Documents\Columbia House Wishlist 2.pdf
[2013/07/09 19:05:01 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
[2013/07/08 22:52:52 | 000,224,256 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wintrust.dll
[2013/07/08 22:51:16 | 001,217,024 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\rpcrt4.dll
[2013/07/08 22:46:20 | 000,139,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\cryptnet.dll
[2013/07/04 05:50:46 | 000,102,400 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\davclnt.dll
[2013/07/04 05:50:39 | 000,633,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\comctl32.dll
[2013/07/02 21:05:05 | 000,076,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\hidclass.sys
[2013/07/02 21:05:04 | 000,032,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\hidparse.sys
[2013/07/01 15:43:28 | 001,044,480 | R--- | M] (eHelp Corporation.) -- C:\Windows\SysWow64\roboex32.dll
[2013/07/01 15:43:28 | 000,049,152 | R--- | M] (Blue Sky Software Corporation.) -- C:\Windows\SysWow64\inetwh32.dll
[2013/06/27 19:05:12 | 000,027,456 | ---- | M] (IObit) -- C:\Windows\SysNative\RegistryDefragBootTime.exe
[2013/06/26 19:21:50 | 000,023,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\Sftvollh.sys
[2013/06/26 19:21:48 | 000,028,840 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\Sftredirlh.sys
[2013/06/26 19:21:46 | 001,777,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\sftldr.dll
[2013/06/26 19:21:46 | 001,130,664 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\sftldr_wow64.dll
[2013/06/26 19:21:46 | 000,273,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\Sftplaylh.sys
[2013/06/26 19:21:44 | 000,767,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\Sftfslh.sys
[2013/06/05 22:50:51 | 000,041,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\lpk.dll
[2013/06/05 22:49:52 | 000,100,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\fontsub.dll
[2013/06/05 22:49:07 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\dciman32.dll
[2013/06/05 22:47:21 | 000,046,080 | ---- | M] (Adobe Systems) -- C:\Windows\SysNative\atmlib.dll
[2013/06/05 21:51:29 | 000,070,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\fontsub.dll
[2013/06/05 20:30:53 | 000,368,128 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysNative\atmfd.dll
[2013/06/05 20:01:38 | 000,295,424 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\atmfd.dll
[2013/06/05 20:01:26 | 000,034,304 | ---- | M] (Adobe Systems) -- C:\Windows\SysWow64\atmlib.dll
[2013/06/03 12:25:54 | 000,001,783 | ---- | M] () -- C:\Users\Public\Desktop\iTunes.lnk
[2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
 
========== Files Created - No Company Name ==========
 
[2014/05/24 10:28:01 | 001,492,836 | ---- | C] () -- C:\Users\dogonit23\Desktop\Chapter4_MYS_NEW.pdf
[2014/05/24 09:59:15 | 001,907,760 | ---- | C] () -- C:\Users\dogonit23\Desktop\AttendeeViewerImage005.bmp
[2014/05/24 09:27:21 | 000,478,446 | ---- | C] () -- C:\Users\dogonit23\Desktop\Ultimate Selling Power - Dr. Moine.pdf
[2014/05/18 11:01:13 | 000,001,305 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk
[2014/05/17 18:32:06 | 000,000,990 | ---- | C] () -- C:\Users\Public\Desktop\Kudani.lnk
[2014/05/14 23:07:44 | 000,468,480 | ---- | C] () -- C:\Users\dogonit23\Desktop\CKScanner.exe
[2014/05/14 23:01:44 | 000,000,830 | ---- | C] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2014/05/13 16:26:43 | 000,000,000 | ---- | C] () -- C:\asc_rdflag
[2014/05/10 21:05:35 | 000,076,094 | ---- | C] () -- C:\Users\dogonit23\Desktop\paypal payment 5-10-14.pdf
[2014/05/06 00:08:08 | 024,159,485 | ---- | C] () -- C:\Users\dogonit23\Desktop\Three-nights-with-ClaytonNolte-02.mp3
[2014/05/05 18:25:25 | 002,115,078 | ---- | C] () -- C:\Users\dogonit23\Desktop\AttendeeViewerImage004.bmp
[2014/05/05 18:24:15 | 002,115,078 | ---- | C] () -- C:\Users\dogonit23\Desktop\AttendeeViewerImage003.bmp
[2014/05/04 22:49:47 | 017,312,379 | ---- | C] () -- C:\Users\dogonit23\Desktop\Proven 7 step Blueprint for Finding Your Message, Turning it into Millions, and Building a Lifestyle Friendly Business.mp3
[2014/04/30 21:06:55 | 117,358,787 | ---- | C] () -- C:\Users\dogonit23\Desktop\218440631.mp4
[2014/04/30 17:30:35 | 000,166,832 | ---- | C] () -- C:\Users\dogonit23\Desktop\quickcash.zip
[2014/04/29 17:35:59 | 001,907,760 | ---- | C] () -- C:\Users\dogonit23\Desktop\AttendeeViewerImage002.bmp
[2014/04/28 19:45:43 | 002,115,078 | ---- | C] () -- C:\Users\dogonit23\Desktop\AttendeeViewerImage001.bmp
[2014/04/28 18:06:27 | 000,187,050 | ---- | C] () -- C:\Users\dogonit23\Desktop\Statement12014.pdf
[2014/04/27 21:49:51 | 001,907,760 | ---- | C] () -- C:\Users\dogonit23\Desktop\AttendeeViewerImage000.bmp
[2014/04/27 12:05:14 | 000,002,697 | ---- | C] () -- C:\Users\Public\Desktop\Skype.lnk
[2014/04/22 20:03:35 | 000,266,527 | ---- | C] () -- C:\Users\dogonit23\Desktop\loa_wealth_prac_sample.pdf
[2014/04/17 19:21:32 | 000,112,152 | ---- | C] () -- C:\Users\dogonit23\Desktop\GoToWebinar_Attendee_QuickRef_Guide.pdf
[2014/04/15 23:24:43 | 000,001,201 | ---- | C] () -- C:\Users\Public\Desktop\Shortcut to Tube Sniper Pro.exe.lnk
[2014/04/14 19:38:05 | 000,798,822 | ---- | C] () -- C:\Users\dogonit23\Desktop\NeverBeClosing_eBook.pdf
[2014/04/09 17:14:52 | 000,000,876 | ---- | C] () -- C:\Users\dogonit23\Desktop\IP-Tools.lnk
[2014/03/25 23:00:15 | 000,008,894 | ---- | C] () -- C:\Users\dogonit23\Desktop\2C9A0269-00000002.eml
[2014/03/25 22:23:18 | 000,002,251 | ---- | C] () -- C:\Users\dogonit23\Desktop\Kindle.lnk
[2014/03/19 22:33:37 | 001,605,089 | ---- | C] () -- C:\Users\dogonit23\Desktop\Meteor+Comet.pdf
[2014/03/19 00:37:39 | 001,058,540 | ---- | C] () -- C:\Users\dogonit23\Desktop\12-reasons-report.pdf
[2014/03/19 00:15:03 | 000,175,799 | ---- | C] () -- C:\Users\dogonit23\Desktop\108.pdf
[2014/03/17 23:09:40 | 003,767,534 | ---- | C] () -- C:\Users\dogonit23\Desktop\AchieveAnything.pdf
[2014/03/16 23:16:22 | 000,001,668 | ---- | C] () -- C:\Users\Public\Desktop\Bitcasa Infinite Drive.lnk
[2014/03/13 23:42:46 | 000,000,953 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hot Lead Finder.lnk
[2014/03/12 01:00:55 | 000,309,148 | ---- | C] () -- C:\Users\dogonit23\Documents\Untitled Logo 4.tlc
[2014/03/12 00:51:03 | 000,008,135 | ---- | C] () -- C:\Users\dogonit23\Documents\Untitled Logo 3.png
[2014/03/12 00:38:52 | 000,014,718 | ---- | C] () -- C:\Users\dogonit23\Documents\Untitled Logo 2.png
[2014/03/12 00:32:54 | 000,019,244 | ---- | C] () -- C:\Users\dogonit23\Documents\Untitled Logo 1.png
[2014/03/12 00:31:19 | 000,309,164 | ---- | C] () -- C:\Users\dogonit23\Documents\Untitled Logo 1.tlc
[2014/03/11 23:42:51 | 000,001,053 | ---- | C] () -- C:\Users\dogonit23\Desktop\The Logo Creator v5.2.exe.lnk
[2014/03/11 18:30:05 | 002,240,357 | ---- | C] () -- C:\Users\dogonit23\Desktop\The 10 Best Ways To Get Paid for Changing The World.pdf
[2014/03/08 10:54:16 | 762,338,589 | ---- | C] () -- C:\Users\dogonit23\Desktop\No_Hype_Marketing_Package.zip
[2014/03/06 21:16:39 | 002,699,572 | ---- | C] () -- C:\Users\dogonit23\Desktop\vinylty33_3  eBay 7.mht
[2014/03/06 21:15:48 | 004,121,369 | ---- | C] () -- C:\Users\dogonit23\Desktop\vinylty33_3  eBay 6.mht
[2014/03/01 20:57:57 | 000,002,190 | ---- | C] () -- C:\Users\dogonit23\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
[2014/02/28 19:51:56 | 000,000,830 | ---- | C] () -- C:\Users\dogonit23\Documents\ChatLog STARTING NOW___ENCORE___Beyond Business Live_ Webinar _1 LinkedIn Secrets Revealed _ Generate Unlimited Leads for Life 2014_02_28 18_51.rtf
[2014/02/25 18:01:28 | 000,444,283 | ---- | C] () -- C:\Program Files\Common Files\WinPcapNmap.exe
[2014/02/23 03:04:15 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
[2014/02/23 03:04:15 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2014/02/23 03:04:15 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2014/02/23 03:04:15 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2014/02/23 03:04:15 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2014/02/23 03:03:50 | 000,000,332 | ---- | C] () -- C:\Start_.cmd
[2014/02/21 18:41:48 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_WinUsb_01007.Wdf
[2014/02/18 23:45:32 | 000,000,933 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Video Vantage.lnk
[2014/02/18 19:46:33 | 000,001,156 | ---- | C] () -- C:\Users\dogonit23\Application Data\Microsoft\Internet Explorer\Quick Launch\Snagit 11.lnk
[2014/02/13 01:45:38 | 000,089,832 | ---- | C] () -- C:\Users\dogonit23\Desktop\ssmglv.com.pdf
[2014/02/10 18:49:08 | 002,286,342 | ---- | C] () -- C:\Users\dogonit23\Desktop\seven-stages-ebook.pdf
[2014/02/08 23:02:03 | 002,932,445 | ---- | C] () -- C:\Users\dogonit23\Desktop\newsletter-september-2010.pdf
[2014/02/02 12:04:35 | 000,000,913 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HydraVidPRO.lnk
[2014/01/12 11:29:44 | 000,016,284 | ---- | C] () -- C:\Windows\SysWow64\ieuinit.inf
[2014/01/12 11:29:40 | 000,016,284 | ---- | C] () -- C:\Windows\SysNative\ieuinit.inf
[2014/01/03 23:07:04 | 001,288,646 | ---- | C] () -- C:\Users\dogonit23\Desktop\NVSO_ReferralDirectory.pdf
[2013/12/26 18:32:35 | 000,000,348 | ---- | C] () -- C:\Windows\tasks\HPCeeScheduleFordogonit23.job
[2013/12/25 22:58:29 | 000,001,108 | ---- | C] () -- C:\Users\Public\Desktop\Driver Booster.lnk
[2013/12/14 15:52:56 | 001,957,413 | ---- | C] () -- C:\Users\dogonit23\Documents\USPS Label 12-14-2013.pdf
[2013/12/03 19:42:56 | 000,001,156 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity 1.3 Beta (Unicode).lnk
[2013/11/02 12:04:10 | 000,017,720 | ---- | C] () -- C:\Windows\SysNative\drivers\SmartDefragDriver.sys
[2013/10/29 19:10:19 | 000,000,101 | ---- | C] () -- C:\Users\dogonit23\Desktop\cPix.ini
[2013/10/19 16:45:05 | 000,000,923 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CurationSoft.lnk
[2013/10/12 14:08:47 | 000,001,066 | ---- | C] () -- C:\Users\dogonit23\Desktop\VLC media player.lnk
[2013/10/11 10:50:44 | 000,000,933 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FB Ad Express.lnk
[2013/10/06 16:10:42 | 000,001,458 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Mail.lnk
[2013/10/06 12:15:57 | 000,001,374 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Gallery.lnk
[2013/10/06 12:14:56 | 000,002,486 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Messenger.lnk
[2013/09/29 12:01:13 | 000,000,821 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\slf.lnk
[2013/09/18 22:05:54 | 000,001,068 | ---- | C] () -- C:\Users\dogonit23\Desktop\FLV-Media Player.lnk
[2013/09/14 16:58:46 | 000,001,104 | ---- | C] () -- C:\Users\dogonit23\Application Data\Microsoft\Internet Explorer\Quick Launch\Glary Utilities 3.lnk
[2013/09/14 16:58:36 | 000,000,340 | ---- | C] () -- C:\Windows\tasks\GlaryInitialize 3.job
[2013/09/14 16:58:29 | 000,001,100 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 3.lnk
[2013/09/14 16:08:03 | 000,268,968 | ---- | C] () -- C:\Windows\SysWow64\sqlite3.dll
[2013/09/14 00:21:03 | 000,002,155 | ---- | C] () -- C:\Windows\epplauncher.mif
[2013/09/13 08:36:32 | 000,001,188 | ---- | C] () -- C:\Windows\SysWow64\ServiceConfig.xml
[2013/09/13 08:36:32 | 000,000,796 | ---- | C] () -- C:\Windows\SysWow64\RegistrationConfig.xml
[2013/09/13 08:36:32 | 000,000,722 | ---- | C] () -- C:\Windows\SysWow64\ThreatDefinitionsConfig.xml
[2013/09/02 14:03:13 | 000,000,991 | ---- | C] () -- C:\Users\dogonit23\Desktop\XHeader.lnk
[2013/09/02 14:03:12 | 000,205,717 | ---- | C] () -- C:\Windows\XHeader Uninstaller.exe
[2013/08/30 13:37:30 | 000,163,273 | ---- | C] () -- C:\Windows\Nexus Toolbar Uninstaller.exe
[2013/08/25 03:09:32 | 000,000,191 | ---- | C] () -- C:\Users\dogonit23\Documents\XPROXY.LXS
[2013/08/25 03:08:20 | 000,001,048 | ---- | C] () -- C:\Users\dogonit23\Documents\XSETTINGS.LXS
[2013/08/25 03:08:03 | 000,000,277 | ---- | C] () -- C:\Users\dogonit23\Documents\XREG.LXS
[2013/08/18 13:34:05 | 000,001,168 | ---- | C] () -- C:\Users\Public\Desktop\Camtasia Studio 7.lnk
[2013/08/11 14:50:48 | 000,002,279 | ---- | C] () -- C:\Users\dogonit23\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2013/08/11 14:50:48 | 000,002,183 | ---- | C] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2013/08/11 14:45:52 | 000,000,904 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2013/08/11 14:45:51 | 000,000,900 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2013/08/08 16:09:26 | 000,000,438 | ---- | C] () -- C:\Windows\SysWow64\WSCConfig.xml
[2013/08/05 12:50:06 | 000,000,000 | ---- | C] () -- C:\autoexec.bat
[2013/07/31 00:26:00 | 000,009,728 | ---- | C] () -- C:\Users\dogonit23\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2013/07/30 11:22:02 | 000,001,950 | ---- | C] () -- C:\Users\dogonit23\Desktop\FLV-Media-Player.lnk
[2013/07/23 16:51:19 | 000,002,045 | ---- | C] () -- C:\Users\Public\Desktop\eBay Turbo Lister 2.lnk
[2013/07/23 16:51:02 | 000,001,800 | ---- | C] () -- C:\Users\dogonit23\Application Data\Microsoft\Internet Explorer\Quick Launch\eBay Turbo Lister 2.lnk
[2013/07/21 21:37:42 | 000,001,168 | ---- | C] () -- C:\Users\Public\Desktop\OpenOffice.org 3.4.1.lnk
[2013/07/18 11:11:52 | 000,179,640 | ---- | C] () -- C:\Users\dogonit23\Documents\Columbia House Wishlist 2.pdf
[2013/07/18 11:10:48 | 000,591,310 | ---- | C] () -- C:\Users\dogonit23\Documents\Columbia House Wishlist 1.pdf
[2013/07/09 19:05:01 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
[2013/07/08 14:56:01 | 000,001,131 | ---- | C] () -- C:\Users\dogonit23\Desktop\StartMeeting.lnk
[2013/06/03 12:25:51 | 000,001,783 | ---- | C] () -- C:\Users\Public\Desktop\iTunes.lnk
[2013/05/25 11:52:32 | 000,000,376 | ---- | C] () -- C:\Windows\ODBC.INI
[2013/05/20 14:29:46 | 000,000,000 | ---- | C] () -- C:\Windows\OpPrintServer.INI
[2013/05/06 17:27:50 | 000,775,974 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2013/05/06 15:05:28 | 000,007,603 | ---- | C] () -- C:\Users\dogonit23\AppData\Local\Resmon.ResmonCfg
[2013/05/04 20:13:25 | 252,812,488 | ---- | C] () -- C:\Users\dogonit23\capture-5.camrec
[2013/05/04 20:13:21 | 115,569,164 | ---- | C] () -- C:\Users\dogonit23\capture-4.camrec
[2013/05/04 20:13:12 | 249,367,596 | ---- | C] () -- C:\Users\dogonit23\capture-3.camrec
[2013/05/04 20:12:43 | 863,090,668 | ---- | C] () -- C:\Users\dogonit23\capture-2.camrec
[2013/05/04 20:12:03 | 1171,038,208 | ---- | C] () -- C:\Users\dogonit23\capture-1.camrec
[2013/05/04 20:12:03 | 012,238,848 | ---- | C] () -- C:\Users\dogonit23\capture-8.camrec
[2013/05/04 20:12:03 | 012,083,200 | ---- | C] () -- C:\Users\dogonit23\capture-7.camrec
[2013/05/04 20:12:03 | 000,073,795 | ---- | C] () -- C:\Users\dogonit23\presidential storage payment 2-15-13.pdf
[2013/05/04 20:12:00 | 061,049,468 | ---- | C] () -- C:\Users\dogonit23\capture-6.camrec
[2012/08/24 13:23:53 | 000,002,717 | ---- | C] () -- C:\Users\dogonit23\.recently-used.xbel
[2012/03/31 11:43:19 | 000,134,228 | ---- | C] () -- C:\Users\dogonit23\7 Do Not Eat Foods.pdf
[2011/02/13 14:08:47 | 001,130,348 | ---- | C] () -- C:\Users\dogonit23\hot-minisite-templates.zip
 
========== ZeroAccess Check ==========
 
[2009/07/13 21:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
 
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
 
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
 
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
 
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2014/03/24 19:43:12 | 014,175,744 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2014/03/24 19:09:54 | 012,874,240 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009/07/13 18:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 05:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009/07/13 18:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
 
========== Custom Scans ==========
 
========== Base Services ==========
SRV:64bit: - [2009/07/13 18:40:01 | 000,072,192 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\aelupsvc.dll -- (AeLookupSvc)
SRV:64bit: - [2013/02/26 22:47:10 | 000,070,144 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\appinfo.dll -- (Appinfo)
SRV:64bit: - [2009/07/13 18:38:55 | 000,079,360 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\alg.exe -- (ALG)
SRV:64bit: - [2010/11/20 06:27:23 | 000,849,920 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\qmgr.dll -- (BITS)
SRV:64bit: - [2010/11/20 06:25:45 | 000,705,024 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\BFE.DLL -- (BFE)
SRV:64bit: - [2014/04/11 19:19:05 | 000,031,232 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\lsass.exe -- (KeyIso)
SRV:64bit: - [2009/07/13 18:40:50 | 000,402,944 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\es.dll -- (EventSystem)
SRV - [2009/07/13 18:15:19 | 000,271,360 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\es.dll -- (EventSystem)
SRV:64bit: - [2012/07/04 15:13:27 | 000,136,704 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\browser.dll -- (Browser)
SRV:64bit: - [2013/07/08 22:46:20 | 000,184,320 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\cryptsvc.dll -- (CryptSvc)
SRV - [2013/07/08 21:46:31 | 000,140,288 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\cryptsvc.dll -- (CryptSvc)
SRV:64bit: - [2010/11/20 06:27:24 | 000,512,000 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\rpcss.dll -- (DcomLaunch)
SRV:64bit: - [2010/11/20 06:26:04 | 000,317,952 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\dhcpcore.dll -- (Dhcp)
SRV - [2010/11/20 05:18:30 | 000,254,464 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\dhcpcore.dll -- (Dhcp)
SRV:64bit: - [2011/03/02 23:24:16 | 000,183,296 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\dnsrslvr.dll -- (Dnscache)
SRV:64bit: - [2009/07/13 18:40:35 | 000,111,104 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\eapsvc.dll -- (EapHost)
SRV:64bit: - [2009/07/13 18:41:00 | 000,038,912 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\hidserv.dll -- (hidserv)
SRV - [2009/07/13 18:15:24 | 000,049,152 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\hidserv.dll -- (hidserv)
SRV:64bit: - [2009/07/13 18:41:10 | 000,359,424 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\ipnathlp.dll -- (SharedAccess)
SRV:64bit: - [2010/11/20 06:26:39 | 000,501,248 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\IPSECSVC.DLL -- (PolicyAgent)
SRV:64bit: - [2014/03/11 12:34:10 | 000,023,808 | ---- | M] (Microsoft Corporation) [Auto | Running] -- c:\Program Files\Microsoft Security Client\MsMpEng.exe -- (MsMpSvc)
SRV:64bit: - [2014/03/11 12:34:10 | 000,347,872 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- c:\Program Files\Microsoft Security Client\NisSrv.exe -- (NisSrv)
SRV:64bit: - [2009/07/13 18:41:54 | 000,524,288 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\swprv.dll -- (swprv)
SRV:64bit: - [2009/07/13 18:41:26 | 000,067,584 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\mmcss.dll -- (MMCSS)
SRV:64bit: - [2009/07/13 18:41:52 | 000,360,448 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netman.dll -- (Netman)
SRV:64bit: - [2009/07/13 18:41:52 | 000,459,776 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netprofm.dll -- (netprofm)
SRV - [2009/07/13 18:16:03 | 000,360,448 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\netprofm.dll -- (netprofm)
SRV:64bit: - [2012/10/03 10:44:21 | 000,303,104 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\nlasvc.dll -- (NlaSvc)
SRV:64bit: - [2009/07/13 18:41:53 | 000,025,600 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\nsisvc.dll -- (nsi)
SRV:64bit: - [2011/05/24 04:42:55 | 000,404,480 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\umpnpmgr.dll -- (PlugPlay)
SRV:64bit: - [2012/02/10 23:36:02 | 000,559,104 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\spoolsv.exe -- (Spooler)
SRV:64bit: - [2014/04/11 19:19:05 | 000,031,232 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\lsass.exe -- (ProtectedStorage)
No service found with a name of EMDMgmt
SRV:64bit: - [2009/07/13 18:41:53 | 000,099,328 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\rasauto.dll -- (RasAuto)
SRV:64bit: - [2010/11/20 06:27:24 | 000,344,064 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\rasmans.dll -- (RasMan)
SRV:64bit: - [2010/11/20 06:27:24 | 000,512,000 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\rpcss.dll -- (RpcSs)
SRV:64bit: - [2010/11/20 06:27:25 | 000,030,720 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\seclogon.dll -- (seclogon)
SRV:64bit: - [2014/04/11 19:19:05 | 000,031,232 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\lsass.exe -- (SamSs)
SRV:64bit: - [2009/07/13 18:41:58 | 000,097,280 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wscsvc.dll -- (wscsvc)
SRV:64bit: - [2010/11/20 06:27:26 | 000,236,032 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\srvsvc.dll -- (LanmanServer)
SRV:64bit: - [2010/11/20 06:27:25 | 000,370,688 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\shsvcs.dll -- (ShellHWDetection)
SRV - [2010/11/20 05:21:19 | 000,328,192 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\shsvcs.dll -- (ShellHWDetection)
No service found with a name of slsvc
SRV:64bit: - [2010/11/20 06:27:25 | 001,110,016 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\schedsvc.dll -- (Schedule)
SRV:64bit: - [2010/11/20 06:27:26 | 000,316,928 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\tapisrv.dll -- (TapiSrv)
SRV - [2010/11/20 05:21:28 | 000,242,176 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\tapisrv.dll -- (TapiSrv)
SRV:64bit: - [2009/07/13 18:41:55 | 000,044,544 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\themeservice.dll -- (Themes)
SRV:64bit: - [2012/04/30 22:40:20 | 000,209,920 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\profsvc.dll -- (ProfSvc)
SRV:64bit: - [2010/11/20 06:25:27 | 001,600,512 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\VSSVC.exe -- (VSS)
SRV:64bit: - [2010/11/20 06:25:42 | 000,679,424 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\audiosrv.dll -- (AudioSrv)
SRV:64bit: - [2010/11/20 06:25:42 | 000,679,424 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\audiosrv.dll -- (AudioEndpointBuilder)
SRV:64bit: - [2010/11/20 06:27:25 | 000,170,496 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\sdrsvc.dll -- (SDRSVC)
SRV:64bit: - [2013/05/26 22:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:64bit: - [2010/11/20 06:27:28 | 001,646,080 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wevtsvc.dll -- (eventlog)
SRV:64bit: - [2010/11/20 06:26:59 | 000,828,416 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\MPSSVC.dll -- (MpsSvc)
SRV:64bit: - [2010/11/20 06:27:28 | 000,580,096 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wiaservc.dll -- (stisvc)
SRV:64bit: - [2010/11/20 06:24:58 | 000,128,000 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\msiexec.exe -- (msiserver)
SRV - [2010/11/20 05:17:22 | 000,073,216 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWow64\msiexec.exe -- (msiserver)
SRV:64bit: - [2009/07/13 18:41:56 | 000,242,688 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wbem\WMIsvc.dll -- (Winmgmt)
SRV:64bit: - [2012/06/02 15:19:43 | 002,428,952 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\wuaueng.dll -- (wuauserv)
SRV:64bit: - [2010/11/20 06:26:07 | 000,252,416 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\dot3svc.dll -- (dot3svc)
SRV:64bit: - [2009/07/13 18:41:56 | 000,886,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wlansvc.dll -- (Wlansvc)
SRV:64bit: - [2010/11/20 06:27:28 | 000,118,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wkssvc.dll -- (LanmanWorkstation)
 
< %SYSTEMDRIVE%\*.exe >
 
< dir "%systemdrive%\*" /S /A:L /C >
 Volume in drive C has no label.
 Volume Serial Number is 8423-AC6A
 Directory of C:\
07/13/2009  10:08 PM    <JUNCTION>     Documents and Settings [D:\Users]
               0 File(s)              0 bytes
 Directory of C:\ProgramData
07/13/2009  10:08 PM    <JUNCTION>     Application Data [D:\ProgramData]
07/13/2009  10:08 PM    <JUNCTION>     Desktop [D:\Users\Public\Desktop]
07/13/2009  10:08 PM    <JUNCTION>     Documents [D:\Users\Public\Documents]
07/13/2009  10:08 PM    <JUNCTION>     Favorites [D:\Users\Public\Favorites]
07/13/2009  10:08 PM    <JUNCTION>     Start Menu [D:\ProgramData\Microsoft\Windows\Start Menu]
07/13/2009  10:08 PM    <JUNCTION>     Templates [D:\ProgramData\Microsoft\Windows\Templates]
               0 File(s)              0 bytes
 Directory of C:\Users
07/13/2009  10:08 PM    <SYMLINKD>     All Users [D:\ProgramData]
07/13/2009  10:08 PM    <JUNCTION>     Default User [D:\Users\Default]
               0 File(s)              0 bytes
 Directory of C:\Users\Default
07/13/2009  10:08 PM    <JUNCTION>     Application Data [D:\Users\Default\AppData\Roaming]
07/13/2009  10:08 PM    <JUNCTION>     Cookies [D:\Users\Default\AppData\Roaming\Microsoft\Windows\Cookies]
07/13/2009  10:08 PM    <JUNCTION>     Local Settings [D:\Users\Default\AppData\Local]
07/13/2009  10:08 PM    <JUNCTION>     My Documents [D:\Users\Default\Documents]
07/13/2009  10:08 PM    <JUNCTION>     NetHood [D:\Users\Default\AppData\Roaming\Microsoft\Windows\Network Shortcuts]
07/13/2009  10:08 PM    <JUNCTION>     PrintHood [D:\Users\Default\AppData\Roaming\Microsoft\Windows\Printer Shortcuts]
07/13/2009  10:08 PM    <JUNCTION>     Recent [D:\Users\Default\AppData\Roaming\Microsoft\Windows\Recent]
07/13/2009  10:08 PM    <JUNCTION>     SendTo [D:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo]
07/13/2009  10:08 PM    <JUNCTION>     Start Menu [D:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu]
07/13/2009  10:08 PM    <JUNCTION>     Templates [D:\Users\Default\AppData\Roaming\Microsoft\Windows\Templates]
               0 File(s)              0 bytes
 Directory of C:\Users\Default\AppData\Local
07/13/2009  10:08 PM    <JUNCTION>     Application Data [D:\Users\Default\AppData\Local]
07/13/2009  10:08 PM    <JUNCTION>     History [D:\Users\Default\AppData\Local\Microsoft\Windows\History]
07/13/2009  10:08 PM    <JUNCTION>     Temporary Internet Files [D:\Users\Default\AppData\Local\Microsoft\Windows\Temporary Internet Files]
               0 File(s)              0 bytes
 Directory of C:\Users\Default\Documents
07/13/2009  10:08 PM    <JUNCTION>     My Music [D:\Users\Default\Music]
07/13/2009  10:08 PM    <JUNCTION>     My Pictures [D:\Users\Default\Pictures]
07/13/2009  10:08 PM    <JUNCTION>     My Videos [D:\Users\Default\Videos]
               0 File(s)              0 bytes
 Directory of C:\Users\dogonit23
05/04/2013  05:21 PM    <JUNCTION>     Application Data [C:\Users\dogonit23\AppData\Roaming]
05/04/2013  05:21 PM    <JUNCTION>     Cookies [C:\Users\dogonit23\AppData\Roaming\Microsoft\Windows\Cookies]
05/04/2013  05:21 PM    <JUNCTION>     Local Settings [C:\Users\dogonit23\AppData\Local]
05/04/2013  05:21 PM    <JUNCTION>     My Documents [C:\Users\dogonit23\Documents]
05/04/2013  05:21 PM    <JUNCTION>     NetHood [C:\Users\dogonit23\AppData\Roaming\Microsoft\Windows\Network Shortcuts]
05/04/2013  05:21 PM    <JUNCTION>     PrintHood [C:\Users\dogonit23\AppData\Roaming\Microsoft\Windows\Printer Shortcuts]
05/04/2013  05:21 PM    <JUNCTION>     Recent [C:\Users\dogonit23\AppData\Roaming\Microsoft\Windows\Recent]
05/04/2013  05:21 PM    <JUNCTION>     SendTo [C:\Users\dogonit23\AppData\Roaming\Microsoft\Windows\SendTo]
05/04/2013  05:21 PM    <JUNCTION>     Start Menu [C:\Users\dogonit23\AppData\Roaming\Microsoft\Windows\Start Menu]
05/04/2013  05:21 PM    <JUNCTION>     Templates [C:\Users\dogonit23\AppData\Roaming\Microsoft\Windows\Templates]
               0 File(s)              0 bytes
 Directory of C:\Users\dogonit23\AppData\Local
05/04/2013  05:21 PM    <JUNCTION>     Application Data [C:\Users\dogonit23\AppData\Local]
05/04/2013  05:21 PM    <JUNCTION>     History [C:\Users\dogonit23\AppData\Local\Microsoft\Windows\History]
05/04/2013  05:21 PM    <JUNCTION>     Temporary Internet Files [C:\Users\dogonit23\AppData\Local\Microsoft\Windows\Temporary Internet Files]
               0 File(s)              0 bytes
 Directory of C:\Users\dogonit23\AppData\LocalLow\Siber Systems\RoboForm
05/04/2013  09:44 PM    <SYMLINKD>     UserData [C:\Users\dogonit23\Documents\My RoboForm Data\Default Profile]
               0 File(s)              0 bytes
 Directory of C:\Users\dogonit23\Documents
05/04/2013  05:21 PM    <JUNCTION>     My Music [C:\Users\dogonit23\Music]
05/04/2013  05:21 PM    <JUNCTION>     My Pictures [C:\Users\dogonit23\Pictures]
05/04/2013  05:21 PM    <JUNCTION>     My Videos [C:\Users\dogonit23\Videos]
               0 File(s)              0 bytes
 Directory of C:\Users\Public\Documents
07/13/2009  10:08 PM    <JUNCTION>     My Music [D:\Users\Public\Music]
07/13/2009  10:08 PM    <JUNCTION>     My Pictures [D:\Users\Public\Pictures]
07/13/2009  10:08 PM    <JUNCTION>     My Videos [D:\Users\Public\Videos]
               0 File(s)              0 bytes
 Directory of C:\Windows\System32\config\systemprofile\AppData\LocalLow\Siber Systems\RoboForm
11/04/2013  11:23 AM    <JUNCTION>     UserData [\??\C:\Users\dogonit23\Documents\My RoboForm Data\Default Profile\]
               0 File(s)              0 bytes
 Directory of C:\Windows\SysWOW64\config\systemprofile\AppData\LocalLow\Siber Systems\RoboForm
11/04/2013  11:23 AM    <JUNCTION>     UserData [\??\C:\Users\dogonit23\Documents\My RoboForm Data\Default Profile\]
               0 File(s)              0 bytes
     Total Files Listed:
               0 File(s)              0 bytes
              47 Dir(s)  175,327,358,976 bytes free
 
< MD5 for: EXPLORER.EXE  >
[2011/02/25 23:23:14 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=0862495E0C825893DB75EF44FAEA8E93 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16768_none_adc24107935a7e25\explorer.exe
[2011/02/25 22:19:21 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=0FB9C74046656D1579A64660AD67B746 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_ba87e574ddfe652d\explorer.exe
[2009/07/13 18:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=15BC38A7492BEFE831966ADB477CF76F -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_b7fe430bc7ce3761\explorer.exe
[2011/02/25 22:51:13 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=255CF508D7CFB10E0794D6AC93280BD8 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20910_none_b8ce9756e0b786a4\explorer.exe
[2010/10/23 10:42:19 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=2626FC9755BE22F805D3CFA0CE3EE727 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_b819b343c7ba6202\explorer.exe
[2011/02/25 22:33:07 | 002,614,784 | ---- | M] (Microsoft Corporation) MD5=2AF58D15EDC06EC6FDACCE1F19482BBF -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16768_none_b816eb59c7bb4020\explorer.exe
[2011/02/24 23:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\erdnt\cache86\explorer.exe
[2011/02/24 23:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\explorer.exe
[2011/02/24 23:19:30 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=332FEAB1435662FC6C672E25BEB37BE3 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_afa79dc39081d0ba\explorer.exe
[2011/02/25 23:14:34 | 002,871,808 | ---- | M] (Microsoft Corporation) MD5=3B69712041F3D63605529BD66DC00C48 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.21669_none_b0333b22a99da332\explorer.exe
[2010/11/20 05:17:09 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=40D777B7A95E00593EB1568C68514493 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_ba2f56d3c4bcbafb\explorer.exe
[2010/10/23 10:39:22 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=700073016DAC1C3D2E7E2CE4223334B6 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_ae84b558ac4eb41c\explorer.exe
[2011/02/24 22:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\SysWOW64\explorer.exe
[2011/02/24 22:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) MD5=8B88EBBB05A0E56B7DCC708498C02B3E -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17567_none_b9fc4815c4e292b5\explorer.exe
[2010/10/23 10:42:19 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=9AAAEC8DAC27AA17B053E6352AD233AE -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16450_none_adc508f19359a007\explorer.exe
[2010/10/23 10:39:22 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=9FF6C4C91A3711C0A3B18F87B08B518D -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20500_none_b8d95faae0af7617\explorer.exe
[2010/11/20 06:24:45 | 002,872,320 | ---- | M] (Microsoft Corporation) MD5=AC4C51EB24AA95B77F705AB159189E24 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7601.17514_none_afdaac81905bf900\explorer.exe
[2010/10/23 10:42:19 | 002,870,272 | ---- | M] (Microsoft Corporation) MD5=B8EC4BD49CE8F6FC457721BFC210B67F -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_ae46d6aeac7ca7c7\explorer.exe
[2010/10/23 10:39:22 | 002,613,248 | ---- | M] (Microsoft Corporation) MD5=B95EEB0F4E5EFBF1038A35B3351CF047 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_b853c407c78e3ba9\explorer.exe
[2009/07/13 18:39:10 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=C235A51CB740E45FFA0EBFB9BAFCDA64 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16385_none_ada998b9936d7566\explorer.exe
[2010/10/23 10:42:19 | 002,614,272 | ---- | M] (Microsoft Corporation) MD5=C76153C7ECA00FA852BB0C193378F917 -- C:\Windows\winsxs\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20563_none_b89b8100e0dd69c2\explorer.exe
[2011/02/25 23:26:45 | 002,870,784 | ---- | M] (Microsoft Corporation) MD5=E38899074D4951D31B4040E994DD7C8D -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20910_none_ae79ed04ac56c4a9\explorer.exe
[2010/10/23 10:39:22 | 002,868,224 | ---- | M] (Microsoft Corporation) MD5=F170B4A061C9E026437B193B4D571799 -- C:\Windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.16404_none_adff19b5932d79ae\explorer.exe
 
< MD5 for: SERVICES  >
[2009/06/10 14:00:26 | 000,017,463 | ---- | M] () MD5=D9E1A01B480D961B7CF0509D597A92D6 -- C:\Windows\winsxs\amd64_microsoft-windows-w..nfrastructure-other_31bf3856ad364e35_6.1.7600.16385_none_6079f415110c0210\services
 
< MD5 for: SERVICES.CNF  >
[2011/12/13 01:18:22 | 000,000,002 | ---- | M] () MD5=A55822426A5330C04625A41D264C190B -- C:\backup\_vti_pvt\services.cnf
[2011/01/02 16:42:56 | 000,000,002 | ---- | M] () MD5=A55822426A5330C04625A41D264C190B -- C:\Users\dogonit23\Desktop\Extras\homedir\public_html\_vti_pvt\services.cnf
[2011/01/02 16:42:56 | 000,000,002 | ---- | M] () MD5=A55822426A5330C04625A41D264C190B -- C:\Users\dogonit23\Desktop\Extras\homedir\www\_vti_pvt\services.cnf
 
< MD5 for: SERVICES.DAT  >
[2014/04/05 21:32:27 | 000,004,173 | ---- | M] () MD5=ED018DB6916ACAB46011A330B4B116AA -- C:\Users\dogonit23\AppData\Local\Temp\jrt\services.dat
 
< MD5 for: SERVICES.EXE  >
[2009/07/13 18:39:37 | 000,328,704 | ---- | M] (Microsoft Corporation) MD5=24ACB7E5BE595468E3B9AA488B9B4FCB -- C:\Windows\erdnt\cache64\services.exe
[2009/07/13 18:39:37 | 000,328,704 | ---- | M] (Microsoft Corporation) MD5=24ACB7E5BE595468E3B9AA488B9B4FCB -- C:\Windows\SysNative\services.exe
[2009/07/13 18:39:37 | 000,328,704 | ---- | M] (Microsoft Corporation) MD5=24ACB7E5BE595468E3B9AA488B9B4FCB -- C:\Windows\winsxs\amd64_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_2b54b20ee6fa07b1\services.exe
 
< MD5 for: SERVICES.EXE.MUI  >
[2009/07/13 19:25:40 | 000,017,408 | ---- | M] (Microsoft Corporation) MD5=6507BF0DC2D1F5F32493C288EAA59277 -- C:\Windows\SysNative\en-US\services.exe.mui
[2009/07/13 19:25:40 | 000,017,408 | ---- | M] (Microsoft Corporation) MD5=6507BF0DC2D1F5F32493C288EAA59277 -- C:\Windows\winsxs\amd64_microsoft-windows-s..ontroller.resources_31bf3856ad364e35_6.1.7600.16385_en-us_c5f238be3fa63468\services.exe.mui
 
< MD5 for: SERVICES.HTM  >
[2004/05/30 16:59:30 | 000,006,901 | ---- | M] () MD5=14F0B2BE761D304F98DF5473F612A54B -- C:\Users\dogonit23\Documents\ElmFord Backup\Data\StorageSync\Drive_C\Documents and Settings\My Documents\WhatchuTalkingAbout.com\Services.htm
 
< MD5 for: SERVICES.INI  >
[2013/11/17 15:03:22 | 000,003,369 | ---- | M] () MD5=36025B5779F4FCE72213BC269606A9D5 -- C:\ProgramData\IObit\Advanced SystemCare V7\services.ini
 
< MD5 for: SERVICES.JS  >
[2010/11/21 18:48:08 | 000,078,601 | ---- | M] () MD5=BA984A5949D2D13D77A6384FB17CCF88 -- C:\C - Old Drive\Documents and Settings\rkoblasa\Application Data\Mozilla\Firefox\Profiles\l7vxv3b9.default\extensions\[email protected]\chrome\content\services.js
 
< MD5 for: SERVICES.LNK  >
[2009/07/13 21:54:05 | 000,001,288 | ---- | M] () MD5=CA0D9F4743DFF86EBAF09D763139E958 -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk
 
< MD5 for: SERVICES.LST  >
[2000/02/08 18:25:58 | 000,076,632 | ---- | M] () MD5=64107E3C030A2AE5BA2F9119C61E8A32 -- C:\Program Files\IP-Tools\SERVICES.LST
 
< MD5 for: SERVICES.MOF  >
[2009/06/10 13:44:06 | 000,002,866 | ---- | M] () MD5=26A11C895A7F0B6D32105EBE127D8500 -- C:\Windows\SysNative\wbem\services.mof
[2009/06/10 13:44:06 | 000,002,866 | ---- | M] () MD5=26A11C895A7F0B6D32105EBE127D8500 -- C:\Windows\winsxs\amd64_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_2b54b20ee6fa07b1\services.mof
 
< MD5 for: SERVICES.MSC  >
[2009/07/13 19:23:30 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows\SysNative\en-US\services.msc
[2009/06/10 13:38:36 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows\SysNative\services.msc
[2009/07/13 19:08:50 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows\SysWOW64\en-US\services.msc
[2009/06/10 14:21:09 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows\SysWOW64\services.msc
[2009/07/13 19:23:30 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows\winsxs\amd64_microsoft-windows-s..cessnapin.resources_31bf3856ad364e35_6.1.7600.16385_en-us_003408aa160fce5b\services.msc
[2009/06/10 13:38:36 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows\winsxs\amd64_microsoft-windows-servicessnapin_31bf3856ad364e35_6.1.7600.16385_none_2b58d44b5f6beb8a\services.msc
[2009/07/13 19:08:50 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows\winsxs\x86_microsoft-windows-s..cessnapin.resources_31bf3856ad364e35_6.1.7600.16385_en-us_a4156d265db25d25\services.msc
[2009/06/10 14:21:09 | 000,092,745 | ---- | M] () MD5=7A1D35F59468B8118AF5B8E21DF78AE2 -- C:\Windows\winsxs\x86_microsoft-windows-servicessnapin_31bf3856ad364e35_6.1.7600.16385_none_cf3a38c7a70e7a54\services.msc
 
< MD5 for: SERVICES.PHP  >
[2011/12/13 01:36:44 | 000,019,365 | ---- | M] () MD5=5156DEB0EFA32698BE8BE6625D560DB2 -- C:\backup\wp-content\plugins\sociable-30\services.php
[2011/01/06 15:04:58 | 000,018,772 | ---- | M] () MD5=7920D8AE2167EBE45B148735F8E59C89 -- C:\Users\dogonit23\Desktop\Extras\homedir\public_html\wp-content\plugins\sociable-30\services.php
[2011/01/06 15:04:58 | 000,018,772 | ---- | M] () MD5=7920D8AE2167EBE45B148735F8E59C89 -- C:\Users\dogonit23\Desktop\Extras\homedir\www\wp-content\plugins\sociable-30\services.php
 
< MD5 for: SERVICES.PTXML  >
[2009/07/13 13:16:17 | 000,001,061 | ---- | M] () MD5=640D7DD61B1CFA6C96F80F68F78CDFA7 -- C:\Windows\SysNative\wdi\perftrack\Services.ptxml
[2009/07/13 13:16:17 | 000,001,061 | ---- | M] () MD5=640D7DD61B1CFA6C96F80F68F78CDFA7 -- C:\Windows\winsxs\amd64_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_2b54b20ee6fa07b1\Services.ptxml
 
< MD5 for: SERVICES.RDB  >
[2012/08/13 10:51:02 | 000,178,348 | ---- | M] () MD5=039C8CFBD74EE07F38CD9E4C7D95C5C6 -- C:\Program Files (x86)\OpenOffice.org 3\Basis\program\services.rdb
[2012/08/13 10:51:02 | 000,000,453 | ---- | M] () MD5=3D2ADA15FEF5B5FF468243161543D610 -- C:\Program Files (x86)\OpenOffice.org 3\program\services.rdb
[2012/08/10 15:12:16 | 000,008,060 | ---- | M] () MD5=7CA7D7150EC46321162F932ADCF5F35B -- C:\Program Files (x86)\OpenOffice.org 3\URE\misc\services.rdb
 
< MD5 for: SVCHOST.EXE  >
[2009/07/13 18:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\erdnt\cache86\svchost.exe
[2009/07/13 18:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\SysWOW64\svchost.exe
[2009/07/13 18:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) MD5=54A47F6B5E09A77E61649109C6A08866 -- C:\Windows\winsxs\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_b591afc466a15356\svchost.exe
[2013/04/04 14:50:32 | 000,218,184 | ---- | M] () MD5=B4C6E3889BB310CA7E974A04EC6E46AC -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\Chameleon\svchost.exe
[2009/07/13 18:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\erdnt\cache64\svchost.exe
[2009/07/13 18:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\SysNative\svchost.exe
[2009/07/13 18:39:46 | 000,027,136 | ---- | M] (Microsoft Corporation) MD5=C78655BC80301D76ED4FEF1C1EA40A7D -- C:\Windows\winsxs\amd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.1.7600.16385_none_11b04b481efec48c\svchost.exe
 
< MD5 for: USERINIT.EXE  >
[2010/11/20 05:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\erdnt\cache86\userinit.exe
[2010/11/20 05:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\SysWOW64\userinit.exe
[2010/11/20 05:17:48 | 000,026,624 | ---- | M] (Microsoft Corporation) MD5=61AC3EFDFACFDD3F0F11DD4FD4044223 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_de3024012ff21116\userinit.exe
[2009/07/13 18:14:43 | 000,026,112 | ---- | M] (Microsoft Corporation) MD5=6DE80F60D7DE9CE6B8C2DDFDF79EF175 -- C:\Windows\winsxs\x86_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_dbff103933038d7c\userinit.exe
[2009/07/13 18:39:48 | 000,030,208 | ---- | M] (Microsoft Corporation) MD5=6F8F1376A13114CC10C0E69274F5A4DE -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7600.16385_none_381dabbceb60feb2\userinit.exe
[2010/11/20 06:25:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\erdnt\cache64\userinit.exe
[2010/11/20 06:25:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\SysNative\userinit.exe
[2010/11/20 06:25:24 | 000,030,720 | ---- | M] (Microsoft Corporation) MD5=BAFE84E637BF7388C96EF48D4D3FDD53 -- C:\Windows\winsxs\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.1.7601.17514_none_3a4ebf84e84f824c\userinit.exe
 
========== Alternate Data Streams ==========
 
@Alternate Data Stream - 891 bytes -> C:\Users\dogonit23\Desktop\2C9A0269-00000002.eml:OECustomProperty
@Alternate Data Stream - 491 bytes -> C:\Users\dogonit23\Documents\today.eml:OECustomProperty

< End of report >

 

 

 

OTL Extras logfile created on: 5/25/2014 10:38:45 AM - Run 2
OTL by OldTimer - Version 3.2.69.0     Folder = C:\Users\dogonit23\Desktop\Security
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17041)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
 
3.75 Gb Total Physical Memory | 1.30 Gb Available Physical Memory | 34.82% Memory free
7.49 Gb Paging File | 4.32 Gb Available in Paging File | 57.63% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 442.60 Gb Total Space | 163.35 Gb Free Space | 36.91% Space Free | Partition Type: NTFS
Drive D: | 22.87 Gb Total Space | 3.31 Gb Free Space | 14.45% Space Free | Partition Type: NTFS
Drive F: | 232.88 Gb Total Space | 93.89 Gb Free Space | 40.32% Space Free | Partition Type: NTFS
Drive G: | 99.02 Mb Total Space | 89.02 Mb Free Space | 89.90% Space Free | Partition Type: FAT32
Drive H: | 1863.01 Gb Total Space | 0.38 Gb Free Space | 0.02% Space Free | Partition Type: NTFS
 
Computer Name: DOGONIT23-HP | User Name: dogonit23 | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 360 Days
 
========== Extra Registry (SafeList) ==========
 
 
========== File Associations ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = ChromeHTML] -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = ChromeHTML] -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
 
[HKEY_USERS\S-1-5-21-2034785586-1586066431-309787569-1001\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found
 
========== Shell Spawning ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htafile [open] -- "%1" %*
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htafile [open] -- "%1" %*
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.
 
========== Security Center Settings ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01  [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
 
========== System Restore Settings ==========
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0
 
========== Firewall Settings ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
 
========== Authorized Applications List ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
 
 
========== Vista Active Open Ports Exception List ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0F946818-0DBF-43FA-8C2B-7187A20470F1}" = rport=138 | protocol=17 | dir=out | app=system |
"{2999CBFC-1C40-480F-8D59-5C230F27F9F8}" = rport=10243 | protocol=6 | dir=out | app=system |
"{3E52BE0E-DF55-4F84-96BC-A9E12679B636}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{48874105-83B9-4152-9152-BB1A6ECA289D}" = lport=138 | protocol=17 | dir=in | app=system |
"{64313D50-6CE2-4F2D-8896-76CCCE87083C}" = rport=445 | protocol=6 | dir=out | app=system |
"{6930E51C-CCD2-4E34-AED7-597950531F96}" = rport=137 | protocol=17 | dir=out | app=system |
"{6C531A31-6DC9-4043-AE38-ACCCC536F62E}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{740BEA09-AD11-4391-865F-8CE4F5DF0FE1}" = lport=2869 | protocol=6 | dir=in | app=system |
"{78561887-4B24-4182-AF3A-1DA5476031AF}" = lport=137 | protocol=17 | dir=in | app=system |
"{787DEF62-1B71-48BB-8984-BC6BCB67CBFA}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) |
"{78A97140-AB75-482C-8663-FE59DA8501CD}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{79AB2716-0360-4CD7-9A76-C9B8207BB7C2}" = lport=445 | protocol=6 | dir=in | app=system |
"{89BEA4BF-C42B-4B1C-85AC-26F82F321BF6}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{8C7FEC98-AA48-4C4B-B8FE-FEB75C88D3A4}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{959E0BCE-BD17-4212-920D-671A86F3D47A}" = lport=808 | protocol=6 | dir=in | svc=nettcpactivator | app=c:\windows\microsoft.net\framework64\v4.0.30319\smsvchost.exe |
"{9CABED2D-197B-4C22-9913-B9B6AFA35767}" = lport=139 | protocol=6 | dir=in | app=system |
"{B3BDD866-39DA-498A-907B-332B04EA1251}" = lport=10243 | protocol=6 | dir=in | app=system |
"{B9812C89-D58E-4202-B0FD-0EA0D14A3041}" = rport=139 | protocol=6 | dir=out | app=system |
"{C8EA3C1A-A792-4F88-88DD-2B3F47F87946}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{CDB4B90D-B95B-4C24-B289-8C711A2CF1EB}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | [email protected],-28539 |
"{D40A7B4D-445E-45D6-B13E-9C00A2E9579C}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{E186AD6B-9880-4669-8E9B-5C3B5F5C0199}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{EF6B3C21-068B-4822-BAFC-B1830742DD07}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) |
"{FB3AA1B4-11D4-4AB6-B2A9-34BFF3B4EAE7}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
 
========== Vista Active Application Exception List ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{04DD44F5-4B1E-467E-A6B8-E9D07D95B832}" = protocol=58 | dir=in | app=system |
"{0CC7D8B4-4B34-4450-B626-6CCDADE101B9}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{101B818C-C511-4404-B5CB-078970BBFFE0}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{16DE3FF7-9199-4E04-9F68-CAF36156F669}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{1DC5CF9C-57F8-4E56-95B5-8955A9A665EF}" = dir=in | app=c:\program files (x86)\hewlett-packard\media\dvd\hpdvdsmart.exe |
"{1E80889F-7D9B-48EF-A54C-6634B26D0196}" = dir=in | app=c:\program files (x86)\hewlett-packard\mediasmart\video\hpmediasmartvideo.exe |
"{21289595-D452-4A82-ACC8-19AD24DE4E64}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{2206F989-09A2-4C54-8778-CBE7D077F57C}" = protocol=17 | dir=in | app=c:\program files (x86)\roxio\roxionow player\rnowshell.exe |
"{25590F8F-5033-4CC2-9461-185C5CCAD4DA}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe |
"{2A7330EA-7C01-44F3-97E1-EFCD82FD7F3A}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{393BF28D-1DA9-46F8-84F9-B897B131E0F2}" = protocol=17 | dir=in | app=c:\program files (x86)\proxy switcher standard\proxyswitcher.exe |
"{3D49D379-6BC4-462E-AED8-E1F4C96AB360}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{481C6B1D-AC6F-4CDA-BC07-1E7182594D9C}" = protocol=58 | dir=in | [email protected],-28545 |
"{4B7DD2EC-F1AB-4E87-B22B-42AB2E0F5D4A}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe |
"{4B820F2B-E4E0-4190-B7A4-A64A914CFB76}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{5080DED9-0710-4CA8-A066-3907C4952617}" = dir=in | app=c:\program files (x86)\cyberlink\powerdirector\pdr8.exe |
"{550ADA97-7B34-453A-AB49-98B40C86434B}" = protocol=6 | dir=in | app=c:\program files (x86)\roxio\roxionow player\rnowshell.exe |
"{557722EF-5239-4BE6-913D-6640ABE1987D}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{5A5C3CB3-7ED8-4573-B5F5-3327716000E6}" = protocol=1 | dir=in | [email protected],-28543 |
"{5E2249E7-727B-4F64-ADD7-8DED27FFB3FF}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{60FF2042-58D6-43C1-AABB-12C23EE7DEAB}" = dir=out | app=c:\program files (x86)\hewlett-packard\hp clouddrive\zumodrive.exe |
"{6E5CF1C0-FA07-4A68-871B-0DB708935B0E}" = protocol=58 | dir=out | [email protected],-503 |
"{7E83DB33-2950-4CE6-B406-0A16FA479526}" = dir=in | app=c:\program files (x86)\hewlett-packard\touchsmart\music\hptouchsmartmusic.exe |
"{7E8EE524-750A-4B81-99FC-BDAA3A93AE8E}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{8155282A-6705-4A3D-A183-D8BC97CE2F1B}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{86F69470-A09F-4E87-8D27-F2C131667110}" = dir=in | app=c:\program files (x86)\hewlett-packard\hp support framework\resources\hpwarrantycheck\hpdevicedetection3.exe |
"{884E76DD-CAD4-48F9-A632-D10600DF3B26}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{A2A27834-F028-4600-8B6F-3A90C27CA4DE}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{A64E91DC-C632-416A-BA8A-1D4F5773DD3C}" = protocol=1 | dir=out | [email protected],-28544 |
"{A6923B9E-56F4-4070-903D-77E1A80D5D55}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{A7BF679B-E5B4-465E-A2DC-3149F83E57F4}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{A7FA5A8C-CD2C-4FC3-854F-6A61F5F6648F}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe |
"{AA8D648B-D7A5-498F-AA1A-BD896E47059E}" = protocol=6 | dir=out | app=system |
"{BF9A6543-04A5-4888-8654-ABBAD6A0D596}" = dir=in | app=c:\users\dogonit23\appdata\local\microsoft\skydrive\skydrive.exe |
"{C19CAD8F-DED0-424A-899F-D97A4B68A9EB}" = protocol=6 | dir=in | app=c:\program files (x86)\proxy switcher standard\proxyswitcher.exe |
"{C21F541C-CCBF-4670-A3B6-470E42B7C78E}" = protocol=17 | dir=in | app=c:\program files (x86)\hewlett-packard\mediasmart\roxionow\rnow.exe |
"{CB3E0927-66F8-447E-B3E1-C1443EACC541}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{D7DFB6E6-18D5-4FA3-A9B7-11ECEC7C2848}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{DA493962-AD4A-401F-82DC-B5B53F9230F4}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{E9FDA5E4-76F8-4388-90BB-ECBDA2D3385B}" = protocol=58 | dir=out | [email protected],-28546 |
"{EAC2F2DD-5682-482A-8A22-D3A5E3C1F0FA}" = dir=in | app=c:\program files (x86)\hewlett-packard\hp clouddrive\zumodrive.exe |
"{EDDE1FAE-175E-4899-B46C-8EAE8B3D21F8}" = dir=in | app=c:\users\dogonit23\appdata\roaming\copy\copyagent.exe |
"{F40041DC-AADE-4437-8873-8403D78408C0}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{FAF9ED11-3367-4387-B219-8C9F93BFDBB3}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe |
"{FBF76A95-4DDD-4731-8045-0D93245D2DFD}" = protocol=6 | dir=in | app=c:\program files (x86)\hewlett-packard\mediasmart\roxionow\rnow.exe |
"{FCC02FED-D0F5-4A13-A527-BA9B2F79177D}" = dir=in | app=c:\program files (x86)\hewlett-packard\mediasmart\photo\hpmediasmartphoto.exe |
"TCP Query User{22F22590-80A9-448A-8B84-EDF47B5554F0}C:\program files\java\jdk1.7.0_21\jre\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\java\jdk1.7.0_21\jre\bin\javaw.exe |
"TCP Query User{477889C9-881D-4DB6-84F3-66FADF00E21B}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe |
"TCP Query User{820A6310-FECE-4081-8B68-11A8E45A51B8}C:\users\dogonit23\appdata\local\startmeeting\startmeeting en.exe" = protocol=6 | dir=in | app=c:\users\dogonit23\appdata\local\startmeeting\startmeeting en.exe |
"TCP Query User{AA5A9A16-3378-4FC3-94A7-8869FB159A17}C:\program files (x86)\internet explorer\iexplore.exe" = protocol=6 | dir=in | app=c:\program files (x86)\internet explorer\iexplore.exe |
"UDP Query User{2BB86AE5-CC8C-48DE-B991-57C65CE9E71F}C:\program files (x86)\java\jre7\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre7\bin\javaw.exe |
"UDP Query User{4156FE2B-ECFD-483E-9B5A-8BFE4DA6065D}C:\program files (x86)\internet explorer\iexplore.exe" = protocol=17 | dir=in | app=c:\program files (x86)\internet explorer\iexplore.exe |
"UDP Query User{9F9AF986-4DC3-40F8-B0AE-7F957AF17E69}C:\users\dogonit23\appdata\local\startmeeting\startmeeting en.exe" = protocol=17 | dir=in | app=c:\users\dogonit23\appdata\local\startmeeting\startmeeting en.exe |
"UDP Query User{F98C0E3E-8583-47DE-B282-0033370DF826}C:\program files\java\jdk1.7.0_21\jre\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\java\jdk1.7.0_21\jre\bin\javaw.exe |
 
========== HKEY_LOCAL_MACHINE Uninstall List ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{02E43EC2-6B1C-45B5-9E48-941C3E1B204A}_is1" = System.Data.SQLite v1.0.83.0
"{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{09BDCC02-80F2-4EFB-8F1B-A807D2C38E31}" = HP MediaSmart Movies and TV
"{0A2DEC29-333B-408B-B31B-0B34D73EBA4C}" = Power Indexer Pro 3.0.0.0
"{10CD364B-FFCC-48BE-B469-B9622A033075}" = Fences Pro
"{13DCC2C7-454D-42F0-A892-E0E9A5DE4E67}" = HP Wireless Assistant
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219
"{23170F69-40C1-2702-0922-000001000000}" = 7-Zip 9.22 (x64 edition)
"{25058321-C33E-496B-8915-6FD64D362CAF}" = Windows Live MIME IFilter
"{2856A1C2-70C5-4EC3-AFF7-E5B51E5530A2}" = HP Client Services
"{28FA742C-DC52-9804-7116-E198E0AEFAE4}" = ATI Catalyst Install Manager
"{2D7B64F7-E9A3-C49B-9CEA-C4FE05F887E9}" = ccc-utility64
"{3FB1FFA4-3B59-4B9E-A6E9-FDDBDA9D74A1}" = Copy
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
"{723A4A11-2999-43C7-88EE-9512F90BB51F}" = SEO Link Robot Pro 2.1.5.0
"{7DEBE4EB-6B40-3766-BB35-5CBBC385DA37}" = Microsoft .NET Framework 4.5.1
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{90140000-006D-0409-1000-0000000FF1CE}" = Microsoft Office Click-to-Run 2010
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.1
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{A7E19604-93AF-4611-8C9F-CE509C2B286E}_is1" = VDownloader 3.9.1693
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{B8AD779A-82DA-4365-A7D0-AD3DCFC55CFF}" = Apple Mobile Device Support
"{BE6725F2-6D15-477C-86C6-4522B8569D62}" = HP MediaSmart SmartMenu
"{BFAE8D5B-F918-486F-B74E-90762DF11C5C}" = Microsoft Security Client
"{C84FFB07-C687-45CF-91C8-868DB8D8C8CD}" = HP 3D DriveGuard
"{CB3CA48C-95CB-412B-B7AE-6F2EA8F89907}" = Windows Live Family Safety
"{CC4D56B7-6F18-470B-8734-ABCD75BCF4F1}" = HP Auto
"{CE52672C-A0E9-4450-8875-88A221D5CD50}" = Windows Live ID Sign-in Assistant
"{CF8FFD12-602B-422D-AF1D-511B411E7632}" = iTunes
"{D4AD39AD-091E-4D33-BB2B-59F6FCB8ADC3}" = Microsoft SQL Server Compact 3.5 SP2 x64 ENU
"{E3047FA0-2D6B-4BD6-8CD4-599955F1CE9D}" = Microsoft Mouse and Keyboard Center
"{E5660852-CBDA-4C17-9475-C0C0E5A4CFB4}" = Nitro Reader 3
"{E9FA781F-3E80-4399-825A-AD3E11C28C77}" = MSVCRT110_amd64
"{EDA09459-AD7D-4434-BA0C-647F6703EA12}_is1" = Bitcasa version 1.1.6.18
"CCleaner" = CCleaner
"Microsoft Mouse and Keyboard Center" = Microsoft Mouse and Keyboard Center
"Microsoft Security Client" = Microsoft Security Essentials
"Recuva" = Recuva
"SynTPDeinstKey" = Synaptics Pointing Device Driver
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00257FA9-3622-45E4-8B4B-A792CC5169EB}" = SQLite ADO.NET 2.0/3.5 Provider
"{00F9DB8C-65D7-4D47-AB5F-F698EE38580D}" = Windows Live UX Platform
"{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = HP MediaSmart Webcam
"{0408422C-BE82-446A-8A8D-1431F4D35245}" = HP Documentation
"{04BE4035-3C8E-4B48-BFB8-1655849C0C8B}" = Windows Live Writer
"{078BE4C5-D0AA-5AD1-6195-D4E9FB7CA8F7}" = CCC Help Greek
"{07AAB66E-4718-422D-9218-4AFB3C922A71}" = Photo Gallery
"{07FA4960-B038-49EB-891B-9F95930AA544}" = HP Customer Experience Enhancements
"{0878E100-C0BB-41E8-B4C6-C486B61FDA7B}" = Canon PhotoRecord
"{0A3925EA-5B0E-401B-A189-7419149747B2}" = Adobe AIR
"{0BE9E708-5DC0-4963-9CFD-0AA519090E79}" = Junk Mail filter update
"{0EDEB615-1A60-425E-8306-0E10519C7B55}" = RoxioNow Player
"{0F974770-76EB-4C38-986E-E7BDD9C0DFC4}" = Windows Live Writer Resources
"{120262A6-7A4B-4889-AE85-F5E5688D3683}" = HP MovieStore
"{17D86E62-4849-49BC-83D2-FA369CEEA9D9}_is1" = Any Video Recorder version 1.0.2
"{19D87B80-626A-B57F-37F2-30329A5FA056}" = CCC Help Korean
"{1a413f37-ed88-4fec-9666-997AF4905D9C}" = FLV.com FLV Converter 5.1
"{1D6432B4-E24D-405E-A4AB-D7E6D088CBC9}" = Windows Live Photo Common
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink DVD Suite
"{2079FC74-9B68-4CCA-8570-CC02378AB170}" = Local Leads Magic Extractor
"{21C887C2-008E-0610-96F8-74AB3AF22784}" = CCC Help Chinese Standard
"{22800204-9E53-45C7-B6F3-5BB0F1C1A147}" = Jing
"{264FE20A-757B-492a-B0C3-4009E2997D8A}" = PictureMover
"{26A24AE4-039D-4CA4-87B4-2F83217051FF}" = Java 7 Update 51
"{26BDE7D8-93F0-4A07-AD47-1707DB417941}" = Camera Support Core Library
"{28639B03-FEF0-06B0-72AE-4DC2F5FE7197}" = Catalyst Control Center Graphics Previews Common
"{28D31651-C44F-7C06-BD86-8771055733A1}" = Easy Lead Finder
"{2A435018-6957-76A6-36A6-FB34F4EF5F6D}" = CCC Help Turkish
"{2EA870FA-585F-4187-903D-CB9FFD21E2E0}" = DHTML Editing Component
"{3023EBDA-BF1B-4831-B347-E5018555F26E}" = Movie Theme Pack for HP MediaSmart Video
"{3035B0FD-3C89-4AA1-9675-1E1EB322}_is1" = darkNode version 2.0.5
"{3035B0FD-3C89-4AA1-9675-1E64343DA535}_is1" = blackMaps version 2.0.5
"{330A754C-2B53-0C5F-057F-283EC9D01D5A}" = CCC Help Japanese
"{3877C901-7B90-4727-A639-B6ED2DD59D43}" = ESU for Microsoft Windows 7
"{38F03569-A636-4CF3-BDDE-032C8C251304}" = Movie Maker
"{3A9FC03D-C685-4831-94CF-4EDFD3749497}" = Microsoft SQL Server Compact 3.5 SP2 ENU
"{3B834B54-EC4B-48E2-BFC6-03FF5DA06F62}" = Adobe Shockwave Player 11.5
"{3EB4E1B3-5C51-D460-D305-9077DA4711B7}" = CCC Help French
"{40A66DF6-22D3-44B5-A7D3-83B118A2C0DC}" = Norton Online Backup
"{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go
"{40F485F7-6478-4896-B0D5-F94BE677EB78}_is1" = System Explorer 4.2.1
"{41C61308-6CFD-4D54-AB6A-7136ED08A18E}" = Windows Live Communications Platform
"{44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}" = Recovery Manager
"{4595783F-3D44-4FBA-A43E-1CF88970C6CC}" = YellaBot
"{46D5A44A-0D8C-4CA4-8AD2-5A86E2D1F96E}" = Localizer Beta
"{489A887E-1F33-2DB8-B856-291B6729D832}" = CCC Help Dutch
"{491ADA37-04EE-2ECE-9F86-DDC0106047AC}" = Times Reader
"{49471DB8-7F3C-42DB-89C2-AC50FA0C5290}" = Camtasia Studio 7
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4F649712-FA36-502C-B26B-88A9D091E1DF}" = CCC Help Finnish
"{504CC891-B140-4E1B-860B-5E4C1DFBA9E3}" = Blio
"{51C7AD07-C3F6-4635-8E8A-231306D810FE}" = Cisco LEAP Module
"{52B772F4-4CE2-0A87-45DC-144C96D740D6}" = FB Ad Express
"{52DE3AF0-1C26-4258-9A04-9AEBF3E145F7}" = Catalyst Control Center - Branding
"{53469506-A37E-4314-A9D9-38724EC23A75}" = HP Setup
"{5535B1B7-AB06-2922-C3F6-DEDA4E823903}" = CCC Help Italian
"{5A19A119-86B6-FD94-7479-7A4AED4F2D82}" = Catalyst Control Center Graphics Previews Vista
"{5F479D0A-ABB5-DE85-2C6A-92566C7FB813}" = CCC Help Polish
"{6028A075-9A5A-4FD0-83DC-0BFE326D9836}" = Proxy Goblin
"{6152DEA9-EA0C-4013-9DBF-4A8881A7F722}" = Windows Live Family Safety
"{61EDBE71-5D3E-4AB7-AD95-E53FEAF68C17}" = Bing Rewards Client Installer
"{6488DD50-96DB-2EB1-3027-D912339B3457}" = Localizer Leads Tool
"{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}" = Cisco EAP-FAST Module
"{6522F5F9-411B-4513-A75B-CEA00395F032}" = Windows Live UX Platform Language Pack
"{659CB81C-B54E-4DF1-B618-F35777393A54}" = Windows Live Installer
"{65D2FC95-E433-204C-E13B-58932F522614}" = Video Vantage
"{66B5819D-DE70-42BE-B40F-978FBA12452E}" = Windows Live Essentials
"{6863508E-00B6-34DF-31FA-DD8D57E8CEE0}" = CCC Help Thai
"{68E7E8BD-2233-49BE-81D6-1A1FAF1B5196}" = RAW Image Task 1.1
"{6C302296-6129-4125-9FD6-2188ECD8814E}" = HP Software Framework
"{6DAF8CDC-9B04-413B-A0F2-BCC13CF8A5BF}" = HP MediaSmart Photo
"{6F340107-F9AA-47C6-B54C-C3A19F11553F}" = Hewlett-Packard ACLM.NET v1.2.1.1
"{7002EFEB-F7DC-8DC7-6254-C0B1741199CA}" = Hot Lead Finder v3.5
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{714E162E-CD4F-4F1B-8302-7F5179409C25}" = Windows Live Writer
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{78F1A88C-5322-4DF7-BDCF-9AB8F5F4041C}" = HP MediaSmart/TouchSmart Netflix
"{7A0AAE7D-BEED-DD34-58EA-304DAC2EF7B6}" = CCC Help Norwegian
"{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}" = Skype™ 6.14
"{7B939E98-D099-5172-FF4C-673B96ED3D13}" = CCC Help Portuguese
"{7CA5C4DF-8327-4035-AE2B-CA76336A04FD}" = Snagit 11
"{800585E8-9B96-FC1F-38A6-13869248B56D}" = AliG Social Lead Freak
"{8172C743-5C09-CA2D-EBBC-F43897804D2F}" = Kudani
"{81BEFA03-8989-4AE9-BE65-72E9BB4D1027}" = EasyEmailSender
"{8337F301-A848-71AC-4699-51B5153085EE}" = CCC Help German
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{84160DF4-D1B0-428F-EFE7-4CA2E14B5CD2}" = Catalyst Control Center Localization All
"{872B1C80-38EC-4A31-A25C-980820593900}" = HP Power Manager
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver For Windows 7
"{8927E07C-97F7-4A54-88FB-D976F50DD46E}" = Turbo Lister 2
"{89EBB60F-5F24-2153-AEF2-F7E33B2DD8DB}" = CCC Help Russian
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}" = MSVCRT110
"{8EFD09A6-E374-8519-68A9-A3F7383C29AA}" = CCC Help Hungarian
"{9008D736-35CA-40DB-A2BE-5F32D954E5AA}" = HP MovieStore
"{90120000-0020-0409-0000-0000000FF1CE}" = Compatibility Pack for the 2007 Office system
"{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
"{90140011-0066-0409-0000-0000000FF1CE}" = Microsoft Office Starter 2010 - English
"{904C0B81-7134-43BA-BEE3-32EF817C2B18}" = Kaboomizer
"{91110409-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Professional Edition 2003
"{91A34181-9FAD-43AB-A35F-E7A8945B7E1C}" = HP MediaSmart Music
"{95140000-0070-0000-0000-0000000FF1CE}" = Microsoft Office 2010
"{95140000-007A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook Connector
"{958A7221-E236-7A71-76DC-C013C5C00A22}" = HydraVid PRO
"{96AE7E41-E34E-47D0-AC07-1091A8127911}" = Realtek USB 2.0 Card Reader
"{993ED800-AFD9-44D4-B5E4-FF2F7D951A9F}" = Rank Armory Setup
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9F1F2AEA-C72A-4DD6-991E-C5506A5625E4}" = OpenOffice.org 3.4.1
"{A2C23ED8-6C37-F32D-3108-3E91BEDEDCA8}" = CCC Help Swedish
"{A2DC527D-FA79-46E9-973F-920897CA55E9}" = Windows Live Writer
"{A47B6CB9-E31C-B471-75FF-F42236292750}" = CCC Help Spanish
"{A4D10F4F-EF30-4498-8E18-CF2AB549DA97}" = PDF Download for Internet Explorer
"{A7E19604-93AF-4611-8C9F-CE509C2B286F}_is1" = Free YouTube Downloader 3.5.187
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AC76BA86-7AD7-FFFF-7B44-A91000000001}" = Adobe Reader 9.5.5 MUI
"{AD13BFB0-FDD2-4AFA-A8AF-9F4A950D56B7}" = ArcSoft Camera Suite 1.3
"{AE856388-AFAD-4753-81DF-D96B19D0A17C}" = HP Setup Manager
"{AF0CE7C0-A3E4-4D73-988B-B29187EC6E9A}" = QuickTime
"{B2611F8A-EFE7-4E88-875D-19F0EFAE87E4}" = Windows Live PIMT Platform
"{B34BE30D-A759-4EC2-B58F-19FE2DEBF651}" = Camera Window
"{B775C26B-EAA8-4A11-ACBF-76E52DF6B805}" = Windows Live Mail
"{BAD27F0E-5165-49A5-BE66-AF5BF73F2FEE}" = Windows Live Mail
"{BAD984EE-790E-4513-A428-3BE2D426DCA7}" = Windows Live Messenger
"{BB1C717E-376C-4AA1-8940-81BFC38D9778}" = HP Quick Launch
"{BB285C9F-C821-4770-8970-56C4AB52C87E}" = Skype Click to Call
"{BD1A34C9-4764-4F79-AE1F-112F8C89D3D4}" = Energy Star Digital Logo
"{C1D76D7A-F3BB-47EA-A746-5B1E2FFC1DF2}" = Canon Utilities ZoomBrowser EX
"{C3A32068-8AB1-4327-BB16-BED9C6219DC7}" = Atheros Driver Installation Program
"{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LabelPrint
"{C619A1DC-8EE4-4BD2-82AB-D9424A23E42A}" = Sindicator
"{C992FFE0-AC32-4FA9-BC9A-F1637B9E655D}" = Photo Gallery
"{CAA0F57A-BA8C-4AD8-AA03-F32B0E4F5623}" = Photo Common
"{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = PowerDirector
"{CC5FE5F4-66D1-4DFE-404F-632C364FF6B1}" = CurationSoft
"{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}" = PlayReady PC Runtime x86
"{CDC1AB00-01FF-4FC7-816A-16C67F0923C0}" = Windows Live SOXE
"{CE081CB8-1970-88F1-A4D8-FC435D2E86C1}" = ccc-core-static
"{CF2C1A86-5A98-4862-A3AE-9992E3A6427D}" = RemoteCapture Task 1.0.3
"{CF3AE617-FE05-4E12-A8E9-83395BB0394C}" = SWF Components
"{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64
"{D12E3E7F-1B13-4933-A915-16C7DD37A095}" = HP MediaSmart Video
"{D1893000-EA77-493C-8DDD-E262436E959B}" = Windows Live SOXE Definitions
"{D2B13DDA-5AAC-4426-96C8-11CE4E8C3656}" = Cox PC HealthCheck
"{D36DD326-7280-11D8-97C8-000129760CBE}" = PhotoNow!
"{D9DB57B7-7C15-596C-6D5B-4CF06CF98E41}" = CCC Help English
"{DCCAD079-F92C-44DA-B258-624FC6517A5A}" = HP MediaSmart DVD
"{DD67BE4B-7E62-4215-AFA3-F123A800A389}" = Movie Maker
"{DE286975-ACF1-45B8-9EF7-34E162B2C817}" = MovieEdit Task
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E14A6071-744B-44F0-A30E-72CB0324D4E1}" = Linkwheel
"{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}" = IDT Audio
"{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime
"{E599494B-C668-E1C7-09A4-76A33BDC03F6}" = CCC Help Czech
"{E68A38AA-A1B2-114E-19FA-F07D54683077}" = Catalyst Control Center InstallProxy
"{E703613B-BDAB-433E-A66A-DE0263E3D35D}" = Windows Live Messenger
"{EB38C3E0-4863-3123-9114-5BE86EC8E5C7}" = Google Talk Plugin
"{EBD1C6C0-35EA-4D3C-891A-E218358F82DB}" = Video Components
"{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}" = Cisco PEAP Module
"{EDAB8C86-3668-425D-9097-E39311A98A95}_is1" = The Prospector version 2.8
"{EF4C7EB0-D71B-43A3-9552-8053DE4B0401}" = PhotoStitch
"{F09BF048-5D33-4507-A1E6-44ED81BE1F89}" = Tube Sniper Pro
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219
"{F12B4E57-D702-E193-E8AF-C93EDB8DF63E}" = CCC Help Chinese Traditional
"{F5266D28-E0B2-4130-BFC5-EE155AD514DC}" = Apple Application Support
"{FB4BB287-37F9-4E27-9C4D-2D3882E08EFF}" = DVD Menu Pack for HP MediaSmart Video
"{FE0E7A1C-68C3-99E1-A5DD-0749CFAB7AB9}" = CCC Help Danish
"5513-1208-7298-9440" = JDownloader 0.9
"ActiveTouchMeetingClient" = Cisco WebEx Meetings
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 13 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 13 Plugin
"AI RoboForm" = AI RoboForm (All Users)
"ANSMTP" = ANSMTP OBJECT (remove only)
"Any Video Converter Ultimate_is1" = Any Video Converter Ultimate 5.5.3
"Any Video Converter_is1" = Any Video Converter 5.0.9
"Audacity 1.3 Beta (Unicode)_is1" = Audacity 1.3.13 (Unicode)
"AutoHideIP" = Auto Hide IP
"com.aligmarketing.slf" = AliG Social Lead Freak
"com.nyt.timesreader.78C54164786ADE80CB31E1C5D95607D0938C987A.1" = Times Reader
"com.pageone.FBads" = FB Ad Express
"com.pageone.Kudani" = Kudani
"com.rapidwebsolutions.videovantage" = Video Vantage
"CurationSoft" = CurationSoft
"Driver Booster_is1" = Driver Booster
"DVDFab 9_is1" = DVDFab 9.0.2.8 (01/03/2013) Qt
"EasyLeadFinderv2" = Easy Lead Finder
"ESET Online Scanner" = ESET Online Scanner v3
"Fences Pro" = Fences Pro
"FLV-Media Player" = FLV-Media Player 1.8
"Free Video to MP3 Converter_is1" = Free Video to MP3 Converter version 5.0.31.1125
"Glary Utilities 3" = Glary Utilities 3.9.1
"Google Chrome" = Google Chrome
"Handset WinDriver" = Handset WinDriver 1.02.02.00
"HotProspector" = Hot Lead Finder v3.5
"HP DVB-T TV Tuner" = HP DVB-T TV Tuner 8.0.64.43
"HP Photo Creations" = HP Photo Creations
"HydraVidPRO" = HydraVid PRO
"InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = HP MediaSmart Webcam
"InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink DVD Suite
"InstallShield_{26BDE7D8-93F0-4A07-AD47-1707DB417941}" = Canon Camera Support Core Library
"InstallShield_{3023EBDA-BF1B-4831-B347-E5018555F26E}" = Movie Theme Pack for HP MediaSmart Video
"InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}" = Power2Go
"InstallShield_{68E7E8BD-2233-49BE-81D6-1A1FAF1B5196}" = Canon RAW Image Task for ZoomBrowser EX
"InstallShield_{6DAF8CDC-9B04-413B-A0F2-BCC13CF8A5BF}" = HP MediaSmart Photo
"InstallShield_{91A34181-9FAD-43AB-A35F-E7A8945B7E1C}" = HP MediaSmart Music
"InstallShield_{B34BE30D-A759-4EC2-B58F-19FE2DEBF651}" = Canon Camera Window for ZoomBrowser EX
"InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = LabelPrint
"InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}" = PowerDirector
"InstallShield_{CF2C1A86-5A98-4862-A3AE-9992E3A6427D}" = Canon RemoteCapture Task for ZoomBrowser EX
"InstallShield_{D12E3E7F-1B13-4933-A915-16C7DD37A095}" = HP MediaSmart Video
"InstallShield_{D36DD326-7280-11D8-97C8-000129760CBE}" = PhotoNow!
"InstallShield_{DCCAD079-F92C-44DA-B258-624FC6517A5A}" = HP MediaSmart DVD
"InstallShield_{DE286975-ACF1-45B8-9EF7-34E162B2C817}" = Canon MovieEdit Task for ZoomBrowser EX
"InstallShield_{EF4C7EB0-D71B-43A3-9552-8053DE4B0401}" = Canon Utilities PhotoStitch 3.1
"InstallShield_{FB4BB287-37F9-4E27-9C4D-2D3882E08EFF}" = DVD Menu Pack for HP MediaSmart Video
"Instant Article Suite_is1" = Instant Article Suite v1.10
"Internet Download Manager" = Internet Download Manager
"IObit Surfing Protection_is1" = Surfing Protection
"IP-Tools" = IP-Tools
"LAME_is1" = LAME v3.99.3 (for Windows)
"Linked_0" = Linked Lead Finder 1.0
"LocalizerLeadsTool" = Localizer Leads Tool
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware version 1.75.0.1300
"Mozilla Firefox 29.0.1 (x86 en-US)" = Mozilla Firefox 29.0.1 (x86 en-US)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"My HP Game Console" = HP Game Console
"Nexus Toolbar" = Nexus Toolbar
"Office14.Click2Run" = Microsoft Office Click-to-Run 2010
"ProxySwitcher Standard_is1" = ProxySwitcher Standard
"RegInOut System Utilities_is1" = RegInOut System Utilities
"Smart Defrag 2_is1" = Smart Defrag 2
"The Logo Creator v5.2" = The Logo Creator v5.2
"The Ultimate PLR Article Collection_is1" = The Ultimate PLR Article Collection
"Total Video Converter 3.71_is1" = Total Video Converter 3.71 100812
"Traffic Jeet 2_is1" = Traffic Jeet 2
"Tweaking.com - Windows Repair (All in One)" = Tweaking.com - Windows Repair (All in One)
"VLC media player" = VLC media player 2.1.0
"WildTangent hp Master Uninstall" = HP Games
"Windows Doctor 2.7.4_is1" = Windows Doctor 2.7.4
"Windows Doctor 2.7.5_is1" = Windows Doctor 2.7.5
"WinLiveSuite" = Windows Live Essentials
"WinPcapInst" = WinPcap 4.1.1
"WinRAR archiver" = WinRAR archiver
"WT087328" = Blackhawk Striker 2
"WT087330" = Bounce Symphony
"WT087335" = Build-a-lot 2
"WT087343" = Dora's World Adventure
"WT087360" = Escape Rosecliff Island
"WT087361" = FATE
"WT087362" = Final Drive Nitro
"WT087372" = Heroes of Hellas 2 - Olympia
"WT087379" = Jewel Quest Solitaire 2
"WT087394" = Penguins!
"WT087395" = Poker Superstars III
"WT087396" = Polar Bowler
"WT087397" = Polar Golfer
"WT087414" = Virtual Families
"WT087415" = Wheel of Fortune 2
"WT087428" = Bejeweled 2 Deluxe
"WT087453" = Chuzzle Deluxe
"WT087501" = Plants vs. Zombies
"WT087533" = Zuma Deluxe
"WT087536" = Diner Dash 2 Restaurant Rescue
"WT089299" = Mystery P.I. - The London Caper
"WT089307" = Virtual Villagers 4 - The Tree of Life
"WT089308" = Blasterball 3
"WT089328" = Farm Frenzy
"WT089359" = Cake Mania
"WT089362" = Agatha Christie - Peril at End House
"XHeader" = XHeader
"ZumoDrive" = HP CloudDrive
 
========== HKEY_USERS Uninstall List ==========
 
[HKEY_USERS\S-1-5-21-2034785586-1586066431-309787569-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"1aea539d7d8543ed" = Easy Target Lead Generator
"6def5107e38c1993" = Blog Profit Pro
"78d56f4bc346f84a" = CommandoHQ
"a128d8083b0d4aff" = Rockstar Power Suite
"Amazon Kindle" = Amazon Kindle
"FileZilla Client" = FileZilla Client 3.7.3
"FreeScreenSharing" = FreeScreenSharing
"GoToMeeting" = GoToMeeting 6.3.0.1415
"HuluDesktop" = Hulu Desktop
"OneDriveSetup.exe" = Microsoft OneDrive
"StartMeeting" = StartMeeting
 
========== Last 20 Event Log Errors ==========
 
[ HP Wireless Assistant Events ]
Error - 11/6/2013 2:42:10 AM | Computer Name = dogonit23-HP | Source = HP WA Service | ID = 0
Description = System.Runtime.InteropServices.COMException Call was canceled by the
 message filter. (Exception from HRESULT: 0x80010002 (RPC_E_CALL_CANCELED))    at
 System.Runtime.InteropServices.Marshal.ThrowExceptionForHRInternal(Int32 errorCode,
 IntPtr errorInfo)     at System.Management.ManagementScope.InitializeGuts(Object
o)     at System.Management.ManagementScope.Initialize()     at System.Management.ManagementObject.Initialize(Boolean
 getObject)     at System.Management.ManagementBaseObject.get_Properties()     at System.Management.ManagementBaseObject.GetPropertyValue(String
 propertyName)     at HPPA_Service.CurrentConfiguration.<ReloadRadioList>b__c()
 
Error - 2/15/2014 8:12:48 PM | Computer Name = dogonit23-HP | Source = HP WA Service | ID = 0
Description = System.Runtime.InteropServices.COMException     at System.Runtime.InteropServices.Marshal.ThrowExceptionForHRInternal(Int32
 errorCode, IntPtr errorInfo)     at System.Management.ManagementObject.Initialize(Boolean
 getObject)     at System.Management.ManagementBaseObject.get_Properties()     at System.Management.ManagementBaseObject.GetPropertyValue(String
 propertyName)     at HPPA_Service.CurrentConfiguration.<ReloadRadioList>b__c()
 
Error - 2/15/2014 8:21:26 PM | Computer Name = dogonit23-HP | Source = HP WA Service | ID = 0
Description = System.Runtime.InteropServices.COMException     at System.Runtime.InteropServices.Marshal.ThrowExceptionForHRInternal(Int32
 errorCode, IntPtr errorInfo)     at System.Management.ManagementObject.Initialize(Boolean
 getObject)     at System.Management.ManagementBaseObject.get_Properties()     at System.Management.ManagementBaseObject.GetPropertyValue(String
 propertyName)     at HPPA_Service.CurrentConfiguration.<ReloadRadioList>b__c()
 
Error - 2/15/2014 8:43:01 PM | Computer Name = dogonit23-HP | Source = HP WA Application | ID = 0
Description = HardwareAccess.UnableToConnectException Application.ApplicationStartup;
 failed to create hardware layer Error in the application.    at HardwareAccess.Hardware..ctor(Dispatcher
 dispatcher, ServicePort port, Int32 timeout)     at HardwareAccess.Hardware.Create(Dispatcher
 dispatcher, ServicePort port, Int32 timeout)     at HPWA_Main.App.ApplicationStartup(Object
 sender, StartupEventArgs args)
 
Error - 2/15/2014 8:47:40 PM | Computer Name = dogonit23-HP | Source = HP WA Application | ID = 0
Description = MainWindow.ShowImpl; not initialized, closing application...
 
Error - 2/27/2014 8:40:26 PM | Computer Name = dogonit23-HP | Source = HP WA Application | ID = 0
Description = HardwareAccess.UnableToConnectException Application.ApplicationStartup;
 failed to create hardware layer Error in the application.    at HardwareAccess.Hardware..ctor(Dispatcher
 dispatcher, ServicePort port, Int32 timeout)     at HardwareAccess.Hardware.Create(Dispatcher
 dispatcher, ServicePort port, Int32 timeout)     at HPWA_Main.App.ApplicationStartup(Object
 sender, StartupEventArgs args)
 
Error - 2/27/2014 8:40:37 PM | Computer Name = dogonit23-HP | Source = HP WA Application | ID = 0
Description = MainWindow.ShowImpl; not initialized, closing application...
 
Error - 3/1/2014 3:26:15 AM | Computer Name = dogonit23-HP | Source = HP WA Application | ID = 0
Description = HardwareAccess.UnableToConnectException Application.ApplicationStartup;
 failed to create hardware layer Error in the application.    at HardwareAccess.Hardware..ctor(Dispatcher
 dispatcher, ServicePort port, Int32 timeout)     at HardwareAccess.Hardware.Create(Dispatcher
 dispatcher, ServicePort port, Int32 timeout)     at HPWA_Main.App.ApplicationStartup(Object
 sender, StartupEventArgs args)
 
Error - 3/1/2014 3:26:26 AM | Computer Name = dogonit23-HP | Source = HP WA Application | ID = 0
Description = MainWindow.ShowImpl; not initialized, closing application...
 
Error - 3/1/2014 12:34:46 PM | Computer Name = dogonit23-HP | Source = HP WA Service | ID = 0
Description = System.Runtime.InteropServices.COMException Call was canceled by the
 message filter. (Exception from HRESULT: 0x80010002 (RPC_E_CALL_CANCELED))    at
 System.Runtime.InteropServices.Marshal.ThrowExceptionForHRInternal(Int32 errorCode,
 IntPtr errorInfo)     at System.Management.ManagementScope.InitializeGuts(Object
o)     at System.Management.ManagementScope.Initialize()     at System.Management.ManagementObject.Initialize(Boolean
 getObject)     at System.Management.ManagementBaseObject.get_Properties()     at System.Management.ManagementBaseObject.GetPropertyValue(String
 propertyName)     at HPPA_Service.CurrentConfiguration.<ReloadRadioList>b__c()
 
[ System Events ]
Error - 5/25/2014 1:01:37 PM | Computer Name = dogonit23-HP | Source = DCOM | ID = 10010
Description =
 
 
< End of report >
 


  • 0

#14
dogonit2

dogonit2

    Member

  • Topic Starter
  • Member
  • PipPip
  • 26 posts

I ran security check on got this....

 

UNSUPPORTED OPERATING SYSTEM! ABORTED!


  • 0

#15
Pyxis

Pyxis

    Trusted Helper

  • Malware Removal
  • 1,228 posts
Thank you for the logs! :) You do not have any "running" malware per se now, just a bunch of dormant files that should still be removed. Note that the below steps, while few, involve doing something very repetitive. Brace yourself as we move on to the final phase. :thumbsup:
 

I ran security check on got this....
 
UNSUPPORTED OPERATING SYSTEM! ABORTED!


Note: If you get an error about an unsupported operating system, please reboot your computer and try again.


I included the same instructions at the bottom of this post for your reference.
  • Step 1

    Upon careful inspection, your log indicates that the program(s) listed below is installed on your computer. I would like to request for the removal of the program(s) as it is associated with malware, adware or spyware. Please proceed to uninstalling by going to Control Panel (Windows XP) or Programs and Features (Windows Vista or Windows 7). If Windows says it cannot locate the program(s) and that it prompts for it to be removed from the list instead, do so by allowing it.
    • AliG Social Lead Freak
    • Bing Rewards Client Installer
    • blackMaps version 2.0.5
    • Blog Profit Pro
    • CommandoHQ
    • CurationSoft
    • darkNode version 2.0.5
    • Driver Booster
    • Easy Lead Finder
    • Easy Target Lead Generator
    • EasyEmailSender
    • FB Ad Express
    • FLV-Media Player 1.8
    • Free YouTube Downloader 3.5.187
    • FreeScreenSharing
    • Glary Utilities 3.9.1
    • Hot Lead Finder v3.5
    • HydraVid PRO
    • Instant Article Suite v1.10
    • Kaboomizer
    • Kudani
    • Linked Lead Finder 1.0
    • Localizer Beta
    • Localizer Leads Tool
    • Nexus Toolbar
    • PDF Download for Internet Explorer
    • Power Indexer Pro 3.0.0.0
    • Proxy Goblin
    • Rank Armory Setup
    • RegInOut System Utilities
    • SEO Link Robot Pro 2.1.5.0
    • Sindicator
    • Smart Defrag 2
    • Surfing Protection
    • The Prospector version 2.8
    • Traffic Jeet 2
    • Tube Sniper Pro
    • Turbo Lister 2
    • Video Components
    • Video Vantage
    • YellaBot
    Inform me if you encounter problems in the removal process.
  • Step 2

    Run your copy of OTL by double-clicking it.
    • Copy and paste the following into the Custom Scans/Fixes box:
      :OTL
      [2014/05/17 18:32:06 | 000,000,990 | ---- | C] () -- C:\Users\Public\Desktop\Kudani.lnk
      [2014/03/13 23:42:46 | 000,000,953 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hot Lead Finder.lnk
      [2014/03/11 23:42:51 | 000,001,053 | ---- | C] () -- C:\Users\dogonit23\Desktop\The Logo Creator v5.2.exe.lnk
      [2014/02/18 23:45:32 | 000,000,933 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Video Vantage.lnk
      [2014/02/02 12:04:35 | 000,000,913 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HydraVidPRO.lnk
      [2013/12/25 22:58:29 | 000,001,108 | ---- | C] () -- C:\Users\Public\Desktop\Driver Booster.lnk
      [2013/10/19 16:45:05 | 000,000,923 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CurationSoft.lnk
      [2013/10/11 10:50:44 | 000,000,933 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FB Ad Express.lnk
      [2013/09/29 12:01:13 | 000,000,821 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\slf.lnk
      [2013/09/18 22:05:54 | 000,001,068 | ---- | C] () -- C:\Users\dogonit23\Desktop\FLV-Media Player.lnk
      [2013/07/30 11:22:02 | 000,001,950 | ---- | C] () -- C:\Users\dogonit23\Desktop\FLV-Media-Player.lnk
      [2013/07/23 16:51:19 | 000,002,045 | ---- | C] () -- C:\Users\Public\Desktop\eBay Turbo Lister 2.lnk
      [2013/07/23 16:51:02 | 000,001,800 | ---- | C] () -- C:\Users\dogonit23\Application Data\Microsoft\Internet Explorer\Quick Launch\eBay Turbo Lister 2.lnk
      [2013/06/27 19:05:12 | 000,027,456 | ---- | M] (IObit) -- C:\Windows\SysNative\RegistryDefragBootTime.exe
      [2014/02/23 12:09:02 | 000,012,872 | ---- | M] (SurfRight B.V.) -- C:\Windows\SysNative\bootdelete.exe
      [2013/08/28 01:57:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Offline Prospector
      [2013/08/28 01:57:14 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\The Prospector
      [2013/08/25 03:08:55 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\Traffic_Mystic_IM_Solutio
      [2013/08/30 13:37:08 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Nexus Toolbar
      [2013/08/30 13:36:50 | 000,000,000 | ---D | C] -- C:\nexustoolbar
      [2013/08/30 12:25:21 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Documents\LeadFinder
      [2013/09/03 18:40:13 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\7 Minute Research
      [2013/09/14 16:44:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RegInOut System Utilities
      [2013/09/14 16:44:19 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\RegInOut System Utilities
      [2013/09/14 16:07:42 | 000,000,000 | ---D | C] -- C:\ProgramData\{CED89F1A-945F-46EC-B23C-5EAF6D2DB12A}
      [2013/09/14 16:07:05 | 000,000,000 | ---D | C] -- C:\ProgramData\IObit
      [2013/09/14 16:06:01 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\IObit
      [2013/09/15 02:33:19 | 000,000,000 | ---D | C] -- C:\ProgramData\RegInOut
      [2013/09/18 22:05:54 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FLV-Media Player
      [2013/09/18 22:05:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FLV-Media Player
      [2013/09/18 22:05:45 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\FLV-Media Player
      [2013/09/19 23:06:11 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\EasyEmailSender
      [2013/09/19 23:06:15 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EasyEmailSender
      [2013/09/24 15:39:12 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FreeScreenSharing
      [2013/09/24 15:37:28 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\FreeScreenSharing
      [2013/10/07 23:16:30 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Local Leads Magic Extractor
      [2013/10/07 23:16:25 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Adventure Marketing
      [2013/10/07 21:16:34 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Blog Profit Pro
      [2013/10/07 15:14:32 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rockstar Power Suite
      [2013/10/11 10:54:40 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Documents\FB Ad Express
      [2013/10/11 10:50:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\FB Ad Express
      [2013/10/10 12:55:54 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Desktop\SEO & Indexer
      [2013/10/10 01:44:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Traffic Jeet
      [2013/10/10 01:44:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Teknikforce
      [2013/10/10 01:41:03 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\teknikforce
      [2013/10/30 18:43:44 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Desktop\Smart YouTube PRO
      [2013/10/28 15:24:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FLV Converter
      [2013/10/25 15:23:15 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\InstantArticleSuite
      [2013/10/25 15:22:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\InstantArticleSuite
      [2013/10/23 01:00:02 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Documents\kudani
      [2013/10/22 17:27:53 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\PageOneTraffic
      [2013/10/19 16:45:18 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\CurationSoft
      [2013/11/02 11:39:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster
      [2013/12/07 19:27:14 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\slf
      [2013/12/21 16:49:00 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Desktop\Lead Finder
      [2013/12/21 16:47:00 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\CurationSoft
      [2013/12/22 13:20:43 | 000,000,000 | ---D | C] -- C:\ProgramData\FLV.com FLV Converter
      [2014/02/02 12:07:15 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\HydraVidPRO
      [2014/01/19 23:44:01 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MoneyNode
      [2014/01/19 23:09:08 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\blackMap
      [2014/02/18 23:45:53 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Documents\VideoVantage
      [2014/02/23 11:38:31 | 000,000,000 | ---D | C] -- C:\ProgramData\HitmanPro
      [2014/02/27 23:31:46 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\TrafficJeet
      [2014/03/11 23:43:01 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The Logo Creator v5.2
      [2014/03/11 23:42:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Logo Creator v5.2
      [2014/03/11 23:41:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\The Logo Creator v5
      [2014/03/08 01:51:14 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\blackMaps
      [2014/03/08 01:50:47 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\blackMaps
      [2014/03/13 23:42:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Hot Lead Finder
      [2014/03/19 23:44:32 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Documents\CommandoHQ.exe
      [2014/03/19 23:44:26 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\CommandoHQLic
      [2014/03/19 23:43:53 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\CommandoHQ
      [2014/03/19 23:43:51 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\Documents\CommandoHQ
      [2014/03/19 23:43:08 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CommandoHQ
      [2014/03/19 19:32:32 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Fastrack Web Solutions
      [2014/04/10 23:16:42 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Local\App_Updater
      [2014/04/10 23:12:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaboomizer
      [2014/04/10 23:11:58 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Kaboomizer
      [2014/05/16 22:59:23 | 000,000,000 | ---D | C] -- C:\Windows\tasks\ImCleanDisabled
      [2013/09/14 16:58:35 | 000,000,000 | ---D | M] -- C:\Users\dogonit23\AppData\Roaming\GlarySoft
      [2013/09/15 02:12:39 | 000,000,000 | ---D | C] -- C:\ProgramData\GlarySoft
      [2013/09/14 16:58:44 | 000,117,024 | ---- | C] (Glarysoft Ltd) -- C:\Windows\SysNative\BootDefrag.exe
      [2013/09/14 16:58:35 | 000,000,000 | ---D | C] -- C:\Users\dogonit23\AppData\Roaming\GlarySoft
      [2013/09/14 16:58:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 3
      [2013/09/14 16:58:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Glary Utilities 3
      [2013/10/06 15:59:33 | 000,000,340 | ---- | M] () -- C:\Windows\tasks\GlaryInitialize 3.job
      [2013/09/14 16:58:46 | 000,001,104 | ---- | M] () -- C:\Users\dogonit23\Application Data\Microsoft\Internet Explorer\Quick Launch\Glary Utilities 3.lnk
      O4 - HKU\S-1-5-21-2034785586-1586066431-309787569-1001..\RunOnce: [Uninstall C:\Users\dogonit23\AppData\Local\Microsoft\SkyDrive\17.0.4024.1220\amd64] C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\dogonit23\AppData\Local\Microsoft\SkyDrive\17.0.4024.1220\amd64" File not found
      IE - HKU\S-1-5-21-2034785586-1586066431-309787569-1001\..\SearchScopes,Backup.Old.DefaultScope = {4408C5D3-D063-47B7-F412-10B06D154E1C}
      IE - HKU\S-1-5-21-2034785586-1586066431-309787569-1001\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
      IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/...ms}&FORM=IE8SRC
      IE - HKLM\..\SearchScopes,Backup.Old.DefaultScope = {ec29edf6-ad3c-4e1c-a087-d6cb81400c43}
      

      cF4ib.png

    • Click Run Fix.
    • After, a Notepad window will appear, named MMDDYYYY_HHMMSS.log. Alternatively, you can find that log at C:\_OTL\MovedFiles\MMDDYYYY_HHMMSS.log.
    • Copy (CTRL + A and CTRL + C) and paste (CTRL + V) the content of the log in your next reply.
  • Step 3

    Download 'SecurityCheck by screen317' and save it to your desktop.
    • Simply double-click the program icon to run it. It will ask for administrator privileges.
    • A black window will appear. Press any key to continue.
    • Wait for it to finish. It won't take long.
    • A log will automatically pop-up after once done.
    • Copy (CTRL + A and CTRL + C) and paste (CTRL + V) the content of the log in your next reply.
    Note: If you get an error about an unsupported operating system, please reboot your computer and try again.
  • Logs to Post

    In summary of the above, I will need you to post the following log(s):
    • MMDDYYYY_HHMMSS.log (OTL)
    • checkup.txt (SecurityCheck)

  • 0






Similar Topics


Also tagged with one or more of these keywords: lagging, crashing, slow speed, slow start-up, slow programs

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP