Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Avast Keeps On Calling Out A Suspicious Outgoing Request


  • This topic is locked This topic is locked

#1
mlpwas100

mlpwas100

    New Member

  • Member
  • Pip
  • 2 posts

Avast keeps warning about this when using Firefox:

Object:
http://getmuzicas.info/
Infection: URL:Mal
Process: C:\Windows\system32\svchost.exe

Someone could help me please?
I will really apreciate it!

 

Thanks, 

Wilson


  • 0

Advertisements


#2
mlpwas100

mlpwas100

    New Member

  • Topic Starter
  • Member
  • Pip
  • 2 posts
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-07-2014
Ran by mlpwa_000 (administrator) on MLPWAS100 on 11-07-2014 22:41:03
Running from C:\Users\mlpwa_000\Downloads
Platform: Windows 8.1 (X64) OS Language: English (United States)
Internet Explorer Version 11
Boot Mode: Normal
 
The only official download link for FRST:
Download link from any site other than Bleeping Computer is unpermitted or outdated.
 
==================== Processes (Whitelisted) =================
 
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(IvoSoft) C:\Program Files\Classic Shell\ClassicShellService.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler64.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20498_x64__8wekyb3d8bbwe\livecomm.exe
(Foxit Corporation) C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
(Intel® Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\Jhi_service.exe
(IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Spotify Ltd) C:\Users\mlpwa_000\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
(BitTorrent Inc.) C:\Users\mlpwa_000\AppData\Roaming\uTorrent\uTorrent.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Spotify Ltd) C:\Users\mlpwa_000\AppData\Roaming\Spotify\spotify.exe
(IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
() C:\Users\mlpwa_000\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
() C:\Users\mlpwa_000\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
() C:\Users\mlpwa_000\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
() C:\Users\mlpwa_000\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
() C:\Users\mlpwa_000\AppData\Roaming\Spotify\Data\SpotifyHelper.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
 
 
==================== Registry (Whitelisted) ==================
 
HKLM\...\Run: [Zune Launcher] => C:\Program Files\Zune\ZuneLauncher.exe [163552 2011-08-05] (Microsoft Corporation)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2916152 2012-08-24] (Synaptics Incorporated)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1425408 2012-07-22] (IDT, Inc.)
HKLM-x32\...\Run: [BtTray] => C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe [363520 2012-08-02] (IVT Corporation)
HKLM-x32\...\Run: [HP Quick Launch] => C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [580512 2012-07-09] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [HP CoolSense] => C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe [1342008 2011-08-26] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [ContentTransferWMDetector.exe] => C:\Program Files (x86)\Sony\Content Transfer\ContentTransferWMDetector.exe [583016 2009-11-19] (Sony Corporation)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [3568312 2013-12-06] (AVAST Software)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-2031069764-3806016151-2292297852-1001\...\Run: [Spotify Web Helper] => C:\Users\mlpwa_000\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1176632 2014-06-28] (Spotify Ltd)
HKU\S-1-5-21-2031069764-3806016151-2292297852-1001\...\Run: [Google Update] => C:\Users\mlpwa_000\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2013-05-10] (Google Inc.)
HKU\S-1-5-21-2031069764-3806016151-2292297852-1001\...\Run: [uTorrent] => C:\Users\mlpwa_000\AppData\Roaming\uTorrent\uTorrent.exe [1329744 2014-07-08] (BitTorrent Inc.)
HKU\S-1-5-21-2031069764-3806016151-2292297852-1001\...\Run: [xcpcontroller] => C:\Program Files (x86)\XCloudSystems\DataProtecto\DPController.exe
HKU\S-1-5-21-2031069764-3806016151-2292297852-1001\...\Run: [dptray] => C:\WINDOWS\SysWow64\dptray.exe
HKU\S-1-5-21-2031069764-3806016151-2292297852-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [21444224 2014-05-08] (Skype Technologies S.A.)
HKU\S-1-5-21-2031069764-3806016151-2292297852-1001\...\Run: [Akamai NetSession Interface] => "C:\Users\mlpwa_000\AppData\Local\Akamai\netsession_win.exe"
HKU\S-1-5-21-2031069764-3806016151-2292297852-1001\...\Run: [Spotify] => C:\Users\mlpwa_000\AppData\Roaming\Spotify\spotify.exe [6189624 2014-06-28] (Spotify Ltd)
ShellIconOverlayIdentifiers:  SkyDrivePro1 (ErrorConflict) -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation)
ShellIconOverlayIdentifiers:  SkyDrivePro2 (SyncInProgress) -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation)
ShellIconOverlayIdentifiers:  SkyDrivePro3 (InSync) -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation)
ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers-x32:  SkyDrivePro1 (ErrorConflict) -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32:  SkyDrivePro2 (SyncInProgress) -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32:  SkyDrivePro3 (InSync) -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
 
==================== Internet (Whitelisted) ====================
 
ProxyServer: 76.164.213.124:8089
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://search.yahoo...r=spigot-yhp-ie
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/HPNOT13/1
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/HPNOT13/1
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://g.msn.com/HPNOT13/1
SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/...0TR&pc=HPNTDFJS
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/...0TR&pc=HPNTDFJS
SearchScopes: HKLM - {0CC49407-1C42-4017-BB50-ED5C09CBD622} URL = http://www.amazon.co...s={searchTerms}
SearchScopes: HKLM-x32 - DefaultScope value is missing.
SearchScopes: HKLM-x32 - {0CC49407-1C42-4017-BB50-ED5C09CBD622} URL = http://www.amazon.co...s={searchTerms}
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/...0TR&pc=HPNTDFJS
SearchScopes: HKCU - {0CC49407-1C42-4017-BB50-ED5C09CBD622} URL = 
SearchScopes: HKCU - {4A79E062-AEFD-4152-9D2C-14F3939782EE} URL = http://www.mysearchr...q={searchTerms}
SearchScopes: HKCU - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = 
SearchScopes: HKCU - {E8A462BD-E82C-4BEC-B42F-22F5529E1840} URL = http://search.condui...UM=2&SSPV=TB_T4
BHO: avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO-x32: Java™ Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll No File
Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
Toolbar: HKLM-x32 - avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL (Microsoft Corporation)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\MSOSB.DLL (Microsoft Corporation)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.254
 
FireFox:
========
FF ProfilePath: C:\Users\mlpwa_000\AppData\Roaming\Mozilla\Firefox\Profiles\3ypahu4k.default
FF DefaultSearchEngine: Yahoo!
FF SelectedSearchEngine: Yahoo!
FF NetworkProxy: "backup.ftp", "76.164.213.124"
FF NetworkProxy: "backup.ftp_port", 8089
FF NetworkProxy: "backup.socks", "76.164.213.124"
FF NetworkProxy: "backup.socks_port", 8089
FF NetworkProxy: "backup.ssl", "76.164.213.124"
FF NetworkProxy: "backup.ssl_port", 8089
FF NetworkProxy: "ftp", "76.164.213.124"
FF NetworkProxy: "ftp_port", 8089
FF NetworkProxy: "http", "76.164.213.124"
FF NetworkProxy: "http_port", 8089
FF NetworkProxy: "share_proxy_settings", true
FF NetworkProxy: "socks", "76.164.213.124"
FF NetworkProxy: "socks_port", 8089
FF NetworkProxy: "ssl", "76.164.213.124"
FF NetworkProxy: "ssl_port", 8089
FF NetworkProxy: "type", 1
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 - C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1211151.dll (Adobe Systems, Inc.)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf - C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf - C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @nexon.net/NxGame - C:\ProgramData\NexonUS\NGM\npNxGameUS.dll No File
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
FF Plugin-x32: @qq.com/TXSSO - C:\Program Files (x86)\Common Files\Tencent\TXSSO\1.2.1.38\Bin\npSSOAxCtrlForPTLogin.dll No File
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\mlpwa_000\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll No File
FF Plugin HKCU: @talk.google.com/GoogleTalkPlugin - C:\Users\mlpwa_000\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
FF Plugin HKCU: @talk.google.com/O1DPlugin - C:\Users\mlpwa_000\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\mlpwa_000\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\mlpwa_000\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin ProgramFiles/Appdata: C:\Users\mlpwa_000\AppData\Roaming\mozilla\plugins\npgoogletalk.dll (Google)
FF Plugin ProgramFiles/Appdata: C:\Users\mlpwa_000\AppData\Roaming\mozilla\plugins\npo1d.dll (Google)
FF SearchPlugin: C:\Users\mlpwa_000\AppData\Roaming\Mozilla\Firefox\Profiles\3ypahu4k.default\searchplugins\yahoo_ff.xml
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-03-17]
 
Chrome: 
=======
CHR Plugin: (Widevine Content Decryption Module) - C:\Users\mlpwa_000\AppData\Local\Google\Chrome\User Data\WidevineCDM\1.4.4.600\_platform_specific\win_x86\widevinecdmadapter.dll ()
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\pdf.dll ()
CHR Plugin: (Foxit Reader Plugin for Mozilla) - C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
CHR Plugin: (NPTXSSO Dynamic Link Library) - C:\Program Files (x86)\Common Files\Tencent\TXSSO\1.2.1.38\Bin\npSSOAxCtrlForPTLogin.dll No File
CHR Plugin: (Intel® Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
CHR Plugin: (Intel® Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
CHR Plugin: (Java Deployment Toolkit 7.0.550.14) - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
CHR Plugin: (Java™ Platform SE 7 U55) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
CHR Plugin: (VLC Web Plugin) - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
CHR Plugin: (Windows Live™ Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (Microsoft Office 2013) - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\NPSPWRAP.DLL (Microsoft Corporation)
CHR Plugin: (Microsoft Office 2013) - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation)
CHR Plugin: (Nexon Game Controller) - C:\ProgramData\NexonUS\NGM\npNxGameUS.dll No File
CHR Plugin: (Unity Player) - C:\Users\mlpwa_000\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll No File
CHR Plugin: (Google Update) - C:\Users\mlpwa_000\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
CHR Plugin: (Google Talk Plugin) - C:\Users\mlpwa_000\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
CHR Plugin: (Google Talk Plugin Video Renderer) - C:\Users\mlpwa_000\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google)
CHR Plugin: (Shockwave for Director) - C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1211151.dll (Adobe Systems, Inc.)
CHR Plugin: (Shockwave Flash) - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_125.dll No File
CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
CHR Extension: (Google Docs) - C:\Users\mlpwa_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-03-09]
CHR Extension: (Google Drive) - C:\Users\mlpwa_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-03-09]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\mlpwa_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-05-24]
CHR Extension: (YouTube) - C:\Users\mlpwa_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-03-09]
CHR Extension: (Google Search) - C:\Users\mlpwa_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-03-09]
CHR Extension: (avast! Online Security) - C:\Users\mlpwa_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-03-10]
CHR Extension: (Windows Media Player Extension for HTML5) - C:\Users\mlpwa_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\hokdglbhghcebcopdbanieangmcamaak [2014-03-11]
CHR Extension: (Skype Click to Call) - C:\Users\mlpwa_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2014-03-09]
CHR Extension: (Google Wallet) - C:\Users\mlpwa_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-23]
CHR Extension: (Gmail) - C:\Users\mlpwa_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-03-09]
CHR HKLM\...\Chrome\Extension: [blcefchbfgmakifmejncnbognjoadloc] - C:\Program Files\CoolPic - Fun Social Pictures\source.crx [2014-03-09]
CHR HKLM-x32\...\Chrome\Extension: [blcefchbfgmakifmejncnbognjoadloc] - C:\Program Files\CoolPic - Fun Social Pictures\source.crx [2014-03-09]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2013-12-06]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-04-11]
CHR HKCU\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
 
==================== Services (Whitelisted) =================
 
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2013-12-06] (AVAST Software)
R2 BlueSoleilCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe [1544192 2012-08-02] (IVT Corporation) [File not signed]
R3 BsHelpCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe [138752 2012-07-10] (IVT Corporation) [File not signed]
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390720 2014-04-11] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1764992 2014-04-11] (Microsoft Corporation)
R2 ClassicShellService; C:\Program Files\Classic Shell\ClassicShellService.exe [68608 2012-12-29] (IvoSoft) [File not signed]
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2356408 2014-06-19] (Microsoft Corporation)
R2 FoxitCloudUpdateService; C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\Foxit Cloud\FCUpdateService.exe [242216 2014-06-17] (Foxit Corporation)
R2 IconMan_R; C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2451456 2012-07-14] (Realsil Microelectronics Inc.) [File not signed]
R2 Intel® ME Service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\FWService\IntelMeFWService.exe [128896 2012-07-17] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [165760 2012-07-17] (Intel Corporation)
R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [321536 2012-07-22] (IDT, Inc.) [File not signed]
S3 w3logsvc; C:\Windows\system32\inetsrv\w3logsvc.dll [76800 2014-04-14] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-03-23] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-03-23] (Microsoft Corporation)
 
==================== Drivers (Whitelisted) ====================
 
R2 aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [38984 2013-12-06] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [84328 2013-12-06] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [92544 2013-12-06] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2013-12-06] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1032416 2013-12-06] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [409832 2013-12-06] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [205320 2013-12-06] ()
R3 BtAudioBusSrv; C:\Windows\System32\Drivers\BtAudioBus.sys [23136 2012-06-15] (IVT Corporation)
U4 BthAvrcpTg; 
U4 BthHFEnum; 
U4 bthhfhid; 
R3 BthL2caScoIfSrv; C:\Windows\System32\Drivers\BtL2caScoIf.sys [56904 2012-07-19] (Ralink Corporation)
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-03-18] (Microsoft Corporation)
R3 btUrbFilterDrv; C:\Windows\System32\Drivers\IvtUrbBtFlt.sys [48736 2012-08-09] (Ralink Corporation)
S3 hitmanpro37; C:\WINDOWS\system32\drivers\hitmanpro37.sys [32512 2014-07-11] ()
S3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [122584 2014-07-11] (Malwarebytes Corporation)
S3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [269968 2012-07-04] (Realtek Semiconductor Corp.)
R3 rtbth; C:\Windows\System32\drivers\rtbth.sys [1204424 2013-12-02] (Ralink Technology, Corp.)
S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [41272 2012-08-24] (Synaptics Incorporated)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [43832 2012-08-24] (Synaptics Incorporated)
S3 tap-tb-0901; C:\Windows\system32\DRIVERS\tap-tb-0901.sys [39168 2014-06-17] (The OpenVPN Project)
S3 tap0901; C:\Windows\system32\DRIVERS\tap0901.sys [36736 2013-02-08] (The OpenVPN Project) [File not signed]
U3 TrueSight; C:\Windows\SysWOW64\drivers\TrueSight.sys [29160 2014-07-11] ()
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-03-23] (Microsoft Corporation)
R3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [20288 2012-08-03] (Hewlett-Packard Development Company, L.P.)
S3 EagleX64; \??\C:\WINDOWS\system32\drivers\EagleX64.sys [X]
S3 xhunter1; \??\C:\WINDOWS\xhunter1.sys [X]
 
==================== NetSvcs (Whitelisted) ===================
 
 
==================== One Month Created Files and Folders ========
 
2014-07-11 22:30 - 2014-07-11 22:30 - 00000313 _____ () C:\Users\mlpwa_000\Desktop\New Text Document.txt
2014-07-11 22:29 - 2014-07-11 22:31 - 00000245 _____ () C:\Users\mlpwa_000\Downloads\Search.txt
2014-07-11 22:26 - 2014-07-11 22:22 - 00000313 _____ () C:\fixlist.txt
2014-07-11 22:21 - 2014-07-11 22:21 - 00046608 _____ () C:\Users\mlpwa_000\Downloads\Shortcut.txt
2014-07-11 22:18 - 2014-07-11 22:21 - 00039332 _____ () C:\Users\mlpwa_000\Downloads\Addition.txt
2014-07-11 22:17 - 2014-07-11 22:41 - 00029819 _____ () C:\Users\mlpwa_000\Downloads\FRST.txt
2014-07-11 22:17 - 2014-07-11 22:41 - 00000000 ____D () C:\FRST
2014-07-11 22:17 - 2014-07-11 22:17 - 02084864 _____ (Farbar) C:\Users\mlpwa_000\Downloads\FRST64.exe
2014-07-11 22:06 - 2014-07-11 22:38 - 00000000 ____D () C:\AdwCleaner
2014-07-11 22:06 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\WINDOWS\SysWOW64\sqlite3.dll
2014-07-11 22:05 - 2014-07-11 22:06 - 01348263 _____ () C:\Users\mlpwa_000\Downloads\adwcleaner_3.215.exe
2014-07-11 22:05 - 2014-07-11 22:05 - 00000000 ____D () C:\WINDOWS\ERUNT
2014-07-11 22:04 - 2014-07-11 22:04 - 01016261 _____ (Thisisu) C:\Users\mlpwa_000\Downloads\JRT.exe
2014-07-11 22:04 - 2014-07-11 22:04 - 00032512 _____ () C:\WINDOWS\system32\Drivers\hitmanpro37.sys
2014-07-11 22:04 - 2014-07-11 22:04 - 00000000 ____D () C:\ProgramData\HitmanPro
2014-07-11 22:03 - 2014-07-11 22:04 - 11185664 _____ (SurfRight B.V.) C:\Users\mlpwa_000\Downloads\HitmanPro_x64.exe
2014-07-11 21:54 - 2014-07-11 21:54 - 00029160 _____ () C:\WINDOWS\SysWOW64\Drivers\TrueSight.sys
2014-07-11 21:54 - 2014-07-11 21:54 - 00000000 ____D () C:\ProgramData\RogueKiller
2014-07-11 21:53 - 2014-07-11 21:53 - 04770392 _____ () C:\Users\mlpwa_000\Downloads\RogueKiller.exe
2014-07-11 21:48 - 2014-07-11 21:48 - 01942776 _____ (Bleeping Computer, LLC) C:\Users\mlpwa_000\Downloads\rkill.exe
2014-07-11 21:48 - 2014-07-11 21:48 - 01062136 _____ (Bleeping Computer, LLC) C:\Users\mlpwa_000\Downloads\rkill64.exe
2014-07-11 21:48 - 2014-07-11 21:48 - 00001616 _____ () C:\Users\mlpwa_000\Desktop\Rkill.txt
2014-07-11 21:23 - 2014-07-11 21:23 - 04181856 _____ (Kaspersky Lab ZAO) C:\Users\mlpwa_000\Downloads\tdsskiller.exe
2014-07-11 21:05 - 2014-07-11 21:40 - 00122584 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2014-07-11 21:05 - 2014-07-11 21:05 - 00001118 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-07-11 21:05 - 2014-07-11 21:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-07-11 21:05 - 2014-07-11 21:05 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-07-11 21:05 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2014-07-11 21:05 - 2014-05-12 07:26 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2014-07-11 21:05 - 2014-05-12 07:25 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2014-07-11 21:01 - 2014-07-11 21:04 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\mlpwa_000\Downloads\mbam-setup-2.0.2.1012.exe
2014-07-09 19:49 - 2014-07-09 19:49 - 00000000 ___SD () C:\WINDOWS\system32\CompatTel
2014-07-09 19:49 - 2014-04-13 23:29 - 01018880 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll
2014-07-09 19:15 - 2014-06-18 21:39 - 23464448 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2014-07-09 19:15 - 2014-06-18 20:16 - 17276416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2014-07-09 19:15 - 2014-06-18 19:51 - 05721088 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2014-07-09 19:15 - 2014-06-18 19:46 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2014-07-09 19:15 - 2014-06-18 18:57 - 00225280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2014-07-09 19:15 - 2014-06-18 18:52 - 04254720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2014-07-09 19:15 - 2014-06-18 18:51 - 13527040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2014-07-09 19:15 - 2014-06-18 18:35 - 11742208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2014-07-09 19:15 - 2014-06-16 18:26 - 00779264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\osk.exe
2014-07-09 19:15 - 2014-06-16 18:24 - 00834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\osk.exe
2014-07-09 19:15 - 2014-06-06 10:20 - 04190720 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2014-07-09 19:14 - 2014-06-18 20:48 - 02768384 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2014-07-09 19:14 - 2014-06-18 20:09 - 00452608 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll
2014-07-09 19:14 - 2014-06-18 19:50 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2014-07-09 19:14 - 2014-06-18 19:48 - 00292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2014-07-09 19:14 - 2014-06-18 19:39 - 00608768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2014-07-09 19:14 - 2014-06-18 19:33 - 00631808 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2014-07-09 19:14 - 2014-06-18 19:32 - 02179072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2014-07-09 19:14 - 2014-06-18 19:27 - 02040832 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2014-07-09 19:14 - 2014-06-18 19:12 - 00367616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll
2014-07-09 19:14 - 2014-06-18 18:59 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2014-07-09 19:14 - 2014-06-18 18:58 - 02266112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2014-07-09 19:14 - 2014-06-18 18:58 - 00239616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2014-07-09 19:14 - 2014-06-18 18:49 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2014-07-09 19:14 - 2014-06-18 18:45 - 01964544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2014-07-09 19:14 - 2014-06-18 18:34 - 01393664 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2014-07-09 19:14 - 2014-06-18 18:15 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2014-07-09 19:14 - 2014-06-18 18:13 - 01791488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2014-07-09 19:14 - 2014-06-18 18:09 - 01139200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2014-07-09 19:14 - 2014-06-18 18:07 - 00704512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2014-07-09 19:14 - 2014-06-06 09:04 - 00586240 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll
2014-07-09 19:14 - 2014-06-06 08:18 - 00488960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qedit.dll
2014-07-09 19:14 - 2014-05-29 23:03 - 00563200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2014-07-09 19:14 - 2014-05-29 08:02 - 00565576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2014-07-09 19:14 - 2014-05-29 03:55 - 00735232 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll
2014-07-09 19:14 - 2014-05-29 02:40 - 00735232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adtschema.dll
2014-07-09 19:14 - 2014-05-29 02:37 - 00436224 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2014-07-09 19:14 - 2014-05-29 01:34 - 00318976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll
2014-07-09 19:14 - 2014-05-29 01:27 - 01417216 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2014-07-09 19:13 - 2014-06-30 18:45 - 00688128 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepdu.dll
2014-07-09 19:13 - 2014-06-28 03:48 - 00527360 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2014-07-09 19:13 - 2014-06-28 03:07 - 00385536 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2014-07-09 19:13 - 2014-05-31 06:07 - 00054776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2014-07-09 19:13 - 2014-05-31 06:06 - 00555736 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2014-07-09 19:13 - 2014-05-30 23:40 - 13287936 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2014-07-09 19:13 - 2014-05-30 23:30 - 11792384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2014-07-09 19:13 - 2014-05-30 23:12 - 00249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-07-09 19:13 - 2014-05-30 23:06 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2014-07-09 19:13 - 2014-05-30 23:03 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2014-07-09 19:13 - 2014-05-30 23:01 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-07-09 19:13 - 2014-05-30 22:56 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2014-07-09 19:13 - 2014-05-30 22:54 - 00666624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2014-07-09 19:13 - 2014-05-30 22:48 - 03463680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2014-07-09 19:13 - 2014-05-30 22:37 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2014-07-09 19:13 - 2014-05-30 22:36 - 00923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2014-07-09 19:13 - 2014-05-30 22:35 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2014-07-09 19:13 - 2014-05-30 22:32 - 00756224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2014-07-09 19:07 - 2014-07-09 19:07 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe
2014-07-08 14:46 - 2014-07-08 14:47 - 05363712 _____ () C:\Users\mlpwa_000\Downloads\B06-Erikson-20140625.ppt
2014-07-08 14:46 - 2014-07-08 14:46 - 06501888 _____ () C:\Users\mlpwa_000\Downloads\B02-Freud-201406022.ppt
2014-07-08 14:45 - 2014-07-08 14:45 - 04490752 _____ () C:\Users\mlpwa_000\Downloads\B01-Introduction-Student.ppt
2014-07-06 23:12 - 2014-07-06 23:12 - 00001075 _____ () C:\Users\mlpwa_000\Desktop\Notepad++.lnk
2014-07-06 23:12 - 2014-07-06 23:12 - 00000000 ____D () C:\Users\mlpwa_000\AppData\Roaming\Notepad++
2014-07-06 23:12 - 2014-07-06 23:12 - 00000000 ____D () C:\Users\mlpwa_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++
2014-07-06 23:12 - 2014-07-06 23:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++
2014-07-06 23:12 - 2014-07-06 23:12 - 00000000 ____D () C:\Program Files (x86)\Notepad++
2014-07-06 23:07 - 2014-07-06 23:10 - 07674224 _____ () C:\Users\mlpwa_000\Downloads\npp.6.6.7.Installer.exe
2014-07-05 00:44 - 2014-07-05 00:44 - 14486624 _____ (TunnelBear) C:\Users\mlpwa_000\Downloads\TBear-2014-06-18 (1).exe
2014-07-04 00:34 - 2014-07-04 00:34 - 00000000 ____D () C:\Users\mlpwa_000\Downloads\Learn Python The Hard Way
2014-07-04 00:33 - 2014-07-04 00:33 - 00023169 _____ () C:\Users\mlpwa_000\Downloads\[kickass.to]learn.python.the.hard.way.3rd.edition.videos.torrent
2014-07-04 00:22 - 2014-07-04 00:22 - 25355330 _____ () C:\Users\mlpwa_000\Downloads\python-2.7.8-pdb.zip
2014-07-04 00:19 - 2014-07-04 00:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Python 2.7
2014-07-04 00:18 - 2014-07-04 00:19 - 00000000 ____D () C:\Python27
2014-07-04 00:15 - 2014-07-04 00:17 - 16703488 _____ () C:\Users\mlpwa_000\Downloads\python-2.7.8.msi
2014-07-02 22:02 - 2014-07-05 00:47 - 00000000 ____D () C:\Users\mlpwa_000\AppData\Roaming\TunnelBear
2014-07-02 22:01 - 2014-07-02 22:01 - 00003374 _____ () C:\WINDOWS\System32\Tasks\TunnelBear
2014-07-02 22:00 - 2014-07-04 23:26 - 00000000 ____D () C:\Users\mlpwa_000\AppData\Local\HockeyCrashes
2014-07-02 22:00 - 2014-07-02 22:00 - 00000000 ____D () C:\Users\mlpwa_000\AppData\Local\IsolatedStorage
2014-07-02 21:57 - 2014-07-02 21:57 - 14486624 _____ (TunnelBear) C:\Users\mlpwa_000\Downloads\TBear-2014-06-18.exe
2014-07-02 21:55 - 2014-07-02 21:55 - 00002172 _____ () C:\Users\Public\Desktop\Foxit Reader.lnk
2014-07-02 21:55 - 2014-07-02 21:55 - 00000000 ____D () C:\Users\Public\Foxit Software
2014-07-02 21:55 - 2014-07-02 21:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader
2014-06-30 22:54 - 2014-06-30 22:54 - 00192512 _____ () C:\Users\mlpwa_000\Downloads\alan.ppt
2014-06-30 16:03 - 2014-06-30 16:03 - 02454016 _____ (Python Software Foundation) C:\WINDOWS\SysWOW64\python27.dll
2014-06-30 10:50 - 2014-07-02 20:56 - 00000000 ____D () C:\Users\mlpwa_000\Downloads\Theories of Personality - Schultz 10th & Ryckman 9th
2014-06-28 23:19 - 2014-06-29 20:33 - 00000000 ____D () C:\Users\mlpwa_000\Downloads\[2002-03] 24 Season 2 [DVD RIP]
2014-06-28 23:18 - 2014-06-28 23:18 - 00044094 _____ () C:\Users\mlpwa_000\Downloads\[kickass.to]24.season.2.2002.2003.dvdrip.torrent
2014-06-28 23:09 - 2014-06-28 23:09 - 00393867 _____ () C:\Users\mlpwa_000\Downloads\[kickass.to]24.season.1.2.3.4.5.6.7.8.deluxe.dvd.boxset.in.hd.ext (1).torrent
2014-06-28 23:08 - 2014-06-28 23:08 - 00282456 _____ () C:\Users\mlpwa_000\Downloads\[kickass.to]24.complete.series.season.1.2.3.4.5.6.7.8.prequels.extras.m.torrent
2014-06-28 21:37 - 2014-06-28 21:37 - 63630453 _____ (Flexera Software) C:\Users\mlpwa_000\Downloads\ePatLauncherInstall217 (1).exe
2014-06-28 21:29 - 2014-06-28 21:30 - 00000000 ___HD () C:\Program Files (x86)\Zero G Registry
2014-06-28 21:29 - 2014-06-28 21:29 - 00000000 ___HD () C:\Users\mlpwa_000\InstallAnywhere
2014-06-28 21:27 - 2014-06-28 21:27 - 63630453 _____ (Flexera Software) C:\Users\mlpwa_000\Downloads\ePatLauncherInstall217.exe
2014-06-25 19:45 - 2014-06-25 19:45 - 00000000 ____D () C:\Users\mlpwa_000\AppData\Local\Macromedia
2014-06-25 19:26 - 2014-06-25 19:26 - 00001175 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-06-25 19:26 - 2014-06-25 19:26 - 00001163 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-06-25 19:26 - 2014-06-25 19:26 - 00000000 ____D () C:\Users\mlpwa_000\AppData\Local\Mozilla
2014-06-25 19:26 - 2014-06-25 19:26 - 00000000 ____D () C:\ProgramData\Mozilla
2014-06-25 19:26 - 2014-06-25 19:26 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-06-25 19:25 - 2014-06-25 19:25 - 00284224 _____ (Mozilla) C:\Users\mlpwa_000\Downloads\Firefox Setup Stub 30.0.exe
2014-06-25 18:14 - 2014-06-25 18:14 - 00016448 _____ () C:\Users\mlpwa_000\Downloads\Sample1283.zip
2014-06-23 22:47 - 2014-06-24 00:18 - 00000000 ____D () C:\Users\mlpwa_000\Downloads\24 Season 1
2014-06-23 22:45 - 2014-06-23 22:45 - 00046856 _____ () C:\Users\mlpwa_000\Downloads\[kickass.to]24.season.1.torrent
2014-06-23 22:44 - 2014-06-23 22:44 - 00393867 _____ () C:\Users\mlpwa_000\Downloads\[kickass.to]24.season.1.2.3.4.5.6.7.8.deluxe.dvd.boxset.in.hd.ext.torrent
2014-06-23 17:58 - 2014-06-29 16:16 - 00000000 ____D () C:\Users\mlpwa_000\Desktop\Chemistry Segment 2
2014-06-22 22:35 - 2014-06-22 22:35 - 00010651 _____ () C:\Users\mlpwa_000\Downloads\meeting (8).jnlp
2014-06-22 16:52 - 2014-06-22 16:52 - 00004835 _____ () C:\Users\mlpwa_000\Desktop\Module 9 Quiz Geometry.ggb
2014-06-18 13:44 - 2014-06-18 13:44 - 00010574 _____ () C:\Users\mlpwa_000\Downloads\meeting (7).jnlp
2014-06-17 12:06 - 2014-06-17 12:06 - 00039168 _____ (The OpenVPN Project) C:\WINDOWS\system32\Drivers\tap-tb-0901.sys
2014-06-12 18:55 - 2014-06-12 18:55 - 00010596 _____ () C:\Users\mlpwa_000\Downloads\meeting (6).jnlp
2014-06-11 09:17 - 2014-05-30 04:43 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll
2014-06-11 09:17 - 2014-05-30 04:27 - 00592896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2014-06-11 09:17 - 2014-05-09 23:46 - 02151424 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2014-06-11 09:17 - 2014-05-09 23:22 - 01312256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2014-06-11 09:17 - 2014-05-05 00:02 - 03360256 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2014-06-11 09:17 - 2014-04-30 07:16 - 01336648 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2014-06-11 09:17 - 2014-04-29 23:51 - 01064448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2014-06-11 09:17 - 2014-02-06 07:30 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollectorres.dll
2014-06-11 09:17 - 2014-02-06 07:06 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwproxystub.dll
2014-06-11 09:17 - 2014-02-06 06:56 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll
2014-06-11 09:17 - 2014-02-06 06:48 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe
2014-06-11 09:17 - 2014-02-06 06:00 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieetwproxystub.dll
2014-06-11 09:17 - 2014-02-06 05:52 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2014-06-11 09:17 - 2014-02-06 05:52 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll
2014-06-11 09:16 - 2014-05-30 05:28 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2014-06-11 09:16 - 2014-05-30 05:20 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2014-06-11 09:16 - 2014-05-08 19:06 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ks.sys
2014-06-11 09:16 - 2014-04-18 04:09 - 08652800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2014-06-11 09:16 - 2014-04-18 03:49 - 05833216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2014-06-11 09:16 - 2014-04-06 12:31 - 21268952 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2014-06-11 09:16 - 2014-04-06 11:22 - 18755672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2014-06-11 09:16 - 2014-04-06 07:55 - 16872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2014-06-11 09:16 - 2014-04-06 07:54 - 12711424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2014-06-11 09:16 - 2014-04-03 04:12 - 02124840 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2014-06-11 09:16 - 2014-04-03 03:59 - 02518872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2014-06-11 09:16 - 2014-04-03 03:59 - 00428888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2014-06-11 09:16 - 2014-04-02 23:53 - 01797896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2014-06-11 09:16 - 2014-03-30 18:54 - 01308160 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll
2014-06-11 09:16 - 2014-03-19 20:44 - 06645248 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2014-06-11 09:16 - 2014-03-19 19:33 - 05774848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2014-06-11 09:16 - 2014-03-19 00:18 - 02688000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll
2014-06-11 09:16 - 2014-03-18 01:00 - 07173120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2014-06-11 09:16 - 2014-03-18 00:52 - 05104640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2014-06-11 09:16 - 2014-02-06 07:07 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll
2014-06-11 09:16 - 2014-02-06 06:49 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieUnatt.exe
2014-06-11 09:16 - 2014-02-06 06:17 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll
2014-06-11 09:16 - 2014-02-06 05:47 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieUnatt.exe
2014-06-11 09:16 - 2014-02-06 05:25 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll
2014-06-11 09:15 - 2014-05-19 02:31 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvcfg.exe
2014-06-11 09:15 - 2014-05-19 02:21 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe
2014-06-11 09:15 - 2014-05-19 01:23 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvinst.exe
2014-06-11 09:15 - 2014-04-30 00:43 - 01975296 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2014-06-11 09:15 - 2014-04-30 00:26 - 01345536 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2014-06-11 09:15 - 2014-04-29 23:47 - 01509888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2014-06-11 09:15 - 2014-04-18 10:57 - 00032600 _____ (Microsoft Corporation) C:\WINDOWS\system32\ploptin.dll
2014-06-11 09:15 - 2014-04-18 10:44 - 01466856 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2014-06-11 09:15 - 2014-04-18 09:29 - 01200288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2014-06-11 09:15 - 2014-04-18 05:44 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\energyprov.dll
2014-06-11 09:15 - 2014-04-18 04:32 - 00805376 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2014-06-11 09:15 - 2014-04-18 04:21 - 01126912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2014-06-11 09:15 - 2014-04-18 03:51 - 00836608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
2014-06-11 09:15 - 2014-04-14 05:20 - 00324888 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2014-06-11 09:15 - 2014-04-14 04:01 - 00285144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2014-06-11 09:15 - 2014-04-11 02:13 - 01200128 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2014-06-11 09:15 - 2014-04-11 00:51 - 00250368 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll
2014-06-11 09:15 - 2014-04-11 00:23 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpencom.dll
2014-06-11 09:15 - 2014-04-10 23:30 - 00449536 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll
2014-06-11 09:15 - 2014-04-09 07:53 - 00337240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys
2014-06-11 09:15 - 2014-04-09 02:39 - 00191488 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpchttp.dll
2014-06-11 09:15 - 2014-04-09 01:44 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpchttp.dll
2014-06-11 09:15 - 2014-04-08 23:33 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2014-06-11 09:15 - 2014-04-07 22:01 - 00589656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2014-06-11 09:15 - 2014-04-06 12:34 - 00372568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2014-06-11 09:15 - 2014-04-06 12:34 - 00275800 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys
2014-06-11 09:15 - 2014-04-06 12:32 - 00125496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2014-06-11 09:15 - 2014-04-06 12:30 - 00201920 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll
2014-06-11 09:15 - 2014-04-06 12:24 - 00360792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys
2014-06-11 09:15 - 2014-04-06 12:20 - 02140888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2014-06-11 09:15 - 2014-04-06 12:20 - 01403856 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2014-06-11 09:15 - 2014-04-06 12:20 - 01379064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2014-06-11 09:15 - 2014-04-06 12:20 - 00881616 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2014-06-11 09:15 - 2014-04-06 12:20 - 00765408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2014-06-11 09:15 - 2014-04-06 12:20 - 00609448 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2014-06-11 09:15 - 2014-04-06 12:20 - 00491744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2014-06-11 09:15 - 2014-04-06 12:20 - 00467496 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2014-06-11 09:15 - 2014-04-06 12:20 - 00463256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2014-06-11 09:15 - 2014-04-06 12:20 - 00364640 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2014-06-11 09:15 - 2014-04-06 12:20 - 00244880 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2014-06-11 09:15 - 2014-04-06 12:20 - 00233912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2014-06-11 09:15 - 2014-04-06 12:20 - 00028408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfpmp.exe
2014-06-11 09:15 - 2014-04-06 11:23 - 00098584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll
2014-06-11 09:15 - 2014-04-06 11:22 - 00178184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVideoDSP.dll
2014-06-11 09:15 - 2014-04-06 11:16 - 02144984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2014-06-11 09:15 - 2014-04-06 11:16 - 01209616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
2014-06-11 09:15 - 2014-04-06 11:16 - 00707048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2014-06-11 09:15 - 2014-04-06 11:16 - 00669856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2014-06-11 09:15 - 2014-04-06 11:16 - 00518544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2014-06-11 09:15 - 2014-04-06 11:16 - 00406504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2014-06-11 09:15 - 2014-04-06 11:16 - 00387896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2014-06-11 09:15 - 2014-04-06 11:16 - 00326024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2014-06-11 09:15 - 2014-04-06 11:16 - 00305768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2014-06-11 09:15 - 2014-04-06 08:58 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\srclient.dll
2014-06-11 09:15 - 2014-04-06 08:51 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll
2014-06-11 09:15 - 2014-04-06 08:33 - 00335872 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe
2014-06-11 09:15 - 2014-04-06 08:24 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\rstrui.exe
2014-06-11 09:15 - 2014-04-06 08:06 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srclient.dll
2014-06-11 09:15 - 2014-04-06 07:26 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll
2014-06-11 09:15 - 2014-04-06 07:20 - 00201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2014-06-11 09:15 - 2014-04-06 07:01 - 00834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2014-06-11 09:15 - 2014-04-06 06:52 - 00955904 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2014-06-11 09:15 - 2014-04-06 06:51 - 01230336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2014-06-11 09:15 - 2014-04-06 06:37 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2014-06-11 09:15 - 2014-04-06 06:36 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2014-06-11 09:15 - 2014-04-06 06:05 - 01222656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2014-06-11 09:15 - 2014-04-06 05:59 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll
2014-06-11 09:15 - 2014-04-03 04:12 - 00307304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2014-06-11 09:15 - 2014-04-03 04:12 - 00130144 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll
2014-06-11 09:15 - 2014-04-03 00:03 - 00230808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2014-06-11 09:15 - 2014-04-03 00:03 - 00111528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpapi.dll
2014-06-11 09:15 - 2014-04-02 22:53 - 04269056 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll
2014-06-11 09:15 - 2014-04-02 22:53 - 00677376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2014-06-11 09:15 - 2014-04-02 22:51 - 01584128 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll
2014-06-11 09:15 - 2014-04-02 22:23 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2014-06-11 09:15 - 2014-04-02 22:23 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tlscsp.dll
2014-06-11 09:15 - 2014-04-02 22:22 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\tlscsp.dll
2014-06-11 09:15 - 2014-04-01 02:23 - 00384856 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2014-06-11 09:15 - 2014-03-31 01:42 - 07425368 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2014-06-11 09:15 - 2014-03-30 20:41 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8thk.dll
2014-06-11 09:15 - 2014-03-30 20:01 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll
2014-06-11 09:15 - 2014-03-30 19:43 - 00761856 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll
2014-06-11 09:15 - 2014-03-30 18:49 - 01287168 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2014-06-11 09:15 - 2014-03-30 18:35 - 01029120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2014-06-11 09:15 - 2014-03-30 18:11 - 00721408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll
2014-06-11 09:15 - 2014-03-30 17:47 - 00872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe
2014-06-11 09:15 - 2014-03-28 11:58 - 00407016 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2014-06-11 09:15 - 2014-03-27 02:16 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2014-06-11 09:15 - 2014-03-27 01:36 - 00281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2014-06-11 09:15 - 2014-03-27 00:59 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2014-06-11 09:15 - 2014-03-27 00:48 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2014-06-11 09:15 - 2014-03-27 00:19 - 00313344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2014-06-11 09:15 - 2014-03-26 23:46 - 00323072 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll
2014-06-11 09:15 - 2014-03-26 23:15 - 00718336 _____ (Microsoft Corporation) C:\WINDOWS\system32\swprv.dll
2014-06-11 09:15 - 2014-03-26 23:10 - 01436160 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe
2014-06-11 09:15 - 2014-03-24 18:58 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2014-06-11 09:15 - 2014-03-19 23:48 - 00263424 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2014-06-11 09:15 - 2014-03-19 04:15 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll
2014-06-11 09:15 - 2014-03-19 04:07 - 00443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2014-06-11 09:15 - 2014-03-19 03:24 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2014-06-11 09:15 - 2014-03-19 03:17 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanhlp.dll
2014-06-11 09:15 - 2014-03-19 02:36 - 01057280 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll
2014-06-11 09:15 - 2014-03-19 01:56 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvidcrl.dll
2014-06-11 09:15 - 2014-03-19 01:45 - 00443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2014-06-11 09:15 - 2014-03-19 01:19 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2014-06-11 09:15 - 2014-03-19 01:07 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2014-06-11 09:15 - 2014-03-19 01:02 - 01527296 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2014-06-11 09:15 - 2014-03-19 01:00 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll
2014-06-11 09:15 - 2014-03-19 00:51 - 00300544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanmsm.dll
2014-06-11 09:15 - 2014-03-19 00:31 - 02100736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll
2014-06-11 09:15 - 2014-03-18 04:19 - 00077312 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys
2014-06-11 09:15 - 2014-03-17 01:09 - 00462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll
2014-06-11 09:15 - 2014-03-17 00:11 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsGdiConverter.dll
2014-06-11 09:15 - 2014-03-16 23:01 - 00486912 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2014-06-11 09:15 - 2014-03-16 22:47 - 01025024 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2014-06-11 09:15 - 2014-03-16 22:45 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2014-06-11 09:15 - 2014-03-14 02:26 - 00491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\GeofenceMonitorService.dll
2014-06-11 09:15 - 2014-03-14 02:10 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GeofenceMonitorService.dll
2014-06-11 09:15 - 2014-03-06 08:42 - 00310616 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys
2014-06-11 09:15 - 2014-01-27 14:21 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2014-06-11 09:14 - 2014-05-01 09:31 - 03048904 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2014-06-11 09:14 - 2014-05-01 09:31 - 00055328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wpcfltr.sys
2014-06-11 09:14 - 2014-05-01 03:14 - 03118080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2014-06-11 09:14 - 2014-05-01 03:05 - 02861056 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebSync.dll
2014-06-11 09:14 - 2014-05-01 02:51 - 02344448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
2014-06-11 09:14 - 2014-05-01 01:24 - 02834944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpccpl.dll
 
==================== One Month Modified Files and Folders =======
 
2014-07-11 22:41 - 2014-07-11 22:17 - 00029819 _____ () C:\Users\mlpwa_000\Downloads\FRST.txt
2014-07-11 22:41 - 2014-07-11 22:17 - 00000000 ____D () C:\FRST
2014-07-11 22:40 - 2012-12-28 21:44 - 00000924 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-07-11 22:40 - 2012-12-28 13:05 - 00000000 ____D () C:\Users\mlpwa_000\AppData\Roaming\Spotify
2014-07-11 22:39 - 2012-12-28 14:04 - 00000000 ____D () C:\Users\mlpwa_000\AppData\Roaming\uTorrent
2014-07-11 22:38 - 2014-07-11 22:06 - 00000000 ____D () C:\AdwCleaner
2014-07-11 22:38 - 2012-12-27 14:38 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2031069764-3806016151-2292297852-1001
2014-07-11 22:37 - 2014-04-14 06:47 - 00000000 __RDO () C:\Users\mlpwa_000\OneDrive
2014-07-11 22:37 - 2013-02-10 17:25 - 00000000 ____D () C:\Users\mlpwa_000\AppData\Roaming\Skype
2014-07-11 22:36 - 2012-08-10 20:45 - 00000821 _____ () C:\WINDOWS\SysWOW64\bscs.ini
2014-07-11 22:35 - 2013-03-17 12:10 - 00004182 _____ () C:\WINDOWS\System32\Tasks\avast! Emergency Update
2014-07-11 22:35 - 2012-12-28 21:43 - 00000920 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-07-11 22:35 - 2012-08-31 18:57 - 00004524 _____ () C:\WINDOWS\SysWOW64\LOCALSERVICE.INI
2014-07-11 22:33 - 2013-08-22 10:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-07-11 22:33 - 2013-03-10 17:07 - 00000294 _____ () C:\WINDOWS\Tasks\AutoKMS.job
2014-07-11 22:33 - 2012-08-31 18:57 - 00000043 _____ () C:\WINDOWS\SysWOW64\LOCALDEVICE.INI
2014-07-11 22:31 - 2014-07-11 22:29 - 00000245 _____ () C:\Users\mlpwa_000\Downloads\Search.txt
2014-07-11 22:31 - 2012-12-27 14:30 - 00003946 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{CB58ABED-DDCF-43AB-83E6-5CD333F7D449}
2014-07-11 22:30 - 2014-07-11 22:30 - 00000313 _____ () C:\Users\mlpwa_000\Desktop\New Text Document.txt
2014-07-11 22:22 - 2014-07-11 22:26 - 00000313 _____ () C:\fixlist.txt
2014-07-11 22:21 - 2014-07-11 22:21 - 00046608 _____ () C:\Users\mlpwa_000\Downloads\Shortcut.txt
2014-07-11 22:21 - 2014-07-11 22:18 - 00039332 _____ () C:\Users\mlpwa_000\Downloads\Addition.txt
2014-07-11 22:20 - 2013-05-18 19:28 - 00000944 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-2031069764-3806016151-2292297852-1001UA.job
2014-07-11 22:17 - 2014-07-11 22:17 - 02084864 _____ (Farbar) C:\Users\mlpwa_000\Downloads\FRST64.exe
2014-07-11 22:10 - 2014-03-18 05:54 - 00027192 _____ () C:\WINDOWS\PFRO.log
2014-07-11 22:10 - 2013-08-22 09:25 - 00524288 ___SH () C:\WINDOWS\system32\config\BBI
2014-07-11 22:06 - 2014-07-11 22:05 - 01348263 _____ () C:\Users\mlpwa_000\Downloads\adwcleaner_3.215.exe
2014-07-11 22:06 - 2013-05-13 17:36 - 00000830 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-07-11 22:05 - 2014-07-11 22:05 - 00000000 ____D () C:\WINDOWS\ERUNT
2014-07-11 22:04 - 2014-07-11 22:04 - 01016261 _____ (Thisisu) C:\Users\mlpwa_000\Downloads\JRT.exe
2014-07-11 22:04 - 2014-07-11 22:04 - 00032512 _____ () C:\WINDOWS\system32\Drivers\hitmanpro37.sys
2014-07-11 22:04 - 2014-07-11 22:04 - 00000000 ____D () C:\ProgramData\HitmanPro
2014-07-11 22:04 - 2014-07-11 22:03 - 11185664 _____ (SurfRight B.V.) C:\Users\mlpwa_000\Downloads\HitmanPro_x64.exe
2014-07-11 22:02 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\system32\sru
2014-07-11 21:54 - 2014-07-11 21:54 - 00029160 _____ () C:\WINDOWS\SysWOW64\Drivers\TrueSight.sys
2014-07-11 21:54 - 2014-07-11 21:54 - 00000000 ____D () C:\ProgramData\RogueKiller
2014-07-11 21:53 - 2014-07-11 21:53 - 04770392 _____ () C:\Users\mlpwa_000\Downloads\RogueKiller.exe
2014-07-11 21:48 - 2014-07-11 21:48 - 01942776 _____ (Bleeping Computer, LLC) C:\Users\mlpwa_000\Downloads\rkill.exe
2014-07-11 21:48 - 2014-07-11 21:48 - 01062136 _____ (Bleeping Computer, LLC) C:\Users\mlpwa_000\Downloads\rkill64.exe
2014-07-11 21:48 - 2014-07-11 21:48 - 00001616 _____ () C:\Users\mlpwa_000\Desktop\Rkill.txt
2014-07-11 21:40 - 2014-07-11 21:05 - 00122584 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2014-07-11 21:35 - 2012-07-26 04:12 - 00000000 ____D () C:\WINDOWS\TAPI
2014-07-11 21:23 - 2014-07-11 21:23 - 04181856 _____ (Kaspersky Lab ZAO) C:\Users\mlpwa_000\Downloads\tdsskiller.exe
2014-07-11 21:08 - 2014-01-27 23:08 - 00000000 ____D () C:\Program Files (x86)\IB Questionbank32
2014-07-11 21:05 - 2014-07-11 21:05 - 00001118 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-07-11 21:05 - 2014-07-11 21:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-07-11 21:05 - 2014-07-11 21:05 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-07-11 21:05 - 2013-08-18 00:08 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-07-11 21:04 - 2014-07-11 21:01 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\mlpwa_000\Downloads\mbam-setup-2.0.2.1012.exe
2014-07-11 21:02 - 2013-01-07 21:57 - 00000964 _____ () C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-2031069764-3806016151-2292297852-1001UA.job
2014-07-11 21:02 - 2013-01-07 21:57 - 00000942 _____ () C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-2031069764-3806016151-2292297852-1001Core.job
2014-07-11 20:03 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\rescache
2014-07-11 18:53 - 2014-04-14 00:54 - 01986767 _____ () C:\WINDOWS\WindowsUpdate.log
2014-07-11 18:33 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\AppReadiness
2014-07-11 09:25 - 2012-12-28 13:05 - 00000000 ____D () C:\Users\mlpwa_000\AppData\Local\Spotify
2014-07-10 18:45 - 2014-01-22 21:06 - 00000000 ____D () C:\Program Files\Microsoft Office 15
2014-07-10 18:20 - 2013-08-22 10:44 - 00482040 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-07-10 18:18 - 2013-08-22 11:36 - 00000000 ___RD () C:\WINDOWS\ToastData
2014-07-10 18:18 - 2013-08-22 11:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-07-10 18:18 - 2013-08-22 11:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-07-10 18:18 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\WinStore
2014-07-10 17:20 - 2013-05-18 19:28 - 00000892 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-2031069764-3806016151-2292297852-1001Core.job
2014-07-09 23:05 - 2013-01-04 14:20 - 03014656 ___SH () C:\Users\mlpwa_000\Desktop\Thumbs.db
2014-07-09 21:39 - 2012-12-27 14:27 - 00000000 ____D () C:\Users\mlpwa_000\AppData\Local\Packages
2014-07-09 19:52 - 2013-08-16 09:51 - 00000000 ____D () C:\WINDOWS\system32\MRT
2014-07-09 19:52 - 2012-07-26 03:59 - 00000000 ____D () C:\WINDOWS\CbsTemp
2014-07-09 19:50 - 2013-08-22 09:25 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM
2014-07-09 19:50 - 2012-12-29 10:56 - 96441528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2014-07-09 19:49 - 2014-07-09 19:49 - 00000000 ___SD () C:\WINDOWS\system32\CompatTel
2014-07-09 19:49 - 2014-03-18 05:45 - 00000000 ____D () C:\Program Files\Windows Journal
2014-07-09 19:07 - 2014-07-09 19:07 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe
2014-07-08 22:59 - 2014-04-14 00:34 - 00000000 ____D () C:\Users\mlpwa_000
2014-07-08 14:47 - 2014-07-08 14:46 - 05363712 _____ () C:\Users\mlpwa_000\Downloads\B06-Erikson-20140625.ppt
2014-07-08 14:46 - 2014-07-08 14:46 - 06501888 _____ () C:\Users\mlpwa_000\Downloads\B02-Freud-201406022.ppt
2014-07-08 14:45 - 2014-07-08 14:45 - 04490752 _____ () C:\Users\mlpwa_000\Downloads\B01-Introduction-Student.ppt
2014-07-08 14:07 - 2013-05-13 17:36 - 00003718 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2014-07-08 13:50 - 2013-07-27 01:41 - 00000902 _____ () C:\Users\mlpwa_000\Desktop\µTorrent.lnk
2014-07-08 13:50 - 2013-07-27 01:41 - 00000882 _____ () C:\Users\mlpwa_000\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk
2014-07-06 23:12 - 2014-07-06 23:12 - 00001075 _____ () C:\Users\mlpwa_000\Desktop\Notepad++.lnk
2014-07-06 23:12 - 2014-07-06 23:12 - 00000000 ____D () C:\Users\mlpwa_000\AppData\Roaming\Notepad++
2014-07-06 23:12 - 2014-07-06 23:12 - 00000000 ____D () C:\Users\mlpwa_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++
2014-07-06 23:12 - 2014-07-06 23:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++
2014-07-06 23:12 - 2014-07-06 23:12 - 00000000 ____D () C:\Program Files (x86)\Notepad++
2014-07-06 23:10 - 2014-07-06 23:07 - 07674224 _____ () C:\Users\mlpwa_000\Downloads\npp.6.6.7.Installer.exe
2014-07-05 01:02 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\tracing
2014-07-05 00:47 - 2014-07-02 22:02 - 00000000 ____D () C:\Users\mlpwa_000\AppData\Roaming\TunnelBear
2014-07-05 00:44 - 2014-07-05 00:44 - 14486624 _____ (TunnelBear) C:\Users\mlpwa_000\Downloads\TBear-2014-06-18 (1).exe
2014-07-04 23:26 - 2014-07-02 22:00 - 00000000 ____D () C:\Users\mlpwa_000\AppData\Local\HockeyCrashes
2014-07-04 00:56 - 2014-03-18 06:03 - 00956476 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2014-07-04 00:34 - 2014-07-04 00:34 - 00000000 ____D () C:\Users\mlpwa_000\Downloads\Learn Python The Hard Way
2014-07-04 00:33 - 2014-07-04 00:33 - 00023169 _____ () C:\Users\mlpwa_000\Downloads\[kickass.to]learn.python.the.hard.way.3rd.edition.videos.torrent
2014-07-04 00:22 - 2014-07-04 00:22 - 25355330 _____ () C:\Users\mlpwa_000\Downloads\python-2.7.8-pdb.zip
2014-07-04 00:19 - 2014-07-04 00:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Python 2.7
2014-07-04 00:19 - 2014-07-04 00:18 - 00000000 ____D () C:\Python27
2014-07-04 00:17 - 2014-07-04 00:15 - 16703488 _____ () C:\Users\mlpwa_000\Downloads\python-2.7.8.msi
2014-07-03 17:40 - 2012-12-29 13:16 - 00000000 ____D () C:\Users\mlpwa_000\AppData\Local\Unity
2014-07-03 17:39 - 2012-12-29 14:00 - 00000000 ____D () C:\ProgramData\NexonUS
2014-07-02 22:01 - 2014-07-02 22:01 - 00003374 _____ () C:\WINDOWS\System32\Tasks\TunnelBear
2014-07-02 22:00 - 2014-07-02 22:00 - 00000000 ____D () C:\Users\mlpwa_000\AppData\Local\IsolatedStorage
2014-07-02 21:57 - 2014-07-02 21:57 - 14486624 _____ (TunnelBear) C:\Users\mlpwa_000\Downloads\TBear-2014-06-18.exe
2014-07-02 21:55 - 2014-07-02 21:55 - 00002172 _____ () C:\Users\Public\Desktop\Foxit Reader.lnk
2014-07-02 21:55 - 2014-07-02 21:55 - 00000000 ____D () C:\Users\Public\Foxit Software
2014-07-02 21:55 - 2014-07-02 21:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader
2014-07-02 20:56 - 2014-06-30 10:50 - 00000000 ____D () C:\Users\mlpwa_000\Downloads\Theories of Personality - Schultz 10th & Ryckman 9th
2014-07-02 20:56 - 2012-12-28 14:23 - 03097088 ___SH () C:\Users\mlpwa_000\Downloads\Thumbs.db
2014-06-30 22:54 - 2014-06-30 22:54 - 00192512 _____ () C:\Users\mlpwa_000\Downloads\alan.ppt
2014-06-30 18:45 - 2014-07-09 19:13 - 00688128 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepdu.dll
2014-06-30 17:39 - 2014-03-20 17:23 - 00000079 _____ () C:\Users\mlpwa_000\Desktop\Password.txt
2014-06-30 16:03 - 2014-06-30 16:03 - 02454016 _____ (Python Software Foundation) C:\WINDOWS\SysWOW64\python27.dll
2014-06-29 20:33 - 2014-06-28 23:19 - 00000000 ____D () C:\Users\mlpwa_000\Downloads\[2002-03] 24 Season 2 [DVD RIP]
2014-06-29 16:16 - 2014-06-23 17:58 - 00000000 ____D () C:\Users\mlpwa_000\Desktop\Chemistry Segment 2
2014-06-28 23:18 - 2014-06-28 23:18 - 00044094 _____ () C:\Users\mlpwa_000\Downloads\[kickass.to]24.season.2.2002.2003.dvdrip.torrent
2014-06-28 23:09 - 2014-06-28 23:09 - 00393867 _____ () C:\Users\mlpwa_000\Downloads\[kickass.to]24.season.1.2.3.4.5.6.7.8.deluxe.dvd.boxset.in.hd.ext (1).torrent
2014-06-28 23:08 - 2014-06-28 23:08 - 00282456 _____ () C:\Users\mlpwa_000\Downloads\[kickass.to]24.complete.series.season.1.2.3.4.5.6.7.8.prequels.extras.m.torrent
2014-06-28 21:37 - 2014-06-28 21:37 - 63630453 _____ (Flexera Software) C:\Users\mlpwa_000\Downloads\ePatLauncherInstall217 (1).exe
2014-06-28 21:30 - 2014-06-28 21:29 - 00000000 ___HD () C:\Program Files (x86)\Zero G Registry
2014-06-28 21:29 - 2014-06-28 21:29 - 00000000 ___HD () C:\Users\mlpwa_000\InstallAnywhere
2014-06-28 21:27 - 2014-06-28 21:27 - 63630453 _____ (Flexera Software) C:\Users\mlpwa_000\Downloads\ePatLauncherInstall217.exe
2014-06-28 03:48 - 2014-07-09 19:13 - 00527360 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2014-06-28 03:07 - 2014-07-09 19:13 - 00385536 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2014-06-26 16:55 - 2013-08-22 11:38 - 00703968 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2014-06-26 16:55 - 2013-08-22 11:38 - 00105440 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2014-06-25 19:45 - 2014-06-25 19:45 - 00000000 ____D () C:\Users\mlpwa_000\AppData\Local\Macromedia
2014-06-25 19:42 - 2013-08-22 10:46 - 00313244 _____ () C:\WINDOWS\setupact.log
2014-06-25 19:26 - 2014-06-25 19:26 - 00001175 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-06-25 19:26 - 2014-06-25 19:26 - 00001163 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-06-25 19:26 - 2014-06-25 19:26 - 00000000 ____D () C:\Users\mlpwa_000\AppData\Local\Mozilla
2014-06-25 19:26 - 2014-06-25 19:26 - 00000000 ____D () C:\ProgramData\Mozilla
2014-06-25 19:26 - 2014-06-25 19:26 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-06-25 19:26 - 2014-06-07 06:14 - 00000000 ____D () C:\Users\mlpwa_000\AppData\Roaming\Mozilla
2014-06-25 19:26 - 2013-02-16 18:58 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-06-25 19:25 - 2014-06-25 19:25 - 00284224 _____ (Mozilla) C:\Users\mlpwa_000\Downloads\Firefox Setup Stub 30.0.exe
2014-06-25 18:14 - 2014-06-25 18:14 - 00016448 _____ () C:\Users\mlpwa_000\Downloads\Sample1283.zip
2014-06-24 00:18 - 2014-06-23 22:47 - 00000000 ____D () C:\Users\mlpwa_000\Downloads\24 Season 1
2014-06-23 22:45 - 2014-06-23 22:45 - 00046856 _____ () C:\Users\mlpwa_000\Downloads\[kickass.to]24.season.1.torrent
2014-06-23 22:44 - 2014-06-23 22:44 - 00393867 _____ () C:\Users\mlpwa_000\Downloads\[kickass.to]24.season.1.2.3.4.5.6.7.8.deluxe.dvd.boxset.in.hd.ext.torrent
2014-06-22 22:35 - 2014-06-22 22:35 - 00010651 _____ () C:\Users\mlpwa_000\Downloads\meeting (8).jnlp
2014-06-22 16:52 - 2014-06-22 16:52 - 00004835 _____ () C:\Users\mlpwa_000\Desktop\Module 9 Quiz Geometry.ggb
2014-06-20 15:35 - 2012-12-28 21:44 - 00003896 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2014-06-20 15:35 - 2012-12-28 21:43 - 00003660 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2014-06-19 23:34 - 2013-02-10 17:25 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-06-19 23:34 - 2013-02-10 17:24 - 00000000 ____D () C:\ProgramData\Skype
2014-06-18 21:39 - 2014-07-09 19:15 - 23464448 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2014-06-18 20:48 - 2014-07-09 19:14 - 02768384 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2014-06-18 20:16 - 2014-07-09 19:15 - 17276416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2014-06-18 20:09 - 2014-07-09 19:14 - 00452608 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll
2014-06-18 19:51 - 2014-07-09 19:15 - 05721088 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2014-06-18 19:50 - 2014-07-09 19:14 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2014-06-18 19:48 - 2014-07-09 19:14 - 00292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2014-06-18 19:46 - 2014-07-09 19:15 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2014-06-18 19:39 - 2014-07-09 19:14 - 00608768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2014-06-18 19:33 - 2014-07-09 19:14 - 00631808 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2014-06-18 19:32 - 2014-07-09 19:14 - 02179072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2014-06-18 19:27 - 2014-07-09 19:14 - 02040832 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2014-06-18 19:12 - 2014-07-09 19:14 - 00367616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll
2014-06-18 18:59 - 2014-07-09 19:14 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2014-06-18 18:58 - 2014-07-09 19:14 - 02266112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2014-06-18 18:58 - 2014-07-09 19:14 - 00239616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2014-06-18 18:57 - 2014-07-09 19:15 - 00225280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2014-06-18 18:52 - 2014-07-09 19:15 - 04254720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2014-06-18 18:51 - 2014-07-09 19:15 - 13527040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2014-06-18 18:49 - 2014-07-09 19:14 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2014-06-18 18:45 - 2014-07-09 19:14 - 01964544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2014-06-18 18:35 - 2014-07-09 19:15 - 11742208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2014-06-18 18:34 - 2014-07-09 19:14 - 01393664 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2014-06-18 18:15 - 2014-07-09 19:14 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2014-06-18 18:13 - 2014-07-09 19:14 - 01791488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2014-06-18 18:09 - 2014-07-09 19:14 - 01139200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2014-06-18 18:07 - 2014-07-09 19:14 - 00704512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2014-06-18 17:15 - 2013-05-18 19:28 - 00003898 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2031069764-3806016151-2292297852-1001UA
2014-06-18 17:15 - 2013-05-18 19:28 - 00003518 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2031069764-3806016151-2292297852-1001Core
2014-06-18 13:44 - 2014-06-18 13:44 - 00010574 _____ () C:\Users\mlpwa_000\Downloads\meeting (7).jnlp
2014-06-17 12:06 - 2014-06-17 12:06 - 00039168 _____ (The OpenVPN Project) C:\WINDOWS\system32\Drivers\tap-tb-0901.sys
2014-06-16 18:26 - 2014-07-09 19:15 - 00779264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\osk.exe
2014-06-16 18:24 - 2014-07-09 19:15 - 00834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\osk.exe
2014-06-15 17:49 - 2013-01-08 07:10 - 00000000 ___RD () C:\Users\mlpwa_000\Podcasts
2014-06-15 17:39 - 2013-08-22 11:36 - 00000000 ___RD () C:\WINDOWS\ImmersiveControlPanel
2014-06-15 17:39 - 2013-08-22 09:36 - 00000000 ____D () C:\WINDOWS\system32\oobe
2014-06-12 18:55 - 2014-06-12 18:55 - 00010596 _____ () C:\Users\mlpwa_000\Downloads\meeting (6).jnlp
 
==================== Bamital & volsnap Check =================
 
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
 
 
LastRegBack: 2014-07-11 00:02
 
==================== End Of Log ============================

  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP