Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Getting a hard drive failure pop up, possible virus? [Solved]


  • This topic is locked This topic is locked

#16
Biscuithd

Biscuithd

    Trusted Helper

  • Malware Removal
  • 2,573 posts

ah okay, misread that last instruction.

 

No problem, I do it all the time ;)

 

 

anyhow things are running smoothly

 

That's good to hear! However, I found a few more items to remove and the instructions for that are below.

 

 

though that popup keeps coming up

 

I sure would like to see what that Pop-Up looks like. Here are instructions for capturing and posting a Screen Shot. Here.

 

Next, there are some nefarious tool bars, etc. They are part of the uninstall list, so let start by asking nicely via Add/Remove Programs.

 

Here is a link that will coach you though the process of finding the Add/Remove Programs area within Windows 7

 

Once you get there, look for the following programs and Remove or Uninstall them.

 

Ask Shopping Toolbar
Ask Toolbar
YTD Toolbar v6.6
YTD Video Downloader 4.8.8
QuickShare

 

I won't be a bit surprised if you either can't find the program within the Installed Programs List or the Programs won't uninstall easily. So, one you've finished the process and had as much success as you can, then run the FRST Fix which will remove what was missed by Uninstall.

 

FRST.gif Fix with Farbar Recovery Scan Tool
 

icon_exclaim.gif This fix was created for this user for use on that particular machine. icon_exclaim.gif
icon_exclaim.gif Running it on another one may cause damage and render the system unstable. icon_exclaim.gif

Press the WindowsKey.png + R on your keyboard at the same time. Type Notepad and click OK.

  • Copy the entire content of the codebox below and paste into the Notepad document:
    start
    
    Ask Shopping Toolbar (HKLM-x32\...\{4D594333-2D53-4154-00A7-A758B70C0100}) (Version: 12.1.0.365 - Ask Partner Network) <==== ATTENTION
    
    Ask Shopping Toolbar (HKLM-x32\...\{4F564F32-5637-2D53-4154-A758B70C0202}) (Version: 12.2.2.666 - Ask Partner Network) <==== ATTENTION
    
    Ask Toolbar (HKLM-x32\...\{4D594333-0076-A76A-76A7-A758B70B0500}) (Version: 11.5.0.792 - Ask Partner Network) <==== ATTENTION
    
    Ask Toolbar (HKLM-x32\...\{4D594333-2D56-3700-76A7-A758B70C0202}) (Version: 12.2.2.653 - Ask Partner Network) <==== ATTENTION
    
    YTD Toolbar v6.6 (HKLM-x32\...\{3ECECC41-64EC-47F7-BCD1-6EC7039FF88A}) (Version: 6.6 - Spigot, Inc.) <==== ATTENTION
    
    YTD Video Downloader 4.8.8 (HKLM-x32\...\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}) (Version: 4.8.8 - GreenTree Applications SRL) <==== ATTENTION
    
    QuickShare (HKLM-x32\...\{04DB50FA-EA80-4256-85F9-540C582E280D}) (Version: 1.39.60.10936 - Linkury Inc.) <==== ATTENTION
    
    end
  • Click File, Save As and type fixlist.txt as the File Name.

Both files, FRST and fixlist.txt have to be in the same location or the fix will not work!


  • Right-click on FRST.gif icon and select RunAsAdmin.jpg Run as Administrator to start the tool.
    (XP users click run after receipt of Windows Security Warning - Open File).
  • Press the Fix button just once and wait.
  • If for some reason the tool needs a restart, please make sure you let the system restart normally. After that let the tool complete its run.
  • When finished FRST will generate a log on the Desktop, called Fixlog.txt.

Please post it to your reply.
 

 

Then, re-run FRST and post a fresh scan please.

 

To summarize, you'll owe me a Screen Shot of the Pop-Up, the FRST Fix log, and a fresh FRST log (2 files).


  • 0

Advertisements


#17
Lucky Dearly

Lucky Dearly

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 299 posts

okay got the screenshot

 

mhac2b.jpg

 

next the fixlog

 

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 07-01-2015
Ran by gamerpc at 2015-01-09 14:02:29 Run:3
Running from C:\Users\gamerpc\Desktop
Loaded Profile: gamerpc (Available profiles: gamerpc & Alex Valencia & Mario Valencia & Veronica Valencia)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
start

Ask Shopping Toolbar (HKLM-x32\...\{4D594333-2D53-4154-00A7-A758B70C0100}) (Version: 12.1.0.365 - Ask Partner Network) <==== ATTENTION

Ask Shopping Toolbar (HKLM-x32\...\{4F564F32-5637-2D53-4154-A758B70C0202}) (Version: 12.2.2.666 - Ask Partner Network) <==== ATTENTION

Ask Toolbar (HKLM-x32\...\{4D594333-0076-A76A-76A7-A758B70B0500}) (Version: 11.5.0.792 - Ask Partner Network) <==== ATTENTION

Ask Toolbar (HKLM-x32\...\{4D594333-2D56-3700-76A7-A758B70C0202}) (Version: 12.2.2.653 - Ask Partner Network) <==== ATTENTION

YTD Toolbar v6.6 (HKLM-x32\...\{3ECECC41-64EC-47F7-BCD1-6EC7039FF88A}) (Version: 6.6 - Spigot, Inc.) <==== ATTENTION

YTD Video Downloader 4.8.8 (HKLM-x32\...\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}) (Version: 4.8.8 - GreenTree Applications SRL) <==== ATTENTION

QuickShare (HKLM-x32\...\{04DB50FA-EA80-4256-85F9-540C582E280D}) (Version: 1.39.60.10936 - Linkury Inc.) <==== ATTENTION

end
*****************

Ask Shopping Toolbar (HKLM-x32\...\{4D594333-2D53-4154-00A7-A758B70C0100}) (Version: 12.1.0.365 - Ask Partner Network) <==== ATTENTION => Error: No automatic fix found for this entry.
Ask Shopping Toolbar (HKLM-x32\...\{4F564F32-5637-2D53-4154-A758B70C0202}) (Version: 12.2.2.666 - Ask Partner Network) <==== ATTENTION => Error: No automatic fix found for this entry.
Ask Toolbar (HKLM-x32\...\{4D594333-0076-A76A-76A7-A758B70B0500}) (Version: 11.5.0.792 - Ask Partner Network) <==== ATTENTION => Error: No automatic fix found for this entry.
Ask Toolbar (HKLM-x32\...\{4D594333-2D56-3700-76A7-A758B70C0202}) (Version: 12.2.2.653 - Ask Partner Network) <==== ATTENTION => Error: No automatic fix found for this entry.
YTD Toolbar v6.6 (HKLM-x32\...\{3ECECC41-64EC-47F7-BCD1-6EC7039FF88A}) (Version: 6.6 - Spigot, Inc.) <==== ATTENTION => Error: No automatic fix found for this entry.
YTD Video Downloader 4.8.8 (HKLM-x32\...\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}) (Version: 4.8.8 - GreenTree Applications SRL) <==== ATTENTION => Error: No automatic fix found for this entry.
QuickShare (HKLM-x32\...\{04DB50FA-EA80-4256-85F9-540C582E280D}) (Version: 1.39.60.10936 - Linkury Inc.) <==== ATTENTION => Error: No automatic fix found for this entry.

==== End of Fixlog 14:02:29 ====

 

I'll do the fresh FRST log next


  • 0

#18
Lucky Dearly

Lucky Dearly

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 299 posts

here's the FRST Log

 

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 07-01-2015
Ran by gamerpc (administrator) on GAMER on 09-01-2015 14:28:28
Running from C:\Users\gamerpc\Desktop
Loaded Profile: gamerpc (Available profiles: gamerpc & Alex Valencia & Mario Valencia & Veronica Valencia)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: English (United States)
Internet Explorer Version 10 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCService.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(Creative Technology Ltd) C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore64.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(SlimWare Utilities, Inc.) C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(CyberLink) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe
(CyberLink) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Intel® Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\Jhi_service.exe
(Eastman Kodak Company) C:\Program Files (x86)\Kodak\AiO\Center\EKAiOHostService.exe
(Eastman Kodak Company) C:\Program Files (x86)\Kodak\AiO\StatusMonitor\EKPrinterSDK.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Motorola Mobility LLC) C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe
(Nero AG) C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Motorola) C:\Program Files (x86)\Motorola\MotForwardDaemon\ForwardDaemon.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(StarWind Software) C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
(VIA Technologies, Inc.) C:\Windows\System32\ViakaraokeSrv.exe
(WDC) C:\Program Files\Western Digital\WD SmartWare\WDDMService.exe
(Western Digital) C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe
(Western Digital ) C:\Program Files\Western Digital\WD SmartWare\WDRulesEngine.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
(Western Digital ) C:\Program Files\Western Digital\WD SmartWare\WDFME.exe
(IObit) C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(VIA) C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Western Digital Technologies, Inc.) C:\Program Files\Western Digital\WD SmartWare\WDDMStatus.exe
(Microsoft Corporation) C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe
(Microsoft Corporation) C:\Program Files\Zune\ZuneLauncher.exe
(Eastman Kodak Company) C:\Windows\System32\spool\drivers\x64\3\EKIJ5000MUI.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(AOL Inc.) C:\Program Files (x86)\AIM\aim.exe
(ooVoo LLC) C:\Program Files (x86)\ooVoo\ooVoo.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Yahoo! Inc.) C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe
(Microsoft Corporation) C:\Users\gamerpc\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe
(Disc Soft Ltd) C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe
(Yahoo! Inc.) C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMP\CLHNServer\CLHNServiceForPowerDVD12.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
(Visicom Media Inc.) C:\Program Files (x86)\ManyCam\ManyCam.exe
(SUPERAntiSpyware) C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
(SlySoft, Inc.) C:\Program Files (x86)\SlySoft\CloneCD\CloneCDTray.exe
(Creative Technology Ltd) C:\Program Files (x86)\InstallShield Installation Information\{F3D9AC82-30F4-4BB9-B9AB-8697637568C1}\AMBSPISyncService.exe
(Macrovision Europe Ltd.) C:\Users\gamerpc\AppData\Local\Temp\Sound_Blaster_X-Fi_MB_Cleanup.0001
(AOL Inc.) C:\Program Files (x86)\Common Files\AOL\1352139576\ee\aolsoftware.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
(CyberLink) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe
(Creative Technology Ltd) C:\Program Files (x86)\Creative\SB X-Fi MB\Volume Panel\VolPanlu.exe
(Western Digital) C:\Program Files (x86)\Western Digital\WD Apps\WDDriveAutoUnlock.exe
(Nullsoft, Inc.) C:\Program Files (x86)\Winamp\winampa.exe
(FNet Co., Ltd.) C:\Program Files (x86)\XFastUSB\XFastUsb.exe
() C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Creative Labs) C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\XMBLicensing.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\csisyncclient.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Windows\System32\UI0Detect.exe
(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(Motorola Mobility LLC) C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperAgent.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Google Inc.) C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_32.exe
(Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil64_16_0_0_235_ActiveX.exe
(Adblock) C:\Program Files (x86)\IObit\IObit Malware Fighter\adsremoval\IE\Adblock.exe
(Microsoft Corporation) C:\Windows\System32\MsSpellCheckingFacility.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe

==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [HDAudDeck] => C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [5299320 1999-12-31] (VIA)
HKLM\...\Run: [RunDLLEntry] => C:\Windows\system32\RunDLL32.exe C:\Windows\system32\AmbRunE.dll,RunDLLEntry
HKLM\...\Run: [WD Quick View] => C:\Program Files\Western Digital\WD SmartWare\WDDMStatus.exe [4244888 2011-12-15] (Western Digital Technologies, Inc.)
HKLM\...\Run: [XboxStat] => C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [825184 2009-09-30] (Microsoft Corporation)
HKLM\...\Run: [Zune Launcher] => C:\Program Files\Zune\ZuneLauncher.exe [163552 2011-08-05] (Microsoft Corporation)
HKLM\...\Run: [EKIJ5000StatusMonitor] => C:\Windows\system32\spool\DRIVERS\x64\3\EKIJ5000MUI.exe [3182080 2012-10-08] (Eastman Kodak Company)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2531472 2014-12-12] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [MSC] => C:\Program Files\Microsoft Security Client\msseces.exe [1331288 2014-08-22] (Microsoft Corporation)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [60712 2014-10-11] (Apple Inc.)
HKLM-x32\...\Run: [CloneCDTray] => C:\Program Files (x86)\SlySoft\CloneCD\CloneCDTray.exe [57344 2009-01-29] (SlySoft, Inc.)
HKLM-x32\...\Run: [CTSyncService] => C:\Program Files (x86)\InstallShield Installation Information\{F3D9AC82-30F4-4BB9-B9AB-8697637568C1}\AMBSPISyncService.exe [1233195 2009-07-08] (Creative Technology Ltd)
HKLM-x32\...\Run: [DivXMediaServer] => C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [448856 2014-11-17] (DivX, LLC)
HKLM-x32\...\Run: [HDAudDeck] => C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [5299320 1999-12-31] (VIA)
HKLM-x32\...\Run: [HostManager] => C:\Program Files (x86)\Common Files\AOL\1352139576\ee\AOLSoftware.exe [41800 2010-03-07] (AOL Inc.)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe [283160 2010-11-05] (Intel Corporation)
HKLM-x32\...\Run: [LTCM Client] => C:\Program Files (x86)\LTCM Client\ltcmClient.exe [1596096 2009-08-05] (Leader Technologies Inc.)
HKLM-x32\...\Run: [PowerDVD12Agent] => C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12Agent.exe [374560 2012-09-17] (CyberLink Corp.)
HKLM-x32\...\Run: [PowerDVD12DMREngine] => C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe [505872 2012-09-17] (CyberLink)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [UpdReg] => C:\Windows\UpdReg.EXE [90112 2000-05-11] (Creative Technology Ltd.)
HKLM-x32\...\Run: [VolPanel] => C:\Program Files (x86)\Creative\SB X-Fi MB\Volume Panel\VolPanlu.exe [241789 2009-05-04] (Creative Technology Ltd)
HKLM-x32\...\Run: [WD Drive Unlocker] => C:\Program Files (x86)\Western Digital\WD Apps\WDDriveAutoUnlock.exe [1687968 2011-12-16] (Western Digital)
HKLM-x32\...\Run: [WinampAgent] => C:\Program Files (x86)\Winamp\winampa.exe [74752 2012-06-28] (Nullsoft, Inc.)
HKLM-x32\...\Run: [XFastUSB] => C:\Program Files (x86)\XFastUSB\XFastUsb.exe [5019360 2012-10-24] (FNet Co., Ltd.)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1021128 2014-11-20] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [EKStatusMonitor] => C:\Program Files (x86)\Kodak\AiO\StatusMonitor\EKStatusMonitor.exe [2750840 2013-01-15] (Eastman Kodak Company)
HKLM-x32\...\Run: [EKIJ5000StatusMonitor] => C:\Windows\system32\spool\DRIVERS\x64\3\EKIJ5000MUI.EXE
HKLM-x32\...\Run: [DivXUpdate] => C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1861968 2014-01-09] ()
HKLM-x32\...\Run: [amd_dc_opt] => C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe [77824 2008-07-22] (AMD)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [157480 2014-10-15] (Apple Inc.)
HKLM-x32\...\Run: [IObit Malware Fighter] => C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe [1802048 2014-10-13] (IObit)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-10-02] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [507776 2014-10-07] (Oracle Corporation)
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [3838800 2014-12-13] (LogMeIn Inc.)
HKLM-x32\...\RunOnce: [B Register C:\Program Files (x86)\DivX\DivX Transcode Engine\plugins\mc_demux_mp2_ds.ax] => "C:\Windows\system32\rundll32.exe" "C:\Program Files (x86)\DivX\DivX Transcode Engine\plugins\mc_demux_mp2_ds.ax",DllRegisterServer
HKLM\...\Policies\Explorer: [NoFolderOptions] 0
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKLM\...\Policies\Explorer: [NoSetFolders] 0
HKLM\...\Policies\Explorer: [NoTrayContextMenu] 0
HKLM\...\Policies\Explorer: [NoLogoff] 0
HKLM\...\Policies\Explorer: [NoWindowsUpdate] 0
HKLM\...\Policies\Explorer: [NoViewOnDrive] 0
HKLM\...\Policies\Explorer: [NoFind] 0
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Run: [AIM] => C:\Program Files (x86)\AIM\aim.exe [4331392 2012-05-30] (AOL Inc.)
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Run: [ooVoo.exe] => C:\Program Files (x86)\ooVoo\oovoo.exe [36202560 2014-09-01] (ooVoo LLC)
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [1942208 2015-01-08] (Valve Corporation)
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Run: [Messenger (Yahoo!)] => C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe [6595928 2012-05-25] (Yahoo! Inc.)
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Run: [swg] => C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2012-10-22] (Google Inc.)
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Run: [GoogleChromeAutoLaunch_B39D6C0379323E21774615E279B6C2EB] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [856904 2014-12-05] (Google Inc.)
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Run: [EvolveClient] => C:\Program Files\Echobit\Evolve\EvolveClient.exe [3327872 2015-01-09] (Echobit LLC)
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Run: [GameCompanion] => C:\Users\gamerpc\AppData\Roaming\GameCompanion\GameCompanion.exe [484408 2013-10-12] ()
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Run: [SkyDrive] => C:\Users\gamerpc\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe [277672 2014-09-24] (Microsoft Corporation)
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Run: [Google Update] => C:\Users\gamerpc\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2014-07-23] (Google Inc.)
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Run: [DAEMON Tools Pro Agent] => C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe [3129560 2014-02-24] (Disc Soft Ltd)
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [22065760 2014-10-01] (Skype Technologies S.A.)
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Run: [ManyCam] => C:\Program Files (x86)\ManyCam\ManyCam.exe [9726760 2014-12-22] (Visicom Media Inc.)
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [7780120 2014-12-15] (SUPERAntiSpyware)
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\RunOnce: [Adobe Speed Launcher] => 1420838408
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Policies\system: [NoDispCPL] 0
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Policies\Explorer: [NoFolderOptions] 0
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Policies\Explorer: [NoControlPanel] 0
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Policies\Explorer: [NoSetFolders] 0
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Policies\Explorer: [NoTrayContextMenu] 0
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Policies\Explorer: [NoLogoff] 0
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Policies\Explorer: [NoWindowsUpdate] 0
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Policies\Explorer: [NoViewOnDrive] 0
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Policies\Explorer: [NoFind] 0
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\MountPoints2: {4a8281cf-b917-11e3-8e42-00038a000015} - F:\TL-Bootstrap.exe
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\MountPoints2: {ee71e2ca-6586-11e2-9f76-806e6f6e6963} - "F:\WD SmartWare.exe" autoplay=true
HKU\S-1-5-18\...\Run: [Advanced SystemCare 8] => C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe [2425632 2014-11-17] (IObit)
HKU\S-1-5-18\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-18\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
ShellIconOverlayIdentifiers-x32: [ SkyDrivePro1 (ErrorConflict)] -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrivePro2 (SyncInProgress)] -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrivePro3 (InSync)] -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

ProxyEnable: [S-1-5-21-1692155839-1707551626-4126777635-1001] => Internet Explorer proxy is enabled.
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.wwe.com/
URLSearchHook: HKLM-x32 - AOL Messaging Toolbar Search Class - {03402f96-3dc7-4285-bc50-9e81fefafe43} - C:\Program Files (x86)\AIM Toolbar\aimtb.dll (AOL Inc.)
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001 -> DefaultScope {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.fas...&cc=US&unqvl=55
SearchScopes: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001 -> DDE0045B74094132960EC24A2BF4E399 URL = http://search.yahoo....&p={searchTerms}
SearchScopes: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001 -> {8F5AFE5A-C311-43C4-8F20-3A79CA4B8907} URL = http://www.bing.com/...rc=IE-SearchBox
SearchScopes: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001 -> {AF4567E4-9E84-41CA-AD29-EE3375472E02} URL = http://search.yahoo....&p={searchTerms}
SearchScopes: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001 -> {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.fas...&cc=US&unqvl=55
SearchScopes: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001 -> ÛŸÆîZ§’2¹Þpv¨IÍá*X(Ž2s(ÛÎÀJºÔÓµ± vË°!×—(ä¼48иpatm6êo^Mp`Ëõ÷_i£w˜¾!„Áû†x¢8€ÙjÀÿþ ´Ñ;áa´[¦†8 º~RÙxœòÜ8'£-)x­ä­ URL =
BHO: No Name -> {10921475-03CE-4E04-90CE-E2E7EF20C814} ->  No File
BHO: No Name -> {1CCA9AE6-6294-B0AB-7C5E-B7D269BCAA93} ->  No File
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO: No Name -> {BBFF95A7-A7D9-3C6D-671E-4711BCEA14A9} ->  No File
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll (Adblock Plus)
BHO-x32: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll (Oracle Corporation)
BHO-x32: Ads Removal -> {9D974C8C-6D92-44FB-BEAF-B45A1C0CF17F} -> C:\Program Files (x86)\IObit\IObit Malware Fighter\adsremoval\IE\Adblock.dll (Adblock)
BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKLM-x32 - No Name - {ba00b7b1-0351-477a-b948-23e3ee5a73d4} -  No File
Toolbar: HKLM-x32 - AOL Messaging Toolbar - {61539ecd-cc67-4437-a03c-9aaccbd14326} - C:\Program Files (x86)\AIM Toolbar\aimtb.dll (AOL Inc.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKU\.DEFAULT -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001 -> No Name - {4D594333-0076-A76A-76A7-7A786E7484D7} -  No File
Toolbar: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001 -> No Name - {61539ECD-CC67-4437-A03C-9AACCBD14326} -  No File
Toolbar: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001 -> No Name - {BA00B7B1-0351-477A-B948-23E3EE5A73D4} -  No File
DPF: HKLM-x32 {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macr...director/sw.cab
DPF: HKLM-x32 {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} http://xp.yimg.com/e...nst_current.cab
DPF: HKLM-x32 {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F} http://content.syste...el_4.5.23.0.cab
Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} -  No File
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} -  No File
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL (Microsoft Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF ProfilePath: C:\Users\gamerpc\AppData\Roaming\Mozilla\Firefox\Profiles\yogn1qzz.default
FF DefaultSearchEngine: Google
FF SelectedSearchEngine: Google
FF Homepage: www.wwe.com
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_235.dll ()
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.31211.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_235.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1215155.dll (Adobe Systems, Inc.)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin-x32: @divx.com/DivX Web Player Plug-In,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll (DivX, LLC)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6 -> C:\Program Files (x86)\Yahoo!\Shared\npYState.dll (Yahoo! Inc.)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.31211.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-1692155839-1707551626-4126777635-1001: @talk.google.com/GoogleTalkPlugin -> C:\Users\gamerpc\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
FF Plugin HKU\S-1-5-21-1692155839-1707551626-4126777635-1001: @talk.google.com/O1DPlugin -> C:\Users\gamerpc\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google)
FF Plugin HKU\S-1-5-21-1692155839-1707551626-4126777635-1001: @tools.google.com/Google Update;version=3 -> C:\Users\gamerpc\AppData\Local\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKU\S-1-5-21-1692155839-1707551626-4126777635-1001: @tools.google.com/Google Update;version=9 -> C:\Users\gamerpc\AppData\Local\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKU\S-1-5-21-1692155839-1707551626-4126777635-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\gamerpc\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Plugin HKU\S-1-5-21-1692155839-1707551626-4126777635-1001: electronicarts.com/GameFacePlugin -> C:\Users\gamerpc\AppData\Roaming\Electronic Arts\Game Face\npGameFacePlugin.dll (Electronic Arts)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin6.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npwachk.dll (Nullsoft, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Users\gamerpc\AppData\Roaming\mozilla\plugins\np-mswmp.dll (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Users\gamerpc\AppData\Roaming\mozilla\plugins\npgoogletalk.dll (Google)
FF Plugin ProgramFiles/Appdata: C:\Users\gamerpc\AppData\Roaming\mozilla\plugins\npo1d.dll (Google)
FF SearchPlugin: C:\Users\gamerpc\AppData\Roaming\Mozilla\Firefox\Profiles\yogn1qzz.default\searchplugins\aolsearch.xml
FF SearchPlugin: C:\Users\gamerpc\AppData\Roaming\Mozilla\Firefox\Profiles\yogn1qzz.default\searchplugins\yahoo_ff.xml
FF Extension: SNT - C:\Users\gamerpc\AppData\Roaming\Mozilla\Firefox\Profiles\yogn1qzz.default\Extensions\[email protected] [2014-06-09]
FF Extension: Ads Removal - C:\Users\gamerpc\AppData\Roaming\Mozilla\Firefox\Profiles\yogn1qzz.default\Extensions\[email protected] [2015-01-05]
FF Extension: CalcIt - C:\Users\gamerpc\AppData\Roaming\Mozilla\Firefox\Profiles\yogn1qzz.default\Extensions\[email protected] [2014-07-09]
FF Extension: Advanced SystemCare Surfing Protection - C:\Users\gamerpc\AppData\Roaming\Mozilla\Firefox\Profiles\yogn1qzz.default\Extensions\[email protected] [2014-12-02]
FF Extension: SNT - C:\Users\gamerpc\AppData\Roaming\Mozilla\Firefox\Profiles\yogn1qzz.default\Extensions\[email protected] [2014-06-08]
FF Extension: Enhanced Steam - C:\Users\gamerpc\AppData\Roaming\Mozilla\Firefox\Profiles\yogn1qzz.default\Extensions\[email protected] [2014-12-22]
FF Extension: YouTube High Definition - C:\Users\gamerpc\AppData\Roaming\Mozilla\Firefox\Profiles\yogn1qzz.default\Extensions\{7b1bf0b6-a1b9-42b0-b75d-252036438bdc}.xpi [2014-12-22]
FF Extension: Adblock Plus - C:\Users\gamerpc\AppData\Roaming\Mozilla\Firefox\Profiles\yogn1qzz.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-06-09]
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2014-07-14]
FF HKLM-x32\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext

Chrome:
=======
CHR HomePage: Default -> hxxp://www.wwe.com/
CHR Profile: C:\Users\gamerpc\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Simple Profanity Filter) - C:\Users\gamerpc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ackkocjhcalcpgpfjcoinogdejibgbho [2014-11-23]
CHR Extension: (Advanced SystemCare Surfing Protection) - C:\Users\gamerpc\AppData\Local\Google\Chrome\User Data\Default\Extensions\bbmegnmpleoagolcnjnejdacakedpcgd [2014-12-29]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\gamerpc\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-11-27]
CHR Extension: (Nanny for Google Chrome ™) - C:\Users\gamerpc\AppData\Local\Google\Chrome\User Data\Default\Extensions\cljcgchbnolheggdgaeclffeagnnmhno [2014-11-23]
CHR Extension: (WebFilter Pro - The best filtering addon!) - C:\Users\gamerpc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejgfoklefkbjadjcgjmnhfbdfjolojnn [2014-11-23]
CHR Extension: (Ads Removal) - C:\Users\gamerpc\AppData\Local\Google\Chrome\User Data\Default\Extensions\fopdddcinljmpmioaklghcalngfhbaen [2015-01-09]
CHR Extension: (Anti-Porn Pro - The best Anti-Porn addon!) - C:\Users\gamerpc\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbepadcdhpahlikldbochnhfleejiokp [2014-11-23]
CHR Extension: (Google Wallet) - C:\Users\gamerpc\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-21]
CHR Extension: (FoxFilter - The content filter!) - C:\Users\gamerpc\AppData\Local\Google\Chrome\User Data\Default\Extensions\nopeodilnmhhlfageeohjojginlgeljk [2014-11-23]
CHR Extension: (Blocksi Web Filter) - C:\Users\gamerpc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pgmjaihnmedpcdkjcgigocogcbffgkbn [2014-11-23]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [172344 2014-07-22] (SUPERAntiSpyware.com)
R2 AdvancedSystemCareService8; C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCService.exe [815392 2014-11-04] (IObit)
S2 AxAutoMntSrv; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [75624 2012-01-05] (Alcohol Soft Development Team)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
R2 CLHNServiceForPowerDVD12; C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMP\CLHNServer\CLHNServiceForPowerDVD12.exe [90640 2012-09-17] (CyberLink Corp.)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2449592 2014-11-12] (Microsoft Corporation)
S3 Creative ALchemy AL6 Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [79360 2012-10-24] (Creative Labs) [File not signed]
S3 Creative Audio Engine Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [79360 2012-10-24] (Creative Labs) [File not signed]
R2 CTAudSvcService; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [307200 2009-02-22] (Creative Technology Ltd) [File not signed]
R2 CyberLink PowerDVD 12 Media Server Monitor Service; C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe [78352 2012-09-17] (CyberLink)
R2 CyberLink PowerDVD 12 Media Server Service; C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe [295440 2012-09-17] (CyberLink)
S3 EvoSvc; C:\Program Files\Echobit\Evolve\EvoSvc.exe [1580416 2015-01-09] (Echobit LLC)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1148560 2014-12-12] (NVIDIA Corporation)
R2 IMFservice; C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe [344896 2014-09-30] (IObit)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [166720 1999-12-31] (Intel Corporation)
S2 libusbd; C:\Windows\SysWOW64\libusbd-nt.exe [18944 2005-03-09] (http://libusb-win32.sourceforge.net) [File not signed]
S2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2631456 2014-12-29] (IObit)
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [417552 2014-12-02] (LogMeIn, Inc.)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2014-11-21] (Malwarebytes Corporation)
R2 Motorola Device Manager; C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe [137528 2013-11-15] (Motorola Mobility LLC)
R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [23784 2014-08-22] (Microsoft Corporation)
R3 NisSrv; C:\Program Files\Microsoft Security Client\NisSrv.exe [368624 2014-08-22] (Microsoft Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1701520 2014-12-12] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19823248 2014-12-12] (NVIDIA Corporation)
R2 PST Service; C:\Program Files (x86)\Motorola\MotForwardDaemon\ForwardDaemon.exe [65657 2011-09-02] (Motorola) [File not signed]
S3 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [117264 2010-06-25] (CACE Technologies, Inc.)
R3 Sound Blaster X-Fi MB Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\XMBLicensing.exe [79360 2012-10-24] (Creative Labs) [File not signed]
R2 StarWindServiceAE; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [370688 2009-12-23] (StarWind Software) [File not signed]
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 VIAKaraokeService; C:\Windows\system32\viakaraokesrv.exe [27768 2014-04-17] (VIA Technologies, Inc.)
R2 WDDMService; C:\Program Files\Western Digital\WD SmartWare\WDDMService.exe [319384 2011-12-15] (WDC)
R2 WDDriveService; C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe [248248 2012-09-06] (Western Digital)
R2 WDFMEService; C:\Program Files\Western Digital\WD SmartWare\WDFME.exe [1977224 2011-12-15] (Western Digital )
R2 WDRulesService; C:\Program Files\Western Digital\WD SmartWare\WDRulesEngine.exe [1338264 2011-12-15] (Western Digital )

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-13] (Microsoft Corporation)
S3 cpudrv64; C:\Program Files (x86)\SystemRequirementsLab\cpudrv64.sys [17864 2011-06-02] ()
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-12-07] (Disc Soft Ltd)
R3 ElbyCDFL; C:\Windows\System32\Drivers\ElbyCDFL.sys [40648 2007-02-15] (SlySoft, Inc.)
R3 ElbyCDFL; C:\Windows\SysWOW64\Drivers\ElbyCDFL.sys [40648 2007-02-15] (SlySoft, Inc.)
S3 EvolveVirtualAdapter; C:\Windows\System32\DRIVERS\evolve.sys [21656 2014-01-23] (Echobit, LLC)
R3 FileMonitor; C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\FileMonitor.sys [23048 2013-03-23] (IObit)
R3 FNETTBOH_305; C:\Windows\System32\drivers\FNETTBOH_305.SYS [32320 2014-11-15] (FNet Co., Ltd.)
R1 FNETURPX; C:\Windows\System32\drivers\FNETURPX.SYS [15936 2012-10-24] (FNet Co., Ltd.)
R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [26528 2014-12-24] (REALiX™)
S3 libusb0; C:\Windows\SysWOW64\drivers\libusb0.sys [33792 2005-03-09] () [File not signed]
R3 ManyCam; C:\Windows\System32\DRIVERS\mcvidrv.sys [49304 2014-12-14] (Visicom Media Inc.)
R1 mbamchameleon; C:\Windows\system32\drivers\mbamchameleon.sys [93400 2014-11-21] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [129752 2015-01-09] (Malwarebytes Corporation)
R3 mcaudrv_simple; C:\Windows\System32\drivers\mcaudrv_x64.sys [35992 2014-12-14] (Visicom Media Inc.)
R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [100312 2014-05-02] (Intel Corporation)
S3 MotioninJoyXFilter; C:\Windows\System32\DRIVERS\MijXfilt.sys [121416 2012-05-12] (MotioninJoy) [File not signed]
S3 motport; C:\Windows\System32\DRIVERS\motport.sys [31744 2013-03-19] (Motorola Mobility Inc)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [269008 2014-07-17] (Microsoft Corporation)
R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [125584 2014-07-17] (Microsoft Corporation)
R2 NPF; C:\Windows\System32\drivers\npf.sys [35344 2010-06-25] (CACE Technologies, Inc.)
R2 ntk_PowerDVD12; C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMP\CLHNServer\ntk_PowerDVD12_64.sys [83704 2012-06-20] (Cyberlink Corp.)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2014-12-12] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [38032 2014-11-22] (NVIDIA Corporation)
R3 RegFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\regfilter.sys [34848 2013-11-19] (IObit.com)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R0 SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [21184 2014-06-04] (IObit)
S3 SWDUMon; C:\Windows\System32\DRIVERS\SWDUMon.sys [16152 2015-01-09] ()
S3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42184 2014-05-13] (Anchorfree Inc.)
R3 UrlFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\UrlFilter.sys [23016 2013-11-19] (IObit.com)
S3 usbio; C:\Windows\System32\Drivers\dsiarhwprog_x64.sys [54200 2012-09-26] (Thesycon GmbH, Germany)
S3 WinRing0_1_2_0; C:\Program Files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [14544 2010-11-01] (OpenLibSys.org)
S3 xb1usb; C:\Windows\System32\DRIVERS\xb1usb.sys [34016 2014-05-28] (Microsoft Corporation)
S3 XPADFL02; C:\Windows\SysWOW64\DRIVERS\xpadfl02.sys [27904 2006-12-24] (Compuware Corporation) [File not signed]
R2 {73526619-C24F-470B-9BED-53D455FBB5C6}; C:\Program Files (x86)\CyberLink\PowerDVD12\Common\NavFilter\000.fcl [147704 2012-09-10] (CyberLink Corp.)
S3 motccgpfl; system32\DRIVERS\motccgpfl.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)

==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-01-09 14:28 - 2015-01-09 14:29 - 00044598 _____ () C:\Users\gamerpc\Desktop\FRST.txt
2015-01-09 13:52 - 2015-01-09 13:52 - 00000000 ____D () C:\Users\Alex Valencia\AppData\Roaming\NVIDIA
2015-01-08 21:00 - 2015-01-08 21:01 - 00000000 ____D () C:\Users\gamerpc\AppData\Local\{8983BA02-BEEE-44BF-87FB-041065FFE05B}
2015-01-07 16:22 - 2015-01-07 16:22 - 00000000 ____D () C:\Windows\ERUNT
2015-01-07 16:07 - 2015-01-07 16:07 - 01707939 _____ (Thisisu) C:\Users\gamerpc\Desktop\JRT.exe
2015-01-07 14:28 - 2015-01-07 14:28 - 00000000 ____D () C:\Users\gamerpc\Desktop\FRST-OlderVersion
2015-01-07 13:36 - 2015-01-07 13:36 - 64252520 _____ (Microsoft Corporation) C:\Users\Alex Valencia\Downloads\ie11-64-setup-w7 (2).exe
2015-01-06 20:50 - 2015-01-09 14:28 - 00000000 ____D () C:\FRST
2015-01-06 20:49 - 2015-01-07 14:28 - 02124288 _____ (Farbar) C:\Users\gamerpc\Desktop\FRST64.exe
2015-01-06 17:14 - 2015-01-06 17:21 - 00000000 ____D () C:\Users\gamerpc\Desktop\Wii backup
2015-01-06 05:06 - 2015-01-06 05:06 - 64252520 _____ (Microsoft Corporation) C:\Users\Alex Valencia\Downloads\ie11-64-setup-w7 (1).exe
2015-01-06 05:05 - 2015-01-06 05:05 - 64252520 _____ (Microsoft Corporation) C:\Users\Alex Valencia\Downloads\ie11-64-setup-w7.exe
2015-01-04 23:03 - 2015-01-04 23:24 - 00000000 ___SD () C:\ComboFix
2015-01-04 23:03 - 2011-06-25 22:45 - 00256000 _____ () C:\Windows\PEV.exe
2015-01-04 23:03 - 2010-11-07 09:20 - 00208896 _____ () C:\Windows\MBR.exe
2015-01-04 23:03 - 2009-04-19 20:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2015-01-04 23:03 - 2000-08-30 16:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2015-01-04 23:03 - 2000-08-30 16:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2015-01-04 23:03 - 2000-08-30 16:00 - 00098816 _____ () C:\Windows\sed.exe
2015-01-04 23:03 - 2000-08-30 16:00 - 00080412 _____ () C:\Windows\grep.exe
2015-01-04 23:03 - 2000-08-30 16:00 - 00068096 _____ () C:\Windows\zip.exe
2015-01-04 23:00 - 2015-01-04 23:03 - 00000000 ____D () C:\Qoobox
2015-01-04 22:59 - 2015-01-04 22:59 - 00000000 ____D () C:\Windows\erdnt
2015-01-04 22:58 - 2015-01-04 22:58 - 05609498 ____R (Swearware) C:\Users\gamerpc\Desktop\ComboFix.exe
2015-01-03 05:02 - 2015-01-09 13:54 - 00455528 _____ () C:\Windows\setupact.log
2015-01-03 05:02 - 2015-01-09 04:52 - 00008194 _____ () C:\Windows\PFRO.log
2015-01-03 05:02 - 2015-01-03 05:02 - 00000000 _____ () C:\Windows\setuperr.log
2015-01-02 00:51 - 2015-01-02 00:51 - 00000000 ____D () C:\Users\gamerpc\Desktop\BioShock Infinite Steam Trainer +8 MrAntiFun
2015-01-01 18:49 - 2015-01-01 18:49 - 00000220 _____ () C:\Users\gamerpc\Desktop\BioShock Infinite.url
2015-01-01 09:55 - 2015-01-01 10:21 - 00004996 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for GAMER-Mario Valencia gamer
2015-01-01 02:53 - 2015-01-01 02:53 - 00000000 ____D () C:\Users\gamerpc\Desktop\S4-2YT
2015-01-01 01:04 - 2015-01-01 01:04 - 00000000 ____D () C:\Users\gamerpc\Desktop\S4-1YT
2015-01-01 00:22 - 2015-01-01 00:22 - 00000222 _____ () C:\Users\gamerpc\Desktop\SONIC THE HEDGEHOG 4 Episode II.url
2015-01-01 00:22 - 2015-01-01 00:22 - 00000222 _____ () C:\Users\gamerpc\Desktop\SONIC THE HEDGEHOG 4 Episode I.url
2014-12-30 20:36 - 2014-12-30 20:36 - 00000081 _____ () C:\Users\gamerpc\Documents\xbox360.cp
2014-12-30 01:31 - 2014-12-30 01:31 - 00000081 _____ () C:\Users\gamerpc\Documents\xbox1.cp
2014-12-30 01:22 - 2014-12-30 01:22 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_xb1usb_01011.Wdf
2014-12-29 23:49 - 2014-12-29 23:53 - 00000000 ____D () C:\Users\gamerpc\AppData\Roaming\Mupen64Plus
2014-12-29 14:50 - 2014-12-29 14:50 - 00002890 _____ () C:\Windows\System32\Tasks\Uninstaller_SkipUac_gamerpc
2014-12-29 14:50 - 2014-12-29 14:50 - 00001263 _____ () C:\Users\gamerpc\AppData\Roaming\Microsoft\Windows\Start Menu\Uninstall Programs.lnk
2014-12-29 14:50 - 2014-12-29 14:50 - 00001239 _____ () C:\Users\Public\Desktop\IObit Uninstaller.lnk
2014-12-29 00:32 - 2014-12-29 00:32 - 00003052 _____ () C:\Windows\System32\Tasks\{E9466C25-F164-46FA-91C7-A284868168CE}
2014-12-29 00:23 - 2014-12-29 00:23 - 00003030 _____ () C:\Windows\System32\Tasks\{A733E35F-BCAF-4970-8A6E-41BE0D404C71}
2014-12-29 00:21 - 2014-12-29 00:21 - 00003032 _____ () C:\Windows\System32\Tasks\{29DCDBB9-B8DC-43BF-829A-1C1ECB386532}
2014-12-29 00:17 - 2014-12-29 00:30 - 00000635 _____ () C:\Windows\Dc.INI
2014-12-27 23:55 - 2014-12-27 23:55 - 00101824 _____ (GreenTree Applications SRL) C:\Users\gamerpc\Downloads\YTDSetup.exe
2014-12-27 17:09 - 2014-12-12 16:47 - 00620176 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2014-12-27 17:00 - 2014-12-13 02:08 - 32099472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 25460552 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 20465808 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 17264312 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 13288360 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 13202520 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 10770120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 10710160 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 10345280 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2014-12-27 17:00 - 2014-12-13 02:08 - 03610440 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 03248968 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 01895056 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6434709.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 01556624 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6434709.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 00994384 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 00968336 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 00942400 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 00928072 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 00906560 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 00876976 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 00353224 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 00306328 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 00178632 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 00165760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 00027983 _____ () C:\Windows\system32\nvinfo.pb
2014-12-27 17:00 - 2014-10-09 09:02 - 00195728 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2014-12-27 17:00 - 2014-10-09 09:02 - 00030536 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll
2014-12-27 17:00 - 2014-10-08 23:17 - 01540240 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco64.dll
2014-12-27 02:02 - 2015-01-09 14:00 - 00000514 _____ () C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 197a93c8-85f3-41a8-8955-a770786ae1ff.job
2014-12-27 02:02 - 2015-01-03 01:03 - 00003586 _____ () C:\Windows\System32\Tasks\SUPERAntiSpyware Scheduled Task 197a93c8-85f3-41a8-8955-a770786ae1ff
2014-12-27 01:28 - 2014-12-27 01:28 - 00602112 _____ (OldTimer Tools) C:\Users\gamerpc\Desktop\OTL.exe
2014-12-26 18:14 - 2015-01-09 02:14 - 00000514 _____ () C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task ca24798f-befb-4d39-ac7a-fad5807630aa.job
2014-12-26 18:14 - 2014-12-26 18:14 - 00003512 _____ () C:\Windows\System32\Tasks\SUPERAntiSpyware Scheduled Task ca24798f-befb-4d39-ac7a-fad5807630aa
2014-12-26 18:14 - 2014-12-26 18:14 - 00000000 ____D () C:\Users\gamerpc\AppData\Roaming\SUPERAntiSpyware.com
2014-12-26 18:12 - 2015-01-09 13:22 - 00000000 ____D () C:\Program Files\SUPERAntiSpyware
2014-12-26 18:12 - 2014-12-26 18:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
2014-12-26 18:12 - 2014-12-26 18:12 - 00001815 _____ () C:\Users\Public\Desktop\SUPERAntiSpyware Professional.lnk
2014-12-26 18:12 - 2014-12-26 18:12 - 00000000 ____D () C:\ProgramData\SUPERAntiSpyware.com
2014-12-26 15:53 - 2014-12-26 17:57 - 00000000 ____D () C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2014-12-26 15:52 - 2014-12-26 18:14 - 00000000 ____D () C:\Users\gamerpc\mbar
2014-12-26 15:05 - 2014-12-26 15:05 - 02173952 _____ () C:\Users\gamerpc\Desktop\adwcleaner_4.106.exe
2014-12-24 19:36 - 2014-12-24 19:36 - 00000000 ____D () C:\ManyCam
2014-12-24 19:34 - 2014-12-24 19:34 - 00000000 ____D () C:\Echobit
2014-12-24 19:32 - 2014-12-24 19:39 - 00000000 ____D () C:\acccore
2014-12-24 12:44 - 2014-12-24 12:44 - 00026528 _____ (REALiX™) C:\Windows\SysWOW64\Drivers\HWiNFO64A.SYS
2014-12-24 12:42 - 2014-12-24 12:43 - 00000026 _____ () C:\Windows\Zone.Identifier
2014-12-23 14:35 - 2014-12-23 14:35 - 00001036 _____ () C:\Users\Public\Desktop\ManyCam.lnk
2014-12-23 14:35 - 2014-12-23 14:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ManyCam
2014-12-17 16:06 - 2014-12-17 16:06 - 00001011 _____ () C:\Users\Public\Desktop\Firestorm-Releasex64.lnk
2014-12-17 16:06 - 2014-12-17 16:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firestorm
2014-12-17 16:05 - 2014-12-17 16:06 - 00000000 ____D () C:\Program Files\Firestorm-Releasex64
2014-12-17 02:47 - 2014-11-22 02:46 - 00038032 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2014-12-17 02:47 - 2014-11-22 02:46 - 00032400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2014-12-15 11:41 - 2014-12-15 11:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
2014-12-15 11:41 - 2014-12-15 11:41 - 00000000 ____D () C:\Program Files (x86)\LogMeIn Hamachi
2014-12-14 23:43 - 2014-12-14 23:43 - 00035992 _____ (Visicom Media Inc.) C:\Windows\system32\Drivers\mcaudrv_x64.sys
2014-12-14 20:01 - 2014-12-14 20:01 - 00049304 _____ (Visicom Media Inc.) C:\Windows\system32\Drivers\mcvidrv.sys
2014-12-14 12:58 - 2014-12-14 12:58 - 00002515 _____ () C:\Users\Public\Desktop\Skype.lnk
2014-12-14 12:58 - 2014-12-14 12:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2014-12-14 12:53 - 2014-12-14 12:59 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-12-13 18:16 - 2014-12-13 18:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
2014-12-12 18:26 - 2014-11-21 00:38 - 02237952 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-12-12 18:26 - 2014-11-21 00:38 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-12-12 18:26 - 2014-11-21 00:37 - 01409536 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-12-12 18:26 - 2014-11-21 00:37 - 00600576 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-12-12 18:26 - 2014-11-21 00:36 - 19283456 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-12-12 18:26 - 2014-11-21 00:36 - 15400960 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-12-12 18:26 - 2014-11-21 00:36 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-12-12 18:26 - 2014-11-21 00:36 - 02655232 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-12-12 18:26 - 2014-11-21 00:36 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-12-12 18:26 - 2014-11-21 00:36 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-12-12 18:26 - 2014-11-21 00:36 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-12-12 18:26 - 2014-11-21 00:36 - 00451584 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-12-12 18:26 - 2014-11-21 00:36 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-12-12 18:26 - 2014-11-21 00:36 - 00255488 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-12-12 18:26 - 2014-11-21 00:36 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-12-12 18:26 - 2014-11-21 00:36 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-12-12 18:26 - 2014-11-21 00:36 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-12-12 18:26 - 2014-11-21 00:36 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-12-12 18:26 - 2014-11-21 00:36 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-12-12 18:26 - 2014-11-21 00:36 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-12-12 18:26 - 2014-11-21 00:35 - 01509376 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-12-12 18:26 - 2014-11-20 23:17 - 14364672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-12-12 18:26 - 2014-11-20 23:17 - 01762816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-12-12 18:26 - 2014-11-20 23:17 - 01181696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-12-12 18:26 - 2014-11-20 23:17 - 00523264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-12-12 18:26 - 2014-11-20 23:17 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-12-12 18:26 - 2014-11-20 23:17 - 00080384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-12-12 18:26 - 2014-11-20 23:16 - 13758976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-12-12 18:26 - 2014-11-20 23:16 - 02861568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-12-12 18:26 - 2014-11-20 23:16 - 02054656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-12-12 18:26 - 2014-11-20 23:16 - 01441280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-12-12 18:26 - 2014-11-20 23:16 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-12-12 18:26 - 2014-11-20 23:16 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-12-12 18:26 - 2014-11-20 23:16 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-12-12 18:26 - 2014-11-20 23:16 - 00357888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-12-12 18:26 - 2014-11-20 23:16 - 00226816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-12-12 18:26 - 2014-11-20 23:16 - 00226816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-12-12 18:26 - 2014-11-20 23:16 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2014-12-12 18:26 - 2014-11-20 23:16 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-12-12 18:26 - 2014-11-20 23:16 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-12-12 18:26 - 2014-11-20 23:16 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-12-12 18:26 - 2014-11-20 23:00 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-12-12 18:26 - 2014-11-20 22:54 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-12-12 18:26 - 2014-11-20 22:31 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-12-12 18:26 - 2014-11-20 22:24 - 00361984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2014-12-12 18:26 - 2014-11-20 22:05 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2014-12-12 18:26 - 2014-11-20 21:59 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2014-12-12 00:24 - 2014-12-12 00:24 - 05006832 _____ (Adobe Systems Inc.) C:\Users\gamerpc\Downloads\Shockwave_Installer_Slim.exe
2014-12-10 20:20 - 2014-12-10 20:20 - 00000000 ____D () C:\Users\gamerpc\Documents\NeroVision
2014-12-10 05:24 - 2014-12-10 05:24 - 00000000 ____D () C:\Windows\system32\appraiser
2014-12-10 05:06 - 2014-10-17 18:05 - 04121600 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2014-12-10 05:06 - 2014-10-17 17:33 - 03209728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2014-12-10 05:06 - 2014-07-06 18:06 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2014-12-10 05:06 - 2014-07-06 18:06 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2014-12-10 05:06 - 2014-07-06 18:06 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2014-12-10 05:06 - 2014-07-06 18:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2014-12-10 05:06 - 2014-07-06 17:40 - 00103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
2014-12-10 05:06 - 2014-07-06 17:39 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe
2014-12-10 05:06 - 2014-07-06 17:39 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
2014-12-10 05:06 - 2014-07-06 17:37 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mferror.dll

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-01-09 14:30 - 2012-10-22 20:07 - 00000000 ____D () C:\Users\gamerpc\AppData\Roaming\Skype
2015-01-09 14:29 - 2014-09-26 15:51 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-01-09 14:22 - 2012-10-22 20:10 - 04274176 ___SH () C:\Users\gamerpc\Documents\Thumbs.db
2015-01-09 13:54 - 2012-10-29 04:12 - 00000000 ____D () C:\Users\Alex Valencia\AppData\Local\Adobe
2015-01-09 13:53 - 2014-07-23 23:41 - 00000900 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA1cfa712be8cef20.job
2015-01-09 13:52 - 2012-10-24 04:19 - 00000000 ____D () C:\Users\Alex Valencia\AppData\Roaming\Adobe
2015-01-09 13:50 - 2014-10-08 21:53 - 00000000 ____D () C:\Users\gamerpc\AppData\Local\LogMeIn Hamachi
2015-01-09 13:50 - 2014-08-06 23:42 - 00000498 _____ () C:\Windows\Tasks\ParetoLogic Update Version3 Startup Task.job
2015-01-09 13:50 - 2014-07-23 23:41 - 00000896 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore1cfa712bccbb08c.job
2015-01-09 13:50 - 2014-01-21 04:58 - 00000000 ____D () C:\Users\Alex Valencia\AppData\Local\LogMeIn Hamachi
2015-01-09 13:50 - 2013-09-11 17:42 - 00000414 _____ () C:\Windows\Tasks\SlimDrivers Startup.job
2015-01-09 13:50 - 2012-10-22 20:32 - 00000000 ____D () C:\Temp
2015-01-09 13:50 - 2009-07-13 20:45 - 00028944 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-01-09 13:50 - 2009-07-13 20:45 - 00028944 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-01-09 13:43 - 2013-08-17 21:55 - 00000916 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1692155839-1707551626-4126777635-1001UA.job
2015-01-09 13:42 - 2014-06-15 21:46 - 00004968 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for GAMER-gamerpc gamer
2015-01-09 13:40 - 2014-05-18 18:20 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-01-09 13:30 - 2013-09-29 20:24 - 01079542 _____ () C:\Windows\WindowsUpdate.log
2015-01-09 13:21 - 2014-06-15 20:03 - 00000000 ___RD () C:\Users\gamerpc\OneDrive
2015-01-09 13:18 - 2013-09-11 17:42 - 00002844 _____ () C:\Windows\System32\Tasks\SlimDrivers Startup
2015-01-09 13:17 - 2012-10-22 22:56 - 00000000 ____D () C:\Program Files (x86)\Steam
2015-01-09 13:15 - 2013-09-11 17:42 - 00016152 _____ () C:\Windows\system32\Drivers\SWDUMon.sys
2015-01-09 13:14 - 2012-11-09 15:22 - 00000000 ____D () C:\ProgramData\Kodak
2015-01-09 13:13 - 2013-09-29 20:24 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-01-09 13:13 - 2009-07-13 21:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-01-09 02:00 - 2014-08-16 12:24 - 00000000 ____D () C:\Users\gamerpc\AppData\Local\Adobe
2015-01-08 19:43 - 2013-08-17 21:55 - 00000864 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1692155839-1707551626-4126777635-1001Core.job
2015-01-08 04:57 - 2013-11-08 12:12 - 00000008 __RSH () C:\Users\Alex Valencia\ntuser.pol
2015-01-08 04:57 - 2013-09-29 20:26 - 00000000 ____D () C:\Users\Alex Valencia
2015-01-08 00:16 - 2012-10-22 21:37 - 00000000 ____D () C:\Users\gamerpc\AppData\Local\join.me
2015-01-08 00:15 - 2014-09-24 15:05 - 00000000 ____D () C:\Users\gamerpc\Desktop\UPRandomizer-161
2015-01-07 19:38 - 2013-08-17 21:55 - 00003894 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1692155839-1707551626-4126777635-1001UA
2015-01-07 19:38 - 2013-08-17 21:55 - 00003498 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1692155839-1707551626-4126777635-1001Core
2015-01-07 16:12 - 2013-08-20 18:09 - 00000000 ____D () C:\AdwCleaner
2015-01-07 15:52 - 2014-06-08 18:45 - 00000008 __RSH () C:\ProgramData\ntuser.pol
2015-01-07 15:52 - 2013-11-08 12:11 - 00000008 __RSH () C:\Users\gamerpc\ntuser.pol
2015-01-07 15:52 - 2013-09-29 20:26 - 00000000 ____D () C:\Users\gamerpc
2015-01-07 15:40 - 2012-10-22 19:27 - 00002109 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2015-01-07 14:29 - 2009-07-13 19:20 - 00000000 ___HD () C:\Windows\system32\GroupPolicy
2015-01-07 02:16 - 2012-10-22 22:49 - 00000000 ____D () C:\Program Files (x86)\JDownloader
2015-01-06 18:09 - 2014-02-06 16:32 - 00000000 ____D () C:\Users\gamerpc\Desktop\Vwii backup
2015-01-06 17:17 - 2009-07-13 21:13 - 00782720 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-01-06 09:25 - 2014-01-24 07:58 - 00000000 ____D () C:\Users\Veronica Valencia.NWOFAN-PC\AppData\Local\LogMeIn Hamachi
2015-01-06 04:58 - 2013-11-25 13:48 - 00000000 ____D () C:\ProgramData\ProductData
2015-01-05 08:21 - 2014-01-24 07:58 - 00000000 ____D () C:\Users\Veronica Valencia.NWOFAN-PC\AppData\Roaming\IObit
2015-01-04 23:21 - 2009-07-13 19:20 - 00000000 ____D () C:\Windows\system32\NDF
2015-01-04 17:04 - 2014-12-02 11:18 - 00002116 _____ () C:\Users\Public\Desktop\Advanced SystemCare 8.lnk
2015-01-03 04:03 - 2014-03-14 01:23 - 00000000 ____D () C:\Users\gamerpc\AppData\Local\FirestormOS_x64
2015-01-02 03:23 - 2012-10-22 20:11 - 00000000 ____D () C:\Users\gamerpc\Documents\My Games
2015-01-02 02:09 - 2014-10-01 00:58 - 00000000 ____D () C:\Users\gamerpc\Desktop\mugen-1.1b1
2015-01-01 21:31 - 2013-11-19 02:21 - 00000000 ____D () C:\Users\gamerpc\AppData\Local\SingularityViewer64
2015-01-01 18:49 - 2012-11-15 15:06 - 00000000 ____D () C:\Users\gamerpc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2015-01-01 10:15 - 2014-06-20 05:59 - 00000000 ___RD () C:\Users\Mario Valencia.NWOFAN-PC\OneDrive
2015-01-01 09:57 - 2014-01-20 06:26 - 00000000 ____D () C:\Users\Mario Valencia.NWOFAN-PC\AppData\Local\LogMeIn Hamachi
2014-12-31 03:14 - 2010-11-20 19:27 - 00298120 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-12-30 23:49 - 2012-10-23 21:32 - 08325632 ___SH () C:\Users\gamerpc\Thumbs.db
2014-12-30 23:24 - 2014-09-28 21:08 - 00000000 ____D () C:\Users\gamerpc\AppData\Local\FF4
2014-12-30 01:29 - 2012-10-22 20:17 - 00000000 ____D () C:\Users\gamerpc\Desktop\Emulators
2014-12-29 23:19 - 2014-03-26 16:50 - 00000000 ____D () C:\Program Files (x86)\Project64 2.1
2014-12-27 17:10 - 2012-10-18 11:39 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2014-12-27 05:11 - 2012-10-24 04:18 - 00000000 ____D () C:\Users\Alex Valencia\AppData\Local\Google
2014-12-26 18:36 - 2012-10-22 19:26 - 00000000 ____D () C:\Users\gamerpc\AppData\Local\Google
2014-12-26 15:14 - 2014-10-21 21:46 - 00002860 _____ () C:\Windows\System32\Tasks\Driver Booster SkipUAC (SYSTEM)
2014-12-24 12:44 - 2014-12-02 11:16 - 00001094 _____ () C:\Users\Public\Desktop\Driver Booster 2.lnk
2014-12-24 12:44 - 2014-12-02 11:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 2
2014-12-24 05:03 - 2014-05-22 04:01 - 00000000 ____D () C:\Users\Alex Valencia\AppData\Roaming\ProductData
2014-12-24 05:03 - 2013-11-27 05:05 - 00000000 ____D () C:\Users\Alex Valencia\AppData\Roaming\IObit
2014-12-23 14:37 - 2012-10-24 12:23 - 00000000 ____D () C:\Users\gamerpc\AppData\Local\ManyCam
2014-12-23 14:35 - 2012-10-23 21:47 - 00000000 ____D () C:\Program Files (x86)\ManyCam
2014-12-23 14:33 - 2012-10-24 12:23 - 00000000 ____D () C:\ProgramData\ManyCam
2014-12-22 12:37 - 2014-06-15 19:58 - 00000000 ____D () C:\Program Files\Microsoft Office 15
2014-12-20 00:36 - 2014-03-25 12:09 - 00000000 ____D () C:\Users\gamerpc\Powersaves3DS
2014-12-19 03:08 - 2014-01-11 23:34 - 00000000 ____D () C:\Users\gamerpc\Desktop\ppsspp
2014-12-18 23:38 - 2013-09-29 21:20 - 00000000 ____D () C:\Windows\Panther
2014-12-18 23:28 - 2012-10-24 14:24 - 00000000 ____D () C:\Users\gamerpc\AppData\Roaming\DAEMON Tools Pro
2014-12-17 16:05 - 2013-09-30 14:46 - 00000000 ____D () C:\ProgramData\Package Cache
2014-12-15 11:41 - 2014-10-08 21:52 - 00000852 _____ () C:\Users\Public\Desktop\LogMeIn Hamachi.lnk
2014-12-14 12:58 - 2012-10-22 20:07 - 00000000 ____D () C:\ProgramData\Skype
2014-12-14 12:14 - 2013-05-19 06:50 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-12-14 12:14 - 2013-05-19 06:50 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-12-14 02:30 - 2013-05-19 06:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2014-12-13 12:50 - 2014-05-02 03:07 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-12-13 02:08 - 2014-11-18 19:06 - 24764232 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2014-12-13 02:08 - 2014-11-18 19:06 - 16040184 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2014-12-13 02:08 - 2014-11-18 19:06 - 02897824 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2014-12-13 02:08 - 2014-08-01 23:17 - 18594432 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2014-12-13 02:08 - 2014-08-01 23:17 - 14128496 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2014-12-13 02:08 - 2013-07-04 23:48 - 03293136 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2014-12-13 01:02 - 2014-11-15 15:54 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-12-13 00:03 - 2013-09-29 20:24 - 06859408 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2014-12-13 00:03 - 2013-09-29 20:24 - 03513488 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2014-12-13 00:03 - 2013-09-29 20:24 - 00935240 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2014-12-13 00:03 - 2013-09-29 20:24 - 00386368 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2014-12-13 00:03 - 2013-09-29 20:24 - 00062608 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2014-12-13 00:03 - 2012-10-18 11:27 - 02558608 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2014-12-12 21:05 - 2014-09-26 15:51 - 00701616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-12-12 21:05 - 2014-09-26 15:51 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-12-12 21:05 - 2014-09-26 15:51 - 00003768 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-12-12 20:59 - 2014-03-20 12:54 - 00002858 _____ () C:\Windows\System32\Tasks\Driver Booster SkipUAC (gamerpc)
2014-12-12 16:12 - 2014-06-03 12:54 - 01715224 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2014-12-12 16:12 - 2014-06-03 12:54 - 01291464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2014-12-12 16:12 - 2014-04-08 23:13 - 02824504 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2014-12-12 16:12 - 2014-04-08 23:13 - 02210040 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2014-12-12 15:15 - 2009-07-13 19:20 - 00000000 ____D () C:\Windows\rescache
2014-12-12 15:11 - 2013-09-29 20:24 - 04151176 _____ () C:\Windows\system32\nvcoproc.bin
2014-12-12 12:56 - 2009-07-13 19:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2014-12-12 00:39 - 2012-10-22 19:26 - 00000000 ____D () C:\Windows\SysWOW64\Macromed
2014-12-12 00:24 - 2013-08-14 12:59 - 00000000 ____D () C:\Windows\SysWOW64\Adobe
2014-12-11 10:05 - 2013-09-29 23:00 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2014-12-10 05:24 - 2014-04-30 02:00 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-12-10 05:24 - 2009-07-13 19:20 - 00000000 ____D () C:\Windows\AppCompat
2014-12-10 05:22 - 2013-07-17 23:33 - 00000000 ____D () C:\Windows\system32\MRT
2014-12-10 05:08 - 2013-09-30 00:10 - 112710672 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe

Files to move or delete:
====================
C:\Users\gamerpc\asc-setup.exe
C:\Users\gamerpc\avg_remover_stf_x86_2012_2125.exe
C:\Users\gamerpc\ManyCam.exe
C:\Users\gamerpc\MBR.dat
C:\Users\gamerpc\Setup.exe
C:\Users\gamerpc\Singularity_1-8-5-5617_x86-64_Setup.exe
C:\Users\gamerpc\uninstall_flash_player.exe

Some content of TEMP:
====================
C:\Users\gamerpc\AppData\Local\Temp\SkypeSetup.exe

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2014-12-25 04:00

==================== End Of Log ============================


  • 0

#19
Lucky Dearly

Lucky Dearly

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 299 posts

and the Addition Log

 

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 07-01-2015
Ran by gamerpc at 2015-01-09 14:30:30
Running from C:\Users\gamerpc\Desktop
Boot Mode: Normal
==========================================================

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Microsoft Security Essentials (Enabled - Up to date) {4F35CFC4-45A3-FC37-EF17-759A02E39AB1}
AS: Microsoft Security Essentials (Enabled - Up to date) {F4542E20-6399-F3B9-D5A7-4EE87964D00C}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: IObit Malware Fighter (Disabled - Up to date) {A751AC20-3B48-5237-898A-78C4436BB78D}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

3DS Compatible Action Replay Firmware Update version 1.1 (HKLM\...\3DS Compatible Action Replay Firmware Update_is1) (Version: 1.1 - )
7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov)
Action Replay Code Manager (HKLM-x32\...\Action Replay Code Manager_is1) (Version:  - )
Action Replay DSi Code Manager (HKLM\...\Action Replay DSi Code Manager_is1) (Version:  - )
Action Replay DSi Code Manager (HKLM-x32\...\Action Replay DSi Code Manager_is1) (Version:  - )
Action Replay PowerSaves 3DS version 1.21 (HKLM-x32\...\{CD24B06F-0A4D-410A-AEF2-DFE6A28AB4C0}_is1) (Version: 1.21 - Datel Design & Development)
Adblock Plus for IE (32-bit and 64-bit) (HKLM\...\{5CEBB0CE-1783-40C2-A7E1-02EE705820F0}) (Version: 1.0 - Eyeo GmbH)
Adblock Plus for IE (HKLM-x32\...\{1ce01891-839b-4ad1-b629-2e608ba0c6ba}) (Version: 1.0 - )
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.8.0.1280 - Adobe Systems Incorporated)
Adobe Flash Player 16 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 16.0.0.235 - Adobe Systems Incorporated)
Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.235 - Adobe Systems Incorporated)
Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.10) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.5.155 - Adobe Systems, Inc.)
Advanced SystemCare 8 (HKLM-x32\...\Advanced SystemCare 8_is1) (Version: 8.0.3 - IObit)
Advertising Center (x32 Version: 0.0.0.2 - Nero AG) Hidden
AIM 7 (HKLM-x32\...\AIM_7) (Version:  - )
Aimersoft DVD Ripper(Build 2.7.4.0) (HKLM-x32\...\Aimersoft DVD Ripper_is1) (Version:  - Aimersoft Software)
aioprnt (Version: 5.3.1.0 - Eastman Kodak Company) Hidden
aioscnnr (x32 Version: 5.7.5.30 - Your Company Name) Hidden
aioscnnr (x32 Version: 7.6.13.10 - Your Company Name) Hidden
Aiseesoft Blu-ray Ripper 6.2.18 (HKLM-x32\...\{D1B455C8-C170-44fe-8A90-31263B5153C2}_is1) (Version:  - )
Amazon Music Importer (HKLM-x32\...\com.amazon.music.uploader) (Version: 3.1.0 - Amazon Services LLC)
Amazon Music Importer (x32 Version: 3.1.0 - Amazon Services LLC) Hidden
AOL Messaging Toolbar (HKLM-x32\...\AIM Toolbar) (Version:  - AOL Inc.)
AOL Messaging Toolbar (HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\AOL Messaging Toolbar) (Version:  - )
AOL Toolbar (HKLM-x32\...\AOL Toolbar) (Version:  - AOL Inc.)
AOL Toolbar (HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\AOL Toolbar) (Version:  - )
AOL Uninstaller (Choose which Products to Remove) (HKLM-x32\...\AOL Uninstaller) (Version:  - AOL Inc.)
Apple Application Support (HKLM-x32\...\{83CAF0DE-8D3B-4C37-A631-2B8F16EC3031}) (Version: 3.1 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{BDD99690-3541-4619-9D2A-3CDDB3E15F9E}) (Version: 8.0.5.6 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
ArtMoney SE v7.43 (HKLM-x32\...\ArtMoney SE_is1) (Version: 7.43 - System SoftLab)
ASRock App Charger v1.0.4 (HKLM\...\ASRock App Charger_is1) (Version:  - ASRock Inc.)
ASRock eXtreme Tuner v0.1.169 (HKLM-x32\...\ASRock eXtreme Tuner_is1) (Version:  - )
ASRock InstantBoot v1.26 (HKLM-x32\...\ASRock InstantBoot_is1) (Version:  - )
ASRock XFast RAM v2.0.9 (HKLM\...\ASRock XFast RAM_is1) (Version:  - ASRock Inc.)
Audacity 2.0.2 (HKLM-x32\...\Audacity_is1) (Version: 2.0.2 - Audacity Team)
AviSynth 2.5 (HKLM-x32\...\AviSynth) (Version:  - )
Batman: Arkham City GOTY (HKLM-x32\...\Steam App 200260) (Version:  - Rocksteady Studios)
BigJon PCGames Config Wizard (HKLM-x32\...\BigJon PCGames Config Wizard1.1) (Version: 1.1 - )
Bionic Commando (HKLM-x32\...\Steam App 21670) (Version:  - GRIN)
Bionic Commando Rearmed (HKLM-x32\...\Steam App 21680) (Version:  - GRIN)
BioShock Infinite (HKLM-x32\...\Steam App 8870) (Version:  - Irrational Games)
Black Chocobo (HKLM-x32\...\Black_Chocobo) (Version:  - )
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Borderlands 2 (HKLM-x32\...\Steam App 49520) (Version:  - Gearbox Software)
BOSS (HKLM-x32\...\BOSS) (Version: 2.1.1 - BOSS Development Team)
Bully Scholarship Edition (HKLM-x32\...\InstallShield_{A724605D-B399-4304-B8C7-33B3EF7D4677}) (Version: 1.00.0200 - Rockstar Games)
Bully Scholarship Edition (x32 Version: 1.00.0200 - Rockstar Games) Hidden
C4USelfUpdater (x32 Version: 1.00.0000 - Your Company Name) Hidden
center (x32 Version: 7.7.2.0 - Eastman Kodak Company) Hidden
Cheat Engine 6.4 (HKLM-x32\...\Cheat Engine 6.4_is1) (Version:  - Cheat Engine)
CloneCD (HKLM-x32\...\CloneCD) (Version:  - SlySoft)
CloneDVD2 (HKLM-x32\...\CloneDVD2) (Version: 2.9.3.0 - Elaborate Bytes)
CPUID CPU-Z 1.67.1 (HKLM\...\CPUID CPU-Z_is1) (Version:  - )
Creation Kit (HKLM-x32\...\Steam App 202480) (Version:  - bgs.bethsoft.com)
CyberLink PowerDVD 12 (HKLM-x32\...\InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}) (Version: 12.0.2118.57 - CyberLink Corp.)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
DAEMON Tools Pro (HKLM-x32\...\DAEMON Tools Pro) (Version: 5.5.0.0388 - Disc Soft Ltd)
Daggerfall (HKLM-x32\...\{75118CF3-44B5-411A-B3DD-C10432217693}) (Version: 1.00.0000 - Bethesda Softworks)
DivX Setup (HKLM-x32\...\DivX Setup) (Version: 2.7.0.31 - DivX, LLC)
DolbyFiles (x32 Version: 2.0 - Nero AG) Hidden
Dolphin (HKLM-x32\...\Dolphin) (Version: 4.0.2 - Dolphin Development Team)
Dota 2 (HKLM-x32\...\Steam App 570) (Version:  - )
Dota 2 Test (HKLM-x32\...\Steam App 205790) (Version:  - )
Download Navigator (HKLM-x32\...\{3A3A3B34-6EA2-4031-8580-D66D29533E89}) (Version: 3.4.0 - SEIKO EPSON CORPORATION)
Driver Booster 2.1 (HKLM-x32\...\Driver Booster_is1) (Version: 2.1 - IObit)
Dual-Core Optimizer (HKLM-x32\...\{9FD6F1A8-5550-46AF-8509-271DF0E768B5}) (Version: 1.1.4.0169 - AMD)
DuckTales Remastered (HKLM-x32\...\Steam App 237630) (Version:  - WayForward)
Duke Nukem 3D: Megaton Edition (HKLM-x32\...\Steam App 225140) (Version:  - 3D Realms)
DVD Architect Studio 5.0 (HKLM-x32\...\{42C509F1-C451-11E1-AEC9-F04DA23A5C58}) (Version: 5.0.161 - Sony)
DVDFab 9.0.6.0 (21/08/2013) (HKLM-x32\...\DVDFab 9_is1) (Version:  - Fengtao Software Inc.)
EA SPORTS Game Face Browser Plugin 1.8.0.0 (HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\EA SPORTS Game Face Browser Plugin) (Version: 1.8.0.0 - Electronic Arts)
ef02f1e43 (HKLM\...\{d1e17d14-cabc-4f6f-9f46-c7ecf813645e}.sdb) (Version:  - )
essentials (x32 Version: 7.7.2.0 - Eastman Kodak Company) Hidden
Evolve (HKLM\...\{670B1B49-9FD3-4827-9B41-471EFF580AA8}) (Version: 1.8.10 - Echobit, LLC)
Fallout 3 - Game of the Year Edition (HKLM-x32\...\Steam App 22370) (Version:  - Bethesda Game Studios)
Fallout 3 - The Garden of Eden Creation Kit (HKLM-x32\...\{B343B0E3-212A-40B9-8207-1BD299228F5D}) (Version: 1.00.0000 - Bethesda Softworks)
Fallout Mod Manager 0.13.21 (HKLM-x32\...\Generic Mod Manager_is1) (Version:  - Q, Timeslip)
Fallout: New Vegas (HKLM-x32\...\Steam App 22380) (Version:  - Obsidian Entertainment)
Fighter Factory Classic (HKLM-x32\...\VirtuallTek Fighter Factory Classic_is1) (Version: 1.2.0.2010 - VirtuallTek Systems)
Fighter Factory Ultimate (HKLM-x32\...\VirtuallTek Fighter Factory Ultimate_is1) (Version: 2.6.0.2010 - VirtuallTek Systems)
FINAL FANTASY IV (HKLM-x32\...\Steam App 312750) (Version:  - Square Enix)
FINAL FANTASY VII (HKLM-x32\...\Steam App 39140) (Version:  - Square Enix)
Firestorm SecondLife and OpenSim viewer (Version: 4.6.42974 - Phoenix Viewer Project) Hidden
Firestorm-Releasex64 x64 (HKLM-x32\...\{4e154806-de7a-4300-b61e-bc0c3a4c5b43}) (Version: 4.6.42974 - Phoenix Firestorm Project Inc)
FrostWire 5.5.6 (HKLM-x32\...\FrostWire 5) (Version: 5.5.6.0 - FrostWire Team)
Game Booster 3 (HKLM-x32\...\Game Booster_is1) (Version: 3.4 - IObit)
Garry's Mod (HKLM-x32\...\Steam App 4000) (Version:  - Facepunch Studios)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 39.0.2171.95 - Google Inc.)
Google Talk Plugin (HKLM-x32\...\{0C5C1177-94C5-3EFB-A8BE-3F6AF1AF887F}) (Version: 5.38.6.0 - Google)
Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.5111.1712 - Google Inc.)
Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Gtk+ Runtime Environment 2.12.9-2 (HKLM-x32\...\Gtk+ Runtime Environment) (Version: 2.12.9-2 - )
Horizon v2.8.3.1 (HKLM-x32\...\d4cfeebc-b821-40b7-9f81-d366b1466f03_is1) (Version: 2.8.3.1 - Daring Development Inc.)
iCloud (HKLM\...\{309768A4-A2BB-4930-A5A2-8169678C9B4C}) (Version: 4.0.6.28 - Apple Inc.)
iLumina Gold (HKLM-x32\...\iLumina2) (Version: 2.0 - Tyndale House Publishers, Inc)
ImagXpress (x32 Version: 7.0.74.0 - Nero AG) Hidden
ImgBurn (HKLM-x32\...\ImgBurn) (Version: 2.5.8.0 - LIGHTNING UK!)
Injustice: Gods Among Us Ultimate Edition (HKLM-x32\...\Steam App 242700) (Version:  - NetherRealm Studios)
Intel® Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1008 - Intel Corporation)
Intel® Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1281 - Intel Corporation)
Intel® Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 10.1.0.1008 - Intel Corporation)
IObit Malware Fighter (HKLM-x32\...\IObit Malware Fighter_is1) (Version: 2.5 - IObit)
IObit Uninstaller (HKLM-x32\...\IObitUninstall) (Version: 4.1.5.30 - IObit)
iTunes (HKLM\...\{2ABBBD91-91E5-4AD7-929A-FE15D1DC0576}) (Version: 12.0.1.26 - Apple Inc.)
Java 7 Update 67 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217067FF}) (Version: 7.0.670 - Oracle)
Java 8 Update 25 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation)
JDownloader 0.9 (HKLM-x32\...\5513-1208-7298-9440) (Version: 0.9 - AppWork GmbH)
join.me (HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\JoinMe) (Version: 1.18.0.189 - LogMeIn, Inc.)
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
KDiff3 (remove only) (HKLM-x32\...\KDiff3) (Version:  - )
K-Lite Mega Codec Pack 10.8.5 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 10.8.5 - )
Kodak AIO Printer (Version: 7.7.2.0 - Eastman Kodak Company) Hidden
KODAK AiO Software (HKLM-x32\...\{E0F274B7-592B-4669-8FB8-8D9825A09858}) (Version: 7.7.6.0 - Eastman Kodak Company)
ksDIP (x32 Version: 3.20.0000.0001 - Eastman Kodak Company) Hidden
KYOCERA USB Modem KC02US Driver (HKLM\...\{E2C3C89F-23CC-4C39-A900-6139F65B1557}) (Version: 2.11.0000 - KYOCERA Corporation)
LAME v3.99.3 (for Windows) (HKLM-x32\...\LAME_is1) (Version:  - )
Law and Order Dead on the Money (HKLM-x32\...\Law and Order Dead on the Money) (Version: 1.0 - Legacy Interacive)
Law and Order: Double or Nothing (HKLM-x32\...\Law and Order: Double or Nothing) (Version: 1.0 - Legacy Interacive)
Law and Order: Justice is Served (HKLM-x32\...\Law and Order: Justice is Served) (Version: 1.0 - Legacy Interacive)
Left 4 Dead 2 (HKLM-x32\...\Steam App 550) (Version:  - Valve)
Left 4 Dead 2 Authoring Tools (HKLM-x32\...\Steam App 563) (Version:  - Valve)
Left 4 Dead 2 Standalone Patch™ (HKLM-x32\...\L4D2SP) (Version: 8.2 - Gaming eXtreme)
LibUSB-Win32-0.1.10.1 (HKLM-x32\...\LibUSB-Win32_is1) (Version: 0.1.10.1 - LibUSB-Win32)
LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.291 - LogMeIn, Inc.)
LogMeIn Hamachi (x32 Version: 2.2.0.291 - LogMeIn, Inc.) Hidden
LOOT (HKLM-x32\...\LOOT) (Version: 0.6.0 - LOOT Development Team)
LTCM Client (HKLM-x32\...\LTCM Client) (Version:  - Leader Technologies Inc.)
Malwarebytes Anti-Malware version 2.0.4.1028 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation)
ManageMyMobile (HKLM-x32\...\ManageMyMobile_is1) (Version: 1.0 - IObit)
ManyCam 4.1.0 (HKLM-x32\...\ManyCam) (Version: 4.1.0 - Visicom Media Inc.)
MegaTrainer eXperience V1.2.1.6 (HKLM-x32\...\MegaTrainer eXperience_is1) (Version:  - )
Menu Templates - Starter Kit (x32 Version: 9.4.6.0 - Nero AG) Hidden
Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Messenger Companion (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Games for Windows - LIVE  (HKLM-x32\...\{4D243BA7-9AC4-46D1-90E5-EEB88974F501}) (Version: 2.0.687.0 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{05B49229-22A2-4F88-842A-BBC2EBE1CCF6}) (Version: 2.0.687.0 - Microsoft Corporation)
Microsoft Office Click-to-Run 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Starter 2010 - English (HKLM-x32\...\{90140011-0066-0409-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\OneDriveSetup.exe) (Version: 17.3.1229.0918 - Microsoft Corporation)
Microsoft OneDrive for Business 2013 - en-us (HKLM\...\GrooveRetail - en-us) (Version: 15.0.4675.1003 - Microsoft Corporation)
Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.6.305.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.31211.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Xbox 360 Accessories 1.2 (HKLM\...\{D9C50188-12D5-4D3E-8F00-682346C2AA5F}) (Version: 1.20.146.0 - Microsoft)
mIRC (HKLM-x32\...\mIRC) (Version: 7.36 - mIRC Co. Ltd.)
Modio (HKLM-x32\...\{3DA224A5-666B-4941-8998-2F19C6D126A5}_is1) (Version:  - GameTuts)
Monopoly by Parker Brothers (HKLM-x32\...\Monopoly by Parker Brothers) (Version: 1.0.406.0 - GameHouse, Inc.)
Mortal Kombat Komplete Edition (HKLM-x32\...\Steam App 237110) (Version:  - NetherRealm Studios)
MotioninJoy Gamepad tool 0.7.1001 (HKLM\...\{330DAC67-5B62-452A-A0E4-6B4A5923940F}_is1) (Version: 0.7.1001 - www.motioninjoy.com)
Motorola Device Manager (HKLM-x32\...\{28DB8373-C1BB-444F-A427-A55585A12ED7}) (Version: 2.4.5 - Motorola Mobility)
Motorola Device Software Update (x32 Version: 13.09.3001 - Motorola Mobility) Hidden
Motorola Mobile Drivers Installation 6.3.0 (HKLM\...\{759E6A2F-1F01-45EF-A0C4-22F1B56CB975}) (Version: 6.3.0 - Motorola Mobility LLC)
Movie Templates - Starter Kit (x32 Version: 9.4.6.0 - Nero AG) Hidden
Mozilla Firefox 34.0.5 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 34.0.5 (x86 en-US)) (Version: 34.0.5 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 31.0 - Mozilla)
MSI Afterburner 2.2.1 (HKLM-x32\...\Afterburner) (Version: 2.2.1 - MSI Co., LTD)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
Nero 9 Essentials (HKLM-x32\...\{120a48c5-c576-409a-a382-4500030f3965}) (Version:  - Nero AG)
Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.52.3 - Black Tree Gaming)
NVIDIA 3D Vision Controller Driver 347.09 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 347.09 - NVIDIA Corporation)
NVIDIA 3D Vision Driver 347.09 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 347.09 - NVIDIA Corporation)
NVIDIA GeForce Experience 2.1.5 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1.5 - NVIDIA Corporation)
NVIDIA Graphics Driver 347.09 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 347.09 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.3.33.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.33.0 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.14.0702 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.14.0702 - NVIDIA Corporation)
ocr (x32 Version: 6.2.3.50 - Eastman Kodak Company) Hidden
Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4675.1003 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (Version: 15.0.4675.1003 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4675.1003 - Microsoft Corporation) Hidden
ooVoo (HKLM-x32\...\{FAA7F8FF-3C05-4A61-8F14-D8A6E9ED6623}) (Version: 3.6.5001 - ooVoo LLC.)
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
OpenOffice 4.0.1 (HKLM-x32\...\{47F460DA-D1BE-4D85-8DF2-AA1F31D3445F}) (Version: 4.01.9714 - Apache Software Foundation)
Oxy updater (HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\{790875CA-153F-49F0-AAC8-C403494239A1}) (Version:  - AGILITY)
PCSX2 - Playstation 2 Emulator (HKLM-x32\...\pcsx2-r5875) (Version:  - )
PDF Settings CS6 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden
Platform (x32 Version: 1.36 - VIA Technologies, Inc.) Hidden
Pokémon Mystery Gift Editor (HKLM-x32\...\Pokémon Mystery Gift Editor) (Version:  - Grovyle91)
PreReq (x32 Version: 6.2.4.0 - Eastman Kodak Company) Hidden
Price Check by AOL (HKLM-x32\...\Price Check by AOL) (Version: 1.11.2.1 - AOL Inc.)
PrintProjects (HKLM-x32\...\PrintProjects) (Version: 1.0.0.9282 - RocketLife Inc.)
Project 64 version 2.1.0.1 (HKLM-x32\...\Project 64_is1) (Version: 2.1.0.1 - )
QuickShare (HKLM-x32\...\{04DB50FA-EA80-4256-85F9-540C582E280D}) (Version: 1.39.60.10936 - Linkury Inc.) <==== ATTENTION
QuickTime 7 (HKLM-x32\...\{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E}) (Version: 7.76.80.95 - Apple Inc.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.44.421.2011 - Realtek)
resident evil 4 / biohazard 4 (HKLM-x32\...\Steam App 254700) (Version:  - Capcom)
Resident Evil 5 (HKLM-x32\...\Steam App 21690) (Version:  - Capcom)
Revo Uninstaller Pro 3.0.7 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 3.0.7 - VS Revo Group, Ltd.)
Saints Row IV (HKLM-x32\...\Steam App 206420) (Version:  - Deep Silver Volition)
Saints Row: The Third (HKLM-x32\...\Steam App 55230) (Version:  - Volition)
SecondLifeBeta (remove only) (HKLM-x32\...\SecondLifeBeta) (Version:  - )
SecondLifeBetaViewer (remove only) (HKLM-x32\...\SecondLifeBetaViewer) (Version:  - )
SecondLifeViewer (remove only) (HKLM-x32\...\SecondLifeViewer) (Version:  - )
SHIELD Streaming (Version: 3.1.3000 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 16.18.9 - NVIDIA Corporation) Hidden
Singularity (64 bit) (remove only) (HKLM-x32\...\Singularity (64 bit)) (Version:  - )
SixaxisDriver 0.91 (HKLM-x32\...\GameSaike SixaxisDriver_is1) (Version:  - xPAD, Inc.)
Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.3.16540.9015 - Microsoft Corporation)
Skype™ 6.21 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 6.21.104 - Skype Technologies S.A.)
SlimCleaner (HKLM-x32\...\{6B8D6199-EE44-4FD7-813A-6D8C62C9B384}) (Version: 4.0.30878 - SlimWare Utilities, Inc.)
SlimDrivers (HKLM-x32\...\{A5457401-D56A-43F2-9524-78E54A7FC07A}) (Version: 2.2.32705 - SlimWare Utilities, Inc.)
Smart Defrag 3 (HKLM-x32\...\Smart Defrag 3_is1) (Version: 3.3 - IObit)
SONIC THE HEDGEHOG 4 Episode I (HKLM-x32\...\Steam App 202530) (Version:  - SEGA)
SONIC THE HEDGEHOG 4 Episode II (HKLM-x32\...\Steam App 203650) (Version:  - SEGA)
Sothink HD Movie Maker (HKLM-x32\...\{39352E3D-43FF-44E7-AC2F-0ADA04AF9BB2}_is1) (Version: 2.2 - SourceTec Software Co., LTD)
Sound Blaster X-Fi MB (HKLM-x32\...\{F3D9AC82-30F4-4BB9-B9AB-8697637568C1}) (Version: 1.0 - Creative Technology Limited)
Spelling Dictionaries Support For Adobe Reader 9 (HKLM-x32\...\{AC76BA86-7AD7-5464-3428-900000000004}) (Version: 9.0.0 - Adobe Systems Incorporated)
Star Wars Jedi Knight Jedi Academy (HKLM-x32\...\{1EECBA68-8BE4-4076-94DF-E9ED206B1D21}) (Version:  - )
Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation)
Super Mario Fusion Revival v0.4.1 (HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Super Mario Fusion Revival v0.4.1) (Version:  - )
SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 6.0.1168 - SUPERAntiSpyware.com)
Surfing Protection (HKLM-x32\...\IObit Surfing Protection_is1) (Version: 1.2 - IObit)
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
System Requirements Lab for Intel (HKLM-x32\...\{0941583C-A10F-4FBB-9B1C-9178CE3BFDAF}) (Version: 4.5.23.0 - Husdawg, LLC)
Task Manager Enable Tool (HKLM-x32\...\{6EF863B1-D8EA-4BB7-B88D-F96423FEFCF0}_is1) (Version:  - taskmanagerdisabled.com)
Team Fortress 2 (HKLM-x32\...\Steam App 440) (Version:  - Valve)
The Elder Scrolls Arena (HKLM-x32\...\{62E2BBFA-BE97-42CD-AE89-A4EEF7F36992}) (Version: 1.00.0000 - Bethesda Softworks)
The Elder Scrolls III: Morrowind (HKLM-x32\...\Steam App 22320) (Version:  - Bethesda Game Studios®)
The Elder Scrolls IV: Oblivion  (HKLM-x32\...\Steam App 22330) (Version:  - Bethesda Game Studios)
The Elder Scrolls V: Skyrim (HKLM-x32\...\Steam App 72850) (Version:  - Bethesda Game Studios)
The Jokers' Wild (HKLM-x32\...\The Jokers' Wild1.0.x) (Version: 1.0.x - BigJon's PCGames)
The Price Is Right (HKLM-x32\...\The Price Is Right7.9.0) (Version: 7.9.0 - BigJon's PCGames)
Tic Tac Dough 1.0 (HKLM-x32\...\Whammy_1.0) (Version:  - )
Unity Web Player (HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\UnityWebPlayer) (Version: 4.6.0f3 - Unity Technologies ApS)
VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden
Vegas Movie Studio HD 11.0 (HKLM-x32\...\{6DC79411-858B-11E1-8E7A-F04DA23A5C58}) (Version: 11.0.75 - Sony)
Vegas Movie Studio HD 9.0 (HKLM-x32\...\{655CD886-3B90-4E4D-B314-92BDA9B08C86}) (Version: 9.0.30 - Sony)
VIA Platform Device Manager (HKLM-x32\...\InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.36 - VIA Technologies, Inc.)
Visual Pinball (HKLM-x32\...\{B36C4994-A563-4339-8754-CCCE51314A4C}) (Version: 9.2.1.0 - Randy Davis)
Visual Studio 2010 x64 Redistributables (HKLM\...\{21B133D6-5979-47F0-BE1C-F6A6B304693F}) (Version: 13.0.0.1 - AVG Technologies)
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
VueScan x64 (HKLM\...\VueScan x64) (Version:  - )
WBFS Manager 3.0 (HKLM-x32\...\WBFS Manager 3.0) (Version: 3.0 - AlexDP)
WD Drive Utilities (HKLM-x32\...\{3E9C9EE1-1964-4519-BF80-652E7F415ECF}) (Version: 1.0.0 - Western Digital)
WD Security (HKLM-x32\...\{EFC0BA9B-F472-4559-B655-9C47281F9483}) (Version: 1.0.0 - Western Digital)
WD SmartWare (HKLM\...\{EC39CC32-E144-42E4-9A59-53C20B408BDE}) (Version: 1.5.4 - Western Digital)
Wheel Of Fortune 7.1.x (HKLM-x32\...\BJWOF) (Version: 7.1.x - BigJon's PCGames)
Wheel of Fortune Deluxe (remove only) (HKLM-x32\...\Wheel of Fortune Deluxe) (Version:  - )
WhoCrashed 4.02 (HKLM\...\WhoCrashed_is1) (Version:  - Resplendence Software Projects Sp.)
Winamp (HKLM-x32\...\Winamp) (Version: 5.63  - Nullsoft, Inc)
Windows Driver Package - Datel Design & Development (usbio) USBIOControlledDevices  (04/21/2009 2.40.0.0) (HKLM\...\30853F7174C6EB267FDAABE50A369169D18DA611) (Version: 04/21/2009 2.40.0.0 - Datel Design & Development)
Windows Driver Package - Datel Design & Development USBIOControlledDevices  (04/21/2009 2.40.0.0) (HKLM\...\8555DF8099612EF2F8333DC0EC454113D4537E7B) (Version: 04/21/2009 2.40.0.0 - Datel Design & Development)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation)
Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation)
WinPcap 4.1.2 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2001 - CACE Technologies)
WinRAR 4.20 (64-bit) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH)
World Wrestling Mpire 2013 HD (HKLM-x32\...\World Wrestling Mpire 2013 HD) (Version:  - )
Wrestling MPire 2004  (HKLM-x32\...\Wrestling MPire 2004) (Version:  - MDickie)
Wrestling MPire 2008 (Management Edition)  (HKLM-x32\...\Wrestling MPire 2008 (Management Edition)) (Version:  - MDickie)
XFastUSB (HKLM-x32\...\XFastUSB) (Version: 3.02.28 - ASRock Inc.)
Xiph QuickTime Components (HKLM-x32\...\XiphQT) (Version:  - )
Yahoo! Detect (HKLM-x32\...\YTdetect) (Version:  - )
Yahoo! Install Manager (HKLM-x32\...\YInstHelper) (Version:  - )
Yahoo! Messenger (HKLM-x32\...\Yahoo! Messenger) (Version:  - Yahoo! Inc.)
Your Product (HKLM-x32\...\Your Product1.0) (Version: 1.0 - Your Company)
YTD Toolbar v6.6 (HKLM-x32\...\{3ECECC41-64EC-47F7-BCD1-6EC7039FF88A}) (Version: 6.6 - Spigot, Inc.) <==== ATTENTION
Zune (HKLM\...\Zune) (Version: 04.08.2345.00 - Microsoft Corporation)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\gamerpc\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\gamerpc\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\gamerpc\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\gamerpc\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\gamerpc\AppData\Local\Google\Update\1.3.25.11\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\gamerpc\AppData\Local\Google\Update\1.3.25.11\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\gamerpc\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\gamerpc\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\amd64\FileSyncApi64.dll (Microsoft Corporation)

==================== Restore Points  =========================

01-01-2015 16:30:26 Installed DirectX
02-01-2015 03:00:33 Installed DirectX
02-01-2015 11:54:56 Windows Update
04-01-2015 23:04:21 ComboFix created restore point
06-01-2015 05:17:57 Windows Update
07-01-2015 14:28:38 Restore Point Created by FRST
07-01-2015 16:47:14 Restore Point Created by FRST

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-09-30 03:00 - 2014-05-25 10:28 - 00000865 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1       localhost
127.0.0.1   d3oxij66pru1i3.cloudfront.net

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {0CAA66BE-DAFF-4A7E-9E58-A31743247C34} - System32\Tasks\{7DDB43B2-2774-4D73-BC49-EAAC4F2A404D} => Iexplore.exe http://ui.skype.com/...?LastError=1618
Task: {0D87EEE5-5832-4C22-81E7-8E6DDD8BBF4C} - System32\Tasks\Motorola Device Manager Initial Update => C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe [2013-10-31] ()
Task: {0DD28E27-D22C-4107-9A2E-352629191C6F} - System32\Tasks\{89A63435-1F11-4FA5-BE4B-2F500309DF5E} => C:\Program Files (x86)\Ubisoft\Law and Order Dead on the Money\lawandorder.exe [2006-08-31] (Macromedia, Inc.)
Task: {0E0A1550-5014-4C39-873D-5704425E4CF7} - System32\Tasks\{38371D5D-149E-4184-AEA7-B1EBEB47425D} => C:\Users\gamerpc\Desktop\Emulators\Super Nintendo Emulator\Final Fantasy Mystic Quest Editor\MQME.exe
Task: {0FFFF36C-A124-4DDC-BCAB-C63EAA47D9E7} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1692155839-1707551626-4126777635-1001Core => C:\Users\gamerpc\AppData\Local\Google\Update\GoogleUpdate.exe [2014-07-23] (Google Inc.)
Task: {113431B7-FDEB-4364-A241-9BCD9501D54F} - System32\Tasks\SUPERAntiSpyware Scheduled Task ca24798f-befb-4d39-ac7a-fad5807630aa => C:\Program Files\SUPERAntiSpyware\SASTask.exe [2013-11-07] (SUPERAdBlocker.com)
Task: {146808BA-6DFF-4362-BBB4-4237A10BE223} - System32\Tasks\{15302808-3B18-47DF-8805-E238EA913DB6} => C:\Program Files (x86)\Ubisoft\Law and Order Dead on the Money\lawandorder.exe [2006-08-31] (Macromedia, Inc.)
Task: {1E7338AE-F296-4748-AEFC-129F177D329A} - System32\Tasks\{495C770D-A63A-46AE-9F1A-D01A2B8D5A3D} => Iexplore.exe http://ui.skype.com/...?LastError=1618
Task: {204103C1-8952-4CA7-923E-6FA8F60AC321} - System32\Tasks\{D4976C14-C0B6-4B94-B8F8-28F997D6D580} => pcalua.exe -a "C:\Users\gamerpc\Desktop\mugen-1.1b1\stages\Stage Viewer Allegro Test.exe" -d C:\Users\gamerpc\Desktop\mugen-1.1b1\stages
Task: {248D787C-EFF2-43F7-A9A5-BA67D72AC61C} - System32\Tasks\{436964C9-7BE5-4A6B-86A2-A52439D79F1D} => C:\Program Files (x86)\AOL Desktop 9.7c\aol.exe [2013-09-07] (AOL Inc.)
Task: {257C4E95-AF76-4A2F-8F3C-4C69B5AE4D34} - System32\Tasks\{34C7ACF9-07BE-4AF9-AD3C-70DF530D07FC} => C:\Program Files (x86)\Ubisoft\Law and Order Double or Nothing\lawandorder2.exe [2006-09-02] (Macromedia, Inc.)
Task: {2EAB076C-1752-4952-B4BA-576732210069} - System32\Tasks\Microsoft Office 15 Sync Maintenance for GAMER-Mario Valencia gamer => C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe [2014-11-04] (Microsoft Corporation)
Task: {324A7872-BA66-48BF-86BD-586E9750BAC7} - System32\Tasks\{97BDF217-699D-40E4-8005-75974F8E8AD7} => pcalua.exe -a "D:\Drivers\Rapid Storage Technology\Intel\Win7-64_Win7_Vista64_Vista_XP64_XP(v1.0.1.0.1008_PV)\iata_cd.exe" -d "D:\Drivers\Rapid Storage Technology\Intel\Win7-64_Win7_Vista64_Vista_XP64_XP(v1.0.1.0.1008_PV)\" -c -s
Task: {3457EDFC-61B1-4D55-AFB6-644C4884B181} - System32\Tasks\{13444DD8-0D3B-45AF-A801-9B0AC8F19A5F} => C:\Program Files (x86)\Ubisoft\Law and Order Double or Nothing\lawandorder2.exe [2006-09-02] (Macromedia, Inc.)
Task: {3516C7DE-AD72-4664-BA5D-E665FF381016} - System32\Tasks\Uninstaller_SkipUac_Administrator => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [2014-12-29] (IObit)
Task: {3701720C-3890-45D2-8995-DED38B4BBA55} - System32\Tasks\{583F1279-E01F-4C2B-B8D0-3F6EF87558DB} => C:\Program Files (x86)\Ubisoft\Law and Order Dead on the Money\lawandorder.exe [2006-08-31] (Macromedia, Inc.)
Task: {3A1EF08B-BBAD-44A6-9557-33AEB8662C95} - System32\Tasks\ParetoLogic Update Version3 Startup Task => C:\Program Files (x86)\Common Files\ParetoLogic\UUS3\Pareto_Update3.exe
Task: {3A545F31-6E4F-45D4-BA98-73DFB7C08E30} - System32\Tasks\SUPERAntiSpyware Scheduled Task 197a93c8-85f3-41a8-8955-a770786ae1ff => C:\Program Files\SUPERAntiSpyware\SASTask.exe [2013-11-07] (SUPERAdBlocker.com)
Task: {3B1F4F54-2192-4520-B1A9-B7833287E2B3} - System32\Tasks\{ADE47326-50EA-4AA8-810A-A78C29DCED21} => pcalua.exe -a "C:\Bethesda Softworks\Fallout 3\Uninstall\setup.exe" -d "C:\Bethesda Softworks\Fallout 3\Uninstall"
Task: {3B9B835F-394B-476F-BEE5-F3561C000353} - System32\Tasks\{EE46B256-0166-44A3-AC37-2DFFF3494E1F} => Iexplore.exe http://ui.skype.com/...?LastError=1618
Task: {3C913460-5E90-4F0F-A674-4795F8B7B2A5} - System32\Tasks\{5AEC82BD-CCAF-41ED-8098-3A5FF67B0660} => C:\Program Files (x86)\Ubisoft\Law and Order Dead on the Money\lawandorder.exe [2006-08-31] (Macromedia, Inc.)
Task: {4191FB6C-BBC1-4AF6-BBE5-03180B604BEC} - System32\Tasks\SlimCleaner Run => C:\Program Files (x86)\SlimCleaner\SlimCleaner.exe [2013-07-10] (SlimWare Utilities, Inc.)
Task: {43E7A597-C182-4F70-93F8-45DD95B94153} - System32\Tasks\SlimDrivers Startup => C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe [2013-09-24] (SlimWare Utilities, Inc.)
Task: {44217412-BA82-46AD-AF67-530DFE104991} - System32\Tasks\{4CBA51F0-5AC0-448D-B5E5-73629AC4F9DB} => C:\Program Files (x86)\AOL Desktop 9.7c\aol.exe [2013-09-07] (AOL Inc.)
Task: {452BA0B6-39F8-405A-93C6-CD288E0F8B15} - System32\Tasks\{E9466C25-F164-46FA-91C7-A284868168CE} => pcalua.exe -a D:\Setup\Setup.exe -d D:\Setup
Task: {4545AE08-B6AC-4928-8E9D-134E711F2E62} - System32\Tasks\{F2049560-4C2D-43F8-8E05-793BB9262712} => C:\Program Files (x86)\Ubisoft\Law and Order Double or Nothing\lawandorder2.exe [2006-09-02] (Macromedia, Inc.)
Task: {47C4D6D8-CD24-4FA5-BF35-ECF90DD74FF2} - System32\Tasks\{1B2B8E15-52CB-4BC3-BBD4-5446E6C5B50D} => C:\Program Files (x86)\Ubisoft\Law and Order Double or Nothing\lawandorder2.exe [2006-09-02] (Macromedia, Inc.)
Task: {4823347F-DA5F-4AAF-99AA-7D1937C7AB0B} - System32\Tasks\{23242C15-D18E-4C89-9D55-96F13DE263CF} => Iexplore.exe http://ui.skype.com/...?LastError=1618
Task: {50B96578-A75D-404A-84C2-6397D9D220C3} - System32\Tasks\ASC8_SkipUac_gamerpc => C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASC.exe [2014-11-17] (IObit)
Task: {50EDBB82-75B9-48BD-9E29-3E7FC3EAEE0D} - System32\Tasks\{F4D773ED-9329-41AD-903B-BEFBD5F0A4E0} => Iexplore.exe http://ui.skype.com/...?LastError=1618
Task: {52FB5383-65F8-48E7-A1B5-CA181A3B009A} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2014-10-06] ()
Task: {55345424-F331-4855-A869-14DD76591D7B} - System32\Tasks\{757BA854-A645-43BE-B6C2-A3C0EDA0C56E} => C:\Program Files (x86)\AOL Desktop 9.7c\aol.exe [2013-09-07] (AOL Inc.)
Task: {565E2D3C-6EEC-483B-BE4E-4509712D6507} - System32\Tasks\{C6FB4AAF-1E64-4651-AF4B-54461A9A5B1C} => pcalua.exe -a F:\EN_Fallout_3_DLC.EXE -d F:\
Task: {569BE5E9-0356-49EC-9844-ADA88F96752C} - System32\Tasks\{6CFDEE95-E432-4474-8338-A2454B24BAC2} => pcalua.exe -a C:\Windows\system32\AxSWindCx64.cpl -c Alcohol iSCSI Sharing Center
Task: {5965DC73-39B1-4B17-B3A5-BCD6A5E0E32E} - System32\Tasks\{2D684DF1-4F9A-416D-AE60-C56C5C5FBA9B} => C:\Users\gamerpc\Desktop\Emulators\Super Nintendo Emulator\Final Fantasy Mystic Quest Editor\MQME.exe
Task: {59AF5489-E731-4E1B-93E5-D64EED649280} - System32\Tasks\Game_Booster_AutoUpdate => C:\Program Files (x86)\IObit\Game Booster 3\AutoUpdate.exe [2013-06-08] ()
Task: {5E6A229D-D490-4A44-8DA6-85C9A3001F40} - System32\Tasks\Games\UpdateCheck_S-1-5-21-1692155839-1707551626-4126777635-1001
Task: {62A25BE9-3DAD-4977-A721-85B203944952} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {6407575D-4CA3-4C3A-BB0B-5CA09DA16C24} - System32\Tasks\Uninstaller_SkipUac_gamerpc => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [2014-12-29] (IObit)
Task: {659D2ABF-C419-413D-944A-AD4FE8BF15BB} - System32\Tasks\{52E67BE1-787D-4029-AA18-3619DF209F4C} => C:\Program Files (x86)\Ubisoft\Law and Order Double or Nothing\lawandorder2.exe [2006-09-02] (Macromedia, Inc.)
Task: {6CB8CAC1-F456-4928-A40E-25E066B83CA9} - System32\Tasks\{96B850C4-D265-4CA8-91A0-CDBE6344AE48} => C:\Program Files (x86)\PCSX2 1.2.1\pcsx2-r5875.exe [2014-02-03] ()
Task: {6EF5B98E-F65E-4DDD-AD3F-7A2430854744} - System32\Tasks\Motorola Device Manager Engine => C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe [2013-10-31] ()
Task: {76A33D7D-0E73-4A25-B742-F081BE4C2492} - System32\Tasks\{FDE7E32B-90B0-4E07-B780-686252CC0F03} => pcalua.exe -a C:\Users\gamerpc\AppData\Local\Temp\{69E3CF44-2501-4429-9278-C4B3327E96D6}\setup.exe -d "C:\Program Files (x86)\Mozilla Firefox"
Task: {77BDFD32-FB7D-41E0-ADB4-BCE9AFBE2E2E} - System32\Tasks\{65DC432B-FC7F-4ECF-B37C-063D8D31EE3B} => pcalua.exe -a "J:\Emulators\Pinball emulator\Setup.exe" -d "J:\Emulators\Pinball emulator"
Task: {7C7AFC6C-F27F-4121-AA20-C529F05E5895} - System32\Tasks\{E02E8E32-E420-4B68-B35E-E66DA8D5542F} => C:\Program Files (x86)\AOL Desktop 9.7b\aol.exe [2013-09-07] (AOL Inc.)
Task: {805B25C2-D511-435D-9708-974F1004EAA9} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-12-12] (Adobe Systems Incorporated)
Task: {80EA390C-FB34-4EAE-BCBB-4FA5A2DEFC7B} - System32\Tasks\SmartDefrag3_Update => C:\Program Files (x86)\IObit\Smart Defrag 3\AutoUpdate.exe [2014-07-23] (IObit)
Task: {8C4712A7-3A98-4D4E-AEA3-FE94FB0A511C} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-1692155839-1707551626-4126777635-1001 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe
Task: {8FA82B3F-F923-45E5-AE4F-F0A12BF12726} - System32\Tasks\Driver Booster SkipUAC (gamerpc) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe [2014-12-17] (IObit)
Task: {920152C7-4E33-4CC2-A300-9E5F8FFA9C15} - System32\Tasks\{D56D8570-6764-4DF0-9F0F-EA2F00E51ED2} => C:\Users\gamerpc\Desktop\Emulators\Super Nintendo Emulator\Final Fantasy Mystic Quest Editor\MQME.exe
Task: {9674FF78-B7FC-455A-995C-29F9A7785547} - System32\Tasks\GoogleUpdateTaskMachineUA1cfa712be8cef20 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-07-23] (Google Inc.)
Task: {97355DB0-E9DD-468C-9E15-90A7362A8269} - System32\Tasks\{80BE3591-B3BA-41BE-B092-6F8C5F5E88CA} => pcalua.exe -a F:\INSTALL.EXE -d F:\
Task: {97B8E946-8A6B-47C9-8EF4-8B5F6978742E} - System32\Tasks\{12EEBA21-4B0F-429B-AAAB-FD8B72F1994B} => C:\Program Files (x86)\AOL Desktop 9.7b\aol.exe [2013-09-07] (AOL Inc.)
Task: {99F4C835-ABA2-4F76-A527-5D09BAEC2E7D} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: {9C6E6BD1-5701-4513-A730-E4B8618D713B} - System32\Tasks\{EC4F7D6A-93FC-48A1-B3CD-8D5472BFE624} => pcalua.exe -a "C:\Users\gamerpc\Desktop\L4D2IUP 2.1.1.0-2.1.1.1.exe" -d C:\Users\gamerpc\Desktop
Task: {9E326060-1BFD-44C2-97E0-23FED6993105} - System32\Tasks\{4EF1F145-9FBC-484B-A487-C2A1E7E14BDA} => pcalua.exe -a C:\Users\gamerpc\Downloads\Setup.exe -d C:\Users\gamerpc\Downloads
Task: {9E517687-BFD9-4B7F-AE7F-FAAA369F7E99} - System32\Tasks\{9410AEA7-64E3-43FB-B046-4F2472976323} => C:\Program Files (x86)\AOL Desktop 9.7b\aol.exe [2013-09-07] (AOL Inc.)
Task: {9F2CC09D-41D1-4FFD-AB05-76532917522E} - System32\Tasks\Motorola Device Manager Update => C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe [2013-10-31] ()
Task: {A25D7E1D-1326-4E8D-A13D-83DE49944BE9} - System32\Tasks\Microsoft Office 15 Sync Maintenance for GAMER-gamerpc gamer => C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe [2014-11-04] (Microsoft Corporation)
Task: {A7E63AE5-056C-4807-BA67-4A6F9302397F} - System32\Tasks\AdobeAAMUpdater-1.0-NWOFAN-PC-gamerpc => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04] (Adobe Systems Incorporated)
Task: {A89290B7-3C7F-4DEC-A506-4A48246B6E9A} - System32\Tasks\{4971BCBB-5644-4480-8840-A01625227057} => Iexplore.exe http://ui.skype.com/...?LastError=1618
Task: {B34C8FA2-EA7F-4AEB-968A-83B71B6FED12} - System32\Tasks\{29DCDBB9-B8DC-43BF-829A-1C1ECB386532} => pcalua.exe -a D:\demo32.exe -d D:\
Task: {BDA82C71-F91F-4384-AFC8-150A9BD4F3F9} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-1692155839-1707551626-4126777635-1001 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe
Task: {C11D9D24-82B7-42EE-8233-64345169CD0D} - System32\Tasks\{9596AF65-ABAD-4197-9897-593BB68C6B18} => C:\Program Files (x86)\PCSX2 1.2.1\pcsx2-r5875.exe [2014-02-03] ()
Task: {C294ABFB-C20E-45AF-95C8-850F5726855D} - System32\Tasks\{A733E35F-BCAF-4970-8A6E-41BE0D404C71} => pcalua.exe -a D:\Setup.exe -d D:\
Task: {C7937331-6151-46E2-821E-D1F1F651B3DA} - System32\Tasks\{454737B3-2210-4D8F-8514-F0CBD8C7D3B7} => C:\Users\gamerpc\Desktop\Emulators\Super Nintendo Emulator\Final Fantasy Mystic Quest Editor\MQME.exe
Task: {CA0DEF3F-F5AE-445A-91FC-12F12449E8C1} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1692155839-1707551626-4126777635-1001UA => C:\Users\gamerpc\AppData\Local\Google\Update\GoogleUpdate.exe [2014-07-23] (Google Inc.)
Task: {CA25213A-AE1F-4EB3-B977-43AE47AF70AA} - System32\Tasks\{A8CF3916-F146-4B52-AA9A-8FC6C1BCAF09} => C:\Program Files (x86)\AOL Desktop 9.7c\aol.exe [2013-09-07] (AOL Inc.)
Task: {CDABA220-EC7B-4B51-9C92-5EB5EFB6FBE4} - System32\Tasks\{BEC953CE-8B3F-46EA-B536-4CA8F1B7BF3D} => C:\Users\gamerpc\Desktop\Dolphin-x64\Dolphin.exe
Task: {D1F376C4-D1EE-4AEA-8FA8-6457479B0D60} - System32\Tasks\GoogleUpdateTaskMachineCore1cfa712bccbb08c => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-07-23] (Google Inc.)
Task: {D4507B15-DBF6-4C93-97FD-4C2E9CD60CEF} - System32\Tasks\{07133507-5FE9-44AC-80B5-C22EA368930E} => pcalua.exe -a "C:\Users\gamerpc\Desktop\mugen\stages\Stage Viewer Allegro Test.exe" -d C:\Users\gamerpc\Desktop\mugen\stages
Task: {D778266A-3244-455F-B30E-51DF98CF8134} - System32\Tasks\{9D59B7D9-9CA6-4992-8408-69B7A8FE924C} => C:\Users\gamerpc\Desktop\pcsx2-5932-windows-x86\pcsx2-r5927.exe
Task: {D9C075EF-189E-4421-BF85-1BC31D0BB9F4} - System32\Tasks\{C2048E73-C126-445F-AB37-DB8D4D7E3B71} => pcalua.exe -a "C:\Users\gamerpc\Desktop\AIO Adobe Photoshop Portable (2011) CS1 &amp;CS2 &amp; CS3 &amp; CS4 &amp; CS5 [WwW.ZoNaTorrent.CoM]\Photoshop CS4 Portable.exe" -d "C:\Users\gamerpc\Desktop\AIO Adobe Photoshop Portable (2011) CS1 &amp;CS2 &amp; CS3 &amp; CS4 &amp; CS5 [WwW.ZoNaTorrent.CoM]"
Task: {E1EF9758-69CE-47B6-AD1E-563A85B46D02} - System32\Tasks\{A3D5B3B5-514C-4249-94B9-E18B4D4F8885} => Iexplore.exe http://ui.skype.com/...?LastError=1618
Task: {E4E7EFBE-D522-433E-AE17-C8798820EAE7} - System32\Tasks\Driver Booster SkipUAC (SYSTEM) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe [2014-12-17] (IObit)
Task: {E9C15860-9693-4B82-983A-40B220293985} - System32\Tasks\{2EC7C282-1B02-4456-9278-460D2E2D52A0} => C:\Program Files (x86)\Ubisoft\Law and Order Double or Nothing\lawandorder2.exe [2006-09-02] (Macromedia, Inc.)
Task: {EE959627-DB5B-4149-9E7F-B6D57C95ABB5} - System32\Tasks\{59ED6458-32C7-457F-8A51-5B92C294F3D5} => C:\Program Files (x86)\Ubisoft\Law and Order Dead on the Money\lawandorder.exe [2006-08-31] (Macromedia, Inc.)
Task: {F03D4C5C-6FC2-4DE1-8EFE-0284AC1E8108} - System32\Tasks\{274BBCBC-393C-454B-8BB1-11C8A8ECDE8D} => C:\Users\gamerpc\Desktop\Dolphin-x64\Dolphin.exe
Task: {FB085F2A-618F-4508-91B4-FBD159AE6E87} - System32\Tasks\{D921C84D-38B9-4302-A7F8-9EEEAD017E7F} => C:\Program Files (x86)\Ubisoft\Law and Order Dead on the Money\lawandorder.exe [2006-08-31] (Macromedia, Inc.)
Task: {FF0B45CD-C2EA-433F-8FC9-154F2C4029B0} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2014-11-04] (Microsoft Corporation)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1cfa712bccbb08c.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA1cfa712be8cef20.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1692155839-1707551626-4126777635-1001Core.job => C:\Users\gamerpc\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1692155839-1707551626-4126777635-1001UA.job => C:\Users\gamerpc\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\ParetoLogic Update Version3 Startup Task.job => C:\Program Files (x86)\Common Files\ParetoLogic\UUS3\Pareto_Update3.exe
Task: C:\Windows\Tasks\SlimDrivers Startup.job => C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe
Task: C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 197a93c8-85f3-41a8-8955-a770786ae1ff.job => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
Task: C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task ca24798f-befb-4d39-ac7a-fad5807630aa.job => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe

==================== Loaded Modules (whitelisted) =============

2013-09-29 20:24 - 2014-12-13 00:03 - 00117576 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2014-11-20 13:02 - 2014-09-23 05:36 - 08897696 _____ () C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\1033\GrooveIntlResource.dll
2014-06-15 19:58 - 2014-05-20 08:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll
2010-11-02 06:33 - 2010-11-02 06:33 - 01083392 ____R () C:\Program Files\Western Digital\WD SmartWare\System.Data.SQLite.dll
2013-09-11 18:03 - 1999-12-31 16:00 - 00078456 _____ () C:\Program Files (x86)\VIA\VIAudioi\VDeck\QsApoApi64.dll
2013-09-11 18:03 - 1999-12-31 16:00 - 00386168 _____ () C:\Program Files (x86)\VIA\VIAudioi\VDeck\Dts2ApoApi64.dll
2014-01-09 21:26 - 2014-01-09 21:26 - 01861968 _____ () C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
2014-12-02 11:18 - 2013-10-25 12:08 - 00517408 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 8\sqlite3.dll
2014-01-20 13:17 - 2014-01-20 13:17 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2014-10-11 12:05 - 2014-10-11 12:05 - 01044776 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2014-11-20 13:02 - 2014-09-23 03:43 - 08897696 _____ () C:\Program Files\Microsoft Office 15\root\Office15\1033\GrooveIntlResource.dll
2013-10-31 07:05 - 2013-10-31 07:05 - 00172032 _____ () C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\css_core.dll
2012-05-30 09:11 - 2012-05-30 09:11 - 00176128 _____ () C:\Program Files (x86)\AIM\nssckbi.dll
2014-10-30 21:07 - 2014-10-06 10:00 - 03502080 _____ () C:\Program Files (x86)\K-Lite Codec Pack\Filters\ffdshow\ffdshow.ax
2013-05-10 10:12 - 2013-05-07 08:08 - 00675840 _____ () C:\Windows\SysWOW64\ac3filter.ax
2014-09-24 13:30 - 2014-09-24 13:30 - 00081056 _____ () C:\Users\gamerpc\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\LoggingPlatform.DLL
2014-08-22 10:32 - 2014-12-01 13:31 - 02396672 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll
2014-08-22 10:32 - 2014-12-01 13:31 - 00442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll
2014-08-22 10:32 - 2014-12-01 13:31 - 00479744 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll
2014-08-22 10:32 - 2014-12-01 13:31 - 00332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll
2013-02-28 10:52 - 2014-11-11 10:47 - 00774656 _____ () C:\Program Files (x86)\Steam\SDL2.dll
2014-12-02 11:11 - 2014-12-01 16:29 - 05002752 _____ () C:\Program Files (x86)\Steam\v8.dll
2014-12-02 11:11 - 2014-12-01 16:29 - 01612800 _____ () C:\Program Files (x86)\Steam\icui18n.dll
2014-12-02 11:11 - 2014-12-01 16:29 - 01210368 _____ () C:\Program Files (x86)\Steam\icuuc.dll
2014-04-30 17:26 - 2015-01-08 18:08 - 02226880 _____ () C:\Program Files (x86)\Steam\video.dll
2014-08-22 10:32 - 2014-12-01 13:31 - 00485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll
2012-10-22 22:57 - 2015-01-08 18:07 - 00696512 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL
2012-10-22 19:44 - 2012-05-25 03:25 - 00921600 _____ () C:\Program Files (x86)\Yahoo!\Messenger\yui.dll
2012-10-22 19:44 - 2012-05-25 03:25 - 00078336 _____ () C:\Program Files (x86)\Yahoo!\Messenger\pcre.dll
2014-09-24 13:30 - 2014-09-24 13:30 - 00081056 _____ () C:\Users\gamerpc\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\LoggingPlatform.dll
2014-12-07 23:53 - 2014-03-17 04:23 - 00003132 _____ () C:\Program Files (x86)\DAEMON Tools Pro\MSIMG32.dll
2014-10-16 13:11 - 2014-10-16 13:11 - 00169472 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\93182e9779b8be0f688fd0784df6d7fb\IsdiInterop.ni.dll
2012-10-18 11:01 - 2010-11-05 22:50 - 00058880 _____ () C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IsdiInterop.dll
2012-10-22 22:57 - 2014-12-19 15:38 - 34641288 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll
2012-11-13 19:22 - 2012-11-13 19:22 - 02010624 _____ () C:\Program Files (x86)\ManyCam\opencv_core220.dll
2012-11-13 19:23 - 2012-11-13 19:23 - 01241088 _____ () C:\Program Files (x86)\ManyCam\opencv_imgproc220.dll
2012-11-13 19:23 - 2012-11-13 19:23 - 00241152 _____ () C:\Program Files (x86)\ManyCam\opencv_objdetect220.dll
2012-11-13 19:23 - 2012-11-13 19:23 - 00775680 _____ () C:\Program Files (x86)\ManyCam\opencv_highgui220.dll
2012-11-13 19:23 - 2012-11-13 19:23 - 00201216 _____ () C:\Program Files (x86)\ManyCam\opencv_video220.dll
2015-01-09 13:19 - 2015-01-09 13:19 - 00697884 _____ () C:\Users\gamerpc\AppData\Local\Temp\Sound_Blaster_X-Fi_MB_Cleanup.0001.dir.0003\~df394b.tmp
2015-01-09 13:19 - 2015-01-09 13:19 - 00592896 _____ () C:\Users\gamerpc\AppData\Local\Temp\Sound_Blaster_X-Fi_MB_Cleanup.0001.dir.0003\~de6248.tmp
2012-10-24 20:35 - 2009-02-06 17:52 - 00073728 _____ () C:\Windows\SysWOW64\CmdRtr.DLL
2012-10-24 20:35 - 2009-04-20 10:55 - 00148480 _____ () C:\Windows\SysWOW64\APOMngr.DLL
2014-01-09 21:28 - 2014-01-09 21:28 - 00100688 _____ () C:\Program Files (x86)\DivX\DivX Update\DivXUpdateCheck.dll
2013-11-27 18:36 - 2013-01-15 17:48 - 00348992 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\madExcept_.bpl
2013-11-27 18:36 - 2013-01-15 17:48 - 00183616 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\madBasic_.bpl
2013-11-27 18:36 - 2013-01-15 17:48 - 00051008 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\madDisAsm_.bpl
2013-11-27 18:36 - 2013-12-12 17:46 - 08001344 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\WebUI.dll
2013-11-27 18:36 - 2013-05-16 18:26 - 00182080 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\unrar.dll
2013-12-04 08:42 - 2013-10-16 21:17 - 00185168 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\libcurl-4.dll
2013-11-27 18:36 - 2013-05-16 18:26 - 00145216 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\zlibwapi.dll
2014-11-20 13:02 - 2014-11-20 13:02 - 00316576 _____ () C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\AppVIsvStream32.dll
2012-10-18 11:03 - 1999-12-31 16:00 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\ACE.dll
2014-12-02 11:18 - 2013-01-15 18:47 - 00893248 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 8\webres.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\ProgramData\Temp:56E2E879
AlternateDataStreams: C:\Users\gamerpc\AppData\Roaming\default.rss:OECustomProperty
AlternateDataStreams: C:\Users\Mario Valencia.NWOFAN-PC\AppData\Roaming\default.rss:OECustomProperty

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PEVSystemStart => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\procexp90.Sys => ""="Driver"

==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)

==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)

========================= Accounts: ==========================

Administrator (S-1-5-21-1692155839-1707551626-4126777635-500 - Administrator - Disabled)
Alex Valencia (S-1-5-21-1692155839-1707551626-4126777635-1004 - Administrator - Enabled) => C:\Users\Alex Valencia
gamerpc (S-1-5-21-1692155839-1707551626-4126777635-1001 - Administrator - Enabled) => C:\Users\gamerpc
Guest (S-1-5-21-1692155839-1707551626-4126777635-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1692155839-1707551626-4126777635-1011 - Limited - Enabled)
Mario Valencia (S-1-5-21-1692155839-1707551626-4126777635-1007 - Administrator - Enabled) => C:\Users\Mario Valencia.NWOFAN-PC
Veronica Valencia (S-1-5-21-1692155839-1707551626-4126777635-1008 - Administrator - Enabled) => C:\Users\Veronica Valencia.NWOFAN-PC

==================== Faulty Device Manager Devices =============

==================== Event log errors: =========================

Application errors:
==================
Error: (01/09/2015 02:30:48 PM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.18444 - There was a failure initializing profiling API attach infrastructure.  This process will not allow a profiler to attach.  HRESULT: 0x80004005.  Process ID (decimal): 11372.  Message ID: [0x2509].

Error: (01/09/2015 02:28:57 PM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.18444 - There was a failure initializing profiling API attach infrastructure.  This process will not allow a profiler to attach.  HRESULT: 0x80004005.  Process ID (decimal): 10248.  Message ID: [0x2509].

Error: (01/09/2015 02:28:08 PM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.18444 - There was a failure initializing profiling API attach infrastructure.  This process will not allow a profiler to attach.  HRESULT: 0x80004005.  Process ID (decimal): 5088.  Message ID: [0x2509].

Error: (01/09/2015 02:23:57 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: Adblock.exe, version: 1.0.0.0, time stamp: 0x52b29860
Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0x1d4219ff
Faulting process id: 0x2fa4
Faulting application start time: 0xAdblock.exe0
Faulting application path: Adblock.exe1
Faulting module path: Adblock.exe2
Report Id: Adblock.exe3

Error: (01/09/2015 01:55:52 PM) (Source: MsiInstaller) (EventID: 10005) (User: GAMER)
Description: Product: Ask Shopping Toolbar -- Error 25001. The following applications must be closed before continuing the uninstall:

Internet Explorer

Error: (01/09/2015 01:14:29 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Unexpected conflict discarding   13 102.1.168.192.in-addr.arpa. PTR gamer.local.

Error: (01/09/2015 01:14:29 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 192.168.1.102:5353   15 102.1.168.192.in-addr.arpa. PTR gamer-2.local.

Error: (01/09/2015 01:14:29 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Unexpected conflict discarding   13 45.226.35.25.in-addr.arpa. PTR gamer.local.

Error: (01/09/2015 01:14:29 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 25.35.226.45:5353   15 45.226.35.25.in-addr.arpa. PTR gamer-2.local.

Error: (01/09/2015 04:58:05 AM) (Source: MsiInstaller) (EventID: 11606) (User: NT AUTHORITY)
Description: Product: Adobe Refresh Manager -- Error 1606.Could not access network location %APPDATA%\.

System errors:
=============
Error: (01/09/2015 02:26:18 PM) (Source: DCOM) (EventID: 10016) (User: GAMER)
Description: application-specificLocalActivation{B77C4C36-0154-4C52-AB49-FAA03837E47F}{EA022610-0748-4C24-B229-6C507EBDFDBB}GAMERgamerpcS-1-5-21-1692155839-1707551626-4126777635-1001LocalHost (Using LRPC)

Error: (01/09/2015 01:14:21 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The LibUsb-Win32 - Daemon, Version 0.1.10.1 service failed to start due to the following error:
%%2

Error: (01/09/2015 04:53:14 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The LibUsb-Win32 - Daemon, Version 0.1.10.1 service failed to start due to the following error:
%%2

Error: (01/08/2015 07:01:56 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The Steam Client Service service failed to start due to the following error:
%%1053

Error: (01/08/2015 07:01:56 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the Steam Client Service service to connect.

Error: (01/08/2015 11:37:45 AM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: The Windows Update service hung on starting.

Error: (01/08/2015 11:28:48 AM) (Source: Disk) (EventID: 11) (User: )
Description: The driver detected a controller error on \Device\Harddisk1\DR1.

Error: (01/08/2015 11:28:48 AM) (Source: Disk) (EventID: 11) (User: )
Description: The driver detected a controller error on \Device\Harddisk1\DR1.

Error: (01/08/2015 11:26:47 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The LibUsb-Win32 - Daemon, Version 0.1.10.1 service failed to start due to the following error:
%%2

Error: (01/08/2015 05:20:19 AM) (Source: DCOM) (EventID: 10010) (User: )
Description: {3EB3C877-1F16-487C-9050-104DBCD66683}

Microsoft Office Sessions:
=========================
Error: (01/09/2015 02:30:48 PM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.18444 - There was a failure initializing profiling API attach infrastructure.  This process will not allow a profiler to attach.  HRESULT: 0x80004005.  Process ID (decimal): 11372.  Message ID: [0x2509].

Error: (01/09/2015 02:28:57 PM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.18444 - There was a failure initializing profiling API attach infrastructure.  This process will not allow a profiler to attach.  HRESULT: 0x80004005.  Process ID (decimal): 10248.  Message ID: [0x2509].

Error: (01/09/2015 02:28:08 PM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.18444 - There was a failure initializing profiling API attach infrastructure.  This process will not allow a profiler to attach.  HRESULT: 0x80004005.  Process ID (decimal): 5088.  Message ID: [0x2509].

Error: (01/09/2015 02:23:57 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Adblock.exe1.0.0.052b29860unknown0.0.0.000000000c00000051d4219ff2fa401d02c5af24c4d69C:\Program Files (x86)\IObit\IObit Malware Fighter\adsremoval\IE\Adblock.exeunknown334a6953-984e-11e4-b261-00038a000015

Error: (01/09/2015 01:55:52 PM) (Source: MsiInstaller) (EventID: 10005) (User: GAMER)
Description: Product: Ask Shopping Toolbar -- Error 25001. The following applications must be closed before continuing the uninstall:

Internet Explorer(NULL)(NULL)(NULL)(NULL)(NULL)

Error: (01/09/2015 01:14:29 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Unexpected conflict discarding   13 102.1.168.192.in-addr.arpa. PTR gamer.local.

Error: (01/09/2015 01:14:29 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 192.168.1.102:5353   15 102.1.168.192.in-addr.arpa. PTR gamer-2.local.

Error: (01/09/2015 01:14:29 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Unexpected conflict discarding   13 45.226.35.25.in-addr.arpa. PTR gamer.local.

Error: (01/09/2015 01:14:29 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 25.35.226.45:5353   15 45.226.35.25.in-addr.arpa. PTR gamer-2.local.

Error: (01/09/2015 04:58:05 AM) (Source: MsiInstaller) (EventID: 11606) (User: NT AUTHORITY)
Description: Product: Adobe Refresh Manager -- Error 1606.Could not access network location %APPDATA%\.(NULL)(NULL)(NULL)(NULL)(NULL)

==================== Memory info ===========================

Processor: Intel® Core™ i3-3220 CPU @ 3.30GHz
Percentage of memory in use: 58%
Total physical RAM: 8158.78 MB
Available physical RAM: 3376.3 MB
Total Pagefile: 16315.74 MB
Available Pagefile: 11783.93 MB
Total Virtual: 8192 MB
Available Virtual: 8191.84 MB

==================== Drives ================================

Drive c: (Windows) (Fixed) (Total:931.41 GB) (Free:223.04 GB) NTFS
Drive e: (DRACULA_X) (CDROM) (Total:0.39 GB) (Free:0 GB) CDFS
Drive j: (My Passport) (Fixed) (Total:931.48 GB) (Free:331.43 GB) NTFS ==>[System with boot components (obtained from reading drive)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: A7570411)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=931.4 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (MBR Code: Windows XP) (Size: 931.5 GB) (Disk ID: 00023F15)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)

==================== End Of Log ============================


  • 0

#20
Biscuithd

Biscuithd

    Trusted Helper

  • Malware Removal
  • 2,573 posts

Hi,

 

The screen shot helped a lot! Thank you!!

 

Ok, that settles it, it's a legitimate Windows error message and not something conjured by malware. So, lets begin an investigation of that.

Let's do a few disk checks.

Start menu>Computer> (Right click the C: drive or HDD thats giving errors)> Properties>Tools> Error Checking then run a check now.

 

When that is complete, likely the only way to let me see what happened is via a Screen Capture as you did before, so please do that.

 

Next, off of that same menu is the Defragment menu. See if that will run? It might not or it might start and then lock up at some point. Caution, depending on the condition of the disk, this might take hours, so maybe let it go over night. Also, if you have a Solid State Drive, then disregard this step.

 

Next, it looks like you had a bit of success removing the Ask and other programs, but not completely. Can you tell me what you saw from your side? I can try to bludgeon the programs off using my tools, but it's always nicer if they leave on their own via add/remove programs. So, let me know what happened and perhaps give the removal another try.

 

Last, there is still some Malware that I'd like to remove, but I'll wait until I hear how the Disk processes go and the uninstalls, etc. before I do that.

 

So, when you've done everything above (and everything that will cooperate), run FRST and give me a fresh scan and I'll take it from there.


  • 0

#21
Lucky Dearly

Lucky Dearly

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 299 posts

okay doing the scans on the HDD as we speak. I'll have the screenshot up as soon as possible.

 

Had a feeling this seemed legit so I started on backing up files just in case. And as for the Ask files, I did remove them without a problem though I didn't have Quickshare on my PC.

 

I'll post again once I have the screenshot and defrag results


  • 0

#22
Lucky Dearly

Lucky Dearly

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 299 posts

okay here's the screenshot

 

29gekk3.jpg

 

the defrag went smoothly though there was a bit of a lag spike but other than that it wasn't much problem at all.

 

now the FRST log

 

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 07-01-2015
Ran by gamerpc (administrator) on GAMER on 10-01-2015 20:55:33
Running from C:\Users\gamerpc\Desktop
Loaded Profile: gamerpc (Available profiles: gamerpc & Alex Valencia & Mario Valencia & Veronica Valencia)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: English (United States)
Internet Explorer Version 10 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(Creative Technology Ltd) C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore64.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(SlimWare Utilities, Inc.) C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(CyberLink) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe
(CyberLink) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Intel® Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\Jhi_service.exe
(Eastman Kodak Company) C:\Program Files (x86)\Kodak\AiO\Center\EKAiOHostService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Eastman Kodak Company) C:\Program Files (x86)\Kodak\AiO\StatusMonitor\EKPrinterSDK.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Motorola Mobility LLC) C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe
(Nero AG) C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
(Motorola Mobility LLC) C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperAgent.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Motorola) C:\Program Files (x86)\Motorola\MotForwardDaemon\ForwardDaemon.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(StarWind Software) C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
(VIA Technologies, Inc.) C:\Windows\System32\ViakaraokeSrv.exe
(WDC) C:\Program Files\Western Digital\WD SmartWare\WDDMService.exe
(Western Digital) C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe
(Western Digital ) C:\Program Files\Western Digital\WD SmartWare\WDRulesEngine.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
(IObit) C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(Western Digital ) C:\Program Files\Western Digital\WD SmartWare\WDFME.exe
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(VIA) C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Western Digital Technologies, Inc.) C:\Program Files\Western Digital\WD SmartWare\WDDMStatus.exe
(Microsoft Corporation) C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe
(Microsoft Corporation) C:\Program Files\Zune\ZuneLauncher.exe
(Eastman Kodak Company) C:\Windows\System32\spool\drivers\x64\3\EKIJ5000MUI.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(AOL Inc.) C:\Program Files (x86)\AIM\aim.exe
(ooVoo LLC) C:\Program Files (x86)\ooVoo\ooVoo.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Yahoo! Inc.) C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe
(Microsoft Corporation) C:\Users\gamerpc\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe
(Disc Soft Ltd) C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMP\CLHNServer\CLHNServiceForPowerDVD12.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Visicom Media Inc.) C:\Program Files (x86)\ManyCam\ManyCam.exe
(SUPERAntiSpyware) C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
(SlySoft, Inc.) C:\Program Files (x86)\SlySoft\CloneCD\CloneCDTray.exe
(Creative Technology Ltd) C:\Program Files (x86)\InstallShield Installation Information\{F3D9AC82-30F4-4BB9-B9AB-8697637568C1}\AMBSPISyncService.exe
(Macrovision Europe Ltd.) C:\Users\gamerpc\AppData\Local\Temp\Sound_Blaster_X-Fi_MB_Cleanup.0001
(AOL Inc.) C:\Program Files (x86)\Common Files\AOL\1352139576\ee\aolsoftware.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(CyberLink) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe
(Creative Technology Ltd) C:\Program Files (x86)\Creative\SB X-Fi MB\Volume Panel\VolPanlu.exe
(Western Digital) C:\Program Files (x86)\Western Digital\WD Apps\WDDriveAutoUnlock.exe
(Nullsoft, Inc.) C:\Program Files (x86)\Winamp\winampa.exe
(FNet Co., Ltd.) C:\Program Files (x86)\XFastUSB\XFastUsb.exe
() C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\csisyncclient.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Creative Labs) C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\XMBLicensing.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Google Inc.) C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_32.exe
(Adblock) C:\Program Files (x86)\IObit\IObit Malware Fighter\adsremoval\IE\Adblock.exe
(Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil64_16_0_0_235_ActiveX.exe
(IOBit) C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 7\ASCAvSvc.exe
(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 7\ASCTray.exe
(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 7\ASCService.exe
(Microsoft Corporation) C:\Windows\System32\UI0Detect.exe
(IObit) C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(Yahoo! Inc.) C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Windows\System32\MsSpellCheckingFacility.exe

==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [HDAudDeck] => C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [5299320 1999-12-31] (VIA)
HKLM\...\Run: [RunDLLEntry] => C:\Windows\system32\RunDLL32.exe C:\Windows\system32\AmbRunE.dll,RunDLLEntry
HKLM\...\Run: [WD Quick View] => C:\Program Files\Western Digital\WD SmartWare\WDDMStatus.exe [4244888 2011-12-15] (Western Digital Technologies, Inc.)
HKLM\...\Run: [XboxStat] => C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [825184 2009-09-30] (Microsoft Corporation)
HKLM\...\Run: [Zune Launcher] => C:\Program Files\Zune\ZuneLauncher.exe [163552 2011-08-05] (Microsoft Corporation)
HKLM\...\Run: [EKIJ5000StatusMonitor] => C:\Windows\system32\spool\DRIVERS\x64\3\EKIJ5000MUI.exe [3182080 2012-10-08] (Eastman Kodak Company)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2531472 2014-12-12] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [MSC] => C:\Program Files\Microsoft Security Client\msseces.exe [1331288 2014-08-22] (Microsoft Corporation)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [60712 2014-10-11] (Apple Inc.)
HKLM-x32\...\Run: [CloneCDTray] => C:\Program Files (x86)\SlySoft\CloneCD\CloneCDTray.exe [57344 2009-01-29] (SlySoft, Inc.)
HKLM-x32\...\Run: [CTSyncService] => C:\Program Files (x86)\InstallShield Installation Information\{F3D9AC82-30F4-4BB9-B9AB-8697637568C1}\AMBSPISyncService.exe [1233195 2009-07-08] (Creative Technology Ltd)
HKLM-x32\...\Run: [DivXMediaServer] => C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [448856 2014-11-17] (DivX, LLC)
HKLM-x32\...\Run: [HDAudDeck] => C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [5299320 1999-12-31] (VIA)
HKLM-x32\...\Run: [HostManager] => C:\Program Files (x86)\Common Files\AOL\1352139576\ee\AOLSoftware.exe [41800 2010-03-07] (AOL Inc.)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe [283160 2010-11-05] (Intel Corporation)
HKLM-x32\...\Run: [LTCM Client] => C:\Program Files (x86)\LTCM Client\ltcmClient.exe [1596096 2009-08-05] (Leader Technologies Inc.)
HKLM-x32\...\Run: [PowerDVD12Agent] => C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12Agent.exe [374560 2012-09-17] (CyberLink Corp.)
HKLM-x32\...\Run: [PowerDVD12DMREngine] => C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe [505872 2012-09-17] (CyberLink)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [UpdReg] => C:\Windows\UpdReg.EXE [90112 2000-05-11] (Creative Technology Ltd.)
HKLM-x32\...\Run: [VolPanel] => C:\Program Files (x86)\Creative\SB X-Fi MB\Volume Panel\VolPanlu.exe [241789 2009-05-04] (Creative Technology Ltd)
HKLM-x32\...\Run: [WD Drive Unlocker] => C:\Program Files (x86)\Western Digital\WD Apps\WDDriveAutoUnlock.exe [1687968 2011-12-16] (Western Digital)
HKLM-x32\...\Run: [WinampAgent] => C:\Program Files (x86)\Winamp\winampa.exe [74752 2012-06-28] (Nullsoft, Inc.)
HKLM-x32\...\Run: [XFastUSB] => C:\Program Files (x86)\XFastUSB\XFastUsb.exe [5019360 2012-10-24] (FNet Co., Ltd.)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1021128 2014-11-20] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [EKStatusMonitor] => C:\Program Files (x86)\Kodak\AiO\StatusMonitor\EKStatusMonitor.exe [2750840 2013-01-15] (Eastman Kodak Company)
HKLM-x32\...\Run: [EKIJ5000StatusMonitor] => C:\Windows\system32\spool\DRIVERS\x64\3\EKIJ5000MUI.EXE
HKLM-x32\...\Run: [DivXUpdate] => C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1861968 2014-01-09] ()
HKLM-x32\...\Run: [amd_dc_opt] => C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe [77824 2008-07-22] (AMD)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [157480 2014-10-15] (Apple Inc.)
HKLM-x32\...\Run: [IObit Malware Fighter] => C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe [1802048 2014-10-13] (IObit)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-10-02] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [507776 2014-10-07] (Oracle Corporation)
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [3838800 2014-12-13] (LogMeIn Inc.)
HKLM-x32\...\RunOnce: [B Register C:\Program Files (x86)\DivX\DivX Transcode Engine\plugins\mc_demux_mp2_ds.ax] => "C:\Windows\system32\rundll32.exe" "C:\Program Files (x86)\DivX\DivX Transcode Engine\plugins\mc_demux_mp2_ds.ax",DllRegisterServer
HKLM\...\Policies\Explorer: [NoFolderOptions] 0
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKLM\...\Policies\Explorer: [NoSetFolders] 0
HKLM\...\Policies\Explorer: [NoTrayContextMenu] 0
HKLM\...\Policies\Explorer: [NoLogoff] 0
HKLM\...\Policies\Explorer: [NoWindowsUpdate] 0
HKLM\...\Policies\Explorer: [NoViewOnDrive] 0
HKLM\...\Policies\Explorer: [NoFind] 0
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Run: [AIM] => C:\Program Files (x86)\AIM\aim.exe [4331392 2012-05-30] (AOL Inc.)
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Run: [ooVoo.exe] => C:\Program Files (x86)\ooVoo\oovoo.exe [36202560 2014-09-01] (ooVoo LLC)
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [1942208 2015-01-09] (Valve Corporation)
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Run: [Messenger (Yahoo!)] => C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe [6595928 2012-05-25] (Yahoo! Inc.)
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Run: [swg] => C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2012-10-22] (Google Inc.)
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Run: [GoogleChromeAutoLaunch_B39D6C0379323E21774615E279B6C2EB] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [856904 2014-12-05] (Google Inc.)
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Run: [EvolveClient] => C:\Program Files\Echobit\Evolve\EvolveClient.exe [3327872 2015-01-09] (Echobit LLC)
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Run: [GameCompanion] => C:\Users\gamerpc\AppData\Roaming\GameCompanion\GameCompanion.exe [484408 2013-10-12] ()
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Run: [SkyDrive] => C:\Users\gamerpc\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe [277672 2014-09-24] (Microsoft Corporation)
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Run: [Google Update] => C:\Users\gamerpc\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2014-07-23] (Google Inc.)
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Run: [DAEMON Tools Pro Agent] => C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe [3129560 2014-02-24] (Disc Soft Ltd)
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [22065760 2014-10-01] (Skype Technologies S.A.)
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Run: [ManyCam] => C:\Program Files (x86)\ManyCam\ManyCam.exe [9726760 2014-12-22] (Visicom Media Inc.)
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [7780120 2014-12-15] (SUPERAntiSpyware)
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Run: [Advanced SystemCare Ultimate] => C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 7\ASCTray.exe [2521920 2014-02-24] (IObit)
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\RunOnce: [Adobe Speed Launcher] => 1420933779
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Policies\system: [NoDispCPL] 0
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Policies\Explorer: [NoFolderOptions] 0
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Policies\Explorer: [NoControlPanel] 0
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Policies\Explorer: [NoSetFolders] 0
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Policies\Explorer: [NoTrayContextMenu] 0
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Policies\Explorer: [NoLogoff] 0
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Policies\Explorer: [NoWindowsUpdate] 0
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Policies\Explorer: [NoViewOnDrive] 0
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Policies\Explorer: [NoFind] 0
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\MountPoints2: {4a8281cf-b917-11e3-8e42-00038a000015} - F:\TL-Bootstrap.exe
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\MountPoints2: {ee71e2ca-6586-11e2-9f76-806e6f6e6963} - "F:\WD SmartWare.exe" autoplay=true
HKU\S-1-5-18\...\Run: [Advanced SystemCare 8] => "C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe" /Auto
HKU\S-1-5-18\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-18\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
ShellIconOverlayIdentifiers-x32: [ SkyDrivePro1 (ErrorConflict)] -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrivePro2 (SyncInProgress)] -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrivePro3 (InSync)] -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

ProxyEnable: [S-1-5-21-1692155839-1707551626-4126777635-1001] => Internet Explorer proxy is enabled.
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.wwe.com/
URLSearchHook: HKLM-x32 - AOL Messaging Toolbar Search Class - {03402f96-3dc7-4285-bc50-9e81fefafe43} - C:\Program Files (x86)\AIM Toolbar\aimtb.dll (AOL Inc.)
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001 -> DefaultScope {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.fas...&cc=US&unqvl=55
SearchScopes: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001 -> DDE0045B74094132960EC24A2BF4E399 URL = http://search.yahoo....&p={searchTerms}
SearchScopes: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001 -> {8F5AFE5A-C311-43C4-8F20-3A79CA4B8907} URL = http://www.bing.com/...rc=IE-SearchBox
SearchScopes: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001 -> {AF4567E4-9E84-41CA-AD29-EE3375472E02} URL = http://search.yahoo....&p={searchTerms}
SearchScopes: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001 -> {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.fas...&cc=US&unqvl=55
SearchScopes: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001 -> ÛŸÆîZ§’2¹Þpv¨IÍá*X(Ž2s(ÛÎÀJºÔÓµ± vË°!×—(ä¼48иpatm6êo^Mp`Ëõ÷_i£w˜¾!„Áû†x¢8€ÙjÀÿþ ´Ñ;áa´[¦†8 º~RÙxœòÜ8'£-)x­ä­ URL =
BHO: No Name -> {10921475-03CE-4E04-90CE-E2E7EF20C814} ->  No File
BHO: No Name -> {1CCA9AE6-6294-B0AB-7C5E-B7D269BCAA93} ->  No File
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO: No Name -> {BBFF95A7-A7D9-3C6D-671E-4711BCEA14A9} ->  No File
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll (Adblock Plus)
BHO-x32: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll (Oracle Corporation)
BHO-x32: Ads Removal -> {9D974C8C-6D92-44FB-BEAF-B45A1C0CF17F} -> C:\Program Files (x86)\IObit\IObit Malware Fighter\adsremoval\IE\Adblock.dll (Adblock)
BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Advanced SystemCare Browser Protection -> {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} -> C:\Program Files (x86)\IObit\Surfing Protection\BrowerProtect\ASCPlugin_Protection.dll (IObit)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKLM-x32 - No Name - {ba00b7b1-0351-477a-b948-23e3ee5a73d4} -  No File
Toolbar: HKLM-x32 - AOL Messaging Toolbar - {61539ecd-cc67-4437-a03c-9aaccbd14326} - C:\Program Files (x86)\AIM Toolbar\aimtb.dll (AOL Inc.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKU\.DEFAULT -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001 -> No Name - {4D594333-0076-A76A-76A7-7A786E7484D7} -  No File
Toolbar: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001 -> No Name - {61539ECD-CC67-4437-A03C-9AACCBD14326} -  No File
Toolbar: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001 -> No Name - {BA00B7B1-0351-477A-B948-23E3EE5A73D4} -  No File
DPF: HKLM-x32 {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macr...director/sw.cab
DPF: HKLM-x32 {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} http://xp.yimg.com/e...nst_current.cab
DPF: HKLM-x32 {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F} http://content.syste...el_4.5.23.0.cab
Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} -  No File
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} -  No File
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL (Microsoft Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF ProfilePath: C:\Users\gamerpc\AppData\Roaming\Mozilla\Firefox\Profiles\yogn1qzz.default
FF DefaultSearchEngine: Google
FF SelectedSearchEngine: Google
FF Homepage: www.wwe.com
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_235.dll ()
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.31211.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_235.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1215155.dll (Adobe Systems, Inc.)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin-x32: @divx.com/DivX Web Player Plug-In,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll (DivX, LLC)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6 -> C:\Program Files (x86)\Yahoo!\Shared\npYState.dll (Yahoo! Inc.)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.31211.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-1692155839-1707551626-4126777635-1001: @talk.google.com/GoogleTalkPlugin -> C:\Users\gamerpc\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
FF Plugin HKU\S-1-5-21-1692155839-1707551626-4126777635-1001: @talk.google.com/O1DPlugin -> C:\Users\gamerpc\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google)
FF Plugin HKU\S-1-5-21-1692155839-1707551626-4126777635-1001: @tools.google.com/Google Update;version=3 -> C:\Users\gamerpc\AppData\Local\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKU\S-1-5-21-1692155839-1707551626-4126777635-1001: @tools.google.com/Google Update;version=9 -> C:\Users\gamerpc\AppData\Local\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKU\S-1-5-21-1692155839-1707551626-4126777635-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\gamerpc\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Plugin HKU\S-1-5-21-1692155839-1707551626-4126777635-1001: electronicarts.com/GameFacePlugin -> C:\Users\gamerpc\AppData\Roaming\Electronic Arts\Game Face\npGameFacePlugin.dll (Electronic Arts)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin6.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npwachk.dll (Nullsoft, Inc.)
FF Plugin ProgramFiles/Appdata: C:\Users\gamerpc\AppData\Roaming\mozilla\plugins\np-mswmp.dll (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Users\gamerpc\AppData\Roaming\mozilla\plugins\npgoogletalk.dll (Google)
FF Plugin ProgramFiles/Appdata: C:\Users\gamerpc\AppData\Roaming\mozilla\plugins\npo1d.dll (Google)
FF SearchPlugin: C:\Users\gamerpc\AppData\Roaming\Mozilla\Firefox\Profiles\yogn1qzz.default\searchplugins\aolsearch.xml
FF SearchPlugin: C:\Users\gamerpc\AppData\Roaming\Mozilla\Firefox\Profiles\yogn1qzz.default\searchplugins\yahoo_ff.xml
FF Extension: SNT - C:\Users\gamerpc\AppData\Roaming\Mozilla\Firefox\Profiles\yogn1qzz.default\Extensions\[email protected] [2014-06-09]
FF Extension: Ads Removal - C:\Users\gamerpc\AppData\Roaming\Mozilla\Firefox\Profiles\yogn1qzz.default\Extensions\[email protected] [2015-01-05]
FF Extension: Advanced SystemCare Surfing Protection - C:\Users\gamerpc\AppData\Roaming\Mozilla\Firefox\Profiles\yogn1qzz.default\Extensions\[email protected] [2015-01-10]
FF Extension: CalcIt - C:\Users\gamerpc\AppData\Roaming\Mozilla\Firefox\Profiles\yogn1qzz.default\Extensions\[email protected] [2014-07-09]
FF Extension: Advanced SystemCare Surfing Protection - C:\Users\gamerpc\AppData\Roaming\Mozilla\Firefox\Profiles\yogn1qzz.default\Extensions\[email protected] [2014-12-02]
FF Extension: SNT - C:\Users\gamerpc\AppData\Roaming\Mozilla\Firefox\Profiles\yogn1qzz.default\Extensions\[email protected] [2014-06-08]
FF Extension: Enhanced Steam - C:\Users\gamerpc\AppData\Roaming\Mozilla\Firefox\Profiles\yogn1qzz.default\Extensions\[email protected] [2014-12-22]
FF Extension: YouTube High Definition - C:\Users\gamerpc\AppData\Roaming\Mozilla\Firefox\Profiles\yogn1qzz.default\Extensions\{7b1bf0b6-a1b9-42b0-b75d-252036438bdc}.xpi [2014-12-22]
FF Extension: Adblock Plus - C:\Users\gamerpc\AppData\Roaming\Mozilla\Firefox\Profiles\yogn1qzz.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-06-09]
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2014-07-14]
FF HKLM-x32\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext

Chrome:
=======
CHR HomePage: Default -> hxxp://www.wwe.com/
CHR Profile: C:\Users\gamerpc\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Simple Profanity Filter) - C:\Users\gamerpc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ackkocjhcalcpgpfjcoinogdejibgbho [2014-11-23]
CHR Extension: (Advanced SystemCare Surfing Protection) - C:\Users\gamerpc\AppData\Local\Google\Chrome\User Data\Default\Extensions\bbmegnmpleoagolcnjnejdacakedpcgd [2015-01-10]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\gamerpc\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-11-27]
CHR Extension: (Nanny for Google Chrome ™) - C:\Users\gamerpc\AppData\Local\Google\Chrome\User Data\Default\Extensions\cljcgchbnolheggdgaeclffeagnnmhno [2014-11-23]
CHR Extension: (WebFilter Pro - The best filtering addon!) - C:\Users\gamerpc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejgfoklefkbjadjcgjmnhfbdfjolojnn [2014-11-23]
CHR Extension: (Ads Removal) - C:\Users\gamerpc\AppData\Local\Google\Chrome\User Data\Default\Extensions\fopdddcinljmpmioaklghcalngfhbaen [2015-01-09]
CHR Extension: (Anti-Porn Pro - The best Anti-Porn addon!) - C:\Users\gamerpc\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbepadcdhpahlikldbochnhfleejiokp [2014-11-23]
CHR Extension: (Google Wallet) - C:\Users\gamerpc\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-21]
CHR Extension: (FoxFilter - The content filter!) - C:\Users\gamerpc\AppData\Local\Google\Chrome\User Data\Default\Extensions\nopeodilnmhhlfageeohjojginlgeljk [2014-11-23]
CHR Extension: (Blocksi Web Filter) - C:\Users\gamerpc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pgmjaihnmedpcdkjcgigocogcbffgkbn [2014-11-23]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [172344 2014-07-22] (SUPERAntiSpyware.com)
R2 AdvancedSystemCareService7; C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 7\ASCService.exe [886592 2013-12-16] (IObit)
R2 ASCAntivirusSrv; C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 7\ascavsvc.exe [649024 2014-03-31] (IOBit)
S2 AxAutoMntSrv; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [75624 2012-01-05] (Alcohol Soft Development Team)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
R2 CLHNServiceForPowerDVD12; C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMP\CLHNServer\CLHNServiceForPowerDVD12.exe [90640 2012-09-17] (CyberLink Corp.)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2449592 2014-11-12] (Microsoft Corporation)
S3 Creative ALchemy AL6 Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [79360 2012-10-24] (Creative Labs) [File not signed]
S3 Creative Audio Engine Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [79360 2012-10-24] (Creative Labs) [File not signed]
R2 CTAudSvcService; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [307200 2009-02-22] (Creative Technology Ltd) [File not signed]
R2 CyberLink PowerDVD 12 Media Server Monitor Service; C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe [78352 2012-09-17] (CyberLink)
R2 CyberLink PowerDVD 12 Media Server Service; C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe [295440 2012-09-17] (CyberLink)
S3 EvoSvc; C:\Program Files\Echobit\Evolve\EvoSvc.exe [1580416 2015-01-09] (Echobit LLC)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1148560 2014-12-12] (NVIDIA Corporation)
R2 IMFservice; C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe [344896 2014-09-30] (IObit)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [166720 1999-12-31] (Intel Corporation)
S2 libusbd; C:\Windows\SysWOW64\libusbd-nt.exe [18944 2005-03-09] (http://libusb-win32.sourceforge.net) [File not signed]
S2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2631456 2014-12-29] (IObit)
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [417552 2014-12-02] (LogMeIn, Inc.)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2014-11-21] (Malwarebytes Corporation)
R2 Motorola Device Manager; C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe [137528 2013-11-15] (Motorola Mobility LLC)
R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [23784 2014-08-22] (Microsoft Corporation)
R3 NisSrv; C:\Program Files\Microsoft Security Client\NisSrv.exe [368624 2014-08-22] (Microsoft Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1701520 2014-12-12] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19823248 2014-12-12] (NVIDIA Corporation)
R2 PST Service; C:\Program Files (x86)\Motorola\MotForwardDaemon\ForwardDaemon.exe [65657 2011-09-02] (Motorola) [File not signed]
S3 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [117264 2010-06-25] (CACE Technologies, Inc.)
R3 Sound Blaster X-Fi MB Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\XMBLicensing.exe [79360 2012-10-24] (Creative Labs) [File not signed]
R2 StarWindServiceAE; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [370688 2009-12-23] (StarWind Software) [File not signed]
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R2 VIAKaraokeService; C:\Windows\system32\viakaraokesrv.exe [27768 2014-04-17] (VIA Technologies, Inc.)
R2 WDDMService; C:\Program Files\Western Digital\WD SmartWare\WDDMService.exe [319384 2011-12-15] (WDC)
R2 WDDriveService; C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe [248248 2012-09-06] (Western Digital)
R2 WDFMEService; C:\Program Files\Western Digital\WD SmartWare\WDFME.exe [1977224 2011-12-15] (Western Digital )
R2 WDRulesService; C:\Program Files\Western Digital\WD SmartWare\WDRulesEngine.exe [1338264 2011-12-15] (Western Digital )

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-13] (Microsoft Corporation)
S3 cpudrv64; C:\Program Files (x86)\SystemRequirementsLab\cpudrv64.sys [17864 2011-06-02] ()
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-12-07] (Disc Soft Ltd)
R3 ElbyCDFL; C:\Windows\System32\Drivers\ElbyCDFL.sys [40648 2007-02-15] (SlySoft, Inc.)
R3 ElbyCDFL; C:\Windows\SysWOW64\Drivers\ElbyCDFL.sys [40648 2007-02-15] (SlySoft, Inc.)
S3 EvolveVirtualAdapter; C:\Windows\System32\DRIVERS\evolve.sys [21656 2014-01-23] (Echobit, LLC)
R3 FileMonitor; C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\FileMonitor.sys [23048 2013-03-23] (IObit)
R3 FNETTBOH_305; C:\Windows\System32\drivers\FNETTBOH_305.SYS [32320 2014-11-15] (FNet Co., Ltd.)
R1 FNETURPX; C:\Windows\System32\drivers\FNETURPX.SYS [15936 2012-10-24] (FNet Co., Ltd.)
R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [26528 2014-12-24] (REALiX™)
S3 libusb0; C:\Windows\SysWOW64\drivers\libusb0.sys [33792 2005-03-09] () [File not signed]
R3 ManyCam; C:\Windows\System32\DRIVERS\mcvidrv.sys [49304 2014-12-14] (Visicom Media Inc.)
R1 mbamchameleon; C:\Windows\system32\drivers\mbamchameleon.sys [93400 2014-11-21] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [129752 2015-01-10] (Malwarebytes Corporation)
R3 mcaudrv_simple; C:\Windows\System32\drivers\mcaudrv_x64.sys [35992 2014-12-14] (Visicom Media Inc.)
R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [100312 2014-05-02] (Intel Corporation)
S3 MotioninJoyXFilter; C:\Windows\System32\DRIVERS\MijXfilt.sys [121416 2012-05-12] (MotioninJoy) [File not signed]
S3 motport; C:\Windows\System32\DRIVERS\motport.sys [31744 2013-03-19] (Motorola Mobility Inc)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [269008 2014-07-17] (Microsoft Corporation)
R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [125584 2014-07-17] (Microsoft Corporation)
R2 NPF; C:\Windows\System32\drivers\npf.sys [35344 2010-06-25] (CACE Technologies, Inc.)
R2 ntk_PowerDVD12; C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMP\CLHNServer\ntk_PowerDVD12_64.sys [83704 2012-06-20] (Cyberlink Corp.)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2014-12-12] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [38032 2014-11-22] (NVIDIA Corporation)
R3 RegFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\regfilter.sys [34848 2013-11-19] (IObit.com)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R0 SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [21184 2014-06-04] (IObit)
S3 SWDUMon; C:\Windows\System32\DRIVERS\SWDUMon.sys [16152 2015-01-10] ()
S3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42184 2014-05-13] (Anchorfree Inc.)
R3 UrlFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\UrlFilter.sys [23016 2013-11-19] (IObit.com)
S3 usbio; C:\Windows\System32\Drivers\dsiarhwprog_x64.sys [54200 2012-09-26] (Thesycon GmbH, Germany)
S3 WinRing0_1_2_0; C:\Program Files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [14544 2010-11-01] (OpenLibSys.org)
S3 xb1usb; C:\Windows\System32\DRIVERS\xb1usb.sys [34016 2014-05-28] (Microsoft Corporation)
S3 XPADFL02; C:\Windows\SysWOW64\DRIVERS\xpadfl02.sys [27904 2006-12-24] (Compuware Corporation) [File not signed]
R2 {73526619-C24F-470B-9BED-53D455FBB5C6}; C:\Program Files (x86)\CyberLink\PowerDVD12\Common\NavFilter\000.fcl [147704 2012-09-10] (CyberLink Corp.)
S3 motccgpfl; system32\DRIVERS\motccgpfl.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)

==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-01-10 20:55 - 2015-01-10 20:56 - 00045433 _____ () C:\Users\gamerpc\Desktop\FRST.txt
2015-01-10 16:39 - 2015-01-10 16:39 - 00000000 ____D () C:\Windows\LastGood
2015-01-10 16:38 - 2015-01-10 16:38 - 00942808 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys
2015-01-10 16:38 - 2015-01-10 16:38 - 00073800 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll
2015-01-10 16:30 - 2015-01-10 16:30 - 00003218 _____ () C:\Windows\System32\Tasks\Driver Booster Scan
2015-01-10 16:30 - 2015-01-10 16:30 - 00003162 _____ () C:\Windows\System32\Tasks\Driver Booster Update
2015-01-10 16:04 - 2015-01-10 16:04 - 00003116 _____ () C:\Windows\System32\Tasks\ASC7_PerformanceMonitor
2015-01-10 16:03 - 2015-01-10 16:21 - 00002297 _____ () C:\Users\Public\Desktop\Advanced SystemCare Ultimate 7.lnk
2015-01-10 16:03 - 2015-01-10 16:03 - 00002872 _____ () C:\Windows\System32\Tasks\ASC7U_SkipUac_gamerpc
2015-01-10 16:03 - 2015-01-10 16:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare Ultimate 7
2015-01-10 16:03 - 2015-01-10 16:03 - 00000000 ____D () C:\ProgramData\{E1ED556E-3EA0-4F44-8BE7-CC5FB0F4B424}
2015-01-10 16:03 - 2015-01-10 16:03 - 00000000 ____D () C:\ProgramData\{D76294E6-03B8-4971-AF2E-3F846161A690}
2015-01-09 13:52 - 2015-01-09 13:52 - 00000000 ____D () C:\Users\Alex Valencia\AppData\Roaming\NVIDIA
2015-01-08 21:00 - 2015-01-08 21:01 - 00000000 ____D () C:\Users\gamerpc\AppData\Local\{8983BA02-BEEE-44BF-87FB-041065FFE05B}
2015-01-07 16:22 - 2015-01-07 16:22 - 00000000 ____D () C:\Windows\ERUNT
2015-01-07 16:07 - 2015-01-07 16:07 - 01707939 _____ (Thisisu) C:\Users\gamerpc\Desktop\JRT.exe
2015-01-07 14:28 - 2015-01-07 14:28 - 00000000 ____D () C:\Users\gamerpc\Desktop\FRST-OlderVersion
2015-01-07 13:36 - 2015-01-07 13:36 - 64252520 _____ (Microsoft Corporation) C:\Users\Alex Valencia\Downloads\ie11-64-setup-w7 (2).exe
2015-01-06 20:50 - 2015-01-10 20:55 - 00000000 ____D () C:\FRST
2015-01-06 20:49 - 2015-01-07 14:28 - 02124288 _____ (Farbar) C:\Users\gamerpc\Desktop\FRST64.exe
2015-01-06 17:14 - 2015-01-06 17:21 - 00000000 ____D () C:\Users\gamerpc\Desktop\Wii backup
2015-01-06 05:06 - 2015-01-06 05:06 - 64252520 _____ (Microsoft Corporation) C:\Users\Alex Valencia\Downloads\ie11-64-setup-w7 (1).exe
2015-01-06 05:05 - 2015-01-06 05:05 - 64252520 _____ (Microsoft Corporation) C:\Users\Alex Valencia\Downloads\ie11-64-setup-w7.exe
2015-01-04 23:03 - 2015-01-04 23:24 - 00000000 ___SD () C:\ComboFix
2015-01-04 23:03 - 2011-06-25 22:45 - 00256000 _____ () C:\Windows\PEV.exe
2015-01-04 23:03 - 2010-11-07 09:20 - 00208896 _____ () C:\Windows\MBR.exe
2015-01-04 23:03 - 2009-04-19 20:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2015-01-04 23:03 - 2000-08-30 16:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2015-01-04 23:03 - 2000-08-30 16:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2015-01-04 23:03 - 2000-08-30 16:00 - 00098816 _____ () C:\Windows\sed.exe
2015-01-04 23:03 - 2000-08-30 16:00 - 00080412 _____ () C:\Windows\grep.exe
2015-01-04 23:03 - 2000-08-30 16:00 - 00068096 _____ () C:\Windows\zip.exe
2015-01-04 23:00 - 2015-01-04 23:03 - 00000000 ____D () C:\Qoobox
2015-01-04 22:59 - 2015-01-04 22:59 - 00000000 ____D () C:\Windows\erdnt
2015-01-04 22:58 - 2015-01-04 22:58 - 05609498 ____R (Swearware) C:\Users\gamerpc\Desktop\ComboFix.exe
2015-01-03 05:02 - 2015-01-10 15:46 - 00509776 _____ () C:\Windows\setupact.log
2015-01-03 05:02 - 2015-01-10 15:42 - 00011730 _____ () C:\Windows\PFRO.log
2015-01-03 05:02 - 2015-01-03 05:02 - 00000000 _____ () C:\Windows\setuperr.log
2015-01-02 00:51 - 2015-01-02 00:51 - 00000000 ____D () C:\Users\gamerpc\Desktop\BioShock Infinite Steam Trainer +8 MrAntiFun
2015-01-01 18:49 - 2015-01-01 18:49 - 00000220 _____ () C:\Users\gamerpc\Desktop\BioShock Infinite.url
2015-01-01 09:55 - 2015-01-01 10:21 - 00004996 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for GAMER-Mario Valencia gamer
2015-01-01 02:53 - 2015-01-01 02:53 - 00000000 ____D () C:\Users\gamerpc\Desktop\S4-2YT
2015-01-01 01:04 - 2015-01-01 01:04 - 00000000 ____D () C:\Users\gamerpc\Desktop\S4-1YT
2015-01-01 00:22 - 2015-01-01 00:22 - 00000222 _____ () C:\Users\gamerpc\Desktop\SONIC THE HEDGEHOG 4 Episode II.url
2015-01-01 00:22 - 2015-01-01 00:22 - 00000222 _____ () C:\Users\gamerpc\Desktop\SONIC THE HEDGEHOG 4 Episode I.url
2014-12-30 20:36 - 2014-12-30 20:36 - 00000081 _____ () C:\Users\gamerpc\Documents\xbox360.cp
2014-12-30 01:31 - 2014-12-30 01:31 - 00000081 _____ () C:\Users\gamerpc\Documents\xbox1.cp
2014-12-30 01:22 - 2014-12-30 01:22 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_xb1usb_01011.Wdf
2014-12-29 23:49 - 2014-12-29 23:53 - 00000000 ____D () C:\Users\gamerpc\AppData\Roaming\Mupen64Plus
2014-12-29 14:50 - 2014-12-29 14:50 - 00002890 _____ () C:\Windows\System32\Tasks\Uninstaller_SkipUac_gamerpc
2014-12-29 14:50 - 2014-12-29 14:50 - 00001263 _____ () C:\Users\gamerpc\AppData\Roaming\Microsoft\Windows\Start Menu\Uninstall Programs.lnk
2014-12-29 14:50 - 2014-12-29 14:50 - 00001239 _____ () C:\Users\Public\Desktop\IObit Uninstaller.lnk
2014-12-29 00:32 - 2014-12-29 00:32 - 00003052 _____ () C:\Windows\System32\Tasks\{E9466C25-F164-46FA-91C7-A284868168CE}
2014-12-29 00:23 - 2014-12-29 00:23 - 00003030 _____ () C:\Windows\System32\Tasks\{A733E35F-BCAF-4970-8A6E-41BE0D404C71}
2014-12-29 00:21 - 2014-12-29 00:21 - 00003032 _____ () C:\Windows\System32\Tasks\{29DCDBB9-B8DC-43BF-829A-1C1ECB386532}
2014-12-29 00:17 - 2014-12-29 00:30 - 00000635 _____ () C:\Windows\Dc.INI
2014-12-27 23:55 - 2014-12-27 23:55 - 00101824 _____ (GreenTree Applications SRL) C:\Users\gamerpc\Downloads\YTDSetup.exe
2014-12-27 17:09 - 2014-12-12 16:47 - 00620176 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2014-12-27 17:00 - 2014-12-13 02:08 - 32099472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 25460552 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 20465808 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 17264312 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 13288360 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 13202520 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 10770120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 10710160 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 10345280 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2014-12-27 17:00 - 2014-12-13 02:08 - 03610440 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 03248968 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 01895056 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6434709.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 01556624 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6434709.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 00994384 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 00968336 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 00942400 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 00928072 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 00906560 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 00876976 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 00353224 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 00306328 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 00178632 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 00165760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2014-12-27 17:00 - 2014-12-13 02:08 - 00027983 _____ () C:\Windows\system32\nvinfo.pb
2014-12-27 17:00 - 2014-10-09 09:02 - 00195728 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2014-12-27 17:00 - 2014-10-09 09:02 - 00030536 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll
2014-12-27 17:00 - 2014-10-08 23:17 - 01540240 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco64.dll
2014-12-27 01:28 - 2014-12-27 01:28 - 00602112 _____ (OldTimer Tools) C:\Users\gamerpc\Desktop\OTL.exe
2014-12-26 18:14 - 2014-12-26 18:14 - 00000000 ____D () C:\Users\gamerpc\AppData\Roaming\SUPERAntiSpyware.com
2014-12-26 18:12 - 2015-01-10 15:51 - 00000000 ____D () C:\Program Files\SUPERAntiSpyware
2014-12-26 18:12 - 2015-01-10 00:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
2014-12-26 18:12 - 2014-12-26 18:12 - 00001815 _____ () C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
2014-12-26 18:12 - 2014-12-26 18:12 - 00000000 ____D () C:\ProgramData\SUPERAntiSpyware.com
2014-12-26 15:53 - 2014-12-26 17:57 - 00000000 ____D () C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2014-12-26 15:52 - 2014-12-26 18:14 - 00000000 ____D () C:\Users\gamerpc\mbar
2014-12-26 15:05 - 2014-12-26 15:05 - 02173952 _____ () C:\Users\gamerpc\Desktop\adwcleaner_4.106.exe
2014-12-24 19:36 - 2014-12-24 19:36 - 00000000 ____D () C:\ManyCam
2014-12-24 19:34 - 2014-12-24 19:34 - 00000000 ____D () C:\Echobit
2014-12-24 19:32 - 2014-12-24 19:39 - 00000000 ____D () C:\acccore
2014-12-24 12:44 - 2014-12-24 12:44 - 00026528 _____ (REALiX™) C:\Windows\SysWOW64\Drivers\HWiNFO64A.SYS
2014-12-24 12:42 - 2014-12-24 12:43 - 00000026 _____ () C:\Windows\Zone.Identifier
2014-12-23 14:35 - 2014-12-23 14:35 - 00001036 _____ () C:\Users\Public\Desktop\ManyCam.lnk
2014-12-23 14:35 - 2014-12-23 14:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ManyCam
2014-12-17 16:06 - 2014-12-17 16:06 - 00001011 _____ () C:\Users\Public\Desktop\Firestorm-Releasex64.lnk
2014-12-17 16:06 - 2014-12-17 16:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firestorm
2014-12-17 16:05 - 2014-12-17 16:06 - 00000000 ____D () C:\Program Files\Firestorm-Releasex64
2014-12-17 02:47 - 2014-11-22 02:46 - 00038032 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2014-12-17 02:47 - 2014-11-22 02:46 - 00032400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2014-12-15 11:41 - 2014-12-15 11:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
2014-12-15 11:41 - 2014-12-15 11:41 - 00000000 ____D () C:\Program Files (x86)\LogMeIn Hamachi
2014-12-14 23:43 - 2014-12-14 23:43 - 00035992 _____ (Visicom Media Inc.) C:\Windows\system32\Drivers\mcaudrv_x64.sys
2014-12-14 20:01 - 2014-12-14 20:01 - 00049304 _____ (Visicom Media Inc.) C:\Windows\system32\Drivers\mcvidrv.sys
2014-12-14 12:58 - 2014-12-14 12:58 - 00002515 _____ () C:\Users\Public\Desktop\Skype.lnk
2014-12-14 12:58 - 2014-12-14 12:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2014-12-14 12:53 - 2014-12-14 12:59 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-12-13 18:16 - 2014-12-13 18:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
2014-12-12 18:26 - 2014-11-21 00:38 - 02237952 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-12-12 18:26 - 2014-11-21 00:38 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-12-12 18:26 - 2014-11-21 00:37 - 01409536 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-12-12 18:26 - 2014-11-21 00:37 - 00600576 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-12-12 18:26 - 2014-11-21 00:36 - 19283456 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-12-12 18:26 - 2014-11-21 00:36 - 15400960 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-12-12 18:26 - 2014-11-21 00:36 - 03959296 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-12-12 18:26 - 2014-11-21 00:36 - 02655232 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-12-12 18:26 - 2014-11-21 00:36 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-12-12 18:26 - 2014-11-21 00:36 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-12-12 18:26 - 2014-11-21 00:36 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-12-12 18:26 - 2014-11-21 00:36 - 00451584 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-12-12 18:26 - 2014-11-21 00:36 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-12-12 18:26 - 2014-11-21 00:36 - 00255488 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-12-12 18:26 - 2014-11-21 00:36 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-12-12 18:26 - 2014-11-21 00:36 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-12-12 18:26 - 2014-11-21 00:36 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-12-12 18:26 - 2014-11-21 00:36 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-12-12 18:26 - 2014-11-21 00:36 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-12-12 18:26 - 2014-11-21 00:36 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-12-12 18:26 - 2014-11-21 00:35 - 01509376 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-12-12 18:26 - 2014-11-20 23:17 - 14364672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-12-12 18:26 - 2014-11-20 23:17 - 01762816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-12-12 18:26 - 2014-11-20 23:17 - 01181696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-12-12 18:26 - 2014-11-20 23:17 - 00523264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-12-12 18:26 - 2014-11-20 23:17 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-12-12 18:26 - 2014-11-20 23:17 - 00080384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-12-12 18:26 - 2014-11-20 23:16 - 13758976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-12-12 18:26 - 2014-11-20 23:16 - 02861568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-12-12 18:26 - 2014-11-20 23:16 - 02054656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-12-12 18:26 - 2014-11-20 23:16 - 01441280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-12-12 18:26 - 2014-11-20 23:16 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-12-12 18:26 - 2014-11-20 23:16 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-12-12 18:26 - 2014-11-20 23:16 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-12-12 18:26 - 2014-11-20 23:16 - 00357888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-12-12 18:26 - 2014-11-20 23:16 - 00226816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-12-12 18:26 - 2014-11-20 23:16 - 00226816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-12-12 18:26 - 2014-11-20 23:16 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2014-12-12 18:26 - 2014-11-20 23:16 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-12-12 18:26 - 2014-11-20 23:16 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-12-12 18:26 - 2014-11-20 23:16 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-12-12 18:26 - 2014-11-20 23:00 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-12-12 18:26 - 2014-11-20 22:54 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-12-12 18:26 - 2014-11-20 22:31 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-12-12 18:26 - 2014-11-20 22:24 - 00361984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2014-12-12 18:26 - 2014-11-20 22:05 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2014-12-12 18:26 - 2014-11-20 21:59 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2014-12-12 00:24 - 2014-12-12 00:24 - 05006832 _____ (Adobe Systems Inc.) C:\Users\gamerpc\Downloads\Shockwave_Installer_Slim.exe

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-01-10 20:56 - 2012-10-22 20:07 - 00000000 ____D () C:\Users\gamerpc\AppData\Roaming\Skype
2015-01-10 20:54 - 2014-05-18 18:20 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-01-10 20:53 - 2014-07-23 23:41 - 00000900 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA1cfa712be8cef20.job
2015-01-10 20:43 - 2013-08-17 21:55 - 00000916 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1692155839-1707551626-4126777635-1001UA.job
2015-01-10 20:29 - 2014-09-26 15:51 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-01-10 19:43 - 2013-08-17 21:55 - 00000864 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1692155839-1707551626-4126777635-1001Core.job
2015-01-10 16:40 - 2014-12-02 11:16 - 00002157 _____ () C:\Users\Public\Desktop\Driver Booster 2.lnk
2015-01-10 16:40 - 2014-07-05 20:06 - 00000000 ____D () C:\Users\gamerpc\AppData\Local\Unity
2015-01-10 16:39 - 2013-09-29 20:24 - 01183193 _____ () C:\Windows\WindowsUpdate.log
2015-01-10 16:38 - 2012-10-18 11:00 - 00107552 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RTNUninst64.dll
2015-01-10 16:30 - 2014-12-02 11:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 2
2015-01-10 16:30 - 2014-03-20 12:54 - 00002858 _____ () C:\Windows\System32\Tasks\Driver Booster SkipUAC (gamerpc)
2015-01-10 16:19 - 2014-06-15 20:03 - 00000000 ___RD () C:\Users\gamerpc\OneDrive
2015-01-10 16:11 - 2014-06-15 21:46 - 00004968 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for GAMER-gamerpc gamer
2015-01-10 16:03 - 2013-02-23 00:02 - 00000000 ____D () C:\Program Files (x86)\IObit
2015-01-10 16:02 - 2013-09-29 20:26 - 00000000 ____D () C:\Users\gamerpc
2015-01-10 16:02 - 2009-07-13 20:45 - 00028944 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-01-10 16:02 - 2009-07-13 20:45 - 00028944 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-01-10 15:49 - 2014-10-08 21:53 - 00000000 ____D () C:\Users\gamerpc\AppData\Local\LogMeIn Hamachi
2015-01-10 15:48 - 2013-09-11 17:42 - 00002844 _____ () C:\Windows\System32\Tasks\SlimDrivers Startup
2015-01-10 15:48 - 2013-09-11 17:42 - 00000414 _____ () C:\Windows\Tasks\SlimDrivers Startup.job
2015-01-10 15:47 - 2012-10-22 22:56 - 00000000 ____D () C:\Program Files (x86)\Steam
2015-01-10 15:45 - 2013-09-11 17:42 - 00016152 _____ () C:\Windows\system32\Drivers\SWDUMon.sys
2015-01-10 15:43 - 2014-08-06 23:42 - 00000498 _____ () C:\Windows\Tasks\ParetoLogic Update Version3 Startup Task.job
2015-01-10 15:43 - 2014-07-23 23:41 - 00000896 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore1cfa712bccbb08c.job
2015-01-10 15:43 - 2012-11-09 15:22 - 00000000 ____D () C:\ProgramData\Kodak
2015-01-10 15:43 - 2012-10-22 20:32 - 00000000 ____D () C:\Temp
2015-01-10 15:42 - 2013-09-29 20:24 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-01-10 15:42 - 2009-07-13 21:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-01-10 02:00 - 2014-08-16 12:24 - 00000000 ____D () C:\Users\gamerpc\AppData\Local\Adobe
2015-01-09 23:03 - 2012-10-25 14:41 - 00000000 ____D () C:\Users\gamerpc\AppData\Local\Skyrim
2015-01-09 18:59 - 2014-03-26 16:50 - 00000000 ____D () C:\Program Files (x86)\Project64 2.1
2015-01-09 14:22 - 2012-10-22 20:10 - 04274176 ___SH () C:\Users\gamerpc\Documents\Thumbs.db
2015-01-09 13:54 - 2012-10-29 04:12 - 00000000 ____D () C:\Users\Alex Valencia\AppData\Local\Adobe
2015-01-09 13:52 - 2012-10-24 04:19 - 00000000 ____D () C:\Users\Alex Valencia\AppData\Roaming\Adobe
2015-01-09 13:50 - 2014-01-21 04:58 - 00000000 ____D () C:\Users\Alex Valencia\AppData\Local\LogMeIn Hamachi
2015-01-08 04:57 - 2013-11-08 12:12 - 00000008 __RSH () C:\Users\Alex Valencia\ntuser.pol
2015-01-08 04:57 - 2013-09-29 20:26 - 00000000 ____D () C:\Users\Alex Valencia
2015-01-08 00:16 - 2012-10-22 21:37 - 00000000 ____D () C:\Users\gamerpc\AppData\Local\join.me
2015-01-08 00:15 - 2014-09-24 15:05 - 00000000 ____D () C:\Users\gamerpc\Desktop\UPRandomizer-161
2015-01-07 19:38 - 2013-08-17 21:55 - 00003894 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1692155839-1707551626-4126777635-1001UA
2015-01-07 19:38 - 2013-08-17 21:55 - 00003498 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1692155839-1707551626-4126777635-1001Core
2015-01-07 16:12 - 2013-08-20 18:09 - 00000000 ____D () C:\AdwCleaner
2015-01-07 15:52 - 2014-06-08 18:45 - 00000008 __RSH () C:\ProgramData\ntuser.pol
2015-01-07 15:52 - 2013-11-08 12:11 - 00000008 __RSH () C:\Users\gamerpc\ntuser.pol
2015-01-07 15:40 - 2012-10-22 19:27 - 00002109 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2015-01-07 14:29 - 2009-07-13 19:20 - 00000000 ___HD () C:\Windows\system32\GroupPolicy
2015-01-07 02:16 - 2012-10-22 22:49 - 00000000 ____D () C:\Program Files (x86)\JDownloader
2015-01-06 18:09 - 2014-02-06 16:32 - 00000000 ____D () C:\Users\gamerpc\Desktop\Vwii backup
2015-01-06 17:17 - 2009-07-13 21:13 - 00782720 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-01-06 09:25 - 2014-01-24 07:58 - 00000000 ____D () C:\Users\Veronica Valencia.NWOFAN-PC\AppData\Local\LogMeIn Hamachi
2015-01-06 04:58 - 2013-11-25 13:48 - 00000000 ____D () C:\ProgramData\ProductData
2015-01-05 08:21 - 2014-01-24 07:58 - 00000000 ____D () C:\Users\Veronica Valencia.NWOFAN-PC\AppData\Roaming\IObit
2015-01-04 23:21 - 2009-07-13 19:20 - 00000000 ____D () C:\Windows\system32\NDF
2015-01-03 04:03 - 2014-03-14 01:23 - 00000000 ____D () C:\Users\gamerpc\AppData\Local\FirestormOS_x64
2015-01-02 03:23 - 2012-10-22 20:11 - 00000000 ____D () C:\Users\gamerpc\Documents\My Games
2015-01-02 02:09 - 2014-10-01 00:58 - 00000000 ____D () C:\Users\gamerpc\Desktop\mugen-1.1b1
2015-01-01 21:31 - 2013-11-19 02:21 - 00000000 ____D () C:\Users\gamerpc\AppData\Local\SingularityViewer64
2015-01-01 18:49 - 2012-11-15 15:06 - 00000000 ____D () C:\Users\gamerpc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2015-01-01 10:15 - 2014-06-20 05:59 - 00000000 ___RD () C:\Users\Mario Valencia.NWOFAN-PC\OneDrive
2015-01-01 09:57 - 2014-01-20 06:26 - 00000000 ____D () C:\Users\Mario Valencia.NWOFAN-PC\AppData\Local\LogMeIn Hamachi
2014-12-31 03:14 - 2010-11-20 19:27 - 00298120 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-12-30 23:49 - 2012-10-23 21:32 - 08325632 ___SH () C:\Users\gamerpc\Thumbs.db
2014-12-30 23:24 - 2014-09-28 21:08 - 00000000 ____D () C:\Users\gamerpc\AppData\Local\FF4
2014-12-30 01:29 - 2012-10-22 20:17 - 00000000 ____D () C:\Users\gamerpc\Desktop\Emulators
2014-12-27 17:10 - 2012-10-18 11:39 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2014-12-27 05:11 - 2012-10-24 04:18 - 00000000 ____D () C:\Users\Alex Valencia\AppData\Local\Google
2014-12-26 18:36 - 2012-10-22 19:26 - 00000000 ____D () C:\Users\gamerpc\AppData\Local\Google
2014-12-26 15:14 - 2014-10-21 21:46 - 00002860 _____ () C:\Windows\System32\Tasks\Driver Booster SkipUAC (SYSTEM)
2014-12-24 05:03 - 2014-05-22 04:01 - 00000000 ____D () C:\Users\Alex Valencia\AppData\Roaming\ProductData
2014-12-24 05:03 - 2013-11-27 05:05 - 00000000 ____D () C:\Users\Alex Valencia\AppData\Roaming\IObit
2014-12-23 14:37 - 2012-10-24 12:23 - 00000000 ____D () C:\Users\gamerpc\AppData\Local\ManyCam
2014-12-23 14:35 - 2012-10-23 21:47 - 00000000 ____D () C:\Program Files (x86)\ManyCam
2014-12-23 14:33 - 2012-10-24 12:23 - 00000000 ____D () C:\ProgramData\ManyCam
2014-12-22 12:37 - 2014-06-15 19:58 - 00000000 ____D () C:\Program Files\Microsoft Office 15
2014-12-20 00:36 - 2014-03-25 12:09 - 00000000 ____D () C:\Users\gamerpc\Powersaves3DS
2014-12-19 03:08 - 2014-01-11 23:34 - 00000000 ____D () C:\Users\gamerpc\Desktop\ppsspp
2014-12-18 23:38 - 2013-09-29 21:20 - 00000000 ____D () C:\Windows\Panther
2014-12-18 23:28 - 2012-10-24 14:24 - 00000000 ____D () C:\Users\gamerpc\AppData\Roaming\DAEMON Tools Pro
2014-12-17 16:05 - 2013-09-30 14:46 - 00000000 ____D () C:\ProgramData\Package Cache
2014-12-15 11:41 - 2014-10-08 21:52 - 00000852 _____ () C:\Users\Public\Desktop\LogMeIn Hamachi.lnk
2014-12-14 12:58 - 2012-10-22 20:07 - 00000000 ____D () C:\ProgramData\Skype
2014-12-14 12:14 - 2013-05-19 06:50 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-12-14 12:14 - 2013-05-19 06:50 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-12-14 02:30 - 2013-05-19 06:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2014-12-13 12:50 - 2014-05-02 03:07 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-12-13 02:08 - 2014-11-18 19:06 - 24764232 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2014-12-13 02:08 - 2014-11-18 19:06 - 16040184 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2014-12-13 02:08 - 2014-11-18 19:06 - 02897824 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2014-12-13 02:08 - 2014-08-01 23:17 - 18594432 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2014-12-13 02:08 - 2014-08-01 23:17 - 14128496 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2014-12-13 02:08 - 2013-07-04 23:48 - 03293136 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2014-12-13 01:02 - 2014-11-15 15:54 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-12-13 00:03 - 2013-09-29 20:24 - 06859408 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2014-12-13 00:03 - 2013-09-29 20:24 - 03513488 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2014-12-13 00:03 - 2013-09-29 20:24 - 00935240 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2014-12-13 00:03 - 2013-09-29 20:24 - 00386368 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2014-12-13 00:03 - 2013-09-29 20:24 - 00062608 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2014-12-13 00:03 - 2012-10-18 11:27 - 02558608 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2014-12-12 21:05 - 2014-09-26 15:51 - 00701616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-12-12 21:05 - 2014-09-26 15:51 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-12-12 21:05 - 2014-09-26 15:51 - 00003768 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-12-12 16:12 - 2014-06-03 12:54 - 01715224 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2014-12-12 16:12 - 2014-06-03 12:54 - 01291464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2014-12-12 16:12 - 2014-04-08 23:13 - 02824504 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2014-12-12 16:12 - 2014-04-08 23:13 - 02210040 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2014-12-12 15:15 - 2009-07-13 19:20 - 00000000 ____D () C:\Windows\rescache
2014-12-12 15:11 - 2013-09-29 20:24 - 04151176 _____ () C:\Windows\system32\nvcoproc.bin
2014-12-12 12:56 - 2009-07-13 19:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2014-12-12 00:39 - 2012-10-22 19:26 - 00000000 ____D () C:\Windows\SysWOW64\Macromed
2014-12-12 00:24 - 2013-08-14 12:59 - 00000000 ____D () C:\Windows\SysWOW64\Adobe
2014-12-11 10:05 - 2013-09-29 23:00 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk

Files to move or delete:
====================
C:\Users\gamerpc\asc-setup.exe
C:\Users\gamerpc\avg_remover_stf_x86_2012_2125.exe
C:\Users\gamerpc\ManyCam.exe
C:\Users\gamerpc\MBR.dat
C:\Users\gamerpc\Setup.exe
C:\Users\gamerpc\Singularity_1-8-5-5617_x86-64_Setup.exe
C:\Users\gamerpc\uninstall_flash_player.exe

Some content of TEMP:
====================
C:\Users\gamerpc\AppData\Local\Temp\SkypeSetup.exe

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2014-12-25 04:00

==================== End Of Log ============================


  • 0

#23
Lucky Dearly

Lucky Dearly

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 299 posts

addition log next

 

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 07-01-2015
Ran by gamerpc at 2015-01-10 20:56:58
Running from C:\Users\gamerpc\Desktop
Boot Mode: Normal
==========================================================

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Microsoft Security Essentials (Enabled - Up to date) {4F35CFC4-45A3-FC37-EF17-759A02E39AB1}
AV: Advanced SystemCare Ultimate (Enabled - Up to date) {1C304DC4-1D72-5DB9-B33A-43B638ECFD30}
AS: Microsoft Security Essentials (Enabled - Up to date) {F4542E20-6399-F3B9-D5A7-4EE87964D00C}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: IObit Malware Fighter (Disabled - Up to date) {A751AC20-3B48-5237-898A-78C4436BB78D}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

3DS Compatible Action Replay Firmware Update version 1.1 (HKLM\...\3DS Compatible Action Replay Firmware Update_is1) (Version: 1.1 - )
7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov)
Action Replay Code Manager (HKLM-x32\...\Action Replay Code Manager_is1) (Version:  - )
Action Replay DSi Code Manager (HKLM\...\Action Replay DSi Code Manager_is1) (Version:  - )
Action Replay DSi Code Manager (HKLM-x32\...\Action Replay DSi Code Manager_is1) (Version:  - )
Action Replay PowerSaves 3DS version 1.21 (HKLM-x32\...\{CD24B06F-0A4D-410A-AEF2-DFE6A28AB4C0}_is1) (Version: 1.21 - Datel Design & Development)
Adblock Plus for IE (32-bit and 64-bit) (HKLM\...\{5CEBB0CE-1783-40C2-A7E1-02EE705820F0}) (Version: 1.0 - Eyeo GmbH)
Adblock Plus for IE (HKLM-x32\...\{1ce01891-839b-4ad1-b629-2e608ba0c6ba}) (Version: 1.0 - )
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.8.0.1280 - Adobe Systems Incorporated)
Adobe Flash Player 16 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 16.0.0.235 - Adobe Systems Incorporated)
Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.235 - Adobe Systems Incorporated)
Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.10) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.5.155 - Adobe Systems, Inc.)
Advanced SystemCare Ultimate 7 (HKLM-x32\...\Advanced SystemCare Ultimate_is1) (Version: 7.1.0 - IObit)
Advertising Center (x32 Version: 0.0.0.2 - Nero AG) Hidden
AIM 7 (HKLM-x32\...\AIM_7) (Version:  - )
Aimersoft DVD Ripper(Build 2.7.4.0) (HKLM-x32\...\Aimersoft DVD Ripper_is1) (Version:  - Aimersoft Software)
aioprnt (Version: 5.3.1.0 - Eastman Kodak Company) Hidden
aioscnnr (x32 Version: 5.7.5.30 - Your Company Name) Hidden
aioscnnr (x32 Version: 7.6.13.10 - Your Company Name) Hidden
Aiseesoft Blu-ray Ripper 6.2.18 (HKLM-x32\...\{D1B455C8-C170-44fe-8A90-31263B5153C2}_is1) (Version:  - )
Amazon Music Importer (HKLM-x32\...\com.amazon.music.uploader) (Version: 3.1.0 - Amazon Services LLC)
Amazon Music Importer (x32 Version: 3.1.0 - Amazon Services LLC) Hidden
AOL Messaging Toolbar (HKLM-x32\...\AIM Toolbar) (Version:  - AOL Inc.)
AOL Messaging Toolbar (HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\AOL Messaging Toolbar) (Version:  - )
AOL Toolbar (HKLM-x32\...\AOL Toolbar) (Version:  - AOL Inc.)
AOL Toolbar (HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\AOL Toolbar) (Version:  - )
AOL Uninstaller (Choose which Products to Remove) (HKLM-x32\...\AOL Uninstaller) (Version:  - AOL Inc.)
Apple Application Support (HKLM-x32\...\{83CAF0DE-8D3B-4C37-A631-2B8F16EC3031}) (Version: 3.1 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{BDD99690-3541-4619-9D2A-3CDDB3E15F9E}) (Version: 8.0.5.6 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
ArtMoney SE v7.43 (HKLM-x32\...\ArtMoney SE_is1) (Version: 7.43 - System SoftLab)
ASRock App Charger v1.0.4 (HKLM\...\ASRock App Charger_is1) (Version:  - ASRock Inc.)
ASRock eXtreme Tuner v0.1.169 (HKLM-x32\...\ASRock eXtreme Tuner_is1) (Version:  - )
ASRock InstantBoot v1.26 (HKLM-x32\...\ASRock InstantBoot_is1) (Version:  - )
ASRock XFast RAM v2.0.9 (HKLM\...\ASRock XFast RAM_is1) (Version:  - ASRock Inc.)
Audacity 2.0.2 (HKLM-x32\...\Audacity_is1) (Version: 2.0.2 - Audacity Team)
AviSynth 2.5 (HKLM-x32\...\AviSynth) (Version:  - )
Batman: Arkham City GOTY (HKLM-x32\...\Steam App 200260) (Version:  - Rocksteady Studios)
BigJon PCGames Config Wizard (HKLM-x32\...\BigJon PCGames Config Wizard1.1) (Version: 1.1 - )
Bionic Commando (HKLM-x32\...\Steam App 21670) (Version:  - GRIN)
Bionic Commando Rearmed (HKLM-x32\...\Steam App 21680) (Version:  - GRIN)
BioShock Infinite (HKLM-x32\...\Steam App 8870) (Version:  - Irrational Games)
Black Chocobo (HKLM-x32\...\Black_Chocobo) (Version:  - )
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Borderlands 2 (HKLM-x32\...\Steam App 49520) (Version:  - Gearbox Software)
BOSS (HKLM-x32\...\BOSS) (Version: 2.1.1 - BOSS Development Team)
Bully Scholarship Edition (HKLM-x32\...\InstallShield_{A724605D-B399-4304-B8C7-33B3EF7D4677}) (Version: 1.00.0200 - Rockstar Games)
Bully Scholarship Edition (x32 Version: 1.00.0200 - Rockstar Games) Hidden
C4USelfUpdater (x32 Version: 1.00.0000 - Your Company Name) Hidden
center (x32 Version: 7.7.2.0 - Eastman Kodak Company) Hidden
Cheat Engine 6.4 (HKLM-x32\...\Cheat Engine 6.4_is1) (Version:  - Cheat Engine)
CloneCD (HKLM-x32\...\CloneCD) (Version:  - SlySoft)
CloneDVD2 (HKLM-x32\...\CloneDVD2) (Version: 2.9.3.0 - Elaborate Bytes)
CPUID CPU-Z 1.67.1 (HKLM\...\CPUID CPU-Z_is1) (Version:  - )
Creation Kit (HKLM-x32\...\Steam App 202480) (Version:  - bgs.bethsoft.com)
CyberLink PowerDVD 12 (HKLM-x32\...\InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}) (Version: 12.0.2118.57 - CyberLink Corp.)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
DAEMON Tools Pro (HKLM-x32\...\DAEMON Tools Pro) (Version: 5.5.0.0388 - Disc Soft Ltd)
Daggerfall (HKLM-x32\...\{75118CF3-44B5-411A-B3DD-C10432217693}) (Version: 1.00.0000 - Bethesda Softworks)
DivX Setup (HKLM-x32\...\DivX Setup) (Version: 2.7.0.31 - DivX, LLC)
DolbyFiles (x32 Version: 2.0 - Nero AG) Hidden
Dolphin (HKLM-x32\...\Dolphin) (Version: 4.0.2 - Dolphin Development Team)
Dota 2 (HKLM-x32\...\Steam App 570) (Version:  - )
Dota 2 Test (HKLM-x32\...\Steam App 205790) (Version:  - )
Download Navigator (HKLM-x32\...\{3A3A3B34-6EA2-4031-8580-D66D29533E89}) (Version: 3.4.0 - SEIKO EPSON CORPORATION)
Driver Booster 2.1 (HKLM-x32\...\Driver Booster_is1) (Version: 2.1 - IObit)
Dual-Core Optimizer (HKLM-x32\...\{9FD6F1A8-5550-46AF-8509-271DF0E768B5}) (Version: 1.1.4.0169 - AMD)
DuckTales Remastered (HKLM-x32\...\Steam App 237630) (Version:  - WayForward)
Duke Nukem 3D: Megaton Edition (HKLM-x32\...\Steam App 225140) (Version:  - 3D Realms)
DVD Architect Studio 5.0 (HKLM-x32\...\{42C509F1-C451-11E1-AEC9-F04DA23A5C58}) (Version: 5.0.161 - Sony)
DVDFab 9.0.6.0 (21/08/2013) (HKLM-x32\...\DVDFab 9_is1) (Version:  - Fengtao Software Inc.)
EA SPORTS Game Face Browser Plugin 1.8.0.0 (HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\EA SPORTS Game Face Browser Plugin) (Version: 1.8.0.0 - Electronic Arts)
ef02f1e43 (HKLM\...\{d1e17d14-cabc-4f6f-9f46-c7ecf813645e}.sdb) (Version:  - )
essentials (x32 Version: 7.7.2.0 - Eastman Kodak Company) Hidden
Evolve (HKLM\...\{670B1B49-9FD3-4827-9B41-471EFF580AA8}) (Version: 1.8.10 - Echobit, LLC)
Fallout 3 - Game of the Year Edition (HKLM-x32\...\Steam App 22370) (Version:  - Bethesda Game Studios)
Fallout 3 - The Garden of Eden Creation Kit (HKLM-x32\...\{B343B0E3-212A-40B9-8207-1BD299228F5D}) (Version: 1.00.0000 - Bethesda Softworks)
Fallout Mod Manager 0.13.21 (HKLM-x32\...\Generic Mod Manager_is1) (Version:  - Q, Timeslip)
Fallout: New Vegas (HKLM-x32\...\Steam App 22380) (Version:  - Obsidian Entertainment)
Fighter Factory Classic (HKLM-x32\...\VirtuallTek Fighter Factory Classic_is1) (Version: 1.2.0.2010 - VirtuallTek Systems)
Fighter Factory Ultimate (HKLM-x32\...\VirtuallTek Fighter Factory Ultimate_is1) (Version: 2.6.0.2010 - VirtuallTek Systems)
FINAL FANTASY IV (HKLM-x32\...\Steam App 312750) (Version:  - Square Enix)
FINAL FANTASY VII (HKLM-x32\...\Steam App 39140) (Version:  - Square Enix)
Firestorm SecondLife and OpenSim viewer (Version: 4.6.42974 - Phoenix Viewer Project) Hidden
Firestorm-Releasex64 x64 (HKLM-x32\...\{4e154806-de7a-4300-b61e-bc0c3a4c5b43}) (Version: 4.6.42974 - Phoenix Firestorm Project Inc)
FrostWire 5.5.6 (HKLM-x32\...\FrostWire 5) (Version: 5.5.6.0 - FrostWire Team)
Game Booster 3 (HKLM-x32\...\Game Booster_is1) (Version: 3.4 - IObit)
Garry's Mod (HKLM-x32\...\Steam App 4000) (Version:  - Facepunch Studios)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 39.0.2171.95 - Google Inc.)
Google Talk Plugin (HKLM-x32\...\{0C5C1177-94C5-3EFB-A8BE-3F6AF1AF887F}) (Version: 5.38.6.0 - Google)
Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.5111.1712 - Google Inc.)
Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Gtk+ Runtime Environment 2.12.9-2 (HKLM-x32\...\Gtk+ Runtime Environment) (Version: 2.12.9-2 - )
Horizon v2.8.3.1 (HKLM-x32\...\d4cfeebc-b821-40b7-9f81-d366b1466f03_is1) (Version: 2.8.3.1 - Daring Development Inc.)
iCloud (HKLM\...\{309768A4-A2BB-4930-A5A2-8169678C9B4C}) (Version: 4.0.6.28 - Apple Inc.)
iLumina Gold (HKLM-x32\...\iLumina2) (Version: 2.0 - Tyndale House Publishers, Inc)
ImagXpress (x32 Version: 7.0.74.0 - Nero AG) Hidden
ImgBurn (HKLM-x32\...\ImgBurn) (Version: 2.5.8.0 - LIGHTNING UK!)
Injustice: Gods Among Us Ultimate Edition (HKLM-x32\...\Steam App 242700) (Version:  - NetherRealm Studios)
Intel® Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1008 - Intel Corporation)
Intel® Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1281 - Intel Corporation)
Intel® Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 10.1.0.1008 - Intel Corporation)
IObit Malware Fighter (HKLM-x32\...\IObit Malware Fighter_is1) (Version: 2.5 - IObit)
IObit Uninstaller (HKLM-x32\...\IObitUninstall) (Version: 4.1.5.30 - IObit)
iTunes (HKLM\...\{2ABBBD91-91E5-4AD7-929A-FE15D1DC0576}) (Version: 12.0.1.26 - Apple Inc.)
Java 7 Update 67 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217067FF}) (Version: 7.0.670 - Oracle)
Java 8 Update 25 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation)
JDownloader 0.9 (HKLM-x32\...\5513-1208-7298-9440) (Version: 0.9 - AppWork GmbH)
join.me (HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\JoinMe) (Version: 1.18.0.189 - LogMeIn, Inc.)
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
KDiff3 (remove only) (HKLM-x32\...\KDiff3) (Version:  - )
K-Lite Mega Codec Pack 10.8.5 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 10.8.5 - )
Kodak AIO Printer (Version: 7.7.2.0 - Eastman Kodak Company) Hidden
KODAK AiO Software (HKLM-x32\...\{E0F274B7-592B-4669-8FB8-8D9825A09858}) (Version: 7.7.6.0 - Eastman Kodak Company)
ksDIP (x32 Version: 3.20.0000.0001 - Eastman Kodak Company) Hidden
KYOCERA USB Modem KC02US Driver (HKLM\...\{E2C3C89F-23CC-4C39-A900-6139F65B1557}) (Version: 2.11.0000 - KYOCERA Corporation)
LAME v3.99.3 (for Windows) (HKLM-x32\...\LAME_is1) (Version:  - )
Law and Order Dead on the Money (HKLM-x32\...\Law and Order Dead on the Money) (Version: 1.0 - Legacy Interacive)
Law and Order: Double or Nothing (HKLM-x32\...\Law and Order: Double or Nothing) (Version: 1.0 - Legacy Interacive)
Law and Order: Justice is Served (HKLM-x32\...\Law and Order: Justice is Served) (Version: 1.0 - Legacy Interacive)
Left 4 Dead 2 (HKLM-x32\...\Steam App 550) (Version:  - Valve)
Left 4 Dead 2 Authoring Tools (HKLM-x32\...\Steam App 563) (Version:  - Valve)
Left 4 Dead 2 Standalone Patch™ (HKLM-x32\...\L4D2SP) (Version: 8.2 - Gaming eXtreme)
LibUSB-Win32-0.1.10.1 (HKLM-x32\...\LibUSB-Win32_is1) (Version: 0.1.10.1 - LibUSB-Win32)
LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.291 - LogMeIn, Inc.)
LogMeIn Hamachi (x32 Version: 2.2.0.291 - LogMeIn, Inc.) Hidden
LOOT (HKLM-x32\...\LOOT) (Version: 0.6.0 - LOOT Development Team)
LTCM Client (HKLM-x32\...\LTCM Client) (Version:  - Leader Technologies Inc.)
Malwarebytes Anti-Malware version 2.0.4.1028 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation)
ManageMyMobile (HKLM-x32\...\ManageMyMobile_is1) (Version: 1.0 - IObit)
ManyCam 4.1.0 (HKLM-x32\...\ManyCam) (Version: 4.1.0 - Visicom Media Inc.)
MegaTrainer eXperience V1.2.1.6 (HKLM-x32\...\MegaTrainer eXperience_is1) (Version:  - )
Menu Templates - Starter Kit (x32 Version: 9.4.6.0 - Nero AG) Hidden
Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Messenger Companion (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Games for Windows - LIVE  (HKLM-x32\...\{4D243BA7-9AC4-46D1-90E5-EEB88974F501}) (Version: 2.0.687.0 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{05B49229-22A2-4F88-842A-BBC2EBE1CCF6}) (Version: 2.0.687.0 - Microsoft Corporation)
Microsoft Office Click-to-Run 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Starter 2010 - English (HKLM-x32\...\{90140011-0066-0409-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\OneDriveSetup.exe) (Version: 17.3.1229.0918 - Microsoft Corporation)
Microsoft OneDrive for Business 2013 - en-us (HKLM\...\GrooveRetail - en-us) (Version: 15.0.4675.1003 - Microsoft Corporation)
Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.6.305.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.31211.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Xbox 360 Accessories 1.2 (HKLM\...\{D9C50188-12D5-4D3E-8F00-682346C2AA5F}) (Version: 1.20.146.0 - Microsoft)
mIRC (HKLM-x32\...\mIRC) (Version: 7.36 - mIRC Co. Ltd.)
Modio (HKLM-x32\...\{3DA224A5-666B-4941-8998-2F19C6D126A5}_is1) (Version:  - GameTuts)
Monopoly by Parker Brothers (HKLM-x32\...\Monopoly by Parker Brothers) (Version: 1.0.406.0 - GameHouse, Inc.)
Mortal Kombat Komplete Edition (HKLM-x32\...\Steam App 237110) (Version:  - NetherRealm Studios)
MotioninJoy Gamepad tool 0.7.1001 (HKLM\...\{330DAC67-5B62-452A-A0E4-6B4A5923940F}_is1) (Version: 0.7.1001 - www.motioninjoy.com)
Motorola Device Manager (HKLM-x32\...\{28DB8373-C1BB-444F-A427-A55585A12ED7}) (Version: 2.4.5 - Motorola Mobility)
Motorola Device Software Update (x32 Version: 13.09.3001 - Motorola Mobility) Hidden
Motorola Mobile Drivers Installation 6.3.0 (HKLM\...\{759E6A2F-1F01-45EF-A0C4-22F1B56CB975}) (Version: 6.3.0 - Motorola Mobility LLC)
Movie Templates - Starter Kit (x32 Version: 9.4.6.0 - Nero AG) Hidden
Mozilla Firefox 34.0.5 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 34.0.5 (x86 en-US)) (Version: 34.0.5 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 31.0 - Mozilla)
MSI Afterburner 2.2.1 (HKLM-x32\...\Afterburner) (Version: 2.2.1 - MSI Co., LTD)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
Nero 9 Essentials (HKLM-x32\...\{120a48c5-c576-409a-a382-4500030f3965}) (Version:  - Nero AG)
Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.52.3 - Black Tree Gaming)
NVIDIA 3D Vision Controller Driver 347.09 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 347.09 - NVIDIA Corporation)
NVIDIA 3D Vision Driver 347.09 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 347.09 - NVIDIA Corporation)
NVIDIA GeForce Experience 2.1.5 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1.5 - NVIDIA Corporation)
NVIDIA Graphics Driver 347.09 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 347.09 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.3.33.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.33.0 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.14.0702 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.14.0702 - NVIDIA Corporation)
ocr (x32 Version: 6.2.3.50 - Eastman Kodak Company) Hidden
Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4675.1003 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (Version: 15.0.4675.1003 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4675.1003 - Microsoft Corporation) Hidden
ooVoo (HKLM-x32\...\{FAA7F8FF-3C05-4A61-8F14-D8A6E9ED6623}) (Version: 3.6.5001 - ooVoo LLC.)
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
OpenOffice 4.0.1 (HKLM-x32\...\{47F460DA-D1BE-4D85-8DF2-AA1F31D3445F}) (Version: 4.01.9714 - Apache Software Foundation)
Oxy updater (HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\{790875CA-153F-49F0-AAC8-C403494239A1}) (Version:  - AGILITY)
PCSX2 - Playstation 2 Emulator (HKLM-x32\...\pcsx2-r5875) (Version:  - )
PDF Settings CS6 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden
Platform (x32 Version: 1.36 - VIA Technologies, Inc.) Hidden
Pokémon Mystery Gift Editor (HKLM-x32\...\Pokémon Mystery Gift Editor) (Version:  - Grovyle91)
PreReq (x32 Version: 6.2.4.0 - Eastman Kodak Company) Hidden
Price Check by AOL (HKLM-x32\...\Price Check by AOL) (Version: 1.11.2.1 - AOL Inc.)
PrintProjects (HKLM-x32\...\PrintProjects) (Version: 1.0.0.9282 - RocketLife Inc.)
Project 64 version 2.1.0.1 (HKLM-x32\...\Project 64_is1) (Version: 2.1.0.1 - )
QuickShare (HKLM-x32\...\{04DB50FA-EA80-4256-85F9-540C582E280D}) (Version: 1.39.60.10936 - Linkury Inc.) <==== ATTENTION
QuickTime 7 (HKLM-x32\...\{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E}) (Version: 7.76.80.95 - Apple Inc.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.44.421.2011 - Realtek)
resident evil 4 / biohazard 4 (HKLM-x32\...\Steam App 254700) (Version:  - Capcom)
Resident Evil 5 (HKLM-x32\...\Steam App 21690) (Version:  - Capcom)
Revo Uninstaller Pro 3.0.7 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 3.0.7 - VS Revo Group, Ltd.)
Saints Row IV (HKLM-x32\...\Steam App 206420) (Version:  - Deep Silver Volition)
Saints Row: The Third (HKLM-x32\...\Steam App 55230) (Version:  - Volition)
SecondLifeBeta (remove only) (HKLM-x32\...\SecondLifeBeta) (Version:  - )
SecondLifeBetaViewer (remove only) (HKLM-x32\...\SecondLifeBetaViewer) (Version:  - )
SecondLifeViewer (remove only) (HKLM-x32\...\SecondLifeViewer) (Version:  - )
SHIELD Streaming (Version: 3.1.3000 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 16.18.9 - NVIDIA Corporation) Hidden
Singularity (64 bit) (remove only) (HKLM-x32\...\Singularity (64 bit)) (Version:  - )
SixaxisDriver 0.91 (HKLM-x32\...\GameSaike SixaxisDriver_is1) (Version:  - xPAD, Inc.)
Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.3.16540.9015 - Microsoft Corporation)
Skype™ 6.21 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 6.21.104 - Skype Technologies S.A.)
SlimCleaner (HKLM-x32\...\{6B8D6199-EE44-4FD7-813A-6D8C62C9B384}) (Version: 4.0.30878 - SlimWare Utilities, Inc.)
SlimDrivers (HKLM-x32\...\{A5457401-D56A-43F2-9524-78E54A7FC07A}) (Version: 2.2.32705 - SlimWare Utilities, Inc.)
Smart Defrag 3 (HKLM-x32\...\Smart Defrag 3_is1) (Version: 3.3 - IObit)
SONIC THE HEDGEHOG 4 Episode I (HKLM-x32\...\Steam App 202530) (Version:  - SEGA)
SONIC THE HEDGEHOG 4 Episode II (HKLM-x32\...\Steam App 203650) (Version:  - SEGA)
Sothink HD Movie Maker (HKLM-x32\...\{39352E3D-43FF-44E7-AC2F-0ADA04AF9BB2}_is1) (Version: 2.2 - SourceTec Software Co., LTD)
Sound Blaster X-Fi MB (HKLM-x32\...\{F3D9AC82-30F4-4BB9-B9AB-8697637568C1}) (Version: 1.0 - Creative Technology Limited)
Spelling Dictionaries Support For Adobe Reader 9 (HKLM-x32\...\{AC76BA86-7AD7-5464-3428-900000000004}) (Version: 9.0.0 - Adobe Systems Incorporated)
Star Wars Jedi Knight Jedi Academy (HKLM-x32\...\{1EECBA68-8BE4-4076-94DF-E9ED206B1D21}) (Version:  - )
Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation)
Super Mario Fusion Revival v0.4.1 (HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\Super Mario Fusion Revival v0.4.1) (Version:  - )
SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 6.0.1168 - SUPERAntiSpyware.com)
Surfing Protection (HKLM-x32\...\IObit Surfing Protection_is1) (Version: 1.0 - IObit)
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
System Requirements Lab for Intel (HKLM-x32\...\{0941583C-A10F-4FBB-9B1C-9178CE3BFDAF}) (Version: 4.5.23.0 - Husdawg, LLC)
Task Manager Enable Tool (HKLM-x32\...\{6EF863B1-D8EA-4BB7-B88D-F96423FEFCF0}_is1) (Version:  - taskmanagerdisabled.com)
Team Fortress 2 (HKLM-x32\...\Steam App 440) (Version:  - Valve)
The Elder Scrolls Arena (HKLM-x32\...\{62E2BBFA-BE97-42CD-AE89-A4EEF7F36992}) (Version: 1.00.0000 - Bethesda Softworks)
The Elder Scrolls III: Morrowind (HKLM-x32\...\Steam App 22320) (Version:  - Bethesda Game Studios®)
The Elder Scrolls IV: Oblivion  (HKLM-x32\...\Steam App 22330) (Version:  - Bethesda Game Studios)
The Elder Scrolls V: Skyrim (HKLM-x32\...\Steam App 72850) (Version:  - Bethesda Game Studios)
The Jokers' Wild (HKLM-x32\...\The Jokers' Wild1.0.x) (Version: 1.0.x - BigJon's PCGames)
The Price Is Right (HKLM-x32\...\The Price Is Right7.9.0) (Version: 7.9.0 - BigJon's PCGames)
Tic Tac Dough 1.0 (HKLM-x32\...\Whammy_1.0) (Version:  - )
Unity Web Player (HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\...\UnityWebPlayer) (Version: 4.6.1f1 - Unity Technologies ApS)
VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden
Vegas Movie Studio HD 11.0 (HKLM-x32\...\{6DC79411-858B-11E1-8E7A-F04DA23A5C58}) (Version: 11.0.75 - Sony)
Vegas Movie Studio HD 9.0 (HKLM-x32\...\{655CD886-3B90-4E4D-B314-92BDA9B08C86}) (Version: 9.0.30 - Sony)
VIA Platform Device Manager (HKLM-x32\...\InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.36 - VIA Technologies, Inc.)
Visual Pinball (HKLM-x32\...\{B36C4994-A563-4339-8754-CCCE51314A4C}) (Version: 9.2.1.0 - Randy Davis)
Visual Studio 2010 x64 Redistributables (HKLM\...\{21B133D6-5979-47F0-BE1C-F6A6B304693F}) (Version: 13.0.0.1 - AVG Technologies)
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
VueScan x64 (HKLM\...\VueScan x64) (Version:  - )
WBFS Manager 3.0 (HKLM-x32\...\WBFS Manager 3.0) (Version: 3.0 - AlexDP)
WD Drive Utilities (HKLM-x32\...\{3E9C9EE1-1964-4519-BF80-652E7F415ECF}) (Version: 1.0.0 - Western Digital)
WD Security (HKLM-x32\...\{EFC0BA9B-F472-4559-B655-9C47281F9483}) (Version: 1.0.0 - Western Digital)
WD SmartWare (HKLM\...\{EC39CC32-E144-42E4-9A59-53C20B408BDE}) (Version: 1.5.4 - Western Digital)
Wheel Of Fortune 7.1.x (HKLM-x32\...\BJWOF) (Version: 7.1.x - BigJon's PCGames)
Wheel of Fortune Deluxe (remove only) (HKLM-x32\...\Wheel of Fortune Deluxe) (Version:  - )
WhoCrashed 4.02 (HKLM\...\WhoCrashed_is1) (Version:  - Resplendence Software Projects Sp.)
Winamp (HKLM-x32\...\Winamp) (Version: 5.63  - Nullsoft, Inc)
Windows Driver Package - Datel Design & Development (usbio) USBIOControlledDevices  (04/21/2009 2.40.0.0) (HKLM\...\30853F7174C6EB267FDAABE50A369169D18DA611) (Version: 04/21/2009 2.40.0.0 - Datel Design & Development)
Windows Driver Package - Datel Design & Development USBIOControlledDevices  (04/21/2009 2.40.0.0) (HKLM\...\8555DF8099612EF2F8333DC0EC454113D4537E7B) (Version: 04/21/2009 2.40.0.0 - Datel Design & Development)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation)
Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation)
WinPcap 4.1.2 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2001 - CACE Technologies)
WinRAR 4.20 (64-bit) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH)
World Wrestling Mpire 2013 HD (HKLM-x32\...\World Wrestling Mpire 2013 HD) (Version:  - )
Wrestling MPire 2004  (HKLM-x32\...\Wrestling MPire 2004) (Version:  - MDickie)
Wrestling MPire 2008 (Management Edition)  (HKLM-x32\...\Wrestling MPire 2008 (Management Edition)) (Version:  - MDickie)
XFastUSB (HKLM-x32\...\XFastUSB) (Version: 3.02.28 - ASRock Inc.)
Xiph QuickTime Components (HKLM-x32\...\XiphQT) (Version:  - )
Yahoo! Detect (HKLM-x32\...\YTdetect) (Version:  - )
Yahoo! Install Manager (HKLM-x32\...\YInstHelper) (Version:  - )
Yahoo! Messenger (HKLM-x32\...\Yahoo! Messenger) (Version:  - Yahoo! Inc.)
Your Product (HKLM-x32\...\Your Product1.0) (Version: 1.0 - Your Company)
YTD Toolbar v6.6 (HKLM-x32\...\{3ECECC41-64EC-47F7-BCD1-6EC7039FF88A}) (Version: 6.6 - Spigot, Inc.) <==== ATTENTION
Zune (HKLM\...\Zune) (Version: 04.08.2345.00 - Microsoft Corporation)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\gamerpc\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\gamerpc\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\gamerpc\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\gamerpc\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\gamerpc\AppData\Local\Google\Update\1.3.25.11\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\gamerpc\AppData\Local\Google\Update\1.3.25.11\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\gamerpc\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\gamerpc\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\amd64\FileSyncApi64.dll (Microsoft Corporation)

==================== Restore Points  =========================

04-01-2015 23:04:21 ComboFix created restore point
06-01-2015 05:17:57 Windows Update
07-01-2015 14:28:38 Restore Point Created by FRST
07-01-2015 16:47:14 Restore Point Created by FRST
10-01-2015 13:42:57 Windows Update
10-01-2015 16:36:18 Driver Booster : Realtek PCIe FE Family Controller

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-09-30 03:00 - 2014-05-25 10:28 - 00000865 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1       localhost
127.0.0.1   d3oxij66pru1i3.cloudfront.net

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {0CAA66BE-DAFF-4A7E-9E58-A31743247C34} - System32\Tasks\{7DDB43B2-2774-4D73-BC49-EAAC4F2A404D} => Iexplore.exe http://ui.skype.com/...?LastError=1618
Task: {0D87EEE5-5832-4C22-81E7-8E6DDD8BBF4C} - System32\Tasks\Motorola Device Manager Initial Update => C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe [2013-10-31] ()
Task: {0DD28E27-D22C-4107-9A2E-352629191C6F} - System32\Tasks\{89A63435-1F11-4FA5-BE4B-2F500309DF5E} => C:\Program Files (x86)\Ubisoft\Law and Order Dead on the Money\lawandorder.exe [2006-08-31] (Macromedia, Inc.)
Task: {0E0A1550-5014-4C39-873D-5704425E4CF7} - System32\Tasks\{38371D5D-149E-4184-AEA7-B1EBEB47425D} => C:\Users\gamerpc\Desktop\Emulators\Super Nintendo Emulator\Final Fantasy Mystic Quest Editor\MQME.exe
Task: {0FFFF36C-A124-4DDC-BCAB-C63EAA47D9E7} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1692155839-1707551626-4126777635-1001Core => C:\Users\gamerpc\AppData\Local\Google\Update\GoogleUpdate.exe [2014-07-23] (Google Inc.)
Task: {146808BA-6DFF-4362-BBB4-4237A10BE223} - System32\Tasks\{15302808-3B18-47DF-8805-E238EA913DB6} => C:\Program Files (x86)\Ubisoft\Law and Order Dead on the Money\lawandorder.exe [2006-08-31] (Macromedia, Inc.)
Task: {1E7338AE-F296-4748-AEFC-129F177D329A} - System32\Tasks\{495C770D-A63A-46AE-9F1A-D01A2B8D5A3D} => Iexplore.exe http://ui.skype.com/...?LastError=1618
Task: {204103C1-8952-4CA7-923E-6FA8F60AC321} - System32\Tasks\{D4976C14-C0B6-4B94-B8F8-28F997D6D580} => pcalua.exe -a "C:\Users\gamerpc\Desktop\mugen-1.1b1\stages\Stage Viewer Allegro Test.exe" -d C:\Users\gamerpc\Desktop\mugen-1.1b1\stages
Task: {248D787C-EFF2-43F7-A9A5-BA67D72AC61C} - System32\Tasks\{436964C9-7BE5-4A6B-86A2-A52439D79F1D} => C:\Program Files (x86)\AOL Desktop 9.7c\aol.exe [2013-09-07] (AOL Inc.)
Task: {257C4E95-AF76-4A2F-8F3C-4C69B5AE4D34} - System32\Tasks\{34C7ACF9-07BE-4AF9-AD3C-70DF530D07FC} => C:\Program Files (x86)\Ubisoft\Law and Order Double or Nothing\lawandorder2.exe [2006-09-02] (Macromedia, Inc.)
Task: {2EAB076C-1752-4952-B4BA-576732210069} - System32\Tasks\Microsoft Office 15 Sync Maintenance for GAMER-Mario Valencia gamer => C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe [2014-11-04] (Microsoft Corporation)
Task: {324A7872-BA66-48BF-86BD-586E9750BAC7} - System32\Tasks\{97BDF217-699D-40E4-8005-75974F8E8AD7} => pcalua.exe -a "D:\Drivers\Rapid Storage Technology\Intel\Win7-64_Win7_Vista64_Vista_XP64_XP(v1.0.1.0.1008_PV)\iata_cd.exe" -d "D:\Drivers\Rapid Storage Technology\Intel\Win7-64_Win7_Vista64_Vista_XP64_XP(v1.0.1.0.1008_PV)\" -c -s
Task: {3457EDFC-61B1-4D55-AFB6-644C4884B181} - System32\Tasks\{13444DD8-0D3B-45AF-A801-9B0AC8F19A5F} => C:\Program Files (x86)\Ubisoft\Law and Order Double or Nothing\lawandorder2.exe [2006-09-02] (Macromedia, Inc.)
Task: {3516C7DE-AD72-4664-BA5D-E665FF381016} - System32\Tasks\Uninstaller_SkipUac_Administrator => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [2014-12-29] (IObit)
Task: {3701720C-3890-45D2-8995-DED38B4BBA55} - System32\Tasks\{583F1279-E01F-4C2B-B8D0-3F6EF87558DB} => C:\Program Files (x86)\Ubisoft\Law and Order Dead on the Money\lawandorder.exe [2006-08-31] (Macromedia, Inc.)
Task: {3A1EF08B-BBAD-44A6-9557-33AEB8662C95} - System32\Tasks\ParetoLogic Update Version3 Startup Task => C:\Program Files (x86)\Common Files\ParetoLogic\UUS3\Pareto_Update3.exe
Task: {3B1F4F54-2192-4520-B1A9-B7833287E2B3} - System32\Tasks\{ADE47326-50EA-4AA8-810A-A78C29DCED21} => pcalua.exe -a "C:\Bethesda Softworks\Fallout 3\Uninstall\setup.exe" -d "C:\Bethesda Softworks\Fallout 3\Uninstall"
Task: {3B9B835F-394B-476F-BEE5-F3561C000353} - System32\Tasks\{EE46B256-0166-44A3-AC37-2DFFF3494E1F} => Iexplore.exe http://ui.skype.com/...?LastError=1618
Task: {3C913460-5E90-4F0F-A674-4795F8B7B2A5} - System32\Tasks\{5AEC82BD-CCAF-41ED-8098-3A5FF67B0660} => C:\Program Files (x86)\Ubisoft\Law and Order Dead on the Money\lawandorder.exe [2006-08-31] (Macromedia, Inc.)
Task: {4191FB6C-BBC1-4AF6-BBE5-03180B604BEC} - System32\Tasks\SlimCleaner Run => C:\Program Files (x86)\SlimCleaner\SlimCleaner.exe [2013-07-10] (SlimWare Utilities, Inc.)
Task: {43E7A597-C182-4F70-93F8-45DD95B94153} - System32\Tasks\SlimDrivers Startup => C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe [2013-09-24] (SlimWare Utilities, Inc.)
Task: {44217412-BA82-46AD-AF67-530DFE104991} - System32\Tasks\{4CBA51F0-5AC0-448D-B5E5-73629AC4F9DB} => C:\Program Files (x86)\AOL Desktop 9.7c\aol.exe [2013-09-07] (AOL Inc.)
Task: {452BA0B6-39F8-405A-93C6-CD288E0F8B15} - System32\Tasks\{E9466C25-F164-46FA-91C7-A284868168CE} => pcalua.exe -a D:\Setup\Setup.exe -d D:\Setup
Task: {4545AE08-B6AC-4928-8E9D-134E711F2E62} - System32\Tasks\{F2049560-4C2D-43F8-8E05-793BB9262712} => C:\Program Files (x86)\Ubisoft\Law and Order Double or Nothing\lawandorder2.exe [2006-09-02] (Macromedia, Inc.)
Task: {47C4D6D8-CD24-4FA5-BF35-ECF90DD74FF2} - System32\Tasks\{1B2B8E15-52CB-4BC3-BBD4-5446E6C5B50D} => C:\Program Files (x86)\Ubisoft\Law and Order Double or Nothing\lawandorder2.exe [2006-09-02] (Macromedia, Inc.)
Task: {4823347F-DA5F-4AAF-99AA-7D1937C7AB0B} - System32\Tasks\{23242C15-D18E-4C89-9D55-96F13DE263CF} => Iexplore.exe http://ui.skype.com/...?LastError=1618
Task: {50EDBB82-75B9-48BD-9E29-3E7FC3EAEE0D} - System32\Tasks\{F4D773ED-9329-41AD-903B-BEFBD5F0A4E0} => Iexplore.exe http://ui.skype.com/...?LastError=1618
Task: {52FB5383-65F8-48E7-A1B5-CA181A3B009A} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2014-10-06] ()
Task: {55345424-F331-4855-A869-14DD76591D7B} - System32\Tasks\{757BA854-A645-43BE-B6C2-A3C0EDA0C56E} => C:\Program Files (x86)\AOL Desktop 9.7c\aol.exe [2013-09-07] (AOL Inc.)
Task: {565E2D3C-6EEC-483B-BE4E-4509712D6507} - System32\Tasks\{C6FB4AAF-1E64-4651-AF4B-54461A9A5B1C} => pcalua.exe -a F:\EN_Fallout_3_DLC.EXE -d F:\
Task: {569BE5E9-0356-49EC-9844-ADA88F96752C} - System32\Tasks\{6CFDEE95-E432-4474-8338-A2454B24BAC2} => pcalua.exe -a C:\Windows\system32\AxSWindCx64.cpl -c Alcohol iSCSI Sharing Center
Task: {5965DC73-39B1-4B17-B3A5-BCD6A5E0E32E} - System32\Tasks\{2D684DF1-4F9A-416D-AE60-C56C5C5FBA9B} => C:\Users\gamerpc\Desktop\Emulators\Super Nintendo Emulator\Final Fantasy Mystic Quest Editor\MQME.exe
Task: {59AF5489-E731-4E1B-93E5-D64EED649280} - System32\Tasks\Game_Booster_AutoUpdate => C:\Program Files (x86)\IObit\Game Booster 3\AutoUpdate.exe [2013-06-08] ()
Task: {5E6A229D-D490-4A44-8DA6-85C9A3001F40} - System32\Tasks\Games\UpdateCheck_S-1-5-21-1692155839-1707551626-4126777635-1001
Task: {62A25BE9-3DAD-4977-A721-85B203944952} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {6407575D-4CA3-4C3A-BB0B-5CA09DA16C24} - System32\Tasks\Uninstaller_SkipUac_gamerpc => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [2014-12-29] (IObit)
Task: {659D2ABF-C419-413D-944A-AD4FE8BF15BB} - System32\Tasks\{52E67BE1-787D-4029-AA18-3619DF209F4C} => C:\Program Files (x86)\Ubisoft\Law and Order Double or Nothing\lawandorder2.exe [2006-09-02] (Macromedia, Inc.)
Task: {6CB8CAC1-F456-4928-A40E-25E066B83CA9} - System32\Tasks\{96B850C4-D265-4CA8-91A0-CDBE6344AE48} => C:\Program Files (x86)\PCSX2 1.2.1\pcsx2-r5875.exe [2014-02-03] ()
Task: {6EF5B98E-F65E-4DDD-AD3F-7A2430854744} - System32\Tasks\Motorola Device Manager Engine => C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe [2013-10-31] ()
Task: {70D6DD86-361F-4CEF-AA36-95CF6E0E7B56} - System32\Tasks\ASC7U_SkipUac_gamerpc => C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 7\ASC.exe [2014-04-01] (IObit)
Task: {76A33D7D-0E73-4A25-B742-F081BE4C2492} - System32\Tasks\{FDE7E32B-90B0-4E07-B780-686252CC0F03} => pcalua.exe -a C:\Users\gamerpc\AppData\Local\Temp\{69E3CF44-2501-4429-9278-C4B3327E96D6}\setup.exe -d "C:\Program Files (x86)\Mozilla Firefox"
Task: {77BDFD32-FB7D-41E0-ADB4-BCE9AFBE2E2E} - System32\Tasks\{65DC432B-FC7F-4ECF-B37C-063D8D31EE3B} => pcalua.exe -a "J:\Emulators\Pinball emulator\Setup.exe" -d "J:\Emulators\Pinball emulator"
Task: {7C7AFC6C-F27F-4121-AA20-C529F05E5895} - System32\Tasks\{E02E8E32-E420-4B68-B35E-E66DA8D5542F} => C:\Program Files (x86)\AOL Desktop 9.7b\aol.exe [2013-09-07] (AOL Inc.)
Task: {805B25C2-D511-435D-9708-974F1004EAA9} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-12-12] (Adobe Systems Incorporated)
Task: {80EA390C-FB34-4EAE-BCBB-4FA5A2DEFC7B} - System32\Tasks\SmartDefrag3_Update => C:\Program Files (x86)\IObit\Smart Defrag 3\AutoUpdate.exe [2014-07-23] (IObit)
Task: {8370B74B-9771-43F7-AAF0-A64BA37265AD} - System32\Tasks\Driver Booster SkipUAC (gamerpc) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe [2015-01-07] (IObit)
Task: {8C4712A7-3A98-4D4E-AEA3-FE94FB0A511C} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-1692155839-1707551626-4126777635-1001 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe
Task: {920152C7-4E33-4CC2-A300-9E5F8FFA9C15} - System32\Tasks\{D56D8570-6764-4DF0-9F0F-EA2F00E51ED2} => C:\Users\gamerpc\Desktop\Emulators\Super Nintendo Emulator\Final Fantasy Mystic Quest Editor\MQME.exe
Task: {9674FF78-B7FC-455A-995C-29F9A7785547} - System32\Tasks\GoogleUpdateTaskMachineUA1cfa712be8cef20 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-07-23] (Google Inc.)
Task: {97355DB0-E9DD-468C-9E15-90A7362A8269} - System32\Tasks\{80BE3591-B3BA-41BE-B092-6F8C5F5E88CA} => pcalua.exe -a F:\INSTALL.EXE -d F:\
Task: {97B8E946-8A6B-47C9-8EF4-8B5F6978742E} - System32\Tasks\{12EEBA21-4B0F-429B-AAAB-FD8B72F1994B} => C:\Program Files (x86)\AOL Desktop 9.7b\aol.exe [2013-09-07] (AOL Inc.)
Task: {99F4C835-ABA2-4F76-A527-5D09BAEC2E7D} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: {9B828ECD-4749-434A-9D87-B88337BA139E} - System32\Tasks\Driver Booster Update => C:\Program Files (x86)\IObit\Driver Booster\AutoUpdate.exe [2014-12-09] (IObit)
Task: {9C6E6BD1-5701-4513-A730-E4B8618D713B} - System32\Tasks\{EC4F7D6A-93FC-48A1-B3CD-8D5472BFE624} => pcalua.exe -a "C:\Users\gamerpc\Desktop\L4D2IUP 2.1.1.0-2.1.1.1.exe" -d C:\Users\gamerpc\Desktop
Task: {9E326060-1BFD-44C2-97E0-23FED6993105} - System32\Tasks\{4EF1F145-9FBC-484B-A487-C2A1E7E14BDA} => pcalua.exe -a C:\Users\gamerpc\Downloads\Setup.exe -d C:\Users\gamerpc\Downloads
Task: {9E517687-BFD9-4B7F-AE7F-FAAA369F7E99} - System32\Tasks\{9410AEA7-64E3-43FB-B046-4F2472976323} => C:\Program Files (x86)\AOL Desktop 9.7b\aol.exe [2013-09-07] (AOL Inc.)
Task: {9F2CC09D-41D1-4FFD-AB05-76532917522E} - System32\Tasks\Motorola Device Manager Update => C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotorolaDeviceManagerUpdate.exe [2013-10-31] ()
Task: {A25D7E1D-1326-4E8D-A13D-83DE49944BE9} - System32\Tasks\Microsoft Office 15 Sync Maintenance for GAMER-gamerpc gamer => C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe [2014-11-04] (Microsoft Corporation)
Task: {A659C710-B9B8-40C2-894A-89630006A1E8} - System32\Tasks\Driver Booster Scan => C:\Program Files (x86)\IObit\Driver Booster\Scheduler.exe [2014-12-17] (IObit)
Task: {A7E63AE5-056C-4807-BA67-4A6F9302397F} - System32\Tasks\AdobeAAMUpdater-1.0-NWOFAN-PC-gamerpc => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04] (Adobe Systems Incorporated)
Task: {A89290B7-3C7F-4DEC-A506-4A48246B6E9A} - System32\Tasks\{4971BCBB-5644-4480-8840-A01625227057} => Iexplore.exe http://ui.skype.com/...?LastError=1618
Task: {B34C8FA2-EA7F-4AEB-968A-83B71B6FED12} - System32\Tasks\{29DCDBB9-B8DC-43BF-829A-1C1ECB386532} => pcalua.exe -a D:\demo32.exe -d D:\
Task: {B420CC68-BFAD-4BCF-9C1B-575031489415} - System32\Tasks\ASC7_PerformanceMonitor => C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 7\Monitor.exe [2014-02-24] (IObit)
Task: {BDA82C71-F91F-4384-AFC8-150A9BD4F3F9} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-1692155839-1707551626-4126777635-1001 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe
Task: {C11D9D24-82B7-42EE-8233-64345169CD0D} - System32\Tasks\{9596AF65-ABAD-4197-9897-593BB68C6B18} => C:\Program Files (x86)\PCSX2 1.2.1\pcsx2-r5875.exe [2014-02-03] ()
Task: {C294ABFB-C20E-45AF-95C8-850F5726855D} - System32\Tasks\{A733E35F-BCAF-4970-8A6E-41BE0D404C71} => pcalua.exe -a D:\Setup.exe -d D:\
Task: {C7937331-6151-46E2-821E-D1F1F651B3DA} - System32\Tasks\{454737B3-2210-4D8F-8514-F0CBD8C7D3B7} => C:\Users\gamerpc\Desktop\Emulators\Super Nintendo Emulator\Final Fantasy Mystic Quest Editor\MQME.exe
Task: {CA0DEF3F-F5AE-445A-91FC-12F12449E8C1} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1692155839-1707551626-4126777635-1001UA => C:\Users\gamerpc\AppData\Local\Google\Update\GoogleUpdate.exe [2014-07-23] (Google Inc.)
Task: {CA25213A-AE1F-4EB3-B977-43AE47AF70AA} - System32\Tasks\{A8CF3916-F146-4B52-AA9A-8FC6C1BCAF09} => C:\Program Files (x86)\AOL Desktop 9.7c\aol.exe [2013-09-07] (AOL Inc.)
Task: {CDABA220-EC7B-4B51-9C92-5EB5EFB6FBE4} - System32\Tasks\{BEC953CE-8B3F-46EA-B536-4CA8F1B7BF3D} => C:\Users\gamerpc\Desktop\Dolphin-x64\Dolphin.exe
Task: {D1F376C4-D1EE-4AEA-8FA8-6457479B0D60} - System32\Tasks\GoogleUpdateTaskMachineCore1cfa712bccbb08c => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-07-23] (Google Inc.)
Task: {D4507B15-DBF6-4C93-97FD-4C2E9CD60CEF} - System32\Tasks\{07133507-5FE9-44AC-80B5-C22EA368930E} => pcalua.exe -a "C:\Users\gamerpc\Desktop\mugen\stages\Stage Viewer Allegro Test.exe" -d C:\Users\gamerpc\Desktop\mugen\stages
Task: {D778266A-3244-455F-B30E-51DF98CF8134} - System32\Tasks\{9D59B7D9-9CA6-4992-8408-69B7A8FE924C} => C:\Users\gamerpc\Desktop\pcsx2-5932-windows-x86\pcsx2-r5927.exe
Task: {D9C075EF-189E-4421-BF85-1BC31D0BB9F4} - System32\Tasks\{C2048E73-C126-445F-AB37-DB8D4D7E3B71} => pcalua.exe -a "C:\Users\gamerpc\Desktop\AIO Adobe Photoshop Portable (2011) CS1 &amp;CS2 &amp; CS3 &amp; CS4 &amp; CS5 [WwW.ZoNaTorrent.CoM]\Photoshop CS4 Portable.exe" -d "C:\Users\gamerpc\Desktop\AIO Adobe Photoshop Portable (2011) CS1 &amp;CS2 &amp; CS3 &amp; CS4 &amp; CS5 [WwW.ZoNaTorrent.CoM]"
Task: {E1EF9758-69CE-47B6-AD1E-563A85B46D02} - System32\Tasks\{A3D5B3B5-514C-4249-94B9-E18B4D4F8885} => Iexplore.exe http://ui.skype.com/...?LastError=1618
Task: {E4E7EFBE-D522-433E-AE17-C8798820EAE7} - System32\Tasks\Driver Booster SkipUAC (SYSTEM) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe [2015-01-07] (IObit)
Task: {E9C15860-9693-4B82-983A-40B220293985} - System32\Tasks\{2EC7C282-1B02-4456-9278-460D2E2D52A0} => C:\Program Files (x86)\Ubisoft\Law and Order Double or Nothing\lawandorder2.exe [2006-09-02] (Macromedia, Inc.)
Task: {EE959627-DB5B-4149-9E7F-B6D57C95ABB5} - System32\Tasks\{59ED6458-32C7-457F-8A51-5B92C294F3D5} => C:\Program Files (x86)\Ubisoft\Law and Order Dead on the Money\lawandorder.exe [2006-08-31] (Macromedia, Inc.)
Task: {F03D4C5C-6FC2-4DE1-8EFE-0284AC1E8108} - System32\Tasks\{274BBCBC-393C-454B-8BB1-11C8A8ECDE8D} => C:\Users\gamerpc\Desktop\Dolphin-x64\Dolphin.exe
Task: {FB085F2A-618F-4508-91B4-FBD159AE6E87} - System32\Tasks\{D921C84D-38B9-4302-A7F8-9EEEAD017E7F} => C:\Program Files (x86)\Ubisoft\Law and Order Dead on the Money\lawandorder.exe [2006-08-31] (Macromedia, Inc.)
Task: {FF0B45CD-C2EA-433F-8FC9-154F2C4029B0} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2014-11-04] (Microsoft Corporation)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1cfa712bccbb08c.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA1cfa712be8cef20.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1692155839-1707551626-4126777635-1001Core.job => C:\Users\gamerpc\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1692155839-1707551626-4126777635-1001UA.job => C:\Users\gamerpc\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\ParetoLogic Update Version3 Startup Task.job => C:\Program Files (x86)\Common Files\ParetoLogic\UUS3\Pareto_Update3.exe
Task: C:\Windows\Tasks\SlimDrivers Startup.job => C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe

==================== Loaded Modules (whitelisted) =============

2013-09-29 20:24 - 2014-12-13 00:03 - 00117576 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2014-11-20 13:02 - 2014-09-23 05:36 - 08897696 _____ () C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\1033\GrooveIntlResource.dll
2014-06-15 19:58 - 2014-05-20 08:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll
2010-11-02 06:33 - 2010-11-02 06:33 - 01083392 ____R () C:\Program Files\Western Digital\WD SmartWare\System.Data.SQLite.dll
2013-09-11 18:03 - 1999-12-31 16:00 - 00078456 _____ () C:\Program Files (x86)\VIA\VIAudioi\VDeck\QsApoApi64.dll
2013-09-11 18:03 - 1999-12-31 16:00 - 00386168 _____ () C:\Program Files (x86)\VIA\VIAudioi\VDeck\Dts2ApoApi64.dll
2014-01-09 21:26 - 2014-01-09 21:26 - 01861968 _____ () C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
2014-01-20 13:17 - 2014-01-20 13:17 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2014-10-11 12:05 - 2014-10-11 12:05 - 01044776 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2014-11-20 13:02 - 2014-09-23 03:43 - 08897696 _____ () C:\Program Files\Microsoft Office 15\root\Office15\1033\GrooveIntlResource.dll
2013-10-31 07:05 - 2013-10-31 07:05 - 00172032 _____ () C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\css_core.dll
2012-05-30 09:11 - 2012-05-30 09:11 - 00176128 _____ () C:\Program Files (x86)\AIM\nssckbi.dll
2014-10-30 21:07 - 2014-10-06 10:00 - 03502080 _____ () C:\Program Files (x86)\K-Lite Codec Pack\Filters\ffdshow\ffdshow.ax
2013-05-10 10:12 - 2013-05-07 08:08 - 00675840 _____ () C:\Windows\SysWOW64\ac3filter.ax
2014-09-24 13:30 - 2014-09-24 13:30 - 00081056 _____ () C:\Users\gamerpc\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\LoggingPlatform.DLL
2014-08-22 10:32 - 2014-12-01 13:31 - 02396672 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll
2014-08-22 10:32 - 2014-12-01 13:31 - 00442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll
2014-08-22 10:32 - 2014-12-01 13:31 - 00479744 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll
2014-08-22 10:32 - 2014-12-01 13:31 - 00332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll
2013-02-28 10:52 - 2014-11-11 10:47 - 00774656 _____ () C:\Program Files (x86)\Steam\SDL2.dll
2014-12-02 11:11 - 2014-12-01 16:29 - 05002752 _____ () C:\Program Files (x86)\Steam\v8.dll
2014-12-02 11:11 - 2014-12-01 16:29 - 01612800 _____ () C:\Program Files (x86)\Steam\icui18n.dll
2014-12-02 11:11 - 2014-12-01 16:29 - 01210368 _____ () C:\Program Files (x86)\Steam\icuuc.dll
2014-04-30 17:26 - 2015-01-09 19:21 - 02226880 _____ () C:\Program Files (x86)\Steam\video.dll
2014-08-22 10:32 - 2014-12-01 13:31 - 00485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll
2012-10-22 22:57 - 2015-01-09 19:21 - 00696512 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL
2012-10-22 19:44 - 2012-05-25 03:25 - 00921600 _____ () C:\Program Files (x86)\Yahoo!\Messenger\yui.dll
2012-10-22 19:44 - 2012-05-25 03:25 - 00078336 _____ () C:\Program Files (x86)\Yahoo!\Messenger\pcre.dll
2014-09-24 13:30 - 2014-09-24 13:30 - 00081056 _____ () C:\Users\gamerpc\AppData\Local\Microsoft\SkyDrive\17.3.1229.0918\LoggingPlatform.dll
2014-12-07 23:53 - 2014-03-17 04:23 - 00003132 _____ () C:\Program Files (x86)\DAEMON Tools Pro\MSIMG32.dll
2014-10-16 13:11 - 2014-10-16 13:11 - 00169472 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\93182e9779b8be0f688fd0784df6d7fb\IsdiInterop.ni.dll
2012-10-18 11:01 - 2010-11-05 22:50 - 00058880 _____ () C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IsdiInterop.dll
2012-11-13 19:22 - 2012-11-13 19:22 - 02010624 _____ () C:\Program Files (x86)\ManyCam\opencv_core220.dll
2012-11-13 19:23 - 2012-11-13 19:23 - 01241088 _____ () C:\Program Files (x86)\ManyCam\opencv_imgproc220.dll
2012-11-13 19:23 - 2012-11-13 19:23 - 00241152 _____ () C:\Program Files (x86)\ManyCam\opencv_objdetect220.dll
2012-11-13 19:23 - 2012-11-13 19:23 - 00775680 _____ () C:\Program Files (x86)\ManyCam\opencv_highgui220.dll
2012-11-13 19:23 - 2012-11-13 19:23 - 00201216 _____ () C:\Program Files (x86)\ManyCam\opencv_video220.dll
2015-01-10 15:49 - 2015-01-10 15:49 - 00697884 _____ () C:\Users\gamerpc\AppData\Local\Temp\Sound_Blaster_X-Fi_MB_Cleanup.0001.dir.0005\~df394b.tmp
2015-01-10 15:49 - 2015-01-10 15:49 - 00592896 _____ () C:\Users\gamerpc\AppData\Local\Temp\Sound_Blaster_X-Fi_MB_Cleanup.0001.dir.0005\~de6248.tmp
2012-10-22 22:57 - 2014-12-19 15:38 - 34641288 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll
2012-10-24 20:35 - 2009-02-06 17:52 - 00073728 _____ () C:\Windows\SysWOW64\CmdRtr.DLL
2012-10-24 20:35 - 2009-04-20 10:55 - 00148480 _____ () C:\Windows\SysWOW64\APOMngr.DLL
2014-01-09 21:28 - 2014-01-09 21:28 - 00100688 _____ () C:\Program Files (x86)\DivX\DivX Update\DivXUpdateCheck.dll
2013-11-27 18:36 - 2013-01-15 17:48 - 00348992 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\madExcept_.bpl
2013-11-27 18:36 - 2013-01-15 17:48 - 00183616 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\madBasic_.bpl
2013-11-27 18:36 - 2013-01-15 17:48 - 00051008 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\madDisAsm_.bpl
2013-11-27 18:36 - 2013-12-12 17:46 - 08001344 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\WebUI.dll
2013-11-27 18:36 - 2013-05-16 18:26 - 00182080 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\unrar.dll
2013-12-04 08:42 - 2013-10-16 21:17 - 00185168 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\libcurl-4.dll
2013-11-27 18:36 - 2013-05-16 18:26 - 00145216 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\zlibwapi.dll
2014-11-20 13:02 - 2014-11-20 13:02 - 00316576 _____ () C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\AppVIsvStream32.dll
2012-10-18 11:03 - 1999-12-31 16:00 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\ACE.dll
2006-05-07 16:01 - 2006-05-07 16:01 - 00363008 _____ () C:\Program Files (x86)\QuickTime\QTComponents\XiphQT.qtx
2015-01-10 16:03 - 2013-11-14 16:02 - 00218944 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 7\Antivirus\bdfltlib.dll
2015-01-10 16:03 - 2013-01-15 18:47 - 00893248 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 7\webres.dll
2015-01-10 16:03 - 2013-01-15 18:47 - 00517440 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate 7\sqlite3.dll
2014-12-02 11:16 - 2014-10-08 15:51 - 00348992 _____ () C:\Program Files (x86)\IObit\Driver Booster\madExcept_.bpl
2014-12-02 11:16 - 2014-10-08 15:50 - 00183616 _____ () C:\Program Files (x86)\IObit\Driver Booster\madBasic_.bpl
2014-12-02 11:16 - 2014-10-08 15:50 - 00051008 _____ () C:\Program Files (x86)\IObit\Driver Booster\madDisAsm_.bpl
2014-12-02 11:16 - 2014-08-22 15:19 - 00893248 _____ () C:\Program Files (x86)\IObit\Driver Booster\webres.dll
2014-12-02 11:16 - 2012-02-16 10:16 - 00516440 _____ () C:\Program Files (x86)\IObit\Driver Booster\sqlite3.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\ProgramData\Temp:56E2E879
AlternateDataStreams: C:\Users\gamerpc\AppData\Roaming\default.rss:OECustomProperty
AlternateDataStreams: C:\Users\Mario Valencia.NWOFAN-PC\AppData\Roaming\default.rss:OECustomProperty

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PEVSystemStart => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\procexp90.Sys => ""="Driver"

==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)

==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)

========================= Accounts: ==========================

Administrator (S-1-5-21-1692155839-1707551626-4126777635-500 - Administrator - Disabled)
Alex Valencia (S-1-5-21-1692155839-1707551626-4126777635-1004 - Administrator - Enabled) => C:\Users\Alex Valencia
gamerpc (S-1-5-21-1692155839-1707551626-4126777635-1001 - Administrator - Enabled) => C:\Users\gamerpc
Guest (S-1-5-21-1692155839-1707551626-4126777635-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1692155839-1707551626-4126777635-1011 - Limited - Enabled)
Mario Valencia (S-1-5-21-1692155839-1707551626-4126777635-1007 - Administrator - Enabled) => C:\Users\Mario Valencia.NWOFAN-PC
Veronica Valencia (S-1-5-21-1692155839-1707551626-4126777635-1008 - Administrator - Enabled) => C:\Users\Veronica Valencia.NWOFAN-PC

==================== Faulty Device Manager Devices =============

==================== Event log errors: =========================

Application errors:
==================
Error: (01/10/2015 08:53:04 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: IEXPLORE.EXE, version: 10.0.9200.17183, time stamp: 0x546ebc2a
Faulting module name: ntdll.dll, version: 6.1.7601.18247, time stamp: 0x521ea8e7
Exception code: 0xc0000005
Fault offset: 0x00038e19
Faulting process id: 0x3a90
Faulting application start time: 0xIEXPLORE.EXE0
Faulting application path: IEXPLORE.EXE1
Faulting module path: IEXPLORE.EXE2
Report Id: IEXPLORE.EXE3

Error: (01/10/2015 03:43:44 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Unexpected conflict discarding   13 102.1.168.192.in-addr.arpa. PTR gamer.local.

Error: (01/10/2015 03:43:44 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 192.168.1.102:5353   15 102.1.168.192.in-addr.arpa. PTR gamer-2.local.

Error: (01/10/2015 03:43:44 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Unexpected conflict discarding   13 45.226.35.25.in-addr.arpa. PTR gamer.local.

Error: (01/10/2015 03:43:44 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 25.35.226.45:5353   15 45.226.35.25.in-addr.arpa. PTR gamer-2.local.

Error: (01/10/2015 03:41:04 PM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcFailed to launch stream service as user [87]

Error: (01/10/2015 03:22:06 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program IEXPLORE.EXE version 10.0.9200.17183 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.

Process ID: 2188

Start Time: 01d02d1ce60f0f48

Termination Time: 116

Application Path: C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE

Report Id:

Error: (01/10/2015 01:14:19 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: IMF.exe, version: 2.5.0.8, time stamp: 0x54390517
Faulting module name: KERNELBASE.dll, version: 6.1.7601.18409, time stamp: 0x53159a86
Exception code: 0x0eedfade
Fault offset: 0x0000c42d
Faulting process id: 0x35c
Faulting application start time: 0xIMF.exe0
Faulting application path: IMF.exe1
Faulting module path: IMF.exe2
Report Id: IMF.exe3

Error: (01/10/2015 01:06:01 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Unexpected conflict discarding   13 102.1.168.192.in-addr.arpa. PTR gamer.local.

Error: (01/10/2015 01:06:01 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 192.168.1.102:5353   15 102.1.168.192.in-addr.arpa. PTR gamer-2.local.

System errors:
=============
Error: (01/10/2015 08:53:00 PM) (Source: DCOM) (EventID: 10016) (User: GAMER)
Description: application-specificLocalActivation{B77C4C36-0154-4C52-AB49-FAA03837E47F}{EA022610-0748-4C24-B229-6C507EBDFDBB}GAMERgamerpcS-1-5-21-1692155839-1707551626-4126777635-1001LocalHost (Using LRPC)

Error: (01/10/2015 04:04:12 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: The Advanced SystemCare Service 7 service is marked as an interactive service.  However, the system is configured to not allow interactive services.  This service may not function properly.

Error: (01/10/2015 04:04:01 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The LiveUpdate service terminated unexpectedly.  It has done this 1 time(s).

Error: (01/10/2015 03:55:49 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: The Windows Update service hung on starting.

Error: (01/10/2015 03:43:34 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The LibUsb-Win32 - Daemon, Version 0.1.10.1 service failed to start due to the following error:
%%2

Error: (01/10/2015 03:42:43 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: The previous system shutdown at 3:41:30 PM on ‎1/‎10/‎2015 was unexpected.

Error: (01/10/2015 02:25:09 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Advanced SystemCare Service 8 service terminated unexpectedly.  It has done this 1 time(s).

Error: (01/10/2015 01:13:51 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The Steam Client Service service failed to start due to the following error:
%%1053

Error: (01/10/2015 01:13:51 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the Steam Client Service service to connect.

Error: (01/10/2015 01:13:40 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The LiveUpdate service terminated unexpectedly.  It has done this 1 time(s).

Microsoft Office Sessions:
=========================
Error: (01/10/2015 08:53:04 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: IEXPLORE.EXE10.0.9200.17183546ebc2antdll.dll6.1.7601.18247521ea8e7c000000500038e193a9001d02d43d7520604C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXEC:\Windows\SysWOW64\ntdll.dllb97e5199-994d-11e4-9191-00038a000015

Error: (01/10/2015 03:43:44 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Unexpected conflict discarding   13 102.1.168.192.in-addr.arpa. PTR gamer.local.

Error: (01/10/2015 03:43:44 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 192.168.1.102:5353   15 102.1.168.192.in-addr.arpa. PTR gamer-2.local.

Error: (01/10/2015 03:43:44 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Unexpected conflict discarding   13 45.226.35.25.in-addr.arpa. PTR gamer.local.

Error: (01/10/2015 03:43:44 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 25.35.226.45:5353   15 45.226.35.25.in-addr.arpa. PTR gamer-2.local.

Error: (01/10/2015 03:41:04 PM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcFailed to launch stream service as user [87]

Error: (01/10/2015 03:22:06 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: IEXPLORE.EXE10.0.9200.17183218801d02d1ce60f0f48116C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE

Error: (01/10/2015 01:14:19 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: IMF.exe2.5.0.854390517KERNELBASE.dll6.1.7601.1840953159a860eedfade0000c42d35c01d02d1a4ca662d8C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exeC:\Windows\syswow64\KERNELBASE.dlla3a74724-990d-11e4-b129-00038a000015

Error: (01/10/2015 01:06:01 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Unexpected conflict discarding   13 102.1.168.192.in-addr.arpa. PTR gamer.local.

Error: (01/10/2015 01:06:01 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 192.168.1.102:5353   15 102.1.168.192.in-addr.arpa. PTR gamer-2.local.

==================== Memory info ===========================

Processor: Intel® Core™ i3-3220 CPU @ 3.30GHz
Percentage of memory in use: 55%
Total physical RAM: 8158.78 MB
Available physical RAM: 3639.45 MB
Total Pagefile: 16315.74 MB
Available Pagefile: 11181.81 MB
Total Virtual: 8192 MB
Available Virtual: 8191.84 MB

==================== Drives ================================

Drive c: (Windows) (Fixed) (Total:931.41 GB) (Free:223.18 GB) NTFS
Drive e: (DRACULA_X) (CDROM) (Total:0.39 GB) (Free:0 GB) CDFS
Drive j: (My Passport) (Fixed) (Total:931.48 GB) (Free:331.43 GB) NTFS ==>[System with boot components (obtained from reading drive)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: A7570411)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=931.4 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (MBR Code: Windows XP) (Size: 931.5 GB) (Disk ID: 00023F15)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)

==================== End Of Log ============================


  • 0

#24
Biscuithd

Biscuithd

    Trusted Helper

  • Malware Removal
  • 2,573 posts

Hi there,

 

Well, things are looking much better from some respects in your scans, in other areas, there are still some wonky errors. So, I've got one last fix for the spyware and malware. And, that's what the FRST fix is for. After that, I'd like you to try the Startup Repair. Admittedly it's an odd progress of steps, but it has set to right, quite a few machines. So, give it a try :)  Most important is to run it three times in a row regardless of what information the computer offers. And, do nothing inbetween the Startup Repair steps. Just the Startup Repair. Then let me know how things are working.

 

BTW, did the disk defrag and the other disk exercise eliminate the Disk Failure notification errors you had been getting? If not, let's see if Startup Repair doesn't do some good there and for the other error's I'm seeing in the logs.

 

FRST.gif Fix with Farbar Recovery Scan Tool




icon_exclaim.gif This fix was created for this user for use on that particular machine. icon_exclaim.gif
icon_exclaim.gif Running it on another one may cause damage and render the system unstable. icon_exclaim.gif


Press the WindowsKey.png + R on your keyboard at the same time. Type Notepad and click OK.

  • Copy the entire content of the codebox below and paste into the Notepad document:
    start
    CreateRestorePoint:
    SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001 -> DefaultScope {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.fas...&cc=US&unqvl=55
    SearchScopes: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001 -> ÛŸÆîZ§’2¹Þpv¨IÍá*X(Ž2s(ÛÎÀJºÔÓµ± vË°!×—(ä¼48иpatm6êo^Mp`Ëõ÷_i£w˜¾!„Áû†x¢8€ÙjÀÿþ ´Ñ;áa´[¦†8 º~RÙxœòÜ8'£-)x­ä­ URL =
    BHO: No Name -> {10921475-03CE-4E04-90CE-E2E7EF20C814} ->  No File
    BHO: No Name -> {1CCA9AE6-6294-B0AB-7C5E-B7D269BCAA93} ->  No File
    BHO: No Name -> {BBFF95A7-A7D9-3C6D-671E-4711BCEA14A9} ->  No File
    Toolbar: HKLM-x32 - No Name - {ba00b7b1-0351-477a-b948-23e3ee5a73d4} -  No File
    Toolbar: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001 -> No Name - {4D594333-0076-A76A-76A7-7A786E7484D7} -  No File
    Toolbar: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001 -> No Name - {61539ECD-CC67-4437-A03C-9AACCBD14326} -  No File
    Toolbar: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001 -> No Name - {BA00B7B1-0351-477A-B948-23E3EE5A73D4} -  No File
    Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} -  No File
    Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} -  No File
    FF Plugin: @microsoft.com/GENUINE -> disabled No File
    FF Plugin: @microsoft.com/GENUINE -> disabled No File
    2014-12-27 23:55 - 2014-12-27 23:55 - 00101824 _____ (GreenTree Applications SRL) C:\Users\gamerpc\Downloads\YTDSetup.exe
    EmptyTemp:
    Hosts:
    Reboot:
    end
  • Click File, Save As and type fixlist.txt as the File Name.

Both files, FRST and fixlist.txt have to be in the same location or the fix will not work!

  • Right-click on FRST.gif icon and select RunAsAdmin.jpg Run as Administrator to start the tool.
    (XP users click run after receipt of Windows Security Warning - Open File).
  • Press the Fix button just once and wait.
  • If for some reason the tool needs a restart, please make sure you let the system restart normally. After that let the tool complete its run.
  • When finished FRST will generate a log on the Desktop, called Fixlog.txt.

Please post it to your reply.

Startup Repair

Run this three times in a row and even if it reports that nothing was repaired, it can at time still improve matters.•Click on Start(Windows 7 Orb).
•Click on All Programs >> Accessories
•Right click on Command Prompt and select Run as Administrator.
•Click on Continue in the UAC prompt.
•At the Command Prompt C:\Windows\System32> type in the following exactly:
•cd c:\
•Then depress the Enter/Return key, then type in the following exactly:
•sfc /scannow
•Then depress the Enter/Return key.
Note: This may take awhile to finish. When completed close the Administrator Command Prompt window, via typing Exit then depress the Enter/Return key.


  • 0

#25
Lucky Dearly

Lucky Dearly

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 299 posts

nope, still getting them. I'll post the scan results when I get to them


  • 0

Advertisements


#26
Lucky Dearly

Lucky Dearly

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 299 posts

okay here's the fixlog

 

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 07-01-2015
Ran by gamerpc at 2015-01-12 13:12:30 Run:4
Running from C:\Users\gamerpc\Desktop
Loaded Profile: gamerpc (Available profiles: gamerpc & Alex Valencia & Mario Valencia & Veronica Valencia)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
start
CreateRestorePoint:
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001 -> DefaultScope {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = http://websearch.fas...&cc=US&unqvl=55
SearchScopes: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001 -> ÛŸÆîZ§’2¹Þpv¨IÍá*X(Ž2s(ÛÎÀJºÔÓµ± vË°!×—(ä¼48иpatm6êo^Mp`Ëõ÷_i£w˜¾!„Áû†x¢8€ÙjÀÿþ ´Ñ;áa´[¦†8 º~RÙxœòÜ8'£-)x­ä­ URL =
BHO: No Name -> {10921475-03CE-4E04-90CE-E2E7EF20C814} ->  No File
BHO: No Name -> {1CCA9AE6-6294-B0AB-7C5E-B7D269BCAA93} ->  No File
BHO: No Name -> {BBFF95A7-A7D9-3C6D-671E-4711BCEA14A9} ->  No File
Toolbar: HKLM-x32 - No Name - {ba00b7b1-0351-477a-b948-23e3ee5a73d4} -  No File
Toolbar: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001 -> No Name - {4D594333-0076-A76A-76A7-7A786E7484D7} -  No File
Toolbar: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001 -> No Name - {61539ECD-CC67-4437-A03C-9AACCBD14326} -  No File
Toolbar: HKU\S-1-5-21-1692155839-1707551626-4126777635-1001 -> No Name - {BA00B7B1-0351-477A-B948-23E3EE5A73D4} -  No File
Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} -  No File
Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} -  No File
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @microsoft.com/GENUINE -> disabled No File
2014-12-27 23:55 - 2014-12-27 23:55 - 00101824 _____ (GreenTree Applications SRL) C:\Users\gamerpc\Downloads\YTDSetup.exe
EmptyTemp:
Hosts:
Reboot:
end
*****************

Restore point was successfully created.
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\ÛŸÆîZ§’2¹Þpv¨IÍá*X(Ž2s(ÛÎÀJºÔÓµ± vË°!×—(ä¼48иpatm6êo^Mp`Ëõ÷_i£w˜¾!„Áû†x¢8€ÙjÀÿþ ´Ñ;áa´[¦†8 º~RÙxœòÜ8'£-)x­ä­ => Key not found.
HKCR\CLSID\ÛŸÆîZ§’2¹Þpv¨IÍá*X(Ž2s(ÛÎÀJºÔÓµ± vË°!×—(ä¼48иpatm6êo^Mp`Ëõ÷_i£w˜¾!„Áû†x¢8€ÙjÀÿþ ´Ñ;áa´[¦†8 º~RÙxœòÜ8'£-)x­ä­ => Key not found.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10921475-03CE-4E04-90CE-E2E7EF20C814}" => Key deleted successfully.
HKCR\CLSID\{10921475-03CE-4E04-90CE-E2E7EF20C814} => Key not found.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1CCA9AE6-6294-B0AB-7C5E-B7D269BCAA93}" => Key deleted successfully.
HKCR\CLSID\{1CCA9AE6-6294-B0AB-7C5E-B7D269BCAA93} => Key not found.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BBFF95A7-A7D9-3C6D-671E-4711BCEA14A9}" => Key deleted successfully.
HKCR\CLSID\{BBFF95A7-A7D9-3C6D-671E-4711BCEA14A9} => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{ba00b7b1-0351-477a-b948-23e3ee5a73d4} => value deleted successfully.
HKCR\Wow6432Node\CLSID\{ba00b7b1-0351-477a-b948-23e3ee5a73d4} => Key not found.
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{4D594333-0076-A76A-76A7-7A786E7484D7} => value deleted successfully.
HKCR\CLSID\{4D594333-0076-A76A-76A7-7A786E7484D7} => Key not found.
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{61539ECD-CC67-4437-A03C-9AACCBD14326} => value deleted successfully.
HKCR\CLSID\{61539ECD-CC67-4437-A03C-9AACCBD14326} => Key not found.
HKU\S-1-5-21-1692155839-1707551626-4126777635-1001\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{BA00B7B1-0351-477A-B948-23E3EE5A73D4} => value deleted successfully.
HKCR\CLSID\{BA00B7B1-0351-477A-B948-23E3EE5A73D4} => Key not found.
"HKCR\PROTOCOLS\Handler\livecall" => Key deleted successfully.
"HKCR\CLSID\{828030A1-22C1-4009-854F-8E305202313F}" => Key deleted successfully.
"HKCR\PROTOCOLS\Handler\msnim" => Key deleted successfully.
HKCR\CLSID\{828030A1-22C1-4009-854F-8E305202313F} => Key not found.
"HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE" => Key deleted successfully.
HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE => Key not found.
C:\Users\gamerpc\Downloads\YTDSetup.exe => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
EmptyTemp: => Removed 1013.7 MB temporary data.

The system needed a reboot.

==== End of Fixlog 13:20:45 ====

 

also ran the start up repair scan three times, each time the result was the same "Windows Resource Protection did not find any integrity violations"


  • 0

#27
Biscuithd

Biscuithd

    Trusted Helper

  • Malware Removal
  • 2,573 posts

Ok, I think we've got the majority of the Malware cleaned from the computer, but for completeness I want to be absolutely sure there are no Rogues or Boot exploits, so I'd like you to run a few more scans for me. Also, I want to see if OTL uncovers anything that FRST did not, so there is an OTL scan in here too.

 

Download RogueKiller to your desktop

Quit all running programs

  • For Vista/Seven, right click -> run as administrator, for XP simply run RogueKiller.exe
  • When prompted, type 6 and validate
  • The RKreport.txt shall be generated next to the executable.
  • If the program is blocked, do not hesitate to try several times. If it really does not work (it could happen), rename it to winlogon.exe

Please post the contents of the RKreport.txt in your next Reply.

THEN

Warning This fix is only relevant for this system and no other, using on another computer may cause problems

Be advised that when the fix commences it will shut down all running processes and you may lose the desktop and icons, they will return on reboot

 

Download aswMBR.exe ( 1.8mb ) to your desktop.
Double click the aswMBR.exe to run it Click the "Scan" button to start scan

xaswMBRScan.gif.pagespeed.ic.CC0qinY0K-l

On completion of the scan click save log, save it to your desktop and post in your next reply

xaswMBRsavelog.gif.pagespeed.ic.Mp5XAe5H
51a5d669693dd-icon_OTL.png Scan with OTL

Please download OTL by OldTimer and save the file to your desktop.



  • Right-click on 51a5d669693dd-icon_OTL.png icon and select RunAsAdmin.jpg Run as Administrator to start the tool.
  • Make sure that Scan All Users, LOP check and Purity check are ticked.
  • For 64-bit systems only - make sure that Include 64-bit option is also ticked.
  • Sections Processes, Modules, Services, Drivers, Standard Registry are set to Use Safelist.
  • Section Extra Registry is also set to Use Safelist.
  • Under the Custom Scans/Fixes bar in the box paste in the following:netsvcs

BASESERVICES
%SYSTEMDRIVE%\*.exe
/md5start
services.*
explorer.exe
winlogon.exe
Userinit.exe
svchost.exe
qmgr.dll
winsock.*
/md5stop
dir "%systemdrive%\*" /S /A:L /C
CREATERESTOREPOINT
  • Push Run Scan and wait patiently.
  • Two notepad windows will be opened after this run: OTL.txt (maximized) and Extras.txt (minimized).

Please include the content of both logfiles in your next reply.

 

 


  • 0

#28
Lucky Dearly

Lucky Dearly

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 299 posts

okay here's the RKreport

 

RogueKiller V10.1.2.0 (x64) [Jan  7 2015] by Adlice Software
mail : http://www.adlice.com/contact/
Feedback : http://forum.adlice.com
Website : http://www.adlice.co...es/roguekiller/
Blog : http://www.adlice.com

Operating System : Windows 7 (6.1.7601 Service Pack 1) 64 bits version
Started in : Normal mode
User : gamerpc [Administrator]
Mode : Delete -- Date : 01/13/2015  14:02:57

¤¤¤ Processes : 1 ¤¤¤
[Suspicious.Path] Sound_Blaster_X-Fi_MB_Cleanup.0001(4880) -- C:\Users\gamerpc\AppData\Local\Temp\Sound_Blaster_X-Fi_MB_Cleanup.0001[-] -> Killed [TermProc]

¤¤¤ Registry : 12 ¤¤¤
[Suspicious.Path] (X64) HKEY_USERS\S-1-5-21-1692155839-1707551626-4126777635-1001\Software\Microsoft\Windows\CurrentVersion\Run | GameCompanion : "C:\Users\gamerpc\AppData\Roaming\GameCompanion\GameCompanion.exe" [-] -> ERROR [0]
[Suspicious.Path] (X86) HKEY_USERS\S-1-5-21-1692155839-1707551626-4126777635-1001\Software\Microsoft\Windows\CurrentVersion\Run | GameCompanion : "C:\Users\gamerpc\AppData\Roaming\GameCompanion\GameCompanion.exe"  -> ERROR [2]
[PUM.Proxy] (X64) HKEY_USERS\S-1-5-21-1692155839-1707551626-4126777635-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings | ProxyEnable : 1  -> Replaced (0)
[PUM.Proxy] (X86) HKEY_USERS\S-1-5-21-1692155839-1707551626-4126777635-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings | ProxyEnable : 1  -> Replaced (0)
[PUM.HomePage] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Start Page : www.google.com  -> Replaced (http://go.microsoft..../?LinkId=255141)
[PUM.HomePage] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main | Start Page : www.google.com  -> Replaced (http://go.microsoft..../?LinkId=255141)
[PUM.HomePage] (X64) HKEY_USERS\S-1-5-21-1692155839-1707551626-4126777635-1001\Software\Microsoft\Internet Explorer\Main | Start Page : http://www.wwe.com/  -> Replaced (http://go.microsoft..../?LinkId=255141)
[PUM.HomePage] (X86) HKEY_USERS\S-1-5-21-1692155839-1707551626-4126777635-1001\Software\Microsoft\Internet Explorer\Main | Start Page : http://www.wwe.com/  -> Replaced (http://go.microsoft..../?LinkId=255141)
[PUM.DesktopIcons] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1  -> Replaced (0)
[PUM.DesktopIcons] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {59031a47-3f72-44a7-89c5-5595fe6b30ee} : 1  -> Replaced (0)
[PUM.DesktopIcons] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {20D04FE0-3AEA-1069-A2D8-08002B30309D} : 1  -> Replaced (0)
[PUM.DesktopIcons] (X86) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\HideDesktopIcons\NewStartPanel | {59031a47-3f72-44a7-89c5-5595fe6b30ee} : 1  -> Replaced (0)

¤¤¤ Tasks : 7 ¤¤¤
[Suspicious.Path] \\{274BBCBC-393C-454B-8BB1-11C8A8ECDE8D} -- C:\Users\gamerpc\Desktop\Dolphin-x64\Dolphin.exe -> ERROR [0]
[Suspicious.Path] \\{2D684DF1-4F9A-416D-AE60-C56C5C5FBA9B} -- C:\Users\gamerpc\Desktop\Emulators\Super Nintendo Emulator\Final Fantasy Mystic Quest Editor\MQME.exe -> ERROR [0]
[Suspicious.Path] \\{38371D5D-149E-4184-AEA7-B1EBEB47425D} -- C:\Users\gamerpc\Desktop\Emulators\Super Nintendo Emulator\Final Fantasy Mystic Quest Editor\MQME.exe -> ERROR [0]
[Suspicious.Path] \\{454737B3-2210-4D8F-8514-F0CBD8C7D3B7} -- C:\Users\gamerpc\Desktop\Emulators\Super Nintendo Emulator\Final Fantasy Mystic Quest Editor\MQME.exe -> ERROR [0]
[Suspicious.Path] \\{9D59B7D9-9CA6-4992-8408-69B7A8FE924C} -- C:\Users\gamerpc\Desktop\pcsx2-5932-windows-x86\pcsx2-r5927.exe -> ERROR [0]
[Suspicious.Path] \\{BEC953CE-8B3F-46EA-B536-4CA8F1B7BF3D} -- C:\Users\gamerpc\Desktop\Dolphin-x64\Dolphin.exe -> ERROR [0]
[Suspicious.Path] \\{D56D8570-6764-4DF0-9F0F-EA2F00E51ED2} -- C:\Users\gamerpc\Desktop\Emulators\Super Nintendo Emulator\Final Fantasy Mystic Quest Editor\MQME.exe -> ERROR [0]

¤¤¤ Files : 0 ¤¤¤

¤¤¤ Hosts File : 0 ¤¤¤

¤¤¤ Antirootkit : 0 (Driver: Loaded) ¤¤¤

¤¤¤ Web browsers : 12 ¤¤¤
[IE:Addon] System : Google Toolbar [{2318C2B1-4965-11d4-9B18-009027A5CD4F}] -> Deleted
[FIREFX:Addon] yogn1qzz.default : Adblock Plus [{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}] -> Deleted
[FIREFX:Addon] yogn1qzz.default : YouTube High Definition [{7b1bf0b6-a1b9-42b0-b75d-252036438bdc}] -> Deleted
[FIREFX:Addon] yogn1qzz.default : SNT [[email protected]] -> Deleted
[FIREFX:Addon] yogn1qzz.default : CalcIt [[email protected]] -> Deleted
[FIREFX:Addon] yogn1qzz.default : Advanced SystemCare Surfing Protection [[email protected]] -> Deleted
[FIREFX:Addon] yogn1qzz.default : SNT [[email protected]] -> Deleted
[FIREFX:Addon] yogn1qzz.default : Skype Click to Call [{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}] -> Deleted
[FIREFX:Addon] yogn1qzz.default : Enhanced Steam [[email protected]] -> Deleted
[FIREFX:Addon] yogn1qzz.default : Advanced SystemCare Surfing Protection [[email protected]] -> Deleted
[FIREFX:Addon] yogn1qzz.default : Ads Removal [[email protected]] -> Deleted
[PUM.HomePage][FIREFX:Config] yogn1qzz.default : user_pref("browser.startup.homepage", "www.wwe.com"); -> Replaced (about:home)

¤¤¤ MBR Check : ¤¤¤
+++++ PhysicalDrive0: TOSHIBA DT01ACA100 +++++
--- User ---
[MBR] 28c99d7db8624ec91fd4d71c4ee8826b
[BSP] e72db1b72eee7ffeeeadded65053364f : Windows Vista/7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 100 MB
1 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 206848 | Size: 953767 MB
User = LL1 ... OK
User = LL2 ... OK

+++++ PhysicalDrive1: WD My Passport 0748 USB Device +++++
--- User ---
[MBR] 8752273f349251cedf7c6209cdd11aac
[BSP] 804dbf71ce7b1f906f09fbead2fc17a2 : Windows XP MBR Code
Partition table:
0 - [XXXXXX] NTFS (0x7) [VISIBLE] Offset (sectors): 2048 | Size: 953836 MB
User = LL1 ... OK
Error reading LL2 MBR! ([32] The request is not supported. )

============================================
RKreport_SCN_01132015_134811.log - RKreport_DEL_01132015_134853.log

 

I'll have the rest once I finish the rest of the scans


  • 0

#29
Lucky Dearly

Lucky Dearly

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 299 posts

while i was doing the aswmbr scan I ran into a blue screen of death.

 

I got the error code though. I'll attempt the scan again and hope it doesn't happen again.

 

here's the code

 

0x00000109 (0xA3A039D8A1420676, 0xB3B7465EF3C040F0, 0xFFFF80004552080, 0x0000000000000002D)


  • 0

#30
Biscuithd

Biscuithd

    Trusted Helper

  • Malware Removal
  • 2,573 posts

Well, the Rogue Killer results were quite surprising! I guess I learned something new ;)

 

As for the aswMBR scan giving the BSOD, that makes me quite suspicious of what is lurking about. Did you try a second time? I assume so and likely with similar results...?

 

In any case, let's do a few things. We'll analyze the BSOD, have a look for a TDSS Rootkit as well as a few other infections and then finish with GMER.

 

First,

 

1. Please download the 64-bit version of Bluescreenview from here and save it to your desktop.
2. Right-click on the downloaded file (bluescreenview-x64.zip) and select Extract All. Click the Extract button and a folder will open with the contents that were extracted.

3. Right-click on BlueScreenView.exe and select Run as administrator. If prompted to Allow, please answer yes.

4. Once the program opens and finishes scanning, click on the Edit menu and choose Select All.

5. Then click on the file menu...Save selected Items...and save it to your desktop named BSOD.txt.

6. Open the BSOD.txt file in notepad (you can simply double-click on the file from the desktop to do this) and copy/paste the contents of this in your next reply.

 

Next,

 

Please download the latest version of TDSSKiller from here and save it to your Desktop.

  1. Right-click on TDSSKiller.exe and select Run as administrator. Allow to run if prompted.
  2. Accept the End User License Agreement & KSN Statement
  3. Click on Change parameters.
  4. Another window will appear.
  5. Check "Verify file digital signatures" and "Detect TDLFS file system".
  6. Check "Loaded modules" under the Objects to scan section. You will be prompted to reboot. Please do so.
  7. Once the computer is rebooted, TDDSKiller will open again.
  8. Click the Start Scan button.
  9. The scan should only take a few minutes.
  10. If a suspicious object is detected, the default action will be Skip, click on Continue.
  11. If malicious objects are found, they will show in the Scan results.
  12. Ensure Cure (default) is selected, then click Continue > Reboot now to finish the cleaning process. Note: If Cure is not available, please choose Skip instead, do not choose Delete unless instructed
  13. A report will be created in your root directory, (usually C:\ folder) in the form of "TDSSKiller.[Version]_[Date]_[Time]_log.txt". Please copy and paste the contents of that file here. If there are multiple logs, please post the most current.

Last,

 

gmericon.pngScan with Gmer

This type of scan often produces false positives. At any point do not take any action for any suspicious entries you may see there. Instead post the log to be analyzed.

Please download GMER by Gmer and save the file to your desktop.
It will come as a randomly named file (like a6ge38b4.exe) - that's absolutely normal.

Temporary disable your AntiVirus and AntiSpyware protection - instructions here.
If you are a user of CD emulation software (like Daemon Tools or Alcohol) also disable it for the cleaning process - instructions here.

  • Right-click on randomly named gmericon.png icon and select RunAsAdmin.jpg Run as Administrator to start the tool.
  • It is very important that you do not use your computer while Gmer is running!
  • Gmer will open to the Rootkit/Malware tab and perform an automatic quick scan.
  • If you receive a warning about rootkit activity and are asked to fully scan your system click NO!

When the pre-scan is completed, please do the following:

  • Please check in the Quick scan box.
  • Please uncheck the IAT/EAT and Show All.
  • Click Scan.
  • If you see a rootkit warning window click OK.
  • When the scan is finished, Save the results to your desktop as gmer.log.

Please include the content of this file in your next reply.
Don't forget to re-enable previously switched-off protection software!

icon_idea.gif If you encounter any problems, try running GMER in Safe Mode.
icon_idea.gif If GMER crashes or keeps resulting in a Blue Screen of Death, uncheck Devices on the right side before scanning.


  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP