Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-03-2015
Ran by [bleep] Jones (administrator) on MOTHER[bleep]ERJON on 29-03-2015 13:58:06
Running from C:\Users\[bleep] Jones\Downloads
Loaded Profiles: [bleep] Jones (Available profiles: [bleep] Jones & Administrator)
Platform: Windows 8.1 Pro (X64) OS Language: English (United States)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCService.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(IObit) C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(IObit) C:\Program Files (x86)\IObit\Start Menu 8\StartMenuServices.exe
(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 8\Monitor.exe
(IObit) C:\Program Files (x86)\IObit\Start Menu 8\StartMenu8.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbwe\livecomm.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(IObit) C:\Program Files (x86)\IObit\Start Menu 8\StartMenu_Hook.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe
(IObit) C:\Program Files (x86)\IObit\Start Menu 8\InstallServices.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\avastui.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\avastui.exe
(Logitech©) C:\Program Files (x86)\Logitech\G930\G930.exe
(IObit) C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe
() C:\Program Files (x86)\IObit\Advanced SystemCare 8\RealTimeProtector.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(DT Soft Ltd) C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\dfsvc.exe
(Curse) C:\Users\[bleep] Jones\AppData\Local\Apps\2.0\OVL1M8M5.362\ZG529JZ6.B9H\curs..tion_9e9e83ddf3ed3ead_0005.0001_36a9b62a0ea0a2ec\CurseClient.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [169768 2015-02-13] (Apple Inc.)
HKLM-x32\...\Run: [IObit Malware Fighter] => C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe [1802048 2014-10-13] (IObit)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5511352 2015-03-18] (Avast Software s.r.o.)
HKLM-x32\...\Run: [uTorrent] => C:\Users\[bleep] Jones\AppData\Roaming\uTorrent\uTorrent.exe [1740880 2015-02-27] (BitTorrent Inc.)
HKU\S-1-5-21-444016094-2512616490-1840167777-1001\...\Run: [Advanced SystemCare 8] => C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe [2425632 2014-11-07] (IObit)
HKU\S-1-5-21-444016094-2512616490-1840167777-1001\...\Run: [uTorrent] => C:\Users\[bleep] Jones\AppData\Roaming\uTorrent\uTorrent.exe [1740880 2015-02-27] (BitTorrent Inc.)
HKU\S-1-5-21-444016094-2512616490-1840167777-1001\...\Run: [CCleaner Monitoring] => C:\Program Files (x86)\CCleaner\CCleaner64.exe [6501656 2014-10-23] (Piriform Ltd)
HKU\S-1-5-21-444016094-2512616490-1840167777-1001\...\MountPoints2: {f9ebe1d4-cbf1-11e3-824c-806e6f6e6963} - "D:\setup.exe"
HKU\S-1-5-21-444016094-2512616490-1840167777-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\avastSS.scr [43112 2015-03-13] (Avast Software s.r.o.)
Startup: C:\Users\[bleep] Jones\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CurseClientStartup.ccip ()
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (Avast Software s.r.o.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-444016094-2512616490-1840167777-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://duckduckgo.com/
HKU\S-1-5-21-444016094-2512616490-1840167777-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://t.msn.com/
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-444016094-2512616490-1840167777-1001 -> DefaultScope {C0589868-7986-461D-90A3-6FD0FEFE78B4} URL = https://search.yahoo...p={searchTerms}
SearchScopes: HKU\S-1-5-21-444016094-2512616490-1840167777-1001 -> {C0589868-7986-461D-90A3-6FD0FEFE78B4} URL = https://search.yahoo...p={searchTerms}
BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll [2015-02-27] (IObit)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2010-01-21] (Microsoft Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-03-13] (Avast Software s.r.o.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-01-16] (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2010-01-21] (Microsoft Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-03-13] (Avast Software s.r.o.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-01-16] (Microsoft Corporation)
Toolbar: HKU\S-1-5-21-444016094-2512616490-1840167777-1001 -> No Name - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - No File
ShellExecuteHooks-x32: - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - No File [ ]
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 205.171.2.25
FireFox:
========
FF ProfilePath: C:\Users\[bleep] Jones\AppData\Roaming\Mozilla\Firefox\Profiles\v61utz8k.default
FF SelectedSearchEngine: Yahoo!
FF Homepage: https://duckduckgo.com/
FF Keyword.URL: https://search.yahoo...&type=282369&p=
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_17_0_0_134.dll [2015-03-17] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.31211.0\npctrl.dll [2014-12-11] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\Program Files\Microsoft Office\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_134.dll [2015-03-17] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] ()
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.31211.0\npctrl.dll [2014-12-11] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\Program Files (x86)\Microsoft Office\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\Office14\NPSPWRAP.DLL [2010-01-10] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-02-03] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-02-03] (NVIDIA Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-444016094-2512616490-1840167777-1001: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Users\[bleep] Jones\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll [2014-07-24] (Skype Limited)
FF Plugin HKU\S-1-5-21-444016094-2512616490-1840167777-1001: @talk.google.com/GoogleTalkPlugin -> C:\Users\[bleep] Jones\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll [2015-01-27] (Google)
FF Plugin HKU\S-1-5-21-444016094-2512616490-1840167777-1001: @talk.google.com/O1DPlugin -> C:\Users\[bleep] Jones\AppData\Roaming\Mozilla\plugins\npo1d.dll [2015-01-27] (Google)
FF Plugin HKU\S-1-5-21-444016094-2512616490-1840167777-1001: @tools.google.com/Google Update;version=3 -> C:\Users\[bleep] Jones\AppData\Local\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-04] (Google Inc.)
FF Plugin HKU\S-1-5-21-444016094-2512616490-1840167777-1001: @tools.google.com/Google Update;version=9 -> C:\Users\[bleep] Jones\AppData\Local\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-04] (Google Inc.)
FF user.js: detected! => C:\Users\[bleep] Jones\AppData\Roaming\Mozilla\Firefox\Profiles\v61utz8k.default\user.js [2015-03-02]
FF Plugin ProgramFiles/Appdata: C:\Users\[bleep] Jones\AppData\Roaming\mozilla\plugins\npgoogletalk.dll [2015-01-27] (Google)
FF Plugin ProgramFiles/Appdata: C:\Users\[bleep] Jones\AppData\Roaming\mozilla\plugins\npo1d.dll [2015-01-27] (Google)
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-02-06]
Chrome:
=======
CHR Profile: C:\Users\[bleep] Jones\AppData\Local\Google\Chrome\User Data\Default
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx [2015-03-13]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-03-13]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdvancedSystemCareService8; C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCService.exe [815392 2014-11-04] (IObit)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-01-20] (Apple Inc.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-03-13] (Avast Software s.r.o.)
S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-11-19] (Microsoft Corporation)
S3 game assistant by-pass UAC; C:\Program Files (x86)\IObit\Game Assistant\gatsvc.exe [80728 2014-10-28] (IObit)
S3 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1148560 2014-12-12] (NVIDIA Corporation)
S3 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe [89352 2014-09-15] (Hewlett-Packard Company)
R2 IMFservice; C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe [344896 2014-09-30] (IObit)
R2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2635552 2015-03-05] (IObit)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1701520 2014-12-12] (NVIDIA Corporation)
S3 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19823248 2014-12-12] (NVIDIA Corporation)
S3 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [290520 2014-10-10] (Realtek Semiconductor)
R2 StartMenuService; C:\Program Files (x86)\IObit\Start Menu 8\StartMenuServices.exe [1055008 2015-03-05] (IObit)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-03-14] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-03-14] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29168 2015-03-13] ()
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [28144 2015-03-13] (Avast Software s.r.o.)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [88408 2015-03-13] (Avast Software s.r.o.)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-03-13] (Avast Software s.r.o.)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65736 2015-03-13] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1047320 2015-03-13] (Avast Software s.r.o.)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [441728 2015-03-13] (Avast Software s.r.o.)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [136752 2015-03-13] (Avast Software s.r.o.)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [268640 2015-03-13] ()
S3 cpuz138; No ImagePath
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283200 2014-11-09] (DT Soft Ltd)
S4 FileMonitor; C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\FileMonitor.sys [23048 2013-03-23] (IObit)
R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [26528 2015-01-13] (REALiX)
S3 LADF_BakerCOnly; C:\Windows\system32\DRIVERS\ladfBakerCamd64.sys [410184 2011-03-18] (Logitech)
S3 LADF_BakerROnly; C:\Windows\system32\DRIVERS\ladfBakerRamd64.sys [335688 2011-03-18] (Logitech)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2014-12-12] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [38032 2014-11-22] (NVIDIA Corporation)
S3 RegFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\regfilter.sys [34848 2013-11-19] (IObit.com)
R0 SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [21184 2014-06-04] (IObit)
R3 tapoas; C:\Windows\system32\DRIVERS\tapoas.sys [30720 2012-07-15] (The OpenVPN Project)
U3 TrueSight; C:\Windows\System32\drivers\TrueSight.sys [35064 2015-02-03] ()
U3 TrueSight; C:\Windows\SysWOW64\drivers\TrueSight.sys [29160 2014-07-15] ()
S3 UrlFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\UrlFilter.sys [23016 2013-11-19] (IObit.com)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-03-14] (Microsoft Corporation)
S3 WinDivert1.1; C:\Program Files\KMSpico\WinDivert.sys [35376 2014-12-01] (Basil Projects)
S3 WinRing0_1_2_0; C:\Program Files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [14544 2010-11-01] (OpenLibSys.org)
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-03-29 13:58 - 2015-03-29 13:58 - 00016641 _____ () C:\Users\[bleep] Jones\Downloads\FRST.txt
2015-03-29 13:57 - 2015-03-29 13:58 - 00000000 ___DC () C:\FRST
2015-03-29 13:57 - 2015-03-29 13:57 - 02095616 _____ (Farbar) C:\Users\[bleep] Jones\Downloads\FRST64.exe
2015-03-29 13:55 - 2015-03-29 13:55 - 00000000 ____D () C:\Users\[bleep] Jones\AppData\Roaming\Curse Advertising
2015-03-29 13:54 - 2015-03-29 13:54 - 00000318 _____ () C:\Users\[bleep] Jones\Desktop\Curse Client.appref-ms
2015-03-29 13:54 - 2015-03-29 13:54 - 00000000 ____D () C:\Users\[bleep] Jones\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Curse
2015-03-29 13:53 - 2015-03-29 13:55 - 00000000 ____D () C:\Users\[bleep] Jones\AppData\Local\Deployment
2015-03-29 13:53 - 2015-03-29 13:53 - 00402696 _____ () C:\Users\[bleep] Jones\Downloads\setup.exe
2015-03-29 13:50 - 2015-03-29 13:50 - 00002159 ____C () C:\Users\Public\Desktop\3D Vision Photo Viewer.lnk
2015-03-29 13:49 - 2015-02-03 18:00 - 00608072 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe
2015-03-29 13:48 - 2015-03-29 13:48 - 00000000 ____D () C:\WINDOWS\LastGood
2015-03-29 13:47 - 2015-02-03 21:56 - 31515280 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll
2015-03-29 13:47 - 2015-02-03 21:56 - 24198856 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll
2015-03-29 13:47 - 2015-02-03 21:56 - 22993224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll
2015-03-29 13:47 - 2015-02-03 21:56 - 18634072 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvwgf2umx.dll
2015-03-29 13:47 - 2015-02-03 21:56 - 17559432 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dumx.dll
2015-03-29 13:47 - 2015-02-03 21:56 - 16128576 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvwgf2um.dll
2015-03-29 13:47 - 2015-02-03 21:56 - 15294280 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll
2015-03-29 13:47 - 2015-02-03 21:56 - 14497568 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvd3dum.dll
2015-03-29 13:47 - 2015-02-03 21:56 - 13916280 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll
2015-03-29 13:47 - 2015-02-03 21:56 - 13828032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2015-03-29 13:47 - 2015-02-03 21:56 - 12894024 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys
2015-03-29 13:47 - 2015-02-03 21:56 - 11272240 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll
2015-03-29 13:47 - 2015-02-03 21:56 - 11209192 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2015-03-29 13:47 - 2015-02-03 21:56 - 04244680 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2015-03-29 13:47 - 2015-02-03 21:56 - 03987600 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2015-03-29 13:47 - 2015-02-03 21:56 - 03209736 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2015-03-29 13:47 - 2015-02-03 21:56 - 02823992 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2015-03-29 13:47 - 2015-02-03 21:56 - 00944328 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2015-03-29 13:47 - 2015-02-03 21:56 - 00907464 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2015-03-29 13:47 - 2015-02-03 21:56 - 00902344 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2015-03-29 13:47 - 2015-02-03 21:56 - 00870032 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2015-03-29 13:47 - 2015-02-03 21:56 - 00026155 _____ () C:\WINDOWS\system32\nvinfo.pb
2015-03-29 13:46 - 2015-03-29 13:46 - 00000000 _____ () C:\WINDOWS\setuperr.log
2015-03-29 13:46 - 2015-03-29 13:46 - 00000000 _____ () C:\WINDOWS\setupact.log
2015-03-25 20:23 - 2015-02-03 20:21 - 06782152 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2015-03-25 20:23 - 2015-02-03 20:21 - 00062792 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2015-03-25 20:21 - 2015-03-25 20:21 - 00000000 ____D () C:\WINDOWS\LastGood.Tmp
2015-03-25 13:04 - 2015-03-25 13:09 - 00000000 ____D () C:\Users\[bleep] Jones\Downloads\Let Us Prey (2014) [1080p]
2015-03-25 13:03 - 2015-03-26 02:14 - 00000000 ____D () C:\Users\[bleep] Jones\Downloads\Stretch (2014) [1080p]
2015-03-22 06:29 - 2015-03-29 13:47 - 01141816 _____ () C:\WINDOWS\WindowsUpdate.log
2015-03-22 00:04 - 2015-03-22 00:05 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2015-03-21 10:25 - 2015-03-21 10:25 - 00000000 ___HC () C:\asc_rdflag
2015-03-19 11:12 - 2015-03-19 11:12 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\ProductData
2015-03-17 01:30 - 2015-03-17 03:06 - 00000000 ____D () C:\Users\[bleep] Jones\Downloads\Interstellar (2014) (2014) [1080p]
2015-03-15 04:09 - 2015-03-14 03:35 - 00792032 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2015-03-15 04:09 - 2015-03-14 03:35 - 00178144 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2015-03-15 04:07 - 2015-03-21 10:25 - 85368832 _____ () C:\WINDOWS\system32\config\SOFTWARE.iodefrag
2015-03-15 04:07 - 2015-03-21 10:25 - 00274432 _____ () C:\WINDOWS\system32\config\DEFAULT.iodefrag
2015-03-15 04:07 - 2015-03-21 10:25 - 00065536 _____ () C:\WINDOWS\system32\config\SAM.iodefrag
2015-03-15 04:07 - 2015-03-21 10:25 - 00028672 _____ () C:\WINDOWS\system32\config\SECURITY.iodefrag
2015-03-14 12:09 - 2015-03-14 12:09 - 00233844 _____ () C:\Users\[bleep] Jones\Downloads\CollectMe-v2.7.1.zip
2015-03-14 03:44 - 2015-03-14 03:44 - 03547648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2015-03-14 03:44 - 2015-03-14 03:44 - 00430080 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2015-03-14 03:44 - 2015-03-14 03:44 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2015-03-14 03:44 - 2015-03-14 03:44 - 00131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2015-03-14 03:43 - 2015-03-14 03:43 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll
2015-03-14 03:43 - 2015-03-14 03:43 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPhoto.dll
2015-03-14 03:42 - 2015-03-14 03:42 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2015-03-14 03:41 - 2015-03-14 03:41 - 07472960 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-03-14 03:41 - 2015-03-14 03:41 - 01733440 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2015-03-14 03:41 - 2015-03-14 03:41 - 01498360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2015-03-14 03:40 - 2015-03-14 03:40 - 01763352 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2015-03-14 03:40 - 2015-03-14 03:40 - 01488040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2015-03-14 03:39 - 2015-03-14 03:39 - 04178944 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2015-03-14 03:39 - 2015-03-14 03:39 - 00358912 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2015-03-14 03:39 - 2015-03-14 03:39 - 00301056 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2015-03-14 03:39 - 2015-03-14 03:39 - 00044032 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2015-03-14 03:39 - 2015-03-14 03:39 - 00035840 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2015-03-14 03:38 - 2015-03-14 03:38 - 22291584 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2015-03-14 03:38 - 2015-03-14 03:38 - 19731824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2015-03-14 03:37 - 2015-03-14 03:37 - 01384712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2015-03-14 03:37 - 2015-03-14 03:37 - 01123848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2015-03-14 03:36 - 2015-03-14 03:36 - 25021440 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-03-14 03:36 - 2015-03-14 03:36 - 19720192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-03-14 03:36 - 2015-03-14 03:36 - 14398976 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-03-14 03:36 - 2015-03-14 03:36 - 12827648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-03-14 03:36 - 2015-03-14 03:36 - 06035456 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-03-14 03:36 - 2015-03-14 03:36 - 04300288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2015-03-14 03:36 - 2015-03-14 03:36 - 02886144 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-03-14 03:36 - 2015-03-14 03:36 - 02865152 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2015-03-14 03:36 - 2015-03-14 03:36 - 02358784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-03-14 03:36 - 2015-03-14 03:36 - 02278400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-03-14 03:36 - 2015-03-14 03:36 - 02125824 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2015-03-14 03:36 - 2015-03-14 03:36 - 02052608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2015-03-14 03:36 - 2015-03-14 03:36 - 01888256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2015-03-14 03:36 - 2015-03-14 03:36 - 01548288 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-03-14 03:36 - 2015-03-14 03:36 - 01311232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2015-03-14 03:36 - 2015-03-14 03:36 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2015-03-14 03:36 - 2015-03-14 03:36 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2015-03-14 03:36 - 2015-03-14 03:36 - 00816128 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-03-14 03:36 - 2015-03-14 03:36 - 00814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2015-03-14 03:36 - 2015-03-14 03:36 - 00801280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2015-03-14 03:36 - 2015-03-14 03:36 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2015-03-14 03:36 - 2015-03-14 03:36 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2015-03-14 03:36 - 2015-03-14 03:36 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2015-03-14 03:36 - 2015-03-14 03:36 - 00664064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2015-03-14 03:36 - 2015-03-14 03:36 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-03-14 03:36 - 2015-03-14 03:36 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2015-03-14 03:36 - 2015-03-14 03:36 - 00374272 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2015-03-14 03:36 - 2015-03-14 03:36 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2015-03-14 03:36 - 2015-03-14 03:36 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2015-03-14 03:36 - 2015-03-14 03:36 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2015-03-14 03:36 - 2015-03-14 03:36 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll
2015-03-14 03:36 - 2015-03-14 03:36 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2015-03-14 03:36 - 2015-03-14 03:36 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll
2015-03-14 03:36 - 2015-03-14 03:36 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2015-03-14 03:36 - 2015-03-14 03:36 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll
2015-03-14 03:36 - 2015-03-14 03:36 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2015-03-14 03:36 - 2015-03-14 03:36 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll
2015-03-14 03:35 - 2015-03-14 03:35 - 00097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidbth.sys
2015-03-14 03:34 - 2015-03-14 03:34 - 01090048 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2015-03-14 03:34 - 2015-03-14 03:34 - 00791040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2015-03-14 03:34 - 2015-03-14 03:34 - 00396419 _____ () C:\WINDOWS\system32\ApnDatabase.xml
2015-03-14 03:34 - 2015-03-14 03:34 - 00264000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys
2015-03-14 03:34 - 2015-03-14 03:34 - 00114496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys
2015-03-14 03:34 - 2015-03-14 03:34 - 00044024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys
2015-03-14 03:34 - 2015-03-14 03:34 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\winshfhc.dll
2015-03-14 03:34 - 2015-03-14 03:34 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winshfhc.dll
2015-03-14 03:33 - 2015-03-14 03:33 - 02773504 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2015-03-14 03:33 - 2015-03-14 03:33 - 02501368 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2015-03-14 03:33 - 2015-03-14 03:33 - 02459136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2015-03-14 03:33 - 2015-03-14 03:33 - 02257408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2015-03-14 03:33 - 2015-03-14 03:33 - 02207488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2015-03-14 03:33 - 2015-03-14 03:33 - 01943040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2015-03-14 03:33 - 2015-03-14 03:33 - 01091072 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2015-03-14 03:33 - 2015-03-14 03:33 - 00864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2015-03-14 03:32 - 2015-03-14 03:32 - 04298240 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll
2015-03-14 03:32 - 2015-03-14 03:32 - 03551744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll
2015-03-14 03:32 - 2015-03-14 03:32 - 01488896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc42u.dll
2015-03-14 03:32 - 2015-03-14 03:32 - 01464832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc42.dll
2015-03-14 03:32 - 2015-03-14 03:32 - 01230336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc42u.dll
2015-03-14 03:32 - 2015-03-14 03:32 - 01204224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc42.dll
2015-03-14 03:32 - 2015-03-14 03:32 - 01113920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2015-03-14 03:32 - 2015-03-14 03:32 - 00971776 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2015-03-14 03:32 - 2015-03-14 03:32 - 00811008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2015-03-14 03:32 - 2015-03-14 03:32 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-03-14 03:32 - 2015-03-14 03:32 - 00210944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-03-14 03:32 - 2015-03-14 03:32 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\atlthunk.dll
2015-03-14 03:31 - 2015-03-14 03:31 - 03097600 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2015-03-14 03:31 - 2015-03-14 03:31 - 02484224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2015-03-14 03:31 - 2015-03-14 03:31 - 00933888 _____ (Microsoft Corporation) C:\WINDOWS\system32\calc.exe
2015-03-14 03:31 - 2015-03-14 03:31 - 00816128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\calc.exe
2015-03-14 03:31 - 2015-03-14 03:31 - 00346112 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll
2015-03-14 03:31 - 2015-03-14 03:31 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll
2015-03-14 03:31 - 2015-03-14 03:31 - 00331776 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll
2015-03-14 03:31 - 2015-03-14 03:31 - 00278016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappcfg.dll
2015-03-14 03:31 - 2015-03-14 03:31 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapphost.dll
2015-03-14 03:31 - 2015-03-14 03:31 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapp3hst.dll
2015-03-14 03:31 - 2015-03-14 03:31 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappgnui.dll
2015-03-14 03:31 - 2015-03-14 03:31 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappgnui.dll
2015-03-14 03:31 - 2015-03-14 03:31 - 00046456 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockScreenContentServer.exe
2015-03-14 03:30 - 2015-03-14 03:30 - 00723072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2015-03-14 03:30 - 2015-03-14 03:30 - 00560392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2015-03-14 03:30 - 2015-03-14 03:30 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageContextHandler.dll
2015-03-14 03:30 - 2015-03-14 03:30 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StorageContextHandler.dll
2015-03-14 03:29 - 2015-03-14 03:29 - 00347136 _____ (Microsoft Corporation) C:\WINDOWS\system32\photowiz.dll
2015-03-14 03:29 - 2015-03-14 03:29 - 00290816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\photowiz.dll
2015-03-13 12:59 - 2015-03-13 12:59 - 00003594 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-444016094-2512616490-1840167777-500
2015-03-13 12:55 - 2015-03-13 12:55 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\AVAST Software
2015-03-13 12:54 - 2015-03-13 12:54 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\DAEMON Tools Pro
2015-03-13 12:54 - 2015-03-13 12:54 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\Apple Computer
2015-03-13 12:54 - 2015-03-13 12:54 - 00000000 ____D () C:\Users\Administrator\AppData\Local\NVIDIA Corporation
2015-03-13 12:53 - 2015-03-13 12:59 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\IObit
2015-03-13 12:53 - 2015-03-13 12:55 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Packages
2015-03-13 12:53 - 2015-03-13 12:53 - 00001442 _____ () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-03-13 12:53 - 2015-03-13 12:53 - 00000020 ___SH () C:\Users\Administrator\ntuser.ini
2015-03-13 12:53 - 2015-03-13 12:53 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\Adobe
2015-03-13 12:53 - 2015-03-13 12:53 - 00000000 ____D () C:\Users\Administrator\AppData\Local\NVIDIA
2015-03-13 12:53 - 2015-03-13 12:53 - 00000000 ____D () C:\Users\Administrator
2015-03-13 12:53 - 2014-12-30 16:09 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\Macromedia
2015-03-13 12:53 - 2014-11-19 05:37 - 00000000 ___RD () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-13 12:53 - 2014-11-19 05:37 - 00000000 ___RD () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-03-13 12:53 - 2014-11-19 05:37 - 00000000 ___RD () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-03-13 12:53 - 2014-02-21 22:37 - 00000369 _____ () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2015-03-13 12:53 - 2014-02-21 22:37 - 00000369 _____ () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2015-03-13 12:53 - 2013-08-22 09:36 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-03-13 12:23 - 2015-03-13 12:23 - 00000993 _____ () C:\WINDOWS\unins000.dat
2015-03-13 12:23 - 2015-03-13 12:22 - 01180529 _____ () C:\WINDOWS\unins000.exe
2015-03-13 12:16 - 2015-03-17 11:44 - 00004182 _____ () C:\WINDOWS\System32\Tasks\avast! Emergency Update
2015-03-13 12:16 - 2015-03-13 12:16 - 01047320 _____ (Avast Software s.r.o.) C:\WINDOWS\system32\Drivers\aswSnx.sys
2015-03-13 12:16 - 2015-03-13 12:16 - 00441728 _____ (Avast Software s.r.o.) C:\WINDOWS\system32\Drivers\aswSP.sys
2015-03-13 12:16 - 2015-03-13 12:16 - 00364472 _____ (Avast Software s.r.o.) C:\WINDOWS\system32\aswBoot.exe
2015-03-13 12:16 - 2015-03-13 12:16 - 00268640 _____ () C:\WINDOWS\system32\Drivers\aswVmm.sys
2015-03-13 12:16 - 2015-03-13 12:16 - 00136752 _____ (Avast Software s.r.o.) C:\WINDOWS\system32\Drivers\aswStm.sys
2015-03-13 12:16 - 2015-03-13 12:16 - 00093528 _____ (Avast Software s.r.o.) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2015-03-13 12:16 - 2015-03-13 12:16 - 00088408 _____ (Avast Software s.r.o.) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2015-03-13 12:16 - 2015-03-13 12:16 - 00065736 _____ () C:\WINDOWS\system32\Drivers\aswRvrt.sys
2015-03-13 12:16 - 2015-03-13 12:16 - 00043112 _____ (Avast Software s.r.o.) C:\WINDOWS\avastSS.scr
2015-03-13 12:16 - 2015-03-13 12:16 - 00029168 _____ () C:\WINDOWS\system32\Drivers\aswHwid.sys
2015-03-13 12:16 - 2015-03-13 12:16 - 00028144 _____ (Avast Software s.r.o.) C:\WINDOWS\system32\Drivers\aswKbd.sys
2015-03-13 11:37 - 2015-03-13 11:46 - 00000000 ____D () C:\Users\[bleep] Jones\Downloads\avast! Pro Antivirus+Internet Security+Premier 2015 10.2.2214 incl Zenix Lic -=TEAM OS=-{HKRG}
2015-03-13 04:20 - 2015-03-13 04:28 - 00000000 ____D () C:\Users\[bleep] Jones\Downloads\Into the Woods (2014) [1080p]
2015-03-13 04:18 - 2015-03-13 06:15 - 00000000 ____D () C:\Users\[bleep] Jones\Downloads\Exodus Gods and Kings (2014) [1080p]
2015-03-13 04:17 - 2015-03-13 04:22 - 00000000 ____D () C:\Users\[bleep] Jones\Downloads\A Bug's Life (1998) [1080p]
2015-03-11 23:24 - 2015-03-11 23:24 - 00138199 _____ () C:\Users\[bleep] Jones\Downloads\ThogarHelper_v1.6.zip
2015-03-10 11:33 - 2015-03-10 11:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Start Menu 8
2015-03-10 10:09 - 2015-03-10 10:11 - 09389104 _____ (IObit ) C:\Users\[bleep] Jones\Downloads\startmenu-setup.exe
2015-03-08 20:45 - 2015-03-08 20:45 - 00000000 ____H () C:\Users\[bleep] Jones\Documents\Default.rdp
2015-03-08 20:40 - 2015-03-08 21:00 - 00000000 ____D () C:\Users\[bleep] Jones\Downloads\Blood In Blood Out (1993) DivXNL-Team inc NL Subs
2015-03-08 14:10 - 2015-03-08 14:41 - 00000000 ____D () C:\Users\[bleep] Jones\Downloads\Brave (2012)
2015-03-08 00:42 - 2015-03-08 11:49 - 00000000 ____D () C:\Users\[bleep] Jones\Downloads\American Me 1992 DvDrip[Eng]-greenbud1969
2015-03-07 16:13 - 2015-03-07 16:13 - 00006148 ___HC () C:\Users\Public\Documents\.DS_Store
2015-03-07 16:10 - 2015-03-07 16:13 - 00010244 ____H () C:\Users\Public\.DS_Store
2015-03-07 15:04 - 2015-03-07 16:10 - 00000000 ____D () C:\Users\Public\Bones
2015-03-06 00:22 - 2015-03-06 00:23 - 00000000 ____D () C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
2015-03-04 21:53 - 2015-03-04 21:53 - 00001288 _____ () C:\Users\[bleep] Jones\Desktop\Smart RAM.lnk
2015-03-04 18:27 - 2015-03-04 18:27 - 00513488 _____ () C:\WINDOWS\SysWOW64\locale.nls
2015-03-04 18:27 - 2015-03-04 18:27 - 00513488 _____ () C:\WINDOWS\system32\locale.nls
2015-03-04 12:25 - 2015-03-04 12:42 - 00000000 ____D () C:\Users\[bleep] Jones\Downloads\The.Hobbit.Battle.Of.The.Five.Armies.2014.1080p.WEBRip.x264-tomcat12[ETRG]
2015-03-02 21:47 - 2015-03-02 22:37 - 00000000 ____D () C:\Users\[bleep] Jones\Downloads\Foxcatcher (2014)
2015-03-01 11:18 - 2015-03-01 11:22 - 00003858 _____ () C:\WINDOWS\System32\Tasks\AutoKMS
2015-02-27 14:59 - 2015-03-06 00:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2015-02-27 14:59 - 2015-02-27 14:59 - 00000000 ____D () C:\Program Files\iPod
2015-02-27 14:50 - 2015-02-27 14:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
2015-02-27 12:46 - 2015-02-27 12:46 - 00000917 _____ () C:\Users\[bleep] Jones\Desktop\µTorrent.lnk
2015-02-27 12:46 - 2015-02-27 12:46 - 00000897 _____ () C:\Users\[bleep] Jones\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk
2015-02-27 12:02 - 2015-02-27 12:02 - 00003192 _____ () C:\WINDOWS\System32\Tasks\ASC8_PerformanceMonitor
2015-02-27 11:59 - 2015-03-21 02:48 - 00000300 _____ () C:\WINDOWS\Tasks\ASC8_SkipUac_Mother[bleep]er Jones.job
2015-02-27 11:59 - 2015-02-27 11:59 - 00002426 _____ () C:\WINDOWS\System32\Tasks\ASC8_SkipUac_Mother[bleep]er Jones
2015-02-27 11:59 - 2015-02-27 11:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare 8
2015-02-27 11:42 - 2015-02-27 11:42 - 00000000 ____D () C:\ProgramData\{BAF091CA-86C4-4627-ADA1-897E2621C1B0}
2015-02-27 11:31 - 2015-02-27 11:33 - 00000000 ____D () C:\Users\[bleep] Jones\Downloads\IObit Advanced SystemCare PRO 8.0.3.588 Final Incl. Crack [ATOM]
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-03-29 13:55 - 2014-05-19 19:30 - 00000000 ___DC () C:\Program Files (x86)\World of Warcraft
2015-03-29 13:55 - 2014-04-24 15:18 - 00003596 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-444016094-2512616490-1840167777-1001
2015-03-29 13:53 - 2014-05-19 19:53 - 00000000 ___DC () C:\Users\[bleep] Jones\AppData\Local\._LiveCode_
2015-03-29 13:50 - 2014-04-24 16:04 - 00000000 ___DC () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2015-03-29 13:50 - 2013-12-10 11:07 - 00000000 ___DC () C:\temp
2015-03-29 13:49 - 2014-11-10 00:24 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-03-29 13:49 - 2014-04-24 15:19 - 00000000 ___DC () C:\Program Files (x86)\NVIDIA Corporation
2015-03-29 13:48 - 2014-05-19 19:30 - 00000000 ___DC () C:\Users\[bleep] Jones\AppData\Local\Battle.net
2015-03-29 13:02 - 2013-08-22 09:36 - 00000000 ____D () C:\WINDOWS\system32\sru
2015-03-29 10:56 - 2014-11-10 00:45 - 00863592 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2015-03-29 10:53 - 2015-01-13 12:20 - 00002880 _____ () C:\WINDOWS\System32\Tasks\Driver Booster SkipUAC ([bleep] Jones)
2015-03-29 10:52 - 2014-11-12 12:05 - 00000000 ___DO () C:\Users\[bleep] Jones\OneDrive
2015-03-29 10:51 - 2013-08-22 08:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2015-03-29 03:22 - 2013-08-22 07:25 - 00524288 ___SH () C:\WINDOWS\system32\config\BBI
2015-03-28 10:46 - 2014-04-27 12:39 - 00000000 ___DC () C:\Program Files (x86)\Steam
2015-03-27 00:03 - 2014-04-24 15:34 - 00000000 ____D () C:\Users\[bleep] Jones\AppData\Roaming\uTorrent
2015-03-26 00:32 - 2014-11-23 14:35 - 00000000 ____D () C:\Users\[bleep] Jones\AppData\Roaming\Mumble
2015-03-26 00:23 - 2014-05-03 10:48 - 00000000 ___DC () C:\Users\[bleep] Jones\AppData\Local\CrashDumps
2015-03-24 14:35 - 2015-02-03 12:25 - 00000000 ____D () C:\Users\[bleep] Jones\Desktop\memes
2015-03-24 14:25 - 2013-08-22 09:36 - 00000000 ____D () C:\WINDOWS\AppReadiness
2015-03-24 14:20 - 2014-04-24 15:13 - 00000000 ____D () C:\Users\[bleep] Jones\AppData\Local\Packages
2015-03-24 01:46 - 2014-11-10 00:27 - 00000000 ____D () C:\Users\[bleep] Jones
2015-03-23 23:07 - 2014-04-24 15:42 - 00000000 ___DC () C:\ProgramData\ProductData
2015-03-22 20:06 - 2014-12-02 16:14 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2015-03-22 03:23 - 2014-07-14 11:46 - 00000000 ___DC () C:\Program Files (x86)\CCleaner
2015-03-21 10:25 - 2014-11-13 13:27 - 04943872 _____ () C:\WINDOWS\system32\config\DRIVERS.iodefrag.bak
2015-03-21 10:25 - 2014-11-10 01:24 - 85368832 _____ () C:\WINDOWS\system32\config\SOFTWARE.iodefrag.bak
2015-03-21 10:25 - 2014-11-10 01:24 - 00274432 _____ () C:\WINDOWS\system32\config\DEFAULT.iodefrag.bak
2015-03-21 10:25 - 2014-11-10 01:24 - 00065536 _____ () C:\WINDOWS\system32\config\SAM.iodefrag.bak
2015-03-21 10:25 - 2014-11-10 01:24 - 00028672 _____ () C:\WINDOWS\system32\config\SECURITY.iodefrag.bak
2015-03-20 22:31 - 2014-05-19 19:29 - 00000000 ___DC () C:\Program Files (x86)\Battle.net
2015-03-20 11:39 - 2013-08-22 09:36 - 00000000 ____D () C:\WINDOWS\system32\NDF
2015-03-18 11:30 - 2014-07-18 21:37 - 00000830 ____C () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2015-03-17 19:11 - 2014-07-18 21:37 - 00003720 ____C () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2015-03-15 04:09 - 2013-08-22 08:44 - 00486336 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2015-03-15 03:49 - 2013-08-22 09:36 - 00000000 ___RD () C:\WINDOWS\ToastData
2015-03-15 03:49 - 2013-08-22 09:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-15 03:49 - 2013-08-22 09:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-03-15 03:49 - 2013-08-22 09:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-03-15 03:49 - 2013-08-22 09:36 - 00000000 ____D () C:\WINDOWS\WinStore
2015-03-15 03:49 - 2013-08-22 09:36 - 00000000 ____D () C:\Program Files\Windows Defender
2015-03-15 03:49 - 2013-08-22 09:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2015-03-15 03:48 - 2013-08-22 09:36 - 00000000 ____D () C:\WINDOWS\PolicyDefinitions
2015-03-14 03:45 - 2013-08-22 09:20 - 00000000 ____D () C:\WINDOWS\CbsTemp
2015-03-13 12:24 - 2015-02-06 17:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2015-03-10 11:33 - 2014-04-24 15:41 - 00000000 ____D () C:\Users\[bleep] Jones\AppData\Roaming\IObit
2015-03-08 17:54 - 2014-12-01 17:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico
2015-03-08 15:37 - 2014-12-01 17:20 - 00000000 ____D () C:\Program Files\KMSpico
2015-03-06 00:22 - 2015-01-29 21:49 - 00000000 ____D () C:\Program Files\iTunes
2015-03-06 00:22 - 2014-05-05 18:02 - 00000000 ___DC () C:\Program Files\Common Files\Apple
2015-03-04 18:15 - 2014-12-01 18:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2015-03-04 18:15 - 2014-12-01 18:18 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2015-03-04 18:15 - 2014-12-01 18:18 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2015-03-04 12:41 - 2015-01-06 15:30 - 742194356 _____ () C:\Users\[bleep] Jones\Downloads\Enter.the.Void.2009.BluRay.REMUX.1080p.mkv
2015-03-03 16:11 - 2015-01-09 15:03 - 00000000 ____D () C:\Users\[bleep] Jones\Downloads\Mark Ronson - Uptown Funk (feat. Bruno Mars) - Single
2015-03-03 10:09 - 2014-04-24 15:41 - 00000000 ___DC () C:\Program Files (x86)\IObit
2015-03-01 16:27 - 2014-04-24 15:42 - 00000000 ____D () C:\Users\[bleep] Jones\AppData\Roaming\Apple Computer
2015-03-01 11:22 - 2014-08-05 18:42 - 00003690 ____C () C:\WINDOWS\System32\Tasks\HPCustParticipation HP Deskjet 3050 J610 series
2015-03-01 11:19 - 2015-02-03 11:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CleanUp!
2015-02-27 14:59 - 2014-10-18 13:10 - 00000000 ___DC () C:\Program Files (x86)\iTunes
2015-02-27 12:38 - 2014-09-30 22:15 - 00001012 ____C () C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-444016094-2512616490-1840167777-1001UA.job
2015-02-27 12:38 - 2014-09-30 22:15 - 00000990 ____C () C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-444016094-2512616490-1840167777-1001Core.job
2015-02-27 12:27 - 2014-12-01 17:20 - 00003826 _____ () C:\WINDOWS\System32\Tasks\AutoPico Daily Restart
2015-02-27 12:27 - 2014-09-30 22:15 - 00003992 ____C () C:\WINDOWS\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-444016094-2512616490-1840167777-1001UA
2015-02-27 12:27 - 2014-09-30 22:15 - 00003642 ____C () C:\WINDOWS\System32\Tasks\FacebookUpdateTaskUserS-1-5-21-444016094-2512616490-1840167777-1001Core
2015-02-27 12:27 - 2014-07-12 02:54 - 00003188 _____ () C:\WINDOWS\System32\Tasks\Game_Booster_AutoUpdate
2015-02-27 11:42 - 2014-04-24 15:41 - 00000000 ___DC () C:\ProgramData\IObit
2015-02-27 02:15 - 2015-02-26 21:59 - 00000000 ____D () C:\Users\[bleep] Jones\Downloads\American Heist (2014)
==================== Files in the root of some directories =======
2015-02-04 19:27 - 2015-02-04 19:27 - 0000017 _____ () C:\Users\[bleep] Jones\AppData\Local\resmon.resmoncfg
2014-12-01 18:06 - 2014-12-01 18:06 - 0480144 _____ () C:\ProgramData\1417478495.bdinstall.bin
2014-12-02 16:18 - 2014-12-02 16:18 - 0487885 _____ () C:\ProgramData\1417558607.bdinstall.bin
2014-12-02 16:35 - 2014-12-02 16:35 - 0265645 _____ () C:\ProgramData\1417559654.bdinstall.bin
2014-08-05 18:41 - 2014-08-05 18:41 - 0000057 ____C () C:\ProgramData\Ament.ini
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-01-29 11:18
==================== End Of Log ============================
Edited by Ategenos, 29 March 2015 - 02:04 PM.