Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

slow laptop windows 8.1 corrupt files


  • Please log in to reply

#1
chsg

chsg

    Member

  • Member
  • PipPip
  • 12 posts
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:21-06-2015 01
Ran by andre_000 (administrator) on COOCOONUT on 22-06-2015 11:13:26
Running from C:\Users\andre_000\Desktop
Loaded Profiles: andre_000 (Available Profiles: A & andre_000)
Platform: Windows 8.1 (X64) OS Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Windows ® Win 7 DDK provider) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\AdminService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(Acer Incorporate) C:\Program Files\Gateway\Gateway Launch Manager\LMSvc.exe
(Soluto) C:\Program Files\Soluto\SolutoLauncherService.exe
(Soluto) C:\Program Files\Soluto\SolutoService.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Soluto) C:\Program Files\Soluto\Soluto.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDTouch.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Acer Incorporate) C:\Program Files\Gateway\Gateway Quick Access\QASvc.exe
(Acer Incorporate) C:\Program Files\Gateway\Gateway Quick Access\RMSvc.exe
(Acer Incorporate) C:\Program Files\Gateway\Gateway Quick Access\QAEvent.exe
(Acer Incorporate) C:\Program Files\Gateway\Gateway Quick Access\QAMsg.exe
(Acer Incorporate) C:\Program Files\Gateway\Gateway Quick Access\QuickAccess.exe
(Acer Incorporate) C:\Program Files\Gateway\Gateway Launch Manager\LMEvent.exe
(Acer Incorporate) C:\Program Files\Gateway\Gateway Launch Manager\LMTray.exe
(Acer Incorporated) C:\Program Files\Gateway\Gateway Power Management\ePowerTray.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Qualcomm®Atheros®) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
() C:\Program Files (x86)\Shutterfly\Studio\Bin\SFlyStudio.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
() C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe
(Shutterfly, Inc.) C:\Program Files (x86)\ThisLife Uploader\ThisLife.Uploader.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.27.5\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.27.5\GoogleCrashHandler64.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(WildTangent) C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Acer Incorporated) C:\Program Files\Gateway\Gateway Power Management\ePowerSvc.exe
(Acer Incorporated) C:\Program Files\Gateway\Gateway Power Management\ePowerEvent.exe
(Acer Incorporated) C:\Program Files\Gateway\Gateway Recovery Management\Notification\Notification.exe
(Microsoft Corporation) C:\Windows\System32\cmd.exe
(Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\winword.exe
(Microsoft Corporation) C:\Windows\splwow64.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Apple Inc.) C:\Program Files\iTunes\iTunes.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceHelper.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\distnoted.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Farbar) C:\Users\andre_000\Desktop\FRST64 (1).exe
 
 
==================== Registry (Whitelisted) ==================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2890056 2013-09-05] (ELAN Microelectronics Corp.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13647576 2013-08-27] (Realtek Semiconductor)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [169768 2015-04-07] (Apple Inc.)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766208 2013-09-25] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [60712 2015-03-20] (Apple Inc.)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-10-02] (Apple Inc.)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1022152 2014-12-19] (Adobe Systems Incorporated)
HKLM\...\Winlogon: [Userinit] c:\windows\system32\userinit.exe,c:\program files\soluto\soluto.exe /userinit,
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [132736 2013-09-07] (Qualcomm®Atheros®)
HKU\S-1-5-21-695059093-3351157946-1085184340-1004\...\Run: [AcerCloud] => "C:\Program Files (x86)\Acer\Acer Portal\acpanel_win.exe" startup
HKU\S-1-5-21-695059093-3351157946-1085184340-1004\...\Run: [GoogleDriveSync] => C:\Program Files (x86)\Google\Drive\googledrivesync.exe [21969480 2015-05-19] (Google)
HKU\S-1-5-21-695059093-3351157946-1085184340-1004\...\Run: [msnmsgr] => C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe [4272840 2014-03-31] (Microsoft Corporation)
HKU\S-1-5-21-695059093-3351157946-1085184340-1004\...\Run: [Amazon Music] => C:\Users\andre_000\AppData\Local\Amazon Music\Amazon Music Helper.exe [6277952 2014-11-18] ()
HKU\S-1-5-21-695059093-3351157946-1085184340-1004\...\Run: [ShutterflyStudio] => C:\Program Files (x86)\Shutterfly\Studio\BIN\SFlyStudio.exe [2500096 2008-05-06] ()
HKU\S-1-5-21-695059093-3351157946-1085184340-1004\...\Run: [GoogleChromeAutoLaunch_1B23D0B55D547BD6CC10D23DC469BC7A] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [813896 2015-06-05] (Google Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk [2014-09-09]
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ThisLife Uploader.lnk [2015-06-07]
ShortcutTarget: ThisLife Uploader.lnk -> C:\Program Files (x86)\ThisLife Uploader\ThisLife.Uploader.exe (Shutterfly, Inc.)
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
HKU\S-1-5-21-695059093-3351157946-1085184340-1004\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft...er=6&ar=msnhome
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-695059093-3351157946-1085184340-1004 -> DefaultScope {89687BC4-CE0C-485C-A2D9-403629D59297} URL = 
SearchScopes: HKU\S-1-5-21-695059093-3351157946-1085184340-1004 -> {89687BC4-CE0C-485C-A2D9-403629D59297} URL = 
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2015-03-10] (Microsoft Corporation)
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-03-03] (Google Inc.)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2015-04-14] (Microsoft Corporation)
BHO-x32: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll [2014-04-09] (McAfee, Inc.)
BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-03] (Google Inc.)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-03-03] (Google Inc.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-03-03] (Google Inc.)
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-02-03] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.254
 
FireFox:
========
FF ProfilePath: C:\Users\andre_000\AppData\Roaming\Mozilla\Firefox\Profiles\ksiihfcm.default-1414276503640
FF DefaultSearchEngine: Google
FF DefaultSearchEngine.US: Google
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_17_0_0_188.dll [2015-06-09] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-16] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_188.dll [2015-06-09] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2015-05-21] (Google)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2014-02-08] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-16] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-16] (Google Inc.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2013-08-05] ()
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-05-01] (Adobe Systems Inc.)
FF HKU\S-1-5-21-695059093-3351157946-1085184340-1004\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: McAfee Security Scan Plus - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04]
 
Chrome: 
=======
CHR Profile: C:\Users\andre_000\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\andre_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-04-13]
CHR Extension: (Google Docs) - C:\Users\andre_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-04-13]
CHR Extension: (Google Drive) - C:\Users\andre_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-04-13]
CHR Extension: (MindMeister) - C:\Users\andre_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\bdehgigffdnkjpaindemkaniebfaepjm [2015-04-13]
CHR Extension: (YouTube) - C:\Users\andre_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-04-13]
CHR Extension: (Add to Amazon Wish List) - C:\Users\andre_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ciagpekplgpbepdgggflgmahnjgiaced [2015-04-13]
CHR Extension: (Weebly - Website Builder) - C:\Users\andre_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\cnocophcbjfiimmnhlhleaooedeheifb [2015-04-13]
CHR Extension: (Google Search) - C:\Users\andre_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-04-13]
CHR Extension: (PicMonkey Extension) - C:\Users\andre_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhipmoghimfdldnocmopeoanjmoolofl [2015-04-14]
CHR Extension: (Google Webspam Report (by Google)) - C:\Users\andre_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\efinmbicabejjhjafeidhfbojhnfiepj [2015-04-13]
CHR Extension: (Pixlr-o-matic) - C:\Users\andre_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehcibdjmpjlekgjhepbfmenfppliikcj [2015-04-19]
CHR Extension: (Google Calendar) - C:\Users\andre_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2015-04-13]
CHR Extension: (Google Sheets) - C:\Users\andre_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-04-13]
CHR Extension: (PicMonkey) - C:\Users\andre_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\fgdgokchhicmaiacmgegjnppjkgogdhm [2015-04-14]
CHR Extension: (Weebly Dashboard Extension) - C:\Users\andre_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkhpeihpgdipchpfmddkfcigllaaiaki [2015-04-13]
CHR Extension: (AdBlock) - C:\Users\andre_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-04-13]
CHR Extension: (Planner 5D) - C:\Users\andre_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gjfkgdpkecnmfcgfpfibpcnkeakahllc [2015-04-13]
CHR Extension: (Photo To Cartoon) - C:\Users\andre_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gjhebbchmmcahggccpfomfdilnhhjedg [2015-04-19]
CHR Extension: (Save to Google Drive) - C:\Users\andre_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmbmikajjgmnabiglmofipeabaddhgne [2015-04-13]
CHR Extension: (Pin It Button) - C:\Users\andre_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gpdjojdkbbmdfjfahjcgigfpmkopogic [2015-04-21]
CHR Extension: (PageSpeed Insights (by Google)) - C:\Users\andre_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gplegfbjlmmehdoakndmohflojccocli [2015-04-13]
CHR Extension: (Recipes with Drive) - C:\Users\andre_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gppahobhmgfbhbbchefhklbmkjpobjbg [2015-04-19]
CHR Extension: (Pixlr Express) - C:\Users\andre_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\hojmjpdlmjopaeginhldhiokeidchjid [2015-04-13]
CHR Extension: (Kindle Cloud Reader) - C:\Users\andre_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\icdipabjmbhpdkjaihfjoikhjjeneebd [2015-04-13]
CHR Extension: (Pixlr Editor) - C:\Users\andre_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\icmaknaampgiegkcjlimdiidlhopknpk [2015-04-19]
CHR Extension: (Lunapic Photo Editor) - C:\Users\andre_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifimmnanlabnljjnaegjmgnelmdmjabn [2015-04-29]
CHR Extension: (Pixect) - C:\Users\andre_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\jgdeoagndhabdnoenpdcagbkkmjeibmh [2015-04-29]
CHR Extension: (Spreadsheet Calculator) - C:\Users\andre_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\jgfinkdekjifhglflifjjjeandcahkbp [2015-04-13]
CHR Extension: (Journey (Journal, Diary)) - C:\Users\andre_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlncjaehedpdoinepaejmlpbmdkgmpog [2015-04-19]
CHR Extension: (Google Analytics Debugger) - C:\Users\andre_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\jnkmfdileelhofjcijamephohjechhna [2015-04-13]
CHR Extension: (Shareaholic for Pinterest) - C:\Users\andre_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\kfjkehmceppcpjoaoegdmffmkdhiegmc [2015-04-13]
CHR Extension: (Wave Accounting) - C:\Users\andre_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\knpkfcpnjfbniadmfchjpcigfhookhaa [2015-04-13]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\andre_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-04-13]
CHR Extension: (Google Wallet) - C:\Users\andre_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-04-13]
CHR Extension: (WeVideo - Video Editor and Maker) - C:\Users\andre_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\okgjbfikepgflmlelgfgecmgjnmnmnnb [2015-04-14]
CHR Extension: (Gmail) - C:\Users\andre_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-04-13]
CHR Extension: (RSS Feed Reader) - C:\Users\andre_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnjaodmkngahhkoihejjehlcdlnohgmp [2015-04-13]
 
==================== Services (Whitelisted) =================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-01-20] (Apple Inc.)
R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [312448 2013-09-07] (Windows ® Win 7 DDK provider) [File not signed]
S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-10-28] (Microsoft Corporation)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2736824 2015-04-07] (Microsoft Corporation)
R2 ETDService; C:\Program Files\Elantech\ETDService.exe [101192 2013-09-06] (ELAN Microelectronics Corp.)
R2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [227904 2014-01-17] (WildTangent)
R2 LMSvc; C:\Program Files\Gateway\Gateway Launch Manager\LMSvc.exe [457768 2013-08-02] (Acer Incorporate)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1080120 2015-04-14] (Malwarebytes Corporation)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [289256 2014-04-09] (McAfee, Inc.)
R3 QASvc; C:\Program Files\Gateway\Gateway Quick Access\QASvc.exe [457768 2013-08-02] (Acer Incorporate)
R3 RMSvc; C:\Program Files\Gateway\Gateway Quick Access\RMSvc.exe [448040 2013-08-02] (Acer Incorporate)
R2 SolutoLauncherService; C:\Program Files\Soluto\SolutoLauncherService.exe [222168 2013-01-29] (Soluto)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-03] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-03] (Microsoft Corporation)
 
==================== Drivers (Whitelisted) ====================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R2 APXACC; C:\Windows\system32\DRIVERS\appexDrv.sys [219360 2013-04-18] (AppEx Networks Corporation)
R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [4282904 2015-05-11] (Qualcomm Atheros Communications, Inc.)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWB6.sys [138240 2013-06-23] (Advanced Micro Devices)
S3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2013-09-07] (Qualcomm Atheros)
S3 BthLEEnum; C:\Windows\System32\drivers\BthLEEnum.sys [226304 2013-12-04] (Microsoft Corporation)
S3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [151968 2012-10-19] (Windows ® Win 7 DDK provider)
S3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [27040 2012-10-19] (Windows ® Win 7 DDK provider)
S3 hitmanpro37; C:\Windows\system32\drivers\hitmanpro37.sys [43664 2014-12-05] ()
R3 LMDriver; C:\Windows\System32\drivers\LMDriver.sys [21360 2013-07-17] (Acer Incorporated)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-04-14] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64216 2015-04-14] (Malwarebytes Corporation)
R3 RadioShim; C:\Windows\System32\drivers\RadioShim.sys [14680 2013-07-17] (Acer Incorporated)
U3 TrueSight; C:\Windows\System32\drivers\TrueSight.sys [35064 2015-06-06] ()
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-03] (Microsoft Corporation)
R3 cpuz136; \??\C:\Windows\TEMP\cpuz136\cpuz136_x64.sys [X]
 
==================== NetSvcs (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== One Month Created files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2015-06-22 11:13 - 2015-06-22 11:14 - 00023127 _____ C:\Users\andre_000\Desktop\FRST.txt
2015-06-22 11:07 - 2015-06-22 11:07 - 02109952 _____ (Farbar) C:\Users\andre_000\Desktop\FRST64 (1).exe
2015-06-22 11:02 - 2015-06-22 11:03 - 02109952 _____ (Farbar) C:\Users\andre_000\Desktop\FRST64.exe
2015-06-22 10:58 - 2015-06-22 10:58 - 02109952 _____ (Farbar) C:\Users\andre_000\Downloads\FRST64 (5).exe
2015-06-15 16:56 - 2015-06-15 16:57 - 00012220 _____ C:\Users\andre_000\Desktop\june 15 2015 bal.xlsx
2015-06-15 16:56 - 2015-06-15 16:56 - 00000165 ____H C:\Users\andre_000\Desktop\~$june 15 2015 bal.xlsx
2015-06-15 10:43 - 2015-06-15 10:48 - 00044838 _____ C:\Users\andre_000\Downloads\FRST.txt
2015-06-15 10:39 - 2015-06-22 11:13 - 00000000 ____D C:\FRST
2015-06-15 10:38 - 2015-06-15 10:39 - 02109952 _____ (Farbar) C:\Users\andre_000\Downloads\FRST64 (4).exe
2015-06-15 10:34 - 2015-06-15 10:35 - 02109952 _____ (Farbar) C:\Users\andre_000\Downloads\FRST64.exe
2015-06-12 20:36 - 2015-06-12 20:36 - 00000165 ____H C:\Users\andre_000\Desktop\~$bal may 30 2015 (Autosaved).xlsx
2015-06-12 07:40 - 2015-06-12 08:17 - 00000000 ____D C:\Windows\softwaredistribution.bak24
2015-06-11 22:22 - 2015-06-12 00:13 - 00000000 ____D C:\Windows\softwaredistribution.bak23
2015-06-11 20:51 - 2015-06-11 20:51 - 00089675 _____ C:\Users\andre_000\Downloads\C17A.tmp
2015-06-11 08:43 - 2015-05-22 08:08 - 00700416 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-06-11 08:43 - 2015-05-21 08:08 - 01119232 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-06-11 08:43 - 2015-05-21 08:08 - 01020928 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-06-11 08:43 - 2015-05-21 08:08 - 00756736 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-06-11 08:43 - 2015-05-21 08:08 - 00422912 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-06-11 08:43 - 2015-05-21 08:08 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2015-06-11 08:43 - 2015-05-21 08:08 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2015-06-11 08:43 - 2015-04-16 17:07 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-06-11 07:36 - 2015-05-27 09:35 - 24917504 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-06-11 07:36 - 2015-05-27 09:08 - 19607040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-06-11 07:35 - 2015-05-22 22:15 - 00503808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-06-11 07:35 - 2015-05-22 22:14 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-06-11 07:35 - 2015-05-22 22:10 - 02278912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-06-11 07:35 - 2015-05-22 22:05 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-06-11 07:35 - 2015-05-22 22:04 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-06-11 07:35 - 2015-05-22 21:48 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-06-11 07:35 - 2015-05-22 21:47 - 04305920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-06-11 07:35 - 2015-05-22 21:47 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-06-11 07:35 - 2015-05-22 21:47 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2015-06-11 07:35 - 2015-05-22 21:43 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2015-06-11 07:35 - 2015-05-22 21:38 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-06-11 07:35 - 2015-05-22 21:38 - 00327168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-06-11 07:35 - 2015-05-22 21:37 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-06-11 07:35 - 2015-05-22 21:28 - 12829696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-06-11 07:35 - 2015-05-22 21:28 - 01042944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2015-06-11 07:35 - 2015-05-22 21:20 - 01950720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-06-11 07:35 - 2015-05-22 21:16 - 01309696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-06-11 07:35 - 2015-05-22 21:14 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-06-11 07:35 - 2015-05-22 14:00 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-06-11 07:35 - 2015-05-22 14:00 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-06-11 07:35 - 2015-05-22 14:00 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-06-11 07:35 - 2015-05-22 13:52 - 06026240 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-06-11 07:35 - 2015-05-22 13:48 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-06-11 07:35 - 2015-05-22 13:47 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-06-11 07:35 - 2015-05-22 13:47 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-06-11 07:35 - 2015-05-22 13:24 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-06-11 07:35 - 2015-05-22 13:23 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2015-06-11 07:35 - 2015-05-22 13:21 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-06-11 07:35 - 2015-05-22 13:15 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2015-06-11 07:35 - 2015-05-22 13:09 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-06-11 07:35 - 2015-05-22 13:08 - 00374272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-06-11 07:35 - 2015-05-22 13:06 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-06-11 07:35 - 2015-05-22 13:05 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-06-11 07:35 - 2015-05-22 12:57 - 14404096 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-06-11 07:35 - 2015-05-22 12:50 - 02426880 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-06-11 07:35 - 2015-05-22 12:49 - 02865152 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2015-06-11 07:35 - 2015-05-22 12:38 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-06-11 07:35 - 2015-05-22 12:26 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-06-11 07:34 - 2015-05-21 11:47 - 04177920 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-06-11 07:34 - 2015-04-24 21:34 - 00653824 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2015-06-11 07:34 - 2015-04-24 21:33 - 00549888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2015-06-10 22:59 - 2015-06-10 23:02 - 00000000 ____D C:\Users\andre_000\Downloads\Photo Originals
2015-06-10 18:38 - 2015-06-14 21:14 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-06-10 16:37 - 2015-05-15 17:01 - 00133288 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-06-10 16:37 - 2015-05-15 16:05 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-06-10 16:37 - 2015-05-15 15:47 - 00355328 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2015-06-10 16:37 - 2015-05-15 15:23 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2015-06-10 16:37 - 2015-05-15 14:42 - 03682304 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-06-10 16:37 - 2015-05-15 14:32 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-06-10 16:37 - 2015-05-15 14:31 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-06-10 16:37 - 2015-05-15 14:28 - 02223104 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-06-10 16:37 - 2015-05-15 14:28 - 00408064 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll
2015-06-10 16:37 - 2015-05-15 14:28 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-06-10 16:37 - 2015-05-15 14:27 - 00891904 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-06-10 16:37 - 2015-05-15 14:21 - 00124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2015-06-10 16:37 - 2015-05-15 14:21 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2015-06-10 16:37 - 2015-05-15 14:19 - 00721920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-06-10 16:37 - 2015-05-15 14:19 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2015-06-10 16:22 - 2015-06-10 16:26 - 81890912 _____ C:\Users\andre_000\Downloads\documents-export-2015-06-10.zip
2015-06-10 15:50 - 2015-06-10 15:51 - 04197016 _____ (Kaspersky Lab ZAO) C:\Users\andre_000\Downloads\tdsskiller(4).exe
2015-06-10 15:50 - 2015-06-10 15:50 - 04197016 _____ (Kaspersky Lab ZAO) C:\Users\andre_000\Downloads\tdsskiller(3).exe
2015-06-10 15:48 - 2015-06-10 15:48 - 00243408 _____ C:\Users\andre_000\Downloads\Firefox Setup Stub 38.0.5.exe
2015-06-10 13:11 - 2015-06-10 13:11 - 00000312 _____ C:\Users\andre_000\Downloads\schedule-20150610T085053.vcs
2015-06-08 18:04 - 2015-06-08 18:04 - 00000000 ____D C:\Users\andre_000\AppData\Local\GWX
2015-06-07 17:06 - 2015-06-07 17:06 - 00001108 _____ C:\Users\Public\Desktop\ThisLife Uploader.lnk
2015-06-07 16:08 - 2015-06-07 17:06 - 00000000 ____D C:\Program Files (x86)\ThisLife Uploader
2015-06-07 16:06 - 2015-06-07 17:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ThisLife Uploader
2015-06-07 12:52 - 2015-06-07 12:52 - 00000000 ____D C:\Users\andre_000\AppData\Roaming\ThisLife Uploader 2.8.380
2015-06-06 20:46 - 2015-06-06 23:23 - 00000000 ____D C:\ProgramData\RogueKiller
2015-06-06 20:46 - 2015-06-06 20:46 - 00035064 _____ C:\Windows\system32\Drivers\TrueSight.sys
2015-06-06 20:42 - 2015-06-06 20:44 - 17637624 _____ C:\Users\andre_000\Downloads\RogueKiller (1).exe
2015-06-02 20:49 - 2015-06-02 20:49 - 00002183 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth.lnk
2015-05-24 16:03 - 2015-04-08 17:07 - 00410336 _____ C:\Windows\system32\ApnDatabase.xml
2015-05-24 16:03 - 2015-03-19 22:49 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\compstui.dll
2015-05-24 16:03 - 2015-03-19 22:08 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll
2015-05-24 16:03 - 2015-03-19 21:37 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiobj.dll
2015-05-24 16:03 - 2015-03-19 21:07 - 01091072 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2015-05-24 16:02 - 2015-04-08 17:41 - 00158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rgb9rast.dll
2015-05-24 16:02 - 2015-03-01 20:43 - 00222208 _____ (Microsoft Corporation) C:\Windows\system32\rastapi.dll
2015-05-24 16:02 - 2015-03-01 20:21 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastapi.dll
2015-05-23 20:43 - 2015-05-23 09:31 - 19278539 _____ C:\Users\andre_000\Desktop\dism.log
2015-05-23 20:39 - 2015-05-29 10:09 - 00011672 _____ C:\Users\andre_000\Desktop\bal may 30 2015 (Autosaved).xlsx
 
==================== One Month Modified files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2015-06-22 11:08 - 2014-12-07 13:58 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-06-22 11:02 - 2013-08-22 10:36 - 00000000 ____D C:\Windows\system32\sru
2015-06-22 10:48 - 2014-01-06 23:55 - 00000926 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-06-22 10:34 - 2013-10-22 02:06 - 01206971 _____ C:\Windows\WindowsUpdate.log
2015-06-22 10:26 - 2015-01-31 21:59 - 00004994 _____ C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for COOCOONUT-andre_000 CooCooNut
2015-06-22 10:13 - 2013-09-05 10:46 - 00863592 _____ C:\Windows\system32\PerfStringBackup.INI
2015-06-22 10:01 - 2013-10-22 02:19 - 00065536 _____ C:\Windows\system32\spu_storage.bin
2015-06-17 16:06 - 2014-01-07 20:06 - 00003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-695059093-3351157946-1085184340-1004
2015-06-17 15:48 - 2014-02-10 09:11 - 00000000 ____D C:\Users\andre_000\AppData\Local\Deployment
2015-06-17 15:45 - 2015-02-01 13:50 - 00002124 _____ C:\Users\andre_000\Desktop\Public - Shortcut.lnk
2015-06-16 22:12 - 2014-01-07 20:02 - 00000000 ___DO C:\Users\andre_000\SkyDrive
2015-06-16 22:11 - 2014-01-06 23:55 - 00000922 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-06-16 22:08 - 2014-12-15 19:49 - 00017245 _____ C:\Windows\setupact.log
2015-06-16 22:08 - 2013-08-22 09:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-06-14 21:33 - 2014-01-09 06:16 - 00000000 ____D C:\Windows\system32\MRT
2015-06-14 21:21 - 2014-01-09 06:16 - 140135120 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-06-14 21:14 - 2014-12-27 19:45 - 00020200 _____ C:\Windows\PFRO.log
2015-06-14 21:14 - 2014-12-06 19:10 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2015-06-14 21:14 - 2014-01-07 19:53 - 00000000 ____D C:\Users\andre_000
2015-06-13 18:15 - 2013-08-22 10:36 - 00000000 ____D C:\Windows\rescache
2015-06-13 15:02 - 2013-08-22 10:36 - 00000000 ____D C:\Windows\system32\NDF
2015-06-11 20:57 - 2013-08-22 09:44 - 00389368 _____ C:\Windows\system32\FNTCACHE.DAT
2015-06-11 20:52 - 2014-12-09 19:46 - 00000000 ____D C:\Windows\system32\appraiser
2015-06-11 20:52 - 2014-07-12 14:38 - 00000000 ___SD C:\Windows\system32\CompatTel
2015-06-11 20:52 - 2013-08-22 10:36 - 00000000 ____D C:\Windows\PolicyDefinitions
2015-06-11 19:18 - 2015-02-05 17:06 - 00000000 ____D C:\Windows\CbsTemp
2015-06-11 19:13 - 2013-08-22 10:36 - 00000000 ____D C:\Windows\AppReadiness
2015-06-10 15:52 - 2014-12-06 19:10 - 00001178 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-06-10 15:52 - 2014-12-06 19:10 - 00001166 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2015-06-09 20:49 - 2015-04-13 10:15 - 00002210 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-06-09 19:09 - 2014-12-07 13:58 - 00003718 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-06-08 18:05 - 2014-12-27 19:43 - 00007606 _____ C:\Users\andre_000\AppData\Local\Resmon.ResmonCfg
2015-06-05 16:53 - 2014-01-22 12:03 - 00002065 _____ C:\Users\Public\Desktop\Google Slides.lnk
2015-06-05 16:53 - 2014-01-22 12:03 - 00002063 _____ C:\Users\Public\Desktop\Google Sheets.lnk
2015-06-05 16:53 - 2014-01-22 12:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2015-06-03 11:18 - 2014-11-14 09:08 - 00178168 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-06-03 11:18 - 2014-07-12 14:42 - 00792568 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-06-02 20:48 - 2014-01-06 23:55 - 00000000 ____D C:\Program Files (x86)\Google
2015-06-02 14:15 - 2015-03-21 19:50 - 00000000 ____D C:\Users\andre_000\AppData\Roaming\ThisLife
2015-05-29 10:18 - 2014-02-05 21:58 - 00000000 ____D C:\Program Files\Microsoft Office 15
2015-05-27 15:54 - 2013-08-22 08:25 - 00524288 ___SH C:\Windows\system32\config\BBI
2015-05-27 15:51 - 2013-08-22 10:36 - 00000000 ___RD C:\Windows\ToastData
2015-05-27 15:08 - 2015-04-29 16:03 - 00000000 ____D C:\Users\andre_000\Downloads\documents-export-2015-04-29 (1)
2015-05-24 13:34 - 2015-03-31 14:45 - 00000000 ___SD C:\Windows\SysWOW64\GWX
2015-05-24 13:34 - 2015-03-31 14:45 - 00000000 ___SD C:\Windows\system32\GWX
 
==================== Files in the root of some directories =======
 
2014-02-26 22:01 - 2014-02-26 22:01 - 0001864 _____ () C:\Program Files\QuickTime Player.lnk
2014-08-19 19:29 - 2014-09-08 19:50 - 0000093 _____ () C:\Users\andre_000\AppData\Roaming\WB.CFG
2014-12-27 19:43 - 2015-06-08 18:05 - 0007606 _____ () C:\Users\andre_000\AppData\Local\Resmon.ResmonCfg
2013-10-22 02:24 - 2013-10-22 02:24 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2014-01-07 00:00 - 2014-01-07 00:00 - 0000098 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.64.bc
2015-03-31 13:32 - 2015-03-31 13:32 - 0000105 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.400.32.bc
 
Some files in TEMP:
====================
C:\Users\A\AppData\Local\Temp\AcerDocsSetup.exe
C:\Users\A\AppData\Local\Temp\AcerPortalSetup.exe
C:\Users\A\AppData\Local\Temp\HitmanPro.exe
C:\Users\A\AppData\Local\Temp\oct6F82.tmp.exe
C:\Users\A\AppData\Local\Temp\OfficeSetup.exe
C:\Users\A\AppData\Local\Temp\Quarantine.exe
C:\Users\A\AppData\Local\Temp\Setup.X86.en-US_HomeStudentRetail_4365a56e-dbd1-4346-82e4-240ffaffa26c_TX_PR_.exe
C:\Users\A\AppData\Local\Temp\sqlite3.dll
C:\Users\andre_000\AppData\Local\Temp\default-search.DLL
C:\Users\andre_000\AppData\Local\Temp\dllnt_dump.dll
C:\Users\andre_000\AppData\Local\Temp\Quarantine.exe
C:\Users\andre_000\AppData\Local\Temp\SoftonicAssistant_v0-1-6.exe
C:\Users\andre_000\AppData\Local\Temp\sqlite3.dll
 
 
==================== Bamital & volsnap Check =================
 
(There is no automatic fix for files that do not pass verification.)
 
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
 
 
LastRegBack: 2015-06-12 07:08
 
==================== End of log ============================

  • 0

Advertisements







Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP