I restarted my PC for a Norton Update, and when it turned back on I kept getting an Outbound Traffic Error. It told me to use Norton Power Eraser, which I did hoping to end this problem. However, I still do get this problem. Can possible you guys help me? Here is the FRST scan results:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:20-07-2015
Ran by Anna (administrator) on GIGABYTE on 24-07-2015 17:40:34
Running from C:\Users\Anna\Downloads
Loaded Profiles: Anna (Available Profiles: normu_000 & Inese & Anna)
Platform: Windows 8.1 Pro (X64) OS Language: English (United Kingdom)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(Blue Coat Systems, Inc.) C:\Program Files\Blue Coat K9 Web Protection\k9filter.exe
(BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
(BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Symantec Corporation) C:\Program Files (x86)\Norton 360\Engine\22.5.2.15\N360.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Family\Engine\3.2.1.34\nf.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Family\Engine\3.2.1.34\tampmon.exe
(Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17709_none_fa7932f59afc2e40\TiWorker.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Family\Engine\3.2.1.34\nf.exe
(Symantec Corporation) C:\Program Files (x86)\Norton 360\Engine\22.5.2.15\N360.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(BitTorrent Inc.) C:\Users\Anna\AppData\Roaming\uTorrent\uTorrent.exe
(Spotify Ltd) C:\Users\Anna\AppData\Roaming\Spotify\SpotifyWebHelper.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12503184 2012-06-11] (Realtek Semiconductor)
HKLM\...\Run: [nwiz] => C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [2041192 2012-12-19] ()
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500936 2015-05-26] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [NBAgent] => C:\Program Files (x86)\Nero\Nero 11\Nero BackItUp\NBAgent.exe [1493288 2012-01-13] (Nero AG)
HKLM\...\Policies\Explorer: [AllowLegacyWebView] 1
HKLM\...\Policies\Explorer: [AllowUnhashedWebView] 1
HKU\S-1-5-21-4166853913-3560998128-3814506462-1009\...\Run: [uTorrent] => C:\Users\Anna\AppData\Roaming\uTorrent\uTorrent.exe [1998432 2015-06-29] (BitTorrent Inc.)
HKU\S-1-5-21-4166853913-3560998128-3814506462-1009\...\Run: [Spotify Web Helper] => C:\Users\Anna\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2008632 2015-07-14] (Spotify Ltd)
HKU\S-1-5-21-4166853913-3560998128-3814506462-1009\...\Run: [Spotify] => "C:\Users\Anna\AppData\Roaming\Spotify\Spotify.exe" -autostart -minimized
HKU\S-1-5-21-4166853913-3560998128-3814506462-1009\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8418584 2015-07-17] (Piriform Ltd)
Startup: C:\Users\Toms\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\PlayerGenerator14_2_2.rar.lnk [2015-02-01]
ShortcutTarget: PlayerGenerator14_2_2.rar.lnk -> C:\ProgramData\{62f8ff01-a81b-c8d9-62f8-8ff01a81fc06}\PlayerGenerator14_2_2.rar.exe (No File)
ShellIconOverlayIdentifiers: [ OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files (x86)\Norton 360\Engine64\22.5.2.15\buShell.dll [2015-07-13] (Symantec Corporation)
ShellIconOverlayIdentifiers: [ OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files (x86)\Norton 360\Engine64\22.5.2.15\buShell.dll [2015-07-13] (Symantec Corporation)
ShellIconOverlayIdentifiers: [ OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files (x86)\Norton 360\Engine64\22.5.2.15\buShell.dll [2015-07-13] (Symantec Corporation)
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
SearchScopes: HKLM -> DefaultScope value is missing
SearchScopes: HKLM-x32 -> DefaultScope value is missing
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-06-25] (Microsoft Corporation)
BHO: Norton Identity Protection -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files (x86)\Norton 360\Engine64\22.5.2.15\coIEPlg.dll [2015-07-10] (Symantec Corporation)
BHO: Norton Family BHO -> {B8E07826-0971-4f16-B133-047B88034E89} -> C:\Program Files (x86)\Norton Family\Engine64\3.2.1.34\coIEPlg.dll [2015-06-24] (Symantec Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2015-06-16] (Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2015-06-25] (Microsoft Corporation)
BHO-x32: Norton Identity Protection -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files (x86)\Norton 360\Engine\22.5.2.15\coIEPlg.dll [2015-07-10] (Symantec Corporation)
BHO-x32: Norton Vulnerability Protection -> {6D53EC84-6AAE-4787-AEEE-F4628F01010C} -> C:\Program Files (x86)\Norton 360\Engine\21.7.0.11\IPS\IPSBHO.DLL No File
BHO-x32: Java Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll [2015-01-29] (Oracle Corporation)
BHO-x32: Norton Family BHO -> {B8E07826-0971-4f16-B133-047B88034E89} -> C:\Program Files (x86)\Norton Family\Engine\3.2.1.34\coIEPlg.dll [2015-06-24] (Symantec Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2015-06-16] (Microsoft Corporation)
BHO-x32: Java Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-01-29] (Oracle Corporation)
Toolbar: HKLM - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine64\22.5.2.15\coIEPlg.dll [2015-07-10] (Symantec Corporation)
Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine\22.5.2.15\coIEPlg.dll [2015-07-10] (Symantec Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2014-04-01] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 62.179.104.196 213.46.228.196 192.168.1.1
Tcpip\..\Interfaces\{B8ECE66C-2861-4A3E-88BA-14ACFB90FACC}: [NameServer] 8.8.8.8,8.8.4.4
Tcpip\..\Interfaces\{B8ECE66C-2861-4A3E-88BA-14ACFB90FACC}: [DhcpNameServer] 62.179.104.196 213.46.228.196 192.168.1.1
FireFox:
========
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-16] ( Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-03-09] (Adobe Systems)
FF Plugin-x32: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll [2015-01-29] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-01-29] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-03-31] (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~3\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation)
FF Plugin-x32: @Nero.com/KM -> C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL [2015-02-11] (Nero AG)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll [2014-11-17] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll [2014-11-17] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-03-09] (Adobe Systems)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-03-31] (Microsoft Corporation)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\dict-enlv.xml [2015-06-28]
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\mystartsearch.xml [2015-02-08]
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\salidzinilv.xml [2015-06-28]
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\sslv.xml [2015-06-28]
FF HKLM-x32\...\Firefox\Extensions: [{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_22.5.2.15\coFFPlgn
FF Extension: Norton Toolbar - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_22.5.2.15\coFFPlgn [2015-07-24]
FF HKLM-x32\...\Firefox\Extensions: [{6D5C8FC4-DE46-41bf-9092-93F0F78E9115}] - C:\ProgramData\Norton\{78CA3BF0-9C3B-40e1-B46D-38C877EF059A}\NSM_3.0.0.52\coFFFw
FF Extension: Norton Family - C:\ProgramData\Norton\{78CA3BF0-9C3B-40e1-B46D-38C877EF059A}\NSM_3.0.0.52\coFFFw [2015-07-24]
FF Extension: Fast Start - C:\Users\Toms\AppData\Roaming\Mozilla\Firefox\Profiles\c2nxr88h.default\extensions\
[email protected] [2015-02-08]
Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR Profile: C:\Users\Anna\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Anna\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-12-24]
CHR Extension: (Google Docs) - C:\Users\Anna\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-12-24]
CHR Extension: (Google Drive) - C:\Users\Anna\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-12-24]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Anna\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-12-24]
CHR Extension: (YouTube) - C:\Users\Anna\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-12-24]
CHR Extension: (Norton Security Toolbar) - C:\Users\Anna\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjabmdjcfcfdmffimndhafhblfmpjdpe [2015-07-24]
CHR Extension: (Google Search) - C:\Users\Anna\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-12-24]
CHR Extension: (Google Sheets) - C:\Users\Anna\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-12-24]
CHR Extension: (Norton Identity Safe) - C:\Users\Anna\AppData\Local\Google\Chrome\User Data\Default\Extensions\iikflkcanblccfahdhdonehdalibjnif [2014-12-24]
CHR Extension: (Hey Girl) - C:\Users\Anna\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcpmmhaffdebnmkjelaohgjmndeongip [2015-02-01]
CHR Extension: (Norton™ Family) - C:\Users\Anna\AppData\Local\Google\Chrome\User Data\Default\Extensions\napjheenlliimoedooldaalpjfidlidp [2014-12-24]
CHR Extension: (Google Wallet) - C:\Users\Anna\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-12-24]
CHR Extension: (Gmail) - C:\Users\Anna\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-12-24]
CHR HKLM\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\Program Files (x86)\Norton 360\Engine\22.5.2.15\Exts\Chrome.crx [2015-07-24]
CHR HKLM\...\Chrome\Extension: [napjheenlliimoedooldaalpjfidlidp] - C:\Program Files (x86)\Norton Family\Engine\3.2.1.34\Extensions\Chrome.crx [2015-07-02]
CHR HKLM-x32\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\Program Files (x86)\Norton 360\Engine\22.5.2.15\Exts\Chrome.crx [2015-07-24]
CHR HKLM-x32\...\Chrome\Extension: [napjheenlliimoedooldaalpjfidlidp] - C:\Program Files (x86)\Norton Family\Engine\3.2.1.34\Extensions\Chrome.crx [2015-07-02]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 bckwfs; C:\Program Files\Blue Coat K9 Web Protection\k9filter.exe [2647256 2014-01-24] (Blue Coat Systems, Inc.)
S2 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [433784 2015-06-16] (BlueStack Systems, Inc.)
R2 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [413304 2015-06-16] (BlueStack Systems, Inc.)
R2 BstHdUpdaterSvc; C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [831096 2015-07-21] (BlueStack Systems, Inc.)
S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-10-29] (Microsoft Corporation)
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
R2 N360; C:\Program Files (x86)\Norton 360\Engine\22.5.2.15\N360.exe [282016 2015-07-16] (Symantec Corporation)
R2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [50688 2013-11-15] (Hewlett-Packard) [File not signed]
R2 NSM; C:\Program Files (x86)\Norton Family\Engine\3.2.1.34\NF.exe [362320 2015-06-24] (Symantec Corporation)
R2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [66048 2013-11-15] (Hewlett-Packard) [File not signed]
R2 TampMon; C:\Program Files (x86)\Norton Family\Engine\3.2.1.34\TampMon.exe [306488 2015-06-24] (Symantec Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 bckd; C:\Windows\System32\drivers\bckd.sys [126168 2014-01-24] (Blue Coat Systems, Inc.)
R1 BHDrvx64; C:\Program Files (x86)\Norton 360\NortonData\22.5.2.15\Definitions\BASHDefs\20150706.001\BHDrvx64.sys [1648880 2015-07-11] (Symantec Corporation)
R2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [145528 2015-06-16] (BlueStack Systems)
R1 ccSet_N360; C:\Windows\system32\drivers\N360x64\1605020.00F\ccSetx64.sys [173808 2015-07-11] (Symantec Corporation)
R1 ccSet_NSM; C:\Windows\system32\drivers\NSMx64\0302010.022\ccSetx64.sys [162392 2014-02-24] (Symantec Corporation)
S3 E100B; C:\Windows\system32\DRIVERS\efe5b32e.sys [182656 2013-06-18] (Intel Corporation)
R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [498512 2015-07-24] (Symantec Corporation)
R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [153936 2015-07-24] (Symantec Corporation)
R1 IDSVia64; C:\Program Files (x86)\Norton 360\NortonData\22.5.2.15\Definitions\IPSDefs\20150710.001\IDSVia64.sys [692984 2015-07-11] (Symantec Corporation)
R0 inic1620; C:\Windows\System32\drivers\inic1620.sys [36888 2010-07-21] (Initio Corp.)
R3 NAVENG; C:\Program Files (x86)\Norton 360\NortonData\22.5.2.15\Definitions\VirusDefs\20150723.033\ENG64.SYS [138488 2015-07-24] (Symantec Corporation)
R3 NAVEX15; C:\Program Files (x86)\Norton 360\NortonData\22.5.2.15\Definitions\VirusDefs\20150723.033\EX64.SYS [2146040 2015-07-24] (Symantec Corporation)
R3 RTL8168; C:\Windows\system32\DRIVERS\rtlh64.sys [681688 2015-01-21] (Inventec )
R1 SRTSP; C:\Windows\System32\Drivers\N360x64\1605020.00F\SRTSP64.SYS [926448 2015-07-11] (Symantec Corporation)
R1 SRTSPX; C:\Windows\system32\drivers\N360x64\1605020.00F\SRTSPX64.SYS [50936 2015-07-11] (Symantec Corporation)
R0 SymEFASI; C:\Windows\System32\drivers\N360x64\1605020.00F\SYMEFASI64.SYS [1620720 2015-07-11] (Symantec Corporation)
S0 SymELAM; C:\Windows\System32\drivers\N360x64\1605020.00F\SymELAM.sys [24192 2015-07-11] (Symantec Corporation)
R3 SymEvent; C:\WINDOWS\system32\Drivers\SYMEVENT64x86.SYS [111344 2015-07-24] (Symantec Corporation)
R1 SymIRON; C:\Windows\system32\drivers\N360x64\1605020.00F\Ironx64.SYS [297720 2015-07-11] (Symantec Corporation)
R1 SymNetS; C:\Windows\System32\Drivers\N360x64\1605020.00F\SYMNETS.SYS [576248 2015-07-11] (Symantec Corporation)
R3 SYMRDR_{78CA3BF0-9C3B-40e1-B46D-38C877EF059A}; C:\Windows\System32\Drivers\NSMx64\0302010.022\SymRdrS.SYS [245976 2014-10-03] (Symantec Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation)
S3 XSplit_Dummy; C:\Windows\system32\drivers\xspltspk.sys [26200 2014-07-02] (SplitmediaLabs Limited)
S3 cpuz137; \??\C:\Users\NORMU_~1\AppData\Local\Temp\cpuz137\cpuz137_x64.sys [X]
S3 VBoxNetFlt; \SystemRoot\system32\DRIVERS\VBoxNetFlt.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-07-24 17:40 - 2015-07-24 17:41 - 00023667 _____ C:\Users\Anna\Downloads\FRST.txt
2015-07-24 17:38 - 2015-07-24 17:40 - 00000000 ____D C:\FRST
2015-07-24 17:37 - 2015-07-24 17:37 - 02135552 _____ (Farbar) C:\Users\Anna\Downloads\FRST64.exe
2015-07-24 17:08 - 2015-07-24 17:35 - 00000000 ____D C:\Users\Anna\Downloads\FS2Crew
2015-07-24 17:08 - 2015-07-24 17:08 - 00033166 _____ C:\Users\Anna\Downloads\[rutracker.org].t4662996.torrent
2015-07-24 17:06 - 2015-07-24 17:06 - 03580117 _____ C:\Users\Anna\Downloads\newpilot_001.zlb
2015-07-24 17:05 - 2015-07-24 17:05 - 01450429 _____ C:\Users\Anna\Downloads\newcopilot_001.zlb
2015-07-24 17:02 - 2015-07-24 17:07 - 178457006 _____ (TFDi Design) C:\Users\Anna\Downloads\RYR_ACARS_installer.exe
2015-07-24 17:01 - 2015-07-24 17:36 - 00000000 ____D C:\Users\Anna\AppData\Local\NPE
2015-07-24 17:00 - 2015-07-24 17:00 - 00000000 ____D C:\WINDOWS\System32\Tasks\Norton 360
2015-07-24 16:20 - 2015-07-24 16:20 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton 360
2015-07-24 15:06 - 2015-07-24 15:06 - 00007275 _____ C:\Users\Anna\Downloads\EHEH-EPKK.pln
2015-07-24 15:00 - 2015-07-24 15:00 - 00000000 ____D C:\Users\Anna\AppData\Local\HiFi
2015-07-24 14:49 - 2015-07-24 15:14 - 00000000 ____D C:\Users\Anna\AppData\Roaming\Virtuali
2015-07-24 14:49 - 2015-07-24 14:49 - 00000000 ____D C:\Users\Anna\AppData\Roaming\Lockheed Martin
2015-07-24 14:49 - 2015-07-24 14:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FsDreamTeam
2015-07-24 14:45 - 2014-12-23 13:15 - 00001084 _____ C:\Users\Anna\Desktop\Update.txt
2015-07-24 14:45 - 2014-11-11 17:33 - 00000000 ____D C:\Users\Anna\Desktop\sound
2015-07-24 14:42 - 2015-07-24 14:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PRO-ATC-X
2015-07-24 14:40 - 2015-07-24 17:31 - 00000000 ____D C:\PRO-ATC-X
2015-07-24 14:33 - 2015-07-24 14:33 - 00001132 _____ C:\Users\Anna\Desktop\Active Sky 2012.lnk
2015-07-24 14:33 - 2015-07-24 14:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HiFi
2015-07-24 14:24 - 2015-07-24 14:25 - 00000000 ____D C:\Users\Anna\Downloads\[FSX] FSDreamTeam - Ground Service X v.1.8
2015-07-24 14:21 - 2015-07-24 14:21 - 00000000 ____D C:\Users\Anna\AppData\Roaming\HiFi
2015-07-24 14:21 - 2015-07-24 14:21 - 00000000 ____D C:\Program Files (x86)\HiFi
2015-07-24 13:11 - 2015-07-24 16:20 - 00002280 _____ C:\Users\Public\Desktop\Norton 360 Premier.LNK
2015-07-24 12:54 - 2015-07-24 12:55 - 21009885 _____ C:\Users\Anna\Downloads\PMDG_737NGX_SP1c_Crack.rar
2015-07-24 12:37 - 2015-07-24 12:38 - 00000000 ____D C:\Users\Anna\Downloads\Pointsoft - Pro ATC-X
2015-07-24 12:36 - 2015-07-24 14:37 - 00000000 ____D C:\Users\Anna\Downloads\Active Sky 2012
2015-07-24 12:33 - 2015-07-24 12:48 - 154424748 _____ C:\Users\Anna\Downloads\PMDG_737_8900_NGX_3219_SP1c.ZIP
2015-07-24 12:25 - 2015-07-24 12:25 - 00000000 ____D C:\Users\Anna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PMDG Simulations
2015-07-24 12:09 - 2015-07-24 12:12 - 174091264 _____ C:\Users\Anna\Downloads\fsx_sp2_ENU.msi
2015-07-24 12:07 - 2015-07-24 12:11 - 218123672 _____ (Microsoft Corporation) C:\Users\Anna\Downloads\fsx_sp1_ENU.exe
2015-07-24 12:05 - 2015-07-24 12:05 - 00000712 _____ C:\Users\Anna\Documents\Desktop - Shortcut.lnk
2015-07-24 12:04 - 2015-07-24 12:04 - 00000000 ____D C:\ProgramData\InstallShield
2015-07-23 12:16 - 2015-07-23 12:46 - 1669147852 _____ C:\Users\Anna\Downloads\nadwcnicoleanistondanny_720p_000.mp4
2015-07-23 10:14 - 2015-07-23 10:14 - 10530443 _____ C:\Users\Anna\Downloads\Database Mod 2.2.2.rar
2015-07-23 10:13 - 2015-07-23 10:13 - 00166421 _____ C:\Users\Anna\Downloads\Enable Debugging Options v1.0.zip
2015-07-22 18:46 - 2015-07-22 18:46 - 00001100 _____ C:\Users\Public\Desktop\Revo Uninstaller Pro.lnk
2015-07-22 18:46 - 2015-07-22 18:46 - 00000000 ____D C:\Users\Anna\AppData\Local\VS Revo Group
2015-07-22 18:46 - 2015-07-22 18:46 - 00000000 ____D C:\ProgramData\VS Revo Group
2015-07-22 18:46 - 2015-07-22 18:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro
2015-07-22 18:46 - 2015-07-22 18:46 - 00000000 ____D C:\Program Files\VS Revo Group
2015-07-22 18:46 - 2009-12-30 11:21 - 00031800 _____ (VS Revo Group) C:\WINDOWS\system32\Drivers\revoflt.sys
2015-07-22 11:10 - 2015-07-22 11:10 - 00000000 ____D C:\Users\Anna\AppData\Local\CEF
2015-07-22 11:08 - 2015-07-22 11:09 - 28382694 _____ C:\Users\Anna\Downloads\Williams F1 Team Martini.zip
2015-07-21 10:44 - 2015-07-14 16:14 - 00358912 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2015-07-21 10:44 - 2015-07-14 16:14 - 00301056 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2015-07-21 10:44 - 2015-07-14 16:14 - 00035840 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2015-07-21 10:44 - 2015-07-14 16:13 - 00044032 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2015-07-20 17:14 - 2015-07-20 17:15 - 51190806 _____ C:\Users\Anna\Downloads\Tyres Edition 2014 HD (2).zip
2015-07-20 16:09 - 2015-07-20 16:09 - 00000222 _____ C:\Users\Anna\Desktop\F1 2014.url
2015-07-20 16:09 - 2015-07-20 16:09 - 00000000 ____D C:\Users\Anna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2015-07-20 13:53 - 2015-07-20 13:54 - 51190806 _____ C:\Users\Anna\Downloads\Tyres Edition 2014 HD (1).zip
2015-07-20 13:26 - 2015-07-20 13:26 - 00000000 ____D C:\Users\Anna\Documents\My Games
2015-07-20 13:23 - 2015-07-20 13:24 - 51190806 _____ C:\Users\Anna\Downloads\Tyres Edition 2014 HD.zip
2015-07-20 13:22 - 2015-07-20 13:22 - 00000000 ____D C:\Users\Anna\AppData\Local\Steam
2015-07-20 12:58 - 2015-07-20 12:58 - 01414589 _____ C:\Users\Anna\Downloads\veronique_2015-07-07_17-21-27.mp4
2015-07-18 22:43 - 2015-07-22 18:22 - 00000000 ____D C:\Users\Anna\Documents\Funnyjunk
2015-07-17 11:13 - 2015-07-17 11:47 - 00000000 ____D C:\Users\Anna\Documents\GTA San Andreas User Files
2015-07-17 11:03 - 2015-07-17 11:03 - 00001930 _____ C:\Users\Public\Desktop\GTA San Andreas.lnk
2015-07-17 11:03 - 2015-07-17 11:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockstar Games
2015-07-17 11:03 - 2015-07-17 11:03 - 00000000 ____D C:\Program Files (x86)\Rockstar Games
2015-07-17 11:01 - 2015-07-17 11:01 - 00040448 ___SH C:\Users\Anna\Documents\Thumbs.db
2015-07-15 22:50 - 2015-07-16 13:48 - 00000000 ____D C:\Users\Anna\Downloads\The Game Plan (2007)
2015-07-15 21:06 - 2015-07-15 21:06 - 00000000 ____D C:\Users\Anna\Downloads\xkoranate-0.3.3
2015-07-15 21:05 - 2011-12-24 22:02 - 00004096 ____H C:\Users\Anna\Documents\._autoracing_race.xml
2015-07-15 21:05 - 2011-12-24 22:02 - 00004096 ____H C:\Users\Anna\Documents\._autoracing_qualifying.xml
2015-07-15 21:05 - 2011-12-24 22:02 - 00004096 ____H C:\Users\Anna\Desktop\._autoracing_race.xml
2015-07-15 21:05 - 2011-12-24 22:02 - 00004096 ____H C:\Users\Anna\Desktop\._autoracing_qualifying.xml
2015-07-15 21:05 - 2011-09-08 00:08 - 00000687 _____ C:\Users\Anna\Documents\autoracing_qualifying.xml
2015-07-15 21:05 - 2011-09-08 00:08 - 00000687 _____ C:\Users\Anna\Desktop\autoracing_qualifying.xml
2015-07-15 21:05 - 2011-09-08 00:06 - 00000683 _____ C:\Users\Anna\Documents\autoracing_race.xml
2015-07-15 21:05 - 2011-09-08 00:06 - 00000683 _____ C:\Users\Anna\Desktop\autoracing_race.xml
2015-07-15 21:04 - 2011-12-24 22:02 - 00004096 ____H C:\Users\Anna\Downloads\._autoracing_race.xml
2015-07-15 21:03 - 2011-12-24 22:02 - 00004096 ____H C:\Users\Anna\Downloads\._autoracing
2015-07-15 21:01 - 2015-07-15 21:01 - 06859966 _____ C:\Users\Anna\Downloads\xkoranate-0.3.3 (1).zip
2015-07-15 16:01 - 2015-07-15 16:01 - 00003500 _____ C:\WINDOWS\System32\Tasks\AdobeAAMUpdater-1.0-gigabyte-Anna
2015-07-15 16:00 - 2015-07-15 16:00 - 00001063 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CC 2015.lnk
2015-07-15 16:00 - 2015-07-15 16:00 - 00000000 ____D C:\Users\Anna\Documents\Adobe
2015-07-15 16:00 - 2015-07-15 16:00 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2015-07-15 15:56 - 2015-07-15 15:56 - 00001569 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Application Manager.lnk
2015-07-15 15:56 - 2015-07-15 15:56 - 00001557 _____ C:\Users\Public\Desktop\Adobe Application Manager.lnk
2015-07-15 15:56 - 2015-07-15 15:56 - 00000000 ____D C:\Program Files\Adobe
2015-07-15 15:55 - 2015-07-15 16:00 - 00000000 ____D C:\Program Files\Common Files\Adobe
2015-07-15 12:43 - 2011-08-05 22:04 - 679237578 _____ (Macrovision Corporation) C:\Users\Anna\Documents\PMDG 737 NGX.exe
2015-07-15 12:36 - 2015-07-15 12:36 - 00000000 ____D C:\Users\Anna\AppData\Roaming\InstallShield
2015-07-15 12:27 - 2015-07-15 12:32 - 673097415 _____ C:\Users\Anna\Downloads\PMDG 737 NGX SOSIMULADORES.rar
2015-07-15 12:24 - 2015-07-09 21:51 - 00136904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2015-07-15 12:24 - 2015-07-09 20:40 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSetupUI.dll
2015-07-15 12:24 - 2015-07-09 18:03 - 03701760 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2015-07-15 12:24 - 2015-07-09 17:54 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe
2015-07-15 12:24 - 2015-07-09 17:53 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll
2015-07-15 12:24 - 2015-07-09 17:50 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll
2015-07-15 12:24 - 2015-07-09 17:50 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2015-07-15 12:24 - 2015-07-09 17:48 - 00891904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2015-07-15 12:24 - 2015-07-09 17:46 - 02229248 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll
2015-07-15 12:24 - 2015-07-09 17:38 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe
2015-07-15 12:24 - 2015-07-09 17:37 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll
2015-07-15 12:24 - 2015-07-09 17:35 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2015-07-15 12:24 - 2015-07-09 17:34 - 00721920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2015-07-15 12:24 - 2015-06-29 17:07 - 01084928 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2015-07-15 12:24 - 2015-06-27 05:08 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2015-07-15 12:24 - 2015-06-27 05:08 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2015-07-15 12:24 - 2015-06-27 04:14 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2015-07-15 12:24 - 2015-06-25 04:31 - 04177920 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2015-07-15 12:24 - 2015-04-30 01:22 - 00130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll
2015-07-15 12:23 - 2015-06-30 00:43 - 00026288 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2015-07-15 12:23 - 2015-06-29 17:07 - 01145856 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2015-07-15 12:23 - 2015-06-29 17:07 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2015-07-15 12:23 - 2015-06-29 17:07 - 00433152 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2015-07-15 12:23 - 2015-06-29 17:07 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2015-07-15 12:23 - 2015-06-28 07:07 - 00442712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2015-07-15 12:23 - 2015-06-28 07:07 - 00178008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2015-07-15 12:23 - 2015-06-28 07:06 - 01311960 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2015-07-15 12:23 - 2015-06-28 07:06 - 00332120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2015-07-15 12:23 - 2015-06-27 18:42 - 00747520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2015-07-15 12:23 - 2015-06-27 05:13 - 00202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2015-07-15 12:23 - 2015-06-27 05:12 - 00401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2015-07-15 12:23 - 2015-06-27 05:12 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2015-07-15 12:23 - 2015-06-27 04:40 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2015-07-15 12:23 - 2015-06-27 04:05 - 01441792 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2015-07-15 12:23 - 2015-06-27 04:00 - 00989184 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2015-07-15 12:23 - 2015-06-27 03:53 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll
2015-07-15 12:23 - 2015-06-27 03:26 - 00802816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2015-07-15 12:23 - 2015-06-27 01:21 - 00726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2015-07-15 12:23 - 2015-06-27 01:21 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepdu.dll
2015-07-15 12:23 - 2015-06-16 00:41 - 00065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\msiexec.exe
2015-07-15 12:23 - 2015-06-16 00:24 - 03320320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2015-07-15 12:23 - 2015-06-15 23:16 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msiexec.exe
2015-07-15 12:23 - 2015-06-15 23:09 - 03607552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2015-07-15 12:23 - 2015-06-15 22:50 - 02774528 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2015-07-15 12:23 - 2015-06-15 21:57 - 02460160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2015-07-15 12:23 - 2015-05-07 19:50 - 22292672 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2015-07-15 12:23 - 2015-05-07 19:00 - 03109376 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2015-07-15 12:23 - 2015-05-07 18:53 - 19734960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2015-07-15 12:23 - 2015-05-07 18:12 - 02706432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2015-07-15 12:23 - 2015-05-07 17:21 - 00522240 _____ (Microsoft Corporation) C:\WINDOWS\system32\GeofenceMonitorService.dll
2015-07-15 12:23 - 2015-05-07 17:05 - 00367104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GeofenceMonitorService.dll
2015-07-15 12:23 - 2015-05-03 17:09 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-07-15 12:23 - 2015-05-03 16:58 - 00210944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-07-15 12:23 - 2015-05-03 16:55 - 00971776 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2015-07-15 12:23 - 2015-05-03 16:49 - 00811008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2015-07-15 12:23 - 2015-05-03 02:39 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2015-07-15 12:23 - 2015-04-25 04:25 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usb8023.sys
2015-07-15 12:23 - 2015-03-09 04:02 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storvsp.sys
2015-07-15 12:22 - 2015-07-02 23:21 - 19877376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-07-15 12:22 - 2015-07-02 22:50 - 02279424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-07-15 12:22 - 2015-07-02 22:49 - 25193984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-07-15 12:22 - 2015-07-02 22:23 - 02885632 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-07-15 12:22 - 2015-07-02 22:19 - 12855296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-07-15 12:22 - 2015-07-02 21:55 - 01310720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2015-07-15 12:22 - 2015-07-02 21:20 - 14453248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-07-15 12:22 - 2015-07-02 20:59 - 01545728 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-07-15 12:22 - 2015-07-02 00:08 - 05923840 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-07-15 12:22 - 2015-07-01 23:14 - 04520448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2015-07-15 12:22 - 2015-05-30 23:18 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll
2015-07-15 12:22 - 2015-05-30 21:36 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-07-15 12:22 - 2015-05-30 21:35 - 00911360 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2015-07-15 12:21 - 2015-06-16 00:39 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-07-15 12:21 - 2015-06-16 00:38 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll
2015-07-15 12:21 - 2015-06-16 00:26 - 00633856 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll
2015-07-15 12:21 - 2015-06-16 00:24 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-07-15 12:21 - 2015-06-16 00:02 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx
2015-07-15 12:21 - 2015-06-15 23:58 - 00199680 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll
2015-07-15 12:21 - 2015-06-15 23:57 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2015-07-15 12:21 - 2015-06-15 23:56 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2015-07-15 12:21 - 2015-06-15 23:55 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2015-07-15 12:21 - 2015-06-15 23:49 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2015-07-15 12:21 - 2015-06-15 23:41 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2015-07-15 12:21 - 2015-06-15 23:38 - 00801280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2015-07-15 12:21 - 2015-06-15 23:36 - 02125824 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2015-07-15 12:21 - 2015-06-15 23:17 - 02880000 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2015-07-15 12:21 - 2015-06-15 23:16 - 02427392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-07-15 12:21 - 2015-06-15 23:15 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2015-07-15 12:21 - 2015-06-15 23:13 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll
2015-07-15 12:21 - 2015-06-15 23:04 - 00478208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieui.dll
2015-07-15 12:21 - 2015-06-15 23:03 - 00664064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2015-07-15 12:21 - 2015-06-15 22:52 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2015-07-15 12:21 - 2015-06-15 22:47 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx
2015-07-15 12:21 - 2015-06-15 22:44 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll
2015-07-15 12:21 - 2015-06-15 22:43 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2015-07-15 12:21 - 2015-06-15 22:42 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll
2015-07-15 12:21 - 2015-06-15 22:41 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2015-07-15 12:21 - 2015-06-15 22:37 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2015-07-15 12:21 - 2015-06-15 22:32 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll
2015-07-15 12:21 - 2015-06-15 22:31 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2015-07-15 12:21 - 2015-06-15 22:30 - 02052608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2015-07-15 12:21 - 2015-06-15 22:30 - 00327168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2015-07-15 12:21 - 2015-06-15 22:17 - 01048576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2015-07-15 12:21 - 2015-06-15 22:07 - 01951232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2015-07-15 12:21 - 2015-06-15 22:02 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2015-07-15 12:20 - 2015-05-11 18:34 - 00332800 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcpl.dll
2015-07-15 12:19 - 2015-07-15 12:20 - 00000000 ____D C:\Users\Anna\Documents\Flight Simulator X Files
2015-07-15 12:19 - 2015-06-11 05:49 - 01380600 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2015-07-15 12:19 - 2015-06-10 18:13 - 01097216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2015-07-15 12:19 - 2015-05-12 15:19 - 00294912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2015-07-15 12:19 - 2015-05-02 01:33 - 00410739 _____ C:\WINDOWS\system32\ApnDatabase.xml
2015-07-15 12:19 - 2015-04-28 15:13 - 00513480 _____ C:\WINDOWS\SysWOW64\locale.nls
2015-07-15 12:19 - 2015-04-28 15:13 - 00513480 _____ C:\WINDOWS\system32\locale.nls
2015-07-15 12:18 - 2015-06-16 07:36 - 01661576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2015-07-15 12:18 - 2015-06-16 07:36 - 01212248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2015-07-15 12:17 - 2015-05-03 17:07 - 07784448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2015-07-15 12:17 - 2015-05-03 16:57 - 05264384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2015-07-15 12:16 - 2015-05-07 18:47 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll
2015-07-15 12:16 - 2015-04-23 17:47 - 03084288 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2015-07-15 12:16 - 2015-04-23 17:16 - 02471424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2015-07-14 16:33 - 2015-07-16 10:34 - 00000000 ____D C:\ProgramData\Adobe
2015-07-14 16:32 - 2015-07-24 11:44 - 00000000 ____D C:\Users\Anna\AppData\Local\Adobe
2015-07-12 16:44 - 2015-07-12 16:44 - 00000000 ____D C:\Users\Anna\AppData\Roaming\WinRAR
2015-07-12 16:43 - 2015-07-12 16:44 - 06859966 _____ C:\Users\Anna\Downloads\xkoranate-0.3.3.zip
2015-07-12 13:46 - 2015-07-12 13:47 - 00000000 ____D C:\Users\Anna\Documents\Keep this
2015-07-12 13:03 - 2015-07-12 13:03 - 00000000 ____D C:\Users\Toms\Downloads\Formula 1 - 1978 to 2014
2015-07-12 12:30 - 2015-07-12 12:31 - 00000000 ____D C:\Users\Toms\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bitcoin Core
2015-07-12 12:30 - 2015-07-12 12:30 - 00000000 ____D C:\Program Files\Bitcoin
2015-07-12 12:11 - 2015-07-24 12:46 - 00000000 ____D C:\Users\Anna\AppData\Local\Spotify
2015-07-12 12:11 - 2015-07-12 12:11 - 00001854 _____ C:\Users\Anna\Desktop\Spotify.lnk
2015-07-12 12:11 - 2015-07-12 12:11 - 00001840 _____ C:\Users\Anna\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk
2015-07-12 12:10 - 2015-07-24 16:25 - 00000000 ____D C:\Users\Anna\AppData\Roaming\Spotify
2015-07-11 14:09 - 2015-07-11 14:09 - 00000000 ____D C:\Users\Anna\Documents\New Star GP
2015-07-11 12:42 - 2015-07-11 12:42 - 00263680 _____ C:\Users\Anna\Downloads\Unconfirmed 520907.crdownload
2015-07-07 16:40 - 2015-07-07 16:42 - 186148113 _____ C:\Users\Anna\Downloads\bpov14403-480p.mp4
2015-07-01 16:17 - 2015-07-24 12:05 - 00000000 ____D C:\Users\Anna\AppData\Local\CrashDumps
2015-06-29 19:23 - 2015-07-23 13:06 - 00000000 ____D C:\Users\Anna\AppData\Roaming\vlc
2015-06-29 18:05 - 2015-07-24 17:41 - 00000000 ____D C:\Users\Anna\AppData\Roaming\uTorrent
2015-06-29 18:05 - 2015-06-29 18:05 - 01998432 _____ (BitTorrent Inc.) C:\Users\Anna\Downloads\uTorrent.exe
2015-06-29 18:05 - 2015-06-29 18:05 - 00001234 _____ C:\Users\Toms\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk
2015-06-29 17:52 - 2015-06-29 17:52 - 00000000 ____D C:\Users\Anna\AppData\Roaming\BitTorrent
2015-06-28 22:20 - 2015-06-28 22:20 - 00000000 ____D C:\Users\Anna\AppData\Local\GWX
2015-06-27 11:55 - 2015-06-27 12:23 - 1073106724 _____ C:\Users\Toms\Downloads\NBA Draft 2015. 720p.mkv
2015-06-27 11:08 - 2015-06-27 11:09 - 00861848 _____ C:\WINDOWS\Minidump\062715-51921-01.dmp
2015-06-27 11:08 - 2015-06-27 11:08 - 633661635 _____ C:\WINDOWS\MEMORY.DMP
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-07-24 17:40 - 2014-12-24 12:00 - 00003598 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-4166853913-3560998128-3814506462-1009
2015-07-24 17:37 - 2014-09-07 16:45 - 00000000 ____D C:\ProgramData\BlueStacksSetup
2015-07-24 17:35 - 2015-05-23 11:17 - 02043046 _____ C:\WINDOWS\WindowsUpdate.log
2015-07-24 17:34 - 2014-09-03 15:59 - 00000968 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-07-24 17:32 - 2015-05-23 12:28 - 00018322 _____ C:\WINDOWS\setupact.log
2015-07-24 17:32 - 2015-05-01 22:37 - 00000000 ____D C:\Program Files (x86)\BlueStacks
2015-07-24 17:32 - 2013-08-22 16:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-07-24 17:16 - 2014-09-03 15:59 - 00000972 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-07-24 17:13 - 2015-02-08 17:06 - 00000360 _____ C:\WINDOWS\Tasks\bench-sys.job
2015-07-24 17:11 - 2014-08-16 11:39 - 00000000 ____D C:\ProgramData\Norton
2015-07-24 17:07 - 2014-08-18 20:48 - 00000000 ____D C:\ProgramData\firebird
2015-07-24 17:06 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\AppReadiness
2015-07-24 17:00 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\sru
2015-07-24 16:23 - 2015-05-24 09:24 - 00028596 _____ C:\WINDOWS\PFRO.log
2015-07-24 16:23 - 2014-12-24 11:54 - 00000000 ____D C:\Users\Anna
2015-07-24 16:23 - 2012-07-26 10:12 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2015-07-24 16:21 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\ELAM
2015-07-24 16:20 - 2014-08-16 12:01 - 00003206 _____ C:\WINDOWS\System32\Tasks\Norton WSC Integration
2015-07-24 16:20 - 2014-08-16 12:01 - 00000000 ____D C:\WINDOWS\system32\Drivers\N360x64
2015-07-24 15:49 - 2014-12-24 11:55 - 00000000 ____D C:\Users\Anna\AppData\Local\VirtualStore
2015-07-24 15:46 - 2014-12-14 13:44 - 00000000 ____D C:\ProgramData\TEMP
2015-07-24 14:49 - 2014-12-14 12:52 - 00000000 ____D C:\ProgramData\Esellerate
2015-07-24 14:34 - 2015-05-23 18:13 - 00324851 _____ C:\WINDOWS\DirectX.log
2015-07-24 13:11 - 2014-08-16 12:01 - 00111344 _____ (Symantec Corporation) C:\WINDOWS\system32\Drivers\SYMEVENT64x86.SYS
2015-07-24 13:11 - 2014-08-16 12:01 - 00008214 _____ C:\WINDOWS\system32\Drivers\SYMEVENT64x86.CAT
2015-07-24 13:11 - 2014-08-16 12:01 - 00000000 ____D C:\Program Files\Common Files\Symantec Shared
2015-07-24 13:09 - 2014-08-16 11:39 - 00000000 ____D C:\Users\Public\Downloads\Norton
2015-07-24 12:16 - 2015-02-08 17:06 - 00000360 _____ C:\WINDOWS\Tasks\bench-S-1-5-21-4166853913-3560998128-3814506462-1006.job
2015-07-24 12:00 - 2015-02-07 14:20 - 00002788 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC
2015-07-24 12:00 - 2015-02-07 14:20 - 00000841 _____ C:\Users\Public\Desktop\CCleaner.lnk
2015-07-24 12:00 - 2015-02-07 14:20 - 00000000 ____D C:\Program Files\CCleaner
2015-07-24 11:56 - 2014-09-11 17:01 - 00000000 ____D C:\Program Files (x86)\Steam
2015-07-24 11:46 - 2014-12-24 12:57 - 00003922 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{F51A87E5-8E4A-419F-81B7-161D2FCDB991}
2015-07-22 21:29 - 2014-12-24 11:55 - 00000000 ____D C:\Users\Anna\AppData\Local\Packages
2015-07-22 11:02 - 2015-06-09 16:15 - 00000000 ____D C:\Program Files\Common Files\AV
2015-07-22 10:57 - 2013-08-22 16:44 - 00500112 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2015-07-21 11:16 - 2012-07-26 09:59 - 00000000 ____D C:\WINDOWS\CbsTemp
2015-07-18 21:16 - 2014-09-03 16:43 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-07-18 21:15 - 2014-09-03 16:46 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2015-07-17 11:03 - 2014-08-16 14:22 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2015-07-17 08:09 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\rescache
2015-07-16 17:32 - 2013-08-22 15:25 - 00524288 ___SH C:\WINDOWS\system32\config\BBI
2015-07-16 17:30 - 2015-04-16 16:25 - 00000000 ____D C:\WINDOWS\system32\appraiser
2015-07-16 17:30 - 2015-04-05 12:24 - 00000000 ___SD C:\WINDOWS\SysWOW64\GWX
2015-07-16 17:30 - 2015-04-05 12:24 - 00000000 ___SD C:\WINDOWS\system32\GWX
2015-07-16 17:30 - 2014-12-08 11:30 - 00000000 ___SD C:\WINDOWS\system32\CompatTel
2015-07-16 17:30 - 2013-08-22 17:36 - 00000000 ___RD C:\WINDOWS\ToastData
2015-07-16 17:30 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\WinStore
2015-07-16 17:30 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\en-GB
2015-07-16 17:30 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2015-07-15 16:01 - 2014-12-24 11:55 - 00000000 ____D C:\Users\Anna\AppData\Roaming\Adobe
2015-07-15 15:58 - 2014-09-06 17:12 - 00000000 ____D C:\ProgramData\Package Cache
2015-07-15 14:20 - 2013-08-22 15:25 - 00000187 _____ C:\WINDOWS\win.ini
2015-07-15 14:18 - 2014-08-15 22:58 - 00000000 ____D C:\WINDOWS\system32\MRT
2015-07-15 11:43 - 2014-08-16 13:53 - 00000000 ____D C:\Program Files (x86)\Microsoft Games
2015-07-13 23:10 - 2015-03-15 09:00 - 00792568 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2015-07-13 23:10 - 2015-03-15 09:00 - 00178168 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2015-07-13 21:52 - 2014-08-16 18:10 - 00000000 ____D C:\Users\Toms
2015-07-12 22:32 - 2015-02-09 19:39 - 00000000 ____D C:\Users\Toms\AppData\Roaming\BitTorrent
2015-07-12 14:08 - 2014-08-16 18:15 - 00003600 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-4166853913-3560998128-3814506462-1006
2015-07-12 13:46 - 2014-10-28 18:34 - 00000000 ____D C:\Users\Toms\AppData\Roaming\Bitcoin
2015-07-05 18:12 - 2014-08-16 19:24 - 00000000 ____D C:\Users\Toms\AppData\Local\CrashDumps
2015-07-05 17:40 - 2014-08-16 19:58 - 00003922 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{194D30C7-E754-49AD-8BCD-8329BC3E0A47}
2015-07-04 21:36 - 2014-08-16 18:10 - 00000000 ____D C:\Users\Toms\AppData\Local\Packages
2015-07-04 17:47 - 2014-08-24 19:46 - 00000000 ____D C:\Users\Toms\AppData\Roaming\Spotify
2015-07-04 11:37 - 2014-09-10 20:12 - 00000000 ____D C:\Users\Toms\AppData\Roaming\vlc
2015-07-04 11:37 - 2014-08-24 19:48 - 00000000 ____D C:\Users\Toms\AppData\Local\Spotify
2015-07-04 10:34 - 2014-08-16 10:42 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2015-07-03 08:43 - 2014-08-15 22:58 - 130333168 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-07-03 07:51 - 2014-03-18 17:25 - 00876144 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-07-02 19:40 - 2014-08-16 12:26 - 00000000 ____D C:\WINDOWS\System32\Tasks\Norton Family
2015-07-02 19:40 - 2014-08-16 12:25 - 00000000 ____D C:\WINDOWS\system32\Drivers\NSMx64
2015-07-02 19:40 - 2014-08-16 12:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Family
2015-06-29 18:06 - 2014-08-24 19:37 - 00000000 ____D C:\Users\Toms\AppData\Roaming\uTorrent
2015-06-28 14:47 - 2014-09-27 19:51 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-06-27 11:08 - 2015-05-08 19:49 - 00000000 ____D C:\WINDOWS\Minidump
==================== Files in the root of some directories =======
2014-11-11 14:54 - 2014-11-11 14:54 - 0002621 _____ () C:\ProgramData\regid.2010-12.com.tfdidesign_CAEAB1D0-AA72-DBE4-7D2D-8A28AB057354.swidtag
Some files in TEMP:
====================
C:\Users\Anna\AppData\Local\Temp\_is1EE7.exe
C:\Users\Anna\AppData\Local\Temp\_is4C9E.exe
C:\Users\Anna\AppData\Local\Temp\_is6C36.exe
C:\Users\Anna\AppData\Local\Temp\_isB020.exe
C:\Users\Anna\AppData\Local\Temp\_isB67D.exe
C:\Users\Anna\AppData\Local\Temp\_isD0EE.exe
C:\Users\Anna\AppData\Local\Temp\_isE988.exe
C:\Users\Anna\AppData\Local\Temp\_isF07D.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-07-18 17:56
==================== End of log ============================