Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Trying to access a particular drive causes explorer to crash

explorer crash device not available errors

  • Please log in to reply

#1
gareth219

gareth219

    New Member

  • Member
  • Pip
  • 1 posts

Greetings gentlemen,

 

I have a programme that won't install saying IO,IO etc 'device not available'. Also windows explorer crashes when I try to access my F: drive

I'm at my wits endv with this, could it be a walware issue? I use ESET NOD 32 and occasionally Spybot.

 

Any help you can offer will ber grrrreatly appreciated.

 

Regards

Gareth

 

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:05-03-2016 01
Ran by Gareth (administrator) on GARETH-PC (28-03-2016 22:18:42)
Running from C:\Users\Gareth\Downloads\Programs
Loaded Profiles: Gareth (Available Profiles: Gareth)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: English (United States)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo...very-scan-tool/
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(Creative Technology Ltd) C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
(Acronis) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe
(Acronis) C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe
(Schneider Electric) C:\Program Files (x86)\APC\PowerChute Personal Edition\mainserv.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
() C:\Program Files (x86)\Allway Sync\Bin\SyncService.exe
(CHENGDU YIWO Tech Development Co., Ltd) C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
() C:\Program Files (x86)\OpenVPN Technologies\PrivateTunnel\ovpnagent.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Schneider Electric) C:\Program Files (x86)\APC\PowerChute Personal Edition\dataserv.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
() C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler64.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Acronis) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Logitech, Inc.) C:\Program Files\Logitech\SetPointP\SetPoint.exe
(Ashampoo Development GmbH & Co. KG) C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\LiveTuner2.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe
(Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\ScanSoft\OmniPageSE4\OpWareSE4.exe
() C:\Program Files (x86)\EaseUS\TrayPopup\TrayTipAgent.exe
(CANON INC.) C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe
(CANON INC.) C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE
(Acronis) C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe
(Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe
(Logitech, Inc.) C:\Program Files\Common Files\Logishrd\KHAL3\KHALMNPR.exe
(Corsair Components  Inc) C:\Program Files (x86)\Corsair\K50 Keyboard\K50Hid.exe
(Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Creative Technology Ltd) C:\Program Files (x86)\Creative\USB Sound Blaster HD\Volume Panel\VolPanlu.exe
(Corsair Components  Inc) C:\Program Files (x86)\Corsair\K50 Keyboard\CorsTra.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Microsoft Corporation) C:\Windows\splwow64.exe
(CANON INC.) C:\Program Files (x86)\Canon\Quick Menu\CNQMUPDT.EXE
(Schneider Electric) C:\Program Files (x86)\APC\PowerChute Personal Edition\apcsystray.exe
(Microsoft Corporation) C:\Windows\System32\vds.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
(Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Acronis) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe
() C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\LiveTunerService.exe
(Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IDMan.exe
(Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe
 
 
==================== Registry (Whitelisted) ===========================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [AtherosBtStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [617120 2011-03-13] (Atheros Commnucations)
HKLM\...\Run: [AthBtTray] => C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [379552 2011-03-13] (Atheros Commnucations)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11613288 2010-11-19] (Realtek Semiconductor)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2789248 2016-02-17] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => "C:\Windows\system32\rundll32.exe" C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [Acronis Scheduler2 Service] => C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [518424 2013-07-18] (Acronis)
HKLM\...\Run: [EvtMgr6] => C:\Program Files\Logitech\SetPointP\SetPoint.exe [3113592 2015-08-26] (Logitech, Inc.)
HKLM\...\Run: [Ashampoo WinOptimizer Live-Tuner2] => C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\LiveTuner2.exe [3822416 2016-01-20] (Ashampoo Development GmbH & Co. KG)
HKLM-x32\...\Run: [NUSB3MON] => C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-11-17] (Renesas Electronics Corporation)
HKLM-x32\...\Run: [JMB36X IDE Setup] => C:\Windows\RaidTool\xInsIDE.exe
HKLM-x32\...\Run: [OpwareSE4] => C:\Program Files (x86)\ScanSoft\OmniPageSE4\OpwareSE4.exe [79400 2007-02-04] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [EaseUS TB Tray Agent] => C:\Program Files (x86)\EaseUS\TrayPopup\TrayTipAgent.exe [253992 2015-12-10] ()
HKLM-x32\...\Run: [IJNetworkScannerSelectorEX] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [449168 2012-03-26] (CANON INC.)
HKLM-x32\...\Run: [CanonQuickMenu] => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1298456 2015-04-20] (CANON INC.)
HKLM-x32\...\Run: [TrueImageMonitor.exe] => C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe [7805936 2014-02-04] (Acronis)
HKLM-x32\...\Run: [AcronisTibMounterMonitor] => C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe [1102192 2013-10-10] (Acronis International GmbH)
HKLM-x32\...\Run: [Corsair K50] => C:\Program Files (x86)\Corsair\K50 Keyboard\K50Hid.exe [1787904 2013-08-06] (Corsair Components  Inc)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Display] => C:\Program Files (x86)\APC\PowerChute Personal Edition\DataCollectionLauncher.exe [284024 2012-01-24] (Schneider Electric)
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [23248464 2016-03-23] (Dropbox, Inc.)
HKLM-x32\...\Run: [VolPanel] => C:\Program Files (x86)\Creative\USB Sound Blaster HD\Volume Panel\VolPanlu.exe [241757 2010-12-08] (Creative Technology Ltd)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.)
Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
HKU\S-1-5-21-778663071-3000615460-497893972-1000\...\Run: [TIDAL] => [X]
HKU\S-1-5-21-778663071-3000615460-497893972-1000\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [60688 2015-11-30] (Apple Inc.)
HKU\S-1-5-21-778663071-3000615460-497893972-1000\...\Run: [iCloudPhotos] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe [349968 2015-11-30] (Apple Inc.)
ShellIconOverlayIdentifiers: [   IDM Shell Extension] -> {CDC95B92-E27C-4745-A8C5-64A52A78855D} => C:\Program Files (x86)\Internet Download Manager\IDMShellExt64.dll [2015-08-14] (Tonec Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.30.dll [2016-03-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.30.dll [2016-03-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.30.dll [2016-03-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.30.dll [2016-03-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.30.dll [2016-03-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.30.dll [2016-03-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.30.dll [2016-03-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.30.dll [2016-03-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [AcronisSyncError] -> {934BC6C0-FEC2-4df5-A100-961DE2C8A0ED} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll [2013-10-01] ()
ShellIconOverlayIdentifiers: [AcronisSyncInProgress] -> {00F848DC-B1D4-4892-9C25-CAADC86A215D} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll [2013-10-01] ()
ShellIconOverlayIdentifiers: [AcronisSyncOk] -> {71573297-552E-46fc-BE3D-3DFAF88D47B7} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll [2013-10-01] ()
ShellIconOverlayIdentifiers-x32: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll [2016-03-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll [2016-03-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll [2016-03-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll [2016-03-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll [2016-03-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll [2016-03-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll [2016-03-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.30.dll [2016-03-23] (Dropbox, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\APC UPS Status.lnk [2016-03-15]
ShortcutTarget: APC UPS Status.lnk -> C:\Program Files (x86)\APC\PowerChute Personal Edition\Display.exe (Schneider Electric)
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{3C3627DB-44A5-4CEF-BCF9-60B36EF6E8BA}: [DhcpNameServer] 192.168.0.1
 
Internet Explorer:
==================
BHO: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll [2015-12-08] (Internet Download Manager, Tonec Inc.)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2015-08-26] (Logitech, Inc.)
BHO-x32: IDM integration (IDMIEHlprObj Class) -> {0055C089-8582-441B-A0BF-17B458C2A3A8} -> C:\Program Files (x86)\Internet Download Manager\IDMIECC.dll [2015-12-08] (Internet Download Manager, Tonec Inc.)
BHO-x32: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2011-03-13] (Atheros Commnucations)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO-x32: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll [2015-08-26] (Logitech, Inc.)
DPF: HKLM-x32 {6C269571-C6D7-4818-BCA4-32A035E8C884} 
DPF: HKLM-x32 {D4B68B83-8710-488B-A692-D74B50BA558E} 
DPF: HKLM-x32 {F6ACF75C-C32C-447B-9BEF-46B766368D29} hxxp://files.creative.com/Web/softwareupdate/ocx/150323/CTPID.cab
 
FireFox:
========
FF ProfilePath: C:\Users\Gareth\AppData\Roaming\Mozilla\Firefox\Profiles\weu19b0a.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_21_0_0_197.dll [2016-03-24] ()
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-12] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_197.dll [2016-03-24] ()
FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL [2014-07-28] (CANON INC.)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2015-12-29] (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2015-12-29] (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2015-12-29] (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2015-12-29] (Foxit Corporation)
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2015-05-21] (Google)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-12] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-02-09] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-02-09] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-18] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-18] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-01-21] (VideoLAN)
FF Extension: IDM integration - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi [2016-03-10]
FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi [2016-03-20] [not signed]
FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt
FF Extension: Logitech SetPoint - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2016-03-03] [not signed]
FF HKU\S-1-5-21-778663071-3000615460-497893972-1000\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi
FF HKU\S-1-5-21-778663071-3000615460-497893972-1000\...\SeaMonkey\Extensions: [[email protected]] - C:\Users\Gareth\AppData\Roaming\IDM\idmmzcc5
FF Extension: IDM CC - C:\Users\Gareth\AppData\Roaming\IDM\idmmzcc5 [2016-03-28] [not signed]
FF HKU\S-1-5-21-778663071-3000615460-497893972-1000\...\SeaMonkey\Extensions: [[email protected]] - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi
 
Chrome: 
=======
CHR HomePage: Default -> hxxp://www.google.com/ig#m_1
CHR StartupUrls: Default -> "hxxp://www.bbc.com/news/uk"
CHR Profile: C:\Users\Gareth\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Translate) - C:\Users\Gareth\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2016-02-18]
CHR Extension: (Google Slides) - C:\Users\Gareth\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-02-18]
CHR Extension: (Duolingo on the Web) - C:\Users\Gareth\AppData\Local\Google\Chrome\User Data\Default\Extensions\aiahmijlpehemcpleichkcokhegllfjl [2016-02-18]
CHR Extension: (PasswordBox - Log in with 1-Click) - C:\Users\Gareth\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajgnnllmjadopdlmpplonojbfogkjlcl [2016-02-18]
CHR Extension: (Google Translate Pad) - C:\Users\Gareth\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajgpafgiahigeanbnnmdbnkdkllhjndl [2016-02-18]
CHR Extension: (Gold Price Charts, Silver Price Charts & News) - C:\Users\Gareth\AppData\Local\Google\Chrome\User Data\Default\Extensions\animfandjbomecobenkahkholebdiihi [2016-02-18]
CHR Extension: (Google Drive) - C:\Users\Gareth\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-02-18]
CHR Extension: (Keeper® Password Manager) - C:\Users\Gareth\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfogiafebfohielmmehodmfbbebbbpei [2016-02-24]
CHR Extension: (YouTube) - C:\Users\Gareth\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-02-18]
CHR Extension: (Adblock Plus) - C:\Users\Gareth\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-03-09]
CHR Extension: (Google Search) - C:\Users\Gareth\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2016-02-18]
CHR Extension: (WGT Golf Challenge) - C:\Users\Gareth\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcilimldmomiaihcfkmaldanopfejefg [2016-02-18]
CHR Extension: (Logitech Smooth Scrolling) - C:\Users\Gareth\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkpejdfnpdkhifgbancbammdijojoffk [2016-02-18]
CHR Extension: (Google Sheets) - C:\Users\Gareth\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-02-18]
CHR Extension: (iCloud Bookmarks) - C:\Users\Gareth\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkepacicchenbjecpbpbclokcabebhah [2016-02-18]
CHR Extension: (Musixmatch Lyrics for YouTube) - C:\Users\Gareth\AppData\Local\Google\Chrome\User Data\Default\Extensions\gfenjblodoldnbiddmggcbkcapiolbig [2016-02-18]
CHR Extension: (Google Docs Offline) - C:\Users\Gareth\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-15]
CHR Extension: (Dictionary by Dictionary.com) - C:\Users\Gareth\AppData\Local\Google\Chrome\User Data\Default\Extensions\gikhgcaliglmioibbockkmjknfnepbdh [2016-02-18]
CHR Extension: (Open PayPal) - C:\Users\Gareth\AppData\Local\Google\Chrome\User Data\Default\Extensions\glghgmejmmepalcnengjekjfmfbailbl [2016-02-18]
CHR Extension: (World Time Buddy) - C:\Users\Gareth\AppData\Local\Google\Chrome\User Data\Default\Extensions\jdhpjomiingppeefgnohkiapmnaeakoj [2016-02-18]
CHR Extension: (Zoho Writer) - C:\Users\Gareth\AppData\Local\Google\Chrome\User Data\Default\Extensions\jgaeidloagadfcohacebhbkkapgpiddj [2016-02-18]
CHR Extension: (Bubble Translate) - C:\Users\Gareth\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlhlebbhengjlhmcjebbkambaekglhkf [2016-02-18]
CHR Extension: (Autodesk Homestyler) - C:\Users\Gareth\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdmmkfaghgcicheaimnpffeeekheafkb [2016-02-18]
CHR Extension: (SparkChess 8) - C:\Users\Gareth\AppData\Local\Google\Chrome\User Data\Default\Extensions\khgabmflimjjbclkmljlpmgaleanedem [2016-02-18]
CHR Extension: (Google Docs Viewer (by Google)) - C:\Users\Gareth\AppData\Local\Google\Chrome\User Data\Default\Extensions\kkjmcfdcdbbkdacicmpokoddagejpknh [2016-02-18]
CHR Extension: (Currency Converter) - C:\Users\Gareth\AppData\Local\Google\Chrome\User Data\Default\Extensions\lbhghjdcfghfhlogkgdklfgmpodeglno [2016-02-18]
CHR Extension: (Google Maps) - C:\Users\Gareth\AppData\Local\Google\Chrome\User Data\Default\Extensions\lneaknkopdijkpnocmklfnjbeapigfbh [2016-02-18]
CHR Extension: (Google Dictionary (by Google)) - C:\Users\Gareth\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgijmajocgfcbeboacabfgobmjgjcoja [2016-02-24]
CHR Extension: (IDM Integration Module) - C:\Users\Gareth\AppData\Local\Google\Chrome\User Data\Default\Extensions\ngpampappnmepgilojfohadhhmbhlaek [2016-03-17]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Gareth\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-02-18]
CHR Extension: (Evernote Web Clipper) - C:\Users\Gareth\AppData\Local\Google\Chrome\User Data\Default\Extensions\pioclpoplcdbaefihamjohnefbikjilc [2016-03-02]
CHR Extension: (Gmail) - C:\Users\Gareth\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-02-18]
CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2016-03-11]
CHR HKLM-x32\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2016-03-11]
 
==================== Services (Whitelisted) ========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R2 APC Data Service; C:\Program Files (x86)\APC\PowerChute Personal Edition\dataserv.exe [21880 2012-01-24] (Schneider Electric)
R2 APC UPS Service; C:\Program Files (x86)\APC\PowerChute Personal Edition\mainserv.exe [705912 2012-01-24] (Schneider Electric)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77104 2015-10-07] (Apple Inc.)
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [74912 2011-03-13] (Atheros Commnucations) [File not signed]
R2 BotkindSyncService; C:\Program Files (x86)\Allway Sync\Bin\SyncService.exe [182784 2015-10-29] () [File not signed]
R2 CTAudSvcService; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [286720 2010-02-12] (Creative Technology Ltd) [File not signed]
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-03-22] (Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-03-22] (Dropbox, Inc.)
R2 EaseUS Agent; C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe [36904 2015-12-10] (CHENGDU YIWO Tech Development Co., Ltd)
R2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2519904 2016-03-19] (ESET)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1164672 2016-02-17] (NVIDIA Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1880960 2016-02-17] (NVIDIA Corporation)
R3 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [6474112 2016-02-17] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2609024 2016-02-17] (NVIDIA Corporation)
R2 ovpnagent; C:\Program Files (x86)\OpenVPN Technologies\PrivateTunnel\ovpnagent.exe [1491320 2016-01-23] ()
R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [6942480 2016-03-02] (TeamViewer GmbH)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
R2 WO_LiveService2; C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\LiveTunerService.exe [231248 2016-01-20] ()
 
===================== Drivers (Whitelisted) ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R3 CORK50; C:\Windows\System32\drivers\CORK50.sys [25600 2012-08-10] ( )
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [264552 2016-03-19] (ESET)
S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [186784 2015-11-16] (ESET)
R2 epfwwfpr; C:\Windows\System32\DRIVERS\epfwwfpr.sys [170792 2016-03-19] (ESET)
S3 epmntdrv; C:\Windows\system32\epmntdrv.sys [18528 2014-11-18] ()
S3 epmntdrv; C:\Windows\SysWOW64\epmntdrv.sys [14944 2014-11-18] ()
R0 EUBKMON; C:\Windows\System32\drivers\EUBKMON.sys [48168 2015-12-10] ()
S3 EuGdiDrv; C:\Windows\system32\EuGdiDrv.sys [10848 2014-11-18] ()
S3 EuGdiDrv; C:\Windows\SysWOW64\EuGdiDrv.sys [10208 2014-11-18] ()
R2 LiveTuner2PM; C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\LiveTuner64.sys [14320 2014-03-20] ()
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [28032 2016-02-17] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [47760 2015-12-18] (NVIDIA Corporation)
R3 ptun0901; C:\Windows\System32\DRIVERS\ptun0901.sys [27136 2015-11-10] (The OpenVPN Project)
R3 SaiK075C; C:\Windows\System32\DRIVERS\SaiK075C.sys [181920 2016-02-02] (Saitek)
R3 SaiMini; C:\Windows\System32\DRIVERS\SaiMini.sys [23968 2016-02-02] (Saitek)
R3 SaiNtBus; C:\Windows\System32\drivers\SaiBus.sys [51616 2016-02-02] (Saitek)
R0 tib; C:\Windows\System32\DRIVERS\tib.sys [1120032 2016-02-17] (Acronis International GmbH)
R0 tib_mounter; C:\Windows\System32\DRIVERS\tib_mounter.sys [198432 2016-02-17] (Acronis International GmbH)
R0 vidsflt; C:\Windows\System32\DRIVERS\vidsflt.sys [117024 2016-02-17] (Acronis International GmbH)
S3 ALSysIO; \??\C:\Users\Gareth\AppData\Local\Temp\ALSysIO64.sys [X]
U3 DfSdkS; no ImagePath
 
==================== NetSvcs (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== One Month Created files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2016-03-28 22:18 - 2016-03-28 22:18 - 00000000 ____D C:\FRST
2016-03-28 22:10 - 2016-03-28 22:10 - 00000000 ___RD C:\Users\Gareth\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices
2016-03-28 17:03 - 2016-03-28 17:03 - 00415272 _____ C:\Windows\system32\FNTCACHE.DAT
2016-03-28 16:23 - 2016-03-28 16:23 - 00109296 _____ C:\Users\Gareth\AppData\Local\GDIPFONTCACHEV1.DAT
2016-03-28 16:17 - 2016-03-28 16:17 - 00000082 _____ C:\Users\Gareth\Documents\cc_20160328_161745.reg
2016-03-28 16:12 - 2013-01-25 11:08 - 00089600 _____ C:\Windows\SysWOW64\CmdRtr64.DLL
2016-03-28 16:12 - 2013-01-25 11:06 - 00328704 _____ C:\Windows\SysWOW64\APOMgr64.DLL
2016-03-28 16:11 - 2016-03-28 16:11 - 00003010 _____ C:\Windows\System32\Tasks\{D36577A2-C398-493F-84BA-6B617ECC74E5}
2016-03-28 16:11 - 2016-03-28 16:11 - 00003010 _____ C:\Windows\System32\Tasks\{79E23259-D4C8-4C6D-BC43-BD0C5076F08D}
2016-03-28 16:09 - 2016-03-28 16:09 - 00003014 _____ C:\Windows\System32\Tasks\{54D63A48-ECE3-4048-B964-3549F26127DA}
2016-03-28 16:01 - 2014-04-17 11:06 - 00175104 ____N (Creative Technology Ltd) C:\Windows\system32\CtUsAs64.DLL
2016-03-28 15:58 - 2016-03-28 15:58 - 00006962 _____ C:\Users\Gareth\Documents\cc_20160328_155810.reg
2016-03-28 15:56 - 2016-03-28 15:56 - 00096358 _____ C:\Users\Gareth\Documents\cc_20160328_155613.reg
2016-03-28 14:24 - 2016-03-28 14:24 - 00002794 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2016-03-28 14:24 - 2016-03-28 14:24 - 00000830 _____ C:\Users\Public\Desktop\CCleaner.lnk
2016-03-28 14:24 - 2016-03-28 14:24 - 00000830 _____ C:\ProgramData\Desktop\CCleaner.lnk
2016-03-28 14:24 - 2016-03-28 14:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2016-03-28 14:24 - 2016-03-28 14:24 - 00000000 ____D C:\Program Files\CCleaner
2016-03-27 23:04 - 2016-03-28 19:20 - 00000000 ____D C:\Program Files (x86)\TeamViewer
2016-03-27 23:04 - 2016-03-28 15:33 - 00000000 ____D C:\Users\Gareth\AppData\Roaming\TeamViewer
2016-03-27 23:04 - 2016-03-27 23:04 - 00001053 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 11.lnk
2016-03-27 23:04 - 2016-03-27 23:04 - 00001041 _____ C:\Users\Public\Desktop\TeamViewer 11.lnk
2016-03-27 23:04 - 2016-03-27 23:04 - 00001041 _____ C:\ProgramData\Desktop\TeamViewer 11.lnk
2016-03-25 17:55 - 2016-03-25 17:55 - 00000226 _____ C:\Users\Gareth\Desktop\Asus P8Z68 DELUXE Performance Results - UserBenchmark.URL
2016-03-25 11:57 - 2016-03-25 11:57 - 00001148 _____ C:\Users\Public\Desktop\Duplicate Cleaner.lnk
2016-03-25 11:57 - 2016-03-25 11:57 - 00001148 _____ C:\ProgramData\Desktop\Duplicate Cleaner.lnk
2016-03-25 11:57 - 2016-03-25 11:57 - 00000000 ____D C:\Users\Gareth\AppData\Roaming\DigitalVolcano
2016-03-25 11:57 - 2016-03-25 11:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Duplicate Cleaner Free
2016-03-25 11:57 - 2016-03-25 11:57 - 00000000 ____D C:\Program Files (x86)\Duplicate Cleaner
2016-03-25 11:53 - 2016-03-25 11:53 - 00000206 _____ C:\Users\Gareth\Desktop\NirSoft - freeware utilities password recovery, system utilities, desktop utilities.URL
2016-03-24 22:05 - 2016-03-24 22:07 - 00000000 ____D C:\3fcd56bc6987896e14736b5f90d9e017
2016-03-24 15:38 - 2016-03-24 15:38 - 00003236 _____ C:\Windows\System32\Tasks\{8AA51621-886D-4A65-85C1-B223581941C0}
2016-03-24 15:25 - 2016-03-24 15:38 - 00001277 _____ C:\Users\Gareth\Desktop\VFXCentral.lnk
2016-03-24 15:25 - 2016-03-24 15:25 - 00000000 ____D C:\Users\Gareth\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OldProp Solutions Inc
2016-03-24 15:25 - 2016-03-24 15:25 - 00000000 ____D C:\Program Files (x86)\OldProp Solutions Inc
2016-03-23 09:23 - 2016-03-23 09:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2016-03-22 22:06 - 2016-03-22 22:06 - 00000000 ____D C:\Users\Gareth\Desktop\AI Traffic Manager
2016-03-22 22:06 - 2016-03-22 22:06 - 00000000 ____D C:\Users\Gareth\AppData\Local\AirTrafficManager
2016-03-22 17:13 - 2016-03-22 17:13 - 00000000 ____D C:\ProgramData\Creative Labs
2016-03-22 16:56 - 2016-03-28 14:40 - 00000000 ____D C:\ProgramData\Creative
2016-03-22 16:55 - 2016-03-28 16:01 - 00000000 ___HD C:\Program Files (x86)\Creative Installation Information
2016-03-22 16:54 - 2016-03-28 16:21 - 00000000 ____D C:\Program Files (x86)\Creative
2016-03-22 16:54 - 2016-03-28 16:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Creative
2016-03-22 16:54 - 2016-03-28 16:01 - 00000000 ____D C:\Program Files\Creative
2016-03-22 16:54 - 2016-03-28 16:00 - 00002339 _____ C:\Users\Public\Desktop\Creative Product Registration.lnk
2016-03-22 16:54 - 2016-03-28 16:00 - 00002339 _____ C:\ProgramData\Desktop\Creative Product Registration.lnk
2016-03-22 16:54 - 2014-04-17 11:06 - 00163840 ____N (Creative Technology Ltd) C:\Windows\SysWOW64\CtUsAsio.DLL
2016-03-22 16:16 - 2016-03-22 16:16 - 00003014 _____ C:\Windows\System32\Tasks\{91FD1F86-90F5-4C9A-BB89-90258E2D367D}
2016-03-22 16:15 - 2016-03-22 16:15 - 00003274 _____ C:\Windows\System32\Tasks\{3C53C8FF-E516-4D98-864D-A4E6C73C88E7}
2016-03-22 16:14 - 2016-03-22 16:14 - 00003074 _____ C:\Windows\System32\Tasks\{DDAD9C5B-590A-4CCA-BC13-172752FA2236}
2016-03-22 15:29 - 2016-03-28 14:14 - 00001325 _____ C:\Users\Gareth\Desktop\FTX Central 2  (P3DV3 - Oceania).lnk
2016-03-22 15:21 - 2016-03-22 15:21 - 00003040 _____ C:\Users\Gareth\Desktop\Support.txt
2016-03-22 15:21 - 2016-03-22 15:20 - 00031931 _____ C:\Users\Gareth\Desktop\CTSi.cab
2016-03-22 15:21 - 2016-03-22 15:15 - 00726532 _____ C:\Users\Gareth\Desktop\CTSi.txt
2016-03-22 15:21 - 2016-03-22 15:15 - 00726532 _____ C:\Users\Gareth\CTSi.txt
2016-03-22 00:33 - 2016-03-28 22:10 - 00000000 ___RD C:\Users\Gareth\Dropbox
2016-03-22 00:33 - 2016-03-22 00:33 - 00001232 _____ C:\Users\Gareth\Desktop\Dropbox.lnk
2016-03-22 00:30 - 2016-03-22 00:30 - 00000000 ____D C:\Users\Gareth\AppData\Roaming\Dropbox
2016-03-22 00:28 - 2016-03-28 22:10 - 00000904 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job
2016-03-22 00:28 - 2016-03-28 22:01 - 00000908 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job
2016-03-22 00:28 - 2016-03-23 09:23 - 00000000 ____D C:\Program Files (x86)\Dropbox
2016-03-22 00:28 - 2016-03-23 09:21 - 00000000 ____D C:\Users\Gareth\AppData\Local\Dropbox
2016-03-22 00:28 - 2016-03-22 00:28 - 00003904 _____ C:\Windows\System32\Tasks\DropboxUpdateTaskMachineUA
2016-03-22 00:28 - 2016-03-22 00:28 - 00003652 _____ C:\Windows\System32\Tasks\DropboxUpdateTaskMachineCore
2016-03-22 00:28 - 2016-03-22 00:28 - 00000000 ____D C:\ProgramData\Dropbox
2016-03-22 00:12 - 2016-03-09 00:37 - 33225861 _____ C:\Users\Gareth\Desktop\Cessna Citation Mustang for P3D Pilot's Guide.pdf
2016-03-21 17:32 - 2016-03-21 17:32 - 00000312 _____ C:\Users\Gareth\Desktop\IPHONE 5C 16GB Negro class A - CON 12 meses de GARANTÍA eBay.URL
2016-03-20 22:43 - 2016-03-20 22:43 - 00000000 ____D C:\Users\Gareth\AppData\Roaming\Flight One Software
2016-03-20 22:42 - 2016-03-20 22:42 - 00001479 _____ C:\Users\Gareth\Desktop\revision_history.lnk
2016-03-20 22:42 - 2016-03-20 22:42 - 00000000 ____D C:\Users\Gareth\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flight One Software
2016-03-20 22:35 - 2016-03-21 10:01 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-03-20 22:04 - 2016-03-20 22:04 - 33256339 _____ C:\Users\Gareth\Desktop\Mustang  Guide.pdf
2016-03-20 20:50 - 2016-03-20 22:39 - 00000000 ____D C:\Windows\Flight1 Citation Mustang P3D
2016-03-20 20:49 - 2016-03-20 20:49 - 00002048 _____ C:\Windows\mstgp3d.lic
2016-03-20 09:08 - 2016-03-20 09:08 - 00000341 _____ C:\Users\Gareth\Desktop\Hotel Ilunion Alcalá Norte, Madrid, Spain - Booking.com.url
2016-03-18 09:43 - 2016-03-18 09:43 - 00000226 _____ C:\Users\Gareth\Desktop\Blurries - The Prepar3d Process Lassoo.URL
2016-03-17 15:13 - 2016-03-17 15:13 - 00000065 _____ C:\Windows\sbwin.ini
2016-03-17 14:39 - 2013-03-26 13:19 - 00040160 _____ C:\Windows\system32\kschimp.ini
2016-03-17 14:38 - 2016-03-28 16:12 - 00000245 ___RH C:\Windows\ctfile.rfc
2016-03-17 14:38 - 2016-03-28 16:00 - 00466520 _____ (Creative Labs) C:\Windows\system32\wrap_oal.dll
2016-03-17 14:38 - 2016-03-28 16:00 - 00445016 _____ (Creative Labs) C:\Windows\SysWOW64\wrap_oal.dll
2016-03-17 14:38 - 2016-03-28 16:00 - 00123480 _____ (Portions © Creative Labs Inc. and NVIDIA Corp.) C:\Windows\system32\OpenAL32.dll
2016-03-17 14:38 - 2016-03-28 16:00 - 00109144 _____ (Portions © Creative Labs Inc. and NVIDIA Corp.) C:\Windows\SysWOW64\OpenAL32.dll
2016-03-17 14:38 - 2014-04-25 17:29 - 01609728 _____ (Creative) C:\Windows\SysWOW64\Sens_oal.dll
2016-03-17 14:38 - 2014-04-25 16:33 - 01898496 ____N (Creative) C:\Windows\system32\Sens_oal.dll
2016-03-17 14:38 - 2013-03-26 18:04 - 01086464 _____ (Creative Technology Ltd.) C:\Windows\system32\KSAPO64.dll
2016-03-17 14:38 - 2013-03-26 18:03 - 00904192 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\KSAPO32.dll
2016-03-17 14:38 - 2013-03-26 17:31 - 01558528 _____ (Creative Technology Ltd.) C:\Windows\system32\Drivers\ksaud.sys
2016-03-17 14:38 - 2013-03-26 13:33 - 00011678 _____ C:\Windows\system32\MixerDefault.reg
2016-03-17 14:38 - 2013-03-26 13:33 - 00001975 _____ C:\Windows\system32\DeviceDefaultVista.reg
2016-03-17 14:38 - 2013-03-26 13:19 - 00032535 _____ C:\Windows\system32\ksaud.ini
2016-03-17 14:38 - 2010-07-14 15:12 - 00057856 _____ (Creative Technology Ltd.) C:\Windows\system32\KSPPLD64.dll
2016-03-17 14:38 - 2010-04-06 15:20 - 00239104 _____ (Creative Technology Ltd.) C:\Windows\system32\KSVSPI64.dll
2016-03-17 14:38 - 2010-04-06 15:19 - 00177152 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\KSVSPI32.dll
2016-03-17 14:38 - 2010-01-12 15:05 - 00109056 _____ (Creative Technology Ltd.) C:\Windows\system32\SBAVMon.dll
2016-03-17 14:38 - 2009-05-26 16:59 - 00026768 _____ C:\Windows\ksaudENG.reg
2016-03-17 14:38 - 2007-07-05 11:27 - 00002630 _____ C:\Windows\MixerName.reg
2016-03-17 14:38 - 2006-10-06 15:17 - 00053248 ____N (Creative Technology Ltd ) C:\Windows\Ctregrun.exe
2016-03-17 14:38 - 2003-06-13 00:25 - 00007062 _____ C:\Windows\SysWOW64\audiopid.vxd
2016-03-17 14:38 - 2000-05-22 17:58 - 00647872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Mscomct2.ocx
2016-03-17 14:35 - 2016-03-17 14:37 - 159481824 _____ (Creative Technology Ltd) C:\Users\Gareth\Desktop\XUHD_PCDRV_L11_1_02_0021a.exe
2016-03-17 09:15 - 2016-03-17 09:15 - 00000000 ____D C:\Users\Gareth\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Inputwish
2016-03-17 09:15 - 2016-03-17 09:15 - 00000000 ____D C:\Users\Gareth\AppData\Local\Deployment
2016-03-17 09:15 - 2016-03-17 09:15 - 00000000 ____D C:\Users\Gareth\AppData\Local\Apps\2.0
2016-03-17 09:00 - 2016-03-17 09:00 - 00000000 ____D C:\Users\Gareth\AppData\Local\Inputwish
2016-03-16 18:25 - 2016-03-16 18:26 - 00000000 ____D C:\Program Files (x86)\FSWidgets Network Pack
2016-03-16 18:25 - 2016-03-16 18:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FSWidgets - Network Pack
2016-03-16 17:35 - 2016-03-16 17:35 - 00000000 ____D C:\Windows\System32\Tasks\Apple
2016-03-16 17:35 - 2016-03-16 17:35 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2016-03-16 09:11 - 2016-03-16 09:11 - 00001682 _____ C:\Users\Public\Desktop\REX 4 - Texture Direct .lnk
2016-03-16 09:11 - 2016-03-16 09:11 - 00001682 _____ C:\ProgramData\Desktop\REX 4 - Texture Direct .lnk
2016-03-16 09:08 - 2016-03-16 09:08 - 00001658 _____ C:\Users\Public\Desktop\REX Soft Clouds.lnk
2016-03-16 09:08 - 2016-03-16 09:08 - 00001658 _____ C:\ProgramData\Desktop\REX Soft Clouds.lnk
2016-03-16 09:08 - 2016-03-16 09:08 - 00000000 ____D C:\ProgramData\Caphyon
2016-03-15 08:14 - 2016-03-15 08:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\APC
2016-03-15 08:13 - 2016-03-15 08:13 - 13923704 _____ (Schneider Electric) C:\Users\Gareth\PCPE Setup.exe
2016-03-15 08:13 - 2016-03-15 08:13 - 13338112 _____ C:\Users\Gareth\PCPE_3.0.1.msi
2016-03-15 08:13 - 2016-03-15 08:13 - 01079808 _____ (Microsoft Corporation) C:\Users\Gareth\mfc80u.dll
2016-03-15 08:13 - 2016-03-15 08:13 - 00626688 _____ (Microsoft Corporation) C:\Users\Gareth\msvcr80.dll
2016-03-15 08:13 - 2016-03-15 08:13 - 00021880 _____ (Schneider Electric) C:\Users\Gareth\grm_res.dll
2016-03-15 08:13 - 2016-03-15 08:13 - 00021880 _____ (Schneider Electric) C:\Users\Gareth\fr_res.dll
2016-03-15 08:13 - 2016-03-15 08:13 - 00021368 _____ (Schneider Electric) C:\Users\Gareth\pt_res.dll
2016-03-15 08:13 - 2016-03-15 08:13 - 00021368 _____ (Schneider Electric) C:\Users\Gareth\it_res.dll
2016-03-15 08:13 - 2016-03-15 08:13 - 00021368 _____ (Schneider Electric) C:\Users\Gareth\es_res.dll
2016-03-15 08:13 - 2016-03-15 08:13 - 00021368 _____ (Schneider Electric) C:\Users\Gareth\en_res.dll
2016-03-15 08:13 - 2016-03-15 08:13 - 00020856 _____ (Schneider Electric) C:\Users\Gareth\ru_res.dll
2016-03-15 08:13 - 2016-03-15 08:13 - 00020344 _____ (Schneider Electric) C:\Users\Gareth\jp_res.dll
2016-03-15 08:13 - 2016-03-15 08:13 - 00019832 _____ (Schneider Electric) C:\Users\Gareth\zh_res.dll
2016-03-15 08:13 - 2016-03-15 08:13 - 00018808 _____ C:\Users\Gareth\ResourceReader.dll
2016-03-15 08:13 - 2016-03-15 08:13 - 00000550 _____ C:\Users\Gareth\Microsoft.VC80.MFC.manifest
2016-03-15 08:13 - 2016-03-15 08:13 - 00000522 _____ C:\Users\Gareth\Microsoft.VC80.CRT.manifest
2016-03-15 08:13 - 2016-03-15 08:13 - 00000035 _____ C:\Users\Gareth\dotnetfolder.txt
2016-03-14 16:58 - 2016-03-14 16:58 - 00000244 _____ C:\Users\Gareth\Desktop\Opus Camera Guide.URL
2016-03-14 16:36 - 2016-03-14 16:36 - 00000000 ____D C:\Users\Gareth\Documents\Prepar3D v2 Files
2016-03-14 16:24 - 2016-03-21 18:21 - 00000000 ____D C:\Users\Public\Documents\Fury_1500
2016-03-14 16:24 - 2016-03-21 18:21 - 00000000 ____D C:\ProgramData\Documents\Fury_1500
2016-03-14 16:24 - 2016-03-14 15:53 - 03084296 _____ C:\Users\Gareth\Downloads\Install_Content.msi
2016-03-14 15:54 - 2016-03-14 16:22 - 1739085956 _____ C:\Users\Gareth\Downloads\cont1.cab
2016-03-14 15:20 - 2016-03-25 11:36 - 00000000 ____D C:\PRO-ATC-X
2016-03-14 15:20 - 2016-03-14 15:20 - 00000612 _____ C:\Users\Gareth\Desktop\PRO-ATC-X.lnk
2016-03-14 15:20 - 2016-03-14 15:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PRO-ATC-X
2016-03-11 13:49 - 2016-01-28 11:20 - 00209056 _____ (Tonec Inc.) C:\Windows\system32\Drivers\idmwfp.sys
2016-03-11 08:34 - 2016-03-11 08:35 - 00000000 ___RD C:\Users\Gareth\Desktop\REX4
2016-03-10 23:57 - 2016-03-10 23:57 - 05575160 _____ (Mad catz ) C:\Users\Gareth\Downloads\Saitek_X52_Flight_Controller_7_0_53_6_x64_Drivers.exe
2016-03-10 23:57 - 2016-03-10 23:57 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_SaiK075C_01009.Wdf
2016-03-10 12:54 - 2016-03-14 18:09 - 00001203 _____ C:\Users\Public\Desktop\FS2Crew Deal.lnk
2016-03-10 12:54 - 2016-03-14 18:09 - 00001203 _____ C:\ProgramData\Desktop\FS2Crew Deal.lnk
2016-03-10 12:54 - 2016-03-10 12:54 - 00001361 _____ C:\Users\Public\Desktop\NGX Reboot Config.lnk
2016-03-10 12:54 - 2016-03-10 12:54 - 00001361 _____ C:\ProgramData\Desktop\NGX Reboot Config.lnk
2016-03-10 12:54 - 2016-03-10 12:54 - 00000000 ____D C:\Users\Gareth\AppData\Roaming\FS2Crew2010
2016-03-10 12:54 - 2016-03-10 12:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FS2Crew2015
2016-03-10 12:17 - 2016-03-10 12:17 - 00000000 ____D C:\ProgramData\MyTraffic
2016-03-10 11:31 - 2016-03-10 11:33 - 00000000 ____D C:\Users\Gareth\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyTraffic Professional 6.0a
2016-03-09 23:16 - 2016-03-09 23:16 - 00001227 _____ C:\Users\Public\Desktop\Navigraph FMS Data.lnk
2016-03-09 23:16 - 2016-03-09 23:16 - 00001227 _____ C:\ProgramData\Desktop\Navigraph FMS Data.lnk
2016-03-09 17:53 - 2016-03-16 09:10 - 00000000 ____D C:\REX Soft Clouds
2016-03-09 17:42 - 2016-03-16 09:11 - 00000000 ____D C:\REX Texture Direct
2016-03-09 17:42 - 2016-03-09 17:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\REX 4
2016-03-09 14:39 - 2016-02-09 08:53 - 00387792 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2016-03-09 14:39 - 2016-02-09 08:10 - 00341200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2016-03-09 14:39 - 2016-02-08 23:05 - 20352512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2016-03-09 14:39 - 2016-02-08 22:51 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2016-03-09 14:39 - 2016-02-08 22:39 - 00496640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2016-03-09 14:39 - 2016-02-08 22:39 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2016-03-09 14:39 - 2016-02-08 22:38 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2016-03-09 14:39 - 2016-02-08 22:38 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2016-03-09 14:39 - 2016-02-08 22:37 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2016-03-09 14:39 - 2016-02-08 22:34 - 02280448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2016-03-09 14:39 - 2016-02-08 22:32 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2016-03-09 14:39 - 2016-02-08 22:31 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2016-03-09 14:39 - 2016-02-08 22:30 - 00476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2016-03-09 14:39 - 2016-02-08 22:28 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2016-03-09 14:39 - 2016-02-08 22:28 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2016-03-09 14:39 - 2016-02-08 22:28 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2016-03-09 14:39 - 2016-02-08 22:20 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2016-03-09 14:39 - 2016-02-08 22:16 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2016-03-09 14:39 - 2016-02-08 22:15 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2016-03-09 14:39 - 2016-02-08 22:13 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2016-03-09 14:39 - 2016-02-08 22:12 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2016-03-09 14:39 - 2016-02-08 22:11 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2016-03-09 14:39 - 2016-02-08 22:10 - 04611072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2016-03-09 14:39 - 2016-02-08 22:10 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2016-03-09 14:39 - 2016-02-08 22:05 - 25816576 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2016-03-09 14:39 - 2016-02-08 22:03 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2016-03-09 14:39 - 2016-02-08 22:02 - 13012480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2016-03-09 14:39 - 2016-02-08 22:02 - 00687104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2016-03-09 14:39 - 2016-02-08 22:01 - 02050560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2016-03-09 14:39 - 2016-02-08 22:01 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2016-03-09 14:39 - 2016-02-08 21:43 - 02121216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2016-03-09 14:39 - 2016-02-08 21:39 - 01311744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2016-03-09 14:39 - 2016-02-08 21:38 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2016-03-09 14:39 - 2016-02-08 20:41 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2016-03-09 14:39 - 2016-02-08 20:41 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2016-03-09 14:39 - 2016-02-08 20:27 - 02887680 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2016-03-09 14:39 - 2016-02-08 20:27 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2016-03-09 14:39 - 2016-02-08 20:26 - 00571904 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2016-03-09 14:39 - 2016-02-08 20:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2016-03-09 14:39 - 2016-02-08 20:26 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2016-03-09 14:39 - 2016-02-08 20:26 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2016-03-09 14:39 - 2016-02-08 20:19 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2016-03-09 14:39 - 2016-02-08 20:18 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2016-03-09 14:39 - 2016-02-08 20:16 - 06052352 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2016-03-09 14:39 - 2016-02-08 20:15 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2016-03-09 14:39 - 2016-02-08 20:14 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2016-03-09 14:39 - 2016-02-08 20:14 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2016-03-09 14:39 - 2016-02-08 20:13 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2016-03-09 14:39 - 2016-02-08 20:13 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2016-03-09 14:39 - 2016-02-08 20:06 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2016-03-09 14:39 - 2016-02-08 20:03 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2016-03-09 14:39 - 2016-02-08 19:55 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-03-09 14:39 - 2016-02-08 19:54 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2016-03-09 14:39 - 2016-02-08 19:52 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2016-03-09 14:39 - 2016-02-08 19:51 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2016-03-09 14:39 - 2016-02-08 19:49 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2016-03-09 14:39 - 2016-02-08 19:47 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2016-03-09 14:39 - 2016-02-08 19:37 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2016-03-09 14:39 - 2016-02-08 19:35 - 00718336 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2016-03-09 14:39 - 2016-02-08 19:34 - 00798720 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2016-03-09 14:39 - 2016-02-08 19:33 - 14613504 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2016-03-09 14:39 - 2016-02-08 19:33 - 02123264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2016-03-09 14:39 - 2016-02-08 19:33 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2016-03-09 14:39 - 2016-02-08 19:19 - 02597376 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2016-03-09 14:39 - 2016-02-08 19:07 - 01546752 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2016-03-09 14:39 - 2016-02-08 18:55 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2016-03-09 14:37 - 2016-02-12 20:52 - 03169792 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2016-03-09 14:37 - 2016-02-12 20:52 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2016-03-09 14:37 - 2016-02-12 20:52 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2016-03-09 14:37 - 2016-02-12 20:44 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2016-03-09 14:37 - 2016-02-12 20:39 - 00174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2016-03-09 14:37 - 2016-02-12 20:22 - 02610688 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2016-03-09 14:37 - 2016-02-12 20:19 - 00709120 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2016-03-09 14:37 - 2016-02-12 20:18 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2016-03-09 14:37 - 2016-02-12 20:18 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2016-03-09 14:37 - 2016-02-12 20:18 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2016-03-09 14:37 - 2016-02-12 20:18 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2016-03-09 14:37 - 2016-02-12 20:18 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2016-03-09 14:37 - 2016-02-12 20:06 - 00573440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2016-03-09 14:37 - 2016-02-12 20:05 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2016-03-09 14:37 - 2016-02-12 20:05 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2016-03-09 14:37 - 2016-02-12 20:05 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2016-03-09 14:37 - 2016-02-04 19:52 - 03211264 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2016-03-09 14:37 - 2016-02-03 20:58 - 00862208 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2016-03-09 14:37 - 2016-02-03 20:52 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll
2016-03-09 14:37 - 2016-02-03 20:49 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2016-03-09 14:37 - 2016-02-03 20:43 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\asycfilt.dll
2016-03-09 14:37 - 2016-02-03 20:07 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS
2016-03-09 14:37 - 2016-01-11 21:11 - 01684416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2016-03-09 14:37 - 2015-11-19 16:07 - 00994760 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll
2016-03-09 14:37 - 2015-11-19 16:07 - 00063840 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2016-03-09 14:37 - 2015-11-19 16:07 - 00020832 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll
2016-03-09 14:37 - 2015-11-19 16:07 - 00019808 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2016-03-09 14:37 - 2015-11-19 16:07 - 00017760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll
2016-03-09 14:37 - 2015-11-19 16:07 - 00017760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2016-03-09 14:37 - 2015-11-19 16:07 - 00016224 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2016-03-09 14:37 - 2015-11-19 16:07 - 00015712 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2016-03-09 14:37 - 2015-11-19 16:07 - 00014176 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll
2016-03-09 14:37 - 2015-11-19 16:07 - 00014176 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
2016-03-09 14:37 - 2015-11-19 16:07 - 00013664 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2016-03-09 14:37 - 2015-11-19 16:07 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll
2016-03-09 14:37 - 2015-11-19 16:07 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2016-03-09 14:37 - 2015-11-19 16:07 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2016-03-09 14:37 - 2015-11-19 16:07 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2016-03-09 14:37 - 2015-11-19 16:07 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2016-03-09 14:37 - 2015-11-19 16:07 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2016-03-09 14:37 - 2015-11-19 16:07 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
2016-03-09 14:37 - 2015-11-19 16:07 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2016-03-09 14:37 - 2015-11-19 16:07 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2016-03-09 14:37 - 2015-11-19 16:07 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2016-03-09 14:37 - 2015-11-19 16:07 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
2016-03-09 14:37 - 2015-11-19 16:07 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
2016-03-09 14:37 - 2015-11-19 16:06 - 00922432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll
2016-03-09 14:37 - 2015-11-19 16:06 - 00066400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-private-l1-1-0.dll
2016-03-09 14:37 - 2015-11-19 16:06 - 00022368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-math-l1-1-0.dll
2016-03-09 14:37 - 2015-11-19 16:06 - 00019808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2016-03-09 14:37 - 2015-11-19 16:06 - 00017760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-string-l1-1-0.dll
2016-03-09 14:37 - 2015-11-19 16:06 - 00017760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2016-03-09 14:37 - 2015-11-19 16:06 - 00016224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2016-03-09 14:37 - 2015-11-19 16:06 - 00015712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll
2016-03-09 14:37 - 2015-11-19 16:06 - 00014176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-time-l1-1-0.dll
2016-03-09 14:37 - 2015-11-19 16:06 - 00014176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-2-0.dll
2016-03-09 14:37 - 2015-11-19 16:06 - 00013664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2016-03-09 14:37 - 2015-11-19 16:06 - 00012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-process-l1-1-0.dll
2016-03-09 14:37 - 2015-11-19 16:06 - 00012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll
2016-03-09 14:37 - 2015-11-19 16:06 - 00012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll
2016-03-09 14:37 - 2015-11-19 16:06 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll
2016-03-09 14:37 - 2015-11-19 16:06 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll
2016-03-09 14:37 - 2015-11-19 16:06 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll
2016-03-09 14:37 - 2015-11-19 16:06 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-2-0.dll
2016-03-09 14:37 - 2015-11-19 16:06 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2016-03-09 14:37 - 2015-11-19 16:06 - 00011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l2-1-0.dll
2016-03-09 14:37 - 2015-11-19 16:06 - 00011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-timezone-l1-1-0.dll
2016-03-09 14:37 - 2015-11-19 16:06 - 00011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l2-1-0.dll
2016-03-09 14:37 - 2015-11-19 16:06 - 00011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-2-0.dll
2016-03-09 14:32 - 2016-02-11 20:56 - 05572032 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2016-03-09 14:32 - 2016-02-11 20:56 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2016-03-09 14:32 - 2016-02-11 20:56 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2016-03-09 14:32 - 2016-02-11 20:52 - 01733592 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2016-03-09 14:32 - 2016-02-11 20:49 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2016-03-09 14:32 - 2016-02-11 20:49 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2016-03-09 14:32 - 2016-02-11 20:49 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2016-03-09 14:32 - 2016-02-11 20:49 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2016-03-09 14:32 - 2016-02-11 20:49 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2016-03-09 14:32 - 2016-02-11 20:49 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2016-03-09 14:32 - 2016-02-11 20:49 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2016-03-09 14:32 - 2016-02-11 20:49 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2016-03-09 14:32 - 2016-02-11 20:48 - 01214464 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2016-03-09 14:32 - 2016-02-11 20:48 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2016-03-09 14:32 - 2016-02-11 20:48 - 00344064 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2016-03-09 14:32 - 2016-02-11 20:48 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2016-03-09 14:32 - 2016-02-11 20:48 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2016-03-09 14:32 - 2016-02-11 20:47 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2016-03-09 14:32 - 2016-02-11 20:45 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2016-03-09 14:32 - 2016-02-11 20:45 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2016-03-09 14:32 - 2016-02-11 20:45 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2016-03-09 14:32 - 2016-02-11 20:45 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2016-03-09 14:32 - 2016-02-11 20:44 - 03994560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2016-03-09 14:32 - 2016-02-11 20:44 - 03938240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2016-03-09 14:32 - 2016-02-11 20:44 - 01461248 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2016-03-09 14:32 - 2016-02-11 20:44 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2016-03-09 14:32 - 2016-02-11 20:44 - 00730112 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2016-03-09 14:32 - 2016-02-11 20:44 - 00422400 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2016-03-09 14:32 - 2016-02-11 20:42 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2016-03-09 14:32 - 2016-02-11 20:42 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2016-03-09 14:32 - 2016-02-11 20:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2016-03-09 14:32 - 2016-02-11 20:41 - 01314328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2016-03-09 14:32 - 2016-02-11 20:41 - 00880128 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2016-03-09 14:32 - 2016-02-11 20:41 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2016-03-09 14:32 - 2016-02-11 20:41 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2016-03-09 14:32 - 2016-02-11 20:41 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:41 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:41 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:41 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:41 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:41 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:41 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:41 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:41 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:41 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:41 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:41 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:41 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:41 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:41 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:38 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2016-03-09 14:32 - 2016-02-11 20:38 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2016-03-09 14:32 - 2016-02-11 20:38 - 00275456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2016-03-09 14:32 - 2016-02-11 20:38 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2016-03-09 14:32 - 2016-02-11 20:38 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2016-03-09 14:32 - 2016-02-11 20:38 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2016-03-09 14:32 - 2016-02-11 20:38 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2016-03-09 14:32 - 2016-02-11 20:37 - 00251392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2016-03-09 14:32 - 2016-02-11 20:37 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2016-03-09 14:32 - 2016-02-11 20:37 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2016-03-09 14:32 - 2016-02-11 20:35 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2016-03-09 14:32 - 2016-02-11 20:35 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2016-03-09 14:32 - 2016-02-11 20:35 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2016-03-09 14:32 - 2016-02-11 20:34 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2016-03-09 14:32 - 2016-02-11 20:33 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2016-03-09 14:32 - 2016-02-11 20:31 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2016-03-09 14:32 - 2016-02-11 20:30 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2016-03-09 14:32 - 2016-02-11 20:30 - 00642560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2016-03-09 14:32 - 2016-02-11 20:30 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2016-03-09 14:32 - 2016-02-11 20:30 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:30 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:30 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:30 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:30 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:30 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:30 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:30 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:30 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:30 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:30 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:30 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:30 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 20:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 19:48 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2016-03-09 14:32 - 2016-02-11 19:43 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2016-03-09 14:32 - 2016-02-11 19:41 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2016-03-09 14:32 - 2016-02-11 19:40 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2016-03-09 14:32 - 2016-02-11 19:34 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2016-03-09 14:32 - 2016-02-11 19:34 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2016-03-09 14:32 - 2016-02-11 19:33 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2016-03-09 14:32 - 2016-02-11 19:32 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2016-03-09 14:32 - 2016-02-11 19:32 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2016-03-09 14:32 - 2016-02-11 19:32 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2016-03-09 14:32 - 2016-02-11 19:32 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2016-03-09 14:32 - 2016-02-11 19:32 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2016-03-09 14:32 - 2016-02-11 19:32 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2016-03-09 14:32 - 2016-02-11 19:31 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2016-03-09 14:32 - 2016-02-11 19:30 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 19:30 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 19:30 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2016-03-09 14:32 - 2016-02-11 19:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2016-03-09 14:31 - 2016-02-09 11:57 - 14634496 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2016-03-09 14:31 - 2016-02-09 11:57 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2016-03-09 14:31 - 2016-02-09 11:56 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2016-03-09 14:31 - 2016-02-09 11:56 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2016-03-09 14:31 - 2016-02-09 11:55 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\seclogon.dll
2016-03-09 14:31 - 2016-02-09 11:54 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2016-03-09 14:31 - 2016-02-09 11:51 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2016-03-09 14:31 - 2016-02-09 11:51 - 11411456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2016-03-09 14:31 - 2016-02-09 11:13 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll
2016-03-09 14:31 - 2016-02-09 11:13 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx
2016-03-09 14:31 - 2016-02-09 11:13 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll
2016-03-09 14:31 - 2016-02-05 20:54 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2016-03-09 14:31 - 2016-02-05 20:54 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2016-03-09 14:31 - 2016-02-05 20:53 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2016-03-09 14:31 - 2016-02-05 20:53 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2016-03-09 14:31 - 2016-02-05 20:50 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2016-03-09 14:31 - 2016-02-05 20:44 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2016-03-09 14:31 - 2016-02-05 20:42 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2016-03-09 14:31 - 2016-02-05 19:48 - 00372736 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2016-03-09 14:31 - 2016-02-05 19:43 - 00299520 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2016-03-09 14:31 - 2016-02-05 19:43 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2016-03-09 14:31 - 2016-02-05 03:19 - 00381440 _____ (Microsoft Corporation) C:\Windows\system32\mfds.dll
2016-03-09 14:31 - 2016-02-04 20:41 - 00296448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfds.dll
2016-03-09 14:04 - 2016-03-09 14:05 - 19298208 _____ C:\Users\Gareth\Downloads\SiteDownloadPat.php
2016-03-09 11:55 - 2016-03-09 17:51 - 00000000 ____D C:\rexdownload
2016-03-09 11:45 - 2016-03-09 11:45 - 00000000 ____D C:\Users\Gareth\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Orbx
2016-03-09 10:23 - 2016-03-09 10:23 - 00000000 ____D C:\Users\Gareth\AppData\Local\Foxit Reader
2016-03-09 10:20 - 2016-03-09 10:20 - 00000000 ____D C:\REX Download Manager
2016-03-09 10:20 - 2016-03-09 10:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\REX Game Studios
2016-03-09 10:19 - 2016-03-09 10:19 - 00000000 ____D C:\Users\Gareth\AppData\Roaming\REX Game Studios, LLC
2016-03-09 09:07 - 2016-02-19 21:02 - 00038336 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2016-03-09 09:07 - 2016-02-19 20:54 - 01168896 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2016-03-09 09:07 - 2016-02-19 16:07 - 01373184 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2016-03-09 09:07 - 2016-02-11 16:07 - 00689152 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2016-03-09 09:07 - 2016-02-05 16:07 - 00696832 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2016-03-09 09:07 - 2016-02-05 16:07 - 00499200 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2016-03-09 09:07 - 2016-02-05 16:07 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2016-03-08 14:09 - 2016-03-08 14:09 - 00001654 _____ C:\Users\Public\Desktop\Prepar3D v3.lnk
2016-03-08 14:09 - 2016-03-08 14:09 - 00001654 _____ C:\ProgramData\Desktop\Prepar3D v3.lnk
2016-03-08 14:09 - 2016-03-08 14:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lockheed Martin
2016-03-08 00:06 - 2016-03-08 00:06 - 08701472 _____ C:\Users\Gareth\Desktop\NGX   Tutorial.pdf
2016-03-07 12:03 - 2016-03-07 12:03 - 00000000 ___HD C:\ProgramData\CanonIJEGV
2016-03-07 12:02 - 2016-03-07 12:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MG5400 series Manual
2016-03-05 16:43 - 2016-03-11 08:39 - 00001230 _____ C:\Users\Gareth\Desktop\Prepar3D v3 Plans.lnk
2016-03-05 16:43 - 2016-03-11 08:37 - 00001318 _____ C:\Users\Gareth\Desktop\NGX Plans.lnk
2016-03-05 00:33 - 2016-03-09 23:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Navigraph FMS Data Manager
2016-03-05 00:29 - 2016-03-05 00:33 - 00000000 ____D C:\ProgramData\Navigraph
2016-03-05 00:29 - 2016-03-05 00:33 - 00000000 ____D C:\Program Files (x86)\Navigraph
2016-03-05 00:29 - 2016-03-05 00:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Navigraph Charts
2016-03-04 18:21 - 2016-03-04 18:21 - 09757080 _____ C:\Users\Gareth\Desktop\Pro-ATC.pdf
2016-03-04 17:57 - 2016-03-04 17:57 - 00000000 ____D C:\Users\Gareth\AppData\Roaming\PMDG
2016-03-04 10:25 - 2010-02-16 15:22 - 00222528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dblist32.Ocx
2016-03-04 10:25 - 2010-02-16 15:22 - 00126800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSWINSCK.ocx
2016-03-04 10:25 - 2008-09-16 16:46 - 00086016 _____ (10Tec Company) C:\Windows\SysWOW64\10Tec_hTooltip_100.dll
2016-03-04 10:25 - 2007-06-25 15:02 - 00475136 _____ (DMSoft Technologies) C:\Windows\SysWOW64\SkinCrafter2.dll
2016-03-04 10:25 - 2005-06-20 09:15 - 00132880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSINET.Ocx
2016-03-04 10:25 - 2005-04-13 05:00 - 00331784 _____ (VBGold Software) C:\Windows\SysWOW64\AResize.ocx
2016-03-04 10:25 - 2004-11-12 11:14 - 00036864 _____ (DMSoftTechnologies) C:\Windows\SysWOW64\SCLabel.ocx
2016-03-04 10:25 - 2003-11-13 16:44 - 00319488 _____ (Polar [email protected] www.polarsoftware.com) C:\Windows\SysWOW64\PolarZIPLight.dll
2016-03-04 10:25 - 2003-09-05 21:11 - 00139264 _____ (FreeVBCode.com) C:\Windows\SysWOW64\vbsendmail.dll
2016-03-04 10:25 - 2003-06-22 19:57 - 00094208 _____ (vbAccelerator) C:\Windows\SysWOW64\CMDLGD6.dll
2016-03-04 10:25 - 2002-05-30 13:08 - 00880640 _____ (SG InWare) C:\Windows\SysWOW64\SGPView4.ocx
2016-03-04 10:25 - 2001-04-19 14:04 - 00053248 _____ (Meelix Information Technology) C:\Windows\SysWOW64\PRNGMIT.dll
2016-03-04 10:25 - 2000-07-09 20:15 - 00106496 _____ (Marco Bellinaso) C:\Windows\SysWOW64\mbprgbar.ocx
2016-03-03 20:32 - 2016-03-03 20:32 - 01193175 _____ C:\Windows\unins000.exe
2016-03-03 20:32 - 2016-03-03 20:32 - 00037801 _____ C:\Windows\unins000.dat
2016-03-03 20:32 - 2016-03-03 20:32 - 00000000 ____D C:\Users\Gareth\AppData\Roaming\Corsair Software
2016-03-03 20:32 - 2016-03-03 20:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Corsair
2016-03-03 20:32 - 2016-03-03 20:32 - 00000000 ____D C:\Program Files (x86)\Corsair
2016-03-03 20:32 - 2012-08-10 18:44 - 00025600 _____ ( ) C:\Windows\system32\Drivers\CORK50.sys
2016-03-03 19:42 - 2016-03-03 19:42 - 00000000 ____D C:\Users\Gareth\AppData\Local\GMap.NET
2016-03-03 19:33 - 2016-03-03 19:33 - 00001603 _____ C:\Users\Gareth\Downloads\Opus_PMDG_737NGX.CDF
2016-03-03 19:32 - 2016-03-03 19:32 - 00000672 _____ C:\Users\Gareth\Downloads\Realair Duke Turbine_peebee.CDF
2016-03-03 17:35 - 2016-03-03 17:35 - 00000000 ____D C:\Users\Public\Documents\Logishrd
2016-03-03 17:35 - 2016-03-03 17:35 - 00000000 ____D C:\ProgramData\Documents\Logishrd
2016-03-03 17:34 - 2016-03-03 17:35 - 00000000 ____D C:\ProgramData\Logishrd
2016-03-03 17:34 - 2016-03-03 17:34 - 00018960 _____ (Logitech, Inc.) C:\Windows\system32\Drivers\LNonPnP.sys
2016-03-03 17:34 - 2016-03-03 17:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech
2016-03-03 17:34 - 2016-03-03 17:34 - 00000000 ____D C:\Program Files\Logitech
2016-03-03 17:34 - 2016-03-03 17:34 - 00000000 ____D C:\Program Files\Common Files\Logishrd
2016-03-03 17:32 - 2016-03-03 17:35 - 00000000 ____D C:\Users\Gareth\AppData\Roaming\Logitech
2016-03-03 17:32 - 2016-03-03 17:32 - 00000000 ____D C:\Users\Gareth\AppData\Roaming\Logishrd
2016-03-03 17:08 - 2016-03-28 14:09 - 00000000 ____D C:\ProgramData\firebird
2016-03-03 17:08 - 2015-08-25 14:35 - 00057344 _____ (Peter L. Dowson) C:\MakeRwys.exe
2016-03-03 16:33 - 2016-03-17 09:27 - 00000000 ___RD C:\Users\Gareth\Desktop\MISC
2016-03-03 08:22 - 2016-03-03 08:22 - 00000000 ____D C:\Users\Gareth\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Free FLV Player
2016-03-03 08:22 - 2016-03-03 08:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free FLV Player
2016-03-03 08:22 - 2016-03-03 08:22 - 00000000 ____D C:\Program Files\Free FLV Player
2016-03-02 16:34 - 2016-03-02 16:50 - 00000000 ____D C:\Users\Gareth\AppData\Roaming\iFunbox_UserCache
2016-03-02 16:34 - 2016-03-02 16:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\i-Funbox DevTeam
2016-03-02 16:34 - 2016-03-02 16:34 - 00000000 ____D C:\Program Files (x86)\i-Funbox DevTeam
2016-03-02 16:11 - 2016-03-03 07:37 - 00000000 ____D C:\Users\Gareth\Documents\SynciOS Data Recovery
2016-03-02 16:10 - 2016-03-02 16:10 - 25888704 _____ (Anvsoft, Inc. ) C:\Users\Gareth\Downloads\syncios-data-recovery.exe
2016-03-02 16:09 - 2016-03-02 16:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Syncios
2016-03-02 16:09 - 2016-03-02 16:09 - 00000000 ____D C:\Program Files (x86)\Syncios
2016-03-02 16:07 - 2016-03-02 16:08 - 66390912 _____ (Anvsoft, Inc. ) C:\Users\Gareth\Downloads\setup_syncios.exe
2016-03-01 20:24 - 2016-03-01 20:24 - 00053881 _____ C:\Users\Gareth\Downloads\Predicación Pública Organizada por la Congregación - Formstack.html
2016-03-01 20:24 - 2016-03-01 20:24 - 00000000 ____D C:\Users\Gareth\Downloads\Predicación Pública Organizada por la Congregación - Formstack_files
2016-03-01 13:57 - 2016-03-01 14:03 - 00000000 ____D C:\Users\Gareth\AppData\Local\UmmyVideoDownloader
2016-03-01 13:57 - 2016-03-01 13:57 - 14664456 _____ ( ) C:\Users\Gareth\Downloads\UmmyVideoDownloader_setup.exe
2016-03-01 13:57 - 2016-03-01 13:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UmmyVideoDownloader
2016-03-01 13:53 - 2016-03-01 13:53 - 02382728 _____ C:\Users\Gareth\Downloads\UmmyVD-Web-Loader.exe
2016-03-01 08:46 - 2016-03-21 08:59 - 00000000 ___RD C:\Users\Gareth\iCloudDrive
2016-03-01 08:46 - 2016-03-01 08:46 - 00000000 ____D C:\Users\Gareth\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\iCloud
2016-03-01 08:46 - 2016-03-01 08:46 - 00000000 ____D C:\Users\Gareth\AppData\Local\Apple Inc
2016-02-29 14:47 - 2016-02-29 14:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
2016-02-29 14:41 - 2016-03-16 17:35 - 00002563 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2016-02-29 14:41 - 2016-03-03 07:45 - 00000000 ____D C:\Users\Gareth\AppData\Roaming\Syncios
2016-02-29 14:41 - 2016-03-01 08:59 - 00000000 ____D C:\Users\Gareth\AppData\Local\Apple
2016-02-29 14:41 - 2016-02-29 14:47 - 00000000 ____D C:\Users\Gareth\AppData\Local\Apple Computer
2016-02-29 14:25 - 2016-02-29 14:25 - 00000000 ____D C:\Users\Gareth\AppData\Roaming\ThinkSky
2016-02-29 11:25 - 2016-02-29 16:20 - 00000000 ____D C:\Users\Gareth\AppData\Roaming\WindSolutions
2016-02-29 11:25 - 2016-02-29 11:28 - 00000000 ____D C:\ProgramData\WindSolutions
2016-02-29 11:17 - 2016-03-03 07:51 - 00000000 ____D C:\Users\Gareth\AppData\Roaming\Apple Computer
2016-02-29 11:17 - 2016-03-03 07:51 - 00000000 ____D C:\ProgramData\Apple Computer
2016-02-29 11:17 - 2016-03-03 07:50 - 00000000 ____D C:\Program Files\Common Files\Apple
2016-02-29 11:17 - 2016-02-29 14:20 - 00000000 ____D C:\Program Files (x86)\ThinkSky
2016-02-29 11:17 - 2016-02-29 11:17 - 00000000 ____D C:\ProgramData\Apple
2016-02-29 11:06 - 2016-02-29 11:06 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2016-02-29 11:05 - 2016-03-21 08:59 - 00000000 ____D C:\Users\Gareth\AppData\Roaming\SynciOS Data Transfer
2016-02-29 11:05 - 2016-03-17 19:01 - 00000000 ____D C:\Users\Gareth\.android
2016-02-29 11:05 - 2016-02-29 11:05 - 00000000 ____D C:\Users\Gareth\AppData\Local\CrashRpt
 
==================== One Month Modified files and folders ========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2016-03-28 22:18 - 2016-02-15 10:00 - 00000000 ____D C:\Users\Gareth\AppData\Roaming\DMCache
2016-03-28 22:18 - 2009-07-14 06:45 - 00020496 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-03-28 22:18 - 2009-07-14 06:45 - 00020496 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-03-28 22:17 - 2009-07-14 07:13 - 00781298 _____ C:\Windows\system32\PerfStringBackup.INI
2016-03-28 22:17 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\inf
2016-03-28 22:10 - 2016-02-18 15:47 - 00000894 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-03-28 22:10 - 2016-02-15 14:56 - 00000000 ____D C:\ProgramData\NVIDIA
2016-03-28 22:10 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-03-28 22:09 - 2016-02-16 14:29 - 00036639 _____ C:\Windows\SysWOW64\PCPELog.txt
2016-03-28 22:03 - 2016-02-15 10:00 - 00000000 ____D C:\Users\Gareth\AppData\Roaming\IDM
2016-03-28 22:01 - 2016-02-18 15:47 - 00000898 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-03-28 22:01 - 2016-02-16 14:54 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-03-28 20:37 - 2016-02-15 09:11 - 00000000 ____D C:\Users\Gareth\Documents\Bluetooth Folder
2016-03-28 19:34 - 2016-02-15 09:13 - 00000000 ____D C:\ProgramData\Atheros
2016-03-28 19:17 - 2016-02-16 12:39 - 00000000 ____D C:\Users\Gareth\AppData\Local\CrashDumps
2016-03-28 16:14 - 2016-02-15 09:10 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2016-03-28 16:12 - 2009-07-14 07:32 - 00000000 ____D C:\Windows\Downloaded Program Files
2016-03-28 16:05 - 2016-02-15 15:44 - 00000000 ___RD C:\Users\Gareth\Desktop\Hold-Delete
2016-03-28 13:17 - 2016-02-15 18:39 - 00000000 ____D C:\Users\Gareth\Documents\Prepar3D v3 Files
2016-03-28 12:56 - 2016-02-15 15:50 - 00000000 ____D C:\OpusFSI
2016-03-26 18:04 - 2016-02-21 19:52 - 00000000 ___RD C:\Users\Gareth\Desktop\NI
2016-03-26 00:09 - 2016-02-16 14:08 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2016-03-25 17:00 - 2016-02-15 14:41 - 00000412 _____ C:\Windows\Tasks\One-Click Optimizer WO12.job
2016-03-25 13:04 - 2016-02-15 10:00 - 00000000 ____D C:\Users\Gareth\Downloads\Video
2016-03-25 10:54 - 2016-02-15 10:00 - 00000000 ____D C:\Users\Gareth\Downloads\Compressed
2016-03-24 22:06 - 2016-02-15 12:19 - 00765280 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2016-03-24 16:59 - 2016-02-16 14:54 - 00797376 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2016-03-24 16:59 - 2016-02-16 14:54 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2016-03-24 16:59 - 2016-02-16 14:54 - 00003768 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2016-03-24 08:23 - 2016-02-15 14:22 - 00000000 ___SD C:\Windows\SysWOW64\GWX
2016-03-24 08:23 - 2016-02-15 14:22 - 00000000 ___SD C:\Windows\system32\GWX
2016-03-22 23:36 - 2016-02-15 23:59 - 00000000 ____D C:\Users\Gareth\AppData\Roaming\vlc
2016-03-22 17:47 - 2016-02-16 21:31 - 00000000 ____D C:\Users\Gareth\AppData\Local\ElevatedDiagnostics
2016-03-22 17:12 - 2009-07-14 07:08 - 00032636 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2016-03-22 15:21 - 2016-02-13 21:04 - 00000000 ____D C:\Users\Gareth
2016-03-21 23:40 - 2016-02-15 10:43 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2016-03-21 23:38 - 2016-02-16 14:47 - 00000000 ____D C:\Users\Gareth\AppData\Local\PrivateTunnel
2016-03-21 09:07 - 2016-02-21 08:43 - 00000000 ____D C:\Windows\pss
2016-03-20 20:49 - 2016-02-18 12:24 - 00000000 ____D C:\Flight One Software
2016-03-19 23:37 - 2015-11-16 13:21 - 00264552 _____ (ESET) C:\Windows\system32\Drivers\eamonm.sys
2016-03-19 23:37 - 2015-11-16 13:21 - 00170792 _____ (ESET) C:\Windows\system32\Drivers\epfwwfpr.sys
2016-03-17 19:01 - 2016-02-15 10:00 - 00000000 ____D C:\Program Files (x86)\Internet Download Manager
2016-03-17 19:01 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\registration
2016-03-16 23:37 - 2016-02-16 15:40 - 00000000 ____D C:\Users\Gareth\Documents\Working files
2016-03-15 20:52 - 2016-02-16 14:53 - 00000000 ____D C:\Users\Gareth\AppData\Local\Adobe
2016-03-15 09:23 - 2016-02-18 12:02 - 00000000 ____D C:\ProgramData\Flight One Software
2016-03-15 08:14 - 2016-02-16 13:43 - 00000000 ____D C:\Program Files (x86)\APC
2016-03-13 23:00 - 2016-02-22 10:59 - 00000000 ____D C:\Users\Gareth\AppData\Roaming\Audacity
2016-03-12 23:52 - 2016-02-18 11:54 - 00000000 ____D C:\Users\Gareth\AppData\Roaming\Orbx systems
2016-03-12 18:25 - 2016-02-18 10:06 - 00001920 ____H C:\Windows\EPMBatch.ept
2016-03-11 08:52 - 2016-02-18 15:48 - 00002203 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-03-10 09:08 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache
2016-03-09 23:15 - 2009-07-14 06:57 - 00001547 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2016-03-09 18:42 - 2016-02-21 00:08 - 00000000 ____D C:\Windows\system32\MRT
2016-03-09 18:40 - 2016-02-21 00:08 - 143659408 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2016-03-09 18:39 - 2016-02-16 10:23 - 00000000 ____D C:\Windows\system32\appraiser
2016-03-08 17:28 - 2016-02-18 11:53 - 00000000 ____D C:\Users\Gareth\AppData\Local\Orbx
2016-03-07 12:02 - 2016-02-16 15:08 - 00000000 ____D C:\Program Files (x86)\Canon
2016-03-07 11:53 - 2016-02-16 15:35 - 00000000 ____D C:\Users\Gareth\AppData\Local\Canon Easy-PhotoPrint EX
2016-03-07 11:53 - 2009-07-14 07:32 - 00000000 ____D C:\Windows\system32\FxsTmp
2016-03-06 22:45 - 2016-02-15 18:52 - 00000000 ____D C:\Users\Gareth\AppData\Local\Windows Live
2016-03-05 01:09 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
2016-03-04 18:02 - 2016-02-24 13:48 - 00000000 ____D C:\Program Files (x86)\PMDG Operations Center
2016-03-03 06:58 - 2016-02-17 00:59 - 00000000 ____D C:\ProgramData\Acronis
2016-02-29 11:05 - 2016-02-16 15:40 - 00000000 ____D C:\Users\Gareth\Documents\Syncios
2016-02-27 00:31 - 2016-02-22 10:59 - 00000000 ____D C:\Program Files (x86)\Audacity
 
==================== Files in the root of some directories =======
 
2008-02-05 14:28 - 2008-02-05 14:28 - 0000051 _____ () C:\Users\Gareth\AppData\Local\setup.txt
 
Files to move or delete:
====================
C:\Users\Gareth\en_res.dll
C:\Users\Gareth\es_res.dll
C:\Users\Gareth\fr_res.dll
C:\Users\Gareth\grm_res.dll
C:\Users\Gareth\it_res.dll
C:\Users\Gareth\jp_res.dll
C:\Users\Gareth\mfc80u.dll
C:\Users\Gareth\msvcr80.dll
C:\Users\Gareth\PCPE Setup.exe
C:\Users\Gareth\pt_res.dll
C:\Users\Gareth\ResourceReader.dll
C:\Users\Gareth\ru_res.dll
C:\Users\Gareth\zh_res.dll
 
 
==================== Bamital & volsnap =================
 
(There is no automatic fix for files that do not pass verification.)
 
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
 
 
LastRegBack: 2016-03-28 17:26
 
==================== End of FRST.txt ============================
 
Additional scan result of Farbar Recovery Scan Tool (x64) Version:05-03-2016 01
Ran by Gareth (2016-03-28 22:18:55)
Running from C:\Users\Gareth\Downloads\Programs
Windows 7 Home Premium Service Pack 1 (X64) (2016-02-13 19:04:53)
Boot Mode: Normal
==========================================================
 
 
==================== Accounts: =============================
 
Administrator (S-1-5-21-778663071-3000615460-497893972-500 - Administrator - Disabled)
Gareth (S-1-5-21-778663071-3000615460-497893972-1000 - Administrator - Enabled) => C:\Users\Gareth
Guest (S-1-5-21-778663071-3000615460-497893972-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-778663071-3000615460-497893972-1002 - Limited - Enabled)
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AV: ESET NOD32 Antivirus 9.0.349.0 (Enabled - Up to date) {19259FAE-8396-A113-46DB-15B0E7DFA289}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Spybot - Search and Destroy (Enabled - Out of date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
AS: ESET NOD32 Antivirus 9.0.375.0 (Enabled - Up to date) {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834}
 
==================== Installed Programs ======================
 
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
2007 Microsoft Office Suite Service Pack 3 (SP3) (HKLM-x32\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft)
2007 Microsoft Office Suite Service Pack 3 (SP3) (x32 Version:  - Microsoft) Hidden
2007 Microsoft Office system (HKLM-x32\...\PROHYBRIDR) (Version: 12.0.6612.1000 - Microsoft Corporation)
7-Zip 15.14 (x64) (HKLM\...\7-Zip) (Version: 15.14 - Igor Pavlov)
Acronis True Image 2014 (HKLM-x32\...\{6B38A7DF-F641-45D5-BBCA-3E676ABCF5C8}Visible) (Version: 17.0.6673 - Acronis)
Acronis True Image 2014 (x32 Version: 17.0.6673 - Acronis) Hidden
Adobe Flash Player 21 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 21.0.0.197 - Adobe Systems Incorporated)
Adobe Flash Player 21 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 21.0.0.197 - Adobe Systems Incorporated)
Allway Sync version 15.3.1 (HKLM-x32\...\Allway Sync_is1) (Version:  - Botkind Inc)
Apple Application Support (32-bit) (HKLM-x32\...\{7FA9ECCF-A2DE-4DA1-BFF3-81260DBDA68F}) (Version: 4.1.2 - Apple Inc.)
Apple Application Support (64-bit) (HKLM\...\{691F30EB-9009-475A-B8A9-E1BF39598FD5}) (Version: 4.1.2 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{3540181E-340A-4E7A-B409-31663472B2F7}) (Version: 9.1.0.6 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.)
Ashampoo Burning Studio 10 v.10.0.15 (HKLM-x32\...\{91B33C97-4FC4-BE7D-63C6-5AF22B65AC5E}_is1) (Version: 10.0.15 - Ashampoo GmbH & Co. KG)
Ashampoo WinOptimizer 12 (HKLM-x32\...\{4209F371-15B6-1CE4-15F7-A7BA46F431E3}_is1) (Version: 12.00.45 - Ashampoo GmbH & Co. KG)
Audacity 2.1.0 (HKLM-x32\...\Audacity_is1) (Version: 2.1.0 - Audacity Team)
Bluetooth Win7 Suite (64) (HKLM\...\{230D1595-57DA-4933-8C4E-375797EBB7E1}) (Version: 7.2.0.65 - Atheros Communications)
C337H SKYMASTER HD SERIES FSX/P3D (HKLM-x32\...\C337H SKYMASTER HD SERIES FSX/P3D) (Version: 1.00.00.00 - Carenado)
Canon Easy-PhotoPrint EX (HKLM-x32\...\Easy-PhotoPrint EX) (Version: 4.5.0 - Canon Inc.)
Canon IJ Network Scanner Selector EX (HKLM-x32\...\Canon_IJ_Network_Scanner_Selector_EX) (Version:  - ‪Canon Inc.‬)
Canon IJ Network Tool (HKLM-x32\...\Canon_IJ_Network_UTILITY) (Version: 3.1.0 - Canon Inc.)
Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version:  - ‪Canon Inc.‬)
Canon MG5400 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG5400_series) (Version: 1.00 - Canon Inc.)
Canon MG5400 series On-screen Manual (HKLM-x32\...\Canon MG5400 series On-screen Manual) (Version: 7.5.0 - Canon Inc.)
Canon Quick Menu (HKLM-x32\...\CanonQuickMenu) (Version: 2.6.1 - Canon Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 5.16 - Piriform)
Compatibility Pack for the 2007 Office system (HKLM-x32\...\{90120000-0020-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Core Temp 1.0 RC8 (HKLM\...\{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1) (Version: 1.0 - Alcpu)
Corsair K50 Gaming Keyboard Driver V1.0 (HKLM-x32\...\{5F80696B-8F74-4A67-9830-EC2DBA79AD7A}_is1) (Version: 1.00.00.15 - )
CPUID CPU-Z 1.75 (HKLM\...\CPUID CPU-Z_is1) (Version:  - )
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Dropbox (HKLM-x32\...\Dropbox) (Version: 3.17.31 - Dropbox, Inc.)
Dropbox Update Helper (x32 Version: 1.3.35.1 - Dropbox, Inc.) Hidden
Duplicate Cleaner Free 3.2.7 (HKLM-x32\...\Duplicate Cleaner Free) (Version: 3.2.7 - DigitalVolcano Software Ltd) <==== ATTENTION
EaseUS Partition Master 10.8 (HKLM-x32\...\EaseUS Partition Master_is1) (Version:  - EaseUS)
EaseUS Todo Backup Free 9.0  (HKLM-x32\...\EaseUS Todo Backup_is1) (Version: 9.0 - CHENGDU YIWO Tech Development Co., Ltd)
ESET NOD32 Antivirus (HKLM\...\{39609CFB-57C5-4879-9C76-8BE895969C5B}) (Version: 9.0.349.0 - ESET, spol. s r.o.)
Flight1 Citation Mustang P3D (HKLM-x32\...\f1mustang_FSX) (Version: 1.11 - Flight One Software)
Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 7.3.0.118 - Foxit Software Inc.)
Free FLV Player (HKLM-x32\...\Free FLV Player) (Version:  - )
FS2Crew: PMDG 737 NGX Reboot Edition (HKLM-x32\...\FS2Crew: PMDG 737 NGX Reboot Edition) (Version:  - )
FSWidgets - Network Pack (HKLM-x32\...\FSWidgets Network Pack_is1) (Version: Version 2.0 - FSWidgets)
Garmin GTN Trainer Lite (HKLM-x32\...\{FE8823C2-815A-493B-B3A4-DC2C20268AE8}) (Version: 5.13.0 - Garmin)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 49.0.2623.87 - Google Inc.)
Google Earth (HKLM-x32\...\{817750FA-EC6A-485D-9901-0683AE6FFDF1}) (Version: 7.1.5.1557 - Google)
Google Update Helper (x32 Version: 1.3.29.5 - Google Inc.) Hidden
iCloud (HKLM\...\{4B48E22A-2FB0-4EFA-B99E-954B1E50CD69}) (Version: 5.1.0.34 - Apple Inc.)
iFunbox (v3.0.3109.1352) (HKLM-x32\...\iFunbox_is1) (Version: v3.0.3109.1352 - iFunbox DevTeam)
Intel® Driver Update Utility 2.4 (x32 Version: 2.4.0.7 - Intel) Hidden
Intel® Network Connections 16.1.53.0 (HKLM\...\PROSetDX) (Version: 16.1.53.0 - Intel)
Intel® Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.4229 - Intel Corporation)
Intel® Driver Update Utility (HKLM-x32\...\{561b5fb5-1d4d-40e8-b3e4-ad52858b217c}) (Version: 2.4.0.7 - Intel)
Internet Download Manager (HKLM-x32\...\Internet Download Manager) (Version:  - Tonec Inc.)
JMicron JMB36X Driver (HKLM-x32\...\{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}) (Version: 1.17.62.0 - JMicron Technology Corp.)
Junk Mail filter update (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Karen's Directory Printer (HKLM-x32\...\Karen's Directory Printer) (Version: 5.3.0.2 - Karen Kenworthy)
Logitech SetPoint 6.67 (HKLM\...\sp6) (Version: 6.67.83 - Logitech)
marvell 91xx driver (HKLM-x32\...\MagniDriver) (Version: 1.1.0.6 - Marvell)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Flight Simulator SimConnect Client v10.0.60905.0 (HKLM-x32\...\{D1AC9B0B-2727-4811-91DC-1FC3C4E47A9B}) (Version: 10.0.60905.0 - Microsoft Corporation)
Microsoft Flight Simulator SimConnect Client v10.0.61242.0 (HKLM-x32\...\{85DF6786-66AA-42EE-8616-AE456B07BD99}) (Version: 10.0.61242.0 - Microsoft Corporation)
Microsoft Flight Simulator SimConnect Client v10.0.61259.0 (HKLM-x32\...\{D61CA184-3F6D-4A50-B2CC-7A18447D6A8D}) (Version: 10.0.61259.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23506 (HKLM-x32\...\{3ee5e5bb-b7cc-4556-8861-a00a82977d6c}) (Version: 14.0.23506.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23506 (HKLM-x32\...\{23daf363-3020-4059-b3ae-dc4ad39fed19}) (Version: 14.0.23506.0 - Microsoft Corporation)
Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Mozilla Firefox 45.0.1 (x86 en-GB) (HKLM-x32\...\Mozilla Firefox 45.0.1 (x86 en-GB)) (Version: 45.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 45.0.1.5918 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MyTraffic Professional 6.0a (HKLM-x32\...\{54837FEE-DD02-49B3-BA89-2C0DE323D804}) (Version: 6.0.1 - MyTraffic)
Navigraph Charts 5 (HKLM-x32\...\{97F1794A-C314-4E2D-9127-0B76E9DED18E}) (Version: 5.0.7.0 - Navigraph)
Navigraph FMS Data Manager 1.2.3.0308 (HKLM-x32\...\{7E4D5716-374A-4DB6-90CF-D2AEB67362CE}_is1) (Version: 1.2.3.0308 - Navigraph)
NVIDIA 3D Vision Controller Driver 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation)
NVIDIA 3D Vision Driver 361.91 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 361.91 - NVIDIA Corporation)
NVIDIA GeForce Experience 2.10.2.40 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.10.2.40 - NVIDIA Corporation)
NVIDIA Graphics Driver 361.91 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 361.91 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.3.34.4 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.4 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)
OpusFSI for FSX, FSX-SE, and Prepar3D Flight Simulators (HKLM-x32\...\{12A4FE85-A32A-4F1F-A37A-E0EF85FA3CC3}) (Version: 4.65.3 - Opus Software Limited)
PMDG 737 8900 NGX Base Package P3D (HKLM-x32\...\{0EA92925-36E7-40CB-A714-118AB046099B}) (Version: 1.10.6461 - PMDG Simulations, LLC.)
PowerChute Personal Edition 3.0.2 (HKLM-x32\...\{8ED262EE-FC73-47A9-BB86-D92223246881}) (Version: 3.0.2 - Schneider Electric)
Prepar3D v3 Academic (HKLM-x32\...\{98d538ce-2e29-4c9e-8d9b-c73a3c4af6a1}) (Version: 3.1.2.15831 - Lockheed Martin)
Prepar3D v3 Academic Client (HKLM-x32\...\{213CD124-D688-436D-9BD8-FFB56DC830BE}) (Version: 3.2.2.16659 - Lockheed Martin)
Prepar3D v3 Content (HKLM-x32\...\{CE8E65FC-9BE3-438A-8449-BCD5E8ACC6BE}) (Version: 3.2.3.16769 - Lockheed Martin)
Prepar3D v3 Scenery (HKLM-x32\...\{3F2CF900-1437-4F93-9ABF-07B8B80E37DA}) (Version: 3.1.2.15831 - Lockheed Martin)
PrivateTunnel (HKLM-x32\...\PrivateTunnel) (Version: 2.5.5.8 - OpenVPN Technologies)
PRO-ATC/X version 1.7.2.0 (HKLM-x32\...\PRO-ATC/X_is1) (Version: 1.7.2.0 - )
RealAir Legacy V2 P3D3 (HKLM-x32\...\Legacy V22.05.19 P3D3) (Version: 2.05.19 - RealAir Simulations)
RealAir Turbine Duke V2 P3D3 (HKLM-x32\...\Turbine Duke V22.10.08 P3D3) (Version: 2.10.08 - RealAir Simulations)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.43.321.2011 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6251 - Realtek Semiconductor Corp.)
RemoteFlight Server (HKU\S-1-5-21-778663071-3000615460-497893972-1000\...\99bc7aed10c867fe) (Version: 1.0.0.44 - Inputwish)
Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.0.32.0 - Renesas Electronics Corporation)
Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.0.32.0 - Renesas Electronics Corporation) Hidden
Revo Uninstaller Pro 3.1.5 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 3.1.5 - VS Revo Group, Ltd.)
REX 4 - Texture Direct - SP6 (HKLM-x32\...\{255E36DE-A4C2-452F-B9CF-E128E0F1813A}) (Version: 4.6.2016.0210 - REX Game Studios, LLC.)
REX 4 - Texture Direct - SP6 Hotfix 1 (HKLM-x32\...\{B2004DB8-745F-45F7-A327-E6FCA8341B1B}) (Version: 4.6.2016.0314 - REX Game Studios, LLC.)
REX Download Manager (HKLM-x32\...\{EB29E39C-7D9B-44B3-A46E-58B7E2B4DDE6}) (Version: 1.5.2016.0203 - REX Game Studios, LLC.)
REX Soft Clouds - SP3 (HKLM-x32\...\{6743C1E7-6E56-4774-8D88-5C5201748CC8}) (Version: 4.3.2016.0210 - REX Game Studios, LLC.)
REX Soft Clouds - SP3 Hotfix 1 (HKLM-x32\...\REX Soft Clouds - SP3 Hotfix 1 4.3.2016.0314) (Version: 4.3.2016.0314 - REX Game Studios, LLC.)
REX Soft Clouds - SP3 Hotfix 1 (x32 Version: 4.3.2016.0314 - REX Game Studios, LLC.) Hidden
ScanSoft OmniPage SE 4 (HKLM-x32\...\{BF6E1DCB-4E59-4843-8174-122192B4C1E9}) (Version: 15.2.0020 - Nuance Communications, Inc.)
SeaTools for Windows 1.4.0.4 (HKLM-x32\...\SeaTools for Windows) (Version: 1.4.0.4 - Seagate Technology)
SHIELD Streaming (Version: 5.1.0270 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.10.2.40 - NVIDIA Corporation) Hidden
Skype™ 7.3 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.3.101 - Skype Technologies S.A.)
Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.4.40 - Safer-Networking Ltd.)
Syncios version 5.0.2 (HKLM-x32\...\{068A5D84-8419-4BDE-9689-FE65F412EFBB}_is1) (Version: 5.0.2 - Anvsoft, Inc.)
TeamViewer 11 (HKLM-x32\...\TeamViewer) (Version: 11.0.56083 - TeamViewer)
TIDAL (HKLM-x32\...\TIDAL 1.2.0.697) (Version: 1.2.0.697 - TIDAL)
TIDAL (x32 Version: 1.2.0.697 - TIDAL) Hidden
TreeSize Personal V6.2.3 (HKLM-x32\...\TreeSize Personal_is1) (Version: 6.2.3 - JAM Software)
UltraSearch V2.0.3 (64 bit) (HKLM\...\UltraSearch_is1) (Version: 2.0.3 - JAM Software)
UmmyVideoDownloader (HKLM-x32\...\{E028DBDA-EEE7-48A0-ADF7-D250589A02C5}_is1) (Version: 1.6.0.1 - )
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
VFXCentral (HKLM-x32\...\VFXCentral) (Version: 1.0.0.61 - OldProp Solutions Inc)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.2 - VideoLAN)
Watchtower Library 2015 - English (HKLM-x32\...\{F0D4F127-987D-4345-AA96-5699CF14AF35}) (Version: 17.0 - Watchtower Bible and Tract Society of Pennsylvania, Inc.)
Winamp (HKLM-x32\...\Winamp) (Version: 5.666  - Nullsoft, Inc)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)
 
==================== Custom CLSID (Whitelisted): ==========================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== Scheduled Tasks (Whitelisted) =============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
Task: {08316FEF-563B-4DD1-A1C6-6B47E8AE6CEF} - System32\Tasks\{3C53C8FF-E516-4D98-864D-A4E6C73C88E7} => pcalua.exe -a "C:\Program Files (x86)\Creative\USB Sound Blaster HD\Program\Setup.exe" -d "C:\Program Files (x86)\Creative\USB Sound Blaster HD\Program"
Task: {093F7DC9-11A1-448A-B16B-E88646838FF0} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-02-18] (Google Inc.)
Task: {12C79E90-A9CC-42E4-862A-D26E3BEB70FE} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-02-18] (Google Inc.)
Task: {1E69312B-D378-49AE-9FC1-24AA59B1CC86} - System32\Tasks\{79E23259-D4C8-4C6D-BC43-BD0C5076F08D} => C:\Program Files (x86)\Creative\USB Sound Blaster HD\Program\Setup.exe
Task: {28B81185-C0DA-43BF-A503-BF58DEB50C11} - System32\Tasks\{8AA51621-886D-4A65-85C1-B223581941C0} => pcalua.exe -a C:\Users\Gareth\Downloads\Compressed\VFXCentral\VFXCentral_Setup.exe -d C:\Users\Gareth\Downloads\Compressed\VFXCentral
Task: {2C673A39-2460-41B7-AF79-52AB777C30E2} - System32\Tasks\{DDAD9C5B-590A-4CCA-BC13-172752FA2236} => C:\Program Files (x86)\Creative\USB Sound Blaster HD\Console Launcher 3\Entertainment Console\EntC.exe
Task: {2D964311-791A-4D18-8C0C-8EF4C25C5636} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe [2014-06-27] (Safer-Networking Ltd.)
Task: {3E963B9F-6255-4120-B07E-1E6D3EBB72F7} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-03-22] (Dropbox, Inc.)
Task: {563D4123-C3C6-43AE-9529-6EE297958446} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-03-22] (Dropbox, Inc.)
Task: {57A0DB24-BAE1-42EE-B1D4-4398159BC79C} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-03-11] (Piriform Ltd)
Task: {6D614185-929E-4977-B58E-6713A512A41F} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.)
Task: {8EE8476B-C456-46D1-B66E-358DEC778FF8} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe [2014-06-24] (Safer-Networking Ltd.)
Task: {B0896212-6290-4DB4-9C82-A98BFF51DD95} - System32\Tasks\{D45F72E8-BB68-4E28-BDE6-C652F382082A} => C:\Users\Gareth\Downloads\Programs\_Getintopc.com_ATIH2014_trial_en-US.exe [2016-02-16] (Acronis)
Task: {B4DE5EB5-478F-4CF0-9A4B-4443BB9FCE9A} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-03-24] (Adobe Systems Incorporated)
Task: {BD72F90B-82DA-4003-98E2-FB0D40798F4E} - System32\Tasks\One-Click Optimizer WO12 => C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\WO12.exe [2016-01-20] (Ashampoo Development GmbH & Co. KG)
Task: {E30C4BDE-1BB8-490B-B7E9-84AD0F6F3C67} - System32\Tasks\{91FD1F86-90F5-4C9A-BB89-90258E2D367D} => C:\Program Files (x86)\Creative\USB Sound Blaster HD\AudioCS\CTAudCS.exe
Task: {FA78C9F5-B1A5-4491-B487-313C8FFA9A90} - System32\Tasks\{54D63A48-ECE3-4048-B964-3549F26127DA} => C:\Program Files (x86)\Creative\USB Sound Blaster HD\AudioCS\CTAudCS.exe
Task: {FC6DE738-09C3-44F4-B287-50428B60851E} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe [2014-06-24] (Safer-Networking Ltd.)
Task: {FEAFE1F4-770E-4F20-9DB7-D8AFD8F9C26A} - System32\Tasks\{D36577A2-C398-493F-84BA-6B617ECC74E5} => C:\Program Files (x86)\Creative\USB Sound Blaster HD\Program\Setup.exe
 
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
 
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\One-Click Optimizer WO12.job => C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\WO12.exe
 
==================== Shortcuts =============================
 
(The entries could be listed to be restored or removed.)
 
Shortcut: C:\Users\Gareth\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Orbx\Cleanup_FTXGFreeware.lnk -> F:\Lockheed Martin\Prepar3D v3\ORBX\Scripts\Cleanup_FTXGFreeware.bat ()
 
==================== Loaded Modules (Whitelisted) ==============
 
2015-01-20 23:35 - 2015-01-20 23:35 - 00085832 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2015-12-17 19:38 - 2015-12-17 19:38 - 01328912 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2016-02-15 14:56 - 2016-02-09 07:41 - 00134712 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2016-02-15 14:59 - 2015-10-29 13:44 - 00182784 _____ () C:\Program Files (x86)\Allway Sync\Bin\SyncService.exe
2016-02-19 12:06 - 2016-02-17 08:56 - 01416064 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\MessageBus.dll
2016-02-19 12:06 - 2016-02-17 08:56 - 03613056 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Poco.dll
2016-02-15 14:56 - 2016-02-17 08:56 - 00299392 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamBase.dll
2016-01-23 00:48 - 2016-01-23 00:48 - 01491320 _____ () C:\Program Files (x86)\OpenVPN Technologies\PrivateTunnel\ovpnagent.exe
2016-02-16 13:59 - 2015-12-10 07:14 - 00249384 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe
2013-10-01 11:26 - 2013-10-01 11:26 - 02810968 _____ () C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll
2016-02-15 09:35 - 2015-06-01 22:00 - 00102912 _____ () C:\Windows\System32\IccLibDll_x64.dll
2016-02-16 14:00 - 2015-12-10 07:16 - 00253992 _____ () C:\Program Files (x86)\EaseUS\TrayPopup\TrayTipAgent.exe
2016-02-18 17:50 - 2016-01-20 11:25 - 00231248 _____ () C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer 12\LiveTunerService.exe
2016-02-16 13:59 - 2015-12-10 07:04 - 00080936 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CodeLog.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 01296424 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\libxml2.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00060968 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\zlib1.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00017448 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CompressFile.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00088616 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBGetRemoteNetInfo.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00022568 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CmcTbProxy.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00186408 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CMCPipeCenter.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00165928 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CMCAdapt.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00058408 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBInfo.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00015912 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CMCNetTokenProxy.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00108072 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\ActivationOnline.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00077864 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\logsys.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00030760 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\DiskSearchImg.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00068136 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\MountImg.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00158248 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\ImgFile.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00281128 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\DsImgFile.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00072232 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CheckImg.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00139816 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\vhdvmdk.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00037416 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\BootDriver.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00769064 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\ExImage.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00193064 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\EmailBackupSize.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00443944 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\AndroidImage.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00148008 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\EnumDisk.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00076840 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\FatLib.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00207912 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\NTFSLib.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00111656 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\FileStorage.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00169512 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CloudInterface.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00501800 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\StorageMgr.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00024616 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\GetDriverInfo.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00020520 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CorrectMbr.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00032296 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\EnumTapeDevice.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00034856 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbTapeBrowse.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00064040 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\RegLib.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00025128 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\AccountManager.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00059944 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\NasOperator.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00201768 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\EmailBrowser.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00077864 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\CloudOperator.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00018984 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\ActiveOnline.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00136232 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\VMConfig.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00020008 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\AndroidDeviceManager.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00043048 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbDataSwap.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00353832 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\DeviceManager.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00027176 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\DeviceAdapter.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00138792 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\Device.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00146984 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\Partition.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00050216 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\FileSystemAnalyser.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00061992 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\FATFileSystemAnalyser.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00089640 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\Common.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00056360 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\NTFSFileSystemAnalyser.dll
2016-02-16 14:08 - 2014-05-13 13:04 - 00109400 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl
2016-02-16 14:08 - 2014-05-13 13:04 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl
2016-02-16 14:08 - 2014-05-13 13:04 - 00167768 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl
2016-02-16 14:08 - 2012-08-23 11:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll
2016-02-16 13:59 - 2015-12-10 07:04 - 00224808 _____ () C:\Program Files (x86)\EaseUS\Todo Backup\bin\SmartBackup.dll
2016-02-15 14:56 - 2016-02-17 09:02 - 00020352 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2015-12-17 19:39 - 2015-12-17 19:39 - 01040144 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2015-01-20 23:35 - 2015-01-20 23:35 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2015-12-17 19:38 - 2015-12-17 19:38 - 00237328 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxslt.dll
2016-02-16 14:00 - 2015-12-10 07:16 - 00223272 _____ () C:\Program Files (x86)\EaseUS\TrayPopup\traynet.dll
2016-02-16 14:00 - 2015-12-10 07:16 - 00275496 _____ () C:\Program Files (x86)\EaseUS\TrayPopup\libcurl.dll
2016-02-16 14:00 - 2015-12-10 07:16 - 00118328 _____ () C:\Program Files (x86)\EaseUS\TrayPopup\zlib1.dll
2016-02-16 14:00 - 2015-12-10 07:16 - 00249896 _____ () C:\Program Files (x86)\EaseUS\TrayPopup\uexper.dll
2014-02-04 19:25 - 2014-02-04 19:25 - 00036672 _____ () C:\Program Files (x86)\Acronis\TrueImageHome\qt_icontray_ex.dll
2014-02-04 19:25 - 2014-02-04 19:25 - 00028992 _____ () C:\Program Files (x86)\Common Files\Acronis\Home\thread_pool.dll
2016-03-03 20:32 - 2012-05-14 13:39 - 00043008 _____ () C:\Program Files (x86)\Corsair\K50 Keyboard\hidGetKey.dll
2016-03-22 00:30 - 2016-03-21 23:50 - 00034768 _____ () C:\Program Files (x86)\Dropbox\Client\_multiprocessing.pyd
2016-03-23 09:23 - 2016-03-21 23:51 - 00019408 _____ () C:\Program Files (x86)\Dropbox\Client\faulthandler.pyd
2016-03-23 09:23 - 2016-03-21 23:50 - 00116688 _____ () C:\Program Files (x86)\Dropbox\Client\pywintypes27.dll
2016-03-22 00:30 - 2016-03-21 23:50 - 00093640 _____ () C:\Program Files (x86)\Dropbox\Client\_ctypes.pyd
2016-03-22 00:30 - 2016-03-21 23:50 - 00018376 _____ () C:\Program Files (x86)\Dropbox\Client\select.pyd
2016-03-22 00:30 - 2016-03-23 01:33 - 00019760 _____ () C:\Program Files (x86)\Dropbox\Client\tornado.speedups.pyd
2016-03-22 00:30 - 2016-03-21 23:52 - 00105928 _____ () C:\Program Files (x86)\Dropbox\Client\win32api.pyd
2016-03-23 09:23 - 2016-03-21 23:50 - 00392144 _____ () C:\Program Files (x86)\Dropbox\Client\pythoncom27.dll
2016-03-22 00:30 - 2016-03-23 01:33 - 00381752 _____ () C:\Program Files (x86)\Dropbox\Client\win32com.shell.shell.pyd
2016-03-22 00:30 - 2016-03-21 23:50 - 00692688 _____ () C:\Program Files (x86)\Dropbox\Client\unicodedata.pyd
2016-03-23 09:23 - 2016-03-23 01:33 - 00020816 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._constant_time.pyd
2016-03-22 00:30 - 2016-03-21 23:51 - 00112592 _____ () C:\Program Files (x86)\Dropbox\Client\_cffi_backend.pyd
2016-03-23 09:23 - 2016-03-23 01:33 - 01682760 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._openssl.pyd
2016-03-23 09:23 - 2016-03-23 01:33 - 00020808 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._padding.pyd
2016-03-22 00:30 - 2016-03-23 01:34 - 00021840 _____ () C:\Program Files (x86)\Dropbox\Client\_cffi_unicode_environ_win32_x8bf8e68bx9968e850.pyd
2016-03-23 09:23 - 2016-03-23 01:33 - 00038696 _____ () C:\Program Files (x86)\Dropbox\Client\fastpath.pyd
2016-03-23 09:23 - 2016-03-21 23:52 - 00020936 _____ () C:\Program Files (x86)\Dropbox\Client\mmapfile.pyd
2016-03-22 00:30 - 2016-03-21 23:52 - 00024528 _____ () C:\Program Files (x86)\Dropbox\Client\win32event.pyd
2016-03-22 00:30 - 2016-03-21 23:52 - 00114640 _____ () C:\Program Files (x86)\Dropbox\Client\win32security.pyd
2016-03-22 00:30 - 2016-03-21 23:52 - 00124880 _____ () C:\Program Files (x86)\Dropbox\Client\win32file.pyd
2016-03-22 00:30 - 2016-03-23 01:34 - 00021832 _____ () C:\Program Files (x86)\Dropbox\Client\_cffi_pywin_kernel32_x64d8f881xc8c369be.pyd
2016-03-22 00:30 - 2016-03-21 23:52 - 00024016 _____ () C:\Program Files (x86)\Dropbox\Client\win32clipboard.pyd
2016-03-22 00:30 - 2016-03-21 23:52 - 00175560 _____ () C:\Program Files (x86)\Dropbox\Client\win32gui.pyd
2016-03-22 00:30 - 2016-03-21 23:52 - 00030160 _____ () C:\Program Files (x86)\Dropbox\Client\win32pipe.pyd
2016-03-22 00:30 - 2016-03-21 23:52 - 00043472 _____ () C:\Program Files (x86)\Dropbox\Client\win32process.pyd
2016-03-22 00:30 - 2016-03-21 23:52 - 00028616 _____ () C:\Program Files (x86)\Dropbox\Client\win32ts.pyd
2016-03-22 00:30 - 2016-03-21 23:52 - 00048592 _____ () C:\Program Files (x86)\Dropbox\Client\win32service.pyd
2016-03-23 09:23 - 2016-03-23 01:33 - 00026456 _____ () C:\Program Files (x86)\Dropbox\Client\dropbox.infinite.win.compiled._driverinstallation.pyd
2016-03-22 00:30 - 2016-03-21 23:52 - 00057808 _____ () C:\Program Files (x86)\Dropbox\Client\win32evtlog.pyd
2016-03-22 00:30 - 2016-03-21 23:52 - 00024016 _____ () C:\Program Files (x86)\Dropbox\Client\win32profile.pyd
2016-03-23 09:23 - 2016-03-23 01:33 - 00117056 _____ () C:\Program Files (x86)\Dropbox\Client\breakpad.client.windows.handler.pyd
2016-03-22 00:30 - 2016-03-23 01:34 - 00023376 _____ () C:\Program Files (x86)\Dropbox\Client\winscreenshot.compiled._CaptureScreenshot.pyd
2016-03-22 00:30 - 2016-03-21 23:50 - 00134608 _____ () C:\Program Files (x86)\Dropbox\Client\_elementtree.pyd
2016-03-23 09:23 - 2016-03-21 23:50 - 00134088 _____ () C:\Program Files (x86)\Dropbox\Client\pyexpat.pyd
2016-03-23 09:23 - 2016-03-21 23:51 - 00240584 _____ () C:\Program Files (x86)\Dropbox\Client\jpegtran.pyd
2016-03-23 09:23 - 2016-03-23 01:33 - 00024392 _____ () C:\Program Files (x86)\Dropbox\Client\librsyncffi.compiled._librsyncffi.pyd
2016-03-23 09:23 - 2016-03-21 23:52 - 00036296 _____ () C:\Program Files (x86)\Dropbox\Client\librsync.dll
2016-03-23 09:23 - 2016-03-23 01:33 - 00052024 _____ () C:\Program Files (x86)\Dropbox\Client\psutil._psutil_windows.pyd
2016-03-22 00:30 - 2016-03-23 01:34 - 00020800 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.iphlpapi._winffi_iphlpapi.pyd
2016-03-22 00:30 - 2016-03-23 01:34 - 00021824 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.kernel32._winffi_kernel32.pyd
2016-03-22 00:30 - 2016-03-23 01:34 - 00019776 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.winerror._winffi_winerror.pyd
2016-03-22 00:30 - 2016-03-23 01:34 - 00020800 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.wininet._winffi_wininet.pyd
2016-03-23 09:23 - 2016-03-23 01:33 - 00020280 _____ () C:\Program Files (x86)\Dropbox\Client\cpuid.compiled._cpuid.pyd
2016-03-22 00:30 - 2016-03-21 23:52 - 00350152 _____ () C:\Program Files (x86)\Dropbox\Client\winxpgui.pyd
2016-03-22 00:30 - 2016-03-23 01:34 - 00022352 _____ () C:\Program Files (x86)\Dropbox\Client\winverifysignature.compiled._VerifySignature.pyd
2016-03-23 09:23 - 2016-03-23 01:33 - 00084280 _____ () C:\Program Files (x86)\Dropbox\Client\dropbox_sqlite_ext.DLL
2016-03-23 09:23 - 2016-03-23 01:33 - 01826096 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtCore.pyd
2016-03-22 00:30 - 2016-03-21 23:51 - 00083912 _____ () C:\Program Files (x86)\Dropbox\Client\sip.pyd
2016-03-23 09:23 - 2016-03-23 01:33 - 03928880 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWidgets.pyd
2016-03-23 09:23 - 2016-03-23 01:33 - 01971504 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtGui.pyd
2016-03-23 09:23 - 2016-03-23 01:33 - 00531248 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtNetwork.pyd
2016-03-23 09:23 - 2016-03-23 01:33 - 00132912 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebKit.pyd
2016-03-23 09:23 - 2016-03-23 01:33 - 00223544 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebKitWidgets.pyd
2016-03-23 09:23 - 2016-03-23 01:33 - 00207672 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtPrintSupport.pyd
2016-03-23 09:23 - 2016-03-23 01:33 - 00158008 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebEngineWidgets.pyd
2016-03-23 09:23 - 2016-03-23 01:33 - 00042808 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebChannel.pyd
2016-03-23 09:23 - 2016-03-21 23:54 - 00017864 _____ () C:\Program Files (x86)\Dropbox\Client\libEGL.dll
2016-03-23 09:23 - 2016-03-21 23:54 - 01631184 _____ () C:\Program Files (x86)\Dropbox\Client\libGLESv2.dll
2016-03-22 00:30 - 2016-03-23 01:34 - 00024904 _____ () C:\Program Files (x86)\Dropbox\Client\_cffi_wpad_proxy_win_x752e3d61xdcfdcc84.pyd
2016-03-23 09:23 - 2016-03-23 01:33 - 00546096 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtQuick.pyd
2016-03-23 09:23 - 2016-03-23 01:33 - 00357680 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtQml.pyd
2016-03-22 00:30 - 2016-03-21 23:56 - 00697304 _____ () C:\Program Files (x86)\Dropbox\Client\QtQuick\Controls\qtquickcontrolsplugin.dll
2014-02-04 19:28 - 2014-02-04 19:28 - 00420160 _____ () C:\Program Files (x86)\Common Files\Acronis\Home\ulxmlrpcpp.dll
 
==================== Alternate Data Streams (Whitelisted) =========
 
(If an entry is included in the fixlist, only the ADS will be removed.)
 
 
==================== Safe Mode (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
 
 
==================== EXE Association (Whitelisted) ===============
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
 
 
==================== Internet Explorer trusted/restricted ===============
 
(If an entry is included in the fixlist, it will be removed from the registry.)
 
 
==================== Hosts content: ===============================
 
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
 
2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
 
 
==================== Other Areas ============================
 
(Currently there is no automatic fix for this section.)
 
HKU\S-1-5-21-778663071-3000615460-497893972-1000\Control Panel\Desktop\\Wallpaper -> 
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0)
Windows Firewall is enabled.
 
==================== MSCONFIG/TASK MANAGER disabled items ==
 
(Currently there is no automatic fix for this section.)
 
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^PrivateTunnel.lnk => C:\Windows\pss\PrivateTunnel.lnk.CommonStartup
MSCONFIG\startupreg: EaseUS EPM tray => C:\Program Files (x86)\EaseUS\EaseUS Partition Master 10.8\bin\EpmNews.exe
MSCONFIG\startupreg: EaseUS EPM Tray Agent => "C:\Program Files (x86)\EaseUS\EaseUS Partition Master 10.8\bin\TrayPopupE\TrayTipAgentE.exe"
MSCONFIG\startupreg: iCloudDrive => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe
MSCONFIG\startupreg: iFunBox => C:\Program Files (x86)\i-Funbox DevTeam\iFunBox_x64.exe /tray
MSCONFIG\startupreg: Navigraph FMS Data Manager => C:\Program Files (x86)\Navigraph\FMS Data Manager\NGFMSAgent.exe -autostart
MSCONFIG\startupreg: SDTray => "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
MSCONFIG\startupreg: SpybotPostWindows10UpgradeReInstall => "C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe"
MSCONFIG\startupreg: SSBkgdUpdate => "C:\Program Files (x86)\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
MSCONFIG\startupreg: Syncios device service => C:\Program Files (x86)\Syncios\SynciosDeviceService.exe
MSCONFIG\startupreg: TIDAL => "C:\Program Files (x86)\TIDAL\TIDAL.exe"
 
==================== FirewallRules (Whitelisted) ===============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
FirewallRules: [{1E2A2D37-AFDF-4517-ADCA-39F546F654FF}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{5B77FE15-0622-4D9A-9D82-372256BEF9FC}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{BFCB7319-CAC3-4129-9B45-2F3BEF8BFADB}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{F692CE5B-1294-418F-8558-AF45BE60923B}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{EBE178DD-1AA0-4B25-AD70-6852CA8D73AB}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{69BF6D4B-0D7B-40E4-84AC-EE170FC51EE0}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{D4ED6B00-4A0F-4DA7-ABAE-2F568E837061}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{7C16042C-1B42-4216-944F-8DD518838654}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{600F7F53-4C96-4ED0-AD6A-ED742656609A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{E27DEF1B-E276-4DB1-92D2-92DD90F39324}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe
FirewallRules: [{DA1D8147-5414-44E1-A79F-FC9B6CD3077C}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe
FirewallRules: [{AFECF834-97D6-4435-B04D-92A5F7D079A0}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{B7F30F9A-2C41-4C77-9620-781B112552E2}] => (Allow) LPort=2869
FirewallRules: [{AB484500-2FA5-4D8D-A136-D19AC1E31BBB}] => (Allow) LPort=1900
FirewallRules: [{0D57E87A-CE83-41E7-9CAE-6582A90A92FC}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbService.exe
FirewallRules: [{1CD3A595-E127-435D-AEF7-CA53BBA7FF36}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbService.exe
FirewallRules: [{46FDCCFC-15F3-4C3A-8302-CC8C45B7E7BA}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBConsoleUI.exe
FirewallRules: [{AB341366-F239-4709-B52F-5DDE1BA95AA9}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBConsoleUI.exe
FirewallRules: [{519E3F68-F401-4737-A700-A0EEAE7BD09A}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe
FirewallRules: [{94D37A84-B2F4-4D80-B445-44A25292481A}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe
FirewallRules: [{34E21C04-A843-4D27-90A6-7252265FC79B}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe
FirewallRules: [{081866F3-46A2-4132-80B6-1A72A960E411}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe
FirewallRules: [{8E0B1FF7-8F2D-4B95-86B8-B36697FAD2A5}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{C9B1833A-5CBA-4A18-AAFF-23338CD8755F}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [TCP Query User{337320FA-ED7F-4CA8-A4E2-30E65E45ED9E}C:\program files (x86)\fswidgets network pack\fswnethost.exe] => (Allow) C:\program files (x86)\fswidgets network pack\fswnethost.exe
FirewallRules: [UDP Query User{F6572895-1D8C-4599-B69E-02042B4E79ED}C:\program files (x86)\fswidgets network pack\fswnethost.exe] => (Allow) C:\program files (x86)\fswidgets network pack\fswnethost.exe
FirewallRules: [TCP Query User{9B6404EE-5F48-4C35-94A6-378B7BB834B8}C:\users\gareth\downloads\compressed\remoteflightserver\remoteflightserver\remoteflightserver.exe] => (Allow) C:\users\gareth\downloads\compressed\remoteflightserver\remoteflightserver\remoteflightserver.exe
FirewallRules: [UDP Query User{5053CDA9-1066-4609-B6D6-72F079D4F88A}C:\users\gareth\downloads\compressed\remoteflightserver\remoteflightserver\remoteflightserver.exe] => (Allow) C:\users\gareth\downloads\compressed\remoteflightserver\remoteflightserver\remoteflightserver.exe
FirewallRules: [TCP Query User{E5D5A573-0402-488C-9268-1F31370D377A}C:\users\gareth\appdata\local\apps\2.0\tq22bzj1.97l\v5ckpbvn.q7b\remo..tion_5f383c4b101aca72_0001.0000_b04a1ed958360fff\remoteflightserver.exe] => (Allow) C:\users\gareth\appdata\local\apps\2.0\tq22bzj1.97l\v5ckpbvn.q7b\remo..tion_5f383c4b101aca72_0001.0000_b04a1ed958360fff\remoteflightserver.exe
FirewallRules: [UDP Query User{997C1EA6-1A66-4520-AEDA-4ED332C85451}C:\users\gareth\appdata\local\apps\2.0\tq22bzj1.97l\v5ckpbvn.q7b\remo..tion_5f383c4b101aca72_0001.0000_b04a1ed958360fff\remoteflightserver.exe] => (Allow) C:\users\gareth\appdata\local\apps\2.0\tq22bzj1.97l\v5ckpbvn.q7b\remo..tion_5f383c4b101aca72_0001.0000_b04a1ed958360fff\remoteflightserver.exe
FirewallRules: [{6CBD7688-D654-44BB-8C99-14D8AB91B9E8}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
FirewallRules: [{BE979F15-D0CB-4788-BCE7-B0FFFCF841AD}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{CC24249D-64F9-47FF-A20C-5805C76173AF}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{DF3147DF-80DC-40C6-86A6-6F0865595BAA}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{5F9AF26B-A637-4A7B-AD72-F1A000B9D2B2}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot - Search & Destroy tray access
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service
 
==================== Restore Points =========================
 
17-03-2016 18:38:07 Removed Creative ASIO (USB)
17-03-2016 18:39:53 Installed USB Sound Blaster HD
17-03-2016 18:42:51 Revo Uninstaller Pro's restore point - USB Sound Blaster HD
17-03-2016 18:43:11 Removed USB Sound Blaster HD
17-03-2016 18:57:12 Windows Update
17-03-2016 19:00:21 Restore Operation
19-03-2016 23:45:33 Windows Update
22-03-2016 14:54:08 Configured USB Sound Blaster HD
22-03-2016 15:10:08 Revo Uninstaller Pro's restore point - Creative Media Toolbox 6 (Shared Components)
22-03-2016 16:17:35 Revo Uninstaller Pro's restore point - Creative ASIO (USB)
22-03-2016 16:17:46 Removed Creative ASIO (USB)
22-03-2016 16:18:47 Revo Uninstaller Pro's restore point - Creative Media Toolbox 6 (Shared Components)
22-03-2016 16:54:24 Installed USB Sound Blaster HD
22-03-2016 17:09:11 Installed WaveStudio 7
22-03-2016 17:09:40 Installed Creative Smart Recorder
22-03-2016 17:10:33 Installed Creative Media Toolbox 6
24-03-2016 04:00:14 Windows Update
28-03-2016 14:39:56 Configured USB Sound Blaster HD
28-03-2016 15:00:57 Configured USB Sound Blaster HD
28-03-2016 15:04:25 Revo Uninstaller Pro's restore point - Creative Media Toolbox 6 (Shared Components)
28-03-2016 15:12:17 Configured USB Sound Blaster HD
28-03-2016 15:16:06 Configured USB Sound Blaster HD
28-03-2016 15:22:35 Revo Uninstaller Pro's restore point - Creative System Information
28-03-2016 15:22:44 Removed Creative System Information
28-03-2016 15:28:26 Revo Uninstaller Pro's restore point - Creative Media Toolbox 6 (Shared Components)
28-03-2016 15:43:09 Installed USB Sound Blaster HD
28-03-2016 15:52:51 Removed Creative ASIO (USB)
28-03-2016 15:53:16 Removed Creative System Information
28-03-2016 16:00:23 Configured USB Sound Blaster HD
28-03-2016 16:14:00 Revo Uninstaller Pro's restore point - Creative System Information
28-03-2016 16:14:09 Removed Creative System Information
 
==================== Faulty Device Manager Devices =============
 
 
==================== Event log errors: =========================
 
Application errors:
==================
Error: (03/28/2016 10:10:35 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (03/28/2016 08:24:24 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (03/28/2016 07:17:03 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: DllHost.exe, version: 6.1.7600.16385, time stamp: 0x4a5bc6b7
Faulting module name: ti_managers.dll, version: 17.0.0.6673, time stamp: 0x52f0f945
Exception code: 0xc0000005
Fault offset: 0x0056c316
Faulting process id: 0x2024
Faulting application start time: 0xDllHost.exe0
Faulting application path: DllHost.exe1
Faulting module path: DllHost.exe2
Report Id: DllHost.exe3
 
Error: (03/28/2016 07:11:48 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: explorer.exe, version: 6.1.7601.19135, time stamp: 0x56a1bbe2
Faulting module name: SHELL32.dll, version: 6.1.7601.19135, time stamp: 0x56a1ca0d
Exception code: 0xc000041d
Fault offset: 0x0000000000050596
Faulting process id: 0x1ad0
Faulting application start time: 0xexplorer.exe0
Faulting application path: explorer.exe1
Faulting module path: explorer.exe2
Report Id: explorer.exe3
 
Error: (03/28/2016 07:10:50 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: explorer.exe, version: 6.1.7601.19135, time stamp: 0x56a1bbe2
Faulting module name: SHELL32.dll, version: 6.1.7601.19135, time stamp: 0x56a1ca0d
Exception code: 0xc000041d
Fault offset: 0x0000000000050596
Faulting process id: 0x828
Faulting application start time: 0xexplorer.exe0
Faulting application path: explorer.exe1
Faulting module path: explorer.exe2
Report Id: explorer.exe3
 
Error: (03/28/2016 07:09:06 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80004005
 
Error: (03/28/2016 05:03:25 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (03/28/2016 04:14:00 PM) (Source: VSS) (EventID: 8194) (User: )
Description: Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface.  hr = 0x80070005, Access is denied.
.
This is often caused by incorrect security settings in either the writer or requestor process.
 
 
Operation:
   Gathering Writer Data
 
Context:
   Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
   Writer Name: System Writer
   Writer Instance ID: {b09f70e4-7da6-413b-8c2f-1f92eabd9178}
 
Error: (03/28/2016 04:02:24 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (03/28/2016 03:45:08 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
 
System errors:
=============
Error: (03/28/2016 10:01:53 PM) (Source: Disk) (EventID: 11) (User: )
Description: The driver detected a controller error on \Device\Harddisk4\DR4.
 
Error: (03/28/2016 10:01:53 PM) (Source: Disk) (EventID: 11) (User: )
Description: The driver detected a controller error on \Device\Harddisk4\DR4.
 
Error: (03/28/2016 10:01:52 PM) (Source: Disk) (EventID: 11) (User: )
Description: The driver detected a controller error on \Device\Harddisk4\DR4.
 
Error: (03/28/2016 08:37:26 PM) (Source: DCOM) (EventID: 10010) (User: )
Description: {5DC4F9AD-3A2B-4DF4-AC39-3FF5A19FCF4C}
 
Error: (03/28/2016 06:44:50 PM) (Source: Disk) (EventID: 11) (User: )
Description: The driver detected a controller error on \Device\Harddisk5\DR5.
 
Error: (03/28/2016 06:44:49 PM) (Source: Disk) (EventID: 11) (User: )
Description: The driver detected a controller error on \Device\Harddisk5\DR5.
 
Error: (03/28/2016 06:44:48 PM) (Source: Disk) (EventID: 11) (User: )
Description: The driver detected a controller error on \Device\Harddisk5\DR5.
 
Error: (03/26/2016 11:37:21 PM) (Source: Disk) (EventID: 11) (User: )
Description: The driver detected a controller error on \Device\Harddisk4\DR4.
 
Error: (03/26/2016 09:20:32 AM) (Source: VDS Basic Provider) (EventID: 1) (User: )
Description: Unexpected failure. Error code: D@01010004
 
Error: (03/25/2016 10:57:04 PM) (Source: Disk) (EventID: 11) (User: )
Description: The driver detected a controller error on \Device\Harddisk4\DR4.
 
 
==================== Memory info =========================== 
 
Processor: Intel® Core™ i7-2700K CPU @ 3.50GHz
Percentage of memory in use: 30%
Total physical RAM: 8089.14 MB
Available physical RAM: 5661.66 MB
Total Virtual: 16176.48 MB
Available Virtual: 13368.42 MB
 
==================== Drives ================================
 
Drive c: (System) (Fixed) (Total:300.95 GB) (Free:152.93 GB) NTFS ==>[drive with boot components (obtained from BCD)]
Drive d: (Repair disc Windows Setup 64-bit) (CDROM) (Total:0.16 GB) (Free:0 GB) UDF
Drive e: (Spare) (Fixed) (Total:119.24 GB) (Free:110.43 GB) NTFS
Drive f: (P3D) (Fixed) (Total:238.46 GB) (Free:87.52 GB) NTFS
Drive g: (Samsung USB) (Removable) (Total:29.86 GB) (Free:29.16 GB) FAT32
Drive j: (Seagate Expansion Drive) (Fixed) (Total:1863.02 GB) (Free:1049.47 GB) NTFS
Drive l: (SANDISK) (Removable) (Total:28.95 GB) (Free:28.75 GB) FAT32
 
==================== MBR & Partition Table ==================
 
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: D2A4F91E)
Partition 1: (Active) - (Size=300.9 GB) - (Type=07 NTFS)
 
========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 238.5 GB) (Disk ID: 8517ACC9)
Partition 1: (Not Active) - (Size=238.5 GB) - (Type=OF Extended)
 
========================================================
Disk: 2 (MBR Code: Windows 7 or 8) (Size: 119.2 GB) (Disk ID: B1D917C3)
Partition 2: (Active) - (Size=119.2 GB) - (Type=05)
 
========================================================
Disk: 3 (Size: 1863 GB) (Disk ID: 909CEF0A)
Partition 1: (Not Active) - (Size=1863 GB) - (Type=07 NTFS)
 
========================================================
Disk: 4 (MBR Code: Windows 7 or 8) (Size: 29 GB) (Disk ID: 0FD48FA8)
Partition 1: (Active) - (Size=29 GB) - (Type=0C)
 
========================================================
Disk: 5 (MBR Code: Windows XP) (Size: 29.9 GB) (Disk ID: C3072E18)
Partition 1: (Not Active) - (Size=29.9 GB) - (Type=0C)
 
==================== End of Addition.txt ============================

Attached Files


Edited by RKinner, 31 March 2016 - 07:46 AM.

  • 0

Advertisements







Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP