Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 03-12-2014
Ran by Peter (administrator) on PETER-PC on 06-12-2014 13:35:18
Running from C:\Users\Peter\Desktop
Loaded Profile: Peter (Available profiles: Peter)
Platform: Windows 8.1 Pro (X64) OS Language: English (United States)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(@ByELDI) C:\Program Files\KMSpico\Service_KMS.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
() C:\Program Files\pia_manager\pia_manager.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(Microsoft Corporation) C:\Windows\System32\InputMethod\JPN\JpnIME.exe
(IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Dropbox, Inc.) C:\Users\Peter\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(
http://www.ruby-lang.org/) C:\Users\Peter\AppData\Local\Temp\ocr467A.tmp\bin\rubyw.exe
() C:\Program Files\pia_manager\pia_manager.exe
(
http://www.ruby-lang.org/) C:\Users\Peter\AppData\Local\Temp\ocrF1C4.tmp\bin\rubyw.exe
() C:\Program Files\pia_manager\pia_tray\pia_tray.exe
(Microsoft Corporation) C:\Windows\WinStore\WSHost.exe
(Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [161984 2014-04-21] (IvoSoft)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [507776 2014-10-08] (Oracle Corporation)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [157480 2014-10-15] (Apple Inc.)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-10-03] (Apple Inc.)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767200 2014-09-16] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKU\S-1-5-21-193590417-541393071-4071897925-1001\...\Run: [GoogleChromeAutoLaunch_14883A56D9D426BB697F73C8366CAF1F] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [916296 2014-11-25] (Google Inc.)
HKU\S-1-5-21-193590417-541393071-4071897925-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [30524000 2014-10-24] (Skype Technologies S.A.)
HKU\S-1-5-21-193590417-541393071-4071897925-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [1940160 2014-11-19] (Valve Corporation)
HKU\S-1-5-21-193590417-541393071-4071897925-1001\...\Run: [AdobeBridge] => [X]
Startup: C:\Users\Peter\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Peter\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft)
ShellIconOverlayIdentifiers-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-193590417-541393071-4071897925-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache =
http://www.msn.com/en-au/?ocid=iehp
HKU\S-1-5-21-193590417-541393071-4071897925-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xCF5605A0990BD001
HKU\S-1-5-21-193590417-541393071-4071897925-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-US,en;q=0.7,ja;q=0.3
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_25\bin\ssv.dll (Oracle Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_25\bin\jp2ssv.dll (Oracle Corporation)
BHO: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_64.dll (IvoSoft)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO-x32: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_32.dll (IvoSoft)
Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft)
Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL (Microsoft Corporation)
Tcpip\..\Interfaces\{60D17B77-DCB1-4342-960E-31341390E077}: [NameServer] 203.12.160.35,203.12.160.36
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_239.dll ()
FF Plugin: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelogx64.dll (EA Digital Illusions CE AB)
FF Plugin: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: @unity3d.com/UnityPlayer64,version=1.0 -> C:\Program Files\Unity\WebPlayer64\loader-x64\npUnity3D64.dll (Unity Technologies ApS)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_239.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @esn/npbattlelog,version=2.5.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.5.1\npbattlelog.dll (EA Digital Illusions CE AB)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll (Microsoft Corporation)
Chrome:
=======
CHR HomePage: Default ->
https://www.google.com.au/
CHR StartupUrls: Default -> "hxxp://feed.snap.do/?publisher=SnapdoEMon&dpid=SnapdoEMon&co=AU&userid=05a4263e-dec7-4658-98a6-86923de245fb&searchtype=hp"
CHR DefaultSearchKeyword: Default -> google.com.au_
CHR DefaultSearchURL: Default ->
https://www.google.com.au/search?q={searchTerms}
CHR DefaultSuggestURL: Default ->
CHR Profile: C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-11-07]
CHR Extension: (Uploads Only for Youtube™) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajdnlgehefnmaiighnbaibekhdfhnipd [2014-11-07]
CHR Extension: (Google Docs) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-11-07]
CHR Extension: (Google Drive) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-11-07]
CHR Extension: (CIRC) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\bebigdkelppomhhjaaianniiifjbgocn [2014-12-03]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-11-08]
CHR Extension: (YouTube) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-11-07]
CHR Extension: (Google Search) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-11-07]
CHR Extension: (APNG) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehkepjiconegkhpodgoaeamnpckdbblp [2014-11-07]
CHR Extension: (Video Downloader professional) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\elicpjhcidhpjomhibiffojpinpmmpil [2014-11-07]
CHR Extension: (Google Sheets) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-11-07]
CHR Extension: (AdBlock) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-11-07]
CHR Extension: (tviggr) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmolgbmkhjnoekekdogckilbbedhdnoh [2014-11-07]
CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2014-11-08]
CHR Extension: (Your Quality for YouTube™) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\nfcilgimggemnogfigihdkmapdhhlbph [2014-11-07]
CHR Extension: (Google Wallet) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-11-07]
CHR Extension: (Gmail) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-11-07]
CHR HKU\S-1-5-21-193590417-541393071-4071897925-1001\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - No Path
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2014-09-16] (Advanced Micro Devices, Inc.) [File not signed]
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [610688 2014-11-04] ()
S3 EasyAntiCheat; C:\Windows\SysWOW64\EasyAntiCheat.exe [174624 2014-11-27] (EasyAntiCheat Ltd)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [1900400 2014-12-05] (Electronic Arts)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76152 2014-12-05] ()
R2 Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [965776 2014-10-26] (@ByELDI) [File not signed]
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [368632 2014-09-22] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2014-09-22] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [21160 2012-09-23] (Advanced Micro Devices, Inc.)
R2 AODDriver4.2.0; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-12] (Advanced Micro Devices)
S2 AODDriver4.3; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-12] (Advanced Micro Devices)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWB6.sys [223232 2014-06-22] (Advanced Micro Devices)
U3 TrueSight; C:\Windows\System32\drivers\TrueSight.sys [34808 2014-12-06] ()
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2014-09-22] (Microsoft Corporation)
S3 xusb22; C:\Windows\System32\drivers\xusb22.sys [87040 2014-03-18] (Microsoft Corporation)
S3 WinRing0_1_2_0; \??\C:\Users\Peter\Desktop\Things\Programs\OpenHardwareMonitor\OpenHardwareMonitor.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-06 13:35 - 2014-12-06 13:35 - 00016426 _____ () C:\Users\Peter\Desktop\FRST.txt
2014-12-06 13:35 - 2014-12-06 13:35 - 00000000 ____D () C:\FRST
2014-12-06 13:34 - 2014-12-06 13:34 - 00000626 _____ () C:\Users\Peter\Desktop\JRT.txt
2014-12-06 13:31 - 2014-12-06 13:31 - 00000000 ____D () C:\Windows\ERUNT
2014-12-06 13:30 - 2014-12-06 13:30 - 00000000 ____D () C:\Users\Peter\AppData\Local\CrashDumps
2014-12-06 13:23 - 2014-12-06 13:25 - 00000000 ____D () C:\AdwCleaner
2014-12-06 13:23 - 2014-12-06 13:23 - 00000055 _____ () C:\AdwCleanerDebug.txt
2014-12-06 13:22 - 2014-12-06 13:22 - 02153472 _____ () C:\Users\Peter\Desktop\adwcleaner_4.104.exe
2014-12-06 13:22 - 2014-12-06 13:22 - 02117632 _____ (Farbar) C:\Users\Peter\Desktop\FRST64.exe
2014-12-06 13:22 - 2014-12-06 13:22 - 01707646 _____ (Thisisu) C:\Users\Peter\Desktop\JRT.exe
2014-12-06 10:36 - 2014-12-06 10:53 - 00000000 ____D () C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2014-12-06 10:35 - 2014-12-06 10:53 - 00000000 ____D () C:\Users\Peter\Desktop\mbar
2014-12-06 10:34 - 2014-12-06 10:34 - 16448208 _____ (Malwarebytes Corp.) C:\Users\Peter\Desktop\mbar-1.08.2.1001.exe
2014-12-06 10:26 - 2014-12-06 10:26 - 00034808 _____ () C:\Windows\system32\Drivers\TrueSight.sys
2014-12-06 10:26 - 2014-12-06 10:26 - 00000000 ____D () C:\ProgramData\RogueKiller
2014-12-06 10:25 - 2014-12-06 10:26 - 15196248 _____ () C:\Users\Peter\Desktop\RogueKiller.exe
2014-12-05 22:00 - 2014-12-05 22:00 - 00000000 ____D () C:\Users\Peter\AppData\Local\ESN
2014-12-05 21:58 - 2014-12-05 21:58 - 00000000 ____D () C:\Program Files (x86)\Battlelog Web Plugins
2014-12-05 21:57 - 2014-12-05 22:04 - 00000000 ____D () C:\Users\Peter\Documents\Battlefield 3
2014-12-05 21:57 - 2014-12-05 21:57 - 00000000 ____D () C:\ProgramData\EA Core
2014-12-05 21:53 - 2014-12-06 13:34 - 00092983 _____ () C:\Windows\WindowsUpdate.log
2014-12-05 15:20 - 2014-12-06 13:26 - 00000690 _____ () C:\Windows\PFRO.log
2014-12-05 15:20 - 2014-12-05 15:20 - 456733763 _____ () C:\Windows\MEMORY.DMP
2014-12-05 15:20 - 2014-12-05 15:20 - 00279496 _____ () C:\Windows\Minidump\120514-19578-01.dmp
2014-12-05 14:56 - 2014-12-06 10:36 - 00135384 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-12-05 14:56 - 2014-12-06 10:35 - 00096472 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-12-05 14:56 - 2014-12-05 14:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-12-05 14:56 - 2014-12-05 14:56 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-12-05 14:56 - 2014-12-05 14:56 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-12-05 14:56 - 2014-11-21 06:14 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-12-05 14:56 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-12-05 14:52 - 2014-12-05 14:52 - 00002259 _____ () C:\Windows\epplauncher.mif
2014-12-03 17:06 - 2014-12-03 17:06 - 00000000 ____D () C:\Users\Peter\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-12-03 10:09 - 2014-12-03 13:54 - 00000000 ____D () C:\Users\Peter\AppData\Local\QuickPar
2014-12-02 17:54 - 2014-12-02 17:54 - 00000000 ____D () C:\Users\Peter\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\QuickPar
2014-12-02 17:54 - 2014-12-02 17:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickPar
2014-12-02 17:54 - 2014-12-02 17:54 - 00000000 ____D () C:\Program Files (x86)\QuickPar
2014-12-01 11:23 - 2014-12-01 11:38 - 00000000 ____D () C:\Users\Peter\AppData\Roaming\ImgBurn
2014-12-01 11:18 - 2014-12-01 11:18 - 00001889 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImgBurn.lnk
2014-12-01 11:18 - 2014-12-01 11:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImgBurn
2014-12-01 11:18 - 2014-12-01 11:18 - 00000000 ____D () C:\Program Files (x86)\ImgBurn
2014-11-30 22:28 - 2014-12-06 00:06 - 00000000 ____D () C:\Users\Peter\AppData\Roaming\TS3Client
2014-11-30 16:15 - 2014-12-03 15:37 - 00505156 _____ () C:\Windows\system32\perfh011.dat
2014-11-30 16:15 - 2014-12-03 15:37 - 00135458 _____ () C:\Windows\system32\perfc011.dat
2014-11-30 16:15 - 2014-11-30 16:10 - 00144476 _____ () C:\Windows\system32\perfi011.dat
2014-11-30 16:15 - 2014-11-30 16:10 - 00033362 _____ () C:\Windows\system32\perfd011.dat
2014-11-30 16:12 - 2014-11-30 16:12 - 00000000 ____D () C:\Windows\SysWOW64\XPSViewer
2014-11-30 16:12 - 2014-11-30 16:12 - 00000000 ____D () C:\Windows\SysWOW64\ja
2014-11-30 16:12 - 2014-11-30 16:12 - 00000000 ____D () C:\Windows\system32\ja
2014-11-30 16:02 - 2013-08-21 22:15 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lzhfldr2.dll
2014-11-30 16:01 - 2013-08-22 05:30 - 00267264 _____ (Microsoft Corporation) C:\Windows\system32\lzhfldr2.dll
2014-11-30 13:11 - 2014-11-30 13:12 - 00000000 ____D () C:\Users\Peter\AppData\Local\PAYDAY 2
2014-11-30 13:11 - 2014-11-30 13:11 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2014-11-30 13:11 - 2014-11-30 13:11 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies
2014-11-29 23:26 - 2014-11-29 23:29 - 00000000 ____D () C:\Users\Peter\AppData\Roaming\.technic
2014-11-27 19:59 - 2014-11-27 19:59 - 00174624 _____ (EasyAntiCheat Ltd) C:\Windows\SysWOW64\EasyAntiCheat.exe
2014-11-27 18:28 - 2014-11-29 19:17 - 00000000 ____D () C:\ProgramData\boost_interprocess
2014-11-27 15:59 - 2014-11-27 15:59 - 00000132 _____ () C:\Users\Peter\AppData\Roaming\Adobe PNG Format CS6 Prefs
2014-11-26 23:41 - 2014-11-26 23:41 - 00001091 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CS6 (64 Bit).lnk
2014-11-26 23:41 - 2014-11-26 23:41 - 00000000 ____D () C:\ProgramData\regid.1986-12.com.adobe
2014-11-26 23:40 - 2014-11-26 23:49 - 00000000 ____D () C:\Program Files\Adobe
2014-11-26 23:40 - 2014-11-26 23:40 - 00001369 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Extension Manager CS6.lnk
2014-11-26 23:40 - 2014-11-26 23:40 - 00001053 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Bridge CS6 (64bit).lnk
2014-11-26 23:39 - 2014-11-26 23:49 - 00000000 ____D () C:\Program Files (x86)\Adobe
2014-11-26 23:39 - 2014-11-26 23:39 - 00001539 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe ExtendScript Toolkit CS6.lnk
2014-11-26 23:38 - 2014-11-26 23:41 - 00000000 ____D () C:\Program Files\Common Files\Adobe
2014-11-26 23:35 - 2014-11-27 15:53 - 00000000 ____D () C:\Users\Peter\AppData\Local\Adobe
2014-11-26 23:35 - 2014-11-26 23:41 - 00000000 ____D () C:\ProgramData\Adobe
2014-11-26 09:52 - 2014-11-26 09:52 - 04443312 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe
2014-11-22 19:49 - 2014-11-23 17:47 - 00000000 ____D () C:\Users\Peter\AppData\Roaming\Mp3tag
2014-11-22 19:48 - 2014-11-22 19:48 - 00000000 ____D () C:\Program Files (x86)\Mp3tag
2014-11-22 15:31 - 2014-11-22 15:31 - 00000000 ____D () C:\Users\Peter\AppData\Local\Anime4000
2014-11-22 00:21 - 2014-11-22 00:21 - 00000000 ____D () C:\Users\Peter\AppData\Roaming\MAXON
2014-11-21 23:26 - 2014-11-21 23:26 - 00000000 ____D () C:\Users\Peter\AppData\Roaming\mkvtoolnix
2014-11-21 23:13 - 2014-11-21 23:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MKVToolNix
2014-11-21 23:13 - 2014-11-21 23:13 - 00000000 ____D () C:\Program Files\MKVToolNix
2014-11-21 21:20 - 2014-11-21 21:20 - 00000000 ____D () C:\Users\Peter\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JDownloader
2014-11-21 21:16 - 2014-12-03 13:46 - 00000000 ____D () C:\Users\Peter\AppData\Local\JDownloader v2.0
2014-11-21 13:57 - 2014-11-23 09:33 - 00000000 ____D () C:\Users\Peter\AppData\Roaming\HandBrake
2014-11-21 13:15 - 2014-11-21 13:15 - 00003584 _____ () C:\Users\Peter\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-11-21 10:23 - 2014-11-21 10:23 - 00000000 ____D () C:\Users\Peter\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Handbrake
2014-11-21 10:23 - 2014-11-21 10:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Handbrake
2014-11-21 10:23 - 2014-11-21 10:23 - 00000000 ____D () C:\Program Files\Handbrake
2014-11-20 11:17 - 2014-11-20 11:17 - 00000000 ____D () C:\Users\Peter\AppData\Roaming\MediaInfo
2014-11-19 13:39 - 2014-12-02 22:01 - 00801792 ___SH () C:\Users\Peter\Desktop\Thumbs.db
2014-11-19 12:52 - 2014-11-19 13:02 - 00000000 ____D () C:\Users\Peter\Downloads\crysis 3
2014-11-19 08:54 - 2014-11-19 08:54 - 00000000 ____D () C:\Users\Peter\AppData\Roaming\Far Cry 4
2014-11-19 08:20 - 2014-11-10 09:19 - 00991232 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-11-19 08:20 - 2014-11-10 09:19 - 00806400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-11-19 08:20 - 2014-11-10 09:18 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
2014-11-19 08:20 - 2014-11-10 09:18 - 00208896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll
2014-11-18 18:06 - 2014-11-19 13:02 - 00040960 ___SH () C:\Users\Peter\Downloads\Thumbs.db
2014-11-18 15:01 - 2014-11-18 15:01 - 00000000 ____D () C:\Users\Peter\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bohemia Interactive
2014-11-18 15:01 - 2014-11-18 15:01 - 00000000 ____D () C:\Users\Peter\AppData\Local\ArmA 2 OA
2014-11-18 15:01 - 2014-11-18 15:01 - 00000000 ____D () C:\ProgramData\Bohemia Interactive Studio
2014-11-18 13:16 - 2014-11-18 13:16 - 00000000 ____D () C:\Users\Peter\AppData\Local\Arma 3
2014-11-18 13:16 - 2014-11-18 13:16 - 00000000 ____D () C:\ProgramData\Bohemia Interactive
2014-11-18 11:30 - 2014-11-18 11:30 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2014-11-18 08:15 - 2014-11-24 11:54 - 00001558 _____ () C:\Users\Peter\.pia_manager_crash.log
2014-11-16 20:50 - 2014-11-16 20:50 - 00000000 ____D () C:\Users\Peter\AppData\Roaming\11bitstudios
2014-11-16 20:50 - 2014-11-16 20:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\This War of Mine
2014-11-16 19:28 - 2014-11-16 19:28 - 00000000 ____D () C:\Users\Peter\AppData\Local\SCE
2014-11-16 08:53 - 2014-11-16 08:53 - 00000000 __SHD () C:\Users\Peter\AppData\Local\EmieUserList
2014-11-16 08:53 - 2014-11-16 08:53 - 00000000 __SHD () C:\Users\Peter\AppData\Local\EmieSiteList
2014-11-16 08:53 - 2014-11-16 08:53 - 00000000 __SHD () C:\Users\Peter\AppData\Local\EmieBrowserModeList
2014-11-16 08:52 - 2014-11-16 08:53 - 00000000 ____D () C:\Program Files (x86)\PCSX2 1.2.1
2014-11-16 08:52 - 2014-11-16 08:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PCSX2
2014-11-16 08:44 - 2014-11-16 08:54 - 00000000 ____D () C:\Users\Peter\Documents\PCSX2
2014-11-15 17:45 - 2014-11-15 17:45 - 00003118 _____ () C:\Windows\System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe
2014-11-15 17:45 - 2014-11-15 17:45 - 00003092 _____ () C:\Windows\System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe
2014-11-15 17:45 - 2014-11-15 17:45 - 00003090 _____ () C:\Windows\System32\Tasks\Microsoft_Hardware_Launch_itype_exe
2014-11-15 17:45 - 2014-11-15 17:45 - 00003062 _____ () C:\Windows\System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe
2014-11-15 17:45 - 2014-11-15 17:45 - 00003060 _____ () C:\Windows\System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe
2014-11-15 17:45 - 2014-11-15 17:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Mouse and Keyboard Center
2014-11-15 17:45 - 2014-11-15 17:45 - 00000000 ____D () C:\Program Files\Microsoft Mouse and Keyboard Center
2014-11-14 21:53 - 2014-11-14 21:53 - 00000000 ____D () C:\Users\Peter\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Games
2014-11-14 21:53 - 2014-11-14 21:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games
2014-11-14 21:51 - 2014-11-14 21:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Halo Combat Evolved
2014-11-14 16:52 - 2014-11-22 10:01 - 00000000 ____D () C:\Users\Peter\AppData\Roaming\Tera_Awesomium
2014-11-14 09:06 - 2014-07-24 19:44 - 16874496 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2014-11-14 09:06 - 2014-07-24 19:16 - 12730880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2014-11-14 09:05 - 2014-07-25 01:28 - 00419648 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2014-11-14 09:05 - 2014-07-25 01:28 - 00412992 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys
2014-11-14 09:05 - 2014-07-25 01:28 - 00280384 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys
2014-11-14 09:05 - 2014-07-25 01:28 - 00143680 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2014-11-14 09:05 - 2014-07-25 01:23 - 00125472 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll
2014-11-14 09:05 - 2014-07-25 01:20 - 00645592 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll
2014-11-14 09:05 - 2014-07-25 01:20 - 00263400 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlows.exe
2014-11-14 09:05 - 2014-07-25 01:16 - 02574208 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2014-11-14 09:05 - 2014-07-25 01:16 - 00211216 _____ (Microsoft Corporation) C:\Windows\system32\SndVol.exe
2014-11-14 09:05 - 2014-07-25 01:07 - 02009920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2014-11-14 09:05 - 2014-07-25 01:05 - 01660048 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2014-11-14 09:05 - 2014-07-25 01:05 - 01519560 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2014-11-14 09:05 - 2014-07-25 01:05 - 01488008 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2014-11-14 09:05 - 2014-07-25 01:05 - 01356840 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2014-11-14 09:05 - 2014-07-25 01:03 - 02141920 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2014-11-14 09:05 - 2014-07-25 01:03 - 00882136 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2014-11-14 09:05 - 2014-07-25 01:03 - 00360480 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll
2014-11-14 09:05 - 2014-07-25 01:03 - 00233888 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2014-11-14 09:05 - 2014-07-25 01:03 - 00205512 _____ (Microsoft Corporation) C:\Windows\system32\mftranscode.dll
2014-11-14 09:05 - 2014-07-24 23:50 - 00098048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmapi.dll
2014-11-14 09:05 - 2014-07-24 23:48 - 02410976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2014-11-14 09:05 - 2014-07-24 23:48 - 00180208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVol.exe
2014-11-14 09:05 - 2014-07-24 23:46 - 00477200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll
2014-11-14 09:05 - 2014-07-24 23:36 - 02145472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll
2014-11-14 09:05 - 2014-07-24 23:36 - 00707536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2014-11-14 09:05 - 2014-07-24 23:36 - 00355800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll
2014-11-14 09:05 - 2014-07-24 23:36 - 00180720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mftranscode.dll
2014-11-14 09:05 - 2014-07-24 21:51 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\KBDRUM.DLL
2014-11-14 09:05 - 2014-07-24 21:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDYAK.DLL
2014-11-14 09:05 - 2014-07-24 21:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU1.DLL
2014-11-14 09:05 - 2014-07-24 21:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL
2014-11-14 09:05 - 2014-07-24 21:51 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU.DLL
2014-11-14 09:05 - 2014-07-24 21:46 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\IPMIDrv.sys
2014-11-14 09:05 - 2014-07-24 21:45 - 00076800 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\hdaudbus.sys
2014-11-14 09:05 - 2014-07-24 21:44 - 00674816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2014-11-14 09:05 - 2014-07-24 21:43 - 00412160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2014-11-14 09:05 - 2014-07-24 21:42 - 00446976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys
2014-11-14 09:05 - 2014-07-24 21:42 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\NdisImPlatform.sys
2014-11-14 09:05 - 2014-07-24 21:06 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\iasnap.dll
2014-11-14 09:05 - 2014-07-24 21:05 - 00287232 _____ (Microsoft Corporation) C:\Windows\system32\usbmon.dll
2014-11-14 09:05 - 2014-07-24 21:05 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2014-11-14 09:05 - 2014-07-24 20:52 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDYAK.DLL
2014-11-14 09:05 - 2014-07-24 20:51 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRUM.DLL
2014-11-14 09:05 - 2014-07-24 20:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU1.DLL
2014-11-14 09:05 - 2014-07-24 20:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBASH.DLL
2014-11-14 09:05 - 2014-07-24 20:51 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU.DLL
2014-11-14 09:05 - 2014-07-24 20:49 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersGPExt.dll
2014-11-14 09:05 - 2014-07-24 20:32 - 00207360 _____ (Microsoft Corporation) C:\Windows\system32\powercfg.cpl
2014-11-14 09:05 - 2014-07-24 20:20 - 02050560 _____ (Microsoft Corporation) C:\Windows\system32\SRH.dll
2014-11-14 09:05 - 2014-07-24 20:18 - 01089024 _____ (Microsoft Corporation) C:\Windows\system32\gpedit.dll
2014-11-14 09:05 - 2014-07-24 20:12 - 00878592 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenter.dll
2014-11-14 09:05 - 2014-07-24 20:10 - 01844224 _____ (Microsoft Corporation) C:\Windows\system32\Display.dll
2014-11-14 09:05 - 2014-07-24 20:10 - 00834560 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2014-11-14 09:05 - 2014-07-24 20:10 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2014-11-14 09:05 - 2014-07-24 20:10 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasnap.dll
2014-11-14 09:05 - 2014-07-24 20:05 - 00187392 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersShell.dll
2014-11-14 09:05 - 2014-07-24 19:52 - 00621056 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll
2014-11-14 09:05 - 2014-07-24 19:42 - 00206336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powercfg.cpl
2014-11-14 09:05 - 2014-07-24 19:40 - 00557056 _____ (Microsoft Corporation) C:\Windows\system32\PrintDialogs.dll
2014-11-14 09:05 - 2014-07-24 19:39 - 00770048 _____ (Microsoft Corporation) C:\Windows\system32\WorkfoldersControl.dll
2014-11-14 09:05 - 2014-07-24 19:33 - 01741824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SRH.dll
2014-11-14 09:05 - 2014-07-24 19:32 - 01048064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpedit.dll
2014-11-14 09:05 - 2014-07-24 19:27 - 00779264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe
2014-11-14 09:05 - 2014-07-24 19:25 - 00832512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenter.dll
2014-11-14 09:05 - 2014-07-24 19:24 - 01817088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Display.dll
2014-11-14 09:05 - 2014-07-24 19:21 - 00134144 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll
2014-11-14 09:05 - 2014-07-24 19:18 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\wlansvcpal.dll
2014-11-14 09:05 - 2014-07-24 19:12 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\WiFiDisplay.dll
2014-11-14 09:05 - 2014-07-24 19:11 - 00356864 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2014-11-14 09:05 - 2014-07-24 19:11 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\wshbth.dll
2014-11-14 09:05 - 2014-07-24 19:10 - 00540672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll
2014-11-14 09:05 - 2014-07-24 19:04 - 00492032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintDialogs.dll
2014-11-14 09:05 - 2014-07-24 19:04 - 00183808 _____ (Microsoft Corp.) C:\Windows\system32\Defrag.exe
2014-11-14 09:05 - 2014-07-24 19:03 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll
2014-11-14 09:05 - 2014-07-24 19:02 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2014-11-14 09:05 - 2014-07-24 18:58 - 00105472 _____ (Microsoft Corporation) C:\Windows\system32\BluetoothApis.dll
2014-11-14 09:05 - 2014-07-24 18:53 - 01261056 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll
2014-11-14 09:05 - 2014-07-24 18:53 - 00449536 _____ (Microsoft Corporation) C:\Windows\system32\defragsvc.dll
2014-11-14 09:05 - 2014-07-24 18:49 - 01287680 _____ (Microsoft Corporation) C:\Windows\system32\mispace.dll
2014-11-14 09:05 - 2014-07-24 18:49 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\wlanapi.dll
2014-11-14 09:05 - 2014-07-24 18:48 - 00659968 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Bluetooth.dll
2014-11-14 09:05 - 2014-07-24 18:47 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\wcmcsp.dll
2014-11-14 09:05 - 2014-07-24 18:43 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshbth.dll
2014-11-14 09:05 - 2014-07-24 18:39 - 02397184 _____ (Microsoft Corporation) C:\Windows\system32\storagewmi.dll
2014-11-14 09:05 - 2014-07-24 18:38 - 00371200 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll
2014-11-14 09:05 - 2014-07-24 18:32 - 01532416 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll
2014-11-14 09:05 - 2014-07-24 18:30 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanapi.dll
2014-11-14 09:05 - 2014-07-24 18:29 - 00439296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Bluetooth.dll
2014-11-14 09:05 - 2014-07-24 18:28 - 00595456 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.dll
2014-11-14 09:05 - 2014-07-24 18:23 - 01404416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\storagewmi.dll
2014-11-14 09:05 - 2014-07-24 18:22 - 00487936 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2014-11-14 09:05 - 2014-07-24 18:21 - 01231872 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll
2014-11-14 09:05 - 2014-07-24 18:21 - 00302080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanmsm.dll
2014-11-14 09:05 - 2014-07-24 18:18 - 00795136 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2014-11-14 09:05 - 2014-07-24 18:16 - 00505344 _____ (Microsoft Corporation) C:\Windows\system32\VAN.dll
2014-11-14 09:05 - 2014-07-24 18:16 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\wpdbusenum.dll
2014-11-14 09:05 - 2014-07-24 18:15 - 00721408 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.dll
2014-11-14 09:05 - 2014-07-24 18:15 - 00432128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.dll
2014-11-14 09:05 - 2014-07-24 18:10 - 00889344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll
2014-11-14 09:05 - 2014-07-24 18:10 - 00371712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv
2014-11-14 09:05 - 2014-07-24 18:08 - 00321536 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll
2014-11-14 09:05 - 2014-07-24 18:05 - 00448000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VAN.dll
2014-11-14 09:05 - 2014-07-24 18:01 - 01992192 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2014-11-14 09:05 - 2014-07-24 17:58 - 00432640 _____ (Microsoft Corporation) C:\Windows\system32\wwanconn.dll
2014-11-14 09:05 - 2014-07-24 17:58 - 00288768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stobject.dll
2014-11-14 09:05 - 2014-07-24 17:54 - 01290752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2014-11-14 09:05 - 2014-07-24 17:50 - 01182208 _____ (Microsoft Corporation) C:\Windows\system32\printui.dll
2014-11-14 09:05 - 2014-07-24 17:47 - 00576512 _____ (Microsoft Corporation) C:\Windows\system32\SettingSync.dll
2014-11-14 09:05 - 2014-07-24 17:44 - 01057792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\printui.dll
2014-11-14 09:05 - 2014-07-24 17:41 - 00459264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSync.dll
2014-11-14 09:05 - 2014-07-24 17:28 - 01600000 _____ (Microsoft Corporation) C:\Windows\system32\workfolderssvc.dll
2014-11-14 09:05 - 2014-07-24 14:11 - 00513544 _____ () C:\Windows\SysWOW64\locale.nls
2014-11-14 09:05 - 2014-07-24 14:11 - 00513544 _____ () C:\Windows\system32\locale.nls
2014-11-14 09:05 - 2014-07-12 15:55 - 00268288 _____ (Microsoft Corporation) C:\Windows\system32\wisp.dll
2014-11-14 09:05 - 2014-07-12 14:58 - 00210944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wisp.dll
2014-11-14 09:05 - 2014-07-04 22:59 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys
2014-11-14 09:05 - 2014-07-04 20:29 - 00117248 _____ (Microsoft Corporation) C:\Windows\system32\AppxSip.dll
2014-11-14 09:05 - 2014-07-04 20:20 - 01656832 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2014-11-14 09:05 - 2014-07-04 20:06 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxSip.dll
2014-11-14 09:05 - 2014-07-04 20:00 - 01351168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2014-11-14 09:05 - 2014-07-04 19:30 - 00544768 _____ (Microsoft Corporation) C:\Windows\system32\AppxPackaging.dll
2014-11-14 09:05 - 2014-07-04 19:27 - 00474112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxPackaging.dll
2014-11-14 09:05 - 2014-06-27 16:22 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2014-11-14 09:05 - 2014-06-26 10:32 - 01029632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mispace.dll
2014-11-14 09:05 - 2014-06-26 10:29 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\dab.dll
2014-11-14 09:05 - 2014-06-20 09:37 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2014-11-14 09:05 - 2014-06-19 12:13 - 00310080 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys
2014-11-14 09:05 - 2014-06-14 16:03 - 02389504 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2014-11-14 09:05 - 2014-06-14 15:46 - 02071552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2014-11-14 09:05 - 2014-06-07 22:46 - 00216368 _____ (Microsoft Corporation) C:\Windows\system32\rsaenh.dll
2014-11-14 09:05 - 2014-06-07 20:20 - 00189016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rsaenh.dll
2014-11-14 09:05 - 2014-06-06 00:00 - 01118040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2014-11-14 09:05 - 2014-06-05 20:18 - 01018368 _____ (Microsoft Corporation) C:\Windows\system32\aclui.dll
2014-11-14 09:05 - 2014-06-05 19:42 - 00889856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aclui.dll
2014-11-14 09:05 - 2014-05-31 15:00 - 01463808 _____ (Microsoft Corporation) C:\Windows\system32\wsecedit.dll
2014-11-14 09:05 - 2014-05-31 14:18 - 01319936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsecedit.dll
2014-11-14 09:05 - 2014-05-29 16:23 - 00427008 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll
2014-11-14 09:05 - 2014-05-29 15:25 - 00313856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clusapi.dll
2014-11-14 09:05 - 2014-05-26 17:26 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\AppxSysprep.dll
2014-11-14 09:05 - 2014-05-10 20:12 - 00387896 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2014-11-14 09:05 - 2014-05-10 18:46 - 00335680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll
2014-11-14 09:05 - 2014-05-06 14:41 - 00486744 _____ (Microsoft Corporation) C:\Windows\system32\netcfgx.dll
2014-11-14 09:05 - 2014-05-06 10:55 - 00391000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcfgx.dll
2014-11-14 09:05 - 2014-03-25 12:27 - 00160600 _____ (Microsoft Corporation) C:\Windows\system32\winmmbase.dll