Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 27-05-2013
Ran by Alex (administrator) on 28-05-2013 04:08:16
Running from C:\Users\Alex\Downloads
Windows 8 Pro with Media Center (X64) OS Language: English(UK)
Internet Explorer Version 9
Boot Mode: Safe Mode (with Networking)
==================== Processes (Whitelisted) =================
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Don HO
don.h@free.fr) C:\Program Files (x86)\Notepad++\notepad++.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google) C:\Users\Alex\AppData\Local\Google\Google Talk Plugin\googletalkplugin.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Farbar) C:\Users\Alex\Downloads\FRST64.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [NVRaidService] C:\Program Files\NVIDIA Corporation\Raid\nvraidservice.exe [291944 2010-04-09] (NVIDIA Corporation)
HKLM\...\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe [1814312 2009-08-15] (Synaptics Incorporated)
HKLM\...\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s [8114720 2009-09-17] (Realtek Semiconductor)
HKLM-x32\...\RunOnce: [Malwarebytes Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent [532040 2013-04-04] (Malwarebytes Corporation)
HKCU\...\Run: [Google Update] "C:\Users\Alex\AppData\Local\Google\Update\GoogleUpdate.exe" /c [116648 2013-01-15] (Google Inc.)
HKCU\...\Run: [GoogleDriveSync] "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart [19662744 2013-04-16] (Google)
HKCU\...\Run: [Spotify Web Helper] "C:\Users\Alex\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" [1105408 2013-05-03] (Spotify Ltd)
HKLM-x32\...\RunOnce: [Malwarebytes Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent [532040 2013-04-04] (Malwarebytes Corporation)
MountPoints2: {56d4ddb6-5f20-11e2-be65-806e6f6e6963} - "Z:\WSETUP\SETUP.exe"
HKLM-x32\...\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui [4767304 2013-03-06] (AVAST Software)
HKLM-x32\...\Run: [EsternTimesMouseExRun] "C:\Program Files (x86)\Anker Precision Laser Gaming Mouse\AnkerMonEx.exe" -runauto [3349504 2013-03-11] ()
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:Tabs
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://www.google.com
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
PDF: HKLM-x32 {74DBCB52-F298-4110-951D-AD2FF67BC8AB}
http://www.nvidia.com/content/DriverDownload/nforce/NvidiaSmartScan.cab
Handler: belarc - {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - No File
Handler-x32: belarc - {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - C:\Program Files (x86)\Belarc\Advisor\System\BAVoilaX.dll (Belarc, Inc.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.254
FireFox:
========
FF ProfilePath: C:\Users\Alex\AppData\Roaming\Mozilla\Firefox\Profiles\98jau3jq.default
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_6_602_180.dll ()
FF Plugin: @java.com/DTPlugin,version=10.21.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.21.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_6_602_180.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1202122.dll (Adobe Systems, Inc.)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
FF Plugin-x32:
google.com/npPicasa3,version=3.0.0 - C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=10.21.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.21.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @Sibelius.com/Scorch Plugin,version=6.2.0.88 - C:\Program Files (x86)\Sibelius Software\Scorch\npsibelius.dll ()
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)
Chrome:
=======
CHR HomePage: hxxp://
www.google.co.uk/
CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google

riginalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding}
CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}sugkey={google:suggestAPIKeyParameter}
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.94\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.94\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.94\pdf.dll ()
CHR Plugin: (Picasa) - C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.124\npGoogleUpdate3.dll No File
CHR Plugin: (Java(TM) Platform SE 7 U11) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
CHR Plugin: (Pokki Download Helper) - C:\Users\Alex\AppData\Local\Pokki\Download Helper\npPokkiDownloadHelper.1.2.0.78.dll No File
CHR Plugin: (Java Deployment Toolkit 7.0.110.21) - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll No File
CHR Extension: (Magic Actions for YouTube\u2122) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\abjcfabbhafbcdfjoecdgepllmpfceif\5.8.6_0
CHR Extension: (Entanglement) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\aciahcmjmecflokailenpkdchphgkefd\2.7.9_0
CHR Extension: (Google Docs) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0
CHR Extension: (Google Drive) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0
CHR Extension: (Sexy Undo Close Tab) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\bcennaiejdjpomgmmohhpgnjlmpcjmbg\7.2.9_0
CHR Extension: (ChromeLite) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\bjekedpipaedojkbialnhabcecmfpofh\1.1_0
CHR Extension: (YouTube) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
CHR Extension: (Link Icon) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\cnjfiolbpeihgijepincpfjhigekegab\2.4_0
CHR Extension: (Google Search) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
CHR Extension: (Search by Image (by Google)) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\dajedkncpodkggklbegccjpmnglmnflm\1.4.3_0
CHR Extension: (Session Buddy) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\edacconmaakjimmfgnblocblbcdcpbko\3.2.1_0
CHR Extension: (Photo Zoom for Facebook) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\elioihkkcdgakfbahdoddophfngopipi\1.1208.30.1_0
CHR Extension: (Chain Reaction) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\gemgfpodpjapjhfohdlibagceiknakpa\1.2_0
CHR Extension: (AdBlock) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.5.63_0
CHR Extension: (uSelect iDownload) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\ileabdhfjmgaognikmjgmhhkjffggejc\1.9_0
CHR Extension: (World Time Buddy) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\jdhpjomiingppeefgnohkiapmnaeakoj\10_0
CHR Extension: (Downloads) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfchnphgogjhineanplmfkofljiagjfb\1_0
CHR Extension: (Reddit Enhancement Suite) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbmfpngjjgdllneeigpgjifpgocmfgmb\4.2.0.1_0
CHR Extension: (Gmail Blue) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\keiffooocjpcgkpojchelkgnjmmjlbgc\0.4_0
CHR Extension: (Chromium Wheel Smooth Scroller) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\khpcanbeojalbkpgpmjpdkjnkfcgfkhb\1.3.3_0
CHR Extension: (FVD Video Downloader) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\lfmhcpmkbdkbgbmkjoiopeeegenkdikp\5.1.4_0
CHR Extension: (Phone 2 Google Chrome\u2122) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\lnlgojabfogikedjanecphloghlegpdm\4.1_0
CHR Extension: (Google Dictionary (by Google)) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgijmajocgfcbeboacabfgobmjgjcoja\3.0.17_0
CHR Extension: (Chrome to Phone) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\oadboiipflhobonjjffjbfekfjcgkhco\2.3.1_0
CHR Extension: (Better History) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\obciceimmggglbmelaidpjlmodcebijb\1.9.38_0
CHR Extension: (Robot Theme, inspired by Android\u2122) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\oeljdmeofcikjblcoehpmdnooimalbmj\0.2.2_0
CHR Extension: (Google Quick Scroll) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc\2_0
CHR Extension: (Gmail) - C:\Users\Alex\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0
==================== Services (Whitelisted) =================
S2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [45248 2013-03-06] (AVAST Software)
S3 fussvc; C:\Program Files (x86)\Windows Kits\8.0\App Certification Kit\fussvc.exe [139776 2012-07-25] (Microsoft Corporation)
S2 nTuneService; C:\Program Files (x86)\NVIDIA Corporation\nTune\nTuneService.exe [278336 2011-09-19] (NVIDIA)
S3 Te.Service; C:\Program Files (x86)\Windows Kits\8.0\Testing\Runtimes\TAEF\Wex.Services.exe [126976 2012-07-25] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [14920 2013-01-29] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
S2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [33400 2013-03-06] (AVAST Software)
S2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [80816 2013-03-06] (AVAST Software)
R1 aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [70992 2013-03-06] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65336 2013-03-06] ()
S1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [1025808 2013-03-06] (AVAST Software)
S1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [377920 2013-03-06] (AVAST Software)
S1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [68920 2013-03-06] (AVAST Software)
S3 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [178624 2013-03-06] ()
R3 nvoclk64; C:\Windows\system32\DRIVERS\nvoclk64.sys [42088 2009-09-15] (NVIDIA Corp.)
S3 Phantom1394_x64; C:\Windows\System32\Drivers\Phantom1394_x64.sys [53080 2010-10-22] ()
S2 PhantomEPP; C:\Windows\System32\Drivers\PhantomEPP_amd64.sys [25944 2010-10-22] (SensAble Technologies, Inc.)
S3 SensorsSimulatorDriver; C:\Windows\system32\DRIVERS\WUDFRd.sys [198656 2012-07-26] (Microsoft Corporation)
S3 VSPerfDrv110; C:\Program Files (x86)\Microsoft Visual Studio 11.0\Team Tools\Performance Tools\x64\VSPerfDrv110.sys [70264 2012-07-13] (Microsoft Corporation)
S3 WUDFSensorLP; C:\Windows\system32\DRIVERS\WUDFRd.sys [198656 2012-07-26] (Microsoft Corporation)
U4 mbamswissarmy;
S3 RtsUIR; system32\DRIVERS\Rts516xIR.sys [x]
S3 USBCCID; system32\DRIVERS\RtsUCcid.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-05-28 04:08 - 2013-05-28 04:08 - 00000000 ____D C:\FRST
2013-05-28 04:07 - 2013-05-28 04:08 - 01915616 ____A (Farbar) C:\Users\Alex\Downloads\FRST64.exe
2013-05-28 03:46 - 2013-05-28 03:49 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2013-05-28 03:44 - 2013-05-28 03:44 - 00001438 ____A C:\Users\Alex\Desktop\RKreport[2]_D_05282013_02d0344.txt
2013-05-28 03:43 - 2013-05-28 03:43 - 00001385 ____A C:\Users\Alex\Desktop\RKreport[1]_S_05282013_02d0343.txt
2013-05-28 03:40 - 2013-05-28 03:43 - 00000000 ____D C:\Users\Alex\Desktop\RK_Quarantine
2013-05-28 03:38 - 2013-05-28 03:40 - 00791040 ____A C:\Users\Alex\Downloads\RogueKillerX64.exe
2013-05-28 03:35 - 2013-05-28 03:35 - 13169742 ____A C:\Users\Alex\Downloads\mbar-1.06.0.1003.zip
2013-05-28 03:35 - 2013-05-28 03:35 - 00000000 ____D C:\Users\Alex\Downloads\mbar-1.06.0.1003
2013-05-28 03:16 - 2013-05-28 03:16 - 00024658 ____A C:\Users\Alex\Downloads\attach.txt
2013-05-28 02:50 - 2013-05-28 02:50 - 00024658 ____A C:\Users\Alex\Desktop\attach.txt
2013-05-28 02:50 - 2013-05-28 02:50 - 00018119 ____A C:\Users\Alex\Desktop\dds.txt
2013-05-28 02:48 - 2013-05-28 02:49 - 00688992 ____R (Swearware) C:\Users\Alex\Downloads\dds.com
2013-05-28 02:44 - 2013-05-28 02:44 - 10285040 ____A (Malwarebytes Corporation ) C:\Users\Alex\Downloads\mbam-setup-1.75.0.1300.exe
2013-05-28 02:44 - 2013-05-28 02:44 - 00001113 ____A C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-05-28 02:44 - 2013-05-28 02:44 - 00000000 ____D C:\Users\Alex\AppData\Roaming\Malwarebytes
2013-05-28 02:44 - 2013-05-28 02:44 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-05-28 02:44 - 2013-05-28 02:44 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-05-28 02:44 - 2013-04-04 14:50 - 00025928 ____A (Malwarebytes Corporation) C:\Windows\System32\Drivers\mbam.sys
2013-05-28 02:32 - 2013-05-28 02:32 - 00000000 ____D C:\TDSSKiller_Quarantine
2013-05-28 02:31 - 2013-05-28 02:31 - 02221422 ____A C:\Users\Alex\Downloads\tdsskiller.zip
2013-05-28 02:31 - 2013-05-28 02:31 - 02221422 ____A C:\Users\Alex\Downloads\tdsskiller (1).zip
2013-05-28 02:31 - 2013-05-28 02:31 - 00000000 ____D C:\Users\Alex\Downloads\tdsskiller (1)
2013-05-28 02:31 - 2013-05-28 02:31 - 00000000 ____D C:\Users\Alex\Downloads\tdsskiller
2013-05-28 02:30 - 2013-05-28 02:30 - 02239840 ____A (Kaspersky Lab ZAO) C:\Users\Alex\Downloads\tdsskiller.exe
2013-05-28 02:24 - 2013-05-28 02:24 - 00279152 ____A C:\Windows\Minidump\052813-6630-01.dmp
2013-05-27 21:28 - 2013-05-27 21:31 - 106354688 ____A C:\Users\Alex\Downloads\avg_arl_cdi_all_120_130515a6325.iso
2013-05-27 21:25 - 2013-05-27 21:25 - 00279152 ____A C:\Windows\Minidump\052713-6505-01.dmp
2013-05-27 21:18 - 2013-05-27 21:18 - 00279152 ____A C:\Windows\Minidump\052713-9547-01.dmp
2013-05-27 20:12 - 2013-05-27 20:12 - 00000000 __SHD C:\found.000
2013-05-27 20:07 - 2013-05-27 20:07 - 00295256 ____A C:\Windows\Minidump\052713-10717-02.dmp
2013-05-27 20:07 - 2013-05-27 20:07 - 00001922 ____A C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2013-05-27 20:07 - 2013-03-06 23:33 - 00084376 ____A (AVAST Software) C:\Windows\System32\Drivers\aswmon2.sys
2013-05-27 20:07 - 2013-03-06 23:33 - 00027744 ____A (AVAST Software) C:\Windows\System32\Drivers\aavmker4.sys
2013-05-27 20:02 - 2013-05-27 20:02 - 00295256 ____A C:\Windows\Minidump\052713-10717-01.dmp
2013-05-27 20:02 - 2013-05-27 20:02 - 00000000 __SHD C:\found.003
2013-05-27 19:51 - 2013-05-27 19:51 - 00000000 __SHD C:\found.002
2013-05-27 19:41 - 2013-05-27 19:41 - 00295312 ____A C:\Windows\Minidump\052713-8252-01.dmp
2013-05-27 19:38 - 2013-05-27 19:38 - 00295256 ____A C:\Windows\Minidump\052713-10623-01.dmp
2013-05-27 19:25 - 2013-05-27 19:26 - 00295312 ____A C:\Windows\Minidump\052713-10654-01.dmp
2013-05-27 19:25 - 2013-05-27 19:25 - 00015040 ____N C:\bootsqm.dat
2013-05-27 19:25 - 2013-05-27 19:25 - 00000000 __SHD C:\found.001
2013-05-27 15:18 - 2013-05-27 15:18 - 00295200 ____A C:\Windows\Minidump\052713-8736-01.dmp
2013-05-26 03:33 - 2013-05-26 03:33 - 00000000 ____D C:\Users\Alex\Downloads\Old *** ****
2013-05-26 03:31 - 2013-05-26 03:32 - 21538188 ____A C:\Users\Alex\Downloads\Old *** ****.zip
2013-05-25 23:13 - 2013-05-25 23:13 - 04346816 ____A (Piriform Ltd) C:\Users\Alex\Downloads\ccsetup401.exe
2013-05-24 20:50 - 2013-05-24 20:50 - 00000000 ____D C:\Users\Alex\Downloads\librocket_win32-vc9-source-1.2.1
2013-05-24 20:49 - 2013-05-24 20:49 - 05498854 ____A C:\Users\Alex\Downloads\librocket_win32-vc9-source-1.2.1.zip
2013-05-24 20:48 - 2013-05-24 20:48 - 00000000 ____D C:\Users\Alex\Downloads\tutorials
2013-05-24 20:47 - 2013-05-24 20:48 - 00157173 ____A C:\Users\Alex\Downloads\tutorials.zip
2013-05-24 20:41 - 2013-05-24 20:41 - 00000000 ____D C:\Users\Alex\Downloads\MYGUI_3.2.0_win32
2013-05-24 20:33 - 2013-05-24 20:34 - 14383788 ____A C:\Users\Alex\Downloads\MyGUI_3.2.0.zip
2013-05-24 20:32 - 2013-05-24 20:34 - 11958671 ____A C:\Users\Alex\Downloads\MYGUI_3.2.0_win32.zip
2013-05-24 20:24 - 2013-05-24 20:24 - 02097004 ____A C:\Users\Alex\Downloads\GG-0.7.0.zip
2013-05-24 20:24 - 2013-05-24 20:24 - 00000000 ____D C:\Users\Alex\Downloads\GG-0.7.0
2013-05-24 13:36 - 2013-05-24 13:36 - 01307915 ____A C:\Users\Alex\Downloads\tutors-win32.zip
2013-05-24 13:36 - 2013-05-24 13:36 - 00000000 ____D C:\Users\Alex\Downloads\tutors-win32
2013-05-24 06:09 - 2013-05-24 06:09 - 01194855 ____A C:\Users\Alex\Downloads\glfw-2.7.8.zip
2013-05-24 06:09 - 2013-05-24 06:09 - 00000000 ____D C:\Users\Alex\Downloads\glfw-2.7.8
2013-05-24 04:51 - 2013-05-24 04:51 - 00000000 ____D C:\cppincludes
2013-05-24 04:45 - 2013-05-24 04:45 - 00714412 ____A C:\Users\Alex\Downloads\glfw-2.7.8.bin.WIN64.zip
2013-05-24 04:45 - 2013-05-24 04:45 - 00000000 ____D C:\Users\Alex\Downloads\glfw-2.7.8.bin.WIN64
2013-05-24 04:31 - 2013-05-24 04:31 - 00272757 ____A C:\Users\Alex\Desktop\ai (5).zip
2013-05-24 04:25 - 2013-05-24 04:25 - 00175297 ____A C:\Users\Alex\Desktop\ai (4).zip
2013-05-24 04:05 - 2013-05-24 04:05 - 00175404 ____A C:\Users\Alex\Desktop\ai (3).zip
2013-05-24 03:53 - 2013-05-24 03:53 - 00082896 ____A C:\Users\Alex\Desktop\ai (2).zip
2013-05-24 03:51 - 2013-05-24 03:51 - 00818780 ____A C:\Users\Alex\Desktop\ai.zip
2013-05-24 03:50 - 2013-05-24 04:31 - 00000000 ____D C:\Users\Alex\Desktop\ai
2013-05-23 22:45 - 2013-05-23 22:45 - 00000000 ____D C:\Program Files (x86)\Geeks3D
2013-05-23 22:33 - 2013-05-23 22:33 - 00000000 ____D C:\Users\Alex\Downloads\glut37
2013-05-23 22:31 - 2013-05-23 22:31 - 03769123 ____A C:\Users\Alex\Downloads\glut37.zip
2013-05-21 14:17 - 2013-05-21 14:17 - 00148256 ____A C:\Users\Alex\Downloads\Revision.pptx
2013-05-21 00:38 - 2013-05-21 00:38 - 00003584 ____A C:\Users\Alex\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2013-05-19 20:11 - 2013-05-22 21:35 - 00000000 ____D C:\Users\Alex\Desktop\ACS
2013-05-19 18:11 - 2013-05-19 18:11 - 00188477 ____A C:\Users\Alex\Downloads\Colorpicker.exe
2013-05-18 15:53 - 2013-05-18 15:53 - 00460832 ____A C:\Windows\System32\FNTCACHE.DAT
2013-05-18 13:12 - 2013-05-18 13:12 - 00000000 ____D C:\Users\Alex\Downloads\Skyrim topographic map-36159-1-0
2013-05-16 16:17 - 2013-04-09 06:33 - 00489576 ____A (Microsoft Corporation) C:\Windows\System32\AudioEng.dll
2013-05-16 16:17 - 2013-04-09 06:33 - 00446792 ____A (Microsoft Corporation) C:\Windows\System32\AudioSes.dll
2013-05-16 16:17 - 2013-04-09 06:20 - 00306952 ____A (Microsoft Corporation) C:\Windows\System32\kd_02_10ec.dll
2013-05-16 16:17 - 2013-04-09 05:51 - 00367616 ____A (Microsoft Corporation) C:\Windows\System32\conhost.exe
2013-05-16 16:17 - 2013-04-09 05:50 - 02107904 ____A (Microsoft Corporation) C:\Windows\System32\mssrch.dll
2013-05-16 16:17 - 2013-04-09 05:50 - 00435200 ____A (Microsoft Corporation) C:\Windows\System32\mssph.dll
2013-05-16 16:17 - 2013-04-09 05:49 - 01444864 ____A (Microsoft Corporation) C:\Windows\System32\MSAudDecMFT.dll
2013-05-16 16:17 - 2013-04-09 05:49 - 00817152 ____A (Microsoft Corporation) C:\Windows\System32\kerberos.dll
2013-05-16 16:17 - 2013-04-09 05:49 - 00172544 ____A (Microsoft Corporation) C:\Windows\System32\dwmredir.dll
2013-05-16 16:17 - 2013-04-09 05:48 - 00785408 ____A (Microsoft Corporation) C:\Windows\System32\audiosrv.dll
2013-05-16 16:17 - 2013-04-09 03:32 - 00805376 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\PEAuth.sys
2013-05-16 16:17 - 2013-04-09 00:39 - 01408896 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2013-05-16 16:17 - 2013-04-08 22:52 - 11878912 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2013-05-16 16:17 - 2013-04-08 22:52 - 00302592 ____A (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2013-05-16 16:17 - 2013-04-08 22:51 - 10789888 ____A (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2013-05-16 16:17 - 2013-04-08 22:51 - 08857088 ____A (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2013-05-16 16:17 - 2013-04-08 22:51 - 02767360 ____A (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2013-05-16 16:17 - 2013-04-08 22:51 - 01593344 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2013-05-16 16:17 - 2013-04-08 22:51 - 01113600 ____A (Microsoft Corporation) C:\Windows\SysWOW64\MSAudDecMFT.dll
2013-05-16 16:17 - 2013-04-08 22:51 - 00403968 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll
2013-05-16 16:17 - 2013-04-08 22:51 - 00324096 ____A (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2013-05-16 16:16 - 2013-04-09 06:33 - 00253544 ____A (Microsoft Corporation) C:\Windows\System32\audiodg.exe
2013-05-16 16:16 - 2013-04-09 06:27 - 00284424 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\spaceport.sys
2013-05-16 16:16 - 2013-04-09 06:20 - 00086280 ____A (Microsoft Corporation) C:\Windows\System32\kdnet.dll
2013-05-16 16:16 - 2013-04-09 06:18 - 00077960 ____A (Microsoft Corporation) C:\Windows\System32\kdvm.dll
2013-05-16 16:16 - 2013-04-09 05:50 - 00745984 ____A (Microsoft Corporation) C:\Windows\System32\mssvp.dll
2013-05-16 16:16 - 2013-04-09 05:50 - 00414720 ____A (Microsoft Corporation) C:\Windows\System32\GenuineCenter.dll
2013-05-16 16:16 - 2013-04-09 05:50 - 00096256 ____A (Microsoft Corporation) C:\Windows\System32\mssprxy.dll
2013-05-16 16:16 - 2013-04-09 05:50 - 00065024 ____A (Microsoft Corporation) C:\Windows\System32\msscntrs.dll
2013-05-16 16:16 - 2013-04-09 05:50 - 00013824 ____A (Microsoft Corporation) C:\Windows\System32\msshooks.dll
2013-05-16 16:16 - 2013-04-09 05:49 - 00468992 ____A (Microsoft Corporation) C:\Windows\System32\MFMediaEngine.dll
2013-05-16 16:16 - 2013-04-09 05:49 - 00281088 ____A (Microsoft Corporation) C:\Windows\System32\mfreadwrite.dll
2013-05-16 16:16 - 2013-04-09 05:49 - 00231936 ____A (Microsoft Corporation) C:\Windows\System32\fhengine.dll
2013-05-16 16:16 - 2013-04-09 05:49 - 00210432 ____A (Microsoft Corporation) C:\Windows\System32\iuilp.dll
2013-05-16 16:16 - 2013-04-09 05:49 - 00196096 ____A (Microsoft Corporation) C:\Windows\System32\dmvdsitf.dll
2013-05-16 16:16 - 2013-04-09 05:49 - 00050176 ____A (Microsoft Corporation) C:\Windows\System32\fmifs.dll
2013-05-16 16:16 - 2013-04-09 05:48 - 02303488 ____A (Microsoft Corporation) C:\Windows\System32\authui.dll
2013-05-16 16:16 - 2013-04-09 05:48 - 00419840 ____A (Microsoft Corporation) C:\Windows\System32\intl.cpl
2013-05-16 16:16 - 2013-04-09 05:48 - 00169472 ____A (Microsoft Corporation) C:\Windows\System32\AudioEndpointBuilder.dll
2013-05-16 16:16 - 2013-04-09 03:34 - 00095744 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\hidbth.sys
2013-05-16 16:16 - 2013-04-09 03:34 - 00083968 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\hidclass.sys
2013-05-16 16:16 - 2013-04-09 03:34 - 00027648 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\hidusb.sys
2013-05-16 16:16 - 2013-04-09 03:33 - 00623104 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\srv2.sys
2013-05-16 16:16 - 2013-04-09 03:33 - 00060416 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\ndproxy.sys
2013-05-16 16:16 - 2013-04-09 03:31 - 00247808 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\srvnet.sys
2013-05-16 16:16 - 2013-04-09 03:31 - 00083456 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\wanarp.sys
2013-05-16 16:16 - 2013-04-09 00:44 - 00123880 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wscapi.dll
2013-05-16 16:16 - 2013-04-09 00:37 - 00426024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2013-05-16 16:16 - 2013-04-09 00:37 - 00324368 ____A (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2013-05-16 16:16 - 2013-04-08 22:52 - 00670208 ____A (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2013-05-16 16:16 - 2013-04-08 22:52 - 00364544 ____A (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2013-05-16 16:16 - 2013-04-08 22:52 - 00171008 ____A (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe
2013-05-16 16:16 - 2013-04-08 22:52 - 00106496 ____A (Microsoft Corporation) C:\Windows\SysWOW64\Robocopy.exe
2013-05-16 16:16 - 2013-04-08 22:51 - 02035200 ____A (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2013-05-16 16:16 - 2013-04-08 22:51 - 00659456 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
2013-05-16 16:16 - 2013-04-08 22:51 - 00656896 ____A (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2013-05-16 16:16 - 2013-04-08 22:51 - 00411136 ____A (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.dll
2013-05-16 16:16 - 2013-04-08 22:51 - 00389632 ____A (Microsoft Corporation) C:\Windows\SysWOW64\intl.cpl
2013-05-16 16:16 - 2013-04-08 22:51 - 00361984 ____A (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
2013-05-16 16:16 - 2013-04-08 22:51 - 00214528 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll
2013-05-16 16:16 - 2013-04-08 22:51 - 00186880 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll
2013-05-16 16:16 - 2013-04-08 22:51 - 00155648 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dmvdsitf.dll
2013-05-16 16:16 - 2013-04-08 22:51 - 00041984 ____A (Microsoft Corporation) C:\Windows\SysWOW64\fmifs.dll
2013-05-16 16:16 - 2013-04-08 22:51 - 00035328 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mssprxy.dll
2013-05-16 16:16 - 2013-04-08 22:51 - 00010752 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msshooks.dll
2013-05-16 16:16 - 2013-04-08 22:51 - 00000000 ____A C:\Windows\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2013-05-16 16:16 - 2013-04-05 00:30 - 00503080 ____A (Microsoft Corporation) C:\Windows\System32\ci.dll
2013-05-16 16:16 - 2013-04-02 23:08 - 00387688 ____A C:\Windows\System32\ApnDatabase.xml
2013-05-16 16:16 - 2013-03-15 23:05 - 00252928 ____A (Microsoft Corporation) C:\Windows\SysWOW64\rsaenh.dll
2013-05-16 16:16 - 2012-12-13 04:59 - 00002048 ____A (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2013-05-15 00:19 - 2013-04-16 03:34 - 01455368 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\dxgkrnl.sys
2013-05-15 00:19 - 2013-04-10 00:17 - 19231232 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2013-05-15 00:19 - 2013-04-10 00:17 - 00603136 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll
2013-05-15 00:19 - 2013-04-10 00:17 - 00051712 ____A (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe
2013-05-15 00:19 - 2013-04-10 00:16 - 15404032 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2013-05-15 00:19 - 2013-04-10 00:16 - 03958784 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2013-05-15 00:19 - 2013-04-10 00:16 - 02647552 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2013-05-15 00:19 - 2013-04-10 00:16 - 00855552 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll
2013-05-15 00:19 - 2013-04-09 23:30 - 01767424 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-05-15 00:19 - 2013-04-09 23:30 - 01130496 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-05-15 00:19 - 2013-04-09 23:29 - 14323712 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-05-15 00:19 - 2013-04-09 23:29 - 13760512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-05-15 00:19 - 2013-04-09 23:29 - 02877440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-05-15 00:19 - 2013-04-09 23:29 - 02046976 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-05-15 00:19 - 2013-04-09 23:29 - 00690688 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-05-15 00:19 - 2013-04-09 23:29 - 00493056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-05-15 00:19 - 2013-03-15 01:17 - 00861184 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\http.sys
2013-05-15 00:19 - 2013-03-06 08:10 - 00112872 ____A (Microsoft Corporation) C:\Windows\System32\consent.exe
2013-05-15 00:19 - 2013-03-06 07:29 - 00070144 ____A (Microsoft Corporation) C:\Windows\System32\appinfo.dll
2013-05-15 00:19 - 2013-03-06 06:03 - 17561600 ____A (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2013-05-15 00:19 - 2013-03-06 06:03 - 00199168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll
2013-05-15 00:18 - 2013-03-22 04:49 - 02382336 ____A (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll
2013-05-15 00:18 - 2013-03-21 23:47 - 02851840 ____A (Microsoft Corporation) C:\Windows\System32\esent.dll
2013-05-14 04:48 - 2013-05-14 04:48 - 00042677 ____A C:\Users\Alex\Desktop\mapeditbackup.txt
2013-05-14 04:12 - 2013-05-14 04:12 - 00232945 ____A C:\Users\Alex\Downloads\ois-v1-3.zip
2013-05-14 04:12 - 2013-05-14 04:12 - 00000000 ____D C:\Users\Alex\Downloads\ois-v1-3
2013-05-13 22:25 - 2013-01-31 05:51 - 00000000 ____D C:\Users\Alex\Downloads\boost_1_53_0
2013-05-13 22:22 - 2013-05-13 22:24 - 51680425 ____A C:\Users\Alex\Downloads\boost_1_53_0.7z
2013-05-13 22:20 - 2013-05-13 22:21 - 20999180 ____A C:\Users\Alex\Downloads\boost_1_53_0.zip
2013-05-13 22:20 - 2013-05-13 22:20 - 00195104 ____A C:\Users\Alex\Downloads\boost_1_51_setup.exe
2013-05-12 20:55 - 2013-05-12 21:04 - 00000000 ____D C:\Users\Alex\AppData\Roaming\Litecoin
2013-05-04 04:05 - 2013-05-04 04:05 - 00015752 ____A C:\Users\Alex\AppData\Local\recently-used.xbel
2013-05-01 15:45 - 2013-05-01 15:45 - 00609190 ____A C:\Users\Alex\AppData\Roaming\Scorch_Install.log
2013-05-01 15:45 - 2013-05-01 15:45 - 00000000 ____D C:\Users\Alex\AppData\Roaming\Sibelius Software
2013-05-01 15:45 - 2013-05-01 15:45 - 00000000 ____D C:\Program Files (x86)\Sibelius Software
2013-04-28 01:59 - 2013-05-01 15:45 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-04-28 01:59 - 2013-04-28 01:59 - 00000000 ____D C:\Users\Alex\AppData\Local\Mozilla
==================== One Month Modified Files and Folders =======
2013-05-28 04:08 - 2013-05-28 04:08 - 00000000 ____D C:\FRST
2013-05-28 04:08 - 2013-05-28 04:07 - 01915616 ____A (Farbar) C:\Users\Alex\Downloads\FRST64.exe
2013-05-28 04:01 - 2013-05-28 03:46 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2013-05-28 03:44 - 2013-05-28 03:44 - 00001438 ____A C:\Users\Alex\Desktop\RKreport[2]_D_05282013_02d0344.txt
2013-05-28 03:43 - 2013-05-28 03:43 - 00001385 ____A C:\Users\Alex\Desktop\RKreport[1]_S_05282013_02d0343.txt
2013-05-28 03:43 - 2013-05-28 03:40 - 00000000 ____D C:\Users\Alex\Desktop\RK_Quarantine
2013-05-28 03:40 - 2013-05-28 03:38 - 00791040 ____A C:\Users\Alex\Downloads\RogueKillerX64.exe
2013-05-28 03:35 - 2013-05-28 03:35 - 13169742 ____A C:\Users\Alex\Downloads\mbar-1.06.0.1003.zip
2013-05-28 03:35 - 2013-05-28 03:35 - 00000000 ____D C:\Users\Alex\Downloads\mbar-1.06.0.1003
2013-05-28 03:27 - 2013-04-19 11:00 - 00000000 ____D C:\Program Files\HexChat
2013-05-28 03:16 - 2013-05-28 03:16 - 00024658 ____A C:\Users\Alex\Downloads\attach.txt
2013-05-28 02:50 - 2013-05-28 02:50 - 00024658 ____A C:\Users\Alex\Desktop\attach.txt
2013-05-28 02:50 - 2013-05-28 02:50 - 00018119 ____A C:\Users\Alex\Desktop\dds.txt
2013-05-28 02:49 - 2013-05-28 02:48 - 00688992 ____R (Swearware) C:\Users\Alex\Downloads\dds.com
2013-05-28 02:44 - 2013-05-28 02:44 - 10285040 ____A (Malwarebytes Corporation ) C:\Users\Alex\Downloads\mbam-setup-1.75.0.1300.exe
2013-05-28 02:44 - 2013-05-28 02:44 - 00001113 ____A C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-05-28 02:44 - 2013-05-28 02:44 - 00000000 ____D C:\Users\Alex\AppData\Roaming\Malwarebytes
2013-05-28 02:44 - 2013-05-28 02:44 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-05-28 02:44 - 2013-05-28 02:44 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-05-28 02:39 - 2013-05-28 02:32 - 00000000 ____D C:\TDSSKiller_Quarantine
2013-05-28 02:31 - 2013-05-28 02:31 - 02221422 ____A C:\Users\Alex\Downloads\tdsskiller.zip
2013-05-28 02:31 - 2013-05-28 02:31 - 02221422 ____A C:\Users\Alex\Downloads\tdsskiller (1).zip
2013-05-28 02:31 - 2013-05-28 02:31 - 00000000 ____D C:\Users\Alex\Downloads\tdsskiller (1)
2013-05-28 02:31 - 2013-05-28 02:31 - 00000000 ____D C:\Users\Alex\Downloads\tdsskiller
2013-05-28 02:30 - 2013-05-28 02:30 - 02239840 ____A (Kaspersky Lab ZAO) C:\Users\Alex\Downloads\tdsskiller.exe
2013-05-28 02:24 - 2013-05-28 02:24 - 00279152 ____A C:\Windows\Minidump\052813-6630-01.dmp
2013-05-28 02:24 - 2013-02-03 19:53 - 311139252 ____A C:\Windows\MEMORY.DMP
2013-05-28 02:24 - 2013-01-17 14:38 - 00000000 ____D C:\Windows\Minidump
2013-05-27 21:31 - 2013-05-27 21:28 - 106354688 ____A C:\Users\Alex\Downloads\avg_arl_cdi_all_120_130515a6325.iso
2013-05-27 21:25 - 2013-05-27 21:25 - 00279152 ____A C:\Windows\Minidump\052713-6505-01.dmp
2013-05-27 21:18 - 2013-05-27 21:18 - 00279152 ____A C:\Windows\Minidump\052713-9547-01.dmp
2013-05-27 20:12 - 2013-05-27 20:12 - 00000000 __SHD C:\found.000
2013-05-27 20:12 - 2013-01-15 17:22 - 00000916 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-05-27 20:09 - 2012-07-26 08:22 - 00000006 ___AH C:\Windows\Tasks\SA.DAT
2013-05-27 20:07 - 2013-05-27 20:07 - 00295256 ____A C:\Windows\Minidump\052713-10717-02.dmp
2013-05-27 20:07 - 2013-05-27 20:07 - 00001922 ____A C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2013-05-27 20:02 - 2013-05-27 20:02 - 00295256 ____A C:\Windows\Minidump\052713-10717-01.dmp
2013-05-27 20:02 - 2013-05-27 20:02 - 00000000 __SHD C:\found.003
2013-05-27 19:51 - 2013-05-27 19:51 - 00000000 __SHD C:\found.002
2013-05-27 19:41 - 2013-05-27 19:41 - 00295312 ____A C:\Windows\Minidump\052713-8252-01.dmp
2013-05-27 19:38 - 2013-05-27 19:38 - 00295256 ____A C:\Windows\Minidump\052713-10623-01.dmp
2013-05-27 19:26 - 2013-05-27 19:25 - 00295312 ____A C:\Windows\Minidump\052713-10654-01.dmp
2013-05-27 19:25 - 2013-05-27 19:25 - 00015040 ____N C:\bootsqm.dat
2013-05-27 19:25 - 2013-05-27 19:25 - 00000000 __SHD C:\found.001
2013-05-27 19:15 - 2012-07-26 06:26 - 00262144 __ASH C:\Windows\System32\config\BBI
2013-05-27 15:18 - 2013-05-27 15:18 - 00295200 ____A C:\Windows\Minidump\052713-8736-01.dmp
2013-05-27 15:02 - 2013-01-15 17:55 - 00000000 ____D C:\Users\Alex\AppData\Roaming\Spotify
2013-05-27 14:44 - 2013-01-15 15:37 - 01973107 ____A C:\Windows\WindowsUpdate.log
2013-05-27 14:37 - 2013-01-15 17:22 - 00000920 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-05-27 14:33 - 2013-01-15 17:55 - 00000000 ____D C:\Users\Alex\AppData\Local\Spotify
2013-05-27 05:30 - 2013-02-06 20:15 - 00000930 ____A C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3806110622-1921348492-2089721076-1001UA.job
2013-05-27 01:30 - 2013-02-06 20:15 - 00000878 ____A C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3806110622-1921348492-2089721076-1001Core.job
2013-05-26 03:33 - 2013-05-26 03:33 - 00000000 ____D C:\Users\Alex\Downloads\Old *** ****
2013-05-26 03:32 - 2013-05-26 03:31 - 21538188 ____A C:\Users\Alex\Downloads\Old *** ****.zip
2013-05-25 23:20 - 2013-01-19 04:13 - 00000000 ____D C:\Users\Alex\Backups
2013-05-25 23:16 - 2013-01-19 03:12 - 00000000 ____D C:\Program Files\CCleaner
2013-05-25 23:13 - 2013-05-25 23:13 - 04346816 ____A (Piriform Ltd) C:\Users\Alex\Downloads\ccsetup401.exe
2013-05-25 13:00 - 2013-01-16 22:08 - 01273344 __ASH C:\Users\Alex\Desktop\Thumbs.db
2013-05-24 20:50 - 2013-05-24 20:50 - 00000000 ____D C:\Users\Alex\Downloads\librocket_win32-vc9-source-1.2.1
2013-05-24 20:49 - 2013-05-24 20:49 - 05498854 ____A C:\Users\Alex\Downloads\librocket_win32-vc9-source-1.2.1.zip
2013-05-24 20:48 - 2013-05-24 20:48 - 00000000 ____D C:\Users\Alex\Downloads\tutorials
2013-05-24 20:48 - 2013-05-24 20:47 - 00157173 ____A C:\Users\Alex\Downloads\tutorials.zip
2013-05-24 20:41 - 2013-05-24 20:41 - 00000000 ____D C:\Users\Alex\Downloads\MYGUI_3.2.0_win32
2013-05-24 20:34 - 2013-05-24 20:33 - 14383788 ____A C:\Users\Alex\Downloads\MyGUI_3.2.0.zip
2013-05-24 20:34 - 2013-05-24 20:32 - 11958671 ____A C:\Users\Alex\Downloads\MYGUI_3.2.0_win32.zip
2013-05-24 20:24 - 2013-05-24 20:24 - 02097004 ____A C:\Users\Alex\Downloads\GG-0.7.0.zip
2013-05-24 20:24 - 2013-05-24 20:24 - 00000000 ____D C:\Users\Alex\Downloads\GG-0.7.0
2013-05-24 19:21 - 2013-01-16 00:03 - 00000000 ____D C:\Program Files (x86)\Steam
2013-05-24 13:36 - 2013-05-24 13:36 - 01307915 ____A C:\Users\Alex\Downloads\tutors-win32.zip
2013-05-24 13:36 - 2013-05-24 13:36 - 00000000 ____D C:\Users\Alex\Downloads\tutors-win32
2013-05-24 08:48 - 2013-02-13 18:07 - 00000000 ____D C:\ws
2013-05-24 06:09 - 2013-05-24 06:09 - 01194855 ____A C:\Users\Alex\Downloads\glfw-2.7.8.zip
2013-05-24 06:09 - 2013-05-24 06:09 - 00000000 ____D C:\Users\Alex\Downloads\glfw-2.7.8
2013-05-24 04:52 - 2013-02-15 22:11 - 00441856 __ASH C:\Users\Alex\Downloads\Thumbs.db
2013-05-24 04:51 - 2013-05-24 04:51 - 00000000 ____D C:\cppincludes
2013-05-24 04:45 - 2013-05-24 04:45 - 00714412 ____A C:\Users\Alex\Downloads\glfw-2.7.8.bin.WIN64.zip
2013-05-24 04:45 - 2013-05-24 04:45 - 00000000 ____D C:\Users\Alex\Downloads\glfw-2.7.8.bin.WIN64
2013-05-24 04:31 - 2013-05-24 04:31 - 00272757 ____A C:\Users\Alex\Desktop\ai (5).zip
2013-05-24 04:31 - 2013-05-24 03:50 - 00000000 ____D C:\Users\Alex\Desktop\ai
2013-05-24 04:25 - 2013-05-24 04:25 - 00175297 ____A C:\Users\Alex\Desktop\ai (4).zip
2013-05-24 04:05 - 2013-05-24 04:05 - 00175404 ____A C:\Users\Alex\Desktop\ai (3).zip
2013-05-24 03:53 - 2013-05-24 03:53 - 00082896 ____A C:\Users\Alex\Desktop\ai (2).zip
2013-05-24 03:51 - 2013-05-24 03:51 - 00818780 ____A C:\Users\Alex\Desktop\ai.zip
2013-05-23 22:45 - 2013-05-23 22:45 - 00000000 ____D C:\Program Files (x86)\Geeks3D
2013-05-23 22:33 - 2013-05-23 22:33 - 00000000 ____D C:\Users\Alex\Downloads\glut37
2013-05-23 22:31 - 2013-05-23 22:31 - 03769123 ____A C:\Users\Alex\Downloads\glut37.zip
2013-05-23 19:07 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\AUInstallAgent
2013-05-22 22:00 - 2013-01-16 00:17 - 00000000 ____D C:\Users\Alex\Documents\Eclipse
2013-05-22 21:57 - 2013-01-16 00:17 - 00000000 ____D C:\Users\Alex\AppData\Local\Eclipse
2013-05-22 21:56 - 2013-01-16 00:05 - 00000000 ____D C:\Program Files\eclipse
2013-05-22 21:36 - 2013-02-13 17:28 - 00000000 ___SD C:\Users\Alex\Google Drive
2013-05-22 21:35 - 2013-05-19 20:11 - 00000000 ____D C:\Users\Alex\Desktop\ACS
2013-05-22 21:35 - 2013-04-08 16:25 - 00000000 ____D C:\Users\Alex\Downloads\Torrents
2013-05-22 19:09 - 2013-01-16 03:02 - 00000000 ____D C:\Users\Alex\Documents\# Uni
2013-05-21 14:17 - 2013-05-21 14:17 - 00148256 ____A C:\Users\Alex\Downloads\Revision.pptx
2013-05-21 00:38 - 2013-05-21 00:38 - 00003584 ____A C:\Users\Alex\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2013-05-20 21:05 - 2013-04-07 18:43 - 00000000 ____D C:\Users\Alex\AppData\Roaming\vlc
2013-05-20 16:25 - 2013-03-25 00:33 - 00000000 ____D C:\Users\Alex\AppData\Local\Skyrim
2013-05-20 14:11 - 2013-04-08 16:23 - 00000000 ____D C:\Users\Alex\AppData\Roaming\uTorrent
2013-05-19 18:11 - 2013-05-19 18:11 - 00188477 ____A C:\Users\Alex\Downloads\Colorpicker.exe
2013-05-19 18:01 - 2013-01-15 18:16 - 00000000 ____D C:\Users\Alex\Documents\Visual Studio 2012
2013-05-18 15:53 - 2013-05-18 15:53 - 00460832 ____A C:\Windows\System32\FNTCACHE.DAT
2013-05-18 15:09 - 2013-03-28 19:39 - 00000000 ____D C:\Program Files\Nexus Mod Manager
2013-05-18 14:25 - 2013-01-16 01:34 - 00000000 ____D C:\Users\Alex\AppData\Roaming\MediaMonkey
2013-05-18 13:12 - 2013-05-18 13:12 - 00000000 ____D C:\Users\Alex\Downloads\Skyrim topographic map-36159-1-0
2013-05-16 17:38 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\rescache
2013-05-16 17:02 - 2013-01-15 15:37 - 00000000 ____D C:\users\Alex
2013-05-16 17:02 - 2012-07-26 09:12 - 00000000 ___RD C:\Windows\ToastData
2013-05-16 17:02 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\SysWOW64\en-GB
2013-05-16 17:02 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\System32\en-GB
2013-05-15 00:28 - 2013-01-15 17:52 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-05-15 00:25 - 2013-01-15 15:51 - 75016696 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe
2013-05-14 04:48 - 2013-05-14 04:48 - 00042677 ____A C:\Users\Alex\Desktop\mapeditbackup.txt
2013-05-14 04:12 - 2013-05-14 04:12 - 00232945 ____A C:\Users\Alex\Downloads\ois-v1-3.zip
2013-05-14 04:12 - 2013-05-14 04:12 - 00000000 ____D C:\Users\Alex\Downloads\ois-v1-3
2013-05-13 22:24 - 2013-05-13 22:22 - 51680425 ____A C:\Users\Alex\Downloads\boost_1_53_0.7z
2013-05-13 22:21 - 2013-05-13 22:20 - 20999180 ____A C:\Users\Alex\Downloads\boost_1_53_0.zip
2013-05-13 22:20 - 2013-05-13 22:20 - 00195104 ____A C:\Users\Alex\Downloads\boost_1_51_setup.exe
2013-05-12 21:04 - 2013-05-12 20:55 - 00000000 ____D C:\Users\Alex\AppData\Roaming\Litecoin
2013-05-12 16:20 - 2012-07-26 09:12 - 00000000 ____D C:\Windows\System32\NDF
2013-05-10 22:41 - 2013-02-01 02:06 - 00000000 ____D C:\Users\Alex\AppData\Roaming\Skype
2013-05-10 21:06 - 2013-02-01 02:06 - 00000000 ___RD C:\Program Files (x86)\Skype
2013-05-10 21:06 - 2013-02-01 02:06 - 00000000 ____D C:\ProgramData\Skype
2013-05-10 11:30 - 2013-04-23 11:25 - 00000000 ____D C:\Users\Alex\AppData\Roaming\Mozilla
2013-05-09 15:14 - 2013-04-05 21:33 - 00000000 ____D C:\Users\Alex\Downloads\PDF Version - A4-17893
2013-05-09 15:14 - 2013-01-22 02:41 - 00027648 __ASH C:\Users\Alex\Documents\Thumbs.db
2013-05-09 15:13 - 2013-01-16 03:07 - 00000000 ____D C:\Users\Alex\Programming
2013-05-07 21:07 - 2012-07-26 09:14 - 00693112 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-05-07 21:07 - 2012-07-26 09:14 - 00078200 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-05-04 04:05 - 2013-05-04 04:05 - 00015752 ____A C:\Users\Alex\AppData\Local\recently-used.xbel
2013-05-04 04:05 - 2013-01-21 15:00 - 00000000 ____D C:\Users\Alex\.gimp-2.8
2013-05-01 23:14 - 2013-01-16 03:06 - 00000000 ____D C:\Users\Alex\Documents\Cards, Letters
2013-05-01 22:15 - 2013-01-22 04:35 - 00000000 ____D C:\Users\Alex\AppData\Roaming\Audacity
2013-05-01 18:00 - 2013-01-16 16:26 - 00127944 ____A C:\Users\Alex\AppData\Local\GDIPFONTCACHEV1.DAT
2013-05-01 15:45 - 2013-05-01 15:45 - 00609190 ____A C:\Users\Alex\AppData\Roaming\Scorch_Install.log
2013-05-01 15:45 - 2013-05-01 15:45 - 00000000 ____D C:\Users\Alex\AppData\Roaming\Sibelius Software
2013-05-01 15:45 - 2013-05-01 15:45 - 00000000 ____D C:\Program Files (x86)\Sibelius Software
2013-05-01 15:45 - 2013-04-28 01:59 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-04-30 01:20 - 2013-01-16 02:55 - 00000000 ____D C:\Users\Alex\AppData\Local\Paint.NET
2013-04-29 19:23 - 2013-01-15 15:37 - 00000000 ____D C:\Users\Alex\AppData\Local\Packages
2013-04-28 01:59 - 2013-04-28 01:59 - 00000000 ____D C:\Users\Alex\AppData\Local\Mozilla
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
Last Boot: 2013-05-23 17:23
==================== End Of Log ============================