DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 11.0.9600.17239
Run by Kathleen at 12:02:43 on 2014-09-06
Microsoft Windows 7 Professional 6.1.7601.1.1252.1.1033.18.2937.951 [GMT -5:00]
.
AV: Trend Micro Titanium Maximum Security *Disabled/Updated* {5D349EF8-873B-C657-917F-F1D93E101A7C}
AV: Microsoft Security Essentials *Enabled/Updated* {641105E6-77ED-3F35-A304-765193BCB75F}
SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Microsoft Security Essentials *Enabled/Updated* {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}
SP: Trend Micro Titanium Maximum Security *Disabled/Updated* {E6557F1C-A101-C9D9-ABCF-CAAB459750C1}
.
============== Running Processes ===============
.
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\ibmpmsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
c:\Program Files\Microsoft Security Client\MsMpEng.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\WLANExt.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\LENOVO\HOTKEY\TPHKSVC.exe
C:\Program Files\Trend Micro\UniClient\UiFrmWrk\uiWatchDog.exe
C:\Program Files (x86)\Lenovo\Access Connections\AcPrfMgrSvc.exe
C:\Program Files (x86)\Common Files\ArcSoft\esinter\Bin\eservutil.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files\Intel\WiFi\bin\EvtEng.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe
C:\Program Files\Lenovo\Communications Utility\CAMMUTE.exe
C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe
C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
C:\Program Files (x86)\Lenovo\Access Connections\AcSvc.exe
C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe
C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\PrintIsolationHost.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe
C:\Program Files (x86)\Common Files\Lenovo\tvt_reg_monitor_svc.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\system32\SearchIndexer.exe
c:\Program Files\Microsoft Security Client\NisSrv.exe
C:\Program Files (x86)\Lenovo\Access Connections\SvcGuiHlpr.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE
C:\Windows\System32\WUDFHost.exe
C:\PROGRA~1\LENOVO\HOTKEY\tpnumlk.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\LENOVO\HOTKEY\tposdsvc.exe
C:\Program Files\LENOVO\HOTKEY\shtctky.exe
C:\PROGRA~1\LENOVO\HOTKEY\tpnumlkd.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files (x86)\UnHackMe\hackmon.exe
C:\Program Files\Lenovo\HOTKEY\TPONSCR.exe
C:\Program Files\Lenovo\Zoom\TpScrex.exe
C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Windows\System32\TpShocks.exe
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\Lenovo\Communications Utility\TpKnrres.exe
C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe
C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files (x86)\Siber Systems\AI RoboForm\robotaskbaricon.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files (x86)\Audible\Bin\AudibleDownloadHelper.exe
C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
C:\Windows\SysWOW64\rundll32.exe
C:\Program Files (x86)\Lenovo\Message Center Plus\MCPLaunch.exe
C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE
C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
C:\Windows\system32\rundll32.exe
C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe
C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE
C:\Program Files (x86)\ThinkPad\Utilities\SCHTASK.exe
C:\Windows\system32\igfxext.exe
C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Windows\system32\Macromed\Flash\FlashUtil64_14_0_0_145_ActiveX.exe
C:\Windows\System32\MsSpellCheckingFacility.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\vssvc.exe
C:\Windows\System32\svchost.exe -k swprv
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://start.roboform.com
uDefault_Page_URL = hxxp://lenovo.msn.com
mWinlogon: Userinit = userinit.exe,
BHO: TmIEPlugInBHO Class: {1CA1377B-DC1D-4A52-9585-6E06050FAC53} - C:\Program Files\Trend Micro\AMSP\module\20004\3.0.1313\6.8.1120\TmIEPlg32.dll
BHO: TSToolbarBHO: {43C6D902-A1C5-45c9-91F6-FD9E90337E18} - C:\Program Files\Trend Micro\Titanium\UIFramework\ToolbarIE.dll
BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: Windows Live Messenger Companion Helper: {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL
BHO: TmBpIeBHO Class: {BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC} - C:\Program Files\Trend Micro\AMSP\module\20002\8.0.1173\8.0.1173\TmBpIe32.dll
TB: Google Toolbar: {2318C2B1-4965-11D4-9B18-009027A5CD4F} -
TB: &RoboForm Toolbar: {724D43A0-0D85-11D4-9908-00400523E39A} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
TB: Trend Micro Toolbar: {CCAC5586-44D7-4c43-B64A-F042461A97D2} - C:\Program Files\Trend Micro\Titanium\UIFramework\ToolbarIE.dll
TB: <No Name>: - LocalServer32 - <no file>
TB: &RoboForm Toolbar: {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
uRun: [ApplePhotoStreams] C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
uRun: [GarminExpressTrayApp] "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe"
uRun: [LightScribe Control Panel] C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
uRun: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
uRun: [RoboForm] "C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe"
mRun: [PWMTRV] rundll32 "C:\Program Files (x86)\ThinkPad\Utilities\PWMTR64V.DLL",PwrMgrBkGndMonitor
mRun: [Message Center Plus] C:\Program Files (x86)\LENOVO\Message Center Plus\MCPLaunch.exe /start
mRun: [CanonSolutionMenuEx] C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE /logon
mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
mRun: [WD Quick View] C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe
StartupFolder: C:\Users\Kathleen\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\ONENOT~1.LNK - C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\AUDIBL~1.LNK - C:\Program Files (x86)\Audible\Bin\AudibleDownloadHelper.exe
uPolicies-Explorer: NoDriveAutoRun- = dword:0
uPolicies-Explorer: NoDriveTypeAutoRun- = dword:0
uPolicies-Explorer: NoDriveAutoRun = dword:67108863
uPolicies-Explorer: NoDriveTypeAutoRun = dword:253
mPolicies-Explorer: NoDriveAutoRun- = dword:0
mPolicies-Explorer: NoDriveTypeAutoRun- = dword:0
mPolicies-Explorer: NoDriveAutoRun = dword:67108863
mPolicies-Explorer: NoDriveTypeAutoRun = dword:253
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: &Leave a note for Been users - C:\Program Files (x86)\YippyHUB\Basement\BackgroundEngine.exe/205
IE: &Remove from Been Clickstream - C:\Program Files (x86)\YippyHUB\Basement\BackgroundEngine.exe/206
IE: &Save as Been Favorite - C:\Program Files (x86)\YippyHUB\Basement\BackgroundEngine.exe/204
IE: &Thumbs Down - C:\Program Files (x86)\YippyHUB\Basement\BackgroundEngine.exe/202
IE: &Thumbs Up - C:\Program Files (x86)\YippyHUB\Basement\BackgroundEngine.exe/201
IE: Customize Menu - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
IE: E&xport to Microsoft Excel - C:\PROGRA~2\MIF5BA~1\Office14\EXCEL.EXE/3000
IE: Fill Forms - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComFillForms.html
IE: RoboForm Editor - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComEditIdent.html
IE: RoboForm TaskBar Icon - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComTaskBarIcon.html
IE: Save Forms - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComSavePass.html
IE: Se&nd to OneNote - C:\PROGRA~2\MIF5BA~1\Office14\ONBttnIE.dll/105
IE: Show RoboForm Toolbar - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
IE: {320AF880-6646-11D3-ABEE-C5DBF3571F46} - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
IE: {320AF880-6646-11D3-ABEE-C5DBF3571F49} - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
IE: {320AF880-6646-11D3-ABEE-C5DBF3571F4E} - {320AF880-6646-11D3-ABEE-C5DBF3571F4E} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
IE: {320AF880-6646-11D3-ABEE-C5DBF3571F51} - {320AF880-6646-11D3-ABEE-C5DBF3571F51} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
IE: {45DB34C3-955C-11D3-ABEF-444553540001} - {45DB34C3-955C-11D3-ABEF-444553540001} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
IE: {6E45F3E8-2683-4824-A6BE-08108022FB36} - {23249465-AA46-4DED-BD4B-8EFB20F968FE} - C:\Program Files (x86)\DoNotTrackPlus\IE\DNTPAddon.dll
IE: {724d43aa-0d85-11d4-9908-00400523e39a} - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
DPF: Garmin Communicator Plug-In - hxxps://static.garmincdn.com/gcp/ie/4.0.4.0/GarminAxControl_32.CAB
DPF: {106E49CF-797A-11D2-81A2-00E02C015623} - hxxp://
www.alternatiff.com/distribution/alternatiff-ax-w32-2.0.6.cab
DPF: {BEA7310D-06C4-4339-A784-DC3804819809} - hxxp://
www.cvsphoto.com/upload/activex/v3_0_0_7/PhotoCenter_ActiveX_Control.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
TCP: NameServer = 192.168.1.1
TCP: Interfaces\{9F8AC2D3-FA81-40E7-BCD8-B3954251B30D} : DHCPNameServer = 192.168.1.1
TCP: Interfaces\{9F8AC2D3-FA81-40E7-BCD8-B3954251B30D}\2656C6B696E6E2439356 : DHCPNameServer = 192.168.2.1
TCP: Interfaces\{9F8AC2D3-FA81-40E7-BCD8-B3954251B30D}\8457E6475627 : DHCPNameServer = 192.168.1.1
TCP: Interfaces\{9F8AC2D3-FA81-40E7-BCD8-B3954251B30D}\F475E45425D20534F5E4564777F627B6 : DHCPNameServer = 192.168.1.1
TCP: Interfaces\{FAE7C893-00EA-439D-AC9A-5D276E75374F} : DHCPNameServer = 4.2.2.1
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
Handler: belarc - {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - C:\Program Files (x86)\Belarc\BelarcAdvisor\System\BAVoilaX.dll
Handler: tmbp - {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - C:\Program Files\Trend Micro\AMSP\module\20002\8.0.1173\8.0.1173\TmBpIe32.dll
Handler: tmpx - {0E526CB5-7446-41D1-A403-19BFE95E8C23} - C:\Program Files\Trend Micro\AMSP\module\20004\3.0.1313\6.8.1120\TmIEPlg32.dll
Handler: tmtb - {04EAF3FB-4BAC-4B5A-A37D-A1CF210A5A42} - C:\Program Files\Trend Micro\Titanium\UIFramework\ToolbarIE.dll
Handler: tmtbim - {0B37915C-8B98-4B9E-80D4-464D2C830D10} - C:\Program Files\Trend Micro\Titanium\UIFramework\ProToolbarIMRatingActiveX.dll
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
SSODL: WebCheck - <orphaned>
LSA: Notification Packages = scecli ACGina
mASetup: {10880D85-AAD9-4558-ABDC-2AB1552D831F} - "C:\Program Files (x86)\Common Files\LightScribe\LSRunOnce.exe"
x64-BHO: RoboForm Toolbar Helper: {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll
x64-BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
x64-BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL
x64-BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
x64-TB: &RoboForm Toolbar: {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll
x64-Run: [IAAnotif] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe
x64-Run: [TpShocks] TpShocks.exe
x64-Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
x64-Run: [HotKeysCmds] C:\Windows\System32\hkcmd.exe
x64-Run: [Persistence] C:\Windows\System32\igfxpers.exe
x64-Run: [AcWin7Hlpr] C:\Program Files (x86)\Lenovo\Access Connections\AcTBenabler.exe
x64-Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
x64-Run: [Trend Micro Client Framework] "C:\Program Files\Trend Micro\UniClient\UiFrmWrk\UIWatchDog.exe"
x64-Run: [MSC] "C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
x64-Run: [LENOVO.TPKNRRES] C:\Program Files\Lenovo\Communications Utility\TPKNRRES.exe
x64-IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
x64-IE: {320AF880-6646-11D3-ABEE-C5DBF3571F46} - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll
x64-IE: {320AF880-6646-11D3-ABEE-C5DBF3571F49} - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll
x64-IE: {320AF880-6646-11D3-ABEE-C5DBF3571F4E} - {320AF880-6646-11D3-ABEE-C5DBF3571F4E} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll
x64-IE: {320AF880-6646-11D3-ABEE-C5DBF3571F51} - {320AF880-6646-11D3-ABEE-C5DBF3571F51} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll
x64-IE: {45DB34C3-955C-11D3-ABEF-444553540001} - {45DB34C3-955C-11D3-ABEF-444553540001} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll
x64-IE: {724d43aa-0d85-11d4-9908-00400523e39a} - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll
x64-IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
x64-DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_16-windows-i586.cab
x64-DPF: {CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_16-windows-i586.cab
x64-DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_16-windows-i586.cab
x64-Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
x64-Handler: belarc - {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - <orphaned>
x64-Handler: tmbp - {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} -
x64-Handler: tmpx - {0E526CB5-7446-41D1-A403-19BFE95E8C23} -
x64-Handler: tmtb - {04EAF3FB-4BAC-4B5A-A37D-A1CF210A5A42} - <orphaned>
x64-Handler: tmtbim - {0B37915C-8B98-4B9E-80D4-464D2C830D10} - <orphaned>
x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned>
x64-Notify: igfxcui - igfxdev.dll
x64-SSODL: WebCheck - <orphaned>
.
============= SERVICES / DRIVERS ===============
.
R0 MpFilter;Microsoft Malware Protection Driver;C:\Windows\System32\drivers\MpFilter.sys [2014-1-25 268512]
R0 PxHlpa64;PxHlpa64;C:\Windows\System32\drivers\PxHlpa64.sys [2010-11-4 55280]
R0 TMEBC;TMEBC;C:\Windows\System32\drivers\TMEBC64.sys [2013-9-20 50976]
R0 TPDIGIMN;TPDIGIMN;C:\Windows\System32\drivers\ApsHM64.sys [2009-6-29 23592]
R1 avgtp;avgtp;C:\Windows\System32\drivers\avgtpx64.sys [2013-8-3 45856]
R1 lenovo.smi;Lenovo System Interface Driver;C:\Windows\System32\drivers\smiifx64.sys [2014-8-31 15472]
R1 tmevtmgr;tmevtmgr;C:\Windows\System32\drivers\tmevtmgr.sys [2013-9-20 85936]
R2 ADExchange;ArcSoft Exchange Service;C:\Program Files (x86)\Common Files\ArcSoft\esinter\Bin\eservutil.exe [2013-7-8 44064]
R2 AMPPALR3;Intel® Centrino® Wireless Bluetooth® + High Speed Service;C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe [2013-2-13 770528]
R2 BTHSSecurityMgr;Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service;C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe [2012-9-12 135984]
R2 Garmin Core Update Service;Garmin Core Update Service;C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe [2013-11-8 250712]
R2 LENOVO.CAMMUTE;Lenovo Camera Mute;C:\Program Files\Lenovo\Communications Utility\CamMute.exe [2014-8-31 44024]
R2 LENOVO.MICMUTE;Lenovo Microphone Mute;C:\Program Files\Lenovo\HOTKEY\micmute.exe [2014-8-31 110128]
R2 LENOVO.TPKNRSVC;Lenovo Keyboard Noise Reduction;C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe [2014-8-31 62456]
R2 MBAMScheduler;MBAMScheduler;C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [2014-9-5 1809720]
R2 MBAMService;MBAMService;C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2014-9-5 860472]
R2 NisDrv;Microsoft Network Inspection System;C:\Windows\System32\drivers\NisDrvWFP.sys [2013-9-27 133928]
R2 TPHKLOAD;Lenovo Hotkey Client Loader;C:\Program Files\Lenovo\HOTKEY\tphkload.exe [2014-8-31 125424]
R2 TPHKSVC;On Screen Display;C:\Program Files\Lenovo\HOTKEY\TPHKSVC.exe [2014-8-31 125488]
R2 WDBackup;WD Backup;C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe [2014-7-22 1042808]
R2 WDDriveService;WD Drive Manager;C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe [2014-7-22 296312]
R2 ZeroConfigService;Intel(R) PROSet/Wireless Zero Configuration Service;C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [2013-2-8 3386608]
R3 IntcHdmiAddService;Intel(R) High Definition Audio HDMI;C:\Windows\System32\drivers\IntcHdmi.sys [2009-9-10 139264]
R3 JMCR;JMCR;C:\Windows\System32\drivers\jmcr.sys [2013-9-16 174168]
R3 MBAMProtector;MBAMProtector;C:\Windows\System32\drivers\mbam.sys [2014-9-5 25816]
R3 MBAMSwissArmy;MBAMSwissArmy;C:\Windows\System32\drivers\MBAMSwissArmy.sys [2014-9-5 122584]
R3 MBAMWebAccessControl;MBAMWebAccessControl;C:\Windows\System32\drivers\mwac.sys [2014-9-5 63704]
R3 NisSrv;Microsoft Network Inspection;C:\Program Files\Microsoft Security Client\NisSrv.exe [2014-3-11 347872]
R3 Power Manager DBC Service;Power Manager Service;C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.exe [2010-11-4 1668896]
R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\System32\drivers\Rt64win7.sys [2010-11-4 295424]
R3 tmeevw;tmeevw;C:\Windows\System32\drivers\tmeevw.sys [2013-9-20 100640]
R3 tmnciesc;tmnciesc;C:\Windows\System32\drivers\tmnciesc.sys [2013-9-20 303392]
S2 Amsp;Trend Micro Solution Platform;C:\Program Files\Trend Micro\AMSP\coreServiceShell.exe [2013-9-20 305760]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-9-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-9-11 124088]
S2 Roxio Upnp Server 10;Roxio Upnp Server 10;C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUpnpService10.exe [2009-8-4 362992]
S2 RoxLiveShare10;LiveShare P2P Server 10;C:\Program Files (x86)\Common Files\Roxio Shared\10.0\SharedCOM\RoxLiveShare10.exe [2009-8-4 309744]
S2 RoxWatch10;Roxio Hard Drive Watcher 10;C:\Program Files (x86)\Common Files\Roxio Shared\10.0\SharedCOM\RoxWatch10.exe [2009-8-4 166384]
S3 becldr3Service;BCL EasyConverter SDK 3 Loader;C:\Program Files\BCL Technologies\easyConverter SDK 3\Common\becldr.exe [2013-7-3 263168]
S3 BVRPMPR5a64;BVRPMPR5a64 NDIS Protocol Driver;C:\Windows\System32\drivers\BVRPMPR5a64.SYS [2011-4-4 35840]
S3 fssfltr;fssfltr;C:\Windows\System32\drivers\fssfltr.sys [2012-5-23 48488]
S3 fsssvc;Windows Live Family Safety Service;C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2012-3-8 1492840]
S3 IEEtwCollectorService;Internet Explorer ETW Collector Service;C:\Windows\System32\ieetwcollector.exe [2014-9-1 111616]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server;C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2013-2-8 273136]
S3 NETw5s64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit;C:\Windows\System32\drivers\NETw5s64.sys [2009-9-15 6952960]
S3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit;C:\Windows\System32\drivers\netw5v64.sys [2009-6-10 5434368]
S3 nusb3hub;NEC Electronics USB 3.0 Hub Driver;C:\Windows\System32\drivers\nusb3hub.sys [2010-2-23 75776]
S3 nusb3xhc;NEC Electronics USB 3.0 Host Controller Driver;C:\Windows\System32\drivers\nusb3xhc.sys [2010-2-23 177152]
S3 PwmEWSvc;Cisco EnergyWise Enabler;C:\Program Files (x86)\ThinkPad\Utilities\PWMEWSVC.exe [2014-8-31 1664800]
S3 Roxio UPnP Renderer 10;Roxio UPnP Renderer 10;C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUPnPRenderer10.exe [2009-8-4 313840]
S3 RoxMediaDB10;RoxMediaDB10;C:\Program Files (x86)\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe [2009-8-4 1124848]
S3 SrvHsfHDA;SrvHsfHDA;C:\Windows\System32\drivers\VSTAZL6.SYS [2009-7-13 292864]
S3 SrvHsfV92;SrvHsfV92;C:\Windows\System32\drivers\VSTDPV6.SYS [2009-7-13 1485312]
S3 SrvHsfWinac;SrvHsfWinac;C:\Windows\System32\drivers\VSTCNXT6.SYS [2009-7-13 740864]
S3 StorSvc;Storage Service;C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2009-7-13 27136]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2011-4-18 59392]
S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\System32\drivers\usbaapl64.sys [2012-12-13 54784]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2011-4-1 1255736]
S3 WDC_SAM;WD SCSI Pass Thru driver;C:\Windows\System32\drivers\wdcsam64.sys [2008-5-6 14464]
S4 wlcrasvc;Windows Live Mesh remote connections service;C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-9-22 57184]
.
=============== Created Last 30 ================
.
2014-09-06 16:43:55 -------- d-----w- C:\mbmb
2014-09-06 11:08:35 11319192 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{93FB062D-A208-4A07-9003-85A202C6CA08}\mpengine.dll
2014-09-05 15:02:27 122584 ----a-w- C:\Windows\System32\drivers\MBAMSwissArmy.sys
2014-09-05 15:01:10 91352 ----a-w- C:\Windows\System32\drivers\mbamchameleon.sys
2014-09-05 15:01:10 63704 ----a-w- C:\Windows\System32\drivers\mwac.sys
2014-09-05 15:01:10 25816 ----a-w- C:\Windows\System32\drivers\mbam.sys
2014-09-05 15:01:08 -------- d-----w- C:\ProgramData\Malwarebytes
2014-09-05 15:01:08 -------- d-----w- C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-09-04 20:05:00 11319192 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2014-09-02 18:40:37 -------- d-----w- C:\Users\Kathleen\AppData\Local\{D72F9033-DBAE-467F-90C8-637765D79665}
2014-09-02 15:28:30 -------- d-----w- C:\Windows\SysWow64\Garmin
2014-09-02 03:20:16 -------- d-----w- C:\Program Files (x86)\Belarc
2014-09-02 02:36:18 31744 ----a-w- C:\Windows\System32\sxssrv.dll
2014-09-02 00:16:14 24576 ----a-w- C:\Windows\SysWow64\sxssrv.dll
2014-09-02 00:15:46 -------- d-----w- C:\Users\Kathleen\AppData\Roaming\dll-files.com
2014-09-02 00:15:39 -------- d-----w- C:\ProgramData\Logs
2014-09-02 00:15:33 19392 ----a-w- C:\Windows\System32\roboot64.exe
2014-09-02 00:15:25 -------- d-----w- C:\Program Files (x86)\Dll-Files.com Fixer
2014-09-01 19:07:36 -------- d-----w- C:\Program Files (x86)\RegUtility
2014-09-01 19:03:23 -------- d-sh--w- C:\Users\Kathleen\AppData\Local\EmieUserList
2014-09-01 19:03:23 -------- d-sh--w- C:\Users\Kathleen\AppData\Local\EmieSiteList
2014-09-01 18:07:59 10747904 ----a-w- C:\Program Files\Internet Explorer\F12Resources.dll
2014-09-01 05:42:48 -------- d-----w- C:\Users\Kathleen\AppData\Roaming\PwrMgr
2014-09-01 04:09:59 13824 ----a-w- C:\Windows\System32\mshta.exe
2014-09-01 04:09:57 142336 ----a-w- C:\Program Files\Internet Explorer\jsdebuggeride.dll
2014-09-01 04:09:56 48128 ----a-w- C:\Windows\System32\imgutil.dll
2014-09-01 03:00:09 -------- d-----w- C:\Windows\Temp17E3557D-D80E-0766-C001-F813280DD9C1-Signatures
2014-09-01 02:40:59 99480 ----a-w- C:\Windows\SysWow64\infocardapi.dll
2014-09-01 02:40:58 619672 ----a-w- C:\Windows\SysWow64\icardagt.exe
2014-09-01 02:40:58 171160 ----a-w- C:\Windows\System32\infocardapi.dll
2014-09-01 02:40:58 1389208 ----a-w- C:\Windows\System32\icardagt.exe
2014-09-01 02:40:53 8856 ----a-w- C:\Windows\SysWow64\icardres.dll
2014-09-01 02:40:53 8856 ----a-w- C:\Windows\System32\icardres.dll
2014-09-01 02:40:13 35480 ----a-w- C:\Windows\SysWow64\TsWpfWrp.exe
2014-09-01 02:40:13 35480 ----a-w- C:\Windows\System32\TsWpfWrp.exe
2014-09-01 02:38:50 -------- d-s---w- C:\Windows\System32\CompatTel
2014-09-01 01:15:15 -------- d-----w- C:\Program Files\Western Digital
2014-09-01 00:57:58 -------- d-----w- C:\Users\Kathleen\AppData\Local\Lenovo
2014-09-01 00:48:16 163840 ----a-w- C:\Windows\System32\umpo.dll
2014-08-31 23:53:44 53248 ----a-r- C:\Users\Kathleen\AppData\Roaming\Microsoft\Installer\{0369F866-2CE0-4EB9-B426-88FA122C6E82}\ARPPRODUCTICON.exe
2014-08-31 23:53:41 -------- d-----w- C:\Program Files\Common Files\Lenovo
2014-08-31 23:35:42 15472 ----a-w- C:\Windows\System32\drivers\smiifx64.sys
2014-08-31 22:57:04 801280 ----a-w- C:\Windows\System32\usp10.dll
2014-08-31 22:57:03 626688 ----a-w- C:\Windows\SysWow64\usp10.dll
2014-08-31 22:57:01 1719296 ----a-w- C:\Program Files\Windows Journal\NBDoc.DLL
2014-08-31 22:57:00 1380864 ----a-w- C:\Program Files\Windows Journal\JNTFiltr.dll
2014-08-31 22:57:00 1354240 ----a-w- C:\Program Files\Common Files\Microsoft Shared\ink\journal.dll
2014-08-31 22:55:59 1247232 ----a-w- C:\Program Files\Common Files\Microsoft Shared\ink\tipskins.dll
2014-08-31 22:54:39 497152 ----a-w- C:\Windows\System32\drivers\afd.sys
2014-08-31 22:53:33 2048 ----a-w- C:\Windows\SysWow64\tzres.dll
2014-08-31 22:53:33 2048 ----a-w- C:\Windows\System32\tzres.dll
2014-08-31 22:52:14 3241984 ----a-w- C:\Windows\System32\msi.dll
2014-08-31 22:52:12 2363392 ----a-w- C:\Windows\SysWow64\msi.dll
2014-08-31 22:52:12 1941504 ----a-w- C:\Windows\System32\authui.dll
2014-08-31 22:52:12 1805824 ----a-w- C:\Windows\SysWow64\authui.dll
2014-08-31 22:52:11 504320 ----a-w- C:\Windows\System32\msihnd.dll
2014-08-31 22:52:11 337408 ----a-w- C:\Windows\SysWow64\msihnd.dll
2014-08-31 22:52:11 112064 ----a-w- C:\Windows\System32\consent.exe
2014-08-31 22:51:06 3969984 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe
2014-08-31 22:51:06 3914176 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe
2014-08-31 22:51:05 455168 ----a-w- C:\Windows\System32\winlogon.exe
2014-08-31 22:51:04 722944 ----a-w- C:\Windows\System32\objsel.dll
2014-08-31 22:51:04 5550016 ----a-w- C:\Windows\System32\ntoskrnl.exe
2014-08-31 22:51:02 538112 ----a-w- C:\Windows\SysWow64\objsel.dll
2014-08-31 22:51:01 424960 ----a-w- C:\Windows\System32\KernelBase.dll
2014-08-31 22:51:01 274944 ----a-w- C:\Windows\SysWow64\KernelBase.dll
2014-08-31 22:51:00 44544 ----a-w- C:\Windows\System32\dimsroam.dll
2014-08-31 22:50:59 57344 ----a-w- C:\Windows\System32\cngprovider.dll
2014-08-31 22:50:59 56832 ----a-w- C:\Windows\System32\adprovider.dll
2014-08-31 22:50:59 53760 ----a-w- C:\Windows\System32\capiprovider.dll
2014-08-31 22:50:59 52736 ----a-w- C:\Windows\System32\dpapiprovider.dll
2014-08-31 22:50:59 51200 ----a-w- C:\Windows\SysWow64\cngprovider.dll
2014-08-31 22:50:59 49664 ----a-w- C:\Windows\SysWow64\adprovider.dll
2014-08-31 22:50:59 48128 ----a-w- C:\Windows\SysWow64\capiprovider.dll
2014-08-31 22:50:59 47616 ----a-w- C:\Windows\SysWow64\dpapiprovider.dll
2014-08-31 22:50:59 36864 ----a-w- C:\Windows\SysWow64\dimsroam.dll
2014-08-31 22:50:57 39936 ----a-w- C:\Windows\System32\wincredprovider.dll
2014-08-31 22:50:57 35328 ----a-w- C:\Windows\SysWow64\wincredprovider.dll
2014-08-31 22:49:32 2565120 ----a-w- C:\Windows\System32\d3d10warp.dll
2014-08-31 22:49:32 1987584 ----a-w- C:\Windows\SysWow64\d3d10warp.dll
2014-08-31 22:49:31 3928064 ----a-w- C:\Windows\System32\d2d1.dll
2014-08-31 22:49:31 3419136 ----a-w- C:\Windows\SysWow64\d2d1.dll
2014-08-31 22:49:29 985536 ----a-w- C:\Windows\System32\drivers\dxgkrnl.sys
2014-08-31 22:49:00 728064 ----a-w- C:\Windows\System32\kerberos.dll
2014-08-31 22:49:00 550912 ----a-w- C:\Windows\SysWow64\kerberos.dll
2014-08-31 22:49:00 314880 ----a-w- C:\Windows\System32\msv1_0.dll
2014-08-31 22:48:59 259584 ----a-w- C:\Windows\SysWow64\msv1_0.dll
2014-08-31 22:48:58 86528 ----a-w- C:\Windows\System32\TSpkg.dll
2014-08-31 22:48:58 210944 ----a-w- C:\Windows\System32\wdigest.dll
2014-08-31 22:48:57 65536 ----a-w- C:\Windows\SysWow64\TSpkg.dll
2014-08-31 22:48:57 340992 ----a-w- C:\Windows\System32\schannel.dll
2014-08-31 22:48:57 247808 ----a-w- C:\Windows\SysWow64\schannel.dll
2014-08-31 22:48:57 172032 ----a-w- C:\Windows\SysWow64\wdigest.dll
2014-08-31 22:48:56 307200 ----a-w- C:\Windows\System32\ncrypt.dll
2014-08-31 22:48:56 220160 ----a-w- C:\Windows\SysWow64\ncrypt.dll
2014-08-31 22:48:55 22016 ----a-w- C:\Windows\System32\credssp.dll
2014-08-31 22:48:55 17408 ----a-w- C:\Windows\SysWow64\credssp.dll
2014-08-31 22:48:11 -------- d-----w- C:\Users\Kathleen\AppData\Local\Tvsukernel
2014-08-31 22:44:43 1424384 ----a-w- C:\Windows\System32\WindowsCodecs.dll
2014-08-31 22:44:42 1230336 ----a-w- C:\Windows\SysWow64\WindowsCodecs.dll
2014-08-31 22:44:38 404480 ----a-w- C:\Windows\System32\gdi32.dll
2014-08-31 22:44:38 3163648 ----a-w- C:\Windows\System32\win32k.sys
2014-08-31 22:44:37 311808 ----a-w- C:\Windows\SysWow64\gdi32.dll
2014-08-31 22:44:33 1216000 ----a-w- C:\Windows\System32\rpcrt4.dll
2014-08-31 22:44:31 664064 ----a-w- C:\Windows\SysWow64\rpcrt4.dll
2014-08-31 21:59:08 27584 ----a-w- C:\Windows\System32\drivers\Diskdump.sys
2014-08-31 21:59:08 274880 ----a-w- C:\Windows\System32\drivers\msiscsi.sys
2014-08-31 21:59:08 190912 ----a-w- C:\Windows\System32\drivers\storport.sys
2014-08-31 21:59:07 2048 ----a-w- C:\Windows\SysWow64\iologmsg.dll
2014-08-31 21:59:07 2048 ----a-w- C:\Windows\System32\iologmsg.dll
2014-08-31 21:58:53 228864 ----a-w- C:\Windows\System32\wwansvc.dll
2014-08-31 21:52:35 529920 ----a-w- C:\Windows\System32\aepdu.dll
2014-08-31 21:52:34 424448 ----a-w- C:\Windows\System32\aeinv.dll
2014-08-31 21:31:02 965000 ------w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\NISBackup\gapaengine.dll
2014-08-31 21:30:59 1169712 ------w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{3CDEF187-30AF-439D-B4CE-898FEBEE73E2}\gapaengine.dll
2014-08-31 21:04:05 -------- d-----w- C:\Users\Kathleen\AppData\Local\Western_Digital_Technolog
2014-08-31 20:49:04 2620928 ----a-w- C:\Windows\System32\wucltux.dll
2014-08-31 20:48:41 97792 ----a-w- C:\Windows\System32\wudriver.dll
2014-08-31 20:48:41 92672 ----a-w- C:\Windows\SysWow64\wudriver.dll
2014-08-31 20:48:26 36864 ----a-w- C:\Windows\System32\wuapp.exe
2014-08-31 20:48:26 33792 ----a-w- C:\Windows\SysWow64\wuapp.exe
2014-08-31 20:48:26 198600 ----a-w- C:\Windows\System32\wuwebv.dll
2014-08-31 20:48:26 179656 ----a-w- C:\Windows\SysWow64\wuwebv.dll
.
==================== Find3M ====================
.
2014-09-01 20:10:31 283160 ----a-w- C:\Windows\System32\drivers\tmcomm.sys
2014-09-01 01:48:34 2 --shatr- C:\Windows\winstart.bat
2014-08-31 22:43:49 699056 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
2014-08-31 22:43:47 71344 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2014-07-25 14:02:12 2724864 ----a-w- C:\Windows\System32\mshtml.tlb
2014-07-25 14:01:41 4096 ----a-w- C:\Windows\System32\ieetwcollectorres.dll
2014-07-25 13:30:30 66048 ----a-w- C:\Windows\System32\iesetup.dll
2014-07-25 13:28:35 48640 ----a-w- C:\Windows\System32\ieetwproxystub.dll
2014-07-25 13:28:27 548352 ----a-w- C:\Windows\System32\vbscript.dll
2014-07-25 13:25:45 83968 ----a-w- C:\Windows\System32\MshtmlDac.dll
2014-07-25 13:04:40 2724864 ----a-w- C:\Windows\SysWow64\mshtml.tlb
2014-07-25 13:00:51 139264 ----a-w- C:\Windows\System32\ieUnatt.exe
2014-07-25 13:00:25 111616 ----a-w- C:\Windows\System32\ieetwcollector.exe
2014-07-25 12:59:28 758272 ----a-w- C:\Windows\System32\jscript9diag.dll
2014-07-25 12:47:25 940032 ----a-w- C:\Windows\System32\MsSpellCheckingFacility.exe
2014-07-25 12:34:49 61952 ----a-w- C:\Windows\SysWow64\iesetup.dll
2014-07-25 12:34:03 455168 ----a-w- C:\Windows\SysWow64\vbscript.dll
2014-07-25 12:33:08 51200 ----a-w- C:\Windows\SysWow64\ieetwproxystub.dll
2014-07-25 12:30:32 61952 ----a-w- C:\Windows\SysWow64\MshtmlDac.dll
2014-07-25 12:28:15 5824512 ----a-w- C:\Windows\System32\jscript9.dll
2014-07-25 12:28:05 72704 ----a-w- C:\Windows\System32\JavaScriptCollectionAgent.dll
2014-07-25 12:10:15 112128 ----a-w- C:\Windows\SysWow64\ieUnatt.exe
2014-07-25 12:08:47 597504 ----a-w- C:\Windows\SysWow64\jscript9diag.dll
2014-07-25 12:06:47 4204032 ----a-w- C:\Windows\SysWow64\jscript9.dll
2014-07-25 11:43:16 60416 ----a-w- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll
2014-07-25 11:39:29 2087936 ----a-w- C:\Windows\System32\inetcpl.cpl
2014-07-25 11:39:25 1249280 ----a-w- C:\Windows\System32\mshtmlmedia.dll
2014-07-25 11:07:49 2001920 ----a-w- C:\Windows\SysWow64\inetcpl.cpl
2014-07-25 11:07:10 1068032 ----a-w- C:\Windows\SysWow64\mshtmlmedia.dll
2014-07-25 10:52:06 2266624 ----a-w- C:\Windows\System32\wininet.dll
2014-07-25 10:05:23 1792512 ----a-w- C:\Windows\SysWow64\wininet.dll
2014-06-25 11:06:00 2855200 ----a-w- C:\Windows\System32\PWMCP64V.cpl
2014-06-25 11:06:00 2692896 ------w- C:\Windows\PWMBTHLV.EXE
2014-06-25 11:06:00 20736 ----a-w- C:\Windows\System32\drivers\TPPWR64V.SYS
2014-06-18 02:18:30 692736 ----a-w- C:\Windows\System32\osk.exe
2014-06-18 01:51:32 646144 ----a-w- C:\Windows\SysWow64\osk.exe
2013-05-26 17:52:23 509192096 ----a-w- C:\Program Files (x86)\PSPP_X3_TBYB.exe
2013-02-11 17:26:55 40437664 ----a-w- C:\Program Files (x86)\QuickTimeInstaller (1).exe
2012-12-21 14:21:54 12838536 ----a-w- C:\Program Files (x86)\RoboForm-Setup.exe
2012-11-25 20:48:56 32699368 ----a-w- C:\Program Files (x86)\jre-7u9-windows-x64.exe
2012-11-24 04:37:58 10595800 ----a-w- C:\Program Files\DataVaultWindowsV4_8_98 (2).exe
2012-11-24 04:34:24 10595800 ----a-w- C:\Program Files\DataVaultWindowsV4_8_98 (1).exe
2012-11-24 04:29:42 10595800 ----a-w- C:\Program Files\DataVaultWindowsV4_8_98.exe
2012-11-24 03:46:14 14774481 ----a-w- C:\Program Files\DataVaultWindowsV4_8_78 (1).exe
2012-11-20 22:38:58 6868024 ----a-w- C:\Program Files (x86)\Ti_52_win_EN_AMSP20_hfb1095.exe
2012-11-20 22:11:50 18237976 ----a-w- C:\Program Files (x86)\Firefox Setup 16.0.2.exe
2012-11-19 03:31:42 14774481 ----a-w- C:\Program Files\DataVaultWindowsV4_8_78.exe
2012-11-18 16:02:48 31160808 ----a-w- C:\Program Files (x86)\jre-7u9-windows-i586.exe
2012-11-17 22:17:26 40437664 ----a-w- C:\Program Files (x86)\QuickTimeInstaller(1).exe
2012-11-16 21:54:51 40437664 ----a-w- C:\Program Files (x86)\QuickTimeInstaller.exe
2012-11-07 12:57:54 8669472 ----a-w- C:\Program Files (x86)\Windows7UpgradeAdvisorSetup.exe
2012-11-07 12:57:45 38808920 ----a-w- C:\Program Files (x86)\FileFormatConverters.exe
2012-08-14 01:27:13 16814136 ----a-w- C:\Program Files\Firefox Setup 14.0.1.exe
2012-07-25 04:22:26 589524144 ----a-w- C:\Program Files\FamilyTreeMaker2012ESD_AncestryCS.exe
2012-06-16 00:56:55 403968 ----a-w- C:\Program Files (x86)\PublishToPhotoFrame.msi
2011-11-05 02:20:06 300408 ----a-w- C:\Program Files (x86)\SoftonicDownloader_for_photofiltre.exe
2011-09-22 11:23:05 161720 ------w- C:\Program Files (x86)\2pres.dll
.
============= FINISH: 12:03:07.13 ===============