Solved Win64:Patched-A [Trj] Assistance Requested

DeckardPain

Posts: 32   +0
Avast! is telling me I have the Win64: Patched-A [Trj] and it seems that normal virus removal doesn't work. When I try to remove it via the Avast! program I get the "Action postponed until the next reboot." and "Error: The specified file is read only (6009)". Tried restarting and rerunning a scan, but nothing happened. From the posts on this forum it seems this virus is very prevalent. Can I get help cleaning it from my computer please?

I am on Windows 7 Ultimate 64-bit.
 
Last edited:
Update: Avast said it had postponed an action until reboot so I rebooted thinking it would try to run the action. The computer rebooted normally up until the part where it usually asks me for my password, only it did not. It hung on a black screen with my cursor which I could move around. After a couple minutes of it sitting there it rebooted itself and the same thing happened only the this time I cannot move the mouse at all and it is not rebooting itself. I let it sit this way for about 30 minutes and then tried to turn it off manually. The power button on the front of my case isn't responding when I press or hold it to turn the computer off. The only way I could turn it off was via the psu switch on the back of my computer. So I turn it off that way after leaving it like that for 30 minutes.

So I try booting into safe mode, but the same thing above happens when choosing safe mode. It hangs at black screen with cursor that I can move freely, then reboots itself after a couple minutes and I am back with a black screen and a frozen cursor that hangs here indefinitely.

At this point I am guessing I will have to reformat or repair via the windows disc?

I should should also mention that I had a virus about a week or so ago and reformatted then, it was playing random advertisements through my audio under a weird label when I opened up playback devices so I assumed reformatting would get rid of it. I seemed to get rid of most of there problems, but after I reformatted I reinstalled malware bytes to keep tabs on my system and it kept telling me there was something there. So I feel like this is some roots it that had nested its way in.

It's 1:39 am my time and I am calling it a night, but this has been a nightmare and I just want this problem solved. :(
 
Last edited:
Welcome aboard

Please, observe following rules:
  • Read all of my instructions very carefully. Your mistakes during cleaning process may have very serious consequences, like unbootable computer.
  • If you're stuck, or you're not sure about certain step, always ask before doing anything else.
  • Please refrain from running any tools, fixes or applying any changes to your computer other than those I suggest.
  • Never run more than one scan at a time.
  • Keep updating me regarding your computer behavior, good, or bad.
  • The cleaning process, once started, has to be completed. Even if your computer appears to act better, it may still be infected. Once the computer is totally clean, I'll certainly let you know.
  • If you leave the topic without explanation in the middle of a cleaning process, you may not be eligible to receive any more help in malware removal forum.
  • I close my topics if you have not replied in 5 days. If you need more time, simply let me know. If I closed your topic and you need it to be reopened, simply PM me.

======================================

NOTE 1. Use another working computer to download Farbar Recovery Scan Tool. Use USB flash drive to transfer it from good computer to the bad one.
NOTE 2. Install Panda USB Vaccine, or BitDefender’s USB Immunizer on GOOD computer to protect it from any infected USB device.

For x32 (x86) bit systems download Farbar Recovery Scan Tool 32-Bit and save it to a flash drive.
For x64 bit systems download Farbar Recovery Scan Tool 64-Bit and save it to a flash drive.

Plug the flashdrive into the infected PC.

If you are using Windows 8 consult How to use the Windows 8 System Recovery Environment Command Prompt to enter System Recovery Command prompt.

If you are using Vista or Windows 7 enter System Recovery Options.

To enter System Recovery Options from the Advanced Boot Options:
  • Restart the computer.
  • As soon as the BIOS is loaded begin tapping the F8 key until Advanced Boot Options appears.
  • Use the arrow keys to select the Repair your computer menu item.
  • Select US as the keyboard language settings, and then click Next.
  • Select the operating system you want to repair, and then click Next.
  • Select your user account an click Next.

To enter System Recovery Options by using Windows installation disc:
  • Insert the installation disc.
  • Restart your computer.
  • If prompted, press any key to start Windows from the installation disc. If your computer is not configured to start from a CD or DVD, check your BIOS settings.
  • Click Repair your computer.
  • Select US as the keyboard language settings, and then click Next.
  • Select the operating system you want to repair, and then click Next.
  • Select your user account and click Next.

On the System Recovery Options menu you will get the following options:

  • Startup Repair
  • System Restore
  • Windows Complete PC Restore
  • Windows Memory Diagnostic Tool
  • Command Prompt
  • Select Command Prompt
  • In the command window type in notepad and press Enter.
  • The notepad opens. Under File menu select Open.
  • Select "Computer" and find your flash drive letter and close the notepad.
  • In the command window type e:\frst (for x64 bit version type e:\frst64) and press Enter
    Note:
    Replace letter e with the drive letter of your flash drive.
  • The tool will start to run.
  • When the tool opens click Yes to disclaimer.
  • Press Scan button.
  • It will make a log (FRST.txt) on the flash drive. Please copy and paste it to your reply.
 
Hey Broni,

I followed the instructions but once I got to the last step I cannot see the flash drive in the notepad open options. I already had the file downloaded on my computer before however when I was reading through these forums (but did not run it ever before) so it is on C of the infected machine as well as the USB, but for some reason it is not under the Devices with Removable Storage like it should be.
 
Broni,

After trying multiple usb sticks (all usb 3.0) I moved on to my external hard drive which windows picked up just fine and I was able to run it. Here is what it gave me in the text file:

PART 1

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 25-01-2014 01
Ran by SYSTEM on MININT-JJMI3CP on 25-01-2014 10:34:47
Running from L:\
Windows 7 Ultimate (X64) OS Language: English(US)
Internet Explorer Version 8
Boot Mode: Recovery

The current controlset is ControlSet001
ATTENTION!:=====> If the system is bootable FRST could be run from normal or Safe mode to create a complete log.


The only official download link for FRST:
Download link for 32-Bit version: https://www.techspot.com/downloads/6731-farbar-recovery-scan-tool.html
Download link for 64-Bit Version: https://www.techspot.com/downloads/6731-farbar-recovery-scan-tool.html
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST:

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [XboxStat] - C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [825184 2009-09-30] (Microsoft Corporation)
HKLM\...\Run: [NvBackend] - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2279712 2013-12-09] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\nvspcap64.dll [1100248 2013-12-09] (NVIDIA Corporation)
HKLM-x32\...\Run: [USB3MON] - C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291648 2012-05-20] (Intel Corporation)
HKLM-x32\...\Run: [CTxfiHlp] - CTXFIHLP.EXE
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-09-05] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [3767096 2014-01-24] (AVAST Software)
HKU\Genetic Styles\...\Run: [SteelSeries Engine] - C:\Program Files\SteelSeries\SteelSeries Engine\SteelSeriesEngine.exe [242688 2013-11-05] (SteelSeries ApS)
HKU\Genetic Styles\...\Run: [RocketDock] - C:\Program Files (x86)\RocketDock\RocketDock.exe [495616 2007-09-02] ()
HKU\Genetic Styles\...\Run: [DAEMON Tools Lite] - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd)

==================== Services (Whitelisted) =================

S2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-01-24] (AVAST Software)
S2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1494304 2013-12-09] (NVIDIA Corporation)
S2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15129376 2013-12-09] (NVIDIA Corporation)
S2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2014-01-09] ()

==================== Drivers (Whitelisted) ====================

S2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [78648 2014-01-24] (AVAST Software)
S1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [92544 2014-01-24] (AVAST Software)
S0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-01-24] ()
S1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1038072 2014-01-24] (AVAST Software)
S1 aswSP; C:\Windows\system32\drivers\aswSP.sys [421704 2014-01-24] (AVAST Software)
S3 aswStm; C:\Windows\system32\drivers\aswStm.sys [80184 2014-01-24] (AVAST Software)
S0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [207904 2014-01-24] ()
S1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-01-16] (Disc Soft Ltd)
S3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-12-05] (NVIDIA Corporation)
S3 SAlphamHid; C:\Windows\System32\DRIVERS\SAlpham64.sys [38016 2013-05-31] (SteelSeries Corporation)
S2 WinI2C-DDC; C:\Windows\system32\drivers\DDCDrv.sys [20832 2014-01-08] (Nicomsoft Ltd.)
S3 catchme; \??\C:\ComboFix\catchme.sys [x]
S3 IntcAzAudAddService; system32\drivers\RTKVHD64.sys [x]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-01-25 10:14 - 2014-01-25 10:15 - 00085715 _____ C:\Users\Genetic Styles\Downloads\FRST.txt
2014-01-25 10:14 - 2014-01-25 10:14 - 00000000 ____D C:\FRST
2014-01-25 00:12 - 2014-01-25 00:12 - 02077696 _____ (Farbar) C:\Users\Genetic Styles\Downloads\FRST64.exe
2014-01-24 22:51 - 2014-01-24 22:51 - 01038072 _____ (AVAST Software) C:\Windows\System32\Drivers\aswSnx.sys
2014-01-24 22:51 - 2014-01-24 22:51 - 00421704 _____ (AVAST Software) C:\Windows\System32\Drivers\aswSP.sys
2014-01-24 22:51 - 2014-01-24 22:51 - 00334136 _____ (AVAST Software) C:\Windows\System32\aswBoot.exe
2014-01-24 22:51 - 2014-01-24 22:51 - 00207904 _____ C:\Windows\System32\Drivers\aswVmm.sys
2014-01-24 22:51 - 2014-01-24 22:51 - 00092544 _____ (AVAST Software) C:\Windows\System32\Drivers\aswRdr2.sys
2014-01-24 22:51 - 2014-01-24 22:51 - 00080184 _____ (AVAST Software) C:\Windows\System32\Drivers\aswStm.sys
2014-01-24 22:51 - 2014-01-24 22:51 - 00078648 _____ (AVAST Software) C:\Windows\System32\Drivers\aswMonFlt.sys
2014-01-24 22:51 - 2014-01-24 22:51 - 00065776 _____ C:\Windows\System32\Drivers\aswRvrt.sys
2014-01-24 22:51 - 2014-01-24 22:51 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-01-24 22:51 - 2014-01-24 22:51 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2014-01-24 22:51 - 2014-01-24 22:51 - 00001966 _____ C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-01-24 22:51 - 2014-01-24 22:51 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\AVAST Software
2014-01-24 22:51 - 2014-01-24 22:51 - 00000000 ____D C:\ProgramData\AVAST Software
2014-01-24 22:51 - 2014-01-24 22:51 - 00000000 ____D C:\Program Files\AVAST Software
2014-01-24 22:28 - 2014-01-24 22:28 - 00014520 _____ C:\ComboFix.txt
2014-01-24 22:24 - 2014-01-24 22:24 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\Realtime Soft
2014-01-24 22:23 - 2014-01-24 22:23 - 00001136 _____ C:\Users\Genetic Styles\Desktop\JRT.txt
2014-01-24 22:21 - 2014-01-24 22:21 - 00000000 ____D C:\Windows\ERUNT
2014-01-24 22:17 - 2014-01-24 22:19 - 00000000 ____D C:\AdwCleaner
2014-01-24 22:17 - 2014-01-24 22:17 - 00002970 _____ C:\Users\Genetic Styles\Desktop\RKreport[0]_S_01242014_231731.txt
2014-01-24 22:16 - 2014-01-24 22:16 - 00003674 _____ C:\Users\Genetic Styles\Desktop\RKreport[0]_D_01242014_231641.txt
2014-01-24 22:16 - 2014-01-24 22:16 - 00003551 _____ C:\Users\Genetic Styles\Desktop\RKreport[0]_S_01242014_231631.txt
2014-01-24 22:15 - 2014-01-24 22:17 - 00000000 ____D C:\Users\Genetic Styles\Desktop\RK_Quarantine
2014-01-24 22:12 - 2014-01-25 00:02 - 00001366 _____ C:\Windows\PFRO.log
2014-01-24 21:55 - 2014-01-24 21:55 - 00274214 _____ C:\Users\Genetic Styles\Desktop\FixDotNet20140125055556501.cab
2014-01-22 23:09 - 2014-01-22 23:09 - 594265273 _____ C:\Windows\MEMORY.DMP
2014-01-22 23:09 - 2014-01-22 23:09 - 00293624 _____ C:\Windows\Minidump\012314-6474-01.dmp
2014-01-22 23:09 - 2014-01-22 23:09 - 00000000 ____D C:\Windows\Minidump
2014-01-22 22:52 - 2014-01-22 22:52 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\TheBannerSaga
2014-01-21 21:56 - 2014-01-21 21:56 - 00017627 _____ C:\Windows\DirectX.log
2014-01-21 21:49 - 2014-01-21 21:49 - 00003234 _____ C:\Windows\System32\Tasks\{239F0040-74C9-40C6-9FA9-7F68C388042C}
2014-01-16 21:39 - 2014-01-16 21:39 - 02721168 _____ (Microsoft Corporation) C:\Users\Genetic Styles\Downloads\Windows7-USB-DVD-tool.exe
2014-01-16 21:38 - 2014-01-16 21:48 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\DAEMON Tools Lite
2014-01-16 21:38 - 2014-01-16 21:48 - 00000000 ____D C:\ProgramData\DAEMON Tools Lite
2014-01-16 21:38 - 2014-01-16 21:38 - 00283064 _____ (Disc Soft Ltd) C:\Windows\System32\Drivers\dtsoftbus01.sys
2014-01-16 21:38 - 2014-01-16 21:38 - 00001954 _____ C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
2014-01-16 21:38 - 2014-01-16 21:38 - 00000000 ____D C:\Program Files (x86)\DAEMON Tools Lite
2014-01-16 21:26 - 2014-01-16 21:26 - 00313016 _____ C:\Users\Genetic Styles\Downloads\Windows 8.1 AIO 20in1 x64 en-US Pre-Activated DaRT 8.1 Dec2013.torrent
2014-01-16 21:24 - 2014-01-25 00:20 - 00004239 _____ C:\Windows\setupact.log
2014-01-16 21:24 - 2014-01-16 21:24 - 00000000 ____H C:\Windows\System32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2014-01-16 21:24 - 2014-01-16 21:24 - 00000000 _____ C:\Windows\setuperr.log
2014-01-16 21:19 - 2014-01-16 21:20 - 00084694 _____ C:\Users\Genetic Styles\Documents\cc_20140116_221934.reg
2014-01-16 21:19 - 2014-01-16 21:19 - 00183296 _____ C:\Users\Genetic Styles\Documents\cc_20140116_221916.reg
2014-01-16 21:18 - 2014-01-16 21:18 - 00002790 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-01-16 21:18 - 2014-01-16 21:18 - 00000822 _____ C:\Users\Public\Desktop\CCleaner.lnk
2014-01-16 21:18 - 2014-01-16 21:18 - 00000000 ____D C:\Program Files\CCleaner
2014-01-16 21:16 - 2014-01-16 21:16 - 04645232 _____ (Piriform Ltd) C:\Users\Genetic Styles\Downloads\ccsetup409.exe
2014-01-16 16:54 - 2014-01-24 22:28 - 00000000 ____D C:\Qoobox
2014-01-16 16:54 - 2014-01-16 16:56 - 00000000 ____D C:\Windows\erdnt
2014-01-16 16:54 - 2011-06-25 22:45 - 00256000 _____ C:\Windows\PEV.exe
2014-01-16 16:54 - 2010-11-07 09:20 - 00208896 _____ C:\Windows\MBR.exe
2014-01-16 16:54 - 2009-04-19 20:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2014-01-16 16:54 - 2000-08-30 16:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2014-01-16 16:54 - 2000-08-30 16:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2014-01-16 16:54 - 2000-08-30 16:00 - 00098816 _____ C:\Windows\sed.exe
2014-01-16 16:54 - 2000-08-30 16:00 - 00080412 _____ C:\Windows\grep.exe
2014-01-16 16:54 - 2000-08-30 16:00 - 00068096 _____ C:\Windows\zip.exe
2014-01-16 15:59 - 2014-01-16 16:00 - 05167985 ____R (Swearware) C:\Users\Genetic Styles\Downloads\ComboFix.exe
2014-01-16 15:55 - 2014-01-16 15:55 - 00003245 _____ C:\Users\Genetic Styles\Desktop\Sophos Virus Removal Tool.lnk
2014-01-16 15:55 - 2014-01-16 15:55 - 00000000 ____D C:\ProgramData\Sophos
2014-01-16 15:55 - 2014-01-16 15:55 - 00000000 ____D C:\Program Files (x86)\Sophos
2014-01-16 15:54 - 2014-01-16 15:55 - 82720736 _____ (Sophos Limited) C:\Users\Genetic Styles\Downloads\Sophos Virus Removal Tool (1).exe
2014-01-16 15:51 - 2014-01-16 15:51 - 00379904 _____ C:\Users\Genetic Styles\Downloads\yk84jy9z.exe
2014-01-16 15:51 - 2014-01-16 15:51 - 00000000 ____D C:\Windows\pss
2014-01-16 15:49 - 2014-01-16 15:49 - 00379904 _____ C:\Users\Genetic Styles\Downloads\4e90j9ui.exe
2014-01-16 15:44 - 2014-01-16 15:44 - 00003154 _____ C:\Windows\System32\Tasks\WinZipDriverUpdaterRunAtStartup
2014-01-16 15:44 - 2014-01-16 15:44 - 00003084 _____ C:\Windows\System32\Tasks\WinZipDriverUpdater_UPDATES
2014-01-16 15:44 - 2014-01-16 15:44 - 00001102 _____ C:\Users\Public\Desktop\WinZip Driver Updater.lnk
2014-01-16 15:44 - 2014-01-16 15:44 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\WinZip
2014-01-16 15:43 - 2014-01-16 15:43 - 00001312 _____ C:\Users\Public\Desktop\The Weather Channel App.lnk
2014-01-16 15:43 - 2014-01-16 15:43 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\The Weather Channel
2014-01-16 15:43 - 2014-01-16 15:43 - 00000000 ____D C:\Program Files (x86)\FileZilla FTP Client
2014-01-16 15:43 - 2013-09-20 07:50 - 00499712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp71.dll
2014-01-16 15:43 - 2013-09-20 07:50 - 00348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr71.dll
2014-01-16 15:42 - 2014-01-16 21:44 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\Notepad++
2014-01-16 15:42 - 2014-01-16 15:42 - 50449456 _____ (Microsoft Corporation) C:\Users\Genetic Styles\Downloads\dotNetFx40_Full_x86_x64 (1).exe
2014-01-16 15:42 - 2014-01-16 15:42 - 00000000 ____D C:\Program Files (x86)\Notepad++
2014-01-16 15:39 - 2014-01-16 15:39 - 07598942 _____ C:\Users\Genetic Styles\Downloads\npp.6.5.3.Installer.exe
2014-01-16 09:42 - 2014-01-16 09:42 - 13079688 _____ (Microsoft Corporation) C:\Users\Genetic Styles\Downloads\Silverlight_x64.exe
2014-01-16 09:42 - 2014-01-16 09:42 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2014-01-16 09:42 - 2014-01-16 09:42 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2014-01-15 21:39 - 2014-01-15 21:39 - 00000218 _____ C:\Users\Genetic Styles\.recently-used.xbel
2014-01-15 20:11 - 2014-01-15 20:11 - 00093182 _____ C:\Users\Genetic Styles\Downloads\Chicago.PD.S01E02.720p.HDTV.X264-DIMENSION.torrent
2014-01-15 20:11 - 2014-01-15 20:11 - 00007285 _____ C:\Users\Genetic Styles\Downloads\Chicago.PD.S01E01.HDTV.XviD-AFG.torrent
2014-01-15 16:44 - 2014-01-15 21:07 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\NVIDIA
2014-01-15 08:16 - 2014-01-16 11:32 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\gtk-2.0
2014-01-14 23:03 - 2014-01-16 16:54 - 00000000 ____D C:\TDSSKiller_Quarantine
2014-01-14 22:58 - 2014-01-14 22:59 - 82537128 _____ (Sophos Limited) C:\Users\Genetic Styles\Downloads\Sophos Virus Removal Tool.exe
2014-01-14 22:57 - 2014-01-14 22:57 - 04121952 _____ (Kaspersky Lab ZAO) C:\Users\Genetic Styles\Downloads\tdsskiller.exe
2014-01-14 22:50 - 2014-01-14 22:50 - 00003226 _____ C:\Windows\System32\Tasks\{747A5E68-0761-4717-B631-11B0363DDEEC}
2014-01-14 22:48 - 2014-01-14 22:49 - 50449456 _____ (Microsoft Corporation) C:\Users\Genetic Styles\Downloads\dotNetFx40_Full_x86_x64.exe
2014-01-14 22:20 - 2014-01-15 08:16 - 00000992 _____ C:\Users\Genetic Styles\Desktop\Core Temp.lnk
2014-01-14 22:07 - 2014-01-14 22:07 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\NVIDIA
2014-01-14 22:07 - 2013-12-09 18:15 - 00982232 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2014-01-14 22:07 - 2013-12-09 18:14 - 01100248 _____ (NVIDIA Corporation) C:\Windows\System32\nvspcap64.dll
2014-01-14 22:06 - 2014-01-25 00:38 - 00000000 ____D C:\ProgramData\NVIDIA
2014-01-14 22:06 - 2013-12-19 12:33 - 30372640 _____ (NVIDIA Corporation) C:\Windows\System32\nvoglv64.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 25257248 _____ (NVIDIA Corporation) C:\Windows\System32\nvcompiler.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 22960416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 18310112 _____ (NVIDIA Corporation) C:\Windows\System32\nvwgf2umx.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 18222008 _____ (NVIDIA Corporation) C:\Windows\System32\nvd3dumx.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 15877216 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 15230352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 12645664 _____ (NVIDIA Corporation) C:\Windows\System32\Drivers\nvlddmkm.sys
2014-01-14 22:06 - 2013-12-19 12:33 - 11605752 _____ (NVIDIA Corporation) C:\Windows\System32\nvcuda.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 11554264 _____ (NVIDIA Corporation) C:\Windows\System32\nvopencl.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 09700224 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 09657464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 03132704 _____ (NVIDIA Corporation) C:\Windows\System32\nvcuvid.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 03125024 _____ (NVIDIA Corporation) C:\Windows\System32\nvcuvenc.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 03071656 _____ (NVIDIA Corporation) C:\Windows\System32\nvapi64.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 02947872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 02747680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 02698272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 01884448 _____ (NVIDIA Corporation) C:\Windows\System32\nvdispco6433221.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 01511712 _____ (NVIDIA Corporation) C:\Windows\System32\nvdispgenco6433221.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 01436528 _____ (NVIDIA Corporation) C:\Windows\System32\nvumdshimx.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 01242400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 00882464 _____ (NVIDIA Corporation) C:\Windows\System32\NvIFR64.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 00879392 _____ (NVIDIA Corporation) C:\Windows\System32\NvFBC64.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 00852768 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 00847648 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 00479520 _____ (NVIDIA Corporation) C:\Windows\System32\nvEncodeAPI64.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 00405280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 00357152 _____ C:\Windows\System32\NvIFROpenGL.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 00317472 _____ (NVIDIA Corporation) C:\Windows\System32\nvoglshim64.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 00314656 _____ C:\Windows\SysWOW64\NvIFROpenGL.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 00168616 _____ (NVIDIA Corporation) C:\Windows\System32\nvinitx.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 00061216 _____ (Khronos Group) C:\Windows\System32\OpenCL.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 00053024 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 00023754 _____ C:\Windows\System32\nvinfo.pb
2014-01-14 22:06 - 2013-12-19 10:53 - 06671648 _____ (NVIDIA Corporation) C:\Windows\System32\nvcpl.dll
2014-01-14 22:06 - 2013-12-19 10:53 - 03490080 _____ (NVIDIA Corporation) C:\Windows\System32\nvsvc64.dll
2014-01-14 22:06 - 2013-12-19 10:53 - 00922912 _____ (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
2014-01-14 22:06 - 2013-12-19 10:53 - 00386336 _____ (NVIDIA Corporation) C:\Windows\System32\nvmctray.dll
2014-01-14 22:06 - 2013-12-19 10:53 - 00063776 _____ (NVIDIA Corporation) C:\Windows\System32\nvshext.dll
2014-01-14 22:06 - 2013-12-18 21:01 - 03539040 _____ C:\Windows\System32\nvcoproc.bin
2014-01-14 22:06 - 2013-12-05 00:42 - 00039200 _____ (NVIDIA Corporation) C:\Windows\System32\Drivers\nvvad64v.sys
2014-01-14 22:06 - 2013-12-05 00:42 - 00035104 _____ (NVIDIA Corporation) C:\Windows\System32\nvaudcap64v.dll
2014-01-14 22:06 - 2013-12-05 00:42 - 00032544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2014-01-14 22:06 - 2013-11-28 05:38 - 00197408 _____ (NVIDIA Corporation) C:\Windows\System32\Drivers\nvhda64v.sys
2014-01-14 22:06 - 2013-11-28 05:38 - 00031520 _____ (NVIDIA Corporation) C:\Windows\System32\nvhdap64.dll
2014-01-14 22:06 - 2013-11-22 00:36 - 01515296 _____ (NVIDIA Corporation) C:\Windows\System32\nvhdagenco6420103.dll
2014-01-14 21:29 - 2014-01-14 21:29 - 00001113 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-01-14 21:29 - 2014-01-14 21:29 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\Malwarebytes
2014-01-14 21:29 - 2014-01-14 21:29 - 00000000 ____D C:\ProgramData\Malwarebytes
2014-01-14 21:29 - 2014-01-14 21:29 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-01-14 21:29 - 2013-04-04 13:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\System32\Drivers\mbam.sys
2014-01-14 21:28 - 2014-01-14 21:28 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Genetic Styles\Downloads\mbam-setup-1.75.0.1300.exe
2014-01-14 21:27 - 2014-01-20 23:56 - 00000083 _____ C:\Windows\System32\rwniy.uhy
2014-01-14 21:27 - 2014-01-14 21:27 - 00000064 _____ C:\Windows\System32\ulyex.iwk
2014-01-14 21:27 - 2014-01-14 21:27 - 00000000 _____ C:\Windows\System32\ngjcdq.lun
2014-01-14 21:11 - 2014-01-14 21:11 - 00219314 ____S C:\Windows\System32\jmftvf.vqi
2014-01-12 16:02 - 2014-01-12 16:02 - 00000036 _____ C:\Users\Genetic Styles\Desktop\netflix.txt
2014-01-12 14:45 - 2013-03-28 16:59 - 00001447 _____ C:\Users\Genetic Styles\Desktop\gameinfo.txt
2014-01-12 13:20 - 2014-01-12 13:29 - 00000202 _____ C:\Users\Genetic Styles\Desktop\Strike Vector.url
2014-01-12 00:06 - 2014-01-12 00:06 - 00000202 _____ C:\Users\Genetic Styles\Desktop\Insurgency.url
2014-01-11 23:24 - 2014-01-11 23:24 - 00000202 _____ C:\Users\Genetic Styles\Desktop\Warframe.url
2014-01-11 23:23 - 2014-01-15 21:24 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\Warframe
2014-01-11 17:26 - 2014-01-11 17:26 - 32229024 _____ (Riot Games) C:\Users\Genetic Styles\Downloads\LeagueofLegends_NA_Installer_05_07_13.exe
2014-01-11 14:13 - 2014-01-14 19:45 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\Mumble
2014-01-11 14:13 - 2014-01-11 14:13 - 00002379 _____ C:\Users\Genetic Styles\Documents\MumbleAutomaticCertificateBackup.p12
2014-01-11 12:39 - 2014-01-11 12:39 - 00062144 _____ C:\Users\Genetic Styles\Downloads\scenesw_r22.zip
2014-01-11 12:22 - 2014-01-11 12:22 - 00000939 _____ C:\Users\Genetic Styles\Desktop\Open Broadcaster Software.lnk
2014-01-11 12:22 - 2014-01-11 12:22 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\OBS
2014-01-11 12:22 - 2014-01-11 12:22 - 00000000 ____D C:\Program Files\OBS
2014-01-11 12:22 - 2014-01-11 12:22 - 00000000 ____D C:\Program Files (x86)\OBS
2014-01-09 23:17 - 2014-01-09 23:17 - 00000000 ____H C:\Windows\System32\Drivers\Msft_Kernel_xusb21_01009.Wdf
2014-01-09 22:55 - 2014-01-09 22:55 - 07878008 _____ (Microsoft Corporation) C:\Users\Genetic Styles\Downloads\Xbox360_64Eng (1).exe
2014-01-09 22:48 - 2014-01-09 22:48 - 00000000 ____D C:\Program Files\Microsoft Xbox 360 Accessories
2014-01-09 22:47 - 2014-01-09 22:48 - 07878008 _____ (Microsoft Corporation) C:\Users\Genetic Styles\Downloads\Xbox360_64Eng.exe
2014-01-09 22:45 - 2014-01-09 22:45 - 00000000 ____D C:\Users\Genetic Styles\Documents\MGR
2014-01-09 21:25 - 2014-01-09 21:25 - 00001070 _____ C:\Users\Public\Desktop\VLC media player.lnk
2014-01-09 20:15 - 2014-01-09 20:15 - 00000202 _____ C:\Users\Genetic Styles\Desktop\METAL GEAR RISING REVENGEANCE.url
2014-01-09 16:56 - 2014-01-09 16:57 - 07660927 _____ C:\Users\Genetic Styles\Downloads\OBS_0_592b_Installer.exe
2014-01-09 08:15 - 2014-01-23 23:43 - 00001080 _____ C:\Windows\System32\settingsbkup.sfm
2014-01-09 08:15 - 2014-01-23 23:43 - 00001080 _____ C:\Windows\System32\settings.sfm
2014-01-09 04:22 - 2014-01-09 04:22 - 00281872 _____ C:\Windows\SysWOW64\PnkBstrB.exe
2014-01-09 04:22 - 2014-01-09 04:22 - 00281872 _____ C:\Windows\SysWOW64\PnkBstrB.ex0
2014-01-09 04:22 - 2014-01-09 04:22 - 00076888 _____ C:\Windows\SysWOW64\PnkBstrA.exe
2014-01-09 04:22 - 2014-01-09 04:22 - 00000697 _____ C:\Users\Public\Desktop\Battlefield 4.lnk
2014-01-09 04:22 - 2014-01-09 04:22 - 00000681 _____ C:\Users\Public\Desktop\Battlefield 4(64 bit).lnk
2014-01-09 04:22 - 2014-01-09 04:22 - 00000000 ____D C:\ProgramData\Package Cache
2014-01-09 04:22 - 2014-01-09 04:22 - 00000000 ____D C:\Program Files (x86)\Battlelog Web Plugins
2014-01-09 00:10 - 2014-01-21 21:56 - 00000000 ____D C:\Users\Genetic Styles\Documents\my games
2014-01-08 22:59 - 2014-01-23 23:27 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\vlc
2014-01-08 22:53 - 2014-01-08 22:54 - 01768954 _____ C:\Users\Genetic Styles\Downloads\training_aim_csgo_2.rar
2014-01-08 22:23 - 2014-01-08 22:23 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\Macromedia
2014-01-08 22:23 - 2014-01-08 22:23 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\LolClient
2014-01-08 22:23 - 2014-01-08 22:23 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\Adobe
2014-01-08 22:00 - 2014-01-08 22:00 - 00000472 _____ C:\Users\Genetic Styles\Desktop\Desktop.lnk
2014-01-08 21:57 - 2014-01-08 21:57 - 00000000 ____D C:\Program Files (x86)\RocketDock
2014-01-08 21:57 - 2014-01-08 21:57 - 00000000 ____D C:\Program Files (x86)\Mumble
2014-01-08 21:57 - 2014-01-08 21:57 - 00000000 ____D C:\Program Files (x86)\MPC-HC
2014-01-08 21:54 - 2014-01-16 16:41 - 00000000 ____D C:\Program Files\FolderSize
2014-01-08 21:54 - 2014-01-08 21:54 - 00294912 _____ C:\Users\Genetic Styles\Downloads\FolderSize-2.6-x64.msi
2014-01-08 21:50 - 2014-01-08 21:53 - 10273496 _____ (MPC-HC Team ) C:\Users\Genetic Styles\Downloads\MPC-HC.1.7.1.x86.exe
2014-01-08 21:50 - 2014-01-08 21:52 - 06463660 _____ (Punk Software ) C:\Users\Genetic Styles\Downloads\RocketDock-v1.3.5.exe
2014-01-08 21:49 - 2014-01-08 21:54 - 15657984 _____ C:\Users\Genetic Styles\Downloads\mumble-1.2.4.msi
2014-01-08 21:40 - 2014-01-24 22:46 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\.purple
2014-01-08 21:40 - 2014-01-08 21:40 - 00000000 ____D C:\Program Files (x86)\Pidgin
2014-01-08 21:36 - 2014-01-08 21:36 - 00155528 _____ (Nicomsoft Ltd.) C:\Windows\System32\DDCHELPER.dll
2014-01-08 21:36 - 2014-01-08 21:36 - 00020832 _____ (Nicomsoft Ltd.) C:\Windows\System32\Drivers\ddcdrv.sys
2014-01-08 21:36 - 2014-01-08 21:36 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\WinRAR
2014-01-08 21:16 - 2014-01-08 21:16 - 00040960 _____ (Benq Corporation) C:\Users\Genetic Styles\Downloads\auto.exe
2014-01-08 21:15 - 2014-01-08 21:15 - 01977432 _____ C:\Users\Genetic Styles\Downloads\winrar-x64-501.exe
2014-01-08 21:15 - 2014-01-08 21:15 - 00000000 ____D C:\ProgramData\Adobe
2014-01-08 21:15 - 2014-01-08 21:15 - 00000000 ____D C:\Program Files\WinRAR
2014-01-08 21:15 - 2014-01-08 21:15 - 00000000 ____D C:\Program Files (x86)\Adobe
2014-01-08 21:14 - 2014-01-08 21:16 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\Adobe
2014-01-08 21:07 - 2014-01-17 16:27 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\Ventrilo
2014-01-08 21:04 - 2014-01-08 21:04 - 00000262 _____ C:\Windows\{EEB3F6BB-318D-4CE5-989F-8191FCBFB578}_WiseFW.ini
2014-01-08 21:04 - 2014-01-08 21:04 - 00000000 ____D C:\Program Files\Ventrilo
2014-01-08 20:48 - 2014-01-08 20:48 - 00000000 ____D C:\Program Files (x86)\Combined Community Codec Pack
2014-01-08 20:47 - 2014-01-08 20:47 - 10207456 _____ (CCCP Project ) C:\Users\Genetic Styles\Downloads\Combined-Community-Codec-Pack-2013-11-27.exe
2014-01-08 20:47 - 2014-01-08 20:47 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\Realtime Soft
2014-01-08 20:47 - 2014-01-08 20:47 - 00000000 ____D C:\ProgramData\Realtime Soft
2014-01-08 20:47 - 2014-01-08 20:47 - 00000000 ____D C:\Program Files\UltraMon
2014-01-08 20:47 - 2014-01-08 20:47 - 00000000 ____D C:\Program Files (x86)\DAMN NFO Viewer
2014-01-08 20:46 - 2014-01-08 20:46 - 00269312 _____ (DAMN) C:\Users\Genetic Styles\Downloads\DAMN_NFO_Viewer_v2-10-0032-RC3.exe
2014-01-08 20:45 - 2014-01-16 21:18 - 00000000 ____D C:\Windows\Panther
2014-01-08 20:41 - 2014-01-24 22:10 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\Skype
2014-01-08 20:41 - 2014-01-08 20:41 - 00000000 ___RD C:\Program Files (x86)\Skype
2014-01-08 20:41 - 2014-01-08 20:41 - 00000000 ____D C:\ProgramData\Skype
2014-01-08 20:41 - 2013-11-26 11:25 - 00267936 ____N (Microsoft Corporation) C:\Windows\System32\MpSigStub.exe
2014-01-08 20:40 - 2014-01-08 20:40 - 00000000 ____D C:\Program Files (x86)\Origin Games
2014-01-08 20:39 - 2014-01-23 21:35 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\uTorrent
2014-01-08 20:39 - 2014-01-08 22:14 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\Origin
2014-01-08 20:39 - 2014-01-08 20:41 - 00000000 ____D C:\ProgramData\Origin
2014-01-08 20:39 - 2014-01-08 20:40 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\Origin
2014-01-08 20:39 - 2014-01-08 20:39 - 01340496 _____ (BitTorrent Inc.) C:\Users\Genetic Styles\Downloads\utorrent.exe
2014-01-08 20:39 - 2014-01-08 20:39 - 00000000 ____D C:\ProgramData\Electronic Arts
2014-01-08 20:38 - 2014-01-24 18:16 - 00000000 ____D C:\Program Files (x86)\Origin
2014-01-08 20:37 - 2014-01-08 20:38 - 16952720 _____ (Electronic Arts, Inc.) C:\Users\Genetic Styles\Downloads\OriginThinSetup.exe
2014-01-08 20:37 - 2010-06-02 03:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll
2014-01-08 20:37 - 2010-06-02 03:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\System32\XAudio2_7.dll
2014-01-08 20:37 - 2010-06-02 03:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll
2014-01-08 20:37 - 2010-06-02 03:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\System32\xactengine3_7.dll
2014-01-08 20:37 - 2010-06-02 03:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\System32\XAPOFX1_5.dll
2014-01-08 20:37 - 2010-06-02 03:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll
2014-01-08 20:37 - 2010-05-26 10:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_43.dll
2014-01-08 20:37 - 2010-05-26 10:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\System32\D3DX9_43.dll
2014-01-08 20:37 - 2010-05-26 10:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll
2014-01-08 20:37 - 2010-05-26 10:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll
2014-01-08 20:37 - 2010-05-26 10:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\System32\d3dcsx_43.dll
2014-01-08 20:37 - 2010-05-26 10:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll
2014-01-08 20:37 - 2010-05-26 10:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_43.dll
2014-01-08 20:37 - 2010-05-26 10:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll
2014-01-08 20:37 - 2010-05-26 10:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\System32\d3dx11_43.dll
2014-01-08 20:37 - 2010-05-26 10:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll
2014-01-08 20:37 - 2010-02-04 09:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\System32\XAudio2_6.dll
2014-01-08 20:37 - 2010-02-04 09:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll
2014-01-08 20:37 - 2010-02-04 09:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll
2014-01-08 20:37 - 2010-02-04 09:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\System32\xactengine3_6.dll
2014-01-08 20:37 - 2010-02-04 09:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\System32\XAPOFX1_4.dll
2014-01-08 20:37 - 2010-02-04 09:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll
2014-01-08 20:37 - 2010-02-04 09:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\System32\X3DAudio1_7.dll
2014-01-08 20:37 - 2010-02-04 09:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll
2014-01-08 20:37 - 2009-09-04 16:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\System32\XAudio2_5.dll
2014-01-08 20:37 - 2009-09-04 16:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll
2014-01-08 20:37 - 2009-09-04 16:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll
2014-01-08 20:37 - 2009-09-04 16:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\System32\xactengine3_5.dll
2014-01-08 20:37 - 2009-09-04 16:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\System32\XAPOFX1_3.dll
2014-01-08 20:37 - 2009-09-04 16:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll
2014-01-08 20:37 - 2009-09-04 16:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\System32\d3dcsx_42.dll
2014-01-08 20:37 - 2009-09-04 16:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll
2014-01-08 20:37 - 2009-09-04 16:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_42.dll
2014-01-08 20:37 - 2009-09-04 16:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\System32\D3DX9_42.dll
2014-01-08 20:37 - 2009-09-04 16:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll
2014-01-08 20:37 - 2009-09-04 16:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll
2014-01-08 20:37 - 2009-09-04 16:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_42.dll
2014-01-08 20:37 - 2009-09-04 16:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll
2014-01-08 20:37 - 2009-09-04 16:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\System32\d3dx11_42.dll
2014-01-08 20:37 - 2009-09-04 16:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll
2014-01-08 20:37 - 2009-03-16 13:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\System32\XAudio2_4.dll
2014-01-08 20:37 - 2009-03-16 13:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll
2014-01-08 20:37 - 2009-03-16 13:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll
2014-01-08 20:37 - 2009-03-16 13:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\System32\xactengine3_4.dll
2014-01-08 20:37 - 2009-03-16 13:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\System32\X3DAudio1_6.dll
2014-01-08 20:37 - 2009-03-16 13:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll
2014-01-08 20:37 - 2009-03-09 14:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\System32\D3DX9_41.dll
2014-01-08 20:37 - 2009-03-09 14:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll
2014-01-08 20:37 - 2009-03-09 14:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_41.dll
2014-01-08 20:37 - 2009-03-09 14:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll
2014-01-08 20:37 - 2009-03-09 14:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_41.dll
2014-01-08 20:37 - 2009-03-09 14:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll
2014-01-08 20:37 - 2008-10-27 09:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\System32\XAudio2_3.dll
2014-01-08 20:37 - 2008-10-27 09:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll
2014-01-08 20:37 - 2008-10-27 09:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll
2014-01-08 20:37 - 2008-10-27 09:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\System32\xactengine3_3.dll
2014-01-08 20:37 - 2008-10-27 09:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\System32\XAPOFX1_2.dll
2014-01-08 20:37 - 2008-10-27 09:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll
2014-01-08 20:37 - 2008-10-27 09:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\System32\X3DAudio1_5.dll
2014-01-08 20:37 - 2008-10-27 09:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll
2014-01-08 20:37 - 2008-10-15 05:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\System32\D3DX9_40.dll
2014-01-08 20:37 - 2008-10-15 05:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll
2014-01-08 20:37 - 2008-10-15 05:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_40.dll
2014-01-08 20:37 - 2008-10-15 05:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll
2014-01-08 20:37 - 2008-10-15 05:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_40.dll
2014-01-08 20:37 - 2008-10-15 05:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll
2014-01-08 20:37 - 2008-07-31 09:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll
2014-01-08 20:37 - 2008-07-31 09:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\System32\xactengine3_2.dll
2014-01-08 20:37 - 2008-07-31 09:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\System32\XAPOFX1_1.dll
2014-01-08 20:37 - 2008-07-31 09:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll
2014-01-08 20:37 - 2008-07-31 09:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\System32\XAudio2_2.dll
2014-01-08 20:37 - 2008-07-31 09:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll
2014-01-08 20:37 - 2008-07-10 10:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll
2014-01-08 20:37 - 2008-07-10 10:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\System32\D3DX9_39.dll
2014-01-08 20:37 - 2008-07-10 10:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll
2014-01-08 20:37 - 2008-07-10 10:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_39.dll
2014-01-08 20:37 - 2008-07-10 10:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll
2014-01-08 20:37 - 2008-07-10 10:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_39.dll
2014-01-08 20:37 - 2008-05-30 13:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\System32\XAudio2_1.dll
2014-01-08 20:37 - 2008-05-30 13:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll
2014-01-08 20:37 - 2008-05-30 13:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll
2014-01-08 20:37 - 2008-05-30 13:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\System32\xactengine3_1.dll
2014-01-08 20:37 - 2008-05-30 13:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\System32\XAPOFX1_0.dll
2014-01-08 20:37 - 2008-05-30 13:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll
2014-01-08 20:37 - 2008-05-30 13:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll
2014-01-08 20:37 - 2008-05-30 13:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\System32\X3DAudio1_4.dll
2014-01-08 20:37 - 2008-05-30 13:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\System32\D3DX9_38.dll
2014-01-08 20:37 - 2008-05-30 13:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll
2014-01-08 20:37 - 2008-05-30 13:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_38.dll
2014-01-08 20:37 - 2008-05-30 13:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll
2014-01-08 20:37 - 2008-05-30 13:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_38.dll
2014-01-08 20:37 - 2008-05-30 13:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll
2014-01-08 20:37 - 2008-03-05 15:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\System32\XAudio2_0.dll
2014-01-08 20:37 - 2008-03-05 15:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll
2014-01-08 20:37 - 2008-03-05 15:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll
2014-01-08 20:37 - 2008-03-05 15:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\System32\xactengine3_0.dll
2014-01-08 20:37 - 2008-03-05 15:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\System32\X3DAudio1_3.dll
2014-01-08 20:37 - 2008-03-05 15:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll
2014-01-08 20:37 - 2008-03-05 14:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\System32\D3DX9_37.dll
2014-01-08 20:37 - 2008-03-05 14:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll
2014-01-08 20:37 - 2008-03-05 14:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_37.dll
2014-01-08 20:37 - 2008-03-05 14:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll
2014-01-08 20:37 - 2008-02-05 22:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_37.dll
2014-01-08 20:37 - 2008-02-05 22:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll
2014-01-08 20:37 - 2007-10-22 02:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_10.dll
2014-01-08 20:37 - 2007-10-22 02:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll
2014-01-08 20:37 - 2007-10-22 02:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\System32\X3DAudio1_2.dll
2014-01-08 20:37 - 2007-10-22 02:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll
2014-01-08 20:37 - 2007-10-12 14:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_36.dll
2014-01-08 20:37 - 2007-10-12 14:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll
2014-01-08 20:37 - 2007-10-12 14:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_36.dll
2014-01-08 20:37 - 2007-10-12 14:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll
2014-01-08 20:37 - 2007-10-02 08:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_36.dll
2014-01-08 20:37 - 2007-10-02 08:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll
2014-01-08 20:37 - 2007-07-19 23:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_9.dll
2014-01-08 20:37 - 2007-07-19 23:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll
2014-01-08 20:37 - 2007-07-19 17:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_35.dll
2014-01-08 20:37 - 2007-07-19 17:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll
2014-01-08 20:37 - 2007-07-19 17:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_35.dll
2014-01-08 20:37 - 2007-07-19 17:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll
2014-01-08 20:37 - 2007-07-19 17:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_35.dll
2014-01-08 20:37 - 2007-07-19 17:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll
2014-01-08 20:37 - 2007-06-20 19:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_8.dll
2014-01-08 20:37 - 2007-06-20 19:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll
2014-01-08 20:37 - 2007-05-16 15:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_34.dll
2014-01-08 20:37 - 2007-05-16 15:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll
2014-01-08 20:37 - 2007-05-16 15:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_34.dll
2014-01-08 20:37 - 2007-05-16 15:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll
2014-01-08 20:37 - 2007-05-16 15:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_34.dll
2014-01-08 20:37 - 2007-05-16 15:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll
2014-01-08 20:37 - 2007-04-04 17:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_7.dll
2014-01-08 20:37 - 2007-04-04 17:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll
2014-01-08 20:37 - 2007-04-04 17:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\System32\xinput1_3.dll
2014-01-08 20:37 - 2007-04-04 17:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll
2014-01-08 20:37 - 2007-03-15 15:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_33.dll
2014-01-08 20:37 - 2007-03-15 15:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll
2014-01-08 20:37 - 2007-03-12 15:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_33.dll
2014-01-08 20:37 - 2007-03-12 15:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll
2014-01-08 20:37 - 2007-03-12 15:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_33.dll
2014-01-08 20:37 - 2007-03-12 15:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll
2014-01-08 20:37 - 2007-03-05 11:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\System32\x3daudio1_1.dll
2014-01-08 20:37 - 2007-03-05 11:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll
2014-01-08 20:37 - 2007-01-24 14:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_6.dll
2014-01-08 20:37 - 2007-01-24 14:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll
2014-01-08 20:37 - 2006-12-08 11:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll
2014-01-08 20:37 - 2006-12-08 11:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_5.dll
2014-01-08 20:37 - 2006-11-29 12:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_32.dll
2014-01-08 20:37 - 2006-11-29 12:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll
2014-01-08 20:37 - 2006-11-29 12:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10.dll
2014-01-08 20:37 - 2006-11-29 12:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll
2014-01-08 20:37 - 2006-09-28 15:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_31.dll
2014-01-08 20:37 - 2006-09-28 15:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll
 
PART 2

2014-01-08 20:37 - 2006-09-28 15:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll
2014-01-08 20:37 - 2006-09-28 15:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_4.dll
2014-01-08 20:37 - 2006-07-28 08:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\System32\xinput1_2.dll
2014-01-08 20:37 - 2006-07-28 08:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_3.dll
2014-01-08 20:37 - 2006-07-28 08:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll
2014-01-08 20:37 - 2006-07-28 08:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll
2014-01-08 20:37 - 2006-05-31 06:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll
2014-01-08 20:37 - 2006-05-31 06:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_2.dll
2014-01-08 20:37 - 2006-03-31 11:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_30.dll
2014-01-08 20:37 - 2006-03-31 11:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll
2014-01-08 20:37 - 2006-03-31 11:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_1.dll
2014-01-08 20:37 - 2006-03-31 11:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll
2014-01-08 20:37 - 2006-03-31 11:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\System32\xinput1_1.dll
2014-01-08 20:37 - 2006-03-31 11:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll
2014-01-08 20:37 - 2006-02-03 07:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_29.dll
2014-01-08 20:37 - 2006-02-03 07:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll
2014-01-08 20:37 - 2006-02-03 07:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_0.dll
2014-01-08 20:37 - 2006-02-03 07:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll
2014-01-08 20:37 - 2006-02-03 07:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\System32\x3daudio1_0.dll
2014-01-08 20:37 - 2006-02-03 07:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll
2014-01-08 20:37 - 2005-12-05 17:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_28.dll
2014-01-08 20:37 - 2005-12-05 17:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll
2014-01-08 20:37 - 2005-07-22 18:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_27.dll
2014-01-08 20:37 - 2005-07-22 18:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll
2014-01-08 20:37 - 2005-05-26 14:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_26.dll
2014-01-08 20:37 - 2005-05-26 14:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll
2014-01-08 20:37 - 2005-03-18 16:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_25.dll
2014-01-08 20:37 - 2005-03-18 16:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll
2014-01-08 20:37 - 2005-02-05 18:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_24.dll
2014-01-08 20:37 - 2005-02-05 18:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll
2014-01-08 20:36 - 2014-01-08 20:36 - 01133552 _____ C:\Users\Genetic Styles\Downloads\SteamSetup.exe
2014-01-08 20:36 - 2014-01-08 20:36 - 00000000 ____D C:\Program Files (x86)\VideoLAN
2014-01-08 20:34 - 2014-01-08 20:34 - 00001908 _____ C:\Windows\diagwrn.xml
2014-01-08 20:34 - 2014-01-08 20:34 - 00001908 _____ C:\Windows\diagerr.xml
2014-01-08 20:30 - 2014-01-08 20:30 - 22943014 _____ C:\Users\Genetic Styles\Downloads\vlc-2.0.6-win32.exe
2014-01-08 20:30 - 2014-01-08 20:30 - 09470216 _____ C:\Users\Genetic Styles\Downloads\pidgin-2.10.7.exe
2014-01-08 20:30 - 2014-01-08 20:30 - 04135696 _____ C:\Users\Genetic Styles\Downloads\ventrilo-3.0.8-Windows-x64.exe
2014-01-08 20:30 - 2014-01-08 20:30 - 01551008 _____ (Skype Technologies S.A.) C:\Users\Genetic Styles\Downloads\SkypeSetup.exe
2014-01-08 20:30 - 2014-01-08 20:30 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\SteelSeries
2014-01-08 20:30 - 2014-01-08 20:30 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\SteelSeries_ApS
2014-01-08 20:29 - 2014-01-08 20:29 - 00000000 ____D C:\ProgramData\SteelSeries
2014-01-08 20:28 - 2014-01-08 20:28 - 00000000 ____D C:\Program Files\SteelSeries
2014-01-08 20:27 - 2014-01-25 00:02 - 00000910 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-01-08 20:27 - 2014-01-24 22:37 - 00000914 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-01-08 20:27 - 2014-01-15 08:38 - 00002183 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2014-01-08 20:27 - 2014-01-08 20:32 - 00003910 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-01-08 20:27 - 2014-01-08 20:32 - 00003658 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-01-08 20:27 - 2014-01-08 20:27 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\Google
2014-01-08 20:27 - 2014-01-08 20:27 - 00000000 ____D C:\Program Files (x86)\Google
2014-01-08 20:26 - 2014-01-08 20:27 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\Deployment
2014-01-08 20:26 - 2014-01-08 20:26 - 00057560 _____ C:\Users\Genetic Styles\AppData\Local\GDIPFONTCACHEV1.DAT
2014-01-08 20:26 - 2014-01-08 20:26 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\Apps\2.0
2014-01-08 20:25 - 2012-06-12 06:00 - 00726160 _____ (Realtek ) C:\Windows\System32\Drivers\Rt64win7.sys
2014-01-08 20:25 - 2012-06-12 06:00 - 00107552 _____ (Realtek Semiconductor Corporation) C:\Windows\System32\RTNUninst64.dll
2014-01-08 20:25 - 2012-06-12 06:00 - 00074344 _____ (Realtek Semiconductor Corporation) C:\Windows\System32\RtNicProp64.dll
2014-01-08 20:18 - 2014-01-08 20:18 - 00000000 ____D C:\ProgramData\InstallShield
2014-01-08 20:18 - 2011-12-05 23:55 - 00053248 ____R (Windows XP Bundled build C-Centric Single User) C:\Windows\SysWOW64\CSVer.dll
2014-01-08 20:17 - 2003-06-12 22:25 - 00007062 _____ C:\Windows\SysWOW64\audiopid.vxd
2014-01-08 20:16 - 2014-01-08 21:04 - 00000000 ____D C:\ProgramData\Creative
2014-01-08 20:16 - 2014-01-08 20:16 - 00466520 _____ (Creative Labs) C:\Windows\System32\wrap_oal.dll
2014-01-08 20:16 - 2014-01-08 20:16 - 00445016 _____ (Creative Labs) C:\Windows\SysWOW64\wrap_oal.dll
2014-01-08 20:16 - 2014-01-08 20:16 - 00123480 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\System32\OpenAL32.dll
2014-01-08 20:16 - 2014-01-08 20:16 - 00109144 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\SysWOW64\OpenAL32.dll
2014-01-08 20:16 - 2014-01-08 20:16 - 00000159 ___RH C:\Windows\ctfile.rfc
2014-01-08 20:16 - 2014-01-08 20:16 - 00000000 ___HD C:\Program Files (x86)\Creative Installation Information
2014-01-08 20:16 - 2014-01-08 20:16 - 00000000 ____D C:\Windows\SysWOW64\Data
2014-01-08 20:16 - 2014-01-08 20:16 - 00000000 ____D C:\Windows\System32\Data
2014-01-08 20:16 - 2014-01-08 20:16 - 00000000 ____D C:\Windows\AsDmiHtm
2014-01-08 20:16 - 2014-01-08 20:16 - 00000000 ____D C:\Program Files\Creative
2014-01-08 20:16 - 2014-01-08 20:16 - 00000000 ____D C:\Program Files (x86)\OpenAL
2014-01-08 20:16 - 2014-01-08 20:16 - 00000000 ____D C:\Program Files (x86)\Creative
2014-01-08 20:16 - 2011-08-22 13:17 - 00012288 _____ (Creative Technology Limited) C:\Windows\System32\INRES.DLL
2014-01-08 20:16 - 2011-08-22 12:02 - 00011776 _____ (Creative Technology Limited) C:\Windows\SysWOW64\INRES.DLL
2014-01-08 20:16 - 2009-03-26 13:48 - 00190976 _____ C:\Windows\System32\APOMgr64.DLL
2014-01-08 20:16 - 2009-03-26 13:46 - 00148480 _____ C:\Windows\SysWOW64\APOMngr.DLL
2014-01-08 20:16 - 2009-02-06 17:53 - 00089088 _____ C:\Windows\System32\CmdRtr64.DLL
2014-01-08 20:16 - 2009-02-06 17:52 - 00073728 _____ C:\Windows\SysWOW64\CmdRtr.DLL
2014-01-08 20:16 - 2008-02-04 09:28 - 00107008 _____ (Creative Technology Ltd) C:\Windows\System32\cttele64.dll
2014-01-08 20:16 - 2008-02-04 09:27 - 00102400 _____ (Creative Technology Ltd) C:\Windows\SysWOW64\cttele32.dll
2014-01-08 20:15 - 2014-01-08 20:15 - 00001060 _____ C:\users\Genetic
2014-01-08 20:13 - 2014-01-08 20:13 - 00000000 ____H C:\Windows\System32\Drivers\Msft_Kernel_iusb3hcs_01009.Wdf
2014-01-08 20:13 - 2014-01-08 20:13 - 00000000 ____D C:\Program Files (x86)\Marvell
2014-01-08 20:13 - 2014-01-08 20:13 - 00000000 ____D C:\Program Files (x86)\ASM104xUSB3
2014-01-08 20:13 - 2012-05-20 08:25 - 00789824 _____ (Intel Corporation) C:\Windows\System32\Drivers\iusb3xhc.sys
2014-01-08 20:13 - 2012-05-20 08:25 - 00357184 _____ (Intel Corporation) C:\Windows\System32\Drivers\iusb3hub.sys
2014-01-08 20:13 - 2012-05-20 08:25 - 00019264 _____ (Intel Corporation) C:\Windows\System32\Drivers\iusb3hcs.sys
2014-01-08 20:11 - 2014-01-08 21:38 - 00000000 ____D C:\Program Files (x86)\Realtek
2014-01-08 20:09 - 2014-01-08 21:38 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2014-01-08 20:09 - 2014-01-08 20:19 - 00000000 ____D C:\Windows\System32\Tasks\ASUS
2014-01-08 20:09 - 2014-01-08 20:18 - 00000000 ____D C:\Program Files (x86)\Intel
2014-01-08 20:09 - 2014-01-08 20:09 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\InstallShield
2014-01-08 20:09 - 2014-01-08 20:09 - 00000000 ____D C:\Intel
2014-01-08 20:08 - 2014-01-08 20:08 - 00016896 _____ (ASUS) C:\Windows\AsTaskSched.dll
2014-01-08 20:08 - 2012-10-29 19:21 - 00000000 ____D C:\Windows\Chipset
2014-01-08 20:08 - 2011-02-24 22:36 - 00295296 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\volsnap.sys
2014-01-08 20:07 - 2014-01-08 20:25 - 00045437 _____ C:\Windows\Ascd_tmp.ini
2014-01-08 20:07 - 2014-01-08 20:07 - 00001769 _____ C:\Windows\Language_trs.ini
2014-01-08 20:07 - 2014-01-08 20:07 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies
2014-01-08 20:06 - 2014-01-25 00:23 - 00414667 _____ C:\Windows\WindowsUpdate.log
2014-01-08 20:06 - 2014-01-14 22:07 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2014-01-08 20:06 - 2014-01-14 22:07 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2014-01-08 20:06 - 2014-01-14 22:07 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2014-01-08 20:05 - 2014-01-08 20:05 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\VirtualStore
2014-01-08 20:04 - 2014-01-15 21:39 - 00000000 ____D C:\users\Genetic Styles
2014-01-08 20:04 - 2014-01-08 20:04 - 00000020 ___SH C:\Users\Genetic Styles\ntuser.ini
2014-01-08 20:03 - 2014-01-08 20:03 - 00000000 ____D C:\Recovery

==================== One Month Modified Files and Folders =======

2014-01-25 10:15 - 2014-01-25 10:14 - 00085715 _____ C:\Users\Genetic Styles\Downloads\FRST.txt
2014-01-25 10:14 - 2014-01-25 10:14 - 00000000 ____D C:\FRST
2014-01-25 00:38 - 2014-01-14 22:06 - 00000000 ____D C:\ProgramData\NVIDIA
2014-01-25 00:23 - 2014-01-08 20:06 - 00414667 _____ C:\Windows\WindowsUpdate.log
2014-01-25 00:23 - 2009-07-13 21:13 - 00713888 _____ C:\Windows\System32\PerfStringBackup.INI
2014-01-25 00:23 - 2009-07-13 20:45 - 00016944 ____H C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-01-25 00:23 - 2009-07-13 20:45 - 00016944 ____H C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-01-25 00:20 - 2014-01-16 21:24 - 00004239 _____ C:\Windows\setupact.log
2014-01-25 00:12 - 2014-01-25 00:12 - 02077696 _____ (Farbar) C:\Users\Genetic Styles\Downloads\FRST64.exe
2014-01-25 00:02 - 2014-01-24 22:12 - 00001366 _____ C:\Windows\PFRO.log
2014-01-25 00:02 - 2014-01-08 20:27 - 00000910 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-01-25 00:02 - 2009-07-13 21:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2014-01-24 22:51 - 2014-01-24 22:51 - 01038072 _____ (AVAST Software) C:\Windows\System32\Drivers\aswSnx.sys
2014-01-24 22:51 - 2014-01-24 22:51 - 00421704 _____ (AVAST Software) C:\Windows\System32\Drivers\aswSP.sys
2014-01-24 22:51 - 2014-01-24 22:51 - 00334136 _____ (AVAST Software) C:\Windows\System32\aswBoot.exe
2014-01-24 22:51 - 2014-01-24 22:51 - 00207904 _____ C:\Windows\System32\Drivers\aswVmm.sys
2014-01-24 22:51 - 2014-01-24 22:51 - 00092544 _____ (AVAST Software) C:\Windows\System32\Drivers\aswRdr2.sys
2014-01-24 22:51 - 2014-01-24 22:51 - 00080184 _____ (AVAST Software) C:\Windows\System32\Drivers\aswStm.sys
2014-01-24 22:51 - 2014-01-24 22:51 - 00078648 _____ (AVAST Software) C:\Windows\System32\Drivers\aswMonFlt.sys
2014-01-24 22:51 - 2014-01-24 22:51 - 00065776 _____ C:\Windows\System32\Drivers\aswRvrt.sys
2014-01-24 22:51 - 2014-01-24 22:51 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-01-24 22:51 - 2014-01-24 22:51 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2014-01-24 22:51 - 2014-01-24 22:51 - 00001966 _____ C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-01-24 22:51 - 2014-01-24 22:51 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\AVAST Software
2014-01-24 22:51 - 2014-01-24 22:51 - 00000000 ____D C:\ProgramData\AVAST Software
2014-01-24 22:51 - 2014-01-24 22:51 - 00000000 ____D C:\Program Files\AVAST Software
2014-01-24 22:46 - 2014-01-08 21:40 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\.purple
2014-01-24 22:37 - 2014-01-08 20:27 - 00000914 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-01-24 22:28 - 2014-01-24 22:28 - 00014520 _____ C:\ComboFix.txt
2014-01-24 22:28 - 2014-01-16 16:54 - 00000000 ____D C:\Qoobox
2014-01-24 22:27 - 2009-07-13 18:34 - 00000215 _____ C:\Windows\system.ini
2014-01-24 22:24 - 2014-01-24 22:24 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\Realtime Soft
2014-01-24 22:23 - 2014-01-24 22:23 - 00001136 _____ C:\Users\Genetic Styles\Desktop\JRT.txt
2014-01-24 22:21 - 2014-01-24 22:21 - 00000000 ____D C:\Windows\ERUNT
2014-01-24 22:19 - 2014-01-24 22:17 - 00000000 ____D C:\AdwCleaner
2014-01-24 22:17 - 2014-01-24 22:17 - 00002970 _____ C:\Users\Genetic Styles\Desktop\RKreport[0]_S_01242014_231731.txt
2014-01-24 22:17 - 2014-01-24 22:15 - 00000000 ____D C:\Users\Genetic Styles\Desktop\RK_Quarantine
2014-01-24 22:16 - 2014-01-24 22:16 - 00003674 _____ C:\Users\Genetic Styles\Desktop\RKreport[0]_D_01242014_231641.txt
2014-01-24 22:16 - 2014-01-24 22:16 - 00003551 _____ C:\Users\Genetic Styles\Desktop\RKreport[0]_S_01242014_231631.txt
2014-01-24 22:10 - 2014-01-08 20:41 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\Skype
2014-01-24 21:55 - 2014-01-24 21:55 - 00274214 _____ C:\Users\Genetic Styles\Desktop\FixDotNet20140125055556501.cab
2014-01-24 18:16 - 2014-01-08 20:38 - 00000000 ____D C:\Program Files (x86)\Origin
2014-01-23 23:43 - 2014-01-09 08:15 - 00001080 _____ C:\Windows\System32\settingsbkup.sfm
2014-01-23 23:43 - 2014-01-09 08:15 - 00001080 _____ C:\Windows\System32\settings.sfm
2014-01-23 23:27 - 2014-01-08 22:59 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\vlc
2014-01-23 21:35 - 2014-01-08 20:39 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\uTorrent
2014-01-22 23:09 - 2014-01-22 23:09 - 594265273 _____ C:\Windows\MEMORY.DMP
2014-01-22 23:09 - 2014-01-22 23:09 - 00293624 _____ C:\Windows\Minidump\012314-6474-01.dmp
2014-01-22 23:09 - 2014-01-22 23:09 - 00000000 ____D C:\Windows\Minidump
2014-01-22 22:52 - 2014-01-22 22:52 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\TheBannerSaga
2014-01-21 21:56 - 2014-01-21 21:56 - 00017627 _____ C:\Windows\DirectX.log
2014-01-21 21:56 - 2014-01-09 00:10 - 00000000 ____D C:\Users\Genetic Styles\Documents\my games
2014-01-21 21:49 - 2014-01-21 21:49 - 00003234 _____ C:\Windows\System32\Tasks\{239F0040-74C9-40C6-9FA9-7F68C388042C}
2014-01-20 23:56 - 2014-01-14 21:27 - 00000083 _____ C:\Windows\System32\rwniy.uhy
2014-01-17 16:27 - 2014-01-08 21:07 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\Ventrilo
2014-01-16 21:48 - 2014-01-16 21:38 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\DAEMON Tools Lite
2014-01-16 21:48 - 2014-01-16 21:38 - 00000000 ____D C:\ProgramData\DAEMON Tools Lite
2014-01-16 21:44 - 2014-01-16 15:42 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\Notepad++
2014-01-16 21:39 - 2014-01-16 21:39 - 02721168 _____ (Microsoft Corporation) C:\Users\Genetic Styles\Downloads\Windows7-USB-DVD-tool.exe
2014-01-16 21:38 - 2014-01-16 21:38 - 00283064 _____ (Disc Soft Ltd) C:\Windows\System32\Drivers\dtsoftbus01.sys
2014-01-16 21:38 - 2014-01-16 21:38 - 00001954 _____ C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
2014-01-16 21:38 - 2014-01-16 21:38 - 00000000 ____D C:\Program Files (x86)\DAEMON Tools Lite
2014-01-16 21:26 - 2014-01-16 21:26 - 00313016 _____ C:\Users\Genetic Styles\Downloads\Windows 8.1 AIO 20in1 x64 en-US Pre-Activated DaRT 8.1 Dec2013.torrent
2014-01-16 21:24 - 2014-01-16 21:24 - 00000000 ____H C:\Windows\System32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2014-01-16 21:24 - 2014-01-16 21:24 - 00000000 _____ C:\Windows\setuperr.log
2014-01-16 21:20 - 2014-01-16 21:19 - 00084694 _____ C:\Users\Genetic Styles\Documents\cc_20140116_221934.reg
2014-01-16 21:19 - 2014-01-16 21:19 - 00183296 _____ C:\Users\Genetic Styles\Documents\cc_20140116_221916.reg
2014-01-16 21:18 - 2014-01-16 21:18 - 00002790 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-01-16 21:18 - 2014-01-16 21:18 - 00000822 _____ C:\Users\Public\Desktop\CCleaner.lnk
2014-01-16 21:18 - 2014-01-16 21:18 - 00000000 ____D C:\Program Files\CCleaner
2014-01-16 21:18 - 2014-01-08 20:45 - 00000000 ____D C:\Windows\Panther
2014-01-16 21:16 - 2014-01-16 21:16 - 04645232 _____ (Piriform Ltd) C:\Users\Genetic Styles\Downloads\ccsetup409.exe
2014-01-16 16:56 - 2014-01-16 16:54 - 00000000 ____D C:\Windows\erdnt
2014-01-16 16:54 - 2014-01-14 23:03 - 00000000 ____D C:\TDSSKiller_Quarantine
2014-01-16 16:41 - 2014-01-08 21:54 - 00000000 ____D C:\Program Files\FolderSize
2014-01-16 16:00 - 2014-01-16 15:59 - 05167985 ____R (Swearware) C:\Users\Genetic Styles\Downloads\ComboFix.exe
2014-01-16 15:55 - 2014-01-16 15:55 - 00003245 _____ C:\Users\Genetic Styles\Desktop\Sophos Virus Removal Tool.lnk
2014-01-16 15:55 - 2014-01-16 15:55 - 00000000 ____D C:\ProgramData\Sophos
2014-01-16 15:55 - 2014-01-16 15:55 - 00000000 ____D C:\Program Files (x86)\Sophos
2014-01-16 15:55 - 2014-01-16 15:54 - 82720736 _____ (Sophos Limited) C:\Users\Genetic Styles\Downloads\Sophos Virus Removal Tool (1).exe
2014-01-16 15:51 - 2014-01-16 15:51 - 00379904 _____ C:\Users\Genetic Styles\Downloads\yk84jy9z.exe
2014-01-16 15:51 - 2014-01-16 15:51 - 00000000 ____D C:\Windows\pss
2014-01-16 15:49 - 2014-01-16 15:49 - 00379904 _____ C:\Users\Genetic Styles\Downloads\4e90j9ui.exe
2014-01-16 15:44 - 2014-01-16 15:44 - 00003154 _____ C:\Windows\System32\Tasks\WinZipDriverUpdaterRunAtStartup
2014-01-16 15:44 - 2014-01-16 15:44 - 00003084 _____ C:\Windows\System32\Tasks\WinZipDriverUpdater_UPDATES
2014-01-16 15:44 - 2014-01-16 15:44 - 00001102 _____ C:\Users\Public\Desktop\WinZip Driver Updater.lnk
2014-01-16 15:44 - 2014-01-16 15:44 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\WinZip
2014-01-16 15:43 - 2014-01-16 15:43 - 00001312 _____ C:\Users\Public\Desktop\The Weather Channel App.lnk
2014-01-16 15:43 - 2014-01-16 15:43 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\The Weather Channel
2014-01-16 15:43 - 2014-01-16 15:43 - 00000000 ____D C:\Program Files (x86)\FileZilla FTP Client
2014-01-16 15:42 - 2014-01-16 15:42 - 50449456 _____ (Microsoft Corporation) C:\Users\Genetic Styles\Downloads\dotNetFx40_Full_x86_x64 (1).exe
2014-01-16 15:42 - 2014-01-16 15:42 - 00000000 ____D C:\Program Files (x86)\Notepad++
2014-01-16 15:39 - 2014-01-16 15:39 - 07598942 _____ C:\Users\Genetic Styles\Downloads\npp.6.5.3.Installer.exe
2014-01-16 11:32 - 2014-01-15 08:16 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\gtk-2.0
2014-01-16 09:42 - 2014-01-16 09:42 - 13079688 _____ (Microsoft Corporation) C:\Users\Genetic Styles\Downloads\Silverlight_x64.exe
2014-01-16 09:42 - 2014-01-16 09:42 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2014-01-16 09:42 - 2014-01-16 09:42 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2014-01-15 21:39 - 2014-01-15 21:39 - 00000218 _____ C:\Users\Genetic Styles\.recently-used.xbel
2014-01-15 21:39 - 2014-01-08 20:04 - 00000000 ____D C:\users\Genetic Styles
2014-01-15 21:24 - 2014-01-11 23:23 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\Warframe
2014-01-15 21:07 - 2014-01-15 16:44 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\NVIDIA
2014-01-15 20:11 - 2014-01-15 20:11 - 00093182 _____ C:\Users\Genetic Styles\Downloads\Chicago.PD.S01E02.720p.HDTV.X264-DIMENSION.torrent
2014-01-15 20:11 - 2014-01-15 20:11 - 00007285 _____ C:\Users\Genetic Styles\Downloads\Chicago.PD.S01E01.HDTV.XviD-AFG.torrent
2014-01-15 08:38 - 2014-01-08 20:27 - 00002183 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2014-01-15 08:16 - 2014-01-14 22:20 - 00000992 _____ C:\Users\Genetic Styles\Desktop\Core Temp.lnk
2014-01-14 22:59 - 2014-01-14 22:58 - 82537128 _____ (Sophos Limited) C:\Users\Genetic Styles\Downloads\Sophos Virus Removal Tool.exe
2014-01-14 22:57 - 2014-01-14 22:57 - 04121952 _____ (Kaspersky Lab ZAO) C:\Users\Genetic Styles\Downloads\tdsskiller.exe
2014-01-14 22:50 - 2014-01-14 22:50 - 00003226 _____ C:\Windows\System32\Tasks\{747A5E68-0761-4717-B631-11B0363DDEEC}
2014-01-14 22:49 - 2014-01-14 22:48 - 50449456 _____ (Microsoft Corporation) C:\Users\Genetic Styles\Downloads\dotNetFx40_Full_x86_x64.exe
2014-01-14 22:07 - 2014-01-14 22:07 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\NVIDIA
2014-01-14 22:07 - 2014-01-08 20:06 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2014-01-14 22:07 - 2014-01-08 20:06 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2014-01-14 22:07 - 2014-01-08 20:06 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2014-01-14 22:06 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\Help
2014-01-14 21:29 - 2014-01-14 21:29 - 00001113 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-01-14 21:29 - 2014-01-14 21:29 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\Malwarebytes
2014-01-14 21:29 - 2014-01-14 21:29 - 00000000 ____D C:\ProgramData\Malwarebytes
2014-01-14 21:29 - 2014-01-14 21:29 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-01-14 21:28 - 2014-01-14 21:28 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Genetic Styles\Downloads\mbam-setup-1.75.0.1300.exe
2014-01-14 21:27 - 2014-01-14 21:27 - 00000064 _____ C:\Windows\System32\ulyex.iwk
2014-01-14 21:27 - 2014-01-14 21:27 - 00000000 _____ C:\Windows\System32\ngjcdq.lun
2014-01-14 21:11 - 2014-01-14 21:11 - 00219314 ____S C:\Windows\System32\jmftvf.vqi
2014-01-14 19:45 - 2014-01-11 14:13 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\Mumble
2014-01-12 16:02 - 2014-01-12 16:02 - 00000036 _____ C:\Users\Genetic Styles\Desktop\netflix.txt
2014-01-12 13:29 - 2014-01-12 13:20 - 00000202 _____ C:\Users\Genetic Styles\Desktop\Strike Vector.url
2014-01-12 00:06 - 2014-01-12 00:06 - 00000202 _____ C:\Users\Genetic Styles\Desktop\Insurgency.url
2014-01-11 23:24 - 2014-01-11 23:24 - 00000202 _____ C:\Users\Genetic Styles\Desktop\Warframe.url
2014-01-11 17:26 - 2014-01-11 17:26 - 32229024 _____ (Riot Games) C:\Users\Genetic Styles\Downloads\LeagueofLegends_NA_Installer_05_07_13.exe
2014-01-11 14:13 - 2014-01-11 14:13 - 00002379 _____ C:\Users\Genetic Styles\Documents\MumbleAutomaticCertificateBackup.p12
2014-01-11 12:39 - 2014-01-11 12:39 - 00062144 _____ C:\Users\Genetic Styles\Downloads\scenesw_r22.zip
2014-01-11 12:22 - 2014-01-11 12:22 - 00000939 _____ C:\Users\Genetic Styles\Desktop\Open Broadcaster Software.lnk
2014-01-11 12:22 - 2014-01-11 12:22 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\OBS
2014-01-11 12:22 - 2014-01-11 12:22 - 00000000 ____D C:\Program Files\OBS
2014-01-11 12:22 - 2014-01-11 12:22 - 00000000 ____D C:\Program Files (x86)\OBS
2014-01-09 23:17 - 2014-01-09 23:17 - 00000000 ____H C:\Windows\System32\Drivers\Msft_Kernel_xusb21_01009.Wdf
2014-01-09 22:55 - 2014-01-09 22:55 - 07878008 _____ (Microsoft Corporation) C:\Users\Genetic Styles\Downloads\Xbox360_64Eng (1).exe
2014-01-09 22:48 - 2014-01-09 22:48 - 00000000 ____D C:\Program Files\Microsoft Xbox 360 Accessories
2014-01-09 22:48 - 2014-01-09 22:47 - 07878008 _____ (Microsoft Corporation) C:\Users\Genetic Styles\Downloads\Xbox360_64Eng.exe
2014-01-09 22:45 - 2014-01-09 22:45 - 00000000 ____D C:\Users\Genetic Styles\Documents\MGR
2014-01-09 21:25 - 2014-01-09 21:25 - 00001070 _____ C:\Users\Public\Desktop\VLC media player.lnk
2014-01-09 20:15 - 2014-01-09 20:15 - 00000202 _____ C:\Users\Genetic Styles\Desktop\METAL GEAR RISING REVENGEANCE.url
2014-01-09 16:57 - 2014-01-09 16:56 - 07660927 _____ C:\Users\Genetic Styles\Downloads\OBS_0_592b_Installer.exe
2014-01-09 04:22 - 2014-01-09 04:22 - 00281872 _____ C:\Windows\SysWOW64\PnkBstrB.exe
2014-01-09 04:22 - 2014-01-09 04:22 - 00281872 _____ C:\Windows\SysWOW64\PnkBstrB.ex0
2014-01-09 04:22 - 2014-01-09 04:22 - 00076888 _____ C:\Windows\SysWOW64\PnkBstrA.exe
2014-01-09 04:22 - 2014-01-09 04:22 - 00000697 _____ C:\Users\Public\Desktop\Battlefield 4.lnk
2014-01-09 04:22 - 2014-01-09 04:22 - 00000681 _____ C:\Users\Public\Desktop\Battlefield 4(64 bit).lnk
2014-01-09 04:22 - 2014-01-09 04:22 - 00000000 ____D C:\ProgramData\Package Cache
2014-01-09 04:22 - 2014-01-09 04:22 - 00000000 ____D C:\Program Files (x86)\Battlelog Web Plugins
2014-01-08 22:54 - 2014-01-08 22:53 - 01768954 _____ C:\Users\Genetic Styles\Downloads\training_aim_csgo_2.rar
2014-01-08 22:23 - 2014-01-08 22:23 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\Macromedia
2014-01-08 22:23 - 2014-01-08 22:23 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\LolClient
2014-01-08 22:23 - 2014-01-08 22:23 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\Adobe
2014-01-08 22:14 - 2014-01-08 20:39 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\Origin
2014-01-08 22:00 - 2014-01-08 22:00 - 00000472 _____ C:\Users\Genetic Styles\Desktop\Desktop.lnk
2014-01-08 21:57 - 2014-01-08 21:57 - 00000000 ____D C:\Program Files (x86)\RocketDock
2014-01-08 21:57 - 2014-01-08 21:57 - 00000000 ____D C:\Program Files (x86)\Mumble
2014-01-08 21:57 - 2014-01-08 21:57 - 00000000 ____D C:\Program Files (x86)\MPC-HC
2014-01-08 21:54 - 2014-01-08 21:54 - 00294912 _____ C:\Users\Genetic Styles\Downloads\FolderSize-2.6-x64.msi
2014-01-08 21:54 - 2014-01-08 21:49 - 15657984 _____ C:\Users\Genetic Styles\Downloads\mumble-1.2.4.msi
2014-01-08 21:53 - 2014-01-08 21:50 - 10273496 _____ (MPC-HC Team ) C:\Users\Genetic Styles\Downloads\MPC-HC.1.7.1.x86.exe
2014-01-08 21:52 - 2014-01-08 21:50 - 06463660 _____ (Punk Software ) C:\Users\Genetic Styles\Downloads\RocketDock-v1.3.5.exe
2014-01-08 21:40 - 2014-01-08 21:40 - 00000000 ____D C:\Program Files (x86)\Pidgin
2014-01-08 21:38 - 2014-01-08 20:11 - 00000000 ____D C:\Program Files (x86)\Realtek
2014-01-08 21:38 - 2014-01-08 20:09 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2014-01-08 21:36 - 2014-01-08 21:36 - 00155528 _____ (Nicomsoft Ltd.) C:\Windows\System32\DDCHELPER.dll
2014-01-08 21:36 - 2014-01-08 21:36 - 00020832 _____ (Nicomsoft Ltd.) C:\Windows\System32\Drivers\ddcdrv.sys
2014-01-08 21:36 - 2014-01-08 21:36 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\WinRAR
2014-01-08 21:16 - 2014-01-08 21:16 - 00040960 _____ (Benq Corporation) C:\Users\Genetic Styles\Downloads\auto.exe
2014-01-08 21:16 - 2014-01-08 21:14 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\Adobe
2014-01-08 21:15 - 2014-01-08 21:15 - 01977432 _____ C:\Users\Genetic Styles\Downloads\winrar-x64-501.exe
2014-01-08 21:15 - 2014-01-08 21:15 - 00000000 ____D C:\ProgramData\Adobe
2014-01-08 21:15 - 2014-01-08 21:15 - 00000000 ____D C:\Program Files\WinRAR
2014-01-08 21:15 - 2014-01-08 21:15 - 00000000 ____D C:\Program Files (x86)\Adobe
2014-01-08 21:04 - 2014-01-08 21:04 - 00000262 _____ C:\Windows\{EEB3F6BB-318D-4CE5-989F-8191FCBFB578}_WiseFW.ini
2014-01-08 21:04 - 2014-01-08 21:04 - 00000000 ____D C:\Program Files\Ventrilo
2014-01-08 21:04 - 2014-01-08 20:16 - 00000000 ____D C:\ProgramData\Creative
2014-01-08 21:03 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\rescache
2014-01-08 20:49 - 2009-07-13 20:45 - 00274320 _____ C:\Windows\System32\FNTCACHE.DAT
2014-01-08 20:48 - 2014-01-08 20:48 - 00000000 ____D C:\Program Files (x86)\Combined Community Codec Pack
2014-01-08 20:47 - 2014-01-08 20:47 - 10207456 _____ (CCCP Project ) C:\Users\Genetic Styles\Downloads\Combined-Community-Codec-Pack-2013-11-27.exe
2014-01-08 20:47 - 2014-01-08 20:47 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\Realtime Soft
2014-01-08 20:47 - 2014-01-08 20:47 - 00000000 ____D C:\ProgramData\Realtime Soft
2014-01-08 20:47 - 2014-01-08 20:47 - 00000000 ____D C:\Program Files\UltraMon
2014-01-08 20:47 - 2014-01-08 20:47 - 00000000 ____D C:\Program Files (x86)\DAMN NFO Viewer
2014-01-08 20:47 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\System32\sysprep
2014-01-08 20:46 - 2014-01-08 20:46 - 00269312 _____ (DAMN) C:\Users\Genetic Styles\Downloads\DAMN_NFO_Viewer_v2-10-0032-RC3.exe
2014-01-08 20:46 - 2009-07-13 23:46 - 00000000 ____D C:\Windows\CSC
2014-01-08 20:45 - 2009-07-13 21:38 - 00025600 ___SH C:\Windows\System32\config\BCD-Template.LOG
2014-01-08 20:45 - 2009-07-13 21:32 - 00028672 _____ C:\Windows\System32\config\BCD-Template
2014-01-08 20:41 - 2014-01-08 20:41 - 00000000 ___RD C:\Program Files (x86)\Skype
2014-01-08 20:41 - 2014-01-08 20:41 - 00000000 ____D C:\ProgramData\Skype
2014-01-08 20:41 - 2014-01-08 20:39 - 00000000 ____D C:\ProgramData\Origin
2014-01-08 20:40 - 2014-01-08 20:40 - 00000000 ____D C:\Program Files (x86)\Origin Games
2014-01-08 20:40 - 2014-01-08 20:39 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\Origin
2014-01-08 20:39 - 2014-01-08 20:39 - 01340496 _____ (BitTorrent Inc.) C:\Users\Genetic Styles\Downloads\utorrent.exe
2014-01-08 20:39 - 2014-01-08 20:39 - 00000000 ____D C:\ProgramData\Electronic Arts
2014-01-08 20:39 - 2009-07-13 19:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
2014-01-08 20:38 - 2014-01-08 20:37 - 16952720 _____ (Electronic Arts, Inc.) C:\Users\Genetic Styles\Downloads\OriginThinSetup.exe
2014-01-08 20:36 - 2014-01-08 20:36 - 01133552 _____ C:\Users\Genetic Styles\Downloads\SteamSetup.exe
2014-01-08 20:36 - 2014-01-08 20:36 - 00000000 ____D C:\Program Files (x86)\VideoLAN
2014-01-08 20:34 - 2014-01-08 20:34 - 00001908 _____ C:\Windows\diagwrn.xml
2014-01-08 20:34 - 2014-01-08 20:34 - 00001908 _____ C:\Windows\diagerr.xml
2014-01-08 20:32 - 2014-01-08 20:27 - 00003910 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-01-08 20:32 - 2014-01-08 20:27 - 00003658 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-01-08 20:30 - 2014-01-08 20:30 - 22943014 _____ C:\Users\Genetic Styles\Downloads\vlc-2.0.6-win32.exe
2014-01-08 20:30 - 2014-01-08 20:30 - 09470216 _____ C:\Users\Genetic Styles\Downloads\pidgin-2.10.7.exe
2014-01-08 20:30 - 2014-01-08 20:30 - 04135696 _____ C:\Users\Genetic Styles\Downloads\ventrilo-3.0.8-Windows-x64.exe
2014-01-08 20:30 - 2014-01-08 20:30 - 01551008 _____ (Skype Technologies S.A.) C:\Users\Genetic Styles\Downloads\SkypeSetup.exe
2014-01-08 20:30 - 2014-01-08 20:30 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\SteelSeries
2014-01-08 20:30 - 2014-01-08 20:30 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\SteelSeries_ApS
2014-01-08 20:29 - 2014-01-08 20:29 - 00000000 ____D C:\ProgramData\SteelSeries
2014-01-08 20:28 - 2014-01-08 20:28 - 00000000 ____D C:\Program Files\SteelSeries
2014-01-08 20:27 - 2014-01-08 20:27 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\Google
2014-01-08 20:27 - 2014-01-08 20:27 - 00000000 ____D C:\Program Files (x86)\Google
2014-01-08 20:27 - 2014-01-08 20:26 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\Deployment
2014-01-08 20:26 - 2014-01-08 20:26 - 00057560 _____ C:\Users\Genetic Styles\AppData\Local\GDIPFONTCACHEV1.DAT
2014-01-08 20:26 - 2014-01-08 20:26 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\Apps\2.0
2014-01-08 20:25 - 2014-01-08 20:07 - 00045437 _____ C:\Windows\Ascd_tmp.ini
2014-01-08 20:19 - 2014-01-08 20:09 - 00000000 ____D C:\Windows\System32\Tasks\ASUS
2014-01-08 20:18 - 2014-01-08 20:18 - 00000000 ____D C:\ProgramData\InstallShield
2014-01-08 20:18 - 2014-01-08 20:09 - 00000000 ____D C:\Program Files (x86)\Intel
2014-01-08 20:16 - 2014-01-08 20:16 - 00466520 _____ (Creative Labs) C:\Windows\System32\wrap_oal.dll
2014-01-08 20:16 - 2014-01-08 20:16 - 00445016 _____ (Creative Labs) C:\Windows\SysWOW64\wrap_oal.dll
2014-01-08 20:16 - 2014-01-08 20:16 - 00123480 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\System32\OpenAL32.dll
2014-01-08 20:16 - 2014-01-08 20:16 - 00109144 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\SysWOW64\OpenAL32.dll
2014-01-08 20:16 - 2014-01-08 20:16 - 00000159 ___RH C:\Windows\ctfile.rfc
2014-01-08 20:16 - 2014-01-08 20:16 - 00000000 ___HD C:\Program Files (x86)\Creative Installation Information
2014-01-08 20:16 - 2014-01-08 20:16 - 00000000 ____D C:\Windows\SysWOW64\Data
2014-01-08 20:16 - 2014-01-08 20:16 - 00000000 ____D C:\Windows\System32\Data
2014-01-08 20:16 - 2014-01-08 20:16 - 00000000 ____D C:\Windows\AsDmiHtm
2014-01-08 20:16 - 2014-01-08 20:16 - 00000000 ____D C:\Program Files\Creative
2014-01-08 20:16 - 2014-01-08 20:16 - 00000000 ____D C:\Program Files (x86)\OpenAL
2014-01-08 20:16 - 2014-01-08 20:16 - 00000000 ____D C:\Program Files (x86)\Creative
2014-01-08 20:15 - 2014-01-08 20:15 - 00001060 _____ C:\users\Genetic
2014-01-08 20:15 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\System32\NDF
2014-01-08 20:13 - 2014-01-08 20:13 - 00000000 ____H C:\Windows\System32\Drivers\Msft_Kernel_iusb3hcs_01009.Wdf
2014-01-08 20:13 - 2014-01-08 20:13 - 00000000 ____D C:\Program Files (x86)\Marvell
2014-01-08 20:13 - 2014-01-08 20:13 - 00000000 ____D C:\Program Files (x86)\ASM104xUSB3
2014-01-08 20:09 - 2014-01-08 20:09 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\InstallShield
2014-01-08 20:09 - 2014-01-08 20:09 - 00000000 ____D C:\Intel
2014-01-08 20:08 - 2014-01-08 20:08 - 00016896 _____ (ASUS) C:\Windows\AsTaskSched.dll
2014-01-08 20:08 - 2009-07-13 21:32 - 00000000 ____D C:\Windows\System32\restore
2014-01-08 20:07 - 2014-01-08 20:07 - 00001769 _____ C:\Windows\Language_trs.ini
2014-01-08 20:07 - 2014-01-08 20:07 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies
2014-01-08 20:05 - 2014-01-08 20:05 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\VirtualStore
2014-01-08 20:04 - 2014-01-08 20:04 - 00000020 ___SH C:\Users\Genetic Styles\ntuser.ini
2014-01-08 20:04 - 2009-07-13 20:45 - 00000000 ____D C:\Windows\Setup
2014-01-08 20:03 - 2014-01-08 20:03 - 00000000 ____D C:\Recovery

==================== Known DLLs (Whitelisted) ================


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll
[2009-07-13 16:00] - [2009-07-13 17:41] - 0510464 ____A (Microsoft Corporation) 5A9C3B143F84110C94733A5EB55E05BE

ATTENTION ======> If the system is having audio adware rpcss.dll is patched. Google the MD5, if the MD5 is unique the file is infected.
C:\Windows\System32\Drivers\volsnap.sys
[2014-01-08 20:08] - [2011-02-24 22:36] - 0295296 ____A (Microsoft Corporation) C9D0EAF58D6BA71E128E715EA43AD87D


==================== EXE ASSOCIATION =====================

HKLM\...\.exe: exefile => OK
HKLM\...\exefile\DefaultIcon: %1 => OK
HKLM\...\exefile\open\command: "%1" %* => OK

==================== Restore Points =========================

Restore point made on: 2014-01-24 21:53:29
Restore point made on: 2014-01-24 21:55:46
Restore point made on: 2014-01-24 21:58:59
Restore point made on: 2014-01-24 21:59:23
Restore point made on: 2014-01-24 22:00:56
Restore point made on: 2014-01-24 22:08:51
Restore point made on: 2014-01-24 22:13:36
Restore point made on: 2014-01-24 22:23:43
Restore point made on: 2014-01-24 22:32:05
Restore point made on: 2014-01-24 22:40:58
Restore point made on: 2014-01-24 22:51:26

==================== Memory info ===========================

Percentage of memory in use: 9%
Total physical RAM: 8143.71 MB
Available physical RAM: 7374.18 MB
Total Pagefile: 8141.86 MB
Available Pagefile: 7371.81 MB
Total Virtual: 8192 MB
Available Virtual: 8191.88 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:55.89 GB) (Free:26.71 GB) NTFS
Drive d: () (Fixed) (Total:232.88 GB) (Free:135.41 GB) NTFS
Drive e: (SSD Secondary) (Fixed) (Total:55.9 GB) (Free:34.73 GB) NTFS
Drive f: (Black Century) (Fixed) (Total:232.88 GB) (Free:175.06 GB) NTFS
Drive g: (System Reserved) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive h: (SSD Main Part 2) (Fixed) (Total:55.89 GB) (Free:36.82 GB) NTFS
Drive I: (Sauce Boss) (Fixed) (Total:127.89 GB) (Free:27.36 GB) NTFS
Drive j: (Gay Bacon Strips) (Fixed) (Total:61.93 GB) (Free:20.88 GB) NTFS
Drive l: (STYLES MK2) (Fixed) (Total:465.65 GB) (Free:423.47 GB) FAT32
Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 112 GB) (Disk ID: A4743AC5)
Partition 1: (Not Active) - (Size=56 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=56 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 233 GB) (Disk ID: 3217EDB5)
Partition 1: (Not Active) - (Size=233 GB) - (Type=07 NTFS)

========================================================
Disk: 2 (MBR Code: Windows 7 or 8) (Size: 56 GB) (Disk ID: 97BBA4FB)
Partition 1: (Active) - (Size=56 GB) - (Type=07 NTFS)

========================================================
Disk: 3 (MBR Code: Windows 7 or Vista) (Size: 233 GB) (Disk ID: 5DDE4087)
Partition 1: (Not Active) - (Size=233 GB) - (Type=07 NTFS)

========================================================
Disk: 4 (MBR Code: Windows 7 or 8) (Size: 190 GB) (Disk ID: B7CEB7CE)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=128 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=62 GB) - (Type=07 NTFS)

========================================================
Disk: 5 (Size: 466 GB) (Disk ID: 44FDFE06)
Partition 1: (Not Active) - (Size=466 GB) - (Type=0C)


LastRegBack: 2014-01-19 20:54

==================== End Of Log ============================
 
We have one system file patched by the infection...
We need to find healthy replacement.

Re-run FRST again.
Type the following in the edit box after "Search:".

rpcss.dll

Click Search button and post the log (Search.txt) it makes in your reply.
 
Okay, this is what it gave me:

Farbar Recovery Scan Tool (x64) Version: 25-01-2014 01
Ran by SYSTEM at 2014-01-25 10:50:53
Running from L:\
Boot Mode: Recovery

================== Search: "rpcss.dll" ===================

C:\Windows\winsxs\amd64_microsoft-windows-com-base-qfe-rpcss_31bf3856ad364e35_6.1.7600.16385_none_c5bfcda3579104e3\rpcss.dll
[2009-07-13 16:00] - [2009-07-13 17:41] - 0509440 ____A (Microsoft Corporation) 7266972E86890E2B30C0C322E906B027

C:\Windows\System32\rpcss.dll
[2009-07-13 16:00] - [2009-07-13 17:41] - 0510464 ____A (Microsoft Corporation) 5A9C3B143F84110C94733A5EB55E05BE

X:\Windows\winsxs\amd64_microsoft-windows-com-base-qfe-rpcss_31bf3856ad364e35_6.1.7600.16385_none_c5bfcda3579104e3\rpcss.dll
[2009-07-13 16:00] - [2009-07-13 17:41] - 0509440 ____A (Microsoft Corporation) 7266972E86890E2B30C0C322E906B027

X:\Windows\System32\rpcss.dll
[2009-07-13 16:00] - [2009-07-13 17:41] - 0509440 ____A (Microsoft Corporation) 7266972E86890E2B30C0C322E906B027

====== End Of Search ======

I am also available via skype if you would rather use that to handle this at a faster pace.
 
Good :)

Download attached fixlist.txt file and save it to the very same USB flash drive you've been using. Plug the drive back in.

NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system

On Vista or Windows 7/8: Now please enter System Recovery Options.
On Windows XP: Now please boot into the OTLPE CD.
Run FRST/FRST64 and press the Fix button just once and wait.
The tool will make a log on the flashdrive (Fixlog.txt) please post it to your reply.

See if you can start normally.
 

Attachments

  • fixlist.txt
    501 bytes · Views: 2
Ran the fix, here is the log:

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 25-01-2014 01
Ran by SYSTEM at 2014-01-25 11:07:17 Run:1
Running from L:\
Boot Mode: Recovery
==============================================

Content of fixlist:
*****************
2014-01-14 21:27 - 2014-01-20 23:56 - 00000083 _____ C:\Windows\System32\rwniy.uhy
2014-01-14 21:27 - 2014-01-14 21:27 - 00000064 _____ C:\Windows\System32\ulyex.iwk
2014-01-14 21:27 - 2014-01-14 21:27 - 00000000 _____ C:\Windows\System32\ngjcdq.lun
2014-01-14 21:11 - 2014-01-14 21:11 - 00219314 ____S C:\Windows\System32\jmftvf.vqi
Replace: C:\Windows\winsxs\amd64_microsoft-windows-com-base-qfe-rpcss_31bf3856ad364e35_6.1.7600.16385_none_c5bfcda3579104e3\rpcss.dll C:\Windows\System32\rpcss.dll
*****************

C:\Windows\System32\rwniy.uhy => Moved successfully.
C:\Windows\System32\ulyex.iwk => Moved successfully.
C:\Windows\System32\ngjcdq.lun => Moved successfully.
C:\Windows\System32\jmftvf.vqi => Moved successfully.
C:\Windows\System32\rpcss.dll => Moved successfully.
C:\Windows\winsxs\amd64_microsoft-windows-com-base-qfe-rpcss_31bf3856ad364e35_6.1.7600.16385_none_c5bfcda3579104e3\rpcss.dll copied successfully to C:\Windows\System32\rpcss.dll

==== End of Fixlog ====
 
LOG PART 1:

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 25-01-2014 01
Ran by SYSTEM on MININT-LAS2BBN on 25-01-2014 11:20:10
Running from L:\
Windows 7 Ultimate (X64) OS Language: English(US)
Internet Explorer Version 8
Boot Mode: Recovery

The current controlset is ControlSet001
ATTENTION!:=====> If the system is bootable FRST could be run from normal or Safe mode to create a complete log.


The only official download link for FRST:
Download link for 32-Bit version: https://www.techspot.com/downloads/6731-farbar-recovery-scan-tool.html
Download link for 64-Bit Version: https://www.techspot.com/downloads/6731-farbar-recovery-scan-tool.html
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST:

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [XboxStat] - C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [825184 2009-09-30] (Microsoft Corporation)
HKLM\...\Run: [NvBackend] - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2279712 2013-12-09] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\nvspcap64.dll [1100248 2013-12-09] (NVIDIA Corporation)
HKLM-x32\...\Run: [USB3MON] - C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291648 2012-05-20] (Intel Corporation)
HKLM-x32\...\Run: [CTxfiHlp] - CTXFIHLP.EXE
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-09-05] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [3767096 2014-01-24] (AVAST Software)
HKU\Genetic Styles\...\Run: [SteelSeries Engine] - C:\Program Files\SteelSeries\SteelSeries Engine\SteelSeriesEngine.exe [242688 2013-11-05] (SteelSeries ApS)
HKU\Genetic Styles\...\Run: [RocketDock] - C:\Program Files (x86)\RocketDock\RocketDock.exe [495616 2007-09-02] ()
HKU\Genetic Styles\...\Run: [DAEMON Tools Lite] - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd)

==================== Services (Whitelisted) =================

S2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-01-24] (AVAST Software)
S2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1494304 2013-12-09] (NVIDIA Corporation)
S2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15129376 2013-12-09] (NVIDIA Corporation)
S2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2014-01-09] ()

==================== Drivers (Whitelisted) ====================

S2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [78648 2014-01-24] (AVAST Software)
S1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [92544 2014-01-24] (AVAST Software)
S0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-01-24] ()
S1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1038072 2014-01-24] (AVAST Software)
S1 aswSP; C:\Windows\system32\drivers\aswSP.sys [421704 2014-01-24] (AVAST Software)
S3 aswStm; C:\Windows\system32\drivers\aswStm.sys [80184 2014-01-24] (AVAST Software)
S0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [207904 2014-01-24] ()
S1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-01-16] (Disc Soft Ltd)
S3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-12-05] (NVIDIA Corporation)
S3 SAlphamHid; C:\Windows\System32\DRIVERS\SAlpham64.sys [38016 2013-05-31] (SteelSeries Corporation)
S2 WinI2C-DDC; C:\Windows\system32\drivers\DDCDrv.sys [20832 2014-01-08] (Nicomsoft Ltd.)
S3 catchme; \??\C:\ComboFix\catchme.sys [x]
S3 IntcAzAudAddService; system32\drivers\RTKVHD64.sys [x]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-01-25 10:14 - 2014-01-25 10:15 - 00085715 _____ C:\Users\Genetic Styles\Downloads\FRST.txt
2014-01-25 10:14 - 2014-01-25 10:14 - 00000000 ____D C:\FRST
2014-01-25 00:12 - 2014-01-25 00:12 - 02077696 _____ (Farbar) C:\Users\Genetic Styles\Downloads\FRST64.exe
2014-01-24 22:51 - 2014-01-24 22:51 - 01038072 _____ (AVAST Software) C:\Windows\System32\Drivers\aswSnx.sys
2014-01-24 22:51 - 2014-01-24 22:51 - 00421704 _____ (AVAST Software) C:\Windows\System32\Drivers\aswSP.sys
2014-01-24 22:51 - 2014-01-24 22:51 - 00334136 _____ (AVAST Software) C:\Windows\System32\aswBoot.exe
2014-01-24 22:51 - 2014-01-24 22:51 - 00207904 _____ C:\Windows\System32\Drivers\aswVmm.sys
2014-01-24 22:51 - 2014-01-24 22:51 - 00092544 _____ (AVAST Software) C:\Windows\System32\Drivers\aswRdr2.sys
2014-01-24 22:51 - 2014-01-24 22:51 - 00080184 _____ (AVAST Software) C:\Windows\System32\Drivers\aswStm.sys
2014-01-24 22:51 - 2014-01-24 22:51 - 00078648 _____ (AVAST Software) C:\Windows\System32\Drivers\aswMonFlt.sys
2014-01-24 22:51 - 2014-01-24 22:51 - 00065776 _____ C:\Windows\System32\Drivers\aswRvrt.sys
2014-01-24 22:51 - 2014-01-24 22:51 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-01-24 22:51 - 2014-01-24 22:51 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2014-01-24 22:51 - 2014-01-24 22:51 - 00001966 _____ C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-01-24 22:51 - 2014-01-24 22:51 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\AVAST Software
2014-01-24 22:51 - 2014-01-24 22:51 - 00000000 ____D C:\ProgramData\AVAST Software
2014-01-24 22:51 - 2014-01-24 22:51 - 00000000 ____D C:\Program Files\AVAST Software
2014-01-24 22:28 - 2014-01-24 22:28 - 00014520 _____ C:\ComboFix.txt
2014-01-24 22:24 - 2014-01-24 22:24 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\Realtime Soft
2014-01-24 22:23 - 2014-01-24 22:23 - 00001136 _____ C:\Users\Genetic Styles\Desktop\JRT.txt
2014-01-24 22:21 - 2014-01-24 22:21 - 00000000 ____D C:\Windows\ERUNT
2014-01-24 22:17 - 2014-01-24 22:19 - 00000000 ____D C:\AdwCleaner
2014-01-24 22:17 - 2014-01-24 22:17 - 00002970 _____ C:\Users\Genetic Styles\Desktop\RKreport[0]_S_01242014_231731.txt
2014-01-24 22:16 - 2014-01-24 22:16 - 00003674 _____ C:\Users\Genetic Styles\Desktop\RKreport[0]_D_01242014_231641.txt
2014-01-24 22:16 - 2014-01-24 22:16 - 00003551 _____ C:\Users\Genetic Styles\Desktop\RKreport[0]_S_01242014_231631.txt
2014-01-24 22:15 - 2014-01-24 22:17 - 00000000 ____D C:\Users\Genetic Styles\Desktop\RK_Quarantine
2014-01-24 22:12 - 2014-01-25 00:02 - 00001366 _____ C:\Windows\PFRO.log
2014-01-24 21:55 - 2014-01-24 21:55 - 00274214 _____ C:\Users\Genetic Styles\Desktop\FixDotNet20140125055556501.cab
2014-01-22 23:09 - 2014-01-22 23:09 - 594265273 _____ C:\Windows\MEMORY.DMP
2014-01-22 23:09 - 2014-01-22 23:09 - 00293624 _____ C:\Windows\Minidump\012314-6474-01.dmp
2014-01-22 23:09 - 2014-01-22 23:09 - 00000000 ____D C:\Windows\Minidump
2014-01-22 22:52 - 2014-01-22 22:52 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\TheBannerSaga
2014-01-21 21:56 - 2014-01-21 21:56 - 00017627 _____ C:\Windows\DirectX.log
2014-01-21 21:49 - 2014-01-21 21:49 - 00003234 _____ C:\Windows\System32\Tasks\{239F0040-74C9-40C6-9FA9-7F68C388042C}
2014-01-16 21:39 - 2014-01-16 21:39 - 02721168 _____ (Microsoft Corporation) C:\Users\Genetic Styles\Downloads\Windows7-USB-DVD-tool.exe
2014-01-16 21:38 - 2014-01-16 21:48 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\DAEMON Tools Lite
2014-01-16 21:38 - 2014-01-16 21:48 - 00000000 ____D C:\ProgramData\DAEMON Tools Lite
2014-01-16 21:38 - 2014-01-16 21:38 - 00283064 _____ (Disc Soft Ltd) C:\Windows\System32\Drivers\dtsoftbus01.sys
2014-01-16 21:38 - 2014-01-16 21:38 - 00001954 _____ C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
2014-01-16 21:38 - 2014-01-16 21:38 - 00000000 ____D C:\Program Files (x86)\DAEMON Tools Lite
2014-01-16 21:26 - 2014-01-16 21:26 - 00313016 _____ C:\Users\Genetic Styles\Downloads\Windows 8.1 AIO 20in1 x64 en-US Pre-Activated DaRT 8.1 Dec2013.torrent
2014-01-16 21:24 - 2014-01-25 00:20 - 00004239 _____ C:\Windows\setupact.log
2014-01-16 21:24 - 2014-01-16 21:24 - 00000000 ____H C:\Windows\System32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2014-01-16 21:24 - 2014-01-16 21:24 - 00000000 _____ C:\Windows\setuperr.log
2014-01-16 21:19 - 2014-01-16 21:20 - 00084694 _____ C:\Users\Genetic Styles\Documents\cc_20140116_221934.reg
2014-01-16 21:19 - 2014-01-16 21:19 - 00183296 _____ C:\Users\Genetic Styles\Documents\cc_20140116_221916.reg
2014-01-16 21:18 - 2014-01-16 21:18 - 00002790 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-01-16 21:18 - 2014-01-16 21:18 - 00000822 _____ C:\Users\Public\Desktop\CCleaner.lnk
2014-01-16 21:18 - 2014-01-16 21:18 - 00000000 ____D C:\Program Files\CCleaner
2014-01-16 21:16 - 2014-01-16 21:16 - 04645232 _____ (Piriform Ltd) C:\Users\Genetic Styles\Downloads\ccsetup409.exe
2014-01-16 16:54 - 2014-01-24 22:28 - 00000000 ____D C:\Qoobox
2014-01-16 16:54 - 2014-01-16 16:56 - 00000000 ____D C:\Windows\erdnt
2014-01-16 16:54 - 2011-06-25 22:45 - 00256000 _____ C:\Windows\PEV.exe
2014-01-16 16:54 - 2010-11-07 09:20 - 00208896 _____ C:\Windows\MBR.exe
2014-01-16 16:54 - 2009-04-19 20:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2014-01-16 16:54 - 2000-08-30 16:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2014-01-16 16:54 - 2000-08-30 16:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2014-01-16 16:54 - 2000-08-30 16:00 - 00098816 _____ C:\Windows\sed.exe
2014-01-16 16:54 - 2000-08-30 16:00 - 00080412 _____ C:\Windows\grep.exe
2014-01-16 16:54 - 2000-08-30 16:00 - 00068096 _____ C:\Windows\zip.exe
2014-01-16 15:59 - 2014-01-16 16:00 - 05167985 ____R (Swearware) C:\Users\Genetic Styles\Downloads\ComboFix.exe
2014-01-16 15:55 - 2014-01-16 15:55 - 00003245 _____ C:\Users\Genetic Styles\Desktop\Sophos Virus Removal Tool.lnk
2014-01-16 15:55 - 2014-01-16 15:55 - 00000000 ____D C:\ProgramData\Sophos
2014-01-16 15:55 - 2014-01-16 15:55 - 00000000 ____D C:\Program Files (x86)\Sophos
2014-01-16 15:54 - 2014-01-16 15:55 - 82720736 _____ (Sophos Limited) C:\Users\Genetic Styles\Downloads\Sophos Virus Removal Tool (1).exe
2014-01-16 15:51 - 2014-01-16 15:51 - 00379904 _____ C:\Users\Genetic Styles\Downloads\yk84jy9z.exe
2014-01-16 15:51 - 2014-01-16 15:51 - 00000000 ____D C:\Windows\pss
2014-01-16 15:49 - 2014-01-16 15:49 - 00379904 _____ C:\Users\Genetic Styles\Downloads\4e90j9ui.exe
2014-01-16 15:44 - 2014-01-16 15:44 - 00003154 _____ C:\Windows\System32\Tasks\WinZipDriverUpdaterRunAtStartup
2014-01-16 15:44 - 2014-01-16 15:44 - 00003084 _____ C:\Windows\System32\Tasks\WinZipDriverUpdater_UPDATES
2014-01-16 15:44 - 2014-01-16 15:44 - 00001102 _____ C:\Users\Public\Desktop\WinZip Driver Updater.lnk
2014-01-16 15:44 - 2014-01-16 15:44 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\WinZip
2014-01-16 15:43 - 2014-01-16 15:43 - 00001312 _____ C:\Users\Public\Desktop\The Weather Channel App.lnk
2014-01-16 15:43 - 2014-01-16 15:43 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\The Weather Channel
2014-01-16 15:43 - 2014-01-16 15:43 - 00000000 ____D C:\Program Files (x86)\FileZilla FTP Client
2014-01-16 15:43 - 2013-09-20 07:50 - 00499712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp71.dll
2014-01-16 15:43 - 2013-09-20 07:50 - 00348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr71.dll
2014-01-16 15:42 - 2014-01-16 21:44 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\Notepad++
2014-01-16 15:42 - 2014-01-16 15:42 - 50449456 _____ (Microsoft Corporation) C:\Users\Genetic Styles\Downloads\dotNetFx40_Full_x86_x64 (1).exe
2014-01-16 15:42 - 2014-01-16 15:42 - 00000000 ____D C:\Program Files (x86)\Notepad++
2014-01-16 15:39 - 2014-01-16 15:39 - 07598942 _____ C:\Users\Genetic Styles\Downloads\npp.6.5.3.Installer.exe
2014-01-16 09:42 - 2014-01-16 09:42 - 13079688 _____ (Microsoft Corporation) C:\Users\Genetic Styles\Downloads\Silverlight_x64.exe
2014-01-16 09:42 - 2014-01-16 09:42 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2014-01-16 09:42 - 2014-01-16 09:42 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2014-01-15 21:39 - 2014-01-15 21:39 - 00000218 _____ C:\Users\Genetic Styles\.recently-used.xbel
2014-01-15 20:11 - 2014-01-15 20:11 - 00093182 _____ C:\Users\Genetic Styles\Downloads\Chicago.PD.S01E02.720p.HDTV.X264-DIMENSION.torrent
2014-01-15 20:11 - 2014-01-15 20:11 - 00007285 _____ C:\Users\Genetic Styles\Downloads\Chicago.PD.S01E01.HDTV.XviD-AFG.torrent
2014-01-15 16:44 - 2014-01-15 21:07 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\NVIDIA
2014-01-15 08:16 - 2014-01-16 11:32 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\gtk-2.0
2014-01-14 23:03 - 2014-01-16 16:54 - 00000000 ____D C:\TDSSKiller_Quarantine
2014-01-14 22:58 - 2014-01-14 22:59 - 82537128 _____ (Sophos Limited) C:\Users\Genetic Styles\Downloads\Sophos Virus Removal Tool.exe
2014-01-14 22:57 - 2014-01-14 22:57 - 04121952 _____ (Kaspersky Lab ZAO) C:\Users\Genetic Styles\Downloads\tdsskiller.exe
2014-01-14 22:50 - 2014-01-14 22:50 - 00003226 _____ C:\Windows\System32\Tasks\{747A5E68-0761-4717-B631-11B0363DDEEC}
2014-01-14 22:48 - 2014-01-14 22:49 - 50449456 _____ (Microsoft Corporation) C:\Users\Genetic Styles\Downloads\dotNetFx40_Full_x86_x64.exe
2014-01-14 22:20 - 2014-01-15 08:16 - 00000992 _____ C:\Users\Genetic Styles\Desktop\Core Temp.lnk
2014-01-14 22:07 - 2014-01-14 22:07 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\NVIDIA
2014-01-14 22:07 - 2013-12-09 18:15 - 00982232 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2014-01-14 22:07 - 2013-12-09 18:14 - 01100248 _____ (NVIDIA Corporation) C:\Windows\System32\nvspcap64.dll
2014-01-14 22:06 - 2014-01-25 10:13 - 00000000 ____D C:\ProgramData\NVIDIA
2014-01-14 22:06 - 2013-12-19 12:33 - 30372640 _____ (NVIDIA Corporation) C:\Windows\System32\nvoglv64.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 25257248 _____ (NVIDIA Corporation) C:\Windows\System32\nvcompiler.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 22960416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 18310112 _____ (NVIDIA Corporation) C:\Windows\System32\nvwgf2umx.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 18222008 _____ (NVIDIA Corporation) C:\Windows\System32\nvd3dumx.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 15877216 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 15230352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 12645664 _____ (NVIDIA Corporation) C:\Windows\System32\Drivers\nvlddmkm.sys
2014-01-14 22:06 - 2013-12-19 12:33 - 11605752 _____ (NVIDIA Corporation) C:\Windows\System32\nvcuda.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 11554264 _____ (NVIDIA Corporation) C:\Windows\System32\nvopencl.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 09700224 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 09657464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 03132704 _____ (NVIDIA Corporation) C:\Windows\System32\nvcuvid.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 03125024 _____ (NVIDIA Corporation) C:\Windows\System32\nvcuvenc.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 03071656 _____ (NVIDIA Corporation) C:\Windows\System32\nvapi64.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 02947872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 02747680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 02698272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 01884448 _____ (NVIDIA Corporation) C:\Windows\System32\nvdispco6433221.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 01511712 _____ (NVIDIA Corporation) C:\Windows\System32\nvdispgenco6433221.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 01436528 _____ (NVIDIA Corporation) C:\Windows\System32\nvumdshimx.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 01242400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 00882464 _____ (NVIDIA Corporation) C:\Windows\System32\NvIFR64.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 00879392 _____ (NVIDIA Corporation) C:\Windows\System32\NvFBC64.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 00852768 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 00847648 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 00479520 _____ (NVIDIA Corporation) C:\Windows\System32\nvEncodeAPI64.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 00405280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 00357152 _____ C:\Windows\System32\NvIFROpenGL.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 00317472 _____ (NVIDIA Corporation) C:\Windows\System32\nvoglshim64.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 00314656 _____ C:\Windows\SysWOW64\NvIFROpenGL.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 00168616 _____ (NVIDIA Corporation) C:\Windows\System32\nvinitx.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 00061216 _____ (Khronos Group) C:\Windows\System32\OpenCL.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 00053024 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2014-01-14 22:06 - 2013-12-19 12:33 - 00023754 _____ C:\Windows\System32\nvinfo.pb
2014-01-14 22:06 - 2013-12-19 10:53 - 06671648 _____ (NVIDIA Corporation) C:\Windows\System32\nvcpl.dll
2014-01-14 22:06 - 2013-12-19 10:53 - 03490080 _____ (NVIDIA Corporation) C:\Windows\System32\nvsvc64.dll
2014-01-14 22:06 - 2013-12-19 10:53 - 00922912 _____ (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
2014-01-14 22:06 - 2013-12-19 10:53 - 00386336 _____ (NVIDIA Corporation) C:\Windows\System32\nvmctray.dll
2014-01-14 22:06 - 2013-12-19 10:53 - 00063776 _____ (NVIDIA Corporation) C:\Windows\System32\nvshext.dll
2014-01-14 22:06 - 2013-12-18 21:01 - 03539040 _____ C:\Windows\System32\nvcoproc.bin
2014-01-14 22:06 - 2013-12-05 00:42 - 00039200 _____ (NVIDIA Corporation) C:\Windows\System32\Drivers\nvvad64v.sys
2014-01-14 22:06 - 2013-12-05 00:42 - 00035104 _____ (NVIDIA Corporation) C:\Windows\System32\nvaudcap64v.dll
2014-01-14 22:06 - 2013-12-05 00:42 - 00032544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2014-01-14 22:06 - 2013-11-28 05:38 - 00197408 _____ (NVIDIA Corporation) C:\Windows\System32\Drivers\nvhda64v.sys
2014-01-14 22:06 - 2013-11-28 05:38 - 00031520 _____ (NVIDIA Corporation) C:\Windows\System32\nvhdap64.dll
2014-01-14 22:06 - 2013-11-22 00:36 - 01515296 _____ (NVIDIA Corporation) C:\Windows\System32\nvhdagenco6420103.dll
2014-01-14 21:29 - 2014-01-14 21:29 - 00001113 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-01-14 21:29 - 2014-01-14 21:29 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\Malwarebytes
2014-01-14 21:29 - 2014-01-14 21:29 - 00000000 ____D C:\ProgramData\Malwarebytes
2014-01-14 21:29 - 2014-01-14 21:29 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-01-14 21:29 - 2013-04-04 13:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\System32\Drivers\mbam.sys
2014-01-14 21:28 - 2014-01-14 21:28 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Genetic Styles\Downloads\mbam-setup-1.75.0.1300.exe
2014-01-12 16:02 - 2014-01-12 16:02 - 00000036 _____ C:\Users\Genetic Styles\Desktop\netflix.txt
2014-01-12 14:45 - 2013-03-28 16:59 - 00001447 _____ C:\Users\Genetic Styles\Desktop\gameinfo.txt
2014-01-12 13:20 - 2014-01-12 13:29 - 00000202 _____ C:\Users\Genetic Styles\Desktop\Strike Vector.url
2014-01-12 00:06 - 2014-01-12 00:06 - 00000202 _____ C:\Users\Genetic Styles\Desktop\Insurgency.url
2014-01-11 23:24 - 2014-01-11 23:24 - 00000202 _____ C:\Users\Genetic Styles\Desktop\Warframe.url
2014-01-11 23:23 - 2014-01-15 21:24 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\Warframe
2014-01-11 17:26 - 2014-01-11 17:26 - 32229024 _____ (Riot Games) C:\Users\Genetic Styles\Downloads\LeagueofLegends_NA_Installer_05_07_13.exe
2014-01-11 14:13 - 2014-01-14 19:45 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\Mumble
2014-01-11 14:13 - 2014-01-11 14:13 - 00002379 _____ C:\Users\Genetic Styles\Documents\MumbleAutomaticCertificateBackup.p12
2014-01-11 12:39 - 2014-01-11 12:39 - 00062144 _____ C:\Users\Genetic Styles\Downloads\scenesw_r22.zip
2014-01-11 12:22 - 2014-01-11 12:22 - 00000939 _____ C:\Users\Genetic Styles\Desktop\Open Broadcaster Software.lnk
2014-01-11 12:22 - 2014-01-11 12:22 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\OBS
2014-01-11 12:22 - 2014-01-11 12:22 - 00000000 ____D C:\Program Files\OBS
2014-01-11 12:22 - 2014-01-11 12:22 - 00000000 ____D C:\Program Files (x86)\OBS
2014-01-09 23:17 - 2014-01-09 23:17 - 00000000 ____H C:\Windows\System32\Drivers\Msft_Kernel_xusb21_01009.Wdf
2014-01-09 22:55 - 2014-01-09 22:55 - 07878008 _____ (Microsoft Corporation) C:\Users\Genetic Styles\Downloads\Xbox360_64Eng (1).exe
2014-01-09 22:48 - 2014-01-09 22:48 - 00000000 ____D C:\Program Files\Microsoft Xbox 360 Accessories
2014-01-09 22:47 - 2014-01-09 22:48 - 07878008 _____ (Microsoft Corporation) C:\Users\Genetic Styles\Downloads\Xbox360_64Eng.exe
2014-01-09 22:45 - 2014-01-09 22:45 - 00000000 ____D C:\Users\Genetic Styles\Documents\MGR
2014-01-09 21:25 - 2014-01-09 21:25 - 00001070 _____ C:\Users\Public\Desktop\VLC media player.lnk
2014-01-09 20:15 - 2014-01-09 20:15 - 00000202 _____ C:\Users\Genetic Styles\Desktop\METAL GEAR RISING REVENGEANCE.url
2014-01-09 16:56 - 2014-01-09 16:57 - 07660927 _____ C:\Users\Genetic Styles\Downloads\OBS_0_592b_Installer.exe
2014-01-09 08:15 - 2014-01-23 23:43 - 00001080 _____ C:\Windows\System32\settingsbkup.sfm
2014-01-09 08:15 - 2014-01-23 23:43 - 00001080 _____ C:\Windows\System32\settings.sfm
2014-01-09 04:22 - 2014-01-09 04:22 - 00281872 _____ C:\Windows\SysWOW64\PnkBstrB.exe
2014-01-09 04:22 - 2014-01-09 04:22 - 00281872 _____ C:\Windows\SysWOW64\PnkBstrB.ex0
2014-01-09 04:22 - 2014-01-09 04:22 - 00076888 _____ C:\Windows\SysWOW64\PnkBstrA.exe
2014-01-09 04:22 - 2014-01-09 04:22 - 00000697 _____ C:\Users\Public\Desktop\Battlefield 4.lnk
2014-01-09 04:22 - 2014-01-09 04:22 - 00000681 _____ C:\Users\Public\Desktop\Battlefield 4(64 bit).lnk
2014-01-09 04:22 - 2014-01-09 04:22 - 00000000 ____D C:\ProgramData\Package Cache
2014-01-09 04:22 - 2014-01-09 04:22 - 00000000 ____D C:\Program Files (x86)\Battlelog Web Plugins
2014-01-09 00:10 - 2014-01-21 21:56 - 00000000 ____D C:\Users\Genetic Styles\Documents\my games
2014-01-08 22:59 - 2014-01-23 23:27 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\vlc
2014-01-08 22:53 - 2014-01-08 22:54 - 01768954 _____ C:\Users\Genetic Styles\Downloads\training_aim_csgo_2.rar
2014-01-08 22:23 - 2014-01-08 22:23 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\Macromedia
2014-01-08 22:23 - 2014-01-08 22:23 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\LolClient
2014-01-08 22:23 - 2014-01-08 22:23 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\Adobe
2014-01-08 22:00 - 2014-01-08 22:00 - 00000472 _____ C:\Users\Genetic Styles\Desktop\Desktop.lnk
2014-01-08 21:57 - 2014-01-08 21:57 - 00000000 ____D C:\Program Files (x86)\RocketDock
2014-01-08 21:57 - 2014-01-08 21:57 - 00000000 ____D C:\Program Files (x86)\Mumble
2014-01-08 21:57 - 2014-01-08 21:57 - 00000000 ____D C:\Program Files (x86)\MPC-HC
2014-01-08 21:54 - 2014-01-16 16:41 - 00000000 ____D C:\Program Files\FolderSize
2014-01-08 21:54 - 2014-01-08 21:54 - 00294912 _____ C:\Users\Genetic Styles\Downloads\FolderSize-2.6-x64.msi
2014-01-08 21:50 - 2014-01-08 21:53 - 10273496 _____ (MPC-HC Team ) C:\Users\Genetic Styles\Downloads\MPC-HC.1.7.1.x86.exe
2014-01-08 21:50 - 2014-01-08 21:52 - 06463660 _____ (Punk Software ) C:\Users\Genetic Styles\Downloads\RocketDock-v1.3.5.exe
2014-01-08 21:49 - 2014-01-08 21:54 - 15657984 _____ C:\Users\Genetic Styles\Downloads\mumble-1.2.4.msi
2014-01-08 21:40 - 2014-01-24 22:46 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\.purple
2014-01-08 21:40 - 2014-01-08 21:40 - 00000000 ____D C:\Program Files (x86)\Pidgin
2014-01-08 21:36 - 2014-01-08 21:36 - 00155528 _____ (Nicomsoft Ltd.) C:\Windows\System32\DDCHELPER.dll
2014-01-08 21:36 - 2014-01-08 21:36 - 00020832 _____ (Nicomsoft Ltd.) C:\Windows\System32\Drivers\ddcdrv.sys
2014-01-08 21:36 - 2014-01-08 21:36 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\WinRAR
2014-01-08 21:16 - 2014-01-08 21:16 - 00040960 _____ (Benq Corporation) C:\Users\Genetic Styles\Downloads\auto.exe
2014-01-08 21:15 - 2014-01-08 21:15 - 01977432 _____ C:\Users\Genetic Styles\Downloads\winrar-x64-501.exe
2014-01-08 21:15 - 2014-01-08 21:15 - 00000000 ____D C:\ProgramData\Adobe
2014-01-08 21:15 - 2014-01-08 21:15 - 00000000 ____D C:\Program Files\WinRAR
2014-01-08 21:15 - 2014-01-08 21:15 - 00000000 ____D C:\Program Files (x86)\Adobe
2014-01-08 21:14 - 2014-01-08 21:16 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\Adobe
2014-01-08 21:07 - 2014-01-17 16:27 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\Ventrilo
2014-01-08 21:04 - 2014-01-08 21:04 - 00000262 _____ C:\Windows\{EEB3F6BB-318D-4CE5-989F-8191FCBFB578}_WiseFW.ini
2014-01-08 21:04 - 2014-01-08 21:04 - 00000000 ____D C:\Program Files\Ventrilo
2014-01-08 20:48 - 2014-01-08 20:48 - 00000000 ____D C:\Program Files (x86)\Combined Community Codec Pack
2014-01-08 20:47 - 2014-01-08 20:47 - 10207456 _____ (CCCP Project ) C:\Users\Genetic Styles\Downloads\Combined-Community-Codec-Pack-2013-11-27.exe
2014-01-08 20:47 - 2014-01-08 20:47 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\Realtime Soft
2014-01-08 20:47 - 2014-01-08 20:47 - 00000000 ____D C:\ProgramData\Realtime Soft
2014-01-08 20:47 - 2014-01-08 20:47 - 00000000 ____D C:\Program Files\UltraMon
2014-01-08 20:47 - 2014-01-08 20:47 - 00000000 ____D C:\Program Files (x86)\DAMN NFO Viewer
2014-01-08 20:46 - 2014-01-08 20:46 - 00269312 _____ (DAMN) C:\Users\Genetic Styles\Downloads\DAMN_NFO_Viewer_v2-10-0032-RC3.exe
2014-01-08 20:45 - 2014-01-16 21:18 - 00000000 ____D C:\Windows\Panther
2014-01-08 20:41 - 2014-01-24 22:10 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\Skype
2014-01-08 20:41 - 2014-01-08 20:41 - 00000000 ___RD C:\Program Files (x86)\Skype
2014-01-08 20:41 - 2014-01-08 20:41 - 00000000 ____D C:\ProgramData\Skype
2014-01-08 20:41 - 2013-11-26 11:25 - 00267936 ____N (Microsoft Corporation) C:\Windows\System32\MpSigStub.exe
2014-01-08 20:40 - 2014-01-08 20:40 - 00000000 ____D C:\Program Files (x86)\Origin Games
2014-01-08 20:39 - 2014-01-23 21:35 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\uTorrent
2014-01-08 20:39 - 2014-01-08 22:14 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\Origin
2014-01-08 20:39 - 2014-01-08 20:41 - 00000000 ____D C:\ProgramData\Origin
2014-01-08 20:39 - 2014-01-08 20:40 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\Origin
2014-01-08 20:39 - 2014-01-08 20:39 - 01340496 _____ (BitTorrent Inc.) C:\Users\Genetic Styles\Downloads\utorrent.exe
2014-01-08 20:39 - 2014-01-08 20:39 - 00000000 ____D C:\ProgramData\Electronic Arts
2014-01-08 20:38 - 2014-01-24 18:16 - 00000000 ____D C:\Program Files (x86)\Origin
2014-01-08 20:37 - 2014-01-08 20:38 - 16952720 _____ (Electronic Arts, Inc.) C:\Users\Genetic Styles\Downloads\OriginThinSetup.exe
2014-01-08 20:37 - 2010-06-02 03:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll
2014-01-08 20:37 - 2010-06-02 03:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\System32\XAudio2_7.dll
2014-01-08 20:37 - 2010-06-02 03:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll
2014-01-08 20:37 - 2010-06-02 03:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\System32\xactengine3_7.dll
2014-01-08 20:37 - 2010-06-02 03:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\System32\XAPOFX1_5.dll
2014-01-08 20:37 - 2010-06-02 03:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll
2014-01-08 20:37 - 2010-05-26 10:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_43.dll
2014-01-08 20:37 - 2010-05-26 10:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\System32\D3DX9_43.dll
2014-01-08 20:37 - 2010-05-26 10:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll
2014-01-08 20:37 - 2010-05-26 10:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll
2014-01-08 20:37 - 2010-05-26 10:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\System32\d3dcsx_43.dll
2014-01-08 20:37 - 2010-05-26 10:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll
2014-01-08 20:37 - 2010-05-26 10:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_43.dll
2014-01-08 20:37 - 2010-05-26 10:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll
2014-01-08 20:37 - 2010-05-26 10:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\System32\d3dx11_43.dll
2014-01-08 20:37 - 2010-05-26 10:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll
2014-01-08 20:37 - 2010-02-04 09:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\System32\XAudio2_6.dll
2014-01-08 20:37 - 2010-02-04 09:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll
2014-01-08 20:37 - 2010-02-04 09:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll
2014-01-08 20:37 - 2010-02-04 09:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\System32\xactengine3_6.dll
2014-01-08 20:37 - 2010-02-04 09:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\System32\XAPOFX1_4.dll
2014-01-08 20:37 - 2010-02-04 09:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll
2014-01-08 20:37 - 2010-02-04 09:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\System32\X3DAudio1_7.dll
2014-01-08 20:37 - 2010-02-04 09:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll
2014-01-08 20:37 - 2009-09-04 16:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\System32\XAudio2_5.dll
2014-01-08 20:37 - 2009-09-04 16:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll
2014-01-08 20:37 - 2009-09-04 16:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll
2014-01-08 20:37 - 2009-09-04 16:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\System32\xactengine3_5.dll
2014-01-08 20:37 - 2009-09-04 16:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\System32\XAPOFX1_3.dll
2014-01-08 20:37 - 2009-09-04 16:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll
2014-01-08 20:37 - 2009-09-04 16:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\System32\d3dcsx_42.dll
2014-01-08 20:37 - 2009-09-04 16:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll
2014-01-08 20:37 - 2009-09-04 16:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_42.dll
2014-01-08 20:37 - 2009-09-04 16:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\System32\D3DX9_42.dll
2014-01-08 20:37 - 2009-09-04 16:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll
2014-01-08 20:37 - 2009-09-04 16:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll
2014-01-08 20:37 - 2009-09-04 16:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_42.dll
2014-01-08 20:37 - 2009-09-04 16:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll
2014-01-08 20:37 - 2009-09-04 16:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\System32\d3dx11_42.dll
2014-01-08 20:37 - 2009-09-04 16:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll
2014-01-08 20:37 - 2009-03-16 13:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\System32\XAudio2_4.dll
2014-01-08 20:37 - 2009-03-16 13:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll
2014-01-08 20:37 - 2009-03-16 13:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll
2014-01-08 20:37 - 2009-03-16 13:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\System32\xactengine3_4.dll
2014-01-08 20:37 - 2009-03-16 13:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\System32\X3DAudio1_6.dll
2014-01-08 20:37 - 2009-03-16 13:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll
2014-01-08 20:37 - 2009-03-09 14:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\System32\D3DX9_41.dll
2014-01-08 20:37 - 2009-03-09 14:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll
2014-01-08 20:37 - 2009-03-09 14:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_41.dll
2014-01-08 20:37 - 2009-03-09 14:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll
2014-01-08 20:37 - 2009-03-09 14:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_41.dll
2014-01-08 20:37 - 2009-03-09 14:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll
2014-01-08 20:37 - 2008-10-27 09:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\System32\XAudio2_3.dll
2014-01-08 20:37 - 2008-10-27 09:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll
2014-01-08 20:37 - 2008-10-27 09:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll
2014-01-08 20:37 - 2008-10-27 09:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\System32\xactengine3_3.dll
2014-01-08 20:37 - 2008-10-27 09:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\System32\XAPOFX1_2.dll
2014-01-08 20:37 - 2008-10-27 09:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll
2014-01-08 20:37 - 2008-10-27 09:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\System32\X3DAudio1_5.dll
2014-01-08 20:37 - 2008-10-27 09:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll
2014-01-08 20:37 - 2008-10-15 05:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\System32\D3DX9_40.dll
2014-01-08 20:37 - 2008-10-15 05:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll
2014-01-08 20:37 - 2008-10-15 05:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_40.dll
2014-01-08 20:37 - 2008-10-15 05:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll
2014-01-08 20:37 - 2008-10-15 05:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_40.dll
2014-01-08 20:37 - 2008-10-15 05:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll
2014-01-08 20:37 - 2008-07-31 09:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll
2014-01-08 20:37 - 2008-07-31 09:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\System32\xactengine3_2.dll
2014-01-08 20:37 - 2008-07-31 09:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\System32\XAPOFX1_1.dll
2014-01-08 20:37 - 2008-07-31 09:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll
2014-01-08 20:37 - 2008-07-31 09:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\System32\XAudio2_2.dll
2014-01-08 20:37 - 2008-07-31 09:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll
2014-01-08 20:37 - 2008-07-10 10:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll
2014-01-08 20:37 - 2008-07-10 10:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\System32\D3DX9_39.dll
2014-01-08 20:37 - 2008-07-10 10:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll
2014-01-08 20:37 - 2008-07-10 10:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_39.dll
2014-01-08 20:37 - 2008-07-10 10:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll
2014-01-08 20:37 - 2008-07-10 10:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_39.dll
2014-01-08 20:37 - 2008-05-30 13:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\System32\XAudio2_1.dll
2014-01-08 20:37 - 2008-05-30 13:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll
2014-01-08 20:37 - 2008-05-30 13:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll
2014-01-08 20:37 - 2008-05-30 13:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\System32\xactengine3_1.dll
2014-01-08 20:37 - 2008-05-30 13:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\System32\XAPOFX1_0.dll
2014-01-08 20:37 - 2008-05-30 13:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll
2014-01-08 20:37 - 2008-05-30 13:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll
2014-01-08 20:37 - 2008-05-30 13:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\System32\X3DAudio1_4.dll
2014-01-08 20:37 - 2008-05-30 13:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\System32\D3DX9_38.dll
2014-01-08 20:37 - 2008-05-30 13:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll
2014-01-08 20:37 - 2008-05-30 13:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_38.dll
2014-01-08 20:37 - 2008-05-30 13:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll
2014-01-08 20:37 - 2008-05-30 13:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_38.dll
2014-01-08 20:37 - 2008-05-30 13:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll
2014-01-08 20:37 - 2008-03-05 15:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\System32\XAudio2_0.dll
2014-01-08 20:37 - 2008-03-05 15:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll
2014-01-08 20:37 - 2008-03-05 15:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll
2014-01-08 20:37 - 2008-03-05 15:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\System32\xactengine3_0.dll
2014-01-08 20:37 - 2008-03-05 15:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\System32\X3DAudio1_3.dll
2014-01-08 20:37 - 2008-03-05 15:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll
2014-01-08 20:37 - 2008-03-05 14:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\System32\D3DX9_37.dll
2014-01-08 20:37 - 2008-03-05 14:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll
2014-01-08 20:37 - 2008-03-05 14:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_37.dll
2014-01-08 20:37 - 2008-03-05 14:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll
2014-01-08 20:37 - 2008-02-05 22:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_37.dll
2014-01-08 20:37 - 2008-02-05 22:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll
2014-01-08 20:37 - 2007-10-22 02:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_10.dll
2014-01-08 20:37 - 2007-10-22 02:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll
2014-01-08 20:37 - 2007-10-22 02:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\System32\X3DAudio1_2.dll
2014-01-08 20:37 - 2007-10-22 02:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll
2014-01-08 20:37 - 2007-10-12 14:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_36.dll
2014-01-08 20:37 - 2007-10-12 14:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll
2014-01-08 20:37 - 2007-10-12 14:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_36.dll
2014-01-08 20:37 - 2007-10-12 14:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll
2014-01-08 20:37 - 2007-10-02 08:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_36.dll
2014-01-08 20:37 - 2007-10-02 08:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll
2014-01-08 20:37 - 2007-07-19 23:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_9.dll
2014-01-08 20:37 - 2007-07-19 23:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll
2014-01-08 20:37 - 2007-07-19 17:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_35.dll
2014-01-08 20:37 - 2007-07-19 17:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll
2014-01-08 20:37 - 2007-07-19 17:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_35.dll
2014-01-08 20:37 - 2007-07-19 17:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll
2014-01-08 20:37 - 2007-07-19 17:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_35.dll
2014-01-08 20:37 - 2007-07-19 17:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll
2014-01-08 20:37 - 2007-06-20 19:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_8.dll
2014-01-08 20:37 - 2007-06-20 19:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll
2014-01-08 20:37 - 2007-05-16 15:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_34.dll
2014-01-08 20:37 - 2007-05-16 15:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll
2014-01-08 20:37 - 2007-05-16 15:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_34.dll
2014-01-08 20:37 - 2007-05-16 15:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll
2014-01-08 20:37 - 2007-05-16 15:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_34.dll
2014-01-08 20:37 - 2007-05-16 15:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll
2014-01-08 20:37 - 2007-04-04 17:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_7.dll
2014-01-08 20:37 - 2007-04-04 17:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll
2014-01-08 20:37 - 2007-04-04 17:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\System32\xinput1_3.dll
2014-01-08 20:37 - 2007-04-04 17:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll
2014-01-08 20:37 - 2007-03-15 15:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_33.dll
2014-01-08 20:37 - 2007-03-15 15:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll
2014-01-08 20:37 - 2007-03-12 15:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_33.dll
2014-01-08 20:37 - 2007-03-12 15:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll
2014-01-08 20:37 - 2007-03-12 15:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_33.dll
2014-01-08 20:37 - 2007-03-12 15:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll
2014-01-08 20:37 - 2007-03-05 11:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\System32\x3daudio1_1.dll
2014-01-08 20:37 - 2007-03-05 11:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll
2014-01-08 20:37 - 2007-01-24 14:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_6.dll
2014-01-08 20:37 - 2007-01-24 14:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll
2014-01-08 20:37 - 2006-12-08 11:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll
2014-01-08 20:37 - 2006-12-08 11:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_5.dll
2014-01-08 20:37 - 2006-11-29 12:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_32.dll
2014-01-08 20:37 - 2006-11-29 12:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll
2014-01-08 20:37 - 2006-11-29 12:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10.dll
2014-01-08 20:37 - 2006-11-29 12:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll
2014-01-08 20:37 - 2006-09-28 15:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_31.dll
2014-01-08 20:37 - 2006-09-28 15:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll
2014-01-08 20:37 - 2006-09-28 15:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll
2014-01-08 20:37 - 2006-09-28 15:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_4.dll
2014-01-08 20:37 - 2006-07-28 08:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\System32\xinput1_2.dll
2014-01-08 20:37 - 2006-07-28 08:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_3.dll
 
LOG PART 2:

2014-01-08 20:37 - 2006-07-28 08:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll
2014-01-08 20:37 - 2006-07-28 08:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll
2014-01-08 20:37 - 2006-05-31 06:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll
2014-01-08 20:37 - 2006-05-31 06:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_2.dll
2014-01-08 20:37 - 2006-03-31 11:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_30.dll
2014-01-08 20:37 - 2006-03-31 11:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll
2014-01-08 20:37 - 2006-03-31 11:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_1.dll
2014-01-08 20:37 - 2006-03-31 11:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll
2014-01-08 20:37 - 2006-03-31 11:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\System32\xinput1_1.dll
2014-01-08 20:37 - 2006-03-31 11:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll
2014-01-08 20:37 - 2006-02-03 07:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_29.dll
2014-01-08 20:37 - 2006-02-03 07:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll
2014-01-08 20:37 - 2006-02-03 07:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_0.dll
2014-01-08 20:37 - 2006-02-03 07:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll
2014-01-08 20:37 - 2006-02-03 07:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\System32\x3daudio1_0.dll
2014-01-08 20:37 - 2006-02-03 07:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll
2014-01-08 20:37 - 2005-12-05 17:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_28.dll
2014-01-08 20:37 - 2005-12-05 17:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll
2014-01-08 20:37 - 2005-07-22 18:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_27.dll
2014-01-08 20:37 - 2005-07-22 18:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll
2014-01-08 20:37 - 2005-05-26 14:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_26.dll
2014-01-08 20:37 - 2005-05-26 14:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll
2014-01-08 20:37 - 2005-03-18 16:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_25.dll
2014-01-08 20:37 - 2005-03-18 16:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll
2014-01-08 20:37 - 2005-02-05 18:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_24.dll
2014-01-08 20:37 - 2005-02-05 18:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll
2014-01-08 20:36 - 2014-01-08 20:36 - 01133552 _____ C:\Users\Genetic Styles\Downloads\SteamSetup.exe
2014-01-08 20:36 - 2014-01-08 20:36 - 00000000 ____D C:\Program Files (x86)\VideoLAN
2014-01-08 20:34 - 2014-01-08 20:34 - 00001908 _____ C:\Windows\diagwrn.xml
2014-01-08 20:34 - 2014-01-08 20:34 - 00001908 _____ C:\Windows\diagerr.xml
2014-01-08 20:30 - 2014-01-08 20:30 - 22943014 _____ C:\Users\Genetic Styles\Downloads\vlc-2.0.6-win32.exe
2014-01-08 20:30 - 2014-01-08 20:30 - 09470216 _____ C:\Users\Genetic Styles\Downloads\pidgin-2.10.7.exe
2014-01-08 20:30 - 2014-01-08 20:30 - 04135696 _____ C:\Users\Genetic Styles\Downloads\ventrilo-3.0.8-Windows-x64.exe
2014-01-08 20:30 - 2014-01-08 20:30 - 01551008 _____ (Skype Technologies S.A.) C:\Users\Genetic Styles\Downloads\SkypeSetup.exe
2014-01-08 20:30 - 2014-01-08 20:30 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\SteelSeries
2014-01-08 20:30 - 2014-01-08 20:30 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\SteelSeries_ApS
2014-01-08 20:29 - 2014-01-08 20:29 - 00000000 ____D C:\ProgramData\SteelSeries
2014-01-08 20:28 - 2014-01-08 20:28 - 00000000 ____D C:\Program Files\SteelSeries
2014-01-08 20:27 - 2014-01-25 00:02 - 00000910 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-01-08 20:27 - 2014-01-24 22:37 - 00000914 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-01-08 20:27 - 2014-01-15 08:38 - 00002183 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2014-01-08 20:27 - 2014-01-08 20:32 - 00003910 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-01-08 20:27 - 2014-01-08 20:32 - 00003658 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-01-08 20:27 - 2014-01-08 20:27 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\Google
2014-01-08 20:27 - 2014-01-08 20:27 - 00000000 ____D C:\Program Files (x86)\Google
2014-01-08 20:26 - 2014-01-08 20:27 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\Deployment
2014-01-08 20:26 - 2014-01-08 20:26 - 00057560 _____ C:\Users\Genetic Styles\AppData\Local\GDIPFONTCACHEV1.DAT
2014-01-08 20:26 - 2014-01-08 20:26 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\Apps\2.0
2014-01-08 20:25 - 2012-06-12 06:00 - 00726160 _____ (Realtek ) C:\Windows\System32\Drivers\Rt64win7.sys
2014-01-08 20:25 - 2012-06-12 06:00 - 00107552 _____ (Realtek Semiconductor Corporation) C:\Windows\System32\RTNUninst64.dll
2014-01-08 20:25 - 2012-06-12 06:00 - 00074344 _____ (Realtek Semiconductor Corporation) C:\Windows\System32\RtNicProp64.dll
2014-01-08 20:18 - 2014-01-08 20:18 - 00000000 ____D C:\ProgramData\InstallShield
2014-01-08 20:18 - 2011-12-05 23:55 - 00053248 ____R (Windows XP Bundled build C-Centric Single User) C:\Windows\SysWOW64\CSVer.dll
2014-01-08 20:17 - 2003-06-12 22:25 - 00007062 _____ C:\Windows\SysWOW64\audiopid.vxd
2014-01-08 20:16 - 2014-01-08 21:04 - 00000000 ____D C:\ProgramData\Creative
2014-01-08 20:16 - 2014-01-08 20:16 - 00466520 _____ (Creative Labs) C:\Windows\System32\wrap_oal.dll
2014-01-08 20:16 - 2014-01-08 20:16 - 00445016 _____ (Creative Labs) C:\Windows\SysWOW64\wrap_oal.dll
2014-01-08 20:16 - 2014-01-08 20:16 - 00123480 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\System32\OpenAL32.dll
2014-01-08 20:16 - 2014-01-08 20:16 - 00109144 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\SysWOW64\OpenAL32.dll
2014-01-08 20:16 - 2014-01-08 20:16 - 00000159 ___RH C:\Windows\ctfile.rfc
2014-01-08 20:16 - 2014-01-08 20:16 - 00000000 ___HD C:\Program Files (x86)\Creative Installation Information
2014-01-08 20:16 - 2014-01-08 20:16 - 00000000 ____D C:\Windows\SysWOW64\Data
2014-01-08 20:16 - 2014-01-08 20:16 - 00000000 ____D C:\Windows\System32\Data
2014-01-08 20:16 - 2014-01-08 20:16 - 00000000 ____D C:\Windows\AsDmiHtm
2014-01-08 20:16 - 2014-01-08 20:16 - 00000000 ____D C:\Program Files\Creative
2014-01-08 20:16 - 2014-01-08 20:16 - 00000000 ____D C:\Program Files (x86)\OpenAL
2014-01-08 20:16 - 2014-01-08 20:16 - 00000000 ____D C:\Program Files (x86)\Creative
2014-01-08 20:16 - 2011-08-22 13:17 - 00012288 _____ (Creative Technology Limited) C:\Windows\System32\INRES.DLL
2014-01-08 20:16 - 2011-08-22 12:02 - 00011776 _____ (Creative Technology Limited) C:\Windows\SysWOW64\INRES.DLL
2014-01-08 20:16 - 2009-03-26 13:48 - 00190976 _____ C:\Windows\System32\APOMgr64.DLL
2014-01-08 20:16 - 2009-03-26 13:46 - 00148480 _____ C:\Windows\SysWOW64\APOMngr.DLL
2014-01-08 20:16 - 2009-02-06 17:53 - 00089088 _____ C:\Windows\System32\CmdRtr64.DLL
2014-01-08 20:16 - 2009-02-06 17:52 - 00073728 _____ C:\Windows\SysWOW64\CmdRtr.DLL
2014-01-08 20:16 - 2008-02-04 09:28 - 00107008 _____ (Creative Technology Ltd) C:\Windows\System32\cttele64.dll
2014-01-08 20:16 - 2008-02-04 09:27 - 00102400 _____ (Creative Technology Ltd) C:\Windows\SysWOW64\cttele32.dll
2014-01-08 20:15 - 2014-01-08 20:15 - 00001060 _____ C:\users\Genetic
2014-01-08 20:13 - 2014-01-08 20:13 - 00000000 ____H C:\Windows\System32\Drivers\Msft_Kernel_iusb3hcs_01009.Wdf
2014-01-08 20:13 - 2014-01-08 20:13 - 00000000 ____D C:\Program Files (x86)\Marvell
2014-01-08 20:13 - 2014-01-08 20:13 - 00000000 ____D C:\Program Files (x86)\ASM104xUSB3
2014-01-08 20:13 - 2012-05-20 08:25 - 00789824 _____ (Intel Corporation) C:\Windows\System32\Drivers\iusb3xhc.sys
2014-01-08 20:13 - 2012-05-20 08:25 - 00357184 _____ (Intel Corporation) C:\Windows\System32\Drivers\iusb3hub.sys
2014-01-08 20:13 - 2012-05-20 08:25 - 00019264 _____ (Intel Corporation) C:\Windows\System32\Drivers\iusb3hcs.sys
2014-01-08 20:11 - 2014-01-08 21:38 - 00000000 ____D C:\Program Files (x86)\Realtek
2014-01-08 20:09 - 2014-01-08 21:38 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2014-01-08 20:09 - 2014-01-08 20:19 - 00000000 ____D C:\Windows\System32\Tasks\ASUS
2014-01-08 20:09 - 2014-01-08 20:18 - 00000000 ____D C:\Program Files (x86)\Intel
2014-01-08 20:09 - 2014-01-08 20:09 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\InstallShield
2014-01-08 20:09 - 2014-01-08 20:09 - 00000000 ____D C:\Intel
2014-01-08 20:08 - 2014-01-08 20:08 - 00016896 _____ (ASUS) C:\Windows\AsTaskSched.dll
2014-01-08 20:08 - 2012-10-29 19:21 - 00000000 ____D C:\Windows\Chipset
2014-01-08 20:08 - 2011-02-24 22:36 - 00295296 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\volsnap.sys
2014-01-08 20:07 - 2014-01-08 20:25 - 00045437 _____ C:\Windows\Ascd_tmp.ini
2014-01-08 20:07 - 2014-01-08 20:07 - 00001769 _____ C:\Windows\Language_trs.ini
2014-01-08 20:07 - 2014-01-08 20:07 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies
2014-01-08 20:06 - 2014-01-25 00:23 - 00414667 _____ C:\Windows\WindowsUpdate.log
2014-01-08 20:06 - 2014-01-14 22:07 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2014-01-08 20:06 - 2014-01-14 22:07 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2014-01-08 20:06 - 2014-01-14 22:07 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2014-01-08 20:05 - 2014-01-08 20:05 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\VirtualStore
2014-01-08 20:04 - 2014-01-15 21:39 - 00000000 ____D C:\users\Genetic Styles
2014-01-08 20:04 - 2014-01-08 20:04 - 00000020 ___SH C:\Users\Genetic Styles\ntuser.ini
2014-01-08 20:03 - 2014-01-08 20:03 - 00000000 ____D C:\Recovery

==================== One Month Modified Files and Folders =======

2014-01-25 10:15 - 2014-01-25 10:14 - 00085715 _____ C:\Users\Genetic Styles\Downloads\FRST.txt
2014-01-25 10:14 - 2014-01-25 10:14 - 00000000 ____D C:\FRST
2014-01-25 10:13 - 2014-01-14 22:06 - 00000000 ____D C:\ProgramData\NVIDIA
2014-01-25 00:23 - 2014-01-08 20:06 - 00414667 _____ C:\Windows\WindowsUpdate.log
2014-01-25 00:23 - 2009-07-13 21:13 - 00713888 _____ C:\Windows\System32\PerfStringBackup.INI
2014-01-25 00:23 - 2009-07-13 20:45 - 00016944 ____H C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-01-25 00:23 - 2009-07-13 20:45 - 00016944 ____H C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-01-25 00:20 - 2014-01-16 21:24 - 00004239 _____ C:\Windows\setupact.log
2014-01-25 00:12 - 2014-01-25 00:12 - 02077696 _____ (Farbar) C:\Users\Genetic Styles\Downloads\FRST64.exe
2014-01-25 00:02 - 2014-01-24 22:12 - 00001366 _____ C:\Windows\PFRO.log
2014-01-25 00:02 - 2014-01-08 20:27 - 00000910 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-01-25 00:02 - 2009-07-13 21:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2014-01-24 22:51 - 2014-01-24 22:51 - 01038072 _____ (AVAST Software) C:\Windows\System32\Drivers\aswSnx.sys
2014-01-24 22:51 - 2014-01-24 22:51 - 00421704 _____ (AVAST Software) C:\Windows\System32\Drivers\aswSP.sys
2014-01-24 22:51 - 2014-01-24 22:51 - 00334136 _____ (AVAST Software) C:\Windows\System32\aswBoot.exe
2014-01-24 22:51 - 2014-01-24 22:51 - 00207904 _____ C:\Windows\System32\Drivers\aswVmm.sys
2014-01-24 22:51 - 2014-01-24 22:51 - 00092544 _____ (AVAST Software) C:\Windows\System32\Drivers\aswRdr2.sys
2014-01-24 22:51 - 2014-01-24 22:51 - 00080184 _____ (AVAST Software) C:\Windows\System32\Drivers\aswStm.sys
2014-01-24 22:51 - 2014-01-24 22:51 - 00078648 _____ (AVAST Software) C:\Windows\System32\Drivers\aswMonFlt.sys
2014-01-24 22:51 - 2014-01-24 22:51 - 00065776 _____ C:\Windows\System32\Drivers\aswRvrt.sys
2014-01-24 22:51 - 2014-01-24 22:51 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-01-24 22:51 - 2014-01-24 22:51 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2014-01-24 22:51 - 2014-01-24 22:51 - 00001966 _____ C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-01-24 22:51 - 2014-01-24 22:51 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\AVAST Software
2014-01-24 22:51 - 2014-01-24 22:51 - 00000000 ____D C:\ProgramData\AVAST Software
2014-01-24 22:51 - 2014-01-24 22:51 - 00000000 ____D C:\Program Files\AVAST Software
2014-01-24 22:46 - 2014-01-08 21:40 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\.purple
2014-01-24 22:37 - 2014-01-08 20:27 - 00000914 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-01-24 22:28 - 2014-01-24 22:28 - 00014520 _____ C:\ComboFix.txt
2014-01-24 22:28 - 2014-01-16 16:54 - 00000000 ____D C:\Qoobox
2014-01-24 22:27 - 2009-07-13 18:34 - 00000215 _____ C:\Windows\system.ini
2014-01-24 22:24 - 2014-01-24 22:24 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\Realtime Soft
2014-01-24 22:23 - 2014-01-24 22:23 - 00001136 _____ C:\Users\Genetic Styles\Desktop\JRT.txt
2014-01-24 22:21 - 2014-01-24 22:21 - 00000000 ____D C:\Windows\ERUNT
2014-01-24 22:19 - 2014-01-24 22:17 - 00000000 ____D C:\AdwCleaner
2014-01-24 22:17 - 2014-01-24 22:17 - 00002970 _____ C:\Users\Genetic Styles\Desktop\RKreport[0]_S_01242014_231731.txt
2014-01-24 22:17 - 2014-01-24 22:15 - 00000000 ____D C:\Users\Genetic Styles\Desktop\RK_Quarantine
2014-01-24 22:16 - 2014-01-24 22:16 - 00003674 _____ C:\Users\Genetic Styles\Desktop\RKreport[0]_D_01242014_231641.txt
2014-01-24 22:16 - 2014-01-24 22:16 - 00003551 _____ C:\Users\Genetic Styles\Desktop\RKreport[0]_S_01242014_231631.txt
2014-01-24 22:10 - 2014-01-08 20:41 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\Skype
2014-01-24 21:55 - 2014-01-24 21:55 - 00274214 _____ C:\Users\Genetic Styles\Desktop\FixDotNet20140125055556501.cab
2014-01-24 18:16 - 2014-01-08 20:38 - 00000000 ____D C:\Program Files (x86)\Origin
2014-01-23 23:43 - 2014-01-09 08:15 - 00001080 _____ C:\Windows\System32\settingsbkup.sfm
2014-01-23 23:43 - 2014-01-09 08:15 - 00001080 _____ C:\Windows\System32\settings.sfm
2014-01-23 23:27 - 2014-01-08 22:59 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\vlc
2014-01-23 21:35 - 2014-01-08 20:39 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\uTorrent
2014-01-22 23:09 - 2014-01-22 23:09 - 594265273 _____ C:\Windows\MEMORY.DMP
2014-01-22 23:09 - 2014-01-22 23:09 - 00293624 _____ C:\Windows\Minidump\012314-6474-01.dmp
2014-01-22 23:09 - 2014-01-22 23:09 - 00000000 ____D C:\Windows\Minidump
2014-01-22 22:52 - 2014-01-22 22:52 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\TheBannerSaga
2014-01-21 21:56 - 2014-01-21 21:56 - 00017627 _____ C:\Windows\DirectX.log
2014-01-21 21:56 - 2014-01-09 00:10 - 00000000 ____D C:\Users\Genetic Styles\Documents\my games
2014-01-21 21:49 - 2014-01-21 21:49 - 00003234 _____ C:\Windows\System32\Tasks\{239F0040-74C9-40C6-9FA9-7F68C388042C}
2014-01-17 16:27 - 2014-01-08 21:07 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\Ventrilo
2014-01-16 21:48 - 2014-01-16 21:38 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\DAEMON Tools Lite
2014-01-16 21:48 - 2014-01-16 21:38 - 00000000 ____D C:\ProgramData\DAEMON Tools Lite
2014-01-16 21:44 - 2014-01-16 15:42 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\Notepad++
2014-01-16 21:39 - 2014-01-16 21:39 - 02721168 _____ (Microsoft Corporation) C:\Users\Genetic Styles\Downloads\Windows7-USB-DVD-tool.exe
2014-01-16 21:38 - 2014-01-16 21:38 - 00283064 _____ (Disc Soft Ltd) C:\Windows\System32\Drivers\dtsoftbus01.sys
2014-01-16 21:38 - 2014-01-16 21:38 - 00001954 _____ C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
2014-01-16 21:38 - 2014-01-16 21:38 - 00000000 ____D C:\Program Files (x86)\DAEMON Tools Lite
2014-01-16 21:26 - 2014-01-16 21:26 - 00313016 _____ C:\Users\Genetic Styles\Downloads\Windows 8.1 AIO 20in1 x64 en-US Pre-Activated DaRT 8.1 Dec2013.torrent
2014-01-16 21:24 - 2014-01-16 21:24 - 00000000 ____H C:\Windows\System32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2014-01-16 21:24 - 2014-01-16 21:24 - 00000000 _____ C:\Windows\setuperr.log
2014-01-16 21:20 - 2014-01-16 21:19 - 00084694 _____ C:\Users\Genetic Styles\Documents\cc_20140116_221934.reg
2014-01-16 21:19 - 2014-01-16 21:19 - 00183296 _____ C:\Users\Genetic Styles\Documents\cc_20140116_221916.reg
2014-01-16 21:18 - 2014-01-16 21:18 - 00002790 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-01-16 21:18 - 2014-01-16 21:18 - 00000822 _____ C:\Users\Public\Desktop\CCleaner.lnk
2014-01-16 21:18 - 2014-01-16 21:18 - 00000000 ____D C:\Program Files\CCleaner
2014-01-16 21:18 - 2014-01-08 20:45 - 00000000 ____D C:\Windows\Panther
2014-01-16 21:16 - 2014-01-16 21:16 - 04645232 _____ (Piriform Ltd) C:\Users\Genetic Styles\Downloads\ccsetup409.exe
2014-01-16 16:56 - 2014-01-16 16:54 - 00000000 ____D C:\Windows\erdnt
2014-01-16 16:54 - 2014-01-14 23:03 - 00000000 ____D C:\TDSSKiller_Quarantine
2014-01-16 16:41 - 2014-01-08 21:54 - 00000000 ____D C:\Program Files\FolderSize
2014-01-16 16:00 - 2014-01-16 15:59 - 05167985 ____R (Swearware) C:\Users\Genetic Styles\Downloads\ComboFix.exe
2014-01-16 15:55 - 2014-01-16 15:55 - 00003245 _____ C:\Users\Genetic Styles\Desktop\Sophos Virus Removal Tool.lnk
2014-01-16 15:55 - 2014-01-16 15:55 - 00000000 ____D C:\ProgramData\Sophos
2014-01-16 15:55 - 2014-01-16 15:55 - 00000000 ____D C:\Program Files (x86)\Sophos
2014-01-16 15:55 - 2014-01-16 15:54 - 82720736 _____ (Sophos Limited) C:\Users\Genetic Styles\Downloads\Sophos Virus Removal Tool (1).exe
2014-01-16 15:51 - 2014-01-16 15:51 - 00379904 _____ C:\Users\Genetic Styles\Downloads\yk84jy9z.exe
2014-01-16 15:51 - 2014-01-16 15:51 - 00000000 ____D C:\Windows\pss
2014-01-16 15:49 - 2014-01-16 15:49 - 00379904 _____ C:\Users\Genetic Styles\Downloads\4e90j9ui.exe
2014-01-16 15:44 - 2014-01-16 15:44 - 00003154 _____ C:\Windows\System32\Tasks\WinZipDriverUpdaterRunAtStartup
2014-01-16 15:44 - 2014-01-16 15:44 - 00003084 _____ C:\Windows\System32\Tasks\WinZipDriverUpdater_UPDATES
2014-01-16 15:44 - 2014-01-16 15:44 - 00001102 _____ C:\Users\Public\Desktop\WinZip Driver Updater.lnk
2014-01-16 15:44 - 2014-01-16 15:44 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\WinZip
2014-01-16 15:43 - 2014-01-16 15:43 - 00001312 _____ C:\Users\Public\Desktop\The Weather Channel App.lnk
2014-01-16 15:43 - 2014-01-16 15:43 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\The Weather Channel
2014-01-16 15:43 - 2014-01-16 15:43 - 00000000 ____D C:\Program Files (x86)\FileZilla FTP Client
2014-01-16 15:42 - 2014-01-16 15:42 - 50449456 _____ (Microsoft Corporation) C:\Users\Genetic Styles\Downloads\dotNetFx40_Full_x86_x64 (1).exe
2014-01-16 15:42 - 2014-01-16 15:42 - 00000000 ____D C:\Program Files (x86)\Notepad++
2014-01-16 15:39 - 2014-01-16 15:39 - 07598942 _____ C:\Users\Genetic Styles\Downloads\npp.6.5.3.Installer.exe
2014-01-16 11:32 - 2014-01-15 08:16 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\gtk-2.0
2014-01-16 09:42 - 2014-01-16 09:42 - 13079688 _____ (Microsoft Corporation) C:\Users\Genetic Styles\Downloads\Silverlight_x64.exe
2014-01-16 09:42 - 2014-01-16 09:42 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2014-01-16 09:42 - 2014-01-16 09:42 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2014-01-15 21:39 - 2014-01-15 21:39 - 00000218 _____ C:\Users\Genetic Styles\.recently-used.xbel
2014-01-15 21:39 - 2014-01-08 20:04 - 00000000 ____D C:\users\Genetic Styles
2014-01-15 21:24 - 2014-01-11 23:23 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\Warframe
2014-01-15 21:07 - 2014-01-15 16:44 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\NVIDIA
2014-01-15 20:11 - 2014-01-15 20:11 - 00093182 _____ C:\Users\Genetic Styles\Downloads\Chicago.PD.S01E02.720p.HDTV.X264-DIMENSION.torrent
2014-01-15 20:11 - 2014-01-15 20:11 - 00007285 _____ C:\Users\Genetic Styles\Downloads\Chicago.PD.S01E01.HDTV.XviD-AFG.torrent
2014-01-15 08:38 - 2014-01-08 20:27 - 00002183 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2014-01-15 08:16 - 2014-01-14 22:20 - 00000992 _____ C:\Users\Genetic Styles\Desktop\Core Temp.lnk
2014-01-14 22:59 - 2014-01-14 22:58 - 82537128 _____ (Sophos Limited) C:\Users\Genetic Styles\Downloads\Sophos Virus Removal Tool.exe
2014-01-14 22:57 - 2014-01-14 22:57 - 04121952 _____ (Kaspersky Lab ZAO) C:\Users\Genetic Styles\Downloads\tdsskiller.exe
2014-01-14 22:50 - 2014-01-14 22:50 - 00003226 _____ C:\Windows\System32\Tasks\{747A5E68-0761-4717-B631-11B0363DDEEC}
2014-01-14 22:49 - 2014-01-14 22:48 - 50449456 _____ (Microsoft Corporation) C:\Users\Genetic Styles\Downloads\dotNetFx40_Full_x86_x64.exe
2014-01-14 22:07 - 2014-01-14 22:07 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\NVIDIA
2014-01-14 22:07 - 2014-01-08 20:06 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2014-01-14 22:07 - 2014-01-08 20:06 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2014-01-14 22:07 - 2014-01-08 20:06 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2014-01-14 22:06 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\Help
2014-01-14 21:29 - 2014-01-14 21:29 - 00001113 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-01-14 21:29 - 2014-01-14 21:29 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\Malwarebytes
2014-01-14 21:29 - 2014-01-14 21:29 - 00000000 ____D C:\ProgramData\Malwarebytes
2014-01-14 21:29 - 2014-01-14 21:29 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-01-14 21:28 - 2014-01-14 21:28 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Genetic Styles\Downloads\mbam-setup-1.75.0.1300.exe
2014-01-14 19:45 - 2014-01-11 14:13 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\Mumble
2014-01-12 16:02 - 2014-01-12 16:02 - 00000036 _____ C:\Users\Genetic Styles\Desktop\netflix.txt
2014-01-12 13:29 - 2014-01-12 13:20 - 00000202 _____ C:\Users\Genetic Styles\Desktop\Strike Vector.url
2014-01-12 00:06 - 2014-01-12 00:06 - 00000202 _____ C:\Users\Genetic Styles\Desktop\Insurgency.url
2014-01-11 23:24 - 2014-01-11 23:24 - 00000202 _____ C:\Users\Genetic Styles\Desktop\Warframe.url
2014-01-11 17:26 - 2014-01-11 17:26 - 32229024 _____ (Riot Games) C:\Users\Genetic Styles\Downloads\LeagueofLegends_NA_Installer_05_07_13.exe
2014-01-11 14:13 - 2014-01-11 14:13 - 00002379 _____ C:\Users\Genetic Styles\Documents\MumbleAutomaticCertificateBackup.p12
2014-01-11 12:39 - 2014-01-11 12:39 - 00062144 _____ C:\Users\Genetic Styles\Downloads\scenesw_r22.zip
2014-01-11 12:22 - 2014-01-11 12:22 - 00000939 _____ C:\Users\Genetic Styles\Desktop\Open Broadcaster Software.lnk
2014-01-11 12:22 - 2014-01-11 12:22 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\OBS
2014-01-11 12:22 - 2014-01-11 12:22 - 00000000 ____D C:\Program Files\OBS
2014-01-11 12:22 - 2014-01-11 12:22 - 00000000 ____D C:\Program Files (x86)\OBS
2014-01-09 23:17 - 2014-01-09 23:17 - 00000000 ____H C:\Windows\System32\Drivers\Msft_Kernel_xusb21_01009.Wdf
2014-01-09 22:55 - 2014-01-09 22:55 - 07878008 _____ (Microsoft Corporation) C:\Users\Genetic Styles\Downloads\Xbox360_64Eng (1).exe
2014-01-09 22:48 - 2014-01-09 22:48 - 00000000 ____D C:\Program Files\Microsoft Xbox 360 Accessories
2014-01-09 22:48 - 2014-01-09 22:47 - 07878008 _____ (Microsoft Corporation) C:\Users\Genetic Styles\Downloads\Xbox360_64Eng.exe
2014-01-09 22:45 - 2014-01-09 22:45 - 00000000 ____D C:\Users\Genetic Styles\Documents\MGR
2014-01-09 21:25 - 2014-01-09 21:25 - 00001070 _____ C:\Users\Public\Desktop\VLC media player.lnk
2014-01-09 20:15 - 2014-01-09 20:15 - 00000202 _____ C:\Users\Genetic Styles\Desktop\METAL GEAR RISING REVENGEANCE.url
2014-01-09 16:57 - 2014-01-09 16:56 - 07660927 _____ C:\Users\Genetic Styles\Downloads\OBS_0_592b_Installer.exe
2014-01-09 04:22 - 2014-01-09 04:22 - 00281872 _____ C:\Windows\SysWOW64\PnkBstrB.exe
2014-01-09 04:22 - 2014-01-09 04:22 - 00281872 _____ C:\Windows\SysWOW64\PnkBstrB.ex0
2014-01-09 04:22 - 2014-01-09 04:22 - 00076888 _____ C:\Windows\SysWOW64\PnkBstrA.exe
2014-01-09 04:22 - 2014-01-09 04:22 - 00000697 _____ C:\Users\Public\Desktop\Battlefield 4.lnk
2014-01-09 04:22 - 2014-01-09 04:22 - 00000681 _____ C:\Users\Public\Desktop\Battlefield 4(64 bit).lnk
2014-01-09 04:22 - 2014-01-09 04:22 - 00000000 ____D C:\ProgramData\Package Cache
2014-01-09 04:22 - 2014-01-09 04:22 - 00000000 ____D C:\Program Files (x86)\Battlelog Web Plugins
2014-01-08 22:54 - 2014-01-08 22:53 - 01768954 _____ C:\Users\Genetic Styles\Downloads\training_aim_csgo_2.rar
2014-01-08 22:23 - 2014-01-08 22:23 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\Macromedia
2014-01-08 22:23 - 2014-01-08 22:23 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\LolClient
2014-01-08 22:23 - 2014-01-08 22:23 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\Adobe
2014-01-08 22:14 - 2014-01-08 20:39 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\Origin
2014-01-08 22:00 - 2014-01-08 22:00 - 00000472 _____ C:\Users\Genetic Styles\Desktop\Desktop.lnk
2014-01-08 21:57 - 2014-01-08 21:57 - 00000000 ____D C:\Program Files (x86)\RocketDock
2014-01-08 21:57 - 2014-01-08 21:57 - 00000000 ____D C:\Program Files (x86)\Mumble
2014-01-08 21:57 - 2014-01-08 21:57 - 00000000 ____D C:\Program Files (x86)\MPC-HC
2014-01-08 21:54 - 2014-01-08 21:54 - 00294912 _____ C:\Users\Genetic Styles\Downloads\FolderSize-2.6-x64.msi
2014-01-08 21:54 - 2014-01-08 21:49 - 15657984 _____ C:\Users\Genetic Styles\Downloads\mumble-1.2.4.msi
2014-01-08 21:53 - 2014-01-08 21:50 - 10273496 _____ (MPC-HC Team ) C:\Users\Genetic Styles\Downloads\MPC-HC.1.7.1.x86.exe
2014-01-08 21:52 - 2014-01-08 21:50 - 06463660 _____ (Punk Software ) C:\Users\Genetic Styles\Downloads\RocketDock-v1.3.5.exe
2014-01-08 21:40 - 2014-01-08 21:40 - 00000000 ____D C:\Program Files (x86)\Pidgin
2014-01-08 21:38 - 2014-01-08 20:11 - 00000000 ____D C:\Program Files (x86)\Realtek
2014-01-08 21:38 - 2014-01-08 20:09 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2014-01-08 21:36 - 2014-01-08 21:36 - 00155528 _____ (Nicomsoft Ltd.) C:\Windows\System32\DDCHELPER.dll
2014-01-08 21:36 - 2014-01-08 21:36 - 00020832 _____ (Nicomsoft Ltd.) C:\Windows\System32\Drivers\ddcdrv.sys
2014-01-08 21:36 - 2014-01-08 21:36 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\WinRAR
2014-01-08 21:16 - 2014-01-08 21:16 - 00040960 _____ (Benq Corporation) C:\Users\Genetic Styles\Downloads\auto.exe
2014-01-08 21:16 - 2014-01-08 21:14 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\Adobe
2014-01-08 21:15 - 2014-01-08 21:15 - 01977432 _____ C:\Users\Genetic Styles\Downloads\winrar-x64-501.exe
2014-01-08 21:15 - 2014-01-08 21:15 - 00000000 ____D C:\ProgramData\Adobe
2014-01-08 21:15 - 2014-01-08 21:15 - 00000000 ____D C:\Program Files\WinRAR
2014-01-08 21:15 - 2014-01-08 21:15 - 00000000 ____D C:\Program Files (x86)\Adobe
2014-01-08 21:04 - 2014-01-08 21:04 - 00000262 _____ C:\Windows\{EEB3F6BB-318D-4CE5-989F-8191FCBFB578}_WiseFW.ini
2014-01-08 21:04 - 2014-01-08 21:04 - 00000000 ____D C:\Program Files\Ventrilo
2014-01-08 21:04 - 2014-01-08 20:16 - 00000000 ____D C:\ProgramData\Creative
2014-01-08 21:03 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\rescache
2014-01-08 20:49 - 2009-07-13 20:45 - 00274320 _____ C:\Windows\System32\FNTCACHE.DAT
2014-01-08 20:48 - 2014-01-08 20:48 - 00000000 ____D C:\Program Files (x86)\Combined Community Codec Pack
2014-01-08 20:47 - 2014-01-08 20:47 - 10207456 _____ (CCCP Project ) C:\Users\Genetic Styles\Downloads\Combined-Community-Codec-Pack-2013-11-27.exe
2014-01-08 20:47 - 2014-01-08 20:47 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\Realtime Soft
2014-01-08 20:47 - 2014-01-08 20:47 - 00000000 ____D C:\ProgramData\Realtime Soft
2014-01-08 20:47 - 2014-01-08 20:47 - 00000000 ____D C:\Program Files\UltraMon
2014-01-08 20:47 - 2014-01-08 20:47 - 00000000 ____D C:\Program Files (x86)\DAMN NFO Viewer
2014-01-08 20:47 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\System32\sysprep
2014-01-08 20:46 - 2014-01-08 20:46 - 00269312 _____ (DAMN) C:\Users\Genetic Styles\Downloads\DAMN_NFO_Viewer_v2-10-0032-RC3.exe
2014-01-08 20:46 - 2009-07-13 23:46 - 00000000 ____D C:\Windows\CSC
2014-01-08 20:45 - 2009-07-13 21:38 - 00025600 ___SH C:\Windows\System32\config\BCD-Template.LOG
2014-01-08 20:45 - 2009-07-13 21:32 - 00028672 _____ C:\Windows\System32\config\BCD-Template
2014-01-08 20:41 - 2014-01-08 20:41 - 00000000 ___RD C:\Program Files (x86)\Skype
2014-01-08 20:41 - 2014-01-08 20:41 - 00000000 ____D C:\ProgramData\Skype
2014-01-08 20:41 - 2014-01-08 20:39 - 00000000 ____D C:\ProgramData\Origin
2014-01-08 20:40 - 2014-01-08 20:40 - 00000000 ____D C:\Program Files (x86)\Origin Games
2014-01-08 20:40 - 2014-01-08 20:39 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\Origin
2014-01-08 20:39 - 2014-01-08 20:39 - 01340496 _____ (BitTorrent Inc.) C:\Users\Genetic Styles\Downloads\utorrent.exe
2014-01-08 20:39 - 2014-01-08 20:39 - 00000000 ____D C:\ProgramData\Electronic Arts
2014-01-08 20:39 - 2009-07-13 19:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
2014-01-08 20:38 - 2014-01-08 20:37 - 16952720 _____ (Electronic Arts, Inc.) C:\Users\Genetic Styles\Downloads\OriginThinSetup.exe
2014-01-08 20:36 - 2014-01-08 20:36 - 01133552 _____ C:\Users\Genetic Styles\Downloads\SteamSetup.exe
2014-01-08 20:36 - 2014-01-08 20:36 - 00000000 ____D C:\Program Files (x86)\VideoLAN
2014-01-08 20:34 - 2014-01-08 20:34 - 00001908 _____ C:\Windows\diagwrn.xml
2014-01-08 20:34 - 2014-01-08 20:34 - 00001908 _____ C:\Windows\diagerr.xml
2014-01-08 20:32 - 2014-01-08 20:27 - 00003910 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-01-08 20:32 - 2014-01-08 20:27 - 00003658 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-01-08 20:30 - 2014-01-08 20:30 - 22943014 _____ C:\Users\Genetic Styles\Downloads\vlc-2.0.6-win32.exe
2014-01-08 20:30 - 2014-01-08 20:30 - 09470216 _____ C:\Users\Genetic Styles\Downloads\pidgin-2.10.7.exe
2014-01-08 20:30 - 2014-01-08 20:30 - 04135696 _____ C:\Users\Genetic Styles\Downloads\ventrilo-3.0.8-Windows-x64.exe
2014-01-08 20:30 - 2014-01-08 20:30 - 01551008 _____ (Skype Technologies S.A.) C:\Users\Genetic Styles\Downloads\SkypeSetup.exe
2014-01-08 20:30 - 2014-01-08 20:30 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\SteelSeries
2014-01-08 20:30 - 2014-01-08 20:30 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\SteelSeries_ApS
2014-01-08 20:29 - 2014-01-08 20:29 - 00000000 ____D C:\ProgramData\SteelSeries
2014-01-08 20:28 - 2014-01-08 20:28 - 00000000 ____D C:\Program Files\SteelSeries
2014-01-08 20:27 - 2014-01-08 20:27 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\Google
2014-01-08 20:27 - 2014-01-08 20:27 - 00000000 ____D C:\Program Files (x86)\Google
2014-01-08 20:27 - 2014-01-08 20:26 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\Deployment
2014-01-08 20:26 - 2014-01-08 20:26 - 00057560 _____ C:\Users\Genetic Styles\AppData\Local\GDIPFONTCACHEV1.DAT
2014-01-08 20:26 - 2014-01-08 20:26 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\Apps\2.0
2014-01-08 20:25 - 2014-01-08 20:07 - 00045437 _____ C:\Windows\Ascd_tmp.ini
2014-01-08 20:19 - 2014-01-08 20:09 - 00000000 ____D C:\Windows\System32\Tasks\ASUS
2014-01-08 20:18 - 2014-01-08 20:18 - 00000000 ____D C:\ProgramData\InstallShield
2014-01-08 20:18 - 2014-01-08 20:09 - 00000000 ____D C:\Program Files (x86)\Intel
2014-01-08 20:16 - 2014-01-08 20:16 - 00466520 _____ (Creative Labs) C:\Windows\System32\wrap_oal.dll
2014-01-08 20:16 - 2014-01-08 20:16 - 00445016 _____ (Creative Labs) C:\Windows\SysWOW64\wrap_oal.dll
2014-01-08 20:16 - 2014-01-08 20:16 - 00123480 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\System32\OpenAL32.dll
2014-01-08 20:16 - 2014-01-08 20:16 - 00109144 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\SysWOW64\OpenAL32.dll
2014-01-08 20:16 - 2014-01-08 20:16 - 00000159 ___RH C:\Windows\ctfile.rfc
2014-01-08 20:16 - 2014-01-08 20:16 - 00000000 ___HD C:\Program Files (x86)\Creative Installation Information
2014-01-08 20:16 - 2014-01-08 20:16 - 00000000 ____D C:\Windows\SysWOW64\Data
2014-01-08 20:16 - 2014-01-08 20:16 - 00000000 ____D C:\Windows\System32\Data
2014-01-08 20:16 - 2014-01-08 20:16 - 00000000 ____D C:\Windows\AsDmiHtm
2014-01-08 20:16 - 2014-01-08 20:16 - 00000000 ____D C:\Program Files\Creative
2014-01-08 20:16 - 2014-01-08 20:16 - 00000000 ____D C:\Program Files (x86)\OpenAL
2014-01-08 20:16 - 2014-01-08 20:16 - 00000000 ____D C:\Program Files (x86)\Creative
2014-01-08 20:15 - 2014-01-08 20:15 - 00001060 _____ C:\users\Genetic
2014-01-08 20:15 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\System32\NDF
2014-01-08 20:13 - 2014-01-08 20:13 - 00000000 ____H C:\Windows\System32\Drivers\Msft_Kernel_iusb3hcs_01009.Wdf
2014-01-08 20:13 - 2014-01-08 20:13 - 00000000 ____D C:\Program Files (x86)\Marvell
2014-01-08 20:13 - 2014-01-08 20:13 - 00000000 ____D C:\Program Files (x86)\ASM104xUSB3
2014-01-08 20:09 - 2014-01-08 20:09 - 00000000 ____D C:\Users\Genetic Styles\AppData\Roaming\InstallShield
2014-01-08 20:09 - 2014-01-08 20:09 - 00000000 ____D C:\Intel
2014-01-08 20:08 - 2014-01-08 20:08 - 00016896 _____ (ASUS) C:\Windows\AsTaskSched.dll
2014-01-08 20:08 - 2009-07-13 21:32 - 00000000 ____D C:\Windows\System32\restore
2014-01-08 20:07 - 2014-01-08 20:07 - 00001769 _____ C:\Windows\Language_trs.ini
2014-01-08 20:07 - 2014-01-08 20:07 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies
2014-01-08 20:05 - 2014-01-08 20:05 - 00000000 ____D C:\Users\Genetic Styles\AppData\Local\VirtualStore
2014-01-08 20:04 - 2014-01-08 20:04 - 00000020 ___SH C:\Users\Genetic Styles\ntuser.ini
2014-01-08 20:04 - 2009-07-13 20:45 - 00000000 ____D C:\Windows\Setup
2014-01-08 20:03 - 2014-01-08 20:03 - 00000000 ____D C:\Recovery

==================== Known DLLs (Whitelisted) ================


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys
[2014-01-08 20:08] - [2011-02-24 22:36] - 0295296 ____A (Microsoft Corporation) C9D0EAF58D6BA71E128E715EA43AD87D


==================== EXE ASSOCIATION =====================

HKLM\...\.exe: exefile => OK
HKLM\...\exefile\DefaultIcon: %1 => OK
HKLM\...\exefile\open\command: "%1" %* => OK

==================== Restore Points =========================

Restore point made on: 2014-01-24 21:53:29
Restore point made on: 2014-01-24 21:55:46
Restore point made on: 2014-01-24 21:58:59
Restore point made on: 2014-01-24 21:59:23
Restore point made on: 2014-01-24 22:00:56
Restore point made on: 2014-01-24 22:08:51
Restore point made on: 2014-01-24 22:13:36
Restore point made on: 2014-01-24 22:23:43
Restore point made on: 2014-01-24 22:32:05
Restore point made on: 2014-01-24 22:40:58
Restore point made on: 2014-01-24 22:51:26

==================== Memory info ===========================

Percentage of memory in use: 9%
Total physical RAM: 8143.71 MB
Available physical RAM: 7381.58 MB
Total Pagefile: 8141.86 MB
Available Pagefile: 7378.88 MB
Total Virtual: 8192 MB
Available Virtual: 8191.87 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:55.89 GB) (Free:26.71 GB) NTFS
Drive d: () (Fixed) (Total:232.88 GB) (Free:135.41 GB) NTFS
Drive e: (Black Century) (Fixed) (Total:232.88 GB) (Free:175.06 GB) NTFS
Drive f: (System Reserved) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive g: (SSD Secondary) (Fixed) (Total:55.9 GB) (Free:34.73 GB) NTFS
Drive h: (SSD Main Part 2) (Fixed) (Total:55.89 GB) (Free:36.82 GB) NTFS
Drive I: (Sauce Boss) (Fixed) (Total:127.89 GB) (Free:27.36 GB) NTFS
Drive j: (Gay Bacon Strips) (Fixed) (Total:61.93 GB) (Free:20.88 GB) NTFS
Drive l: (STYLES MK2) (Fixed) (Total:465.65 GB) (Free:423.47 GB) FAT32
Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 112 GB) (Disk ID: A4743AC5)
Partition 1: (Not Active) - (Size=56 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=56 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 233 GB) (Disk ID: 3217EDB5)
Partition 1: (Not Active) - (Size=233 GB) - (Type=07 NTFS)

========================================================
Disk: 2 (MBR Code: Windows 7 or Vista) (Size: 233 GB) (Disk ID: 5DDE4087)
Partition 1: (Not Active) - (Size=233 GB) - (Type=07 NTFS)

========================================================
Disk: 3 (MBR Code: Windows 7 or 8) (Size: 190 GB) (Disk ID: B7CEB7CE)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=128 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=62 GB) - (Type=07 NTFS)

========================================================
Disk: 4 (MBR Code: Windows 7 or 8) (Size: 56 GB) (Disk ID: 97BBA4FB)
Partition 1: (Active) - (Size=56 GB) - (Type=07 NTFS)

========================================================
Disk: 5 (Size: 466 GB) (Disk ID: 44FDFE06)
Partition 1: (Not Active) - (Size=466 GB) - (Type=0C)


LastRegBack: 2014-01-19 20:54

==================== End Of Log ============================
 
Delete existing "fixlist.txt" file from your flash drive.

Download attached fixlist.txt file and save it to the very same USB flash drive you've been using. Plug the drive back in.

NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system

On Vista or Windows 7/8: Now please enter System Recovery Options.
On Windows XP: Now please boot into the OTLPE CD.
Run FRST/FRST64 and press the Fix button just once and wait.
The tool will make a log on the flashdrive (Fixlog.txt) please post it to your reply.
See if you can boot normally.
 

Attachments

  • fixlist.txt
    29 bytes · Views: 1
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 25-01-2014 01
Ran by SYSTEM at 2014-01-25 11:41:26 Run:2
Running from L:\
Boot Mode: Recovery
==============================================

Content of fixlist:
*****************
LastRegBack: 2014-01-19 20:54
*****************

DEFAULT hive was successfully copied to System32\config\HiveBackup
DEFAULT hive was successfully restored from registry back up.
SAM hive was successfully copied to System32\config\HiveBackup
SAM hive was successfully restored from registry back up.
SECURITY hive was successfully copied to System32\config\HiveBackup
SECURITY hive was successfully restored from registry back up.
SOFTWARE hive was successfully copied to System32\config\HiveBackup
SOFTWARE hive was successfully restored from registry back up.
SYSTEM hive was successfully copied to System32\config\HiveBackup
SYSTEM hive was successfully restored from registry back up.

==== End of Fixlog ====

I can start normally and am now in Windows looking at my desktop.
 
Step 1: Ran a scan with avast and found
  • C:\FRST\Quarantine\rpcss.dll
  • Severity: High
  • Status: Threat: Win64: Patched-A [Trj]
Should I be taking action against this?
 
MBAM Log:

Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org

Database version: v2014.01.25.05

Windows 7 x64 NTFS
Internet Explorer 8.0.7600.16385
Genetic Styles :: GENETICSTYLES [administrator]

1/25/2014 12:10:53 PM
mbam-log-2014-01-25 (12-10-53).txt

Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 207723
Time elapsed: 1 minute(s), 9 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

(end)
 
DDS Log:

DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 8.0.7600.16385
Run by Genetic Styles at 12:12:37 on 2014-01-25
Microsoft Windows 7 Ultimate 6.1.7600.0.1252.1.1033.18.8144.5413 [GMT -7:00]
.
AV: avast! Antivirus *Enabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B}
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: avast! Antivirus *Enabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
.
============== Running Processes ===============
.
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
C:\Windows\SysWOW64\PnkBstrA.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\taskhost.exe
C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe
C:\Program Files\SteelSeries\SteelSeries Engine\SteelSeriesEngine.exe
C:\Program Files (x86)\RocketDock\RocketDock.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Windows\SysWOW64\Ctxfihlp.exe
C:\Program Files\UltraMon\UltraMon.exe
C:\Program Files\UltraMon\UltraMonTaskbar.exe
C:\Windows\SysWOW64\CTXFISPI.EXE
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files (x86)\Common Files\Realtime Soft\RTSHookInterop\x32\RTSHookInterop.exe
C:\Windows\system32\msiexec.exe
C:\Windows\Microsoft.NET\Framework64\v2.0.50727\dfsvc.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\Program Files\AVAST Software\Avast\avastUi.exe
C:\Windows\system32\taskeng.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
BHO: avast! Online Security: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
TB: avast! Online Security: {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
uRun: [SteelSeries Engine] C:\Program Files\SteelSeries\SteelSeries Engine\SteelSeriesEngine.exe
uRun: [RocketDock] "C:\Program Files (x86)\RocketDock\RocketDock.exe"
uRun: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
mRun: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
mRun: [CTxfiHlp] CTXFIHLP.EXE
mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\UltraMon.lnk - C:\Windows\Installer\{9069EE0A-7615-4D86-AD80-CA263E936DA6}\IcoUltraMon.ico
uPolicies-Explorer: NoDrives = dword:0
mPolicies-Explorer: NoDrives = dword:0
mPolicies-System: ConsentPromptBehaviorAdmin = dword:0
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableLUA = dword:0
mPolicies-System: EnableUIADesktopToggle = dword:0
mPolicies-System: PromptOnSecureDesktop = dword:0
TCP: NameServer = 8.8.8.8 8.8.4.4 68.105.28.12
TCP: Interfaces\{8F7BE16A-AB82-4EBB-AC6F-37A20B9CB750} : DHCPNameServer = 8.8.8.8 8.8.4.4 68.105.28.12
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
SSODL: WebCheck - <orphaned>
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.76\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
x64-BHO: avast! Online Security: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
x64-TB: avast! Online Security: {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
x64-Run: [XboxStat] "C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe" silentrun
x64-Run: [NvBackend] "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
x64-Run: [ShadowPlay] C:\Windows\System32\rundll32.exe C:\Windows\System32\nvspcap64.dll,ShadowPlayOnSystemStart
x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>
x64-SSODL: WebCheck - <orphaned>
.
============= SERVICES / DRIVERS ===============
.
R0 aswVmm;avast! VM Monitor;C:\Windows\System32\drivers\aswVmm.sys [2014-1-24 207904]
R0 iusb3hcs;Intel(R) USB 3.0 Host Controller Switch Driver;C:\Windows\System32\drivers\iusb3hcs.sys [2014-1-8 19264]
R1 aswSnx;aswSnx;C:\Windows\System32\drivers\aswSnx.sys [2014-1-24 1038072]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;C:\Windows\System32\drivers\dtsoftbus01.sys [2014-1-16 283064]
R2 aswMonFlt;aswMonFlt;C:\Windows\System32\drivers\aswMonFlt.sys [2014-1-24 78648]
R2 avast! Antivirus;avast! Antivirus;C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-1-25 50344]
R2 NvNetworkService;NVIDIA Network Service;C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-1-14 1494304]
R2 NvStreamSvc;NVIDIA Streamer Service;C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2014-1-14 15129376]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-12-19 411936]
R2 UltraMonUtility;UltraMon Utility Driver;C:\Program Files (x86)\Common Files\Realtime Soft\UltraMonMirrorDrv\x64\UltraMonUtility.sys [2012-8-24 20512]
R2 WinI2C-DDC;WinI2C-DDC Kernel Mode Driver;C:\Windows\System32\drivers\ddcdrv.sys [2014-1-8 20832]
R3 asmthub3;ASMedia USB3 Hub Service;C:\Windows\System32\drivers\asmthub3.sys [2012-8-20 138568]
R3 asmtxhci;ASMEDIA XHCI Service;C:\Windows\System32\drivers\asmtxhci.sys [2012-8-20 416072]
R3 aswStm;aswStm;C:\Windows\System32\drivers\aswStm.sys [2014-1-24 80184]
R3 busenum;SteelBusSvc;C:\Windows\System32\drivers\SteelBus64.sys [2013-10-30 140800]
R3 CT20XUT.SYS;CT20XUT.SYS;C:\Windows\System32\drivers\CT20XUT.sys [2011-8-22 202840]
R3 CTEXFIFX.SYS;CTEXFIFX.SYS;C:\Windows\System32\drivers\CTEXFIFX.sys [2011-8-22 1417304]
R3 CTHWIUT.SYS;CTHWIUT.SYS;C:\Windows\System32\drivers\CTHWIUT.sys [2011-8-22 94808]
R3 iusb3hub;Intel(R) USB 3.0 Hub Driver;C:\Windows\System32\drivers\iusb3hub.sys [2014-1-8 357184]
R3 iusb3xhc;Intel(R) USB 3.0 eXtensible Host Controller Driver;C:\Windows\System32\drivers\iusb3xhc.sys [2014-1-8 789824]
R3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);C:\Windows\System32\drivers\nvvad64v.sys [2014-1-14 39200]
R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\System32\drivers\Rt64win7.sys [2014-1-8 726160]
R3 SAlphamHid;SteelHIDSvc;C:\Windows\System32\drivers\SAlpham64.sys [2013-5-31 38016]
RUnknown ajqycgbe;ajqycgbe; [x]
S0 aswRvrt;avast! Revert;C:\Windows\System32\drivers\aswRvrt.sys [2014-1-24 65776]
S1 aswSP;aswSP;C:\Windows\System32\drivers\aswSP.sys [2014-1-24 421704]
S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-10-23 172192]
S3 CT20XUT;CT20XUT;C:\Windows\System32\drivers\CT20XUT.sys [2011-8-22 202840]
S3 CTEXFIFX;CTEXFIFX;C:\Windows\System32\drivers\CTEXFIFX.sys [2011-8-22 1417304]
S3 CTHWIUT;CTHWIUT;C:\Windows\System32\drivers\CTHWIUT.sys [2011-8-22 94808]
.
=============== Created Last 30 ================
.
2014-01-25 19:01:29 -------- d-----w- C:\Program Files\AVAST Software
2014-01-25 18:14:43 -------- d-----w- C:\FRST
2014-01-25 06:51:42 -------- d-----w- C:\Users\Genetic Styles\AppData\Roaming\AVAST Software
2014-01-25 06:51:35 92544 ----a-w- C:\Windows\System32\drivers\aswRdr2.sys
2014-01-25 06:51:35 80184 ----a-w- C:\Windows\System32\drivers\aswStm.sys
2014-01-25 06:51:35 78648 ----a-w- C:\Windows\System32\drivers\aswMonFlt.sys
2014-01-25 06:51:35 65776 ----a-w- C:\Windows\System32\drivers\aswRvrt.sys
2014-01-25 06:51:35 207904 ----a-w- C:\Windows\System32\drivers\aswVmm.sys
2014-01-25 06:51:35 1038072 ----a-w- C:\Windows\System32\drivers\aswSnx.sys
2014-01-25 06:51:34 43152 ----a-w- C:\Windows\avastSS.scr
2014-01-25 06:51:14 -------- d-----w- C:\ProgramData\AVAST Software
2014-01-25 06:28:05 -------- d-sh--w- C:\$RECYCLE.BIN
2014-01-25 06:24:22 -------- d-----w- C:\Users\Genetic Styles\AppData\Local\Realtime Soft
2014-01-25 06:21:21 -------- d-----w- C:\Windows\ERUNT
2014-01-25 06:17:53 -------- d-----w- C:\AdwCleaner
2014-01-23 06:52:30 -------- d-----w- C:\Users\Genetic Styles\AppData\Roaming\TheBannerSaga
2014-01-17 05:38:27 283064 ----a-w- C:\Windows\System32\drivers\dtsoftbus01.sys
2014-01-17 05:38:26 -------- d-----w- C:\Users\Genetic Styles\AppData\Roaming\DAEMON Tools Lite
2014-01-17 05:38:25 -------- d-----w- C:\Program Files (x86)\DAEMON Tools Lite
2014-01-17 05:38:09 -------- d-----w- C:\ProgramData\DAEMON Tools Lite
2014-01-17 05:18:21 -------- d-----w- C:\Program Files\CCleaner
2014-01-17 00:54:25 98816 ----a-w- C:\Windows\sed.exe
2014-01-17 00:54:25 256000 ----a-w- C:\Windows\PEV.exe
2014-01-17 00:54:25 208896 ----a-w- C:\Windows\MBR.exe
2014-01-16 23:55:31 -------- d-----w- C:\ProgramData\Sophos
2014-01-16 23:55:28 73728 ----a-r- C:\Users\Genetic Styles\AppData\Roaming\Microsoft\Installer\{B829E117-D072-41EA-9606-9826A38D34C1}\SVRTgui.exe1_810EDD9E2F0A4E2BACF86673C38D9F48.exe
2014-01-16 23:55:28 73728 ----a-r- C:\Users\Genetic Styles\AppData\Roaming\Microsoft\Installer\{B829E117-D072-41EA-9606-9826A38D34C1}\SVRTgui.exe_810EDD9E2F0A4E2BACF86673C38D9F48.exe
2014-01-16 23:55:28 73728 ----a-r- C:\Users\Genetic Styles\AppData\Roaming\Microsoft\Installer\{B829E117-D072-41EA-9606-9826A38D34C1}\ARPPRODUCTICON.exe
2014-01-16 23:55:27 -------- d-----w- C:\Program Files (x86)\Sophos
2014-01-16 23:51:22 -------- d-----w- C:\Windows\pss
2014-01-16 23:44:37 -------- d-----w- C:\Users\Genetic Styles\AppData\Roaming\WinZip
2014-01-16 23:43:19 499712 ----a-w- C:\Windows\SysWow64\msvcp71.dll
2014-01-16 23:43:19 348160 ----a-w- C:\Windows\SysWow64\msvcr71.dll
2014-01-16 23:43:11 -------- d-----w- C:\Users\Genetic Styles\AppData\Local\The Weather Channel
2014-01-16 00:44:43 -------- d-----w- C:\Users\Genetic Styles\AppData\Roaming\NVIDIA
2014-01-15 16:16:22 -------- d-----w- C:\Users\Genetic Styles\AppData\Local\gtk-2.0
2014-01-15 07:03:24 -------- d-----w- C:\TDSSKiller_Quarantine
2014-01-15 06:20:17 -------- d-----w- C:\Program Files\Core Temp
2014-01-15 06:07:05 982232 ----a-w- C:\Windows\SysWow64\nvspcap.dll
2014-01-15 06:07:05 1100248 ----a-w- C:\Windows\System32\nvspcap64.dll
2014-01-15 06:07:05 -------- d-----w- C:\Users\Genetic Styles\AppData\Local\NVIDIA
2014-01-15 05:29:11 -------- d-----w- C:\Users\Genetic Styles\AppData\Roaming\Malwarebytes
2014-01-15 05:29:08 -------- d-----w- C:\ProgramData\Malwarebytes
2014-01-15 05:29:07 25928 ----a-w- C:\Windows\System32\drivers\mbam.sys
2014-01-15 05:29:07 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-01-12 07:23:08 -------- d-----w- C:\Users\Genetic Styles\AppData\Local\Warframe
2014-01-11 22:13:33 -------- d-----w- C:\Users\Genetic Styles\AppData\Roaming\Mumble
2014-01-11 20:22:28 -------- d-----w- C:\Users\Genetic Styles\AppData\Roaming\OBS
2014-01-11 20:22:26 -------- d-----w- C:\Program Files\OBS
2014-01-11 20:22:25 -------- d-----w- C:\Program Files (x86)\OBS
2014-01-10 06:48:12 -------- d-----w- C:\Program Files\Microsoft Xbox 360 Accessories
2014-01-09 12:22:55 -------- d--h--w- C:\Program Files (x86)\Common Files\EAInstaller
2014-01-09 12:22:54 -------- d-----w- C:\Program Files (x86)\Battlelog Web Plugins
2014-01-09 12:22:29 281872 ----a-w- C:\Windows\SysWow64\PnkBstrB.exe
2014-01-09 12:22:29 281872 ----a-w- C:\Windows\SysWow64\PnkBstrB.ex0
2014-01-09 12:22:28 76888 ----a-w- C:\Windows\SysWow64\PnkBstrA.exe
2014-01-09 12:22:22 -------- d-----w- C:\ProgramData\Package Cache
2014-01-09 06:23:11 -------- d-----w- C:\Users\Genetic Styles\AppData\Roaming\LolClient
2014-01-09 05:57:28 -------- d-----w- C:\Program Files (x86)\RocketDock
2014-01-09 05:57:17 -------- d-----w- C:\Program Files (x86)\MPC-HC
2014-01-09 05:57:11 -------- d-----w- C:\Program Files (x86)\Mumble
2014-01-09 05:54:13 -------- d-----w- C:\Program Files\FolderSize
2014-01-09 05:40:37 -------- d-----w- C:\Users\Genetic Styles\AppData\Roaming\.purple
2014-01-09 05:40:12 -------- d-----w- C:\Program Files (x86)\Pidgin
2014-01-09 05:36:47 20832 ----a-w- C:\Windows\System32\drivers\ddcdrv.sys
2014-01-09 05:36:47 155528 ----a-w- C:\Windows\System32\DDCHELPER.dll
2014-01-09 05:14:49 -------- d-----w- C:\Users\Genetic Styles\AppData\Local\Adobe
2014-01-09 05:04:14 -------- d-----w- C:\Program Files\Ventrilo
2014-01-09 05:03:38 -------- d-----w- C:\Program Files (x86)\Common Files\Wise Installation Wizard
2014-01-09 04:48:31 -------- d-----w- C:\Program Files (x86)\Combined Community Codec Pack
2014-01-09 04:48:22 -------- d-----w- C:\Users\Genetic Styles\AppData\Local\Programs
2014-01-09 04:47:54 -------- d-----w- C:\Users\Genetic Styles\AppData\Roaming\Realtime Soft
2014-01-09 04:47:54 -------- d-----w- C:\ProgramData\Realtime Soft
2014-01-09 04:47:54 -------- d-----w- C:\Program Files\UltraMon
2014-01-09 04:47:54 -------- d-----w- C:\Program Files (x86)\Common Files\Realtime Soft
2014-01-09 04:47:00 -------- d-----w- C:\Program Files (x86)\DAMN NFO Viewer
2014-01-09 04:45:41 -------- d-----w- C:\Windows\Panther
2014-01-09 04:41:54 267936 ------w- C:\Windows\System32\MpSigStub.exe
2014-01-09 04:41:54 10315576 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1EEE24E7-491B-44C4-88FB-0BD4B8A085F6}\mpengine.dll
2014-01-09 04:41:15 -------- d-----r- C:\Program Files (x86)\Skype
2014-01-09 04:40:37 -------- d-----w- C:\Program Files (x86)\Origin Games
2014-01-09 04:39:45 -------- d-----w- C:\Users\Genetic Styles\AppData\Roaming\uTorrent
2014-01-09 04:39:39 -------- d-----w- C:\Users\Genetic Styles\AppData\Roaming\Origin
2014-01-09 04:39:38 -------- d-----w- C:\Users\Genetic Styles\AppData\Local\Origin
2014-01-09 04:39:06 -------- d-----w- C:\ProgramData\Origin
2014-01-09 04:39:06 -------- d-----w- C:\ProgramData\Electronic Arts
2014-01-09 04:38:58 -------- d-----w- C:\Program Files (x86)\Origin
2014-01-09 04:36:17 -------- d-----w- C:\Program Files (x86)\VideoLAN
2014-01-09 04:30:15 -------- d-----w- C:\Users\Genetic Styles\AppData\Local\SteelSeries_ApS
2014-01-09 04:30:09 -------- d-----w- C:\Users\Genetic Styles\AppData\Roaming\SteelSeries
2014-01-09 04:29:22 -------- d-----w- C:\ProgramData\SteelSeries
2014-01-09 04:28:52 -------- d-----w- C:\Program Files\SteelSeries
2014-01-09 04:27:10 -------- d-----w- C:\Users\Genetic Styles\AppData\Local\Google
2014-01-09 04:26:51 -------- d-----w- C:\Users\Genetic Styles\AppData\Local\Deployment
2014-01-09 04:26:51 -------- d-----w- C:\Users\Genetic Styles\AppData\Local\Apps
2014-01-09 04:25:54 74344 ----a-w- C:\Windows\System32\RtNicProp64.dll
2014-01-09 04:25:54 726160 ----a-w- C:\Windows\System32\drivers\Rt64win7.sys
2014-01-09 04:25:54 107552 ----a-w- C:\Windows\System32\RTNUninst64.dll
2014-01-09 04:18:54 53248 ----a-r- C:\Windows\SysWow64\CSVer.dll
2014-01-09 04:17:01 7062 ----a-w- C:\Windows\SysWow64\audiopid.vxd
2014-01-09 04:15:20 -------- d-----w- C:\Users\Genetic Styles\AppData\Local\ElevatedDiagnostics
2014-01-09 04:13:49 19264 ----a-w- C:\Windows\System32\drivers\iusb3hcs.sys
2014-01-09 04:13:43 789824 ----a-w- C:\Windows\System32\drivers\iusb3xhc.sys
2014-01-09 04:13:42 357184 ----a-w- C:\Windows\System32\drivers\iusb3hub.sys
2014-01-09 04:13:27 -------- d-----w- C:\Program Files (x86)\Marvell
2014-01-09 04:13:09 -------- d-----w- C:\Program Files (x86)\ASM104xUSB3
2014-01-09 04:11:56 -------- d-----w- C:\Program Files (x86)\Realtek
2014-01-09 04:11:51 -------- d--h--w- C:\Program Files (x86)\Temp
2014-01-09 04:11:28 32768 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\Objectps.dll
2014-01-09 04:11:28 204800 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\11\50\Intel32\iuser.dll
2014-01-09 04:11:27 69715 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\11\50\Intel32\ctor.dll
2014-01-09 04:11:27 5632 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\11\50\Intel32\DotNetInstaller.exe
2014-01-09 04:11:27 274432 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\11\50\Intel32\iscript.dll
2014-01-09 04:11:26 757760 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\11\50\Intel32\iKernel.dll
2014-01-09 04:11:24 200836 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\11\50\Intel32\iGdi.dll
2014-01-09 04:11:23 331908 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\11\50\Intel32\setup.dll
2014-01-09 04:09:59 -------- d-----w- C:\Intel
2014-01-09 04:08:22 -------- d-----w- C:\Windows\Chipset
2014-01-09 04:08:21 16896 ----a-w- C:\Windows\AsTaskSched.dll
2014-01-09 04:08:19 295296 ----a-w- C:\Windows\System32\drivers\volsnap.sys
2014-01-09 04:07:21 -------- d-sh--w- C:\Windows\Installer
2014-01-09 04:06:48 -------- d-----w- C:\ProgramData\NVIDIA Corporation
2014-01-09 04:06:46 -------- d-----w- C:\Program Files (x86)\NVIDIA Corporation
2014-01-09 04:06:08 -------- d-----w- C:\Program Files\NVIDIA Corporation
2014-01-09 04:05:01 -------- d-----w- C:\Users\Genetic Styles\AppData\Local\VirtualStore
2014-01-09 04:03:55 -------- d-----w- C:\Recovery
.
==================== Find3M ====================
.
2014-01-09 04:16:36 466520 ----a-w- C:\Windows\System32\wrap_oal.dll
2014-01-09 04:16:36 445016 ----a-w- C:\Windows\SysWow64\wrap_oal.dll
2014-01-09 04:16:36 123480 ----a-w- C:\Windows\System32\OpenAL32.dll
2014-01-09 04:16:36 109144 ----a-w- C:\Windows\SysWow64\OpenAL32.dll
2013-12-19 19:20:22 590112 ----a-w- C:\Windows\SysWow64\nvStreaming.exe
2013-12-19 18:53:46 6671648 ----a-w- C:\Windows\System32\nvcpl.dll
2013-12-19 18:53:46 3490080 ----a-w- C:\Windows\System32\nvsvc64.dll
2013-12-19 18:53:44 922912 ----a-w- C:\Windows\System32\nvvsvc.exe
2013-12-19 18:53:44 63776 ----a-w- C:\Windows\System32\nvshext.dll
2013-12-19 18:53:44 386336 ----a-w- C:\Windows\System32\nvmctray.dll
2013-12-19 05:01:48 3539040 ----a-w- C:\Windows\System32\nvcoproc.bin
2013-12-05 08:42:30 39200 ----a-w- C:\Windows\System32\drivers\nvvad64v.sys
2013-12-05 08:42:26 35104 ----a-w- C:\Windows\System32\nvaudcap64v.dll
2013-12-05 08:42:26 32544 ----a-w- C:\Windows\SysWow64\nvaudcap32v.dll
2013-11-28 13:38:22 31520 ----a-w- C:\Windows\System32\nvhdap64.dll
2013-11-28 13:38:18 197408 ----a-w- C:\Windows\System32\drivers\nvhda64v.sys
2013-11-22 08:36:08 1515296 ----a-w- C:\Windows\System32\nvhdagenco6420103.dll
2013-10-30 16:15:32 140800 ----a-w- C:\Windows\System32\drivers\SteelBus64.sys
.
============= FINISH: 12:12:44.32 ===============

It said I MUST attach this file, so I am.
 

Attachments

  • attach.txt
    5.4 KB · Views: 1
Should I be taking action against this?
That's the infected file we replaced using FRST.
It's already in quarantine folder.
You can let Avast remove it if you wish.

redtarget.gif
Please observe forum rules.
All logs have to be pasted not attached.
Paste Attach.txt log from DDS into your next reply.

redtarget.gif
Download RogueKiller for 32bit or Roguekiller for 64bit to your Desktop.
  • Close all the running programs
  • Windows Vista/7 users: right click on RogueKiller.exe, click Run as Administrator
  • Otherwise just double-click on RogueKiller.exe
  • Pre-scan will start. Let it finish.
  • Click on SCAN button.
  • Wait until the Status box shows Scan Finished
  • Click on Delete.
  • Wait until the Status box shows Deleting Finished.
  • Click on Report and copy/paste the content of the Notepad into your next reply.
  • RKreport.txt could also be found on your desktop.
  • If more than one log is produced post all logs.
  • If RogueKiller has been blocked, do not hesitate to try a few times more. If really won't run, rename it to winlogon.exe (or winlogon.com) and try again

redtarget.gif
Create new restore point before proceeding with the next step....
How to: http://www.smartestcomputing.us.com/topic/63983-how-to-create-new-restore-point-all-windows/

Download Malwarebytes Anti-Rootkit (MBAR) from HERE
  • Unzip downloaded file.
  • Open the folder where the contents were unzipped and run mbar.exe
  • Follow the instructions in the wizard to update and allow the program to scan your computer for threats.
  • Click on the Cleanup button to remove any threats and reboot if prompted to do so.
  • Wait while the system shuts down and the cleanup process is performed.
  • Perform another scan with Malwarebytes Anti-Rootkit to verify that no threats remain. If they do, then click Cleanup once more and repeat the process.
  • When done, please post the two logs produced they will be in the MBAR folder..... mbar-log-xxxxx.txt and system-log.txt
 
Attached Log:
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows 7 Ultimate
Boot Device: \Device\HarddiskVolume4
Install Date: 1/8/2014 9:04:18 PM
System Uptime: 1/25/2014 11:42:54 AM (1 hours ago)
.
Motherboard: ASUSTeK COMPUTER INC. | | P8Z77-V LE PLUS
Processor: Intel(R) Core(TM) i5-2500K CPU @ 3.30GHz | LGA1155 | 2772/100mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 56 GiB total, 26.944 GiB free.
D: is FIXED (NTFS) - 233 GiB total, 175.058 GiB free.
E: is FIXED (NTFS) - 233 GiB total, 135.408 GiB free.
F: is FIXED (NTFS) - 56 GiB total, 34.733 GiB free.
G: is FIXED (NTFS) - 56 GiB total, 36.821 GiB free.
H: is FIXED (NTFS) - 128 GiB total, 27.364 GiB free.
I: is FIXED (NTFS) - 62 GiB total, 20.885 GiB free.
J: is CDROM ()
K: is FIXED (NTFS) - 0 GiB total, 0.063 GiB free.
L: is CDROM ()
.
==== Disabled Device Manager Items =============
.
Class GUID: {745a17a0-74d3-11d0-b6fe-00a0c90f57da}
Description: USB Input Device
Device ID: USB\VID_1B1C&PID_0C04\6&182A12DA&0&8
Manufacturer: (Standard system devices)
Name: USB Input Device
PNP Device ID: USB\VID_1B1C&PID_0C04\6&182A12DA&0&8
Service: HidUsb
.
==== System Restore Points ===================
.
RP39: 1/24/2014 10:55:44 PM - Windows Update
RP40: 1/24/2014 10:58:57 PM - Installed Microsoft Fix it 50123
RP41: 1/24/2014 10:59:21 PM - Windows Update
RP42: 1/24/2014 11:00:54 PM - Windows Update
RP43: 1/24/2014 11:08:49 PM - Windows Update
RP44: 1/24/2014 11:13:32 PM - Windows Update
RP45: 1/24/2014 11:23:40 PM - Windows Update
RP46: 1/24/2014 11:32:03 PM - Windows Update
RP47: 1/24/2014 11:40:57 PM - Windows Update
RP48: 1/24/2014 11:51:24 PM - avast! antivirus system restore point
RP34: 1/25/2014 12:01:25 PM - avast! antivirus system restore point
.
==== Installed Programs ======================
.
µTorrent
Adobe Reader XI (11.0.04)
Asmedia ASM104x USB 3.0 Host Controller Driver
avast! Free Antivirus
Battlefield 4™
Battlelog Web Plugins
CCleaner
Combined Community Codec Pack 2013-11-27
Core Temp 1.0 RC6
Creative Audio Control Panel
Creative Software AutoUpdate
Creative Sound Blaster Properties x64 Edition
DAEMON Tools Lite
DayZ
Deadlight
ESN Sonar
FileZilla Client 3.7.3
Folder Size (64-bit)
GeForce Experience NvStream Client Components
Godus
Google Chrome
Google Update Helper
Insurgency
Intel(R) USB 3.0 eXtensible Host Controller Driver
Malwarebytes Anti-Malware version 1.75.0.1300
marvell 91xx driver
METAL GEAR RISING: REVENGEANCE
Microsoft Silverlight
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610
Microsoft Xbox 360 Accessories 1.2
MPC-HC 1.7.1
Mumble 1.2.4
Notepad++
NVIDIA 3D Vision Controller Driver 332.21
NVIDIA 3D Vision Driver 332.21
NVIDIA Control Panel 332.21
NVIDIA Graphics Driver 332.21
NVIDIA HD Audio Driver 1.3.30.1
NVIDIA Install Application
NVIDIA Network Service
NVIDIA PhysX
NVIDIA PhysX System Software 9.13.0725
NVIDIA ShadowPlay 10.11.15
NVIDIA Stereoscopic 3D Driver
NVIDIA Update 10.11.15
NVIDIA Update Core
NVIDIA Virtual Audio 1.2.19
Open Broadcaster Software
OpenAL
Origin
Pidgin
PunkBuster Services
Realtek Ethernet Controller Driver
RocketDock 1.3.5
SHIELD Streaming
Skype™ 6.11
Sophos Virus Removal Tool
SteelSeries Engine
Strike Suit Infinity
Strike Suit Zero
Strike Vector
Takedown: Red Sabre
UltraMon
Ventrilo Client for Windows x64
VLC media player 2.1.2
Warframe
WinRAR 5.01 (64-bit)
XCOM: Enemy Unknown
.
==== Event Viewer Messages From Past Week ========
.
1/25/2014 1:02:26 AM, Error: Service Control Manager [7023] - The Power service terminated with the following error: The WMI request could not be completed and should be retried.
1/24/2014 11:55:08 PM, Error: Service Control Manager [7032] - The Service Control Manager tried to take a corrective action (Reboot the machine) after the unexpected termination of the Plug and Play service, but this action failed with the following error: A system shutdown has already been scheduled.
1/24/2014 11:55:08 PM, Error: Service Control Manager [7031] - The Plug and Play service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Reboot the machine.
1/24/2014 11:55:08 PM, Error: Service Control Manager [7031] - The DCOM Server Process Launcher service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Reboot the machine.
1/24/2014 11:27:23 PM, Error: Service Control Manager [7030] - The PEVSystemStart service is marked as an interactive service. However, the system is configured to not allow interactive services. This service may not function properly.
1/24/2014 11:27:11 PM, Error: Application Popup [1060] - \??\C:\ComboFix\catchme.sys has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
.
==== End Of File ===========================
 
Roguekiller Log:

RogueKiller V8.8.3 _x64_ [Jan 24 2014] by Tigzy
mail : tigzyRK<at>gmail<dot>com
Feedback : http://www.adlice.com/forum/
Website : http://www.adlice.com/softwares/roguekiller/
Blog : http://www.adlice.com

Operating System : Windows 7 (6.1.7600 ) 64 bits version
Started in : Normal mode
User : Genetic Styles [Admin rights]
Mode : Remove -- Date : 01/25/2014 12:24:39
| ARK || FAK || MBR |

¤¤¤ Bad processes : 0 ¤¤¤

¤¤¤ Registry Entries : 8 ¤¤¤
[HJ POL][PUM] HKLM\[...]\System : DisableRegistryTools (0) -> DELETED
[HJ POL][PUM] HKLM\[...]\System : ConsentPromptBehaviorAdmin (0) -> REPLACED (2)
[HJ POL][PUM] HKLM\[...]\System : EnableLUA (0) -> REPLACED (1)
[HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : DisableRegistryTools (0) -> [0x2] The system cannot find the file specified.
[HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : ConsentPromptBehaviorAdmin (0) -> REPLACED (2)
[HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : EnableLUA (0) -> REPLACED (1)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> REPLACED (0)
[HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> REPLACED (0)

¤¤¤ Scheduled tasks : 0 ¤¤¤

¤¤¤ Startup Entries : 0 ¤¤¤

¤¤¤ Web browsers : 0 ¤¤¤

¤¤¤ Browser Addons : 0 ¤¤¤

¤¤¤ Particular Files / Folders: ¤¤¤

¤¤¤ Driver : [NOT LOADED 0x0] ¤¤¤

¤¤¤ External Hives: ¤¤¤

¤¤¤ Infection : ¤¤¤

¤¤¤ HOSTS File: ¤¤¤
--> %SystemRoot%\System32\drivers\etc\hosts


127.0.0.1 localhost


¤¤¤ MBR Check: ¤¤¤

+++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) INTEL SSDSA2CW120G3 ATA Device +++++
--- User ---
[MBR] 31c2a747ad7c9ad02cf212013febe788
[BSP] caddbb8c0f2f008e3959dcde0b3f4300 : Windows 7/8 MBR Code
Partition table:
0 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 57236 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 117221376 | Size: 57235 Mo
User = LL1 ... OK!
User = LL2 ... OK!

+++++ PhysicalDrive1: (\\.\PHYSICALDRIVE1 @ IDE) Samsung SSD 840 EVO 250GB ATA Device +++++
--- User ---
[MBR] 484585538c7686e452911eb4fd42a41e
[BSP] d5c9b41f62450ed33d298998f2532640 : Windows 7/8 MBR Code
Partition table:
0 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 238473 Mo
User = LL1 ... OK!
User = LL2 ... OK!

+++++ PhysicalDrive2: (\\.\PHYSICALDRIVE2 @ IDE) Corsair CSSD-F60GB2 ATA Device +++++
--- User ---
[MBR] 3e7d3d453d4447b0562ae330274e9de0
[BSP] 806553d6a40586cbc6e3c68ff50ea024 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 57239 Mo
User = LL1 ... OK!
User = LL2 ... OK!

+++++ PhysicalDrive3: (\\.\PHYSICALDRIVE3 @ IDE) ST3250410AS ATA Device +++++
--- User ---
[MBR] 25f26761b6e1ae301da1947cb826e84d
[BSP] e629a3f0be891a81a440a637444636a1 : Windows Vista MBR Code
Partition table:
0 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 238473 Mo
User = LL1 ... OK!
User = LL2 ... OK!

+++++ PhysicalDrive4: (\\.\PHYSICALDRIVE4 @ IDE) Maxtor 6L200S0 ATA Device +++++
--- User ---
[MBR] a7d295a26d8386afa0bbdbbb035845b4
[BSP] 66f988dc547712dc0e8d95e2a214d57f : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 100 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 206848 | Size: 130960 Mo
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 268412928 | Size: 63419 Mo
User = LL1 ... OK!
User = LL2 ... OK!

Finished : << RKreport[0]_D_01252014_122439.txt >>
RKreport[0]_D_01242014_231641.txt;RKreport[0]_S_01242014_231631.txt;RKreport[0]_S_01242014_231731.txt
RKreport[0]_S_01252014_122435.txt
 
MBAR Log:

Malwarebytes Anti-Rootkit BETA 1.07.0.1009
www.malwarebytes.org

Database version: v2014.01.25.09

Windows 7 x64 NTFS
Internet Explorer 8.0.7600.16385
Genetic Styles :: GENETICSTYLES [administrator]

1/25/2014 12:26:34 PM
mbar-log-2014-01-25 (12-26-34).txt

Scan type: Quick scan
Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken
Scan options disabled:
Objects scanned: 217928
Time elapsed: 3 minute(s),

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

Physical Sectors Detected: 0
(No malicious items detected)

(end)
 
Back