Solved Window 8 with Pop up Installer and Pokki Menu

C:\windows\SysWOW64\propsys.dll
2015-02-16 16:58 - 2014-08-16 01:31 - 00838144 _____ (Microsoft Corporation) C:\windows\SysWOW64\KernelBase.dll
2015-02-16 16:58 - 2014-08-16 01:04 - 00359424 _____ (Microsoft Corporation) C:\windows\system32\Wldap32.dll
2015-02-16 16:58 - 2014-08-16 00:58 - 00287744 _____ (Microsoft Corporation) C:\windows\system32\SystemEventsBrokerServer.dll
2015-02-16 16:58 - 2014-08-16 00:53 - 00118272 _____ (Microsoft Corporation) C:\windows\system32\httpprxm.dll
2015-02-16 16:58 - 2014-08-16 00:46 - 00290816 _____ (Microsoft Corporation) C:\windows\system32\ProximityService.dll
2015-02-16 16:58 - 2014-08-16 00:45 - 00267776 _____ (Microsoft Corporation) C:\windows\system32\bisrv.dll
2015-02-16 16:58 - 2014-08-16 00:43 - 00321024 _____ (Microsoft Corporation) C:\windows\SysWOW64\Wldap32.dll
2015-02-16 16:58 - 2014-08-16 00:43 - 00075776 _____ (Microsoft Corporation) C:\windows\system32\adhsvc.dll
2015-02-16 16:58 - 2014-08-16 00:31 - 00914432 _____ (Microsoft Corporation) C:\windows\system32\iphlpsvc.dll
2015-02-16 16:58 - 2014-08-16 00:31 - 00286208 _____ (Microsoft Corporation) C:\windows\system32\pcsvDevice.dll
2015-02-16 16:58 - 2014-08-16 00:29 - 00249344 _____ (Microsoft Corporation) C:\windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-02-16 16:58 - 2014-08-16 00:23 - 01106432 _____ (Microsoft Corporation) C:\windows\system32\SearchFolder.dll
2015-02-16 16:58 - 2014-08-16 00:22 - 00717824 _____ (Microsoft Corporation) C:\windows\system32\SkyDriveTelemetry.dll
2015-02-16 16:58 - 2014-08-16 00:22 - 00286208 _____ (Microsoft Corporation) C:\windows\system32\SkyDriveShell.dll
2015-02-16 16:58 - 2014-08-16 00:19 - 00189952 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-02-16 16:58 - 2014-08-16 00:18 - 04758528 _____ (Microsoft Corporation) C:\windows\system32\SyncEngine.dll
2015-02-16 16:58 - 2014-08-16 00:17 - 08757760 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Search.dll
2015-02-16 16:58 - 2014-08-16 00:14 - 00265216 _____ (Microsoft Corporation) C:\windows\SysWOW64\SkyDriveShell.dll
2015-02-16 16:58 - 2014-08-16 00:13 - 06649344 _____ (Microsoft Corporation) C:\windows\system32\mstscax.dll
2015-02-16 16:58 - 2014-08-16 00:13 - 05902848 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.Search.dll
2015-02-16 16:58 - 2014-08-16 00:13 - 00840192 _____ (Microsoft Corporation) C:\windows\SysWOW64\SearchFolder.dll
2015-02-16 16:58 - 2014-08-16 00:11 - 00920064 _____ (Microsoft Corporation) C:\windows\system32\WSShared.dll
2015-02-16 16:58 - 2014-08-16 00:10 - 01120768 _____ (Microsoft Corporation) C:\windows\system32\SkyDrive.exe
2015-02-16 16:58 - 2014-08-16 00:08 - 05777408 _____ (Microsoft Corporation) C:\windows\SysWOW64\mstscax.dll
2015-02-16 16:58 - 2014-08-16 00:07 - 00756224 _____ (Microsoft Corporation) C:\windows\SysWOW64\WSShared.dll
2015-02-16 16:58 - 2014-08-02 00:18 - 01212928 _____ (Microsoft Corporation) C:\windows\system32\schedsvc.dll
2015-02-16 16:58 - 2014-07-24 15:28 - 00468288 ____C (Microsoft Corporation) C:\windows\system32\Drivers\USBHUB3.SYS
2015-02-16 16:58 - 2014-07-24 11:42 - 01200640 ____C (Microsoft Corporation) C:\windows\system32\Drivers\bthport.sys
2015-02-16 16:58 - 2014-07-24 11:41 - 00115712 _____ (Microsoft Corporation) C:\windows\system32\Drivers\bridge.sys
2015-02-16 16:58 - 2014-07-24 10:09 - 01057280 _____ (Microsoft Corporation) C:\windows\system32\rdvidcrl.dll
2015-02-16 16:58 - 2014-07-24 09:27 - 00855552 _____ (Microsoft Corporation) C:\windows\SysWOW64\rdvidcrl.dll
2015-02-16 16:58 - 2014-07-15 18:16 - 03048880 _____ (Microsoft Corporation) C:\windows\system32\WpcMon.exe
2015-02-16 16:58 - 2014-07-15 08:29 - 03118080 _____ (Microsoft Corporation) C:\windows\system32\Wpc.dll
2015-02-16 16:58 - 2014-07-15 08:22 - 02861056 _____ (Microsoft Corporation) C:\windows\system32\WpcWebSync.dll
2015-02-16 16:58 - 2014-07-15 08:03 - 02344448 _____ (Microsoft Corporation) C:\windows\SysWOW64\Wpc.dll
2015-02-16 16:58 - 2014-05-01 13:31 - 00055328 _____ (Microsoft Corporation) C:\windows\system32\Drivers\wpcfltr.sys
2015-02-16 16:58 - 2014-04-30 04:43 - 01975296 _____ (Microsoft Corporation) C:\windows\system32\DWrite.dll
2015-02-16 16:58 - 2014-04-30 04:26 - 01345536 _____ (Microsoft Corporation) C:\windows\system32\FntCache.dll
2015-02-16 16:58 - 2014-04-30 03:47 - 01509888 _____ (Microsoft Corporation) C:\windows\SysWOW64\DWrite.dll
2015-02-16 16:57 - 2015-01-10 08:22 - 04175872 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2015-02-16 16:57 - 2014-11-09 23:19 - 00991232 _____ (Microsoft Corporation) C:\windows\system32\kerberos.dll
2015-02-16 16:57 - 2014-11-09 23:19 - 00806400 _____ (Microsoft Corporation) C:\windows\SysWOW64\kerberos.dll
2015-02-16 16:57 - 2014-11-09 23:18 - 00259584 _____ (Microsoft Corporation) C:\windows\system32\pku2u.dll
2015-02-16 16:57 - 2014-11-09 23:18 - 00208896 _____ (Microsoft Corporation) C:\windows\SysWOW64\pku2u.dll
2015-02-16 16:57 - 2014-09-10 06:25 - 00474432 _____ (Microsoft Corporation) C:\windows\system32\Drivers\netio.sys
2015-02-16 16:57 - 2014-09-08 03:07 - 02497344 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tcpip.sys
2015-02-16 16:57 - 2014-09-08 03:07 - 00428864 _____ (Microsoft Corporation) C:\windows\system32\Drivers\FWPKCLNT.SYS
2015-02-16 16:57 - 2014-09-04 22:30 - 00822272 _____ (Microsoft Corporation) C:\windows\system32\win32spl.dll
2015-02-16 16:57 - 2014-09-04 22:21 - 01053184 _____ (Microsoft Corporation) C:\windows\system32\localspl.dll
2015-02-16 16:57 - 2014-09-04 03:05 - 00836176 _____ (Microsoft Corporation) C:\windows\system32\mfmp4srcsnk.dll
2015-02-16 16:57 - 2014-09-04 02:22 - 00670384 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfmp4srcsnk.dll
2015-02-16 16:57 - 2014-09-04 01:01 - 00448512 _____ (Microsoft Corporation) C:\windows\system32\puiobj.dll
2015-02-16 16:57 - 2014-09-04 00:32 - 00334336 _____ (Microsoft Corporation) C:\windows\SysWOW64\puiobj.dll
2015-02-16 16:57 - 2014-09-04 00:10 - 00118272 _____ (Microsoft Corporation) C:\windows\system32\winbici.dll
2015-02-16 16:57 - 2014-08-31 00:17 - 00148800 ____C (Microsoft Corporation) C:\windows\system32\Drivers\USBSTOR.SYS
2015-02-16 16:57 - 2014-08-31 00:15 - 21197152 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll
2015-02-16 16:57 - 2014-08-30 22:59 - 18723112 _____ (Microsoft Corporation) C:\windows\SysWOW64\shell32.dll
2015-02-16 16:57 - 2014-08-30 22:05 - 00615424 _____ (Microsoft Corporation) C:\windows\system32\FXSCOMEX.dll
2015-02-16 16:57 - 2014-08-30 21:58 - 00275968 _____ (Microsoft Corporation) C:\windows\system32\FXSAPI.dll
2015-02-16 16:57 - 2014-08-30 21:04 - 00941568 _____ (Microsoft Corporation) C:\windows\system32\MFMediaEngine.dll
2015-02-16 16:57 - 2014-08-30 20:53 - 00239104 _____ (Microsoft Corporation) C:\windows\SysWOW64\FXSAPI.dll
2015-02-16 16:57 - 2014-08-30 20:17 - 00799744 _____ (Microsoft Corporation) C:\windows\SysWOW64\MFMediaEngine.dll
2015-02-16 16:57 - 2014-08-28 00:21 - 02480128 _____ (Microsoft Corporation) C:\windows\system32\WsmSvc.dll
2015-02-16 16:57 - 2014-08-28 00:06 - 02030592 _____ (Microsoft Corporation) C:\windows\SysWOW64\WsmSvc.dll
2015-02-16 16:57 - 2014-08-23 05:14 - 13424128 _____ (Microsoft Corporation) C:\windows\system32\twinui.dll
2015-02-16 16:57 - 2014-08-23 05:04 - 11820544 _____ (Microsoft Corporation) C:\windows\SysWOW64\twinui.dll
2015-02-16 16:57 - 2014-08-23 04:50 - 02714112 _____ (Microsoft Corporation) C:\windows\system32\SettingsHandlers.dll
2015-02-16 16:57 - 2014-08-02 00:51 - 00545792 _____ (Microsoft Corporation) C:\windows\system32\untfs.dll
2015-02-16 16:57 - 2014-08-02 00:35 - 00485376 _____ (Microsoft Corporation) C:\windows\SysWOW64\untfs.dll
2015-02-16 16:57 - 2014-07-24 11:22 - 00308736 _____ (Microsoft Corporation) C:\windows\system32\compstui.dll
2015-02-16 16:57 - 2014-07-24 09:53 - 00215552 _____ (Microsoft Corporation) C:\windows\system32\prnntfy.dll
2015-02-16 16:57 - 2014-07-24 09:13 - 00195584 _____ (Microsoft Corporation) C:\windows\SysWOW64\prnntfy.dll
2015-02-16 16:57 - 2014-07-24 08:20 - 00187392 _____ (Microsoft Corporation) C:\windows\system32\puiapi.dll
2015-02-16 16:57 - 2014-07-24 08:08 - 00162816 _____ (Microsoft Corporation) C:\windows\SysWOW64\puiapi.dll
2015-02-16 16:57 - 2014-07-24 07:49 - 00263680 _____ (Microsoft Corporation) C:\windows\system32\DafPrintProvider.dll
2015-02-16 16:57 - 2014-07-24 07:43 - 00200192 _____ (Microsoft Corporation) C:\windows\SysWOW64\DafPrintProvider.dll
2015-02-16 16:57 - 2014-07-24 03:20 - 00875688 _____ (Microsoft Corporation) C:\windows\SysWOW64\msvcr120_clr0400.dll
2015-02-16 16:57 - 2014-07-24 03:20 - 00869544 _____ (Microsoft Corporation) C:\windows\system32\msvcr120_clr0400.dll
2015-02-16 16:56 - 2015-02-03 23:38 - 00227328 _____ (Microsoft Corporation) C:\windows\system32\aepdu.dll
2015-02-16 16:56 - 2015-02-03 23:08 - 00761856 _____ (Microsoft Corporation) C:\windows\system32\invagent.dll
2015-02-16 16:56 - 2015-02-03 23:08 - 00414208 _____ (Microsoft Corporation) C:\windows\system32\devinv.dll
2015-02-16 16:56 - 2015-02-02 23:11 - 01098752 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
2015-02-16 16:56 - 2015-02-02 23:11 - 00894464 _____ (Microsoft Corporation) C:\windows\system32\appraiser.dll
2015-02-16 16:56 - 2015-02-02 23:11 - 00609280 _____ (Microsoft Corporation) C:\windows\system32\generaltel.dll
2015-02-16 16:56 - 2014-12-08 19:42 - 00535640 _____ (Microsoft Corporation) C:\windows\system32\wer.dll
2015-02-16 16:56 - 2014-12-08 19:42 - 00531616 _____ (Microsoft Corporation) C:\windows\system32\ci.dll
2015-02-16 16:56 - 2014-12-08 19:42 - 00448792 _____ (Microsoft Corporation) C:\windows\SysWOW64\wer.dll
2015-02-16 16:56 - 2014-12-08 19:42 - 00413248 _____ (Microsoft Corporation) C:\windows\system32\Faultrep.dll
2015-02-16 16:56 - 2014-12-08 19:42 - 00372408 _____ (Microsoft Corporation) C:\windows\SysWOW64\Faultrep.dll
2015-02-16 16:56 - 2014-12-08 19:42 - 00108944 _____ (Microsoft Corporation) C:\windows\system32\EncDump.dll
2015-02-16 16:56 - 2014-12-08 19:42 - 00038264 _____ (Microsoft Corporation) C:\windows\system32\WerFaultSecure.exe
2015-02-16 16:56 - 2014-12-08 19:42 - 00033584 _____ (Microsoft Corporation) C:\windows\SysWOW64\WerFaultSecure.exe
2015-02-16 16:56 - 2014-12-06 03:17 - 00360448 _____ (Microsoft Corporation) C:\windows\system32\ncsi.dll
2015-02-16 16:56 - 2014-12-06 01:41 - 00391680 _____ (Microsoft Corporation) C:\windows\system32\nlasvc.dll
2015-02-16 16:56 - 2014-12-06 01:35 - 00229888 _____ (Microsoft Corporation) C:\windows\system32\AudioEndpointBuilder.dll
2015-02-16 16:56 - 2014-12-02 23:09 - 00192000 _____ (Microsoft Corporation) C:\windows\system32\aepic.dll
2015-02-16 16:56 - 2014-10-31 23:57 - 01091072 _____ (Microsoft Corporation) C:\windows\system32\MrmCoreR.dll
2015-02-16 16:56 - 2014-10-31 23:47 - 00790528 _____ (Microsoft Corporation) C:\windows\SysWOW64\MrmCoreR.dll
2015-02-16 16:56 - 2014-10-30 22:37 - 00129536 _____ (Microsoft Corporation) C:\windows\SysWOW64\poqexec.exe
2015-02-16 16:56 - 2014-10-30 22:34 - 00146432 _____ (Microsoft Corporation) C:\windows\system32\poqexec.exe
2015-02-16 16:56 - 2014-10-29 04:00 - 00465320 _____ (Microsoft Corporation) C:\windows\system32\WerFault.exe
2015-02-16 16:56 - 2014-10-29 04:00 - 00139984 _____ (Microsoft Corporation) C:\windows\system32\wermgr.exe
2015-02-16 16:56 - 2014-10-29 03:52 - 00500016 _____ (Microsoft Corporation) C:\windows\system32\AudioSes.dll
2015-02-16 16:56 - 2014-10-29 03:52 - 00482872 _____ (Microsoft Corporation) C:\windows\system32\AudioEng.dll
2015-02-16 16:56 - 2014-10-29 03:52 - 00394120 _____ (Microsoft Corporation) C:\windows\system32\AUDIOKSE.dll
2015-02-16 16:56 - 2014-10-29 03:52 - 00272248 _____ (Microsoft Corporation) C:\windows\system32\audiodg.exe
2015-02-16 16:56 - 2014-10-29 03:12 - 00413136 _____ (Microsoft Corporation) C:\windows\SysWOW64\WerFault.exe
2015-02-16 16:56 - 2014-10-29 03:12 - 00136296 _____ (Microsoft Corporation) C:\windows\SysWOW64\wermgr.exe
2015-02-16 16:56 - 2014-10-29 03:07 - 00424544 _____ (Microsoft Corporation) C:\windows\SysWOW64\AudioEng.dll
2015-02-16 16:56 - 2014-10-29 03:07 - 00370424 _____ (Microsoft Corporation) C:\windows\SysWOW64\AudioSes.dll
2015-02-16 16:56 - 2014-10-29 03:07 - 00344536 _____ (Microsoft Corporation) C:\windows\SysWOW64\AUDIOKSE.dll
2015-02-16 16:56 - 2014-10-29 02:44 - 00037888 _____ (Microsoft Corporation) C:\windows\system32\werdiagcontroller.dll
2015-02-16 16:56 - 2014-10-29 01:59 - 00033280 _____ (Microsoft Corporation) C:\windows\SysWOW64\werdiagcontroller.dll
2015-02-16 16:56 - 2014-10-29 01:24 - 00086016 _____ (Microsoft Corporation) C:\windows\system32\nlaapi.dll
2015-02-16 16:56 - 2014-10-29 01:02 - 00911360 _____ (Microsoft Corporation) C:\windows\system32\audiosrv.dll
2015-02-16 16:56 - 2014-10-29 01:01 - 00065536 _____ (Microsoft Corporation) C:\windows\SysWOW64\nlaapi.dll
2015-02-16 16:56 - 2014-07-12 04:17 - 00623616 _____ (Microsoft Corporation) C:\windows\system32\MDMAgent.exe
2015-02-16 16:56 - 2014-06-06 13:04 - 00586240 _____ (Microsoft Corporation) C:\windows\system32\qedit.dll
2015-02-16 16:56 - 2014-06-06 12:18 - 00488960 _____ (Microsoft Corporation) C:\windows\SysWOW64\qedit.dll
2015-02-16 16:56 - 2014-06-02 02:10 - 00423768 _____ (Microsoft Corporation) C:\windows\system32\hal.dll
2015-02-16 16:56 - 2014-05-31 10:07 - 00440664 ____C (Microsoft Corporation) C:\windows\system32\Drivers\usbport.sys
2015-02-16 16:56 - 2014-05-31 10:07 - 00089944 ____C (Microsoft Corporation) C:\windows\system32\Drivers\usbehci.sys
2015-02-16 16:56 - 2014-05-31 10:07 - 00027480 ____C (Microsoft Corporation) C:\windows\system32\Drivers\usbd.sys
2015-02-16 16:56 - 2014-05-31 06:30 - 00037376 ____C (Microsoft Corporation) C:\windows\system32\Drivers\usbuhci.sys
2015-02-16 16:56 - 2014-05-31 06:27 - 00110592 _____ (Microsoft Corporation) C:\windows\system32\Drivers\WUDFPf.sys
2015-02-16 16:56 - 2014-05-31 06:26 - 00227840 _____ (Microsoft Corporation) C:\windows\system32\Drivers\WUDFRd.sys
2015-02-16 16:56 - 2014-05-31 04:01 - 00284672 _____ (Microsoft Corporation) C:\windows\system32\WUDFHost.exe
2015-02-16 16:56 - 2014-05-31 04:01 - 00209408 _____ (Microsoft Corporation) C:\windows\system32\WUDFPlatform.dll
2015-02-16 16:56 - 2014-05-31 04:01 - 00099840 _____ (Microsoft Corporation) C:\windows\system32\WUDFSvc.dll
2015-02-16 16:56 - 2014-05-27 09:56 - 00323584 _____ (Microsoft Corporation) C:\windows\system32\DaOtpCredentialProvider.dll
2015-02-16 16:56 - 2014-05-27 09:53 - 00270848 _____ (Microsoft Corporation) C:\windows\SysWOW64\DaOtpCredentialProvider.dll
2015-02-16 16:56 - 2014-05-01 05:24 - 02834944 _____ (Microsoft Corporation) C:\windows\system32\wpccpl.dll
2015-02-16 16:50 - 2014-05-31 10:06 - 00555736 _____ (Microsoft Corporation) C:\windows\system32\twinapi.appcore.dll
2015-02-16 16:50 - 2014-05-31 02:37 - 01054208 _____ (Microsoft Corporation) C:\windows\system32\twinui.appcore.dll
2015-02-16 16:50 - 2014-05-31 02:35 - 00828928 _____ (Microsoft Corporation) C:\windows\SysWOW64\twinui.appcore.dll
2015-02-16 16:46 - 2015-02-16 16:46 - 00000000 ____H () C:\windows\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf
2015-02-16 15:12 - 2015-02-16 15:12 - 00000000 ____D () C:\Users\Damien\AppData\Local\CyberLink
2015-02-16 11:47 - 2015-02-18 10:17 - 00000000 ____D () C:\ProgramData\CloudBerry Online Backup
2015-02-16 10:39 - 2015-03-05 23:14 - 00004982 _____ () C:\windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for LENOVO-PC-Damien Lenovo-PC
2015-02-16 10:39 - 2015-02-16 10:39 - 00003100 _____ () C:\windows\System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-1301979038-2669888510-292050220-1002
2015-02-16 10:39 - 2015-02-16 10:39 - 00000000 ____D () C:\ProgramData\Microsoft OneDrive
2015-02-16 10:33 - 2015-02-27 05:33 - 00000000 ____D () C:\Program Files\Microsoft Office 15
2015-02-16 10:33 - 2015-02-16 10:33 - 01062064 _____ (Microsoft Corporation) C:\Users\Damien\Downloads\Setup.X86.en-US_O365HomePremRetail_48a0bc06-01de-4441-865e-132443b69257_TX_DB_(1).exe
2015-02-16 10:23 - 2015-02-16 10:23 - 01062064 _____ (Microsoft Corporation) C:\Users\Damien\Downloads\Setup.X86.en-US_O365HomePremRetail_48a0bc06-01de-4441-865e-132443b69257_TX_DB_.exe
2015-02-16 09:26 - 2014-11-26 03:53 - 04608320 _____ (SafeNet Inc.) C:\windows\system32\hasplms.exe
2015-02-16 09:25 - 2015-02-16 09:25 - 00000000 ____D () C:\Users\Damien\AppData\Roaming\Marshall Day Acoustics
2015-02-16 09:25 - 2015-02-16 09:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Insul
2015-02-16 09:25 - 2015-02-16 09:25 - 00000000 ____D () C:\ProgramData\Marshall Day Acoustics
2015-02-16 09:25 - 2015-02-16 09:25 - 00000000 ____D () C:\Program Files (x86)\Marshall Day Acoustics
2015-02-16 09:22 - 2015-02-16 09:24 - 09809100 _____ (Marshall Day Acoustics ) C:\Users\Damien\Downloads\setup8006.exe
2015-02-15 22:11 - 2015-02-15 22:11 - 00000000 ____D () C:\Users\Damien\AppData\Roaming\My Bluetooth
2015-02-15 21:32 - 2015-02-15 21:32 - 00137560 _____ () C:\Users\Damien\Downloads\DELL_E207WFP_A00-00_R211140(1).EXE
2015-02-15 21:27 - 2015-02-15 21:33 - 00000000 ____D () C:\Dell
2015-02-15 21:26 - 2015-02-15 21:26 - 00137560 _____ () C:\Users\Damien\Downloads\DELL_E207WFP_A00-00_R211140.EXE
2015-02-15 21:11 - 2015-02-15 21:11 - 00000000 ____D () C:\Users\Damien\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2015-02-15 21:05 - 2013-12-13 12:04 - 00720733 _____ () C:\Users\Damien\Desktop\Impact Test Sheet.xltm
2015-02-15 21:05 - 2013-12-13 12:03 - 00675205 _____ () C:\Users\Damien\Desktop\Airborne Test Sheet.xltm
2015-02-15 21:05 - 2013-07-12 10:10 - 00024305 _____ () C:\Users\Damien\Desktop\format data macro.xlsm
2015-02-15 21:05 - 2012-08-14 19:01 - 00000066 _____ () C:\Users\Damien\Desktop\Wireless Network Keys.txt
2015-02-15 21:05 - 2011-09-08 08:21 - 00018325 _____ () C:\Users\Damien\Desktop\Acoustics_addin.xlam
2015-02-15 21:03 - 2015-02-15 21:03 - 00000000 ____D () C:\Users\Damien\AppData\Local\Macromedia
2015-02-15 21:02 - 2015-02-19 19:22 - 00000000 ____D () C:\Users\Damien\AppData\Roaming\Dropbox
2015-02-15 21:02 - 2015-02-15 21:02 - 00355464 _____ (Dropbox, Inc.) C:\Users\Damien\Downloads\DropboxInstaller.exe
2015-02-15 21:00 - 2015-03-05 22:54 - 00000830 _____ () C:\windows\Tasks\Adobe Flash Player Updater.job
2015-02-15 21:00 - 2015-02-15 21:00 - 00003718 _____ () C:\windows\System32\Tasks\Adobe Flash Player Updater
2015-02-15 20:57 - 2015-02-15 21:01 - 00000000 ____D () C:\Users\Damien\AppData\Local\Adobe
2015-02-15 19:46 - 2008-01-15 16:35 - 00297120 _____ (Bluebeam Software, Inc.) C:\windows\system32\BBPdfPortMon.DLL
2015-02-15 19:45 - 2015-02-15 19:45 - 00002070 _____ () C:\Users\Public\Desktop\Bluebeam PDF Revu.lnk
2015-02-15 19:45 - 2015-02-15 19:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bluebeam Software
2015-02-15 19:27 - 2015-02-15 19:27 - 00000000 ____D () C:\windows\System32\Tasks\OfficeSoftwareProtectionPlatform
2015-02-15 19:23 - 2015-02-15 19:23 - 01055936 _____ (Adobe) C:\Users\Damien\Downloads\install_flashplayer16x32_mssd_aaa_aih.exe
2015-02-15 19:20 - 2015-02-15 19:20 - 00002064 _____ () C:\Users\Public\Desktop\Norsonic NorXfer 5.0.lnk
2015-02-15 19:20 - 2015-02-15 19:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norsonic
2015-02-15 19:20 - 2004-04-26 14:10 - 00103744 _____ (Microsoft Corporation) C:\windows\SysWOW64\MSCOMM32.OCX
2015-02-15 19:20 - 2004-03-09 16:45 - 01081616 _____ (Microsoft Corporation) C:\windows\SysWOW64\MSCOMCTL.OCX
2015-02-15 19:20 - 2004-03-09 16:45 - 00152848 _____ (Microsoft Corporation) C:\windows\SysWOW64\COMDLG32.OCX
2015-02-15 19:20 - 1998-06-24 00:00 - 00067376 _____ (Microsoft Corporation) C:\windows\SysWOW64\SYSINFO.OCX
2015-02-15 19:19 - 2015-02-15 19:19 - 00001639 _____ () C:\Users\Damien\Desktop\dB23 - Shortcut.lnk
2015-02-15 19:18 - 2015-02-15 19:18 - 00303616 _____ (InstallShield Software Corporation) C:\windows\IsUninst.exe
2015-02-15 19:18 - 2015-02-15 19:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CEL SoundTrack
2015-02-15 19:18 - 2003-02-27 16:08 - 00024576 ____N (Microsoft Corporation) C:\windows\SysWOW64\Rsrc32.dll
2015-02-15 19:18 - 2003-02-27 16:08 - 00001312 ____N (Microsoft Corporation) C:\windows\SysWOW64\rsrc16.dll
2015-02-15 19:15 - 2015-02-15 19:17 - 00000000 ____D () C:\Users\Damien\Downloads\Copy Files (4AZxlZTikUK2)
2015-02-15 19:14 - 2015-02-15 19:14 - 00002276 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\WinZip.lnk
2015-02-15 19:14 - 2015-02-15 19:14 - 00002270 _____ () C:\Users\Public\Desktop\WinZip.lnk
2015-02-15 19:14 - 2015-02-15 19:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip
2015-02-15 18:23 - 2015-02-15 18:23 - 00000000 ____D () C:\Users\Damien\AppData\Local\Bluebeam Software
2015-02-15 18:14 - 2015-02-15 18:14 - 00000000 ____D () C:\ProgramData\Mozilla
2015-02-15 18:11 - 2015-02-15 19:44 - 00000000 ____D () C:\Program Files\Bluebeam Software
2015-02-15 18:11 - 2015-02-15 18:23 - 00000000 ____D () C:\ProgramData\Bluebeam Software
2015-02-15 18:11 - 2015-02-15 18:11 - 00000000 ____D () C:\Program Files\Common Files\Bluebeam Software
2015-02-15 17:47 - 2015-02-16 09:24 - 00000000 ____D () C:\Users\Damien\AppData\Local\Downloaded Installations
2015-02-15 17:46 - 2015-02-15 19:51 - 00000000 ____D () C:\Users\Damien\Downloads\BbPDFRevuStandard654_with_activation_info
2015-02-15 15:26 - 2015-02-15 15:26 - 00000000 ____D () C:\windows\PCHEALTH
2015-02-15 15:26 - 2015-02-15 15:26 - 00000000 ____D () C:\Program Files\Microsoft Sync Framework
2015-02-15 15:26 - 2015-02-15 15:26 - 00000000 ____D () C:\Program Files\Microsoft SQL Server Compact Edition
2015-02-15 15:24 - 2015-02-20 19:57 - 00000000 ____D () C:\Users\Damien\AppData\Local\Microsoft Help
2015-02-15 15:24 - 2015-02-16 10:27 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-02-15 15:24 - 2015-02-16 10:26 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 8
2015-02-15 15:24 - 2015-02-15 15:26 - 00000000 ____D () C:\Program Files\Microsoft Office
2015-02-15 15:24 - 2015-02-15 15:24 - 00000000 ____D () C:\Program Files\Microsoft Analysis Services
2015-02-15 15:24 - 2015-02-15 15:24 - 00000000 ____D () C:\Program Files (x86)\Microsoft Analysis Services
2015-02-15 14:30 - 2015-02-15 19:20 - 00000000 _____ () C:\debugFileIfDb.log
2015-02-15 14:30 - 2015-02-15 14:30 - 00000000 ____D () C:\Program Files (x86)\Norsonic
2015-02-15 14:25 - 2015-02-15 14:25 - 00000000 ____D () C:\Program Files (x86)\Casella Group Ltd
2015-02-15 14:23 - 2015-02-15 19:14 - 00000000 ____D () C:\ProgramData\WinZip
2015-02-15 14:22 - 2015-02-15 19:14 - 00000000 ____D () C:\Program Files (x86)\WinZip
2015-02-15 14:18 - 2015-02-15 14:18 - 00000000 ____D () C:\Users\Damien\Downloads\WinZip PRO FINAL v15.0 + Serials [ChattChitto RG]
2015-02-15 14:15 - 2015-02-15 14:15 - 00000871 _____ () C:\Users\Damien\Desktop\µTorrent.lnk
2015-02-15 14:15 - 2015-02-15 14:15 - 00000851 _____ () C:\Users\Damien\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk
2015-02-15 14:13 - 2015-03-03 07:51 - 00000000 ____D () C:\Users\Damien\AppData\Roaming\uTorrent
2015-02-15 14:13 - 2015-02-15 14:13 - 01742416 _____ (BitTorrent Inc.) C:\Users\Damien\Downloads\uTorrent.exe
2015-02-15 14:10 - 2015-02-15 14:10 - 00000000 ____D () C:\Users\Damien\Downloads\The Ultimate Forex Manual for Successful Forex Trading
2015-02-15 14:10 - 2015-02-15 14:10 - 00000000 ____D () C:\Users\Damien\Downloads\dB23 Software v.1.07
2015-02-15 14:10 - 2014-09-28 19:20 - 01288472 _____ (MetaQuotes Software Corp.) C:\Users\Damien\Downloads\mt4setup.exe
2015-02-15 14:10 - 2014-06-27 08:48 - 765883568 _____ (Microsoft Corporation) C:\Users\Damien\Downloads\officesp2010-kb2687455-fullfile-x64-en-us.exe
2015-02-15 14:10 - 2014-05-06 19:51 - 01380784 _____ (Autodesk, Inc.) C:\Users\Damien\Downloads\AutodeskDesignRevSetup.exe
2015-02-15 14:10 - 2014-03-27 20:46 - 45256577 _____ () C:\Users\Damien\Downloads\BbPDFRevuStandard654_with_activation_info.rar
2015-02-15 14:10 - 2014-03-10 11:20 - 12769728 _____ () C:\Users\Damien\Downloads\CloudBerryOnlineBackupSetup_v3.7.1.27S3netv4.0.exe
2015-02-15 14:10 - 2013-06-20 15:01 - 29957224 _____ (Norsonic AS) C:\Users\Damien\Downloads\NorXfer5.0.1.10.exe
2015-02-15 14:10 - 2013-06-20 14:42 - 00781776 _____ (Google Inc.) C:\Users\Damien\Downloads\ChromeSetup.exe
2015-02-15 13:44 - 2014-12-31 11:14 - 00298120 ____N (Microsoft Corporation) C:\windows\system32\MpSigStub.exe
2015-02-15 13:34 - 2015-02-15 15:14 - 1464598506 _____ () C:\Users\Damien\Downloads\Copy Files (4AZxlZTikUK2).zip
2015-02-15 13:13 - 2015-02-15 13:13 - 00000000 ____D () C:\Users\Public\Pokki
2015-02-15 13:12 - 2015-02-23 17:16 - 00002302 _____ () C:\Users\Damien\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC App Store.lnk
2015-02-15 13:12 - 2015-02-15 13:12 - 00002362 _____ () C:\Users\Damien\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo Web Start.lnk
2015-02-15 13:12 - 2015-02-15 13:12 - 00002131 _____ () C:\Users\Damien\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Menu.lnk
2015-02-15 12:48 - 2015-02-25 19:45 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2015-02-15 12:48 - 2015-02-15 18:49 - 00000000 ____D () C:\Users\Damien\AppData\Roaming\Mozilla
2015-02-15 12:48 - 2015-02-15 18:49 - 00000000 ____D () C:\Users\Damien\AppData\Local\Mozilla
2015-02-15 12:48 - 2015-02-15 12:48 - 00001182 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-02-15 12:48 - 2015-02-15 12:48 - 00001170 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2015-02-15 12:46 - 2015-03-05 20:11 - 00003934 _____ () C:\windows\System32\Tasks\User_Feed_Synchronization-{1318194E-A6D2-40EF-BB41-4BDB4B0A2766}
2015-02-15 12:46 - 2015-02-15 12:46 - 00000000 __SHD () C:\Users\Damien\AppData\Local\EmieUserList
2015-02-15 12:46 - 2015-02-15 12:46 - 00000000 __SHD () C:\Users\Damien\AppData\Local\EmieSiteList
2015-02-15 12:43 - 2015-02-15 12:43 - 00000000 ____D () C:\Users\Damien\AppData\Local\Lenovo
2015-02-15 12:42 - 2015-03-05 23:14 - 00000000 __RDO () C:\Users\Damien\OneDrive
2015-02-15 12:42 - 2015-03-05 23:07 - 00003596 _____ () C:\windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1301979038-2669888510-292050220-1002
2015-02-15 12:39 - 2015-02-15 12:39 - 00000000 ____D () C:\Users\Damien\AppData\Roaming\Intel Corporation
2015-02-15 12:37 - 2015-02-17 00:12 - 00000000 ____D () C:\windows\System32\Tasks\WPD
2015-02-15 12:37 - 2015-02-15 13:09 - 00000000 ____D () C:\Users\Damien\AppData\Roaming\Hightail for Lenovo
2015-02-15 12:36 - 2015-02-24 10:58 - 00000000 ____D () C:\Users\Damien\AppData\Local\VirtualStore
2015-02-15 12:36 - 2015-02-15 12:36 - 00001453 _____ () C:\Users\Damien\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-02-15 12:36 - 2015-02-15 12:36 - 00000000 ____D () C:\Users\Damien\AppData\Roaming\Macromedia
2015-02-15 12:36 - 2015-02-15 12:36 - 00000000 ____D () C:\Users\Damien\AppData\Roaming\Adobe
2015-02-15 12:35 - 2015-03-05 23:14 - 00082290 _____ () C:\Users\Damien\AppData\Local\BTServer.log
2015-02-15 12:35 - 2015-02-22 22:48 - 00000000 ____D () C:\Users\Damien\AppData\Local\Packages
2015-02-15 12:35 - 2015-02-15 12:35 - 00001260 _____ () C:\Users\Damien\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BTServer Toasts App.lnk
2015-02-15 12:35 - 2015-02-15 12:35 - 00000139 _____ () C:\Users\Public\Desktop\eBay.url
2015-02-15 12:35 - 2015-02-15 12:35 - 00000000 ____D () C:\Users\Damien\Documents\My Bluetooth
2015-02-15 12:35 - 2015-02-15 12:35 - 00000000 ____D () C:\ProgramData\eBay
2015-02-15 12:32 - 2015-03-05 22:59 - 00000000 ____D () C:\Users\Damien\AppData\Local\Pokki
2015-02-15 12:32 - 2015-02-27 19:28 - 00000000 ____D () C:\Users\Damien
2015-02-15 12:32 - 2015-02-15 12:32 - 00000020 ___SH () C:\Users\Damien\ntuser.ini
2015-02-15 12:32 - 2014-08-17 16:06 - 00000126 _____ () C:\Users\Damien\Desktop\Adobe Photo Offer.url
2015-02-15 12:32 - 2014-08-17 15:18 - 00000000 ___RD () C:\Users\Damien\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-02-15 12:32 - 2014-03-26 10:21 - 00000190 _____ () C:\Users\Damien\Desktop\FREE CALLS with Voxox.url
2015-02-15 12:32 - 2014-03-18 10:05 - 00000000 ___RD () C:\Users\Damien\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-02-15 12:32 - 2014-03-18 09:55 - 00000369 _____ () C:\Users\Damien\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2015-02-15 12:32 - 2014-03-18 09:55 - 00000369 _____ () C:\Users\Damien\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2015-02-15 12:32 - 2013-08-22 15:36 - 00000000 ___RD () C:\Users\Damien\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-02-15 12:32 - 2013-08-22 15:36 - 00000000 ____D () C:\Users\Damien\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-05 23:15 - 2013-08-22 15:36 - 00000000 ____D () C:\windows\system32\sru
2015-03-05 23:12 - 2014-08-17 16:15 - 00002560 _____ () C:\windows\system32\VfService.trf
2015-03-05 23:12 - 2013-08-22 14:46 - 00033636 _____ () C:\windows\setupact.log
2015-03-05 23:12 - 2013-08-22 14:45 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2015-03-05 23:12 - 2013-08-22 13:25 - 00262144 ___SH () C:\windows\system32\config\BBI
2015-03-05 23:11 - 2014-08-17 15:38 - 01283350 _____ () C:\Users\Public\CAFADEBUG.log
2015-03-05 20:54 - 2014-08-17 15:09 - 01463699 _____ () C:\windows\WindowsUpdate.log
2015-03-05 19:00 - 2013-08-22 15:36 - 00000000 ____D () C:\windows\AppReadiness
2015-03-04 09:30 - 2014-08-17 15:31 - 00874322 _____ () C:\windows\SysWOW64\PerfStringBackup.INI
2015-03-04 07:44 - 2014-03-18 09:53 - 00865408 _____ () C:\windows\system32\PerfStringBackup.INI
2015-03-04 06:55 - 2013-08-22 14:44 - 00562848 _____ () C:\windows\system32\FNTCACHE.DAT
2015-03-04 06:54 - 2014-08-17 16:08 - 00000000 ____D () C:\Program Files (x86)\Lenovo
2015-03-02 16:45 - 2014-03-18 09:44 - 00013572 _____ () C:\windows\PFRO.log
2015-03-02 16:10 - 2013-08-22 15:36 - 00000000 ___RD () C:\windows\Offline Web Pages
2015-03-02 09:04 - 2014-08-17 16:08 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2015-02-27 19:39 - 2013-08-22 15:36 - 00000000 ____D () C:\windows\PLA
2015-02-25 12:23 - 2012-08-13 20:07 - 00000000 ____D () C:\Users\Damien\Downloads\Game of Thrones - The Complete Season 2 [HDTV] + EXTRA
2015-02-25 12:21 - 2012-08-13 20:18 - 00000000 ____D () C:\Users\Damien\Downloads\Inception[2010]DvDrip[Eng]-FXG
2015-02-25 09:16 - 2014-08-17 16:19 - 00000000 ____D () C:\ProgramData\Energy Manager
2015-02-20 10:58 - 2013-08-22 15:36 - 00000000 ____D () C:\windows\rescache
2015-02-19 19:06 - 2014-03-18 09:38 - 00000000 ____D () C:\Program Files\Windows Journal
2015-02-19 19:06 - 2013-08-22 15:36 - 00000000 ___RD () C:\windows\ToastData
2015-02-19 19:06 - 2013-08-22 15:36 - 00000000 ___RD () C:\windows\ImmersiveControlPanel
2015-02-19 19:06 - 2013-08-22 15:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-02-19 19:06 - 2013-08-22 15:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-02-19 19:06 - 2013-08-22 15:36 - 00000000 ____D () C:\windows\SysWOW64\setup
2015-02-19 19:06 - 2013-08-22 15:36 - 00000000 ____D () C:\windows\SysWOW64\InputMethod
2015-02-19 19:06 - 2013-08-22 15:36 - 00000000 ____D () C:\windows\system32\setup
2015-02-19 19:06 - 2013-08-22 13:36 - 00000000 ____D () C:\windows\system32\oobe
2015-02-18 07:37 - 2013-08-22 15:20 - 00000000 ____D () C:\windows\CbsTemp
2015-02-17 12:22 - 2013-08-22 15:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-02-17 12:22 - 2013-08-22 15:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-02-17 12:22 - 2013-08-22 15:36 - 00000000 ____D () C:\windows\system32\sr-Latn-RS
2015-02-17 12:22 - 2013-08-22 15:36 - 00000000 ____D () C:\windows\system32\sr-Latn-CS
2015-02-17 12:22 - 2013-08-22 15:36 - 00000000 ____D () C:\windows\MediaViewer
2015-02-17 12:22 - 2013-08-22 15:36 - 00000000 ____D () C:\windows\FileManager
2015-02-17 12:22 - 2013-08-22 15:36 - 00000000 ____D () C:\windows\Camera
2015-02-17 12:22 - 2013-08-22 15:36 - 00000000 ____D () C:\Program Files\Windows Defender
2015-02-17 12:22 - 2013-08-22 15:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2015-02-17 12:21 - 2013-08-22 15:36 - 00000000 ____D () C:\windows\WinStore
2015-02-17 12:21 - 2013-08-22 15:36 - 00000000 ____D () C:\windows\PolicyDefinitions
2015-02-17 12:21 - 2013-08-22 15:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2015-02-17 06:28 - 2014-08-17 15:33 - 00000000 ____D () C:\ProgramData\Package Cache
2015-02-16 15:12 - 2014-08-17 16:15 - 00000000 ____D () C:\ProgramData\CyberLink
2015-02-16 10:26 - 2014-04-03 18:24 - 00000000 ____D () C:\Program Files (x86)\MSBuild
2015-02-16 10:26 - 2014-03-18 09:38 - 00000000 ____D () C:\windows\ShellNew
2015-02-16 10:26 - 2013-08-22 15:36 - 00000000 ____D () C:\Program Files\Common Files\System
2015-02-16 10:26 - 2013-08-22 13:25 - 00000076 _____ () C:\windows\win.ini
2015-02-15 20:51 - 2014-08-17 16:13 - 00000000 ____D () C:\Users\Public\Documents\Open Labs Library
2015-02-15 19:06 - 2014-08-17 16:18 - 00000000 ____D () C:\ProgramData\Office2013
2015-02-15 18:59 - 2013-08-22 13:36 - 00000000 ____D () C:\windows\system32\Sysprep
2015-02-15 18:50 - 2013-08-22 15:36 - 00000000 ____D () C:\windows\registration
2015-02-15 13:45 - 2013-08-22 13:25 - 00262144 ___SH () C:\windows\system32\config\ELAM
2015-02-15 13:18 - 2014-08-17 16:09 - 00000000 ____D () C:\ProgramData\McAfee
2015-02-15 13:16 - 2013-08-22 15:36 - 00000000 ___HD () C:\windows\ELAMBKUP
2015-02-15 12:42 - 2014-08-17 16:08 - 00000000 ____D () C:\windows\System32\Tasks\Lenovo
2015-02-15 12:40 - 2014-08-17 16:08 - 00000000 ____D () C:\ProgramData\Lenovo
2015-02-15 12:36 - 2014-08-17 16:01 - 00123640 ____H () C:\windows\modules.log
2015-02-15 12:36 - 2014-04-03 19:15 - 00000000 ____D () C:\windows\Panther

==================== Files in the root of some directories =======

2015-01-25 16:12 - 2015-01-25 16:12 - 0002086 _____ () C:\Users\Damien\AppData\Roaming\OAUOK
2015-01-25 16:12 - 2015-01-25 16:12 - 0001248 _____ () C:\Users\Damien\AppData\Roaming\REHXZDZS
2015-02-15 12:35 - 2015-03-05 23:14 - 0082290 _____ () C:\Users\Damien\AppData\Local\BTServer.log
2015-02-27 19:36 - 2015-02-27 19:36 - 0628504 _____ (CMI Limited) C:\Users\Damien\AppData\Local\nsuDDF9.tmp
2014-08-17 15:38 - 2014-08-17 15:38 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

Some content of TEMP:
====================
C:\Users\Damien\AppData\Local\Temp\dllnt_dump.dll
C:\Users\Damien\AppData\Local\Temp\Quarantine.exe
C:\Users\Damien\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-03-03 02:23

==================== End Of Log ============================
 
Download attached fixlist.txt file and save it to the Desktop.
NOTE. It's important that both files, FRST and fixlist.txt are in the same location or the fix will not work.

NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system

Run FRST(FRST64) and press the Fix button just once and wait.
The tool will make a log on the Desktop (Fixlog.txt). Please post it to your reply.
 

Attachments

  • fixlist.txt
    2.2 KB · Views: 2
Restarted machine. Log below.

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 02-03-2015
Ran by Damien at 2015-03-05 23:35:08 Run:1
Running from C:\Users\Damien\Desktop
Loaded Profiles: UpdatusUser & Damien (Available profiles: UpdatusUser & Damien & Damien_2)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
AlternateDataStreams: C:\windows\system32\Drivers\lpqsidom.sys:changelist
AlternateDataStreams: C:\Users\Damien\OneDrive:ms-properties
Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
URLSearchHook: [S-1-5-21-1301979038-2669888510-292050220-1001] ATTENTION ==> Default URLSearchHook is missing.
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1301979038-2669888510-292050220-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
FF Plugin HKU\S-1-5-21-1301979038-2669888510-292050220-1002: pokki.com/PokkiDownloadHelper -> C:\Users\Damien\AppData\Local\Pokki\Download Helper\npPokkiDownloadHelper.1.2.0.78.dll (Pokki)
C:\Users\Damien\AppData\Local\Pokki
R2 gibololy; C:\Users\Damien\AppData\Roaming\95A7E375-1425061631-11E4-A818-28D244D31727\nsk596B.tmpfs [X]
2015-03-05 22:59 - 2015-03-05 22:59 - 02756424 _____ (Pokki) C:\Users\Damien\Downloads\PokkiInstaller.exe
2015-03-05 22:59 - 2015-03-05 22:59 - 00822608 _____ (Pokki) C:\Users\Damien\Downloads\Pokki_Start_MenuSetup.exe
2015-03-02 16:14 - 2015-03-05 23:14 - 00000273 _____ () C:\Users\Damien\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pokki Menu.lnk
2015-02-17 00:11 - 2015-02-17 00:13 - 00000000 ____D () C:\Users\Damien_2\AppData\Local\Pokki
2015-02-15 13:13 - 2015-02-15 13:13 - 00000000 ____D () C:\Users\Public\Pokki
2015-02-15 12:32 - 2015-03-05 22:59 - 00000000 ____D () C:\Users\Damien\AppData\Local\Pokki
2015-01-25 16:12 - 2015-01-25 16:12 - 0002086 _____ () C:\Users\Damien\AppData\Roaming\OAUOK
2015-01-25 16:12 - 2015-01-25 16:12 - 0001248 _____ () C:\Users\Damien\AppData\Roaming\REHXZDZS
2015-02-15 12:35 - 2015-03-05 23:14 - 0082290 _____ () C:\Users\Damien\AppData\Local\BTServer.log
2015-02-27 19:36 - 2015-02-27 19:36 - 0628504 _____ (CMI Limited) C:\Users\Damien\AppData\Local\nsuDDF9.tmp
2014-08-17 15:38 - 2014-08-17 15:38 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
C:\Users\Damien\AppData\Local\Temp\dllnt_dump.dll
C:\Users\Damien\AppData\Local\Temp\Quarantine.exe
C:\Users\Damien\AppData\Local\Temp\sqlite3.dll

*****************

C:\windows\system32\Drivers\lpqsidom.sys => ":changelist" ADS removed successfully.
"C:\Users\Damien\OneDrive" => ":ms-properties" ADS not found.
"HKLM\Software\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SDWinLogon" => Key deleted successfully.
Error setting Default URLSearchHook.
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-21-1301979038-2669888510-292050220-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
"HKU\S-1-5-21-1301979038-2669888510-292050220-1002\Software\MozillaPlugins\pokki.com/PokkiDownloadHelper" => Key deleted successfully.
C:\Users\Damien\AppData\Local\Pokki\Download Helper\npPokkiDownloadHelper.1.2.0.78.dll => Moved successfully.
C:\Users\Damien\AppData\Local\Pokki => Moved successfully.
gibololy => Unable to stop service
gibololy => Service deleted successfully.
C:\Users\Damien\Downloads\PokkiInstaller.exe => Moved successfully.
C:\Users\Damien\Downloads\Pokki_Start_MenuSetup.exe => Moved successfully.
C:\Users\Damien\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pokki Menu.lnk => Moved successfully.
C:\Users\Damien_2\AppData\Local\Pokki => Moved successfully.
C:\Users\Public\Pokki => Moved successfully.
"C:\Users\Damien\AppData\Local\Pokki" => File/Directory not found.
C:\Users\Damien\AppData\Roaming\OAUOK => Moved successfully.
C:\Users\Damien\AppData\Roaming\REHXZDZS => Moved successfully.
C:\Users\Damien\AppData\Local\BTServer.log => Moved successfully.
C:\Users\Damien\AppData\Local\nsuDDF9.tmp => Moved successfully.
C:\ProgramData\DP45977C.lfl => Moved successfully.
C:\Users\Damien\AppData\Local\Temp\dllnt_dump.dll => Moved successfully.
C:\Users\Damien\AppData\Local\Temp\Quarantine.exe => Moved successfully.
C:\Users\Damien\AppData\Local\Temp\sqlite3.dll => Moved successfully.


The system needed a reboot.

==== End of Fixlog 23:35:25 ====
 
Thanks Broni,

I dont mind doing a system restore if it help as it's a new machine. Just need to save my word and excel setups.
 
The icon with the house symbol is what I am referring to. Please see above where I posted screen shot of Pokki Menu working. Previously this button gave me access to control panel, programs, apps etc...
 
Honestly I've never seen that button before. I have Windows 8 as well.
It's very possible that it was created by Pokki.
 
You are right Broni. It must have come pre-installed. I'm a new Windows 8 user and didn't realise it wasnt part of Win 8!

I will stop talking now. Please feel free to ignore me :confused:
 
If you like Pokki's option you can reinstall it.

Now...last scans...

redtarget.gif
Download Security Check from here or here and save it to your Desktop.
  • Double-click SecurityCheck.exe
  • Follow the onscreen instructions inside of the black box.
  • A Notepad document should open automatically called checkup.txt; please post the contents of that document.
NOTE 1. If one of your security applications (e.g., third-party firewall) requests permission to allow DIG.EXE access the Internet, allow it to do so.
NOTE 2. SecurityCheck may produce some false warning(s), so leave the results reading to me.
NOTE 3. If you receive UNSUPPORTED OPERATING SYSTEM! ABORTED! message restart computer and Security Check should run


redtarget.gif
Please download Farbar Service Scanner (FSS) and run it on the computer with the issue.
  • Make sure the following options are checked:
    • Internet Services
    • Windows Firewall
    • System Restore
    • Security Center
    • Windows Update
    • Windows Defender
    • Other Services
  • Press "Scan".
  • It will create a log (FSS.txt) in the same directory the tool is run.
  • Please copy and paste the log to your reply.

redtarget.gif
Download Temp File Cleaner (TFC)
Alternate download: http://www.itxassociates.com/OT-Tools/TFC.exe
  • Double click on TFC.exe to run the program.
  • Click on Start button to begin cleaning process.
  • TFC will close all running programs, and it may ask you to restart computer.

redtarget.gif
Download Sophos Free Virus Removal Tool and save it to your desktop.
  • Double click the icon and select Run
  • Click Next
  • Select I accept the terms in this license agreement, then click Next twice
  • Click Install
  • Click Finish to launch the program
  • Once the virus database has been updated click Start Scanning
  • If any threats are found click Details, then View log file... (bottom left hand corner)
  • Copy and paste the results in your reply
  • Close the Notepad document, close the Threat Details screen, then click Start cleanup
  • Click Exit to close the program
 
Results of screen317's Security Check version 0.99.97
x64 (UAC is enabled)
Internet Explorer 11
``````````````Antivirus/Firewall Check:``````````````
Windows Firewall Enabled!
Windows Defender
[size=1]WMI entry may not exist for antivirus; attempting automatic update.[/size]
`````````Anti-malware/Other Utilities Check:`````````
Spybot - Search & Destroy
Java 64-bit 8 Update 31
Adobe Flash Player 16.0.0.305
Mozilla Firefox (36.0.1)
````````Process Check: objlist.exe by Laurent````````
Windows Defender MSMpEng.exe
Spybot Teatimer.exe is disabled!
CloudBerryLab CloudBerry Online Backup CloudBerry.Backup.Scheduler.exe
`````````````````System Health check`````````````````
Total Fragmentation on Drive C: %
````````````````````End of Log``````````````````````
 
Back