Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-05-2013 01
Ran by Momo (administrator) on 12-05-2013 13:24:22
Running from C:\Users\Momo\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: English(US)
Internet Explorer Version 9
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
(Cisco Systems, Inc.) C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(Microsoft Corporation) c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(Microsoft Corporation) c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\CisTray.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Dropbox, Inc.) C:\Users\Momo\AppData\Roaming\Dropbox\bin\Dropbox.exe
(The Pidgin developer community) C:\Program Files (x86)\Pidgin\pidgin.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(LeapFrog Enterprises, Inc.) C:\Program Files (x86)\LeapFrog\LeapFrog Connect\CommandService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe
(COMODO) C:\Program Files\COMODO\COMODO Internet Security\cis.exe
(Wargaming.net) C:\Games\World_of_Tanks\WorldOfTanks.exe
(BitTorrent Inc.) C:\Program Files (x86)\uTorrent\uTorrent.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Farbar) C:\Users\Momo\Desktop\FRST64.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [COMODO Internet Security] C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [3603152 2013-04-15] (COMODO)
HKCU\...\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun [18642024 2013-02-28] (Skype Technologies S.A.)
HKCU\...\Run: [Akamai NetSession Interface] "C:\Users\Momo\AppData\Local\Akamai\netsession_win.exe" [4480768 2013-01-26] (Akamai Technologies, Inc.)
HKLM-x32\...\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [59720 2013-01-28] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe" [152392 2013-02-20] (Apple Inc.)
HKU\UpdatusUser\...\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun [18642024 2013-02-28] (Skype Technologies S.A.)
Startup: C:\Users\Momo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Momo\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
Startup: C:\Users\Momo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Pidgin.lnk
ShortcutTarget: Pidgin.lnk -> C:\Program Files (x86)\Pidgin\pidgin.exe (The Pidgin developer community)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://ca.yahoo.com?fr=fp-comodo
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
SearchScopes: HKCU - {8EEAC88A-079B-4b2c-80C1-7836F79EB40A} URL =
http://ca.search.yahoo.com/search?p={searchTerms}&fr=chr-comodo
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Winsock: Catalog5 07 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [20992] (Microsoft Corporation)
Winsock: Catalog5-x64 07 C:\Program Files\Bonjour\mdnsNSP.dll [132968] (Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
FireFox:
========
FF ProfilePath: C:\Users\Momo\AppData\Roaming\Mozilla\Firefox\Profiles\1ibnn5gt.default
FF SelectedSearchEngine: Yahoo
FF Homepage: hxxp://ca.yahoo.com?fr=fp-comodo
FF Keyword.URL: hxxp://ca.search.yahoo.com/search?fr=ytff-comodo&p=
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_169.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.17.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.17.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32:
Nexon.net/NxGame - C:\ProgramData\NexonUS\NGM\npNxGameUS.dll No File
FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.6 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
Chrome:
=======
CHR HomePage: hxxp://
www.google.com/
CHR RestoreOnStartup: "
https://mail.google.com/mail/u/0/?hl=fr&shva=1#inbox", "hxxp://horriblesubs.info/", "
https://accesd.desjardins.com/en", "hxxp://
www.mangapanda.com/", "
https://can.mail.altusgroup.com/exchweb/bin/auth/owalogon.asp", "
https://www.google.com/finance", "hxxp://
www.accuweather.com/en/ca/quebec/g1r/daily-weather-forecast/50011?day=1", "
https://extranet.videotron.com/serv.../Usage.do?lang=FRENCH&compteInternet=VLFVPBJT"
CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:acceptedSuggestion}{google

riginalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding}
CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}sugkey={google:suggestAPIKeyParameter}
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\26.0.1410.64\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\26.0.1410.64\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\26.0.1410.64\pdf.dll ()
CHR Plugin: (Foxit Reader Plugin for Mozilla) - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll (Google Inc.)
CHR Plugin: (Java(TM) Platform SE 7 U17) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
CHR Plugin: (Silverlight Plug-In) - C:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
CHR Plugin: (NVIDIA 3D Vision) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
CHR Plugin: (NVIDIA 3D VISION) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
CHR Plugin: (VLC Web Plugin) - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
CHR Plugin: (iTunes Application Detector) - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
CHR Plugin: (Unity Player) - C:\Users\Momo\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_169.dll ()
CHR Plugin: (Java Deployment Toolkit 7.0.170.2) - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
CHR Extension: (IBA Opt-out (by Google)) - C:\Users\Momo\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbiekjoijknlhijdjbaadobpkdhmoebb\1.4_0
CHR Extension: (AdBlock) - C:\Users\Momo\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.5.63_0
CHR Extension: (Keep My Opt-Outs) - C:\Users\Momo\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhnjdplhmcnkiecampfdgfjilccfpfoe\1.0.14_0
==================== Services (Whitelisted) =================
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [361984 2012-08-06] (Advanced Micro Devices, Inc.)
S3 AppleChargerSrv; C:\Windows\System32\AppleChargerSrv.exe [31272 2010-04-06] ()
R2 cmdAgent; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [5784472 2013-04-25] (COMODO)
S3 cmdvirth; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [158928 2013-04-15] (COMODO)
S2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [22056 2013-01-27] ()
S3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [379360 2013-01-27] ()
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-13] ()
==================== Drivers (Whitelisted) ====================
R2 AODDriver4.1; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [53888 2012-03-05] (Advanced Micro Devices)
R1 AppleCharger; C:\Windows\System32\DRIVERS\AppleCharger.sys [22680 2012-10-25] ()
R1 cmderd; C:\Windows\System32\DRIVERS\cmderd.sys [23168 2013-04-15] (COMODO)
R1 cmdGuard; C:\Windows\System32\DRIVERS\cmdguard.sys [706560 2013-04-15] (COMODO)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [230320 2013-01-20] (Microsoft Corporation)
R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [130008 2013-01-20] (Microsoft Corporation)
R3 rzdaendpt; C:\Windows\System32\DRIVERS\rzdaendpt.sys [25600 2012-11-07] (Razer USA Ltd)
R3 rzvkeyboard; C:\Windows\System32\DRIVERS\rzvkeyboard.sys [23040 2012-11-07] (Razer USA Ltd)
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [x]
S3 slb; \??\C:\AeriaGames\ScarletBlade\avital\scarlb64.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-05-12 13:23 - 2013-05-12 13:23 - 01875978 ____A (Farbar) C:\Users\Momo\Desktop\FRST64.exe
2013-05-12 13:23 - 2013-05-12 13:23 - 00000000 ____D C:\FRST
2013-05-12 13:14 - 2013-05-12 13:14 - 337772909 ____A C:\Users\Momo\Desktop\[HorribleSubs] Suisei no Gargantia - 06 [720p].mkv
2013-05-12 08:21 - 2013-05-12 08:21 - 00000000 ___SD C:\ProgramData\Shared Space
2013-05-12 08:21 - 2013-05-12 08:21 - 00000000 ____D C:\ProgramData\Comodo Downloader
2013-05-12 08:21 - 2013-05-12 08:21 - 00000000 ____D C:\Program Files\COMODO
2013-05-11 22:55 - 2013-05-11 22:55 - 00890825 ____A C:\Users\Momo\Desktop\SecurityCheck.exe
2013-05-11 22:55 - 2013-05-11 22:55 - 00165376 ____A C:\Users\Momo\Desktop\SystemLook_x64.exe
2013-05-11 21:10 - 2013-05-11 21:10 - 00000000 ____D C:\Program Files (x86)\ESET
2013-05-11 21:09 - 2013-05-11 21:10 - 02347384 ____A (ESET) C:\Users\Momo\Desktop\esetsmartinstaller_enu.exe
2013-05-11 21:07 - 2013-05-11 21:07 - 00448512 ____A (OldTimer Tools) C:\Users\Momo\Desktop\TFC.exe
2013-05-11 21:07 - 2013-05-11 21:07 - 00354299 ____A (Farbar) C:\Users\Momo\Desktop\FSS.exe
2013-05-11 21:05 - 2013-05-11 21:05 - 00448512 ____A (OldTimer Tools) C:\Users\Momo\Downloads\TFC (1).exe
2013-05-11 21:05 - 2013-05-11 21:05 - 00354299 ____A (Farbar) C:\Users\Momo\Downloads\FSS (1).exe
2013-05-11 21:01 - 2013-05-11 21:01 - 00000000 ____D C:\_OTL
2013-05-11 21:00 - 2013-05-11 21:00 - 00890825 ____A C:\Users\Momo\Downloads\SecurityCheck.exe
2013-05-11 21:00 - 2013-05-11 21:00 - 00448512 ____A (OldTimer Tools) C:\Users\Momo\Downloads\TFC.exe
2013-05-11 21:00 - 2013-05-11 21:00 - 00354299 ____A (Farbar) C:\Users\Momo\Downloads\FSS.exe
2013-05-11 20:14 - 2013-05-11 20:14 - 00000000 ____D C:\Windows\ERUNT
2013-05-11 20:14 - 2013-05-11 20:14 - 00000000 ____D C:\JRT
2013-05-11 20:09 - 2013-05-11 20:09 - 00628743 ____A C:\Users\Momo\Desktop\adwcleaner.exe
2013-05-11 20:09 - 2013-05-11 20:09 - 00602112 ____A (OldTimer Tools) C:\Users\Momo\Desktop\OTL.exe
2013-05-11 20:09 - 2013-05-11 20:09 - 00545954 ____A (Oleg N. Scherbakov) C:\Users\Momo\Desktop\JRT.exe
2013-05-11 19:56 - 2013-05-11 20:01 - 00000000 ____D C:\ComboFix
2013-05-11 18:43 - 2011-06-26 02:45 - 00256000 ____A C:\Windows\PEV.exe
2013-05-11 18:43 - 2010-11-07 13:20 - 00208896 ____A C:\Windows\MBR.exe
2013-05-11 18:43 - 2009-04-20 00:56 - 00060416 ____A (NirSoft) C:\Windows\NIRCMD.exe
2013-05-11 18:43 - 2000-08-30 20:00 - 00518144 ____A (SteelWerX) C:\Windows\SWREG.exe
2013-05-11 18:43 - 2000-08-30 20:00 - 00406528 ____A (SteelWerX) C:\Windows\SWSC.exe
2013-05-11 18:43 - 2000-08-30 20:00 - 00098816 ____A C:\Windows\sed.exe
2013-05-11 18:43 - 2000-08-30 20:00 - 00080412 ____A C:\Windows\grep.exe
2013-05-11 18:43 - 2000-08-30 20:00 - 00068096 ____A C:\Windows\zip.exe
2013-05-11 18:41 - 2013-05-11 20:01 - 00000000 ____D C:\Qoobox
2013-05-11 18:41 - 2013-05-11 19:46 - 00000000 ____D C:\Windows\erdnt
2013-05-11 18:41 - 2013-05-11 18:41 - 05068868 ____R (Swearware) C:\Users\Momo\Desktop\ComboFix.exe
2013-05-11 16:52 - 2013-05-11 16:52 - 00000000 ____D C:\Users\Momo\AppData\Roaming\WinRAR
2013-05-11 16:52 - 2013-05-11 16:52 - 00000000 ____D C:\Program Files\WinRAR
2013-05-11 16:17 - 2013-05-11 20:11 - 00006534 ____A C:\Windows\PFRO.log
2013-05-11 16:09 - 2013-05-12 13:17 - 01474832 ____A C:\Windows\System32\Drivers\sfi.dat
2013-05-11 16:09 - 2013-05-12 08:21 - 00000000 ____D C:\ProgramData\COMODO
2013-05-11 16:09 - 2013-05-11 16:09 - 01700352 ____A (Microsoft Corporation) C:\Windows\SysWOW64\gdiplus.dll
2013-05-11 16:09 - 2013-05-11 16:09 - 01060864 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mfc71.dll
2013-05-11 16:09 - 2013-05-11 16:09 - 00348160 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msvcr71.dll
2013-05-11 16:08 - 2013-05-11 16:14 - 00000000 ____D C:\Program Files (x86)\Comodo
2013-05-11 14:38 - 2013-05-12 08:27 - 00000616 ____A C:\Windows\setupact.log
2013-05-11 14:38 - 2013-05-11 14:38 - 00000000 ____A C:\Windows\setuperr.log
2013-05-11 14:31 - 2013-05-11 14:31 - 00000017 ____A C:\Users\Momo\AppData\Local\resmon.resmoncfg
2013-05-11 14:06 - 2013-05-11 14:06 - 00688992 ____R (Swearware) C:\Users\Momo\Desktop\dds.com
2013-05-10 16:41 - 2013-05-10 16:47 - 351481850 ____A C:\Users\Momo\Desktop\[HorribleSubs] Valvrave the Liberator - 05 [720p].mkv
2013-05-09 20:45 - 2013-05-09 20:57 - 342350861 ____A C:\Users\Momo\Desktop\[HorribleSubs] Majestic Prince - 06 [720p].mkv
2013-05-06 22:52 - 2013-05-06 22:55 - 344514055 ____A C:\Users\Momo\Desktop\[HorribleSubs] Shingeki no Kyojin - 05 [720p].mkv
2013-05-02 21:02 - 2013-05-02 21:02 - 00000000 ____D C:\CrashReport
2013-05-02 20:54 - 2013-05-02 22:28 - 00000000 ____D C:\Users\Momo\Documents\dragoon
2013-05-02 18:45 - 2013-05-03 19:59 - 00000000 ____D C:\Dragons Prophet Beta
2013-05-01 23:09 - 2013-05-01 23:09 - 00000000 ____D C:\Users\Momo\AppData\Local\Sony Online Entertainment
2013-05-01 22:38 - 2013-05-01 22:38 - 00000000 ____D C:\Users\Momo\AppData\Local\Aeria Games
2013-05-01 22:38 - 2013-05-01 22:38 - 00000000 ____D C:\ProgramData\Aeria Games
2013-05-01 21:17 - 2013-05-01 23:35 - 00000000 ____D C:\AeriaGames
2013-04-25 11:05 - 2013-04-25 11:05 - 00096800 ____A (COMODO) C:\Windows\System32\Drivers\inspect.sys
2013-04-23 17:10 - 2013-04-12 10:45 - 01656680 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\ntfs.sys
2013-04-23 15:04 - 2013-04-23 15:04 - 00437176 ____A (COMODO) C:\Windows\System32\guard64.dll
2013-04-23 15:04 - 2013-04-23 15:04 - 00348048 ____A (COMODO) C:\Windows\SysWOW64\guard32.dll
2013-04-22 22:33 - 2013-04-22 22:33 - 00000000 ____D C:\Users\Momo\AppData\Roaming\Unity
2013-04-22 22:28 - 2013-05-03 22:05 - 00000000 ____D C:\Users\Momo\AppData\Local\Unity
2013-04-16 22:11 - 2013-04-16 22:53 - 00001284 ____A C:\Users\Momo\Documents\AutoHotkey.ahk
2013-04-15 18:38 - 2013-04-15 18:38 - 00706560 ____A (COMODO) C:\Windows\System32\Drivers\cmdguard.sys
2013-04-15 18:38 - 2013-04-15 18:38 - 00343760 ____A (COMODO) C:\Windows\System32\cmdvrt64.dll
2013-04-15 18:38 - 2013-04-15 18:38 - 00276688 ____A (COMODO) C:\Windows\SysWOW64\cmdvrt32.dll
2013-04-15 18:38 - 2013-04-15 18:38 - 00048360 ____A (COMODO) C:\Windows\System32\Drivers\cmdhlp.sys
2013-04-15 18:38 - 2013-04-15 18:38 - 00045776 ____A (COMODO) C:\Windows\System32\cmdkbd64.dll
2013-04-15 18:38 - 2013-04-15 18:38 - 00043216 ____A (COMODO) C:\Windows\System32\cmdcsr.dll
2013-04-15 18:38 - 2013-04-15 18:38 - 00040656 ____A (COMODO) C:\Windows\SysWOW64\cmdkbd32.dll
2013-04-15 18:38 - 2013-04-15 18:38 - 00023168 ____A (COMODO) C:\Windows\System32\Drivers\cmderd.sys
2013-04-14 20:20 - 2013-04-17 23:05 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
==================== One Month Modified Files and Folders =======
2013-05-12 13:24 - 2013-01-04 15:41 - 00000000 ____D C:\Users\Momo\AppData\Roaming\uTorrent
2013-05-12 13:23 - 2013-05-12 13:23 - 01875978 ____A (Farbar) C:\Users\Momo\Desktop\FRST64.exe
2013-05-12 13:23 - 2013-05-12 13:23 - 00000000 ____D C:\FRST
2013-05-12 13:23 - 2013-01-01 14:51 - 00000000 ____D C:\Users\Momo\AppData\Roaming\.purple
2013-05-12 13:17 - 2013-05-11 16:09 - 01474832 ____A C:\Windows\System32\Drivers\sfi.dat
2013-05-12 13:14 - 2013-05-12 13:14 - 337772909 ____A C:\Users\Momo\Desktop\[HorribleSubs] Suisei no Gargantia - 06 [720p].mkv
2013-05-12 13:10 - 2013-01-01 14:53 - 00000000 ____D C:\Users\Momo\AppData\Roaming\Skype
2013-05-12 13:06 - 2013-03-22 19:39 - 00000000 ____D C:\Users\Momo\AppData\Roaming\Dropbox
2013-05-12 13:03 - 2013-01-02 11:59 - 00000830 ____A C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-05-12 12:45 - 2013-01-01 14:30 - 00001064 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-05-12 08:34 - 2009-07-14 00:45 - 00020496 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-05-12 08:34 - 2009-07-14 00:45 - 00020496 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-05-12 08:32 - 2009-07-14 01:13 - 00778834 ____A C:\Windows\System32\PerfStringBackup.INI
2013-05-12 08:30 - 2013-01-01 13:35 - 01781213 ____A C:\Windows\WindowsUpdate.log
2013-05-12 08:27 - 2013-05-11 14:38 - 00000616 ____A C:\Windows\setupact.log
2013-05-12 08:27 - 2013-03-22 19:41 - 00000000 ___RD C:\Users\Momo\Dropbox
2013-05-12 08:27 - 2013-01-01 14:37 - 00000000 ____D C:\ProgramData\NVIDIA
2013-05-12 08:27 - 2013-01-01 14:30 - 00001060 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-05-12 08:27 - 2009-07-14 01:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT
2013-05-12 08:21 - 2013-05-12 08:21 - 00000000 ___SD C:\ProgramData\Shared Space
2013-05-12 08:21 - 2013-05-12 08:21 - 00000000 ____D C:\ProgramData\Comodo Downloader
2013-05-12 08:21 - 2013-05-12 08:21 - 00000000 ____D C:\Program Files\COMODO
2013-05-12 08:21 - 2013-05-11 16:09 - 00000000 ____D C:\ProgramData\COMODO
2013-05-12 08:07 - 2013-01-01 14:24 - 00000000 ____D C:\Program Files\Microsoft Security Client
2013-05-11 22:55 - 2013-05-11 22:55 - 00890825 ____A C:\Users\Momo\Desktop\SecurityCheck.exe
2013-05-11 22:55 - 2013-05-11 22:55 - 00165376 ____A C:\Users\Momo\Desktop\SystemLook_x64.exe
2013-05-11 21:10 - 2013-05-11 21:10 - 00000000 ____D C:\Program Files (x86)\ESET
2013-05-11 21:10 - 2013-05-11 21:09 - 02347384 ____A (ESET) C:\Users\Momo\Desktop\esetsmartinstaller_enu.exe
2013-05-11 21:07 - 2013-05-11 21:07 - 00448512 ____A (OldTimer Tools) C:\Users\Momo\Desktop\TFC.exe
2013-05-11 21:07 - 2013-05-11 21:07 - 00354299 ____A (Farbar) C:\Users\Momo\Desktop\FSS.exe
2013-05-11 21:05 - 2013-05-11 21:05 - 00448512 ____A (OldTimer Tools) C:\Users\Momo\Downloads\TFC (1).exe
2013-05-11 21:05 - 2013-05-11 21:05 - 00354299 ____A (Farbar) C:\Users\Momo\Downloads\FSS (1).exe
2013-05-11 21:01 - 2013-05-11 21:01 - 00000000 ____D C:\_OTL
2013-05-11 21:00 - 2013-05-11 21:00 - 00890825 ____A C:\Users\Momo\Downloads\SecurityCheck.exe
2013-05-11 21:00 - 2013-05-11 21:00 - 00448512 ____A (OldTimer Tools) C:\Users\Momo\Downloads\TFC.exe
2013-05-11 21:00 - 2013-05-11 21:00 - 00354299 ____A (Farbar) C:\Users\Momo\Downloads\FSS.exe
2013-05-11 20:14 - 2013-05-11 20:14 - 00000000 ____D C:\Windows\ERUNT
2013-05-11 20:14 - 2013-05-11 20:14 - 00000000 ____D C:\JRT
2013-05-11 20:11 - 2013-05-11 16:17 - 00006534 ____A C:\Windows\PFRO.log
2013-05-11 20:09 - 2013-05-11 20:09 - 00628743 ____A C:\Users\Momo\Desktop\adwcleaner.exe
2013-05-11 20:09 - 2013-05-11 20:09 - 00602112 ____A (OldTimer Tools) C:\Users\Momo\Desktop\OTL.exe
2013-05-11 20:09 - 2013-05-11 20:09 - 00545954 ____A (Oleg N. Scherbakov) C:\Users\Momo\Desktop\JRT.exe
2013-05-11 20:01 - 2013-05-11 19:56 - 00000000 ____D C:\ComboFix
2013-05-11 20:01 - 2013-05-11 18:41 - 00000000 ____D C:\Qoobox
2013-05-11 20:00 - 2009-07-13 22:34 - 00000215 ____A C:\Windows\system.ini
2013-05-11 19:47 - 2009-07-13 22:34 - 53477376 ____A C:\Windows\System32\config\SOFTWARE.bak
2013-05-11 19:47 - 2009-07-13 22:34 - 19398656 ____A C:\Windows\System32\config\SYSTEM.bak
2013-05-11 19:47 - 2009-07-13 22:34 - 00262144 ____A C:\Windows\System32\config\SECURITY.bak
2013-05-11 19:47 - 2009-07-13 22:34 - 00262144 ____A C:\Windows\System32\config\SAM.bak
2013-05-11 19:47 - 2009-07-13 22:34 - 00262144 ____A C:\Windows\System32\config\DEFAULT.bak
2013-05-11 19:46 - 2013-05-11 18:41 - 00000000 ____D C:\Windows\erdnt
2013-05-11 19:46 - 2009-07-13 22:34 - 44040192 ____A C:\Windows\System32\config\COMPONENTS.bak
2013-05-11 18:41 - 2013-05-11 18:41 - 05068868 ____R (Swearware) C:\Users\Momo\Desktop\ComboFix.exe
2013-05-11 16:52 - 2013-05-11 16:52 - 00000000 ____D C:\Users\Momo\AppData\Roaming\WinRAR
2013-05-11 16:52 - 2013-05-11 16:52 - 00000000 ____D C:\Program Files\WinRAR
2013-05-11 16:14 - 2013-05-11 16:08 - 00000000 ____D C:\Program Files (x86)\Comodo
2013-05-11 16:09 - 2013-05-11 16:09 - 01700352 ____A (Microsoft Corporation) C:\Windows\SysWOW64\gdiplus.dll
2013-05-11 16:09 - 2013-05-11 16:09 - 01060864 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mfc71.dll
2013-05-11 16:09 - 2013-05-11 16:09 - 00348160 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msvcr71.dll
2013-05-11 14:38 - 2013-05-11 14:38 - 00000000 ____A C:\Windows\setuperr.log
2013-05-11 14:31 - 2013-05-11 14:31 - 00000017 ____A C:\Users\Momo\AppData\Local\resmon.resmoncfg
2013-05-11 14:06 - 2013-05-11 14:06 - 00688992 ____R (Swearware) C:\Users\Momo\Desktop\dds.com
2013-05-11 11:16 - 2013-01-24 20:50 - 00001109 ____A C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-05-11 11:16 - 2013-01-24 20:50 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-05-10 19:07 - 2013-01-04 16:20 - 00000000 ____D C:\Users\Momo\AppData\Roaming\vlc
2013-05-10 16:47 - 2013-05-10 16:41 - 351481850 ____A C:\Users\Momo\Desktop\[HorribleSubs] Valvrave the Liberator - 05 [720p].mkv
2013-05-09 20:57 - 2013-05-09 20:45 - 342350861 ____A C:\Users\Momo\Desktop\[HorribleSubs] Majestic Prince - 06 [720p].mkv
2013-05-06 22:55 - 2013-05-06 22:52 - 344514055 ____A C:\Users\Momo\Desktop\[HorribleSubs] Shingeki no Kyojin - 05 [720p].mkv
2013-05-06 18:42 - 2013-01-14 20:47 - 00002190 ___AH C:\Users\Momo\Documents\Default.rdp
2013-05-06 18:41 - 2013-01-03 10:53 - 00000000 ____D C:\Users\Momo\AppData\Roaming\Questrade
2013-05-06 18:41 - 2013-01-03 10:52 - 00000000 ____D C:\Users\Momo\Documents\Questrade IQ Edge
2013-05-06 18:40 - 2013-01-03 10:52 - 00001105 ____A C:\Users\Public\Desktop\Questrade IQ Edge.lnk
2013-05-06 18:40 - 2013-01-03 10:52 - 00000000 ____D C:\Program Files (x86)\Questrade IQ Edge
2013-05-03 22:05 - 2013-04-22 22:28 - 00000000 ____D C:\Users\Momo\AppData\Local\Unity
2013-05-03 19:59 - 2013-05-02 18:45 - 00000000 ____D C:\Dragons Prophet Beta
2013-05-03 17:07 - 2013-01-04 15:42 - 00000000 ____D C:\Program Files (x86)\uTorrent
2013-05-02 22:28 - 2013-05-02 20:54 - 00000000 ____D C:\Users\Momo\Documents\dragoon
2013-05-02 21:02 - 2013-05-02 21:02 - 00000000 ____D C:\CrashReport
2013-05-02 18:45 - 2013-01-01 14:57 - 00000000 ____D C:\Windows\SysWOW64\directx
2013-05-02 18:37 - 2013-03-17 22:28 - 00000000 ____D C:\Program Files (x86)\Pando Networks
2013-05-02 11:29 - 2010-11-20 23:27 - 00278800 ____N (Microsoft Corporation) C:\Windows\System32\MpSigStub.exe
2013-05-01 23:35 - 2013-05-01 21:17 - 00000000 ____D C:\AeriaGames
2013-05-01 23:12 - 2010-11-21 03:16 - 00000000 ____D C:\Windows\ShellNew
2013-05-01 23:09 - 2013-05-01 23:09 - 00000000 ____D C:\Users\Momo\AppData\Local\Sony Online Entertainment
2013-05-01 23:08 - 2013-03-17 22:51 - 00000000 ____D C:\ProgramData\NexonUS
2013-05-01 23:02 - 2013-01-24 20:55 - 00000822 ____A C:\Users\Public\Desktop\CCleaner.lnk
2013-05-01 23:02 - 2013-01-24 20:55 - 00000000 ____D C:\Program Files\CCleaner
2013-05-01 22:38 - 2013-05-01 22:38 - 00000000 ____D C:\Users\Momo\AppData\Local\Aeria Games
2013-05-01 22:38 - 2013-05-01 22:38 - 00000000 ____D C:\ProgramData\Aeria Games
2013-04-28 21:29 - 2013-01-30 19:37 - 00000000 ____D C:\Users\Momo\Documents\My Games
2013-04-25 11:05 - 2013-04-25 11:05 - 00096800 ____A (COMODO) C:\Windows\System32\Drivers\inspect.sys
2013-04-23 15:04 - 2013-04-23 15:04 - 00437176 ____A (COMODO) C:\Windows\System32\guard64.dll
2013-04-23 15:04 - 2013-04-23 15:04 - 00348048 ____A (COMODO) C:\Windows\SysWOW64\guard32.dll
2013-04-22 22:33 - 2013-04-22 22:33 - 00000000 ____D C:\Users\Momo\AppData\Roaming\Unity
2013-04-18 18:49 - 2013-01-02 10:00 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-04-17 23:05 - 2013-04-14 20:20 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-04-16 22:53 - 2013-04-16 22:11 - 00001284 ____A C:\Users\Momo\Documents\AutoHotkey.ahk
2013-04-16 22:16 - 2013-03-03 17:03 - 00000000 ____D C:\ProgramData\HappyCloud
2013-04-16 22:15 - 2013-01-01 14:29 - 00000000 ____D C:\Users\Momo\AppData\Local\Deployment
2013-04-16 14:55 - 2013-01-31 19:24 - 00000000 ___RD C:\Program Files (x86)\Skype
2013-04-16 14:55 - 2013-01-01 14:53 - 00000000 ____D C:\ProgramData\Skype
2013-04-16 14:55 - 2009-07-14 01:08 - 00032636 ____A C:\Windows\Tasks\SCHEDLGU.TXT
2013-04-15 18:38 - 2013-04-15 18:38 - 00706560 ____A (COMODO) C:\Windows\System32\Drivers\cmdguard.sys
2013-04-15 18:38 - 2013-04-15 18:38 - 00343760 ____A (COMODO) C:\Windows\System32\cmdvrt64.dll
2013-04-15 18:38 - 2013-04-15 18:38 - 00276688 ____A (COMODO) C:\Windows\SysWOW64\cmdvrt32.dll
2013-04-15 18:38 - 2013-04-15 18:38 - 00048360 ____A (COMODO) C:\Windows\System32\Drivers\cmdhlp.sys
2013-04-15 18:38 - 2013-04-15 18:38 - 00045776 ____A (COMODO) C:\Windows\System32\cmdkbd64.dll
2013-04-15 18:38 - 2013-04-15 18:38 - 00043216 ____A (COMODO) C:\Windows\System32\cmdcsr.dll
2013-04-15 18:38 - 2013-04-15 18:38 - 00040656 ____A (COMODO) C:\Windows\SysWOW64\cmdkbd32.dll
2013-04-15 18:38 - 2013-04-15 18:38 - 00023168 ____A (COMODO) C:\Windows\System32\Drivers\cmderd.sys
2013-04-14 21:18 - 2013-01-01 22:25 - 00000000 ____D C:\Users\Momo\AppData\Roaming\TS3Client
2013-04-14 21:18 - 2013-01-01 16:27 - 00000000 ____D C:\Windows\Panther
2013-04-14 21:17 - 2013-03-17 22:47 - 00000000 ___SD C:\Users\Momo\Documents\Mabinogi
2013-04-14 17:39 - 2013-01-01 20:54 - 00000000 ____D C:\Users\Momo\AppData\Roaming\ActiveDossierUploader
2013-04-12 10:45 - 2013-04-23 17:10 - 01656680 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\ntfs.sys
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
Last Boot: 2013-05-04 13:21
==================== End Of Log ============================