Jump to content

Computer is slow


Recommended Posts

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-05-2014 01 (ATTENTION: ====> FRST version is 8 days old and could be outdated)

Ran by Plating (administrator) on PLATING-PC on 19-05-2014 22:44:16

Running from C:\Users\Plating\Desktop

Platform: Windows 7 Ultimate Service Pack 1 (X64) OS Language: English(US)

Internet Explorer Version 11

Boot Mode: Normal

 

The only official download link for FRST:



Download link from any site other than Bleeping Computer is unpermitted or outdated.


 

==================== Processes (Whitelisted) =================

 

(Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Antivirus Pro 2014\psksvc.exe

(Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Antivirus Pro 2014\TPSrvWow.exe

(Microsoft Corporation) C:\Windows\System32\wlanext.exe

(Panda Security) C:\Program Files (x86)\Panda Security\Panda Antivirus Pro 2014\WebProxy.exe

(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe

(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL11.PRD2012\MSSQL\Binn\sqlservr.exe

(Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Antivirus Pro 2014\PsCtrlS.exe

(Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Antivirus Pro 2014\PavFnSvr.exe

(Panda Security, S.L.) C:\Program Files (x86)\Common Files\Panda Security\PavShld\PavPrSrv.exe

(Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Antivirus Pro 2014\pavsrvx86.exe

(Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Antivirus Pro 2014\AVENGINE.EXE

(Panda Security S.L.) C:\Program Files (x86)\Panda Security\Panda Antivirus Pro 2014\PsImSvc.exe

(Intel® Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe

(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe

(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe

(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE

(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe

(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE

(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL11.PRD2012\MSSQL\Binn\fdlauncher.exe

(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL11.PRD2012\MSSQL\Binn\fdhost.exe

(Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe

(Intel® Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe

(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE

(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\iWrap.exe

(Microsoft Corporation) C:\Windows\System32\audiodg.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

(Malwarebytes Corporation                                    ) C:\Users\Plating\Downloads\mbam-setup-2.0.1.1004.exe

() C:\Users\Plating\AppData\Local\Temp\is-1H47E.tmp\mbam-setup-2.0.1.1004.tmp

(Malwarebytes Corporation                                    ) C:\Users\Plating\Downloads\mbam-setup-2.0.1.1004.exe

() C:\Users\Plating\AppData\Local\Temp\is-T80MQ.tmp\mbam-setup-2.0.1.1004.tmp

 

 

==================== Registry (Whitelisted) ==================

 

HKLM-x32\...\Run: [sunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)

HKLM-x32\...\Run: [APVXDWIN] => C:\Program Files (x86)\Panda Security\Panda Antivirus Pro 2014\APVXDWIN.EXE [1062880 2013-09-30] (Panda Security, S.L.)

HKLM-x32\...\Run: [sCANINICIO] => C:\Program Files (x86)\Panda Security\Panda Antivirus Pro 2014\Inicio.exe [71648 2013-09-30] (Panda Security, S.L.)

Winlogon\Notify\avldr: C:\Windows\system32\avldr64.dll (On-Access Anti-Malware Scanner Sync)

Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)

HKU\S-1-5-21-1000836758-3836644389-1698870471-1000\...\Run: [uTorrent] => C:\Users\Plating\AppData\Roaming\uTorrent\uTorrent.exe [1268560 2014-05-09] (BitTorrent Inc.)

HKU\S-1-5-21-1000836758-3836644389-1698870471-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd)

HKU\S-1-5-21-1000836758-3836644389-1698870471-1000\...\Run: [DellSystemDetect] => C:\Users\Plating\AppData\Local\Apps\2.0\HRQL2W32.42J\8HV2DNAT.GV8\dell..tion_0f612f649c4a10af_0005.0007_59de4fd2458fcaec\DellSystemDetect.exe [254976 2014-05-17] (Dell)

 

==================== Internet (Whitelisted) ====================

 

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://ca.msn.com/?rd=1&ucc=CA&dcc=CA&opt=0&ocid=iehp

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xEC83E669BEFDCE01

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us

HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://g.msn.com/1ewenusDefaultPack/UP97_FRPage

SearchScopes: HKLM - {77AA745B-F4F8-45DA-9B14-61D2D95054C8} URL = 



BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)

BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)

BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)

BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)

BHO-x32: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)

BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)

BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)

BHO-x32: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)

Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.254 75.153.176.9

 

FireFox:

========

FF ProfilePath: C:\Users\Plating\AppData\Roaming\Mozilla\Firefox\Profiles\k7jhdccg.default

FF user.js: detected! => C:\Users\Plating\AppData\Roaming\Mozilla\Firefox\Profiles\k7jhdccg.default\user.js

FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll ()

FF Plugin: @microsoft.com/GENUINE - disabled No File

FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)

FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll ()

FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()

FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)

FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)

FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)

FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)

FF Plugin-x32: @microsoft.com/GENUINE - disabled No File

FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)

FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)

FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3522.0110 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)

FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)

FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)

FF Plugin-x32: @videolan.org/vlc,version=2.0.0 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)

FF Plugin-x32: @videolan.org/vlc,version=2.1.3 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)

FF Extension: MySearchDial NewTab - C:\Users\Plating\AppData\Roaming\Mozilla\Firefox\Profiles\k7jhdccg.default\Extensions\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8} [2014-05-19]

 

Chrome: 

=======

CHR HomePage: hxxp://vancouver.en.craigslist.ca/

CHR StartupUrls: "hxxp://start.mysearchdial.com/?f=1&a=dsites04_14_17_ch&cd=2XzuyEtN2Y1L1QzuzzyEzz0FyCzy0CtAzy0AtBtA0F0FtBzytN0D0Tzu0SzzyEzztN1L2XzutBtFtBtDtFyDtFtDtN1L1CzutCyEtDtAtDyD1V1TtN1L1G1B1V1N2Y1L1Qzu2SyDzz0AtC0CyB0EzytGyBtAtBtAtGtDzytBtAtG0F0FzytAtGtAyEyEtDyEyB0DtD0Dzyzyzz2QtN1M1F1B2Z1V1N2Y1L1Qzu2StBzz0CyCyDzyyD0FtG0BtC0EtCtG0A0CtD0EtG0E0DyE0AtGyD0FtB0ByByCyByEyEzytAtA2Q&cr=327136600&ir=", "hxxp://www.msn.com/?pc=UP97&ocid=UP97DHP"

CHR Extension: (Google Docs) - C:\Users\Plating\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-12-20]

CHR Extension: (Google Drive) - C:\Users\Plating\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-12-20]

CHR Extension: (YouTube) - C:\Users\Plating\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-12-20]

CHR Extension: (Google Search) - C:\Users\Plating\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-12-20]

CHR Extension: (Motorola Connect) - C:\Users\Plating\AppData\Local\Google\Chrome\User Data\Default\Extensions\kigmoblgooahdmdibodmcnffgnejlndh [2014-05-13]

CHR Extension: (Google Wallet) - C:\Users\Plating\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-12-20]

CHR Extension: (Gmail) - C:\Users\Plating\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-12-20]

 

==================== Services (Whitelisted) =================

 

S3 MsDtsServer110; C:\Program Files\Microsoft SQL Server\110\DTS\Binn\MsDtsSrvr.exe [218040 2012-06-12] (Microsoft Corporation)

R3 MSSQLFDLauncher; C:\Program Files\Microsoft SQL Server\MSSQL11.PRD2012\MSSQL\Binn\fdlauncher.exe [49752 2012-02-11] (Microsoft Corporation)

R2 MSSQLSERVER; C:\Program Files\Microsoft SQL Server\MSSQL11.PRD2012\MSSQL\Binn\sqlservr.exe [190904 2012-06-12] (Microsoft Corporation)

S3 MSSQLServerOLAPService; C:\Program Files\Microsoft SQL Server\MSAS11.PRD2012\OLAP\bin\msmdsrv.exe [61538744 2012-06-12] (Microsoft Corporation)

S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [272688 2012-06-25] ()

R2 Panda Software Controller; C:\Program Files (x86)\Panda Security\Panda Antivirus Pro 2014\PsCtrls.exe [177440 2012-11-19] (Panda Security, S.L.)

R2 PAVFNSVR; C:\Program Files (x86)\Panda Security\Panda Antivirus Pro 2014\PavFnSvr.exe [202016 2012-09-21] (Panda Security, S.L.)

R2 PavPrSrv; C:\Program Files (x86)\Common Files\Panda Security\PavShld\pavprsrv.exe [62768 2008-02-04] (Panda Security, S.L.)

R2 PAVSRV; C:\Program Files (x86)\Panda Security\Panda Antivirus Pro 2014\pavsrvx86.exe [313664 2011-04-13] (Panda Security, S.L.)

R2 PSIMSVC; C:\Program Files (x86)\Panda Security\Panda Antivirus Pro 2014\PsImSvc.exe [108288 2008-06-19] (Panda Security S.L.)

R2 PskSvcRetail; C:\Program Files (x86)\Panda Security\Panda Antivirus Pro 2014\PskSvc.exe [28992 2010-08-16] (Panda Security, S.L.)

S3 ReportServer; C:\Program Files\Microsoft SQL Server\MSRS11.PRD2012\Reporting Services\ReportServer\bin\ReportingServicesService.exe [2348472 2012-06-12] (Microsoft Corporation)

S3 SQL Server Distributed Replay Client; C:\Program Files (x86)\Microsoft SQL Server\110\Tools\DReplayClient\DReplayClient.exe [137304 2012-02-11] (Microsoft Corporation)

S3 SQL Server Distributed Replay Controller; C:\Program Files (x86)\Microsoft SQL Server\110\Tools\DReplayController\DReplayController.exe [342104 2012-02-11] (Microsoft Corporation)

S3 SQLSERVERAGENT; C:\Program Files\Microsoft SQL Server\MSSQL11.PRD2012\MSSQL\Binn\SQLAGENT.EXE [608696 2012-06-12] (Microsoft Corporation)

R2 TPSrv; C:\Program Files (x86)\Panda Security\Panda Antivirus Pro 2014\TPSrvWow.exe [173816 2014-02-25] (Panda Security, S.L.)

R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3325232 2012-06-25] (Intel® Corporation)

 

==================== Drivers (Whitelisted) ====================

 

R2 AmFSM; C:\Windows\System32\DRIVERS\amm6460.sys [71432 2012-03-26] (Panda Security, S.L.)

R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2013-12-28] (Disc Soft Ltd)

R0 pavboot; C:\Windows\System32\Drivers\pavboot64.sys [30792 2010-06-22] (Panda Security, S.L.)

S4 RsFx0200; C:\Windows\System32\DRIVERS\RsFx0200.sys [334936 2012-02-11] (Microsoft Corporation)

R1 ShldFlt; C:\Windows\System32\DRIVERS\ShldFlt.sys [48136 2009-10-27] (Panda Security, S.L.)

S3 lmimirr; system32\DRIVERS\lmimirr.sys [X]

R3 PavTPK.sys; \??\C:\Windows\system32\PavTPK.sys [X]

S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]

S3 tsusbhub; system32\drivers\tsusbhub.sys [X]

S3 VGPU; System32\drivers\rdvgkmd.sys [X]

 

==================== NetSvcs (Whitelisted) ===================

 

 

==================== One Month Created Files and Folders ========

 

2014-05-19 22:44 - 2014-05-19 22:44 - 00016158 _____ () C:\Users\Plating\Desktop\FRST.txt

2014-05-19 22:44 - 2014-05-19 22:44 - 00000000 ____D () C:\FRST

2014-05-19 22:43 - 2014-05-19 22:43 - 00001108 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk

2014-05-19 22:43 - 2014-05-19 22:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware

2014-05-19 22:43 - 2014-05-19 22:43 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware

2014-05-19 22:43 - 2014-04-03 09:51 - 00088280 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys

2014-05-19 22:43 - 2014-04-03 09:51 - 00063192 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys

2014-05-19 22:43 - 2014-04-03 09:50 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys

2014-05-19 22:42 - 2014-05-19 22:42 - 02067456 _____ (Farbar) C:\Users\Plating\Downloads\FRST64 (1).exe

2014-05-19 22:41 - 2014-05-19 22:42 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Plating\Downloads\mbam-setup-2.0.1.1004.exe

2014-05-19 19:55 - 2014-05-19 19:55 - 00418424 _____ () C:\Users\Plating\Downloads\Player Setup.exe

2014-05-19 19:30 - 2014-05-19 19:30 - 00942528 _____ () C:\Users\Plating\Downloads\setup.exe

2014-05-18 21:10 - 2014-05-18 21:10 - 00335728 _____ (Excellent4App) C:\Users\Plating\Downloads\Alexis y Fido - Contestame El Telefono (feat Flex).exe

2014-05-18 21:08 - 2014-05-18 21:08 - 00335792 _____ (Excellent4App) C:\Users\Plating\Downloads\Alexis Fido Feat Flex - Contestame el telefono alexis y fido feat flex.exe

2014-05-17 01:15 - 2014-05-17 01:15 - 00000000 ____D () C:\Windows\LastGood

2014-05-17 01:15 - 2011-08-23 21:57 - 00565352 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys

2014-05-17 01:15 - 2011-08-23 21:57 - 00074272 _____ () C:\Windows\system32\RtNicProp64.dll

2014-05-17 01:14 - 2014-05-17 01:14 - 05848248 _____ () C:\Users\Plating\Downloads\LOM_Realtek_W7_A03_Setup-X4R87_ZPE.exe

2014-05-17 01:14 - 2014-05-17 01:14 - 02701696 _____ () C:\Users\Plating\Downloads\R292605.exe

2014-05-17 01:09 - 2014-05-17 01:09 - 00417872 _____ () C:\Users\Plating\Downloads\DellSystemDetect.exe

2014-05-16 01:40 - 2014-05-16 01:46 - 00000000 ____D () C:\ProgramData\VCE Exam Simulator

2014-05-16 01:40 - 2014-05-16 01:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VCE Exam Simulator Demo

2014-05-16 01:40 - 2014-05-16 01:40 - 00000000 ____D () C:\Program Files (x86)\VCE Exam Simulator Demo

2014-05-16 01:38 - 2014-05-16 01:39 - 14800237 _____ () C:\Users\Plating\Downloads\vce_exam_simulator_demo_setup (1).zip

2014-05-16 01:35 - 2014-05-16 01:36 - 14804014 _____ () C:\Users\Plating\Downloads\vce_exam_simulator_demo_setup.zip

2014-05-16 01:34 - 2014-05-16 01:34 - 00649664 _____ (Visual CertExam Software ) C:\Users\Plating\Downloads\vce_converter_setup.exe

2014-05-16 01:32 - 2014-05-16 01:32 - 00000000 ____D () C:\Users\Plating\AppData\Roaming\IsolatedStorage

2014-05-16 01:32 - 2014-05-16 01:32 - 00000000 ____D () C:\Users\Plating\AppData\Local\FileViewPro

2014-05-16 01:32 - 2014-05-16 01:32 - 00000000 ____D () C:\ProgramData\IsolatedStorage

2014-05-16 01:29 - 2014-05-16 01:32 - 00000000 ____D () C:\Program Files\FileViewPro

2014-05-16 01:24 - 2014-05-16 01:24 - 02388400 _____ () C:\Users\Plating\Downloads\FileViewPro_2014.exe

2014-05-16 01:24 - 2014-05-16 01:24 - 00000000 ____D () C:\Spacekace

2014-05-16 01:23 - 2014-05-16 01:23 - 00000000 ____D () C:\Windows\SysWOW64\WinNTDlls

2014-05-16 01:23 - 2014-05-16 01:23 - 00000000 ____D () C:\Windows\SysWOW64\Win98Dlls

2014-05-16 01:23 - 2014-05-16 01:23 - 00000000 ____D () C:\Users\Plating\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Press Training Kit Exam Prep

2014-05-16 01:23 - 2014-05-16 01:23 - 00000000 ____D () C:\Program Files (x86)\Microsoft Press Training Kit Exam Prep

2014-05-16 01:22 - 2014-05-16 01:22 - 01395271 _____ () C:\Users\Plating\Downloads\Microsoft.Braindump2go.70-462.v2013-08-12.by.Raman.90q.vce

2014-05-15 23:15 - 2014-05-15 23:15 - 00000000 ____D () C:\ProgramData\Panda Software

2014-05-15 20:39 - 2014-05-15 20:45 - 155611589 _____ () C:\Users\Plating\Downloads\How To Kiss a Girl You Just Met (w_ Live Footage!).mp4

2014-05-15 19:22 - 2014-05-15 19:23 - 00250152 _____ (Premium Installer ) C:\Users\Plating\Downloads\Player-Chrome.exe

2014-05-13 21:18 - 2014-05-13 21:18 - 02066944 _____ (Farbar) C:\Users\Plating\Desktop\FRST64.exe

2014-05-13 20:48 - 2014-05-15 23:18 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys

2014-05-13 20:48 - 2014-05-13 20:48 - 00000000 ____D () C:\ProgramData\Malwarebytes

2014-05-13 20:13 - 2014-05-05 21:40 - 23544320 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll

2014-05-13 20:13 - 2014-05-05 21:17 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb

2014-05-13 20:13 - 2014-05-05 20:25 - 17382912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll

2014-05-13 20:13 - 2014-05-05 20:07 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb

2014-05-13 20:13 - 2014-05-05 20:00 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll

2014-05-13 20:13 - 2014-05-05 19:10 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll

2014-05-13 20:06 - 2014-05-08 23:14 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll

2014-05-13 20:06 - 2014-05-08 23:11 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll

2014-05-13 20:06 - 2014-04-11 19:22 - 00155072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys

2014-05-13 20:06 - 2014-04-11 19:22 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys

2014-05-13 20:06 - 2014-04-11 19:19 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll

2014-05-13 20:06 - 2014-04-11 19:19 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll

2014-05-13 20:06 - 2014-04-11 19:19 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe

2014-05-13 20:06 - 2014-04-11 19:19 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll

2014-05-13 20:06 - 2014-04-11 19:19 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll

2014-05-13 20:06 - 2014-04-11 19:12 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll

2014-05-13 20:06 - 2014-04-11 19:10 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll

2014-05-13 20:06 - 2014-03-24 19:43 - 14175744 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll

2014-05-13 20:06 - 2014-03-24 19:09 - 12874240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll

2014-05-13 20:06 - 2014-03-04 02:47 - 05550016 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe

2014-05-13 20:06 - 2014-03-04 02:44 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll

2014-05-13 20:06 - 2014-03-04 02:44 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll

2014-05-13 20:06 - 2014-03-04 02:44 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll

2014-05-13 20:06 - 2014-03-04 02:44 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll

2014-05-13 20:06 - 2014-03-04 02:44 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll

2014-05-13 20:06 - 2014-03-04 02:44 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll

2014-05-13 20:06 - 2014-03-04 02:44 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll

2014-05-13 20:06 - 2014-03-04 02:44 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll

2014-05-13 20:06 - 2014-03-04 02:43 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe

2014-05-13 20:06 - 2014-03-04 02:43 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll

2014-05-13 20:06 - 2014-03-04 02:43 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll

2014-05-13 20:06 - 2014-03-04 02:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll

2014-05-13 20:06 - 2014-03-04 02:43 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll

2014-05-13 20:06 - 2014-03-04 02:43 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll

2014-05-13 20:06 - 2014-03-04 02:43 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll

2014-05-13 20:06 - 2014-03-04 02:20 - 03969984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe

2014-05-13 20:06 - 2014-03-04 02:20 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe

2014-05-13 20:06 - 2014-03-04 02:17 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll

2014-05-13 20:06 - 2014-03-04 02:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll

2014-05-13 20:06 - 2014-03-04 02:17 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll

2014-05-13 20:06 - 2014-03-04 02:17 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll

2014-05-13 20:06 - 2014-03-04 02:17 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll

2014-05-13 20:06 - 2014-03-04 02:17 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll

2014-05-13 20:06 - 2014-03-04 02:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll

2014-05-13 20:06 - 2014-03-04 02:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll

2014-05-13 20:06 - 2014-03-04 02:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll

2014-05-13 20:06 - 2014-03-04 02:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll

2014-05-13 20:06 - 2014-03-04 02:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll

2014-05-13 20:06 - 2014-03-04 02:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll

2014-05-13 20:06 - 2014-03-04 02:17 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll

2014-05-13 20:06 - 2014-03-04 02:16 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll

2014-05-13 00:01 - 2014-05-13 00:01 - 00000000 ____D () C:\Users\Plating\AppData\Local\VS Revo Group

2014-05-13 00:01 - 2014-05-13 00:01 - 00000000 ____D () C:\ProgramData\VS Revo Group

2014-05-13 00:01 - 2014-05-13 00:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro

2014-05-13 00:01 - 2014-05-13 00:01 - 00000000 ____D () C:\Program Files\VS Revo Group

2014-05-13 00:01 - 2009-12-30 10:21 - 00031800 _____ (VS Revo Group) C:\Windows\system32\Drivers\revoflt.sys

2014-05-12 20:35 - 2014-05-12 20:35 - 00003256 _____ () C:\Windows\System32\Tasks\{3F471AAD-0E5F-44AC-9285-AAA7A57B001B}

2014-05-12 20:33 - 2014-05-12 20:33 - 00000000 ____D () C:\Program Files (x86)\ManageEngine

2014-05-10 12:24 - 2014-05-10 12:24 - 00000146 _____ () C:\Users\Plating\Desktop\paris.txt

2014-05-08 22:02 - 2014-05-08 22:03 - 00000128 _____ () C:\Users\Plating\Desktop\yo soy.txt

2014-05-08 21:38 - 2014-05-08 21:38 - 00000000 ____D () C:\Panda Software

2014-05-06 22:00 - 2014-05-13 20:18 - 00000000 ___SD () C:\Windows\system32\CompatTel

2014-05-03 11:04 - 2013-10-01 04:40 - 00197600 _____ (Panda Security) C:\Windows\system32\PavTrc64.dll

2014-05-03 11:04 - 2013-09-12 09:15 - 00153568 _____ (Panda Security) C:\Windows\SysWOW64\PavTrc.dll

2014-05-03 11:04 - 2012-04-04 08:00 - 00269312 _____ (Panda Security) C:\Windows\system32\WPApi64.dll

2014-05-03 11:04 - 2012-04-04 08:00 - 00177664 _____ (Panda Security) C:\Windows\SysWOW64\WPApi.dll

2014-05-02 23:29 - 2014-05-18 11:30 - 00008627 _____ () C:\Windows\SysWOW64\PAV_FOG.OPC

2014-05-02 23:12 - 2014-05-02 23:12 - 00000000 ____D () C:\Users\Plating\AppData\Local\Panda Security

2014-05-02 23:11 - 2014-05-02 23:11 - 00000262 _____ () C:\Windows\system32\PavCPL64.dat

2014-05-02 23:11 - 2014-05-02 23:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panda Antivirus Pro 2014

2014-05-02 23:11 - 2010-06-22 18:20 - 00030792 _____ (Panda Security, S.L.) C:\Windows\system32\Drivers\pavboot64.sys

2014-05-02 23:11 - 2007-03-15 19:38 - 00046640 _____ (Panda Software) C:\Windows\system32\pavcpl64.cpl

2014-05-02 23:10 - 2014-05-12 23:06 - 00000000 ____D () C:\Program Files (x86)\Panda Security

2014-05-02 23:10 - 2014-05-02 23:10 - 00000000 ____D () C:\Windows\SysWOW64\PAV

2014-05-02 23:10 - 2014-05-02 23:10 - 00000000 ____D () C:\Users\Plating\AppData\Roaming\Panda Security

2014-05-02 23:10 - 2014-05-02 23:10 - 00000000 ____D () C:\ProgramData\Panda Security

2014-05-02 23:10 - 2014-03-20 02:29 - 00120056 _____ (Panda Security, S.L.) C:\Windows\system32\PavLspHook64.dll

2014-05-02 23:10 - 2014-03-20 02:29 - 00089336 _____ (Panda Security, S.L.) C:\Windows\SysWOW64\PavLspHookWow.dll

2014-05-02 23:10 - 2014-02-25 03:59 - 00838392 _____ (Panda Security, S.L.) C:\Windows\system32\PavSHook64.dll

2014-05-02 23:10 - 2014-02-25 03:59 - 00545528 _____ (Panda Security, S.L.) C:\Windows\SysWOW64\PavSHookWow.dll

2014-05-02 23:10 - 2014-02-25 03:59 - 00269560 _____ (Panda Security, S.L.) C:\Windows\system32\sysHelper64.dll

2014-05-02 23:10 - 2014-02-25 03:59 - 00213752 _____ (Panda Security, S.L.) C:\Windows\SysWOW64\sysHelper32.dll

2014-05-02 23:10 - 2012-03-26 18:57 - 00071432 _____ (Panda Security, S.L.) C:\Windows\system32\Drivers\amm6460.sys

2014-05-02 23:10 - 2010-06-21 17:02 - 00323392 _____ (Panda Security, S.L.) C:\Windows\system32\TpUtil64.dll

2014-05-02 23:10 - 2010-06-21 17:02 - 00202048 _____ (Panda Security, S.L.) C:\Windows\SysWOW64\TpUtilWow.dll

2014-05-02 23:10 - 2010-06-21 17:01 - 00090944 _____ (Panda Security, S.L.) C:\Windows\system32\PavIpc64.dll

2014-05-02 23:10 - 2010-06-21 17:01 - 00066880 _____ (Panda Security, S.L.) C:\Windows\SysWOW64\PavIpcWow.dll

2014-05-02 23:10 - 2010-03-24 12:56 - 00064768 _____ (On-Access Anti-Malware Scanner Sync) C:\Windows\system32\avldr64.dll

2014-05-02 23:10 - 2009-10-27 12:07 - 00048136 _____ (Panda Security, S.L.) C:\Windows\system32\Drivers\ShldFlt.sys

2014-05-02 23:10 - 2003-10-22 18:23 - 00446464 _____ (eHelp Corporation.) C:\Windows\SysWOW64\HHActiveX.dll

2014-05-02 23:06 - 2014-05-02 23:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java

2014-05-02 23:06 - 2014-04-14 20:13 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll

2014-05-02 23:06 - 2014-04-14 20:05 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe

2014-05-02 23:06 - 2014-04-14 20:05 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe

2014-05-02 23:06 - 2014-04-14 20:04 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe

2014-05-02 23:05 - 2014-05-02 23:06 - 00004030 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_55-b14.log

2014-05-02 22:58 - 2014-05-02 22:58 - 00000260 _____ () C:\Users\Plating\Desktop\house.txt

2014-05-01 22:03 - 2014-05-01 22:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Capcom

2014-05-01 22:02 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll

2014-05-01 21:57 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll

2014-05-01 21:57 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll

2014-05-01 21:57 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll

2014-05-01 21:57 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll

2014-05-01 21:57 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll

2014-05-01 21:57 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll

2014-05-01 21:57 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll

2014-05-01 21:57 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll

2014-05-01 21:57 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll

2014-05-01 21:57 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll

2014-05-01 21:57 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll

2014-05-01 21:57 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll

2014-05-01 21:57 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll

2014-05-01 21:57 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll

2014-05-01 21:57 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll

2014-05-01 21:57 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll

2014-05-01 21:57 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll

2014-05-01 21:45 - 2014-05-01 21:45 - 00000000 ____D () C:\Program Files (x86)\Capcom

2014-05-01 19:30 - 2014-05-01 20:02 - 00001333 _____ () C:\Users\Plating\Desktop\myhouse.html

2014-04-28 21:06 - 2014-04-28 21:06 - 00000012 _____ () C:\Users\Plating\Desktop\chris rego.txt

2014-04-28 00:11 - 2014-04-28 00:17 - 00000525 _____ () C:\Users\Plating\Desktop\MyApproach.txt

2014-04-27 21:03 - 2014-04-27 21:03 - 00000040 _____ () C:\Users\Plating\AppData\Roaming\WB.CFG

2014-04-27 20:06 - 2014-04-27 20:06 - 00000000 ____D () C:\Windows\system32\appmgmt

2014-04-27 20:04 - 2014-04-27 20:04 - 00000000 __SHD () C:\Users\Plating\AppData\Local\EmieUserList

2014-04-27 20:04 - 2014-04-27 20:04 - 00000000 __SHD () C:\Users\Plating\AppData\Local\EmieSiteList

2014-04-27 20:02 - 2014-04-27 23:03 - 00000300 _____ () C:\Windows\Tasks\Digital Sites.job

2014-04-27 20:02 - 2014-04-27 20:03 - 00003248 _____ () C:\Windows\System32\Tasks\Digital Sites

2014-04-27 20:02 - 2014-04-27 20:02 - 00000000 ____D () C:\Users\Plating\AppData\Roaming\WorldofTanks

2014-04-27 20:02 - 2014-04-27 20:02 - 00000000 ____D () C:\Users\Plating\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WorldofTanks551

2014-04-27 20:02 - 2014-04-27 20:02 - 00000000 ____D () C:\Users\Plating\AppData\Roaming\DigitalSites

2014-04-27 20:02 - 2014-04-27 20:02 - 00000000 ____D () C:\Program Files (x86)\Image Converter

2014-04-22 23:58 - 2014-04-23 00:04 - 00000000 ____D () C:\ProgramData\BlueStacksSetup

 

==================== One Month Modified Files and Folders =======

 

2014-05-19 22:44 - 2014-05-19 22:44 - 00016158 _____ () C:\Users\Plating\Desktop\FRST.txt

2014-05-19 22:44 - 2014-05-19 22:44 - 00000000 ____D () C:\FRST

2014-05-19 22:43 - 2014-05-19 22:43 - 00001108 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk

2014-05-19 22:43 - 2014-05-19 22:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware

2014-05-19 22:43 - 2014-05-19 22:43 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware

2014-05-19 22:42 - 2014-05-19 22:42 - 02067456 _____ (Farbar) C:\Users\Plating\Downloads\FRST64 (1).exe

2014-05-19 22:42 - 2014-05-19 22:41 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Plating\Downloads\mbam-setup-2.0.1.1004.exe

2014-05-19 22:28 - 2013-12-20 13:05 - 00000900 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job

2014-05-19 21:50 - 2013-12-20 12:15 - 01922689 _____ () C:\Windows\WindowsUpdate.log

2014-05-19 21:49 - 2013-12-20 13:07 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job

2014-05-19 20:53 - 2013-12-20 14:23 - 00000000 ____D () C:\Users\Plating\AppData\Roaming\Skype

2014-05-19 19:55 - 2014-05-19 19:55 - 00418424 _____ () C:\Users\Plating\Downloads\Player Setup.exe

2014-05-19 19:30 - 2014-05-19 19:30 - 00942528 _____ () C:\Users\Plating\Downloads\setup.exe

2014-05-19 12:28 - 2013-12-20 13:05 - 00000896 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job

2014-05-19 11:05 - 2013-12-22 19:16 - 00000000 ____D () C:\Users\Plating\AppData\Roaming\uTorrent

2014-05-18 21:10 - 2014-05-18 21:10 - 00335728 _____ (Excellent4App) C:\Users\Plating\Downloads\Alexis y Fido - Contestame El Telefono (feat Flex).exe

2014-05-18 21:08 - 2014-05-18 21:08 - 00335792 _____ (Excellent4App) C:\Users\Plating\Downloads\Alexis Fido Feat Flex - Contestame el telefono alexis y fido feat flex.exe

2014-05-18 20:24 - 2009-07-13 20:20 - 00000000 ____D () C:\Windows\rescache

2014-05-18 11:30 - 2014-05-02 23:29 - 00008627 _____ () C:\Windows\SysWOW64\PAV_FOG.OPC

2014-05-17 01:15 - 2014-05-17 01:15 - 00000000 ____D () C:\Windows\LastGood

2014-05-17 01:15 - 2013-12-20 13:17 - 00000000 ____D () C:\Program Files (x86)\Realtek

2014-05-17 01:15 - 2013-12-20 12:35 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information

2014-05-17 01:14 - 2014-05-17 01:14 - 05848248 _____ () C:\Users\Plating\Downloads\LOM_Realtek_W7_A03_Setup-X4R87_ZPE.exe

2014-05-17 01:14 - 2014-05-17 01:14 - 02701696 _____ () C:\Users\Plating\Downloads\R292605.exe

2014-05-17 01:09 - 2014-05-17 01:09 - 00417872 _____ () C:\Users\Plating\Downloads\DellSystemDetect.exe

2014-05-17 01:09 - 2013-12-20 13:04 - 00000000 ____D () C:\Users\Plating\AppData\Local\Deployment

2014-05-16 01:53 - 2013-12-22 21:25 - 00000000 ____D () C:\Users\Plating\AppData\Roaming\vlc

2014-05-16 01:46 - 2014-05-16 01:40 - 00000000 ____D () C:\ProgramData\VCE Exam Simulator

2014-05-16 01:40 - 2014-05-16 01:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VCE Exam Simulator Demo

2014-05-16 01:40 - 2014-05-16 01:40 - 00000000 ____D () C:\Program Files (x86)\VCE Exam Simulator Demo

2014-05-16 01:39 - 2014-05-16 01:38 - 14800237 _____ () C:\Users\Plating\Downloads\vce_exam_simulator_demo_setup (1).zip

2014-05-16 01:36 - 2014-05-16 01:35 - 14804014 _____ () C:\Users\Plating\Downloads\vce_exam_simulator_demo_setup.zip

2014-05-16 01:34 - 2014-05-16 01:34 - 00649664 _____ (Visual CertExam Software ) C:\Users\Plating\Downloads\vce_converter_setup.exe

2014-05-16 01:32 - 2014-05-16 01:32 - 00000000 ____D () C:\Users\Plating\AppData\Roaming\IsolatedStorage

2014-05-16 01:32 - 2014-05-16 01:32 - 00000000 ____D () C:\Users\Plating\AppData\Local\FileViewPro

2014-05-16 01:32 - 2014-05-16 01:32 - 00000000 ____D () C:\ProgramData\IsolatedStorage

2014-05-16 01:32 - 2014-05-16 01:29 - 00000000 ____D () C:\Program Files\FileViewPro

2014-05-16 01:24 - 2014-05-16 01:24 - 02388400 _____ () C:\Users\Plating\Downloads\FileViewPro_2014.exe

2014-05-16 01:24 - 2014-05-16 01:24 - 00000000 ____D () C:\Spacekace

2014-05-16 01:24 - 2013-12-20 12:32 - 00000000 ____D () C:\Users\Plating\AppData\Local\VirtualStore

2014-05-16 01:23 - 2014-05-16 01:23 - 00000000 ____D () C:\Windows\SysWOW64\WinNTDlls

2014-05-16 01:23 - 2014-05-16 01:23 - 00000000 ____D () C:\Windows\SysWOW64\Win98Dlls

2014-05-16 01:23 - 2014-05-16 01:23 - 00000000 ____D () C:\Users\Plating\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Press Training Kit Exam Prep

2014-05-16 01:23 - 2014-05-16 01:23 - 00000000 ____D () C:\Program Files (x86)\Microsoft Press Training Kit Exam Prep

2014-05-16 01:22 - 2014-05-16 01:22 - 01395271 _____ () C:\Users\Plating\Downloads\Microsoft.Braindump2go.70-462.v2013-08-12.by.Raman.90q.vce

2014-05-15 23:18 - 2014-05-13 20:48 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys

2014-05-15 23:16 - 2009-07-13 22:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT

2014-05-15 23:16 - 2009-07-13 21:51 - 00031089 _____ () C:\Windows\setupact.log

2014-05-15 23:15 - 2014-05-15 23:15 - 00000000 ____D () C:\ProgramData\Panda Software

2014-05-15 23:15 - 2013-12-20 13:18 - 00479242 _____ () C:\Windows\PFRO.log

2014-05-15 23:15 - 2009-07-13 20:20 - 00000000 ____D () C:\Windows\PolicyDefinitions

2014-05-15 22:51 - 2009-07-13 21:45 - 00010240 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0

2014-05-15 22:51 - 2009-07-13 21:45 - 00010240 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0

2014-05-15 20:45 - 2014-05-15 20:39 - 155611589 _____ () C:\Users\Plating\Downloads\How To Kiss a Girl You Just Met (w_ Live Footage!).mp4

2014-05-15 19:23 - 2014-05-15 19:22 - 00250152 _____ (Premium Installer ) C:\Users\Plating\Downloads\Player-Chrome.exe

2014-05-13 22:51 - 2009-07-13 22:13 - 00982274 _____ () C:\Windows\system32\PerfStringBackup.INI

2014-05-13 21:49 - 2013-12-20 13:07 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe

2014-05-13 21:49 - 2013-12-20 13:07 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl

2014-05-13 21:49 - 2013-12-20 13:07 - 00003768 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater

2014-05-13 21:18 - 2014-05-13 21:18 - 02066944 _____ (Farbar) C:\Users\Plating\Desktop\FRST64.exe

2014-05-13 20:48 - 2014-05-13 20:48 - 00000000 ____D () C:\ProgramData\Malwarebytes

2014-05-13 20:21 - 2014-02-17 00:31 - 00000000 ____D () C:\Users\MSSQLFDLauncher

2014-05-13 20:21 - 2013-12-20 12:32 - 00000000 ___RD () C:\Users\Plating\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup

2014-05-13 20:21 - 2013-12-20 12:32 - 00000000 ___RD () C:\Users\Plating\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools

2014-05-13 20:18 - 2014-05-06 22:00 - 00000000 ___SD () C:\Windows\system32\CompatTel

2014-05-13 20:14 - 2013-12-21 02:35 - 00000000 ____D () C:\ProgramData\Microsoft Help

2014-05-13 20:13 - 2013-12-22 20:20 - 00000000 ____D () C:\Windows\system32\MRT

2014-05-13 20:11 - 2013-12-22 20:20 - 93223848 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe

2014-05-13 00:01 - 2014-05-13 00:01 - 00000000 ____D () C:\Users\Plating\AppData\Local\VS Revo Group

2014-05-13 00:01 - 2014-05-13 00:01 - 00000000 ____D () C:\ProgramData\VS Revo Group

2014-05-13 00:01 - 2014-05-13 00:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro

2014-05-13 00:01 - 2014-05-13 00:01 - 00000000 ____D () C:\Program Files\VS Revo Group

2014-05-12 23:54 - 2013-12-20 13:05 - 00000000 ____D () C:\Program Files (x86)\Google

2014-05-12 23:08 - 2014-03-02 14:40 - 00000000 ____D () C:\ProgramData\LogMeIn

2014-05-12 23:06 - 2014-05-02 23:10 - 00000000 ____D () C:\Program Files (x86)\Panda Security

2014-05-12 23:06 - 2009-07-13 22:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games

2014-05-12 22:10 - 2014-02-11 01:17 - 00007670 _____ () C:\Users\Plating\AppData\Local\resmon.resmoncfg

2014-05-12 20:35 - 2014-05-12 20:35 - 00003256 _____ () C:\Windows\System32\Tasks\{3F471AAD-0E5F-44AC-9285-AAA7A57B001B}

2014-05-12 20:33 - 2014-05-12 20:33 - 00000000 ____D () C:\Program Files (x86)\ManageEngine

2014-05-10 12:24 - 2014-05-10 12:24 - 00000146 _____ () C:\Users\Plating\Desktop\paris.txt

2014-05-10 12:23 - 2013-12-20 13:05 - 00003896 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA

2014-05-10 12:23 - 2013-12-20 13:05 - 00003644 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore

2014-05-08 23:14 - 2014-05-13 20:06 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll

2014-05-08 23:11 - 2014-05-13 20:06 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll

2014-05-08 22:03 - 2014-05-08 22:02 - 00000128 _____ () C:\Users\Plating\Desktop\yo soy.txt

2014-05-08 21:38 - 2014-05-08 21:38 - 00000000 ____D () C:\Panda Software

2014-05-05 21:40 - 2014-05-13 20:13 - 23544320 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll

2014-05-05 21:17 - 2014-05-13 20:13 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb

2014-05-05 20:25 - 2014-05-13 20:13 - 17382912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll

2014-05-05 20:07 - 2014-05-13 20:13 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb

2014-05-05 20:00 - 2014-05-13 20:13 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll

2014-05-05 19:10 - 2014-05-13 20:13 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll

2014-05-04 19:20 - 2014-02-17 00:30 - 00000000 ____D () C:\Users\Plating\Documents\SQL Server Management Studio

2014-05-02 23:43 - 2013-12-20 14:17 - 00000000 ____D () C:\ProgramData\AVAST Software

2014-05-02 23:12 - 2014-05-02 23:12 - 00000000 ____D () C:\Users\Plating\AppData\Local\Panda Security

2014-05-02 23:11 - 2014-05-02 23:11 - 00000262 _____ () C:\Windows\system32\PavCPL64.dat

2014-05-02 23:11 - 2014-05-02 23:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panda Antivirus Pro 2014

2014-05-02 23:10 - 2014-05-02 23:10 - 00000000 ____D () C:\Windows\SysWOW64\PAV

2014-05-02 23:10 - 2014-05-02 23:10 - 00000000 ____D () C:\Users\Plating\AppData\Roaming\Panda Security

2014-05-02 23:10 - 2014-05-02 23:10 - 00000000 ____D () C:\ProgramData\Panda Security

2014-05-02 23:06 - 2014-05-02 23:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java

2014-05-02 23:06 - 2014-05-02 23:05 - 00004030 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_55-b14.log

2014-05-02 23:06 - 2013-12-29 12:36 - 00000000 ____D () C:\ProgramData\Oracle

2014-05-02 23:06 - 2013-12-29 12:31 - 00000000 ____D () C:\Program Files (x86)\Java

2014-05-02 22:58 - 2014-05-02 22:58 - 00000260 _____ () C:\Users\Plating\Desktop\house.txt

2014-05-01 22:03 - 2014-05-01 22:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Capcom

2014-05-01 21:57 - 2014-04-06 21:59 - 00001664 _____ () C:\Windows\DirectX.log

2014-05-01 21:45 - 2014-05-01 21:45 - 00000000 ____D () C:\Program Files (x86)\Capcom

2014-05-01 20:02 - 2014-05-01 19:30 - 00001333 _____ () C:\Users\Plating\Desktop\myhouse.html

2014-04-28 21:06 - 2014-04-28 21:06 - 00000012 _____ () C:\Users\Plating\Desktop\chris rego.txt

2014-04-28 00:17 - 2014-04-28 00:11 - 00000525 _____ () C:\Users\Plating\Desktop\MyApproach.txt

2014-04-27 23:03 - 2014-04-27 20:02 - 00000300 _____ () C:\Windows\Tasks\Digital Sites.job

2014-04-27 21:03 - 2014-04-27 21:03 - 00000040 _____ () C:\Users\Plating\AppData\Roaming\WB.CFG

2014-04-27 20:06 - 2014-04-27 20:06 - 00000000 ____D () C:\Windows\system32\appmgmt

2014-04-27 20:06 - 2009-07-13 20:20 - 00000000 __RHD () C:\Users\Public\Libraries

2014-04-27 20:04 - 2014-04-27 20:04 - 00000000 __SHD () C:\Users\Plating\AppData\Local\EmieUserList

2014-04-27 20:04 - 2014-04-27 20:04 - 00000000 __SHD () C:\Users\Plating\AppData\Local\EmieSiteList

2014-04-27 20:03 - 2014-04-27 20:02 - 00003248 _____ () C:\Windows\System32\Tasks\Digital Sites

2014-04-27 20:02 - 2014-04-27 20:02 - 00000000 ____D () C:\Users\Plating\AppData\Roaming\WorldofTanks

2014-04-27 20:02 - 2014-04-27 20:02 - 00000000 ____D () C:\Users\Plating\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WorldofTanks551

2014-04-27 20:02 - 2014-04-27 20:02 - 00000000 ____D () C:\Users\Plating\AppData\Roaming\DigitalSites

2014-04-27 20:02 - 2014-04-27 20:02 - 00000000 ____D () C:\Program Files (x86)\Image Converter

2014-04-27 19:46 - 2014-04-17 21:41 - 00000008 __RSH () C:\Users\Plating\ntuser.pol

2014-04-27 19:46 - 2013-12-20 12:30 - 00000000 ____D () C:\Users\Plating

2014-04-23 00:04 - 2014-04-22 23:58 - 00000000 ____D () C:\ProgramData\BlueStacksSetup

2014-04-20 23:05 - 2014-04-06 21:58 - 00000000 ____D () C:\Users\Plating\AppData\Local\Windows Live

 

Some content of TEMP:

====================

C:\Users\Plating\AppData\Local\Temp\Checkupdate.exe

C:\Users\Plating\AppData\Local\Temp\DSETUP.dll

C:\Users\Plating\AppData\Local\Temp\dsetup32.dll

C:\Users\Plating\AppData\Local\Temp\DXSETUP.exe

C:\Users\Plating\AppData\Local\Temp\Foxit Reader Updater.exe

C:\Users\Plating\AppData\Local\Temp\gcapi_dll.dll

C:\Users\Plating\AppData\Local\Temp\gtapi_signed.dll

C:\Users\Plating\AppData\Local\Temp\jre-7u51-windows-i586-iftw.exe

C:\Users\Plating\AppData\Local\Temp\ose00000.exe

C:\Users\Plating\AppData\Local\Temp\System.Data.SQLite.dll

C:\Users\Plating\AppData\Local\Temp\vlc-2.1.3-win32.exe

 

 

==================== Bamital & volsnap Check =================

 

C:\Windows\System32\winlogon.exe

[2014-05-13 20:06] - [2014-03-04 02:43] - 0455168 ____A (Microsoft Corporation) 88AB9B72B4BF3963A0DE0820B4B0B06C

 

C:\Windows\System32\wininit.exe => MD5 is legit

C:\Windows\SysWOW64\wininit.exe => MD5 is legit

C:\Windows\explorer.exe => MD5 is legit

C:\Windows\SysWOW64\explorer.exe => MD5 is legit

C:\Windows\System32\svchost.exe => MD5 is legit

C:\Windows\SysWOW64\svchost.exe => MD5 is legit

C:\Windows\System32\services.exe => MD5 is legit

C:\Windows\System32\User32.dll => MD5 is legit

C:\Windows\SysWOW64\User32.dll => MD5 is legit

C:\Windows\System32\userinit.exe => MD5 is legit

C:\Windows\SysWOW64\userinit.exe => MD5 is legit

C:\Windows\System32\rpcss.dll => MD5 is legit

C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit

 

 

LastRegBack: 2014-05-11 13:33

 

==================== End Of Log ============================

 

 

 

 

 

 

 

 

 

 

 


Additional scan result of Farbar Recovery Scan Tool (x64) Version: 11-05-2014 01

Ran by Plating at 2014-05-19 22:44:49

Running from C:\Users\Plating\Desktop

Boot Mode: Normal

==========================================================

 

 

==================== Security Center ========================

 

AV: Panda Antivirus Pro 2014 (Enabled - Up to date) {86971480-9989-6750-B122-681A86518D59}

AS: Panda Antivirus Pro 2014 (Enabled - Up to date) {3DF6F564-BFB3-68DE-8B92-5368FDD6C7E4}

AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

 

==================== Installed Programs ======================

 

µTorrent (HKCU\...\uTorrent) (Version: 3.4.1.31139 - BitTorrent Inc.)

Adobe Flash Player 13 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 13.0.0.214 - Adobe Systems Incorporated)

Adobe Flash Player 13 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 13.0.0.214 - Adobe Systems Incorporated)

Apple Application Support (HKLM-x32\...\{AAC5D43E-816D-4C2D-8E51-55FFF35BE301}) (Version: 3.0.1 - Apple Inc.)

Apple Mobile Device Support (HKLM\...\{787136D2-F0F8-4625-AA3F-72D7795AC842}) (Version: 7.1.1.3 - Apple Inc.)

Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)

CPUID CPU-Z 1.68 (HKLM\...\CPUID CPU-Z_is1) (Version:  - )

D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden

DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.48.1.0347 - Disc Soft Ltd)

Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{349F73CA-653A-43A6-AE77-970B07D6EDA0}) (Version:  - Microsoft)

Dell System Detect (HKCU\...\9204f5692a8faf3b) (Version: 5.7.0.6 - Dell)

Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 6.1.1.1031 - Foxit Corporation)

GDR 2218 for SQL Server 2012 (KB2716442) (64-bit) (HKLM\...\KB2716442) (Version: 11.0.2218.0 - Microsoft Corporation)

Google Chrome (HKLM-x32\...\Google Chrome) (Version: 34.0.1847.137 - Google Inc.)

Google Update Helper (x32 Version: 1.3.24.7 - Google Inc.) Hidden

Intel PROSet Wireless (Version:  - ) Hidden

Intel® Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2455 - Intel Corporation)

Intel® PROSet/Wireless for Bluetooth® + High Speed (HKLM\...\{BEE86606-EFB5-4353-9F34-29E0C59CDCFA}) (Version: 15.2.0.0284 - Intel Corporation)

Intel® PROSet/Wireless Software for Bluetooth® Technology (HKLM\...\{7CE8BE79-ABC3-4B2C-9543-28ED2B0A9EA8}) (Version: 1.2.0.0587 - Intel Corporation)

Intel® PROSet/Wireless WiFi Software (HKLM\...\{181BBF43-CA17-4E1A-A78D-81E67A57B8A4}) (Version: 15.02.0000.1258 - Intel Corporation)

IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.37 - Irfan Skiljan)

iTunes (HKLM\...\{B8BA155B-1E75-405F-9CB4-8A99615D09DC}) (Version: 11.1.5.5 - Apple Inc.)

Java 7 Update 55 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217045FF}) (Version: 7.0.550 - Oracle)

Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden

Malwarebytes Anti-Malware version 2.0.1.1004 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.1.1004 - Malwarebytes Corporation)

Microsoft .NET Framework 4 Multi-Targeting Pack (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}) (Version: 4.0.30319 - Microsoft Corporation)

Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)

Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden

Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden

Microsoft Application Error Reporting (x32 Version: 12.0.6012.5000 - Microsoft Corporation) Hidden

Microsoft Help Viewer 1.1 (HKLM\...\Microsoft Help Viewer 1.1) (Version: 1.1.40219 - Microsoft Corporation)

Microsoft Help Viewer 1.1 (Version: 1.1.40219 - Microsoft Corporation) Hidden

Microsoft Office Access MUI (English) 2010 (x32 Version: 14.0.4734.1000 - Microsoft Corporation) Hidden

Microsoft Office Access Setup Metadata MUI (English) 2010 (x32 Version: 14.0.4734.1000 - Microsoft Corporation) Hidden

Microsoft Office Excel MUI (English) 2010 (x32 Version: 14.0.4734.1000 - Microsoft Corporation) Hidden

Microsoft Office Groove MUI (English) 2010 (x32 Version: 14.0.4734.1000 - Microsoft Corporation) Hidden

Microsoft Office InfoPath MUI (English) 2010 (x32 Version: 14.0.4734.1000 - Microsoft Corporation) Hidden

Microsoft Office Office 64-bit Components 2010 (Version: 14.0.4734.1000 - Microsoft Corporation) Hidden

Microsoft Office OneNote MUI (English) 2010 (x32 Version: 14.0.4734.1000 - Microsoft Corporation) Hidden

Microsoft Office Outlook Connector (HKLM-x32\...\{95140000-0081-0409-0000-0000000FF1CE}) (Version: 14.0.6123.5001 - Microsoft Corporation)

Microsoft Office Outlook MUI (English) 2010 (x32 Version: 14.0.4734.1000 - Microsoft Corporation) Hidden

Microsoft Office PowerPoint MUI (English) 2010 (x32 Version: 14.0.4734.1000 - Microsoft Corporation) Hidden

Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUS) (Version: 14.0.4734.1000 - Microsoft Corporation)

Microsoft Office Professional Plus 2010 (x32 Version: 14.0.4734.1000 - Microsoft Corporation) Hidden

Microsoft Office Proof (English) 2010 (x32 Version: 14.0.4734.1000 - Microsoft Corporation) Hidden

Microsoft Office Proof (French) 2010 (x32 Version: 14.0.4734.1000 - Microsoft Corporation) Hidden

Microsoft Office Proof (Spanish) 2010 (x32 Version: 14.0.4734.1000 - Microsoft Corporation) Hidden

Microsoft Office Proofing (English) 2010 (x32 Version: 14.0.4734.1000 - Microsoft Corporation) Hidden

Microsoft Office Publisher MUI (English) 2010 (x32 Version: 14.0.4734.1000 - Microsoft Corporation) Hidden

Microsoft Office Shared 64-bit MUI (English) 2010 (Version: 14.0.4734.1000 - Microsoft Corporation) Hidden

Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2010 (Version: 14.0.4734.1000 - Microsoft Corporation) Hidden

Microsoft Office Shared MUI (English) 2010 (x32 Version: 14.0.4734.1000 - Microsoft Corporation) Hidden

Microsoft Office Shared Setup Metadata MUI (English) 2010 (x32 Version: 14.0.4734.1000 - Microsoft Corporation) Hidden

Microsoft Office Word MUI (English) 2010 (x32 Version: 14.0.4734.1000 - Microsoft Corporation) Hidden

Microsoft Press Training Kit Exam Prep Suite 70-462 (HKLM-x32\...\{A37598D0-843F-45DB-A827-0018487065B8}) (Version: 1.0.0 - MeasureUp)

Microsoft Report Viewer 2012 Runtime (HKLM-x32\...\{9CCE40CE-A9E6-4916-8729-B008558EEF3F}) (Version: 11.0.2100.60 - Microsoft Corporation)

Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)

Microsoft SQL Server 2008 R2 Management Objects (HKLM-x32\...\{83F2B8F4-5CF3-4BE9-9772-9543EAE4AC5F}) (Version: 10.51.2500.0 - Microsoft Corporation)

Microsoft SQL Server 2008 Setup Support Files  (HKLM\...\{B40EE88B-400A-4266-A17B-E3DE64E94431}) (Version: 10.1.2731.0 - Microsoft Corporation)

Microsoft SQL Server 2012 (64-bit) (HKLM\...\Microsoft SQL Server SQLServer2012) (Version:  - Microsoft Corporation)

Microsoft SQL Server 2012 (64-bit) (Version:  - ) Hidden

Microsoft SQL Server 2012 Data-Tier App Framework  (HKLM\...\{A007BD05-ECFD-4F64-89F6-7E95F91F0DFB}) (Version: 11.0.2100.60 - Microsoft Corporation)

Microsoft SQL Server 2012 Management Objects  (HKLM-x32\...\{DA1C1761-5F4F-4332-AB9D-29EDF3F8EA0A}) (Version: 11.0.2100.60 - Microsoft Corporation)

Microsoft SQL Server 2012 Management Objects  (x64) (HKLM\...\{FA0A244E-F3C2-4589-B42A-3D522DE79A42}) (Version: 11.0.2100.60 - Microsoft Corporation)

Microsoft SQL Server 2012 Native Client  (HKLM\...\{587F8B5C-D30D-4EEC-849B-FC410EA38AAF}) (Version: 11.0.2218.0 - Microsoft Corporation)

Microsoft SQL Server 2012 Policies  (HKLM-x32\...\{DC487E40-046E-42A9-9C7C-5D2B1A7EB211}) (Version: 11.0.2100.60 - Microsoft Corporation)

Microsoft SQL Server 2012 RS Add-in for SharePoint  (HKLM\...\{1527F893-FB8F-45D1-8B83-488E9F5C516C}) (Version: 11.0.2218.0 - Microsoft Corporation)

Microsoft SQL Server 2012 RsFx Driver (Version: 11.0.2100.60 - Microsoft Corporation) Hidden

Microsoft SQL Server 2012 Setup (English) (HKLM\...\{8CB0713F-CFE0-445D-BCB2-538465860E1A}) (Version: 11.1.3128.0 - Microsoft Corporation)

Microsoft SQL Server 2012 Transact-SQL Compiler Service  (HKLM\...\{03A2AE02-CBC9-4746-A376-0F7BF6AF5F39}) (Version: 11.0.2218.0 - Microsoft Corporation)

Microsoft SQL Server 2012 Transact-SQL ScriptDom  (HKLM\...\{0E8670B8-3965-4930-ADA6-570348B67153}) (Version: 11.0.2100.60 - Microsoft Corporation)

Microsoft SQL Server 2012 T-SQL Language Service  (HKLM\...\{CC8B009A-98C9-497F-99AF-CEBE35D8C0CF}) (Version: 11.0.2100.60 - Microsoft Corporation)

Microsoft SQL Server Data Tools – Database Projects – Web installer entry point (HKLM-x32\...\{F3BBC56F-2282-4464-952F-A89772181F30}) (Version: 10.3.20116.0 - Microsoft Corporation)

Microsoft SQL Server System CLR Types (HKLM-x32\...\{C3F6F200-6D7B-4879-B9EE-700C0CE1FCDA}) (Version: 10.51.2500.0 - Microsoft Corporation)

Microsoft System CLR Types for SQL Server 2012 (HKLM-x32\...\{E2082604-4BA5-44BB-BBFB-AF0F3CB8C6AB}) (Version: 11.0.2100.60 - Microsoft Corporation)

Microsoft System CLR Types for SQL Server 2012 (x64) (HKLM\...\{F1949145-EB64-4DE7-9D81-E6D27937146C}) (Version: 11.0.2100.60 - Microsoft Corporation)

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4974 (HKLM-x32\...\{B7E38540-E355-3503-AFD7-635B2F2F76E1}) (Version: 9.0.30729.4974 - Microsoft Corporation)

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)

Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)

Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)

Microsoft Visual C++ 2010  x86 Runtime - 10.0.40219 (HKLM-x32\...\{5D9ED403-94DE-3BA0-B1D6-71F4BDA412E6}) (Version: 10.0.40219 - Microsoft Corporation)

Microsoft Visual Studio 2010 Shell (Integrated) - ENU (HKLM-x32\...\{012D26C3-E12A-3BDA-8ECE-DF14E721A507}) (Version: 10.0.40219 - Microsoft Corporation)

Microsoft Visual Studio 2010 Shell (Isolated) - ENU (HKLM-x32\...\{D64B6984-242F-32BC-B008-752806E5FC44}) (Version: 10.0.40219 - Microsoft Corporation)

Microsoft Visual Studio Tools for Applications Design-Time 3.0 (HKLM-x32\...\{5A03C202-08B4-3F1D-9A60-A4F53EF1B636}) (Version: 10.0.40220 - Microsoft Corporation)

Microsoft Visual Studio Tools for Applications x64 Runtime 3.0 (HKLM\...\{F14401A9-F0A0-33CC-8444-F60823A60DEB}) (Version: 10.0.40220 - Microsoft Corporation)

Microsoft Visual Studio Tools for Applications x86 Runtime 3.0 (HKLM-x32\...\{191A6F65-6878-398D-A272-EF011B80F371}) (Version: 10.0.40220 - Microsoft Corporation)

Microsoft VSS Writer for SQL Server 2012 (HKLM\...\{3E0DD83F-BE4C-4478-86A0-AD0D79D1353E}) (Version: 11.0.2100.60 - Microsoft Corporation)

Movie Maker (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden

Mozilla Firefox 28.0 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 28.0 (x86 en-US)) (Version: 28.0 - Mozilla)

MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden

MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden

MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden

Panda Antivirus Pro 2014 (HKLM-x32\...\{E55FB276-73C9-4776-AB53-BC028C0509ED}) (Version: 13.01.01 - Panda Security)

Panda Antivirus Pro 2014 (x32 Version: 13.01.01 - Panda Security) Hidden

Photo Common (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden

Photo Gallery (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden

Prerequisites for SSDT  (HKLM-x32\...\{9169C939-ED01-446A-BD0C-29873BAF4E48}) (Version: 11.0.2100.60 - Microsoft Corporation)

QuickTime 7 (HKLM-x32\...\{111EE7DF-FC45-40C7-98A7-753AC46B12FB}) (Version: 7.75.80.95 - Apple Inc.)

Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.48.823.2011 - Realtek)

Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6383 - Realtek Semiconductor Corp.)

Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.1.27.0 - Renesas Electronics Corporation)

Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.1.27.0 - Renesas Electronics Corporation) Hidden

Revo Uninstaller Pro 3.0.8 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 3.0.8 - VS Revo Group, Ltd.)

Safari (HKLM-x32\...\{C779648B-410E-4BBA-B75B-5815BCEFE71D}) (Version: 5.34.57.2 - Apple Inc.)

Skype™ 6.14 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.14.104 - Skype Technologies S.A.)

SQL Server 2012 Analysis Services (Version: 11.0.2100.60 - Microsoft Corporation) Hidden

SQL Server 2012 BI Development Studio (Version: 11.0.2100.60 - Microsoft Corporation) Hidden

SQL Server 2012 Client Tools (Version: 11.0.2100.60 - Microsoft Corporation) Hidden

SQL Server 2012 Common Files (Version: 11.0.2100.60 - Microsoft Corporation) Hidden

SQL Server 2012 Data quality client (Version: 11.0.2100.60 - Microsoft Corporation) Hidden

SQL Server 2012 Data quality service (Version: 11.0.2100.60 - Microsoft Corporation) Hidden

SQL Server 2012 Database Engine Services (Version: 11.0.2100.60 - Microsoft Corporation) Hidden

SQL Server 2012 Database Engine Shared (Version: 11.0.2100.60 - Microsoft Corporation) Hidden

SQL Server 2012 Distributed Replay (Version: 11.0.2100.60 - Microsoft Corporation) Hidden

SQL Server 2012 Documentation Components (Version: 11.0.2100.60 - Microsoft Corporation) Hidden

SQL Server 2012 Full text search (Version: 11.0.2100.60 - Microsoft Corporation) Hidden

SQL Server 2012 Integration Services (Version: 11.0.2100.60 - Microsoft Corporation) Hidden

SQL Server 2012 Management Studio (Version: 11.0.2100.60 - Microsoft Corporation) Hidden

SQL Server 2012 Master Data Services (Version: 11.0.2218.0 - Microsoft Corporation) Hidden

SQL Server 2012 Reporting Services (Version: 11.0.2100.60 - Microsoft Corporation) Hidden

SQL Server 2012 RS_SharePoint_SharedService (Version: 11.0.2100.60 - Microsoft Corporation) Hidden

SQL Server 2012 SQL Data Quality Common (Version: 11.0.2100.60 - Microsoft Corporation) Hidden

SQL Server Browser for SQL Server 2012 (HKLM-x32\...\{4B9E6EB0-0EED-4E74-9479-F982C3254F71}) (Version: 11.0.2100.60 - Microsoft Corporation)

Sql Server Customer Experience Improvement Program (Version: 11.0.2100.60 - Microsoft Corporation) Hidden

Street Fighter X Tekken (HKLM-x32\...\{43430FA5-AF68-4A2D-A7D4-891000008200}) (Version: 1.0.0.0 - CAPCOM U.S.A., INC)

Tableau Public 8.1 (32-bit) (HKLM-x32\...\{6D0CF75C-6A46-42B3-A2C6-AEEFA2758981}) (Version: 8.1.1349 - Tableau Software)

UltraStar Deluxe (HKLM-x32\...\UltraStar Deluxe) (Version: 1.1 - USDX Team)

Update for Microsoft Office 2010 (KB2494150) (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{3FCFD88F-4D13-4F38-8625-ABABEA7F61EA}) (Version:  - Microsoft)

Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{35698CB7-AAA2-4577-B505-DBFF504AEF23}) (Version:  - Microsoft)

Update for Microsoft Office 2010 (KB2825640) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{BA610006-2C39-4419-9834-CF61AB24810A}) (Version:  - Microsoft)

VCE Exam Simulator Demo (HKLM-x32\...\VCE Exam Simulator Demo_is1) (Version:  - Avanset)

Visual Studio 2010 Prerequisites - English (HKLM\...\{662014D2-0450-37ED-ABAE-157C88127BEB}) (Version: 10.0.40219 - Microsoft Corporation)

VLC media player 2.1.3 (HKLM-x32\...\VLC media player) (Version: 2.1.3 - VideoLAN)

Winamp (HKLM-x32\...\Winamp) (Version: 5.666  - Nullsoft, Inc)

Windows Live Communications Platform (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden

Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3522.0110 - Microsoft Corporation)

Windows Live Essentials (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden

Windows Live ID Sign-in Assistant (Version: 7.250.4311.0 - Microsoft Corporation) Hidden

Windows Live Installer (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden

Windows Live Photo Common (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden

Windows Live PIMT Platform (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden

Windows Live SOXE (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden

Windows Live SOXE Definitions (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden

Windows Live UX Platform (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden

Windows Live UX Platform Language Pack (x32 Version: 16.4.3522.0110 - Microsoft Corporation) Hidden

WinRAR 5.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH)

 

==================== Restore Points  =========================

 

17-05-2014 08:14:57 Installed Realtek Ethernet Controller Driver

 

==================== Hosts content: ==========================

 

2009-07-13 19:34 - 2009-06-10 14:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

 

==================== Scheduled Tasks (whitelisted) =============

 

Task: {203A206E-CD4F-4EE9-AC2E-18F0F622358D} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-13] (Adobe Systems Incorporated)

Task: {580CE5C5-414B-4D75-8FB7-F250F7F56A09} - System32\Tasks\Digital Sites => C:\Users\Plating\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION

Task: {5E86DB41-DFF4-47AD-B075-71F0F1F2FC08} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-20] (Google Inc.)

Task: {60E06BA1-82B1-4199-A769-03C70A64FACC} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)

Task: {B2E08760-0534-4B3C-A4FA-35C64D57148E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-20] (Google Inc.)

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

Task: C:\Windows\Tasks\Digital Sites.job => C:\Users\Plating\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE

Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

 

==================== Loaded Modules (whitelisted) =============

 

2010-01-09 20:17 - 2010-01-09 20:17 - 04254560 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF

2010-01-21 01:40 - 2010-01-21 01:40 - 08794464 _____ () C:\Program Files\Microsoft Office\Office14\1033\GrooveIntlResource.dll

2013-12-20 13:17 - 2011-01-18 11:36 - 00182560 _____ () C:\Windows\System32\SRSLabs\{176F4E15-8F7C-4833-ADED-81FAE8CCD186}\slcc3d64.dll

2014-05-19 22:42 - 2014-05-19 22:42 - 00706560 _____ () C:\Users\Plating\AppData\Local\Temp\is-1H47E.tmp\mbam-setup-2.0.1.1004.tmp

2014-05-19 22:42 - 2014-05-19 22:42 - 00706560 _____ () C:\Users\Plating\AppData\Local\Temp\is-T80MQ.tmp\mbam-setup-2.0.1.1004.tmp

2014-02-12 20:58 - 2014-02-12 20:58 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll

2014-02-12 20:58 - 2014-02-12 20:58 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll

2014-05-02 23:11 - 2007-02-14 13:55 - 00165424 _____ () C:\Program Files (x86)\Panda Security\Panda Antivirus Pro 2014\MiniCrypto.dll

2014-05-02 23:11 - 2004-05-19 11:33 - 00507904 _____ () C:\Program Files (x86)\Panda Security\Panda Antivirus Pro 2014\libxml2.dll

2014-05-02 23:11 - 2007-02-14 13:55 - 00099888 _____ () C:\Program Files (x86)\Panda Security\Panda Antivirus Pro 2014\APIcr.dll

2014-05-15 19:32 - 2014-05-07 16:29 - 00065352 _____ () C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.137\chrome_elf.dll

2010-01-09 20:18 - 2010-01-09 20:18 - 04254560 _____ () C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF

2010-01-21 01:34 - 2010-01-21 01:34 - 08793952 _____ () C:\Program Files (x86)\Microsoft Office\Office14\1033\GrooveIntlResource.dll

2014-05-15 19:32 - 2014-05-07 16:29 - 00674632 _____ () C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.137\libglesv2.dll

2014-05-15 19:32 - 2014-05-07 16:29 - 00093000 _____ () C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.137\libegl.dll

2014-05-15 19:32 - 2014-05-07 16:29 - 04081480 _____ () C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.137\pdf.dll

2014-05-15 19:32 - 2014-05-07 16:29 - 00390472 _____ () C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.137\ppGoogleNaClPluginChrome.dll

2014-05-15 19:32 - 2014-05-07 16:29 - 01647432 _____ () C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.137\ffmpegsumo.dll

2013-12-29 12:31 - 2014-04-14 20:07 - 00018856 _____ () C:\Program Files (x86)\Java\jre7\bin\jp2native.dll

 

==================== Alternate Data Streams (whitelisted) =========

 

 

==================== Safe Mode (whitelisted) ===================

 

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PskSvcRetail => ""="Service"

 

==================== EXE Association (whitelisted) =============

 

 

==================== Disabled items from MSCONFIG ==============

 

MSCONFIG\Services: AERTFilters => 2

MSCONFIG\Services: BDESVC => 3

MSCONFIG\Services: Bluetooth Device Monitor => 2

MSCONFIG\Services: Bluetooth Media Service => 3

MSCONFIG\Services: Bluetooth OBEX Service => 2

MSCONFIG\Services: bthserv => 3

MSCONFIG\Services: CertPropSvc => 3

MSCONFIG\Services: CscService => 2

MSCONFIG\Services: EFS => 3

MSCONFIG\Services: Fax => 3

MSCONFIG\Services: gupdate => 2

MSCONFIG\Services: gupdatem => 3

MSCONFIG\Services: iPod Service => 3

MSCONFIG\Services: MozillaMaintenance => 3

MSCONFIG\Services: MpsSvc => 2

MSCONFIG\Services: MSiSCSI => 3

MSCONFIG\Services: Netlogon => 3

MSCONFIG\Services: RemoteRegistry => 3

MSCONFIG\Services: SCardSvr => 3

MSCONFIG\Services: SCPolicySvc => 3

MSCONFIG\Services: seclogon => 3

MSCONFIG\Services: SessionEnv => 3

MSCONFIG\Services: SkypeUpdate => 2

MSCONFIG\Services: Spooler => 2

MSCONFIG\Services: TabletInputService => 3

MSCONFIG\Services: TermService => 3

MSCONFIG\Services: UmRdpService => 3

MSCONFIG\Services: W32Time => 3

MSCONFIG\Services: WinDefend => 2

MSCONFIG\Services: WPCSvc => 3

MSCONFIG\startupfolder: C:^Users^Plating^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OneNote 2010 Screen Clipper and Launcher.lnk => C:\Windows\pss\OneNote 2010 Screen Clipper and Launcher.lnk.Startup

MSCONFIG\startupreg: APSDaemon => "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"

MSCONFIG\startupreg: BCSSync => "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices

MSCONFIG\startupreg: BTMTrayAgent => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp

MSCONFIG\startupreg: DellSystemDetect => C:\Users\Plating\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dell\Dell System Detect.appref-ms

MSCONFIG\startupreg: HotKeysCmds => C:\Windows\system32\hkcmd.exe

MSCONFIG\startupreg: IgfxTray => C:\Windows\system32\igfxtray.exe

MSCONFIG\startupreg: iTunesHelper => "C:\Program Files (x86)\iTunes\iTunesHelper.exe"

MSCONFIG\startupreg: Logitech Download Assistant => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch

MSCONFIG\startupreg: LogMeIn GUI => "C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe"

MSCONFIG\startupreg: NUSB3MON => "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"

MSCONFIG\startupreg: Persistence => C:\Windows\system32\igfxpers.exe

MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime

MSCONFIG\startupreg: RTHDVCPL => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe -s

MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun

MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

 

==================== Faulty Device Manager Devices =============

 

Name: SM Bus Controller

Description: SM Bus Controller

Class Guid: 

Manufacturer: 

Service: 

Problem: : The drivers for this device are not installed. (Code 28)

Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

 

 

==================== Event log errors: =========================

 

Application errors:

==================

Error: (05/19/2014 09:21:54 PM) (Source: Application Error) (User: ) (EventID: 1000)

Description: Faulting application name: OUTLOOK.EXE, version: 14.0.4734.1000, time stamp: 0x4b58fdfa

Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000

Exception code: 0xc0000005

Fault offset: 0x6d2a0000

Faulting process id: 0x103c

Faulting application start time: 0xOUTLOOK.EXE0

Faulting application path: OUTLOOK.EXE1

Faulting module path: OUTLOOK.EXE2

Report Id: OUTLOOK.EXE3

 

Error: (05/19/2014 09:03:21 PM) (Source: Application Error) (User: ) (EventID: 1000)

Description: Faulting application name: Skype.exe, version: 6.14.0.104, time stamp: 0x52f90e3e

Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000

Exception code: 0xc0000005

Fault offset: 0x6eab0000

Faulting process id: 0x5d4

Faulting application start time: 0xSkype.exe0

Faulting application path: Skype.exe1

Faulting module path: Skype.exe2

Report Id: Skype.exe3

 

Error: (05/19/2014 08:25:04 PM) (Source: Application Error) (User: ) (EventID: 1000)

Description: Faulting application name: OUTLOOK.EXE, version: 14.0.4734.1000, time stamp: 0x4b58fdfa

Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000

Exception code: 0xc0000005

Fault offset: 0x6cca0000

Faulting process id: 0x28b4

Faulting application start time: 0xOUTLOOK.EXE0

Faulting application path: OUTLOOK.EXE1

Faulting module path: OUTLOOK.EXE2

Report Id: OUTLOOK.EXE3

 

Error: (05/19/2014 07:28:13 PM) (Source: Application Error) (User: ) (EventID: 1000)

Description: Faulting application name: Skype.exe, version: 6.14.0.104, time stamp: 0x52f90e3e

Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000

Exception code: 0xc0000005

Fault offset: 0x18150000

Faulting process id: 0x321c

Faulting application start time: 0xSkype.exe0

Faulting application path: Skype.exe1

Faulting module path: Skype.exe2

Report Id: Skype.exe3

 

Error: (05/19/2014 02:46:55 PM) (Source: Microsoft Office 14) (User: ) (EventID: 2001)

Description: Microsoft Outlook: Rejected Safe Mode action : Outlook experienced a serious problem with the 'send to bluetooth' add-in. If you have seen this message multiple times, you should disable this add-in and check to see if an update is available. Do you want to disable this add-in?.

Rejected Safe Mode action : Microsoft Outlook.

 

Error: (05/19/2014 02:46:18 PM) (Source: Application Error) (User: ) (EventID: 1000)

Description: Faulting application name: OUTLOOK.EXE, version: 14.0.4734.1000, time stamp: 0x4b58fdfa

Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000

Exception code: 0xc0000005

Fault offset: 0x6c8c0000

Faulting process id: 0x2238

Faulting application start time: 0xOUTLOOK.EXE0

Faulting application path: OUTLOOK.EXE1

Faulting module path: OUTLOOK.EXE2

Report Id: OUTLOOK.EXE3

 

Error: (05/19/2014 00:57:01 PM) (Source: Application Error) (User: ) (EventID: 1000)

Description: Faulting application name: Skype.exe, version: 6.14.0.104, time stamp: 0x52f90e3e

Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000

Exception code: 0xc0000005

Fault offset: 0x19bf0000

Faulting process id: 0x98c

Faulting application start time: 0xSkype.exe0

Faulting application path: Skype.exe1

Faulting module path: Skype.exe2

Report Id: Skype.exe3

 

Error: (05/18/2014 10:37:01 PM) (Source: Application Error) (User: ) (EventID: 1000)

Description: Faulting application name: OUTLOOK.EXE, version: 14.0.4734.1000, time stamp: 0x4b58fdfa

Faulting module name: PSTOREC.DLL_unloaded, version: 0.0.0.0, time stamp: 0x4a5bdad3

Exception code: 0xc0000005

Fault offset: 0x6d320000

Faulting process id: 0xf2c

Faulting application start time: 0xOUTLOOK.EXE0

Faulting application path: OUTLOOK.EXE1

Faulting module path: OUTLOOK.EXE2

Report Id: OUTLOOK.EXE3

 

Error: (05/18/2014 00:25:59 PM) (Source: Application Error) (User: ) (EventID: 1000)

Description: Faulting application name: OUTLOOK.EXE, version: 14.0.4734.1000, time stamp: 0x4b58fdfa

Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000

Exception code: 0xc0000005

Fault offset: 0x6bfd0000

Faulting process id: 0x10bc

Faulting application start time: 0xOUTLOOK.EXE0

Faulting application path: OUTLOOK.EXE1

Faulting module path: OUTLOOK.EXE2

Report Id: OUTLOOK.EXE3

 

Error: (05/17/2014 00:29:01 PM) (Source: Application Error) (User: ) (EventID: 1000)

Description: Faulting application name: OUTLOOK.EXE, version: 14.0.4734.1000, time stamp: 0x4b58fdfa

Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000

Exception code: 0xc0000005

Fault offset: 0x6e130000

Faulting process id: 0x1de4

Faulting application start time: 0xOUTLOOK.EXE0

Faulting application path: OUTLOOK.EXE1

Faulting module path: OUTLOOK.EXE2

Report Id: OUTLOOK.EXE3

 

 

System errors:

=============

Error: (05/16/2014 01:18:55 AM) (Source: volsnap) (User: ) (EventID: 36)

Description: The shadow copies of volume C: were aborted because the shadow copy storage could not grow due to a user imposed limit.

 

Error: (05/15/2014 11:18:47 PM) (Source: Service Control Manager) (User: ) (EventID: 7024)

Description: The HomeGroup Listener service terminated with service-specific error %%-2147023143.

 

Error: (05/15/2014 11:15:13 PM) (Source: Service Control Manager) (User: ) (EventID: 7023)

Description: The Panda On-Access Anti-Malware Service service terminated with the following error: 

%%1

 

Error: (05/14/2014 11:56:04 PM) (Source: DCOM) (User: ) (EventID: 10001)

Description: C:\Windows\System32\slui.exe -Embedding5{F87B28F1-DA9A-4F35-8EC0-800EFCF26B83}

 

Error: (05/13/2014 10:56:55 PM) (Source: DCOM) (User: ) (EventID: 10001)

Description: C:\Windows\System32\slui.exe -Embedding5{F87B28F1-DA9A-4F35-8EC0-800EFCF26B83}

 

Error: (05/13/2014 08:22:19 PM) (Source: Service Control Manager) (User: ) (EventID: 7024)

Description: The HomeGroup Listener service terminated with service-specific error %%-2147023143.

 

Error: (05/13/2014 08:18:49 PM) (Source: Service Control Manager) (User: ) (EventID: 7023)

Description: The Panda On-Access Anti-Malware Service service terminated with the following error: 

%%1

 

Error: (05/13/2014 07:48:34 PM) (Source: DCOM) (User: ) (EventID: 10010)

Description: {1A1F4206-0688-4E7F-BE03-D82EC69DF9A5}

 

Error: (05/12/2014 10:48:20 PM) (Source: WMPNetworkSvc) (User: ) (EventID: 14332)

Description: WMPNetworkSvc0x80004005

 

Error: (05/12/2014 10:45:35 PM) (Source: Service Control Manager) (User: ) (EventID: 7023)

Description: The Panda On-Access Anti-Malware Service service terminated with the following error: 

%%1

 

 

Microsoft Office Sessions:

=========================

Error: (05/19/2014 09:21:54 PM) (Source: Application Error) (User: ) (EventID: 1000)

Description: OUTLOOK.EXE14.0.4734.10004b58fdfaunknown0.0.0.000000000c00000056d2a0000103c01cf73db19336661C:\Program Files (x86)\Microsoft Office\Office14\OUTLOOK.EXEunknown459a781d-dfd6-11e3-9739-4ceb42389491

 

Error: (05/19/2014 09:03:21 PM) (Source: Application Error) (User: ) (EventID: 1000)

Description: Skype.exe6.14.0.10452f90e3eunknown0.0.0.000000000c00000056eab00005d401cf73dac8ba660cC:\Program Files (x86)\Skype\Phone\Skype.exeunknownadfc5935-dfd3-11e3-9739-4ceb42389491

 

Error: (05/19/2014 08:25:04 PM) (Source: Application Error) (User: ) (EventID: 1000)

Description: OUTLOOK.EXE14.0.4734.10004b58fdfaunknown0.0.0.000000000c00000056cca000028b401cf73abd904ac26C:\Program Files (x86)\Microsoft Office\Office14\OUTLOOK.EXEunknown54d24ee8-dfce-11e3-9739-4ceb42389491

 

Error: (05/19/2014 07:28:13 PM) (Source: Application Error) (User: ) (EventID: 1000)

Description: Skype.exe6.14.0.10452f90e3eunknown0.0.0.000000000c000000518150000321c01cf73a043bc9850C:\Program Files (x86)\Skype\Phone\Skype.exeunknown63c2bb67-dfc6-11e3-9739-4ceb42389491

 

Error: (05/19/2014 02:46:55 PM) (Source: Microsoft Office 14) (User: ) (EventID: 2001)

Description: Microsoft OutlookOutlook experienced a serious problem with the 'send to bluetooth' add-in. If you have seen this message multiple times, you should disable this add-in and check to see if an update is available. Do you want to disable this add-in?

 

Error: (05/19/2014 02:46:18 PM) (Source: Application Error) (User: ) (EventID: 1000)

Description: OUTLOOK.EXE14.0.4734.10004b58fdfaunknown0.0.0.000000000c00000056c8c0000223801cf7396ac1186a0C:\Program Files (x86)\Microsoft Office\Office14\OUTLOOK.EXEunknown01f47093-df9f-11e3-9739-4ceb42389491

 

Error: (05/19/2014 00:57:01 PM) (Source: Application Error) (User: ) (EventID: 1000)

Description: Skype.exe6.14.0.10452f90e3eunknown0.0.0.000000000c000000519bf000098c01cf7322cfad4f00C:\Program Files (x86)\Skype\Phone\Skype.exeunknownbd6b5a51-df8f-11e3-9739-4ceb42389491

 

Error: (05/18/2014 10:37:01 PM) (Source: Application Error) (User: ) (EventID: 1000)

Description: OUTLOOK.EXE14.0.4734.10004b58fdfaPSTOREC.DLL_unloaded0.0.0.04a5bdad3c00000056d320000f2c01cf730108f155e2C:\Program Files (x86)\Microsoft Office\Office14\OUTLOOK.EXEPSTOREC.DLL999eec6e-df17-11e3-9739-4ceb42389491

 

Error: (05/18/2014 00:25:59 PM) (Source: Application Error) (User: ) (EventID: 1000)

Description: OUTLOOK.EXE14.0.4734.10004b58fdfaunknown0.0.0.000000000c00000056bfd000010bc01cf7255650f424bC:\Program Files (x86)\Microsoft Office\Office14\OUTLOOK.EXEunknown3d2d5534-dec2-11e3-9739-4ceb42389491

 

Error: (05/17/2014 00:29:01 PM) (Source: Application Error) (User: ) (EventID: 1000)

Description: OUTLOOK.EXE14.0.4734.10004b58fdfaunknown0.0.0.000000000c00000056e1300001de401cf71a7750a3156C:\Program Files (x86)\Microsoft Office\Office14\OUTLOOK.EXEunknown7f797b9b-ddf9-11e3-9739-4ceb42389491

 

 

==================== Memory info =========================== 

 

Percentage of memory in use: 37%

Total physical RAM: 6038.17 MB

Available physical RAM: 3787.61 MB

Total Pagefile: 12074.52 MB

Available Pagefile: 8595.69 MB

Total Virtual: 8192 MB

Available Virtual: 8191.81 MB

 

==================== Drives ================================

 

Drive c: (OS) (Fixed) (Total:97.66 GB) (Free:16.87 GB) NTFS

Drive d: () (Fixed) (Total:166.01 GB) (Free:22.02 GB) NTFS

Drive e: () (Fixed) (Total:182.46 GB) (Free:14.86 GB) NTFS

Drive j: (RECOVERY) (Fixed) (Total:10.5 GB) (Free:0.6 GB) NTFS ==>[system with boot components (obtained from reading drive)]

 

==================== MBR & Partition Table ==================

 

========================================================

Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: 07F2837E)

Partition 1: (Not Active) - (Size=102 MB) - (Type=DE)

Partition 2: (Active) - (Size=11 GB) - (Type=07 NTFS)

Partition 3: (Not Active) - (Size=98 GB) - (Type=07 NTFS)

Partition 4: (Not Active) - (Size=348 GB) - (Type=OF Extended)

 

==================== End Of Log ============================


 

 

 

 

 

 

 

 

 

Link to post
Share on other sites

  • 5 weeks later...
  • Root Admin

Very sorry for the delay. We've simply been overrun with requests for help and have not been able to get to everyone requesting help in a timely manner.

Now that we're finally getting our head a bit above water again I've been going back to review old missed requests. If you do still need help please let me know.

Thank you

Link to post
Share on other sites

  • 1 month later...
  • Root Admin

Due to the lack of feedback this topic is closed to prevent others from posting here. If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this thread with your request. This applies only to the originator of this thread.

Other members who need assistance please start your own topic in a new thread. Thanks!

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.