Jump to content

Malwarebytes "crashing" on update


Recommended Posts

Malwarebytes Vers, 2 does support both 32 bit and 64 bit systems, and the native folder is Program Files (x86) for 64 bit systems. As BitDefender is Uninstalled you can leave Defender active, that should be OK.

I have made the assumption that there is no malware/infection on your system, recent logs look clean. Maybe I am wrong, lets try RKill now and see if we make any progress..

 

Please download RKill from here: http://www.bleepingcomputer.com/download/rkill/

 

There are three buttons to choose from with different names on, select the first one and save it to your desktop.

 

  • Double-click on the Rkill desktop icon to run the tool.
  • If using Vista or Windows 7/8, right-click on it and Run As Administrator.
  • A black DOS box will briefly flash and then disappear. This is normal and indicates the tool ran successfully.
  • A log pops up at the end of the run. This log file is located at C:\rkill.log. Please post this in your next reply.
  • If you do not see the black box flash on the screen delete the icon from the desktop and go back to the link for the download, select the next button and try to run the tool again, continue to repeat this process using the remaining buttons until the tool runs. You will find further links if you scroll down the page with other names, try them one at a time.
  • If the tool does not run from any of the links provided, please let me know.

 

Run Malwarebytes and see if we make any progress, do an update and threat scan. Any improvement?

 

If Malwarebytes still has issues after RKill run the following online scan,

 

We need to run an online AV scan to ensure there are no remnants of any infection left on your system that may have been missed. This scan is very thorough and well worth running, it can take several hours please be patient and let it complete:

 

Run Eset Online Scanner

 

**Note** You will need to use Internet explorer for this scan - Vista and Windows 7/8 right click on IE shortcut and run as admin

 

Go to Eset web page http://www.eset.com/us/online-scanner/ to run an online scan from ESET.

 


Turn off the real time scanner of any existing antivirus program while performing the online scan
click on the Run ESET Online Scanner button
Tick the box next to YES, I accept the Terms of Use.
Click Start
When asked, allow the add/on to be installed
Click Start
Make sure that the option "Remove found threats"  is ticked
Click on Advanced Settings, ensure the options
Scan for potentially unwanted applications, Scan for potentially unsafe applications, and Enable Anti-Stealth Technology are ticked.
Select "Change" next to Current scan targets A new window will open, select any extra drives, Flash drives etc as required.
Click Scan
wait for the virus definitions to be downloaded
Wait for the scan to finish

 

When the scan is complete

 


If no threats were found
put a checkmark in "Uninstall application on close"
close program
report to me that nothing was found

 

If threats were found

 


click on "list of threats found"
click on "export to text file" and save it as ESET SCAN and save to the desktop
Click on back
put a checkmark in "Uninstall application on close"
click on finish

 

close program

 

Copy and paste the report in next reply.

 

If this scan is clean and Malwarebytes still has issues I`ll ask one of the Moderators to offer help/advice.

 

Thank you,

 

Kevin

Link to post
Share on other sites

  • Root Admin

Hello hdtv35

 

Kevin has asked me to take a look at this and see if we can determine what's going on.

Please do the following so I can get some fresh logs.

 

Please read the following and post back the requested logs.
 
Diagnostic Logs

 

 

The site is very busy right now and I'm trying to assist many users so if I've not replied back to you within 24 hours of your reply please send me a private message with the link to your topic here.

 
Thank you
 

Ron

Link to post
Share on other sites

FRST Part 1:

 

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 02-06-2014
Ran by Jason (administrator) on JASON-PC on 05-06-2014 21:44:12
Running from C:\Users\Jason\Desktop
Platform: Windows 8.1 Pro (X64) OS Language: English(US)
Internet Explorer Version 11
Boot Mode: Normal
 
The only official download link for FRST:
Download link from any site other than Bleeping Computer is unpermitted or outdated.
 
==================== Processes (Whitelisted) =================
 
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(Stardock Software, Inc) C:\Program Files (x86)\Stardock\Start8\Start8Srv.exe
(Stardock Software, Inc) C:\Program Files (x86)\Stardock\Start8\Start8_64.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore64.exe
() C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\DIGI+ VRM\PowerControlHelp.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsusFanControlService\1.01.10\AsusFanControlService.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Binary Fortress Software) C:\Program Files (x86)\DisplayFusion\DisplayFusionService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Raxco Software, Inc.) C:\Program Files\Common Files\Raxco\Shared\PDEngine.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\USB 3.0 Boost\U3BoostSvr64.exe
(Western Digital Technologies, Inc.) C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe
(Raxco Software, Inc.) C:\Program Files\Raxco\PerfectDisk\PDAgent.exe
(Western Digital Technologies, Inc.) C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
(Raxco Software, Inc.) C:\Program Files\Raxco\PerfectDisk\PDAgentS1.exe
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(SoftPerfect Research) C:\Program Files\NetWorx\networx.exe
() C:\Program Files\Plantronics\GameCom 780 & 788\GameCom780.exe
(Logitech Inc.) C:\Program Files\Logitech Gaming Software\LCore.exe
(Electronic Arts) C:\Program Files (x86)\Origin\Origin.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Binary Fortress Software) C:\Program Files (x86)\DisplayFusion\DisplayFusion.exe
() C:\Program Files (x86)\WhatPulse2\whatpulse.exe
(Hewlett-Packard Co.) C:\Program Files\HP\HP Officejet Pro 8600\Bin\ScanToPCActivationApp.exe
(SUPERAntiSpyware) C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
() C:\Users\Jason\Documents\LCDSirReal\LCDSirReal.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe
(Logitech Inc.) C:\Program Files\Logitech Gaming Software\Applets\LCDMedia.exe
(Logitech Inc.) C:\Program Files\Logitech Gaming Software\Applets\LCDCountdown.exe
(Logitech Inc.) C:\Program Files\Logitech Gaming Software\Applets\LCDClock.exe
(Western Digital Technologies, Inc.) C:\Program Files (x86)\Western Digital\WD Security\WDDriveAutoUnlock.exe
(Logitech Inc.) C:\Program Files\Logitech Gaming Software\Applets\LCDPOP3.exe
(Logitech Inc.) C:\Program Files\Logitech Gaming Software\Applets\LCDRSS.exe
(Western Digital Technologies, Inc.) C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(Hewlett-Packard Co.) C:\Program Files\HP\HP Officejet Pro 8600\Bin\HPNetworkCommunicator.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Binary Fortress Software) C:\Program Files (x86)\DisplayFusion\DisplayFusionHookAppWIN6032.exe
(Binary Fortress Software) C:\Program Files (x86)\DisplayFusion\DisplayFusionHookAppWIN6064.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\TurboV EVO\TurboVHelp.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\EPU\EPUHelp.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Integrated Clock Controller Service\ICCProxy.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\AI Suite II.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\AlertHelper.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
 
 
==================== Registry (Whitelisted) ==================
 
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2199840 2014-04-30] (NVIDIA Corporation)
HKLM\...\Run: [shadowPlay] => C:\WINDOWS\system32\nvspcap64.dll [1225920 2014-04-30] (NVIDIA Corporation)
HKLM\...\Run: [NetWorx] => C:\Program Files\NetWorx\networx.exe [5343952 2014-03-19] (SoftPerfect Research)
HKLM\...\Run: [GamecomSound] => C:\Program Files\Plantronics\GameCom 780 & 788\GameCom780.exe [817440 2014-01-21] ()
HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [8294680 2014-02-27] (Logitech Inc.)
HKLM\...\Run: [installerLauncher] => "C:\Program Files\Common Files\Bitdefender\SetupInformation\{6F57816A-791A-4159-A75F-CFD0C7EA4FBF}\setuplauncher.exe" /run:"C:\Program Files\Common Files\Bitdefender\SetupInformation\{6F57816A-791A-4159-A75F-CFD0C7EA4FBF}\Installer.exe"
HKLM-x32\...\Run: [ASUSWebStorage] => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.11.125\AsusWSPanel.exe [3353472 2012-09-17] (ASUS Cloud Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [ASUS AiChargerPlus Execute] => C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe [550272 2014-03-22] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [WD Drive Unlocker] => C:\Program Files (x86)\Western Digital\WD Security\WDDriveAutoUnlock.exe [1694072 2013-10-15] (Western Digital Technologies, Inc.)
HKLM-x32\...\Run: [WD Quick View] => C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe [5562736 2014-05-09] (Western Digital Technologies, Inc.)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [585048 2014-04-17] (Razer Inc.)
HKLM-x32\...\Run: [sunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [49208 2011-10-28] (Hewlett-Packard)
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [3814736 2014-05-13] (LogMeIn Inc.)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-01-17] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-05-15] (Apple Inc.)
HKLM-x32\...\Run: [Malwarebytes Anti-Exploit] => C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae.exe
HKU\.DEFAULT\...\Run: [bitdefender Wallet Agent] => "C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe"
HKU\.DEFAULT\...\Run: [bitdefender Wallet] => "C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe" --hidden --nowizard
HKU\.DEFAULT\...\Run: [bitdefender Wallet Application Agent] => "C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe"
HKU\S-1-5-21-2425713805-3090955610-2678947378-1000\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3588952 2014-04-25] (Electronic Arts)
HKU\S-1-5-21-2425713805-3090955610-2678947378-1000\...\Run: [skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [20924064 2014-02-10] (Skype Technologies S.A.)
HKU\S-1-5-21-2425713805-3090955610-2678947378-1000\...\Run: [DisplayFusion] => C:\Program Files (x86)\DisplayFusion\DisplayFusion.exe [7952224 2013-11-27] (Binary Fortress Software)
HKU\S-1-5-21-2425713805-3090955610-2678947378-1000\...\Run: [WhatPulse] => C:\Program Files (x86)\WhatPulse2\whatpulse.exe [3054592 2014-04-17] ()
HKU\S-1-5-21-2425713805-3090955610-2678947378-1000\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [59720 2013-11-20] (Apple Inc.)
HKU\S-1-5-21-2425713805-3090955610-2678947378-1000\...\Run: [ApplePhotoStreams] => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [59720 2013-11-20] (Apple Inc.)
HKU\S-1-5-21-2425713805-3090955610-2678947378-1000\...\Run: [HP Officejet Pro 8600 (NET)] => C:\Program Files\HP\HP Officejet Pro 8600\Bin\ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett-Packard Co.)
HKU\S-1-5-21-2425713805-3090955610-2678947378-1000\...\Run: [sUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [6563608 2014-01-06] (SUPERAntiSpyware)
HKU\S-1-5-21-2425713805-3090955610-2678947378-1000\...\Run: [GoogleChromeAutoLaunch_EBF55E2D20B0831DD9C62517F8BC1054] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [860488 2014-05-13] (Google Inc.)
Startup: C:\Users\Jason\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Rainmeter.lnk
ShortcutTarget: Rainmeter.lnk -> C:\Program Files\Rainmeter\Rainmeter.exe ()
Startup: C:\Users\Jason\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Verizon Wireless Software Utility Application for Android – Samsung.lnk.disabled
ShortcutTarget: Verizon Wireless Software Utility Application for Android – Samsung.lnk.disabled -> C:\Users\Jason\AppData\Roaming\VERIZON\UA_ar\UA.exe (SAMSUNG Electornics Co., Ltd.)
 
==================== Internet (Whitelisted) ====================
 
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://t.msn.com/
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x89AE5B3C3E6ECF01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-US,en;q=0.5
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Handler: belarc - {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} -  No File
Handler-x32: belarc - {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - C:\Program Files (x86)\Belarc\BelarcAdvisor\System\BAVoilaX.dll (Belarc, Inc.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.125
 
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll ()
FF Plugin: @java.com/DTPlugin,version=10.55.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1210150.dll (Adobe Systems, Inc.)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @esn/esnlaunch,version=2.3.0 - C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll (ESN Social Software AB)
FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin-x32: BYOND - C:\Program Files (x86)\BYOND\bin\npbyond.dll (BYOND)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Jason\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
 
Chrome: 
=======
CHR HomePage: hxxp://www.google.com/
CHR StartupUrls: "hxxp://www.twitch.tv/lirik"
CHR Extension: (Magic Actions for YouTube™) - C:\Users\Jason\AppData\Local\Google\Chrome\User Data\Default\Extensions\abjcfabbhafbcdfjoecdgepllmpfceif [2014-06-05]
CHR Extension: (BetterTTV) - C:\Users\Jason\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2014-06-05]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Jason\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-05-23]
CHR Extension: (YouTube) - C:\Users\Jason\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-06-05]
CHR Extension: (Adblock Plus) - C:\Users\Jason\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-06-05]
CHR Extension: (Google Search) - C:\Users\Jason\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-06-05]
CHR Extension: (Looper for YouTube) - C:\Users\Jason\AppData\Local\Google\Chrome\User Data\Default\Extensions\iggpfpnahkgpnindfkdncknoldgnccdg [2014-06-05]
CHR Extension: (Speed Dial 2) - C:\Users\Jason\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpfpebmajhhopeonhlcgidhclcccjcik [2014-06-05]
CHR Extension: (Reddit Enhancement Suite) - C:\Users\Jason\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbmfpngjjgdllneeigpgjifpgocmfgmb [2014-06-05]
CHR Extension: (Steam Theme) - C:\Users\Jason\AppData\Local\Google\Chrome\User Data\Default\Extensions\mcphcjcjgkjmbphkfjleamgkinaeebnm [2014-06-05]
CHR Extension: (Google Wallet) - C:\Users\Jason\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-03-22]
CHR Extension: (Checker Plus for Gmail™) - C:\Users\Jason\AppData\Local\Google\Chrome\User Data\Default\Extensions\oeopbcgkkoapgobdbedcemjljbihmemj [2014-06-05]
 
==================== Services (Whitelisted) =================
 
R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [144152 2013-10-10] (SUPERAntiSpyware.com)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe [920736 2012-06-01] ()
R2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe [951936 2012-06-01] (ASUSTeK Computer Inc.)
R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe [149120 2012-02-17] (ASUSTeK Computer Inc.)
R2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.01.10\AsusFanControlService.exe [1475744 2012-05-25] (ASUSTeK Computer Inc.)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [49152 2014-03-26] ()
R2 DisplayFusionService; C:\Program Files (x86)\DisplayFusion\DisplayFusionService.exe [1375600 2013-11-27] (Binary Fortress Software)
S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [520416 2014-02-28] (Futuremark)
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [377616 2014-04-15] (LogMeIn, Inc.)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1809720 2014-05-12] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [860472 2014-05-12] (Malwarebytes Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1617696 2014-04-30] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21007192 2014-04-30] (NVIDIA Corporation)
R2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [76888 2014-06-04] ()
S3 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [118520 2013-02-28] (Riverbed Technology, Inc.)
R2 Start8; C:\Program Files (x86)\Stardock\Start8\Start8Srv.exe [143288 2014-04-04] (Stardock Software, Inc)
R2 WDBackup; C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe [1042808 2014-05-09] (Western Digital Technologies, Inc.)
R2 WDDriveService; C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe [295800 2014-05-09] (Western Digital Technologies, Inc.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-03-23] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-03-23] (Microsoft Corporation)
 
==================== Drivers (Whitelisted) ====================
 
S0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra)
S3 AE3000; C:\Windows\system32\DRIVERS\AE3000w764.sys [1717824 2012-03-02] (Ralink Technology Corp.)
R3 AiChargerPlus; C:\Windows\SysWow64\drivers\AiChargerPlus.sys [14848 2014-03-22] (ASUSTek Computer Inc.)
R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [36608 2014-04-23] (Advanced Micro Devices, Inc.)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2012-08-22] ()
R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2010-08-03] ()
R3 ASUSFILTER; C:\Windows\SysWow64\drivers\ASUSFILTER.sys [46152 2011-09-20] (MCCI Corporation)
S3 ASUSstpt; C:\Windows\System32\drivers\ASUSstpt.sys [25928 2012-08-19] (MCCI Corporation)
S3 ASUSumsc; C:\Windows\System32\drivers\ASUSumsc.sys [150344 2012-08-19] (MCCI Corporation)
S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-12] (Windows ® Win 7 DDK provider)
S3 DIRECTIO; C:\Program Files\PerformanceTest\DirectIo64.sys [31160 2014-04-24] ()
R3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [46136 2014-05-13] (LogMeIn Inc.)
S3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-30] (Intel Corporation)
S3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-25] (Intel Corporation)
S0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-09] (Intel Corporation)
R0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39768 2013-11-10] (Microsoft Corporation)
S3 kbldfltr; C:\Windows\System32\drivers\kbldfltr.sys [22272 2013-09-29] (Microsoft Corporation)
S3 LGSHidFilt; C:\Windows\system32\DRIVERS\LGSHidFilt.Sys [64280 2013-05-30] (Logitech Inc.)
S3 LGSUsbFilt; C:\Windows\system32\DRIVERS\LGSUsbFilt.Sys [41752 2013-05-30] (Logitech Inc.)
S0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2014-05-12] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [122584 2014-06-05] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2014-05-12] (Malwarebytes Corporation)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [100312 2014-04-23] (Intel Corporation)
R3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation)
S3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation)
R1 networx; C:\Windows\System32\drivers\networx.sys [59384 2014-03-11] (NetFilterSDK.com)
R2 NPF; C:\Windows\System32\drivers\npf.sys [36600 2013-02-28] (Riverbed Technology, Inc.)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [18776 2014-04-30] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation)
R3 pikbd; C:\Windows\System32\drivers\pikbd.sys [22880 2014-04-23] (Christian Gulden)
R3 PlantronicsGC; C:\Windows\system32\drivers\PLTGC.sys [1327104 2013-10-08] (C-Media Electronics Inc)
S3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [924504 2014-02-22] (Microsoft Corporation)
S3 RTCore64; C:\Program Files (x86)\EVGA Precision X\RTCore64.sys [15176 2013-07-17] ()
R3 rzendpt; C:\Windows\System32\drivers\rzendpt.sys [39080 2014-04-08] (Razer Inc)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
S3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146776 2013-10-25] (Microsoft Corporation)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [34544 2014-04-23] (Synaptics Incorporated)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [560184 2014-03-22] (Duplex Secure Ltd.)
S3 sthid; C:\Windows\System32\drivers\sthid.sys [21216 2014-05-15] (Splashtop Inc.)
S0 stornvme; C:\Windows\System32\drivers\stornvme.sys [57176 2013-10-05] (Microsoft Corporation)
S3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-03-23] (Microsoft Corporation)
R0 Wof; C:\Windows\System32\Drivers\Wof.sys [157016 2014-03-13] (Microsoft Corporation)
S3 xusb22; C:\Windows\System32\drivers\xusb22.sys [87040 2014-03-18] (Microsoft Corporation)
S3 cpuz136; \??\C:\Users\Jason\AppData\Local\Temp\cpuz136\cpuz136_x64.sys [X]
S3 cpuz137; \??\C:\WINDOWS\TEMP\cpuz137\cpuz137_x64.sys [X]
S3 GPU-Z; \??\C:\Users\Jason\AppData\Local\Temp\GPU-Z.sys [X]
S3 GPUZ; \??\C:\WINDOWS\TEMP\GPUZ.sys [X]
S3 usbbus; \SystemRoot\System32\drivers\lgx64bus.sys [X]
S3 UsbDiag; \SystemRoot\system32\DRIVERS\lgx64diag.sys [X]
S3 USBModem; \SystemRoot\system32\DRIVERS\lgx64modem.sys [X]
 
==================== NetSvcs (Whitelisted) ===================
 
 
==================== One Month Created Files and Folders ========
 
2014-06-05 21:43 - 2014-06-05 21:43 - 02068992 _____ (Farbar) C:\Users\Jason\Desktop\FRST64.exe
2014-06-05 21:24 - 2014-06-05 21:24 - 00000000 ____D () C:\ProgramData\TrackMania
2014-06-05 21:23 - 2014-06-05 21:23 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnet.dll
2014-06-05 21:23 - 2014-06-05 21:23 - 00377856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnet.dll
2014-06-05 21:23 - 2014-06-05 21:23 - 00214016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplayx.dll
2014-06-05 21:23 - 2014-06-05 21:23 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnathlp.dll
2014-06-05 21:23 - 2014-06-05 21:23 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnathlp.dll
2014-06-05 21:23 - 2014-06-05 21:23 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpwsockx.dll
2014-06-05 21:23 - 2014-06-05 21:23 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnsvr.exe
2014-06-05 21:23 - 2014-06-05 21:23 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnsvr.exe
2014-06-05 21:23 - 2014-06-05 21:23 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplaysvr.exe
2014-06-05 21:23 - 2014-06-05 21:23 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpmodemx.dll
2014-06-05 21:23 - 2014-06-05 21:23 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhupnp.dll
2014-06-05 21:23 - 2014-06-05 21:23 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhpast.dll
2014-06-05 21:23 - 2014-06-05 21:23 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhupnp.dll
2014-06-05 21:23 - 2014-06-05 21:23 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhpast.dll
2014-06-05 16:36 - 2014-06-05 16:37 - 00001057 _____ () C:\Users\Public\Desktop\StarCraft - Brood War.lnk
2014-06-05 16:36 - 2014-06-05 16:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StarCraft
2014-06-05 15:32 - 2014-06-05 15:32 - 02740978 _____ (Blizzard Entertainment) C:\Users\Jason\Downloads\Downloader_StarCraft_Combo_enUS.exe
2014-06-05 07:25 - 2014-06-05 07:26 - 00003654 _____ () C:\Users\Jason\Desktop\Rkill.txt
2014-06-05 07:24 - 2014-06-05 07:24 - 01940216 _____ (Bleeping Computer, LLC) C:\Users\Jason\Desktop\rkill.exe
2014-06-05 07:22 - 2014-06-05 07:22 - 01940216 _____ (Bleeping Computer, LLC) C:\Users\Jason\Downloads\1145.tmp
2014-06-05 07:17 - 2014-06-05 07:17 - 00009276 _____ () C:\WINDOWS\PFRO.log
2014-06-05 07:16 - 2014-06-05 07:16 - 00258936 _____ () C:\ProgramData\1401966867.bdinstall.bin
2014-06-05 01:22 - 2014-06-05 01:22 - 00074512 _____ (BitDefender SRL) C:\WINDOWS\system32\bdsandboxuiskin32.dll
2014-06-05 01:20 - 2014-06-05 01:20 - 00011810 _____ () C:\WINDOWS\system32\bdsandbox.txt
2014-06-05 01:11 - 2014-06-05 01:11 - 00000000 ____D () C:\Users\Jason\Desktop\New folder
2014-06-05 00:53 - 2014-06-05 00:53 - 00572118 _____ () C:\ProgramData\1401943606.bdinstall.bin
2014-06-05 00:46 - 2014-06-05 00:46 - 07200360 _____ () C:\Users\Jason\Desktop\bitdefender_tsecurity_beta.exe
2014-06-05 00:45 - 2014-06-05 00:45 - 07302320 _____ () C:\Users\Jason\Desktop\bitdefender_tsecurity.exe
2014-06-04 23:04 - 2014-06-04 23:04 - 00001218 _____ () C:\Users\Public\Desktop\Battlefield 4.lnk
2014-06-04 23:04 - 2014-06-04 23:04 - 00001194 _____ () C:\Users\Public\Desktop\Battlefield 4(64 bit).lnk
2014-06-04 23:04 - 2014-06-04 23:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield 4
2014-06-04 23:03 - 2014-06-04 23:04 - 00281872 _____ () C:\WINDOWS\SysWOW64\PnkBstrB.exe
2014-06-04 23:03 - 2014-06-04 23:03 - 00281872 _____ () C:\WINDOWS\SysWOW64\PnkBstrB.ex0
2014-06-04 23:03 - 2014-06-04 23:03 - 00076888 _____ () C:\WINDOWS\SysWOW64\PnkBstrA.exe
2014-06-04 20:30 - 2014-06-04 20:30 - 00000000 ____D () C:\Users\Jason\Documents\Splashtop Whiteboard
2014-06-04 20:30 - 2014-06-04 20:30 - 00000000 ____D () C:\Users\Jason\Documents\Splashtop Presenter
2014-06-04 18:30 - 2014-06-04 18:30 - 00255915 _____ () C:\ProgramData\1401920898.bdinstall.bin
2014-06-03 18:51 - 2014-06-05 21:35 - 00122584 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2014-06-03 18:51 - 2014-06-03 18:51 - 00001122 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-06-03 18:51 - 2014-06-03 18:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-06-03 18:51 - 2014-06-03 18:51 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-06-03 18:51 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2014-06-03 18:51 - 2014-05-12 07:26 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2014-06-03 18:51 - 2014-05-12 07:25 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2014-06-03 18:49 - 2014-06-03 18:49 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Jason\Desktop\mbam-setup-consumer-2.0.2.1012.exe
2014-06-03 18:34 - 2014-06-03 18:34 - 00000000 ____D () C:\SUPERDelete
2014-06-03 18:25 - 2014-06-03 18:26 - 00315392 _____ (Malwarebytes Corporation) C:\Users\Jason\Desktop\mbam-clean-2.0.2.0 (2).exe
2014-06-02 15:30 - 2014-06-02 15:30 - 02347384 _____ (ESET) C:\Users\Jason\Desktop\esetsmartinstaller_enu.exe
2014-06-01 19:31 - 2014-06-01 19:31 - 00753290 _____ () C:\Users\Jason\Desktop\Fuller_projection.svg
2014-06-01 19:01 - 2014-06-01 20:51 - 00477364 _____ () C:\TDSSKiller.txt
2014-06-01 19:00 - 2014-06-01 19:00 - 04176736 _____ (Kaspersky Lab ZAO) C:\Users\Jason\Desktop\tdsskiller.exe
2014-06-01 17:35 - 2014-06-01 17:36 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Jason\Desktop\mbam-setup-2.0.2.1012 (1).exe
2014-06-01 17:22 - 2014-06-01 17:22 - 00315392 _____ (Malwarebytes Corporation) C:\Users\Jason\Desktop\mbam-clean-2.0.2.0 (1).exe
2014-06-01 16:32 - 2014-06-01 16:32 - 00004635 _____ () C:\Users\Jason\Desktop\RKreport_SCN_06012014_162722.log
2014-06-01 16:11 - 2014-06-01 16:11 - 00000000 ____D () C:\ProgramData\RogueKiller
2014-06-01 16:10 - 2014-06-01 16:11 - 04668928 _____ () C:\Users\Jason\Desktop\RogueKiller.exe
2014-06-01 14:39 - 2014-06-01 14:39 - 00000649 _____ () C:\Users\Jason\Desktop\JRT.txt
2014-06-01 13:48 - 2014-06-01 16:20 - 00000000 ____D () C:\Users\Jason\Desktop\Malware tools
2014-06-01 13:15 - 2014-06-01 13:16 - 00000000 ____D () C:\Users\Jason\Desktop\New folder (3)
2014-06-01 13:15 - 2014-06-01 13:14 - 00003620 _____ () C:\Users\Jason\Desktop\1401642845_1_01.xml
2014-06-01 13:14 - 2014-06-01 13:14 - 00003620 _____ () C:\Users\Jason\Desktop\1401642845_1_01.txt
2014-06-01 11:28 - 2014-06-01 11:28 - 00045160 _____ () C:\Users\Jason\Desktop\Addition.txt
2014-06-01 00:27 - 2014-06-05 21:44 - 00026525 _____ () C:\Users\Jason\Desktop\FRST.txt
2014-05-31 14:03 - 2014-05-31 14:03 - 00000000 ____D () C:\Program Files (x86)\ESET
2014-05-30 16:44 - 2014-05-30 16:44 - 00000000 ____D () C:\Users\Jason\Desktop\WDFirmwareUpdater
2014-05-30 16:43 - 2014-05-30 16:43 - 02112847 _____ () C:\Users\Jason\Desktop\WDFirmwareUpdater.zip
2014-05-29 23:38 - 2014-05-29 23:38 - 87256095 _____ () C:\Users\Jason\Desktop\Dunkey_Album.zip
2014-05-29 21:19 - 2014-05-29 21:19 - 00002156 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Belarc Advisor.lnk
2014-05-29 21:19 - 2014-05-29 21:19 - 00000000 ____D () C:\Program Files (x86)\Belarc
2014-05-29 19:40 - 2014-05-29 19:40 - 00001722 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rainmeter.lnk
2014-05-29 19:40 - 2014-05-29 19:40 - 00000000 ____D () C:\Users\Jason\Documents\Rainmeter
2014-05-29 19:40 - 2014-05-29 19:40 - 00000000 ____D () C:\Users\Jason\AppData\Roaming\Rainmeter
2014-05-29 19:05 - 2014-05-29 19:20 - 00000022 _____ () C:\WINDOWS\GPU-Z.INI
2014-05-29 19:04 - 2014-05-29 19:04 - 00000000 ____D () C:\Users\Jason\AppData\Local\Futuremark
2014-05-29 16:06 - 2014-05-29 16:06 - 00000000 ____D () C:\WINDOWS\ERUNT
2014-05-29 15:49 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\WINDOWS\SysWOW64\sqlite3.dll
2014-05-29 15:28 - 2014-06-05 21:44 - 00000000 ____D () C:\FRST
2014-05-29 15:26 - 2014-05-29 15:26 - 00410112 _____ (Farbar) C:\Users\Jason\Desktop\FSS.exe
2014-05-29 15:17 - 2014-05-29 15:17 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Jason\Desktop\mbam-setup-2.0.2.1012.exe
2014-05-29 15:00 - 2014-05-29 15:00 - 00315392 _____ (Malwarebytes Corporation) C:\Users\Jason\Desktop\mbam-clean-2.0.2.0.exe
2014-05-28 23:04 - 2014-06-01 01:28 - 00000000 ____D () C:\Program Files (x86)\Samsung
2014-05-28 19:03 - 2014-05-28 22:38 - 00000000 ____D () C:\Users\Jason\Desktop\Algerbra 2
2014-05-28 14:32 - 2014-05-28 14:32 - 00000276 _____ () C:\SSUUpdater.log
2014-05-28 14:16 - 2014-05-28 14:16 - 00000000 ____D () C:\Users\Jason\AppData\Local\Splashtop
2014-05-28 14:13 - 2014-06-04 20:31 - 00000000 ____D () C:\Program Files (x86)\Splashtop
2014-05-28 14:12 - 2014-05-28 14:12 - 20491928 _____ (Splashtop Inc.) C:\Users\Jason\Downloads\Splashtop_Streamer_WIN_v2.5.8.4.EXE
2014-05-26 19:24 - 2014-05-26 19:24 - 00012667 _____ () C:\Users\Jason\Downloads\67afd438-c22c-4c41-9167-ae08bcb45df6.xlsx
2014-05-26 10:23 - 2014-05-26 10:23 - 00002157 _____ () C:\Users\Public\Desktop\3D Vision Photo Viewer.lnk
2014-05-26 10:22 - 2014-05-19 19:10 - 00601432 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe
2014-05-26 10:18 - 2014-05-19 22:44 - 25256224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll
2014-05-26 10:18 - 2014-05-19 22:44 - 24025376 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll
2014-05-26 10:18 - 2014-05-19 22:44 - 17561544 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll
2014-05-26 10:18 - 2014-05-19 22:44 - 17480432 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dumx.dll
2014-05-26 10:18 - 2014-05-19 22:44 - 16003912 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvwgf2um.dll
2014-05-26 10:18 - 2014-05-19 22:44 - 12688328 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys
2014-05-26 10:18 - 2014-05-19 22:44 - 11644928 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2014-05-26 10:18 - 2014-05-19 22:44 - 11599072 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll
2014-05-26 10:18 - 2014-05-19 22:44 - 09735256 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2014-05-26 10:18 - 2014-05-19 22:44 - 09697640 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll
2014-05-26 10:18 - 2014-05-19 22:44 - 03141976 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2014-05-26 10:18 - 2014-05-19 22:44 - 02953672 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2014-05-26 10:18 - 2014-05-19 22:44 - 02785568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvenc.dll
2014-05-26 10:18 - 2014-05-19 22:44 - 02412376 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvenc.dll
2014-05-26 10:18 - 2014-05-19 22:44 - 01889112 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6433788.dll
2014-05-26 10:18 - 2014-05-19 22:44 - 01541576 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6433788.dll
2014-05-26 10:18 - 2014-05-19 22:44 - 00895776 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2014-05-26 10:18 - 2014-05-19 22:44 - 00892704 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2014-05-26 10:18 - 2014-05-19 22:44 - 00867784 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2014-05-26 10:18 - 2014-05-19 22:44 - 00861128 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2014-05-26 10:18 - 2014-05-19 22:44 - 00837056 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvumdshim.dll
2014-05-26 10:18 - 2014-05-19 22:44 - 00492376 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2014-05-26 10:18 - 2014-05-19 22:44 - 00416712 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2014-05-26 10:18 - 2014-05-19 22:44 - 00382240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2014-05-26 10:18 - 2014-05-19 22:44 - 00354016 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglshim64.dll
2014-05-26 10:18 - 2014-05-19 22:44 - 00335704 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2014-05-26 10:18 - 2014-05-19 22:44 - 00305600 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglshim32.dll
2014-05-26 10:18 - 2014-05-19 22:44 - 00166568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvinitx.dll
2014-05-26 10:18 - 2014-05-19 22:44 - 00146480 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvinit.dll
2014-05-26 02:52 - 2014-05-26 02:52 - 00080384 _____ (Razer Inc) C:\WINDOWS\system32\RazerCoinstaller.dll
2014-05-25 15:53 - 2014-04-18 10:57 - 00032600 _____ (Microsoft Corporation) C:\WINDOWS\system32\ploptin.dll
2014-05-25 15:53 - 2014-04-18 10:44 - 01466856 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2014-05-25 15:53 - 2014-04-18 09:29 - 01200288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2014-05-25 15:53 - 2014-04-18 05:44 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\energyprov.dll
2014-05-25 15:53 - 2014-04-18 05:32 - 13287936 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2014-05-25 15:53 - 2014-04-18 04:58 - 11792384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2014-05-25 15:53 - 2014-04-18 04:32 - 00805376 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2014-05-25 15:53 - 2014-04-18 04:21 - 01126912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2014-05-25 15:53 - 2014-04-18 04:09 - 08652800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2014-05-25 15:53 - 2014-04-18 03:51 - 00836608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
2014-05-25 15:53 - 2014-04-18 03:49 - 05833216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2014-05-25 15:53 - 2014-04-14 05:20 - 00324888 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2014-05-25 15:53 - 2014-04-14 04:01 - 00285144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2014-05-25 15:53 - 2014-04-11 00:51 - 00250368 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll
2014-05-25 15:53 - 2014-04-11 00:23 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpencom.dll
2014-05-25 15:53 - 2014-04-10 23:30 - 00449536 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll
2014-05-25 15:53 - 2014-04-09 07:53 - 00337240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys
2014-05-25 15:53 - 2014-04-09 02:39 - 00191488 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpchttp.dll
2014-05-25 15:53 - 2014-04-09 01:44 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpchttp.dll
2014-05-25 15:53 - 2014-04-09 00:35 - 01411584 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2014-05-25 15:53 - 2014-04-08 23:33 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2014-05-25 15:53 - 2014-04-07 22:01 - 00589656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2014-05-25 15:53 - 2014-04-06 12:34 - 00372568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2014-05-25 15:53 - 2014-04-06 12:34 - 00275800 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys
2014-05-25 15:53 - 2014-04-06 12:32 - 00125496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2014-05-25 15:53 - 2014-04-06 12:31 - 21268952 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2014-05-25 15:53 - 2014-04-06 12:30 - 00201920 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll
2014-05-25 15:53 - 2014-04-06 12:24 - 00360792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys
2014-05-25 15:53 - 2014-04-06 12:20 - 02140888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2014-05-25 15:53 - 2014-04-06 12:20 - 01403856 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2014-05-25 15:53 - 2014-04-06 12:20 - 01379064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2014-05-25 15:53 - 2014-04-06 12:20 - 00881616 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2014-05-25 15:53 - 2014-04-06 12:20 - 00765408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2014-05-25 15:53 - 2014-04-06 12:20 - 00609448 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2014-05-25 15:53 - 2014-04-06 12:20 - 00491744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2014-05-25 15:53 - 2014-04-06 12:20 - 00467496 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2014-05-25 15:53 - 2014-04-06 12:20 - 00463256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2014-05-25 15:53 - 2014-04-06 12:20 - 00364640 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2014-05-25 15:53 - 2014-04-06 12:20 - 00244880 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2014-05-25 15:53 - 2014-04-06 12:20 - 00233912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2014-05-25 15:53 - 2014-04-06 12:20 - 00028408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfpmp.exe
2014-05-25 15:53 - 2014-04-06 11:23 - 00098584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll
2014-05-25 15:53 - 2014-04-06 11:22 - 18755672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2014-05-25 15:53 - 2014-04-06 11:22 - 00178184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVideoDSP.dll
2014-05-25 15:53 - 2014-04-06 11:16 - 02144984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2014-05-25 15:53 - 2014-04-06 11:16 - 01209616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
2014-05-25 15:53 - 2014-04-06 11:16 - 00707048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2014-05-25 15:53 - 2014-04-06 11:16 - 00669856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2014-05-25 15:53 - 2014-04-06 11:16 - 00518544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2014-05-25 15:53 - 2014-04-06 11:16 - 00406504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2014-05-25 15:53 - 2014-04-06 11:16 - 00387896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2014-05-25 15:53 - 2014-04-06 11:16 - 00326024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2014-05-25 15:53 - 2014-04-06 11:16 - 00305768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2014-05-25 15:53 - 2014-04-06 10:10 - 04190720 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2014-05-25 15:53 - 2014-04-06 08:58 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\srclient.dll
2014-05-25 15:53 - 2014-04-06 08:51 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll
2014-05-25 15:53 - 2014-04-06 08:33 - 00335872 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe
2014-05-25 15:53 - 2014-04-06 08:24 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\rstrui.exe
2014-05-25 15:53 - 2014-04-06 08:06 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srclient.dll
2014-05-25 15:53 - 2014-04-06 07:55 - 16872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2014-05-25 15:53 - 2014-04-06 07:54 - 12711424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2014-05-25 15:53 - 2014-04-06 07:26 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll
2014-05-25 15:53 - 2014-04-06 07:20 - 00201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2014-05-25 15:53 - 2014-04-06 07:01 - 00834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2014-05-25 15:53 - 2014-04-06 06:52 - 00955904 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2014-05-25 15:53 - 2014-04-06 06:51 - 01230336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2014-05-25 15:53 - 2014-04-06 06:37 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2014-05-25 15:53 - 2014-04-06 06:36 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2014-05-25 15:53 - 2014-04-06 06:05 - 01222656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2014-05-25 15:53 - 2014-04-06 05:59 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll
2014-05-25 15:53 - 2014-04-03 04:12 - 02124840 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2014-05-25 15:53 - 2014-04-03 04:12 - 00307304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2014-05-25 15:53 - 2014-04-03 04:12 - 00130144 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll
2014-05-25 15:53 - 2014-04-03 00:03 - 00230808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2014-05-25 15:53 - 2014-04-03 00:03 - 00111528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpapi.dll
2014-05-25 15:53 - 2014-04-02 23:53 - 01797896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2014-05-25 15:53 - 2014-04-02 22:53 - 04269056 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll
2014-05-25 15:53 - 2014-04-02 22:53 - 00677376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2014-05-25 15:53 - 2014-04-02 22:51 - 01584128 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll
2014-05-25 15:53 - 2014-04-02 22:23 - 00563200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2014-05-25 15:53 - 2014-04-02 22:23 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2014-05-25 15:53 - 2014-04-02 22:23 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tlscsp.dll
2014-05-25 15:53 - 2014-04-02 22:22 - 03359744 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2014-05-25 15:53 - 2014-04-02 22:22 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\tlscsp.dll
2014-05-25 15:53 - 2014-04-01 02:23 - 00384856 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2014-05-25 15:53 - 2014-03-31 01:42 - 07425368 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2014-05-25 15:53 - 2014-03-31 01:35 - 02518360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2014-05-25 15:53 - 2014-03-31 01:35 - 00428888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2014-05-25 15:53 - 2014-03-30 20:41 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8thk.dll
2014-05-25 15:53 - 2014-03-30 20:01 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll
2014-05-25 15:53 - 2014-03-30 19:43 - 00761856 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll
2014-05-25 15:53 - 2014-03-30 18:54 - 01308160 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll
2014-05-25 15:53 - 2014-03-30 18:49 - 01287168 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2014-05-25 15:53 - 2014-03-30 18:35 - 01029120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2014-05-25 15:53 - 2014-03-30 18:11 - 00721408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll
2014-05-25 15:53 - 2014-03-30 17:47 - 00872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe
2014-05-25 15:53 - 2014-03-28 11:58 - 00407016 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2014-05-25 15:53 - 2014-03-27 02:16 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2014-05-25 15:53 - 2014-03-27 01:36 - 00281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2014-05-25 15:53 - 2014-03-27 00:59 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2014-05-25 15:53 - 2014-03-27 00:48 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2014-05-25 15:53 - 2014-03-27 00:19 - 00313344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2014-05-25 15:53 - 2014-03-26 23:46 - 00323072 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll
2014-05-25 15:53 - 2014-03-26 23:15 - 00718336 _____ (Microsoft Corporation) C:\WINDOWS\system32\swprv.dll
2014-05-25 15:53 - 2014-03-26 23:10 - 01436160 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe
2014-05-25 15:53 - 2014-03-24 18:58 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2014-05-25 15:53 - 2014-03-21 00:14 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\tscfgwmi.dll
2014-05-25 15:53 - 2014-03-19 23:48 - 00263424 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2014-05-25 15:53 - 2014-03-19 20:51 - 00667648 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpprefcl.dll
2014-05-25 15:53 - 2014-03-19 20:44 - 06645248 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2014-05-25 15:53 - 2014-03-19 19:38 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpprefcl.dll
2014-05-25 15:53 - 2014-03-19 19:33 - 05774848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2014-05-25 15:53 - 2014-03-19 04:15 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll
2014-05-25 15:53 - 2014-03-19 04:07 - 00443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2014-05-25 15:53 - 2014-03-19 03:24 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2014-05-25 15:53 - 2014-03-19 03:17 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanhlp.dll
2014-05-25 15:53 - 2014-03-19 02:36 - 01057280 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll
2014-05-25 15:53 - 2014-03-19 01:56 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvidcrl.dll
2014-05-25 15:53 - 2014-03-19 01:45 - 00443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2014-05-25 15:53 - 2014-03-19 01:19 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2014-05-25 15:53 - 2014-03-19 01:07 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2014-05-25 15:53 - 2014-03-19 01:02 - 01527296 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2014-05-25 15:53 - 2014-03-19 01:00 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll
2014-05-25 15:53 - 2014-03-19 00:51 - 00300544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanmsm.dll
2014-05-25 15:53 - 2014-03-19 00:31 - 02100736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll
2014-05-25 15:53 - 2014-03-19 00:18 - 02688000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll
2014-05-25 15:53 - 2014-03-18 04:19 - 00077312 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys
2014-05-25 15:53 - 2014-03-18 04:18 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xusb22.sys
2014-05-25 15:53 - 2014-03-18 01:00 - 07173120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2014-05-25 15:53 - 2014-03-18 00:52 - 05104640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2014-05-25 15:53 - 2014-03-17 01:09 - 00462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll
2014-05-25 15:53 - 2014-03-17 00:11 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsGdiConverter.dll
2014-05-25 15:53 - 2014-03-16 23:01 - 00486912 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2014-05-25 15:53 - 2014-03-16 22:47 - 01025024 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2014-05-25 15:53 - 2014-03-16 22:45 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2014-05-25 15:53 - 2014-03-14 02:26 - 00491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\GeofenceMonitorService.dll
2014-05-25 15:53 - 2014-03-14 02:10 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GeofenceMonitorService.dll
2014-05-25 15:53 - 2014-03-06 08:42 - 00310616 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys
2014-05-25 15:49 - 2014-05-25 15:49 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2014-05-25 12:32 - 2014-05-25 15:40 - 00122584 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\48230029.sys
2014-05-25 11:37 - 2014-05-25 16:03 - 11698328 _____ () C:\Users\Jason\Downloads\mbam-chameleon-1.62.1.1000.zip
2014-05-25 11:36 - 2014-05-25 11:36 - 00065232 _____ (Malwarebytes) C:\Users\Jason\Downloads\regassassin-setup-1.03.exe
2014-05-25 11:34 - 2014-05-25 11:34 - 02463848 _____ (Malwarebytes ) C:\Users\Jason\Downloads\mbae-setup-0.10.3.0100.exe
2014-05-25 11:34 - 2013-08-22 09:25 - 00000824 _____ () C:\WINDOWS\system32\Drivers\etc\hosts.20140525-113405.backup
2014-05-25 09:14 - 2014-05-25 09:14 - 00000000 ____D () C:\WINDOWS\System32\Tasks\Safer-Networking
2014-05-25 09:10 - 2014-06-05 07:32 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
2014-05-25 08:59 - 2014-05-31 20:03 - 00000000 ____D () C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2014-05-25 08:58 - 2014-05-31 20:03 - 00000000 ____D () C:\Users\Jason\Desktop\mbar
2014-05-25 08:57 - 2014-05-25 08:57 - 12589848 _____ (Malwarebytes Corp.) C:\Users\Jason\Downloads\mbar-1.07.0.1009.exe
2014-05-24 17:07 - 2014-05-24 21:54 - 00000000 ____D () C:\ProgramData\BlueStacksSetup
2014-05-24 17:07 - 2014-05-24 17:07 - 00000000 ____D () C:\Users\Jason\AppData\Local\Bluestacks
2014-05-24 17:06 - 2014-05-24 17:06 - 12814576 _____ (BlueStack Systems Inc.) C:\Users\Jason\Downloads\BlueStacks-SplitInstaller_native.exe
2014-05-23 22:30 - 2014-05-23 22:30 - 00000000 ____D () C:\Program Files\Western Digital
2014-05-23 19:24 - 2014-05-23 19:24 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Jason\Downloads\mbam-setup-2.0.2.1012 (1).exe
2014-05-23 19:11 - 2014-05-23 19:11 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Jason\Downloads\mbam-setup-2.0.2.1012.exe
2014-05-19 21:40 - 2014-05-19 21:40 - 00219631 _____ () C:\Users\Jason\Downloads\94cd43a8-4c58-47d8-8d64-7420a37f96b7.pptx
2014-05-18 22:48 - 2014-05-18 22:48 - 00001799 _____ () C:\Users\Public\Desktop\iTunes.lnk
2014-05-18 22:48 - 2014-05-18 22:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2014-05-18 22:47 - 2014-05-18 22:48 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-05-18 22:44 - 2014-05-18 22:44 - 00001861 _____ () C:\Users\Public\Desktop\QuickTime Player.lnk
2014-05-18 22:44 - 2014-05-18 22:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
2014-05-18 12:42 - 2014-05-18 12:42 - 09294570 _____ () C:\Users\Jason\Downloads\DraStic_r2.2.0.2a [apkdaddy.com].apk
2014-05-18 12:37 - 2014-05-18 12:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Resource Hacker
2014-05-18 12:36 - 2014-05-18 12:36 - 00748246 _____ ( ) C:\Users\Jason\Downloads\reshack_setup.exe
2014-05-18 12:35 - 2014-05-18 12:36 - 00000000 ____D () C:\Users\Jason\Desktop\Extractions
2014-05-18 12:32 - 2014-05-18 12:33 - 09297252 _____ () C:\Users\Jason\Downloads\DraStic DS Emulator vr2.2.0.2a.apk
2014-05-18 12:05 - 2014-05-18 12:05 - 04981147 _____ () C:\Users\Jason\Downloads\0907 - Pokemon Ruby (U)(Mugs).zip
2014-05-18 12:05 - 2014-05-18 12:05 - 02426274 _____ () C:\Users\Jason\Downloads\1212 - Super Mario Advance 4 - Super Mario Bros 3 (U)(Independent).zip
2014-05-18 11:14 - 2014-05-18 11:14 - 00042975 _____ () C:\Users\Jason\Downloads\lord-kyl-mackay_english-gothic-17th-c (1).zip
2014-05-18 11:12 - 2014-05-18 11:12 - 00042975 _____ () C:\Users\Jason\Downloads\lord-kyl-mackay_english-gothic-17th-c.zip
2014-05-18 11:12 - 2010-03-13 03:58 - 00092976 ____N () C:\Users\Jason\Desktop\English Gothic, 17th c..TTF
2014-05-18 09:49 - 2014-05-18 09:49 - 00000000 ____D () C:\Users\Public\Documents\CrashDump
2014-05-18 09:37 - 2014-06-01 01:29 - 00000000 ____D () C:\Users\Jason\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Verizon
2014-05-18 09:36 - 2014-05-18 09:36 - 00000000 ____D () C:\Program Files\SAMSUNG
2014-05-18 09:35 - 2014-06-01 01:28 - 00000000 ____D () C:\ProgramData\Samsung
2014-05-18 09:34 - 2014-06-01 01:29 - 00000000 ____D () C:\Users\Jason\AppData\Roaming\VERIZON
2014-05-18 09:34 - 2014-05-18 09:34 - 00000000 ____D () C:\Users\Public\Documents\Verizon2.0_Log
2014-05-16 16:58 - 2014-05-16 16:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
2014-05-16 16:58 - 2014-05-16 16:58 - 00001824 _____ () C:\Users\Public\Desktop\SUPERAntiSpyware Professional.lnk
2014-05-16 16:58 - 2014-05-16 16:58 - 00000000 ____D () C:\Users\Jason\AppData\Roaming\SUPERAntiSpyware.com
2014-05-16 16:58 - 2014-05-16 16:58 - 00000000 ____D () C:\ProgramData\SUPERAntiSpyware.com
2014-05-16 16:56 - 2014-05-16 16:56 - 00008387 _____ () C:\Users\Jason\Desktop\RKreport[0]_D_05162014_165631.txt
2014-05-16 16:55 - 2014-06-05 21:41 - 00000000 ____D () C:\Users\Jason\AppData\Local\CrashDumps
2014-05-16 16:55 - 2014-05-16 16:55 - 00008337 _____ () C:\Users\Jason\Desktop\RKreport[0]_S_05162014_165532.txt
2014-05-16 16:48 - 2014-05-16 16:48 - 04527616 _____ () C:\Users\Jason\Downloads\RogueKillerX64.exe
2014-05-16 16:48 - 2014-05-16 16:48 - 00000949 _____ () C:\Users\Jason\Desktop\RKreport[0]_S_05162014_164809.txt
2014-05-16 16:45 - 2014-05-16 16:45 - 03972608 _____ () C:\Users\Jason\Downloads\RogueKiller.exe
2014-05-16 15:40 - 2014-05-16 15:40 - 00140032 _____ (ASMedia Technology Inc) C:\WINDOWS\system32\Drivers\asmthub3.sys
2014-05-16 15:31 - 2014-05-16 15:31 - 01933048 _____ (Bleeping Computer, LLC) C:\Users\Jason\Downloads\rkill.exe
2014-05-15 19:30 - 2014-05-15 19:31 - 00000000 ____D () C:\Users\Jason\AppData\Local\CrystalDiskMark
2014-05-15 17:50 - 2014-05-15 17:50 - 00733657 _____ () C:\Users\Jason\Downloads\Parkdale.zip
2014-05-15 14:33 - 2014-05-15 14:33 - 00021216 _____ (Splashtop Inc.) C:\WINDOWS\system32\Drivers\sthid.sys
2014-05-15 14:33 - 2014-05-15 14:33 - 00015072 _____ (Splashtop Inc.) C:\WINDOWS\system32\Drivers\hidkmdf.sys
2014-05-14 17:03 - 2014-05-14 17:03 - 00001942 _____ () C:\Users\Jason\Desktop\Supraball.lnk
2014-05-14 17:03 - 2014-05-14 17:03 - 00000000 ____D () C:\Users\Jason\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Supraball
2014-05-14 17:03 - 2014-05-14 17:03 - 00000000 ____D () C:\Program Files (x86)\Supraball
2014-05-14 16:47 - 2014-05-14 16:59 - 277898742 _____ () C:\Users\Jason\Downloads\supraball_0.2.4.exe
2014-05-14 16:36 - 2014-05-14 16:37 - 25960448 _____ () C:\Users\Jason\Downloads\EA4A.tmp
2014-05-14 13:56 - 2014-03-23 22:30 - 00257880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys
2014-05-14 13:56 - 2014-03-23 22:30 - 00123224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys
2014-05-14 13:56 - 2014-03-23 22:27 - 00035856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys
2014-05-14 13:56 - 2014-03-13 03:42 - 00308224 _____ (Microsoft Corporation) C:\WINDOWS\system32\wusa.exe
2014-05-14 13:56 - 2014-03-13 02:51 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wusa.exe
2014-05-14 13:55 - 2014-05-06 00:40 - 23544320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2014-05-14 13:55 - 2014-05-05 23:25 - 17382912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2014-05-14 13:55 - 2014-05-05 23:00 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2014-05-14 13:55 - 2014-05-05 22:10 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2014-05-14 13:55 - 2014-04-11 06:03 - 00555736 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2014-05-14 13:55 - 2014-04-11 06:03 - 00054776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2014-05-14 13:55 - 2014-04-11 04:25 - 00419928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2014-05-14 13:55 - 2014-04-11 02:04 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2014-05-14 13:55 - 2014-04-11 01:53 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe
2014-05-14 13:55 - 2014-04-11 01:22 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2014-05-14 13:55 - 2014-04-10 23:54 - 00201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2014-05-14 13:55 - 2014-04-10 23:06 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe
2014-05-14 13:55 - 2014-04-10 23:05 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-05-14 13:55 - 2014-04-10 23:05 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll
2014-05-14 13:55 - 2014-04-10 23:02 - 00249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-05-14 13:55 - 2014-04-10 23:02 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe
2014-05-14 13:55 - 2014-04-10 23:01 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll
2014-05-14 13:55 - 2014-04-10 23:00 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2014-05-14 13:55 - 2014-04-10 22:59 - 00666624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2014-05-14 13:55 - 2014-04-10 22:57 - 00190976 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2014-05-14 13:55 - 2014-04-10 22:56 - 00381440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll
2014-05-14 13:55 - 2014-04-10 22:55 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2014-05-14 13:55 - 2014-04-10 22:53 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2014-05-14 13:55 - 2014-04-10 22:52 - 03464192 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2014-05-14 13:55 - 2014-04-10 22:46 - 01705472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll
2014-05-14 13:55 - 2014-04-10 22:36 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2014-05-14 13:55 - 2014-04-10 22:34 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2014-05-14 13:55 - 2014-04-10 22:29 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2014-05-14 13:55 - 2014-04-10 22:25 - 00921088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2014-05-14 13:54 - 2014-04-08 18:46 - 00086688 _____ (Microsoft Corporation) C:\WINDOWS\system32\mrt_map.dll
2014-05-14 13:54 - 2014-04-08 18:46 - 00028320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mrt100.dll
2014-05-14 13:54 - 2014-04-08 14:54 - 00080032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mrt_map.dll
2014-05-14 13:54 - 2014-04-08 14:54 - 00026784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mrt100.dll
2014-05-14 13:49 - 2014-05-14 13:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
2014-05-13 14:29 - 2014-05-13 14:29 - 00046136 ____H (LogMeIn Inc.) C:\WINDOWS\system32\Drivers\Hamdrv.sys
2014-05-12 22:44 - 2014-05-12 22:44 - 85827854 _____ () C:\Users\Jason\Downloads\dogecoin.avi.mp4
2014-05-12 20:02 - 2014-06-05 21:42 - 00000830 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-05-12 20:02 - 2014-05-13 17:42 - 00003718 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2014-05-12 19:59 - 2014-05-12 19:59 - 00000000 __SHD () C:\Users\Jason\AppData\Local\EmieUserList
2014-05-12 19:59 - 2014-05-12 19:59 - 00000000 __SHD () C:\Users\Jason\AppData\Local\EmieSiteList
2014-05-12 12:42 - 2014-05-12 12:42 - 00001371 _____ () C:\Users\Public\Desktop\GeForce Experience.lnk
2014-05-12 12:39 - 2014-03-31 12:42 - 00040392 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad64v.sys
2014-05-12 12:39 - 2014-03-31 12:42 - 00034760 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll
2014-05-12 12:37 - 2014-05-12 12:37 - 28033792 _____ (NVIDIA Corporation) C:\Users\Jason\Downloads\GeForce_Experience_v2.0.1.0.exe
2014-05-12 12:33 - 2014-05-12 12:33 - 28033792 _____ (NVIDIA Corporation) C:\Users\Jason\Downloads\15C6.tmp
2014-05-11 17:59 - 2014-05-11 18:14 - 00000000 ____D () C:\Users\Jason\AppData\Roaming\Dogecoin
2014-05-11 15:48 - 2014-05-11 17:07 - 00000000 ____D () C:\Users\Jason\AppData\Local\Uber Entertainment
2014-05-11 14:06 - 2014-05-11 14:06 - 00211291 _____ () C:\Users\Jason\Downloads\LCDSirReal-285.exe
2014-05-11 14:06 - 2014-05-11 14:06 - 00000000 ____D () C:\Users\Jason\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LCDSirReal
2014-05-11 13:56 - 2014-05-11 13:56 - 01069776 _____ (Solid State Networks) C:\Users\Jason\Downloads\B6A8.tmp
2014-05-11 13:54 - 2014-05-11 13:54 - 00844976 _____ (Adobe Systems Incorporated) C:\Users\Jason\Downloads\uninstall_flash_player.exe
2014-05-11 13:23 - 2014-05-11 13:47 - 00000000 ____D () C:\Users\Jason\Documents\BYOND
2014-05-11 13:22 - 2014-05-11 13:22 - 03844796 _____ () C:\Users\Jason\Downloads\504.1234_byond.exe
2014-05-11 13:22 - 2014-05-11 13:22 - 00001724 _____ () C:\Users\Public\Desktop\BYOND.lnk
2014-05-11 13:22 - 2014-05-11 13:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BYOND
2014-05-11 13:22 - 2014-05-11 13:22 - 00000000 ____D () C:\Program Files (x86)\BYOND
2014-05-11 13:04 - 2014-05-11 13:04 - 07010428 _____ () C:\Users\Jason\Downloads\Pokemon Emerald.zip
2014-05-11 13:04 - 2014-05-11 13:04 - 00000000 ____D () C:\Users\Jason\Downloads\Pokemon Emerald
2014-05-11 13:02 - 2008-05-25 04:33 - 00000706 _____ () C:\Users\Jason\Downloads\readme.html
2014-05-11 13:02 - 2003-03-21 01:57 - 16777216 _____ () C:\Users\Jason\Downloads\Pokemon Ruby.gba
2014-05-11 13:01 - 2014-05-11 13:03 - 00142421 _____ () C:\Users\Jason\Downloads\NSE 2.1.zip
2014-05-11 12:59 - 2014-05-11 12:59 - 04860240 _____ () C:\Users\Jason\Downloads\Pokemon Ruby.zip
2014-05-11 12:58 - 2014-05-11 12:58 - 00659797 _____ () C:\Users\Jason\Downloads\VisualBoyAdvance-1.8.0-beta3.zip
2014-05-11 12:57 - 2014-05-11 12:57 - 01639012 _____ () C:\Users\Jason\Downloads\Pokemon_Mod_Tools.rar
2014-05-09 18:41 - 2014-05-09 18:41 - 00000000 ____D () C:\Users\Jason\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++
2014-05-09 18:41 - 2014-05-09 18:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++
2014-05-09 18:40 - 2014-05-09 18:46 - 00000000 ____D () C:\Users\Jason\AppData\Roaming\Notepad++
2014-05-09 18:40 - 2014-05-09 18:40 - 07631728 _____ () C:\Users\Jason\Downloads\npp.6.6.2.Installer.exe
2014-05-09 17:48 - 2014-05-11 12:01 - 00000000 ____D () C:\Users\Jason\Desktop\FTB Monster Server
2014-05-09 17:46 - 2014-05-09 17:47 - 176092464 _____ () C:\Users\Jason\Downloads\modpacks^Monster^1_1_1^MonsterServer.zip
2014-05-09 17:23 - 2014-05-09 17:24 - 24677393 _____ () C:\Users\Jason\Downloads\vlc-2.1.3-win32 (1).exe
2014-05-08 10:08 - 2014-05-08 10:09 - 00000000 ____D () C:\Users\Jason\AppData\Local\Skyrim
 
Link to post
Share on other sites

FRST Part 2:

 

==================== One Month Modified Files and Folders =======

 

2014-06-05 21:44 - 2014-06-01 00:27 - 00026525 _____ () C:\Users\Jason\Desktop\FRST.txt

2014-06-05 21:44 - 2014-05-29 15:28 - 00000000 ____D () C:\FRST

2014-06-05 21:44 - 2014-03-28 01:05 - 00000000 ____D () C:\Users\Jason\AppData\Local\WhatPulse

2014-06-05 21:44 - 2014-03-22 01:55 - 00000000 ____D () C:\Users\Jason\AppData\Local\Temp

2014-06-05 21:43 - 2014-06-05 21:43 - 02068992 _____ (Farbar) C:\Users\Jason\Desktop\FRST64.exe

2014-06-05 21:42 - 2014-05-12 20:02 - 00000830 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job

2014-06-05 21:42 - 2014-03-22 14:52 - 00000000 ____D () C:\Users\Jason\AppData\Roaming\Skype

2014-06-05 21:41 - 2014-05-16 16:55 - 00000000 ____D () C:\Users\Jason\AppData\Local\CrashDumps

2014-06-05 21:39 - 2014-03-22 02:10 - 00003600 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2425713805-3090955610-2678947378-1000

2014-06-05 21:37 - 2014-03-22 02:11 - 00003926 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{85C06B87-0ABE-4825-B4DF-634F171B1EBA}

2014-06-05 21:35 - 2014-06-03 18:51 - 00122584 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys

2014-06-05 21:32 - 2014-03-22 02:13 - 00000914 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job

2014-06-05 21:25 - 2014-03-22 03:02 - 00000000 ____D () C:\Program Files (x86)\Steam

2014-06-05 21:25 - 2013-08-30 17:14 - 00000000 ____D () C:\Users\Jason\Documents\TrackMania

2014-06-05 21:24 - 2014-06-05 21:24 - 00000000 ____D () C:\ProgramData\TrackMania

2014-06-05 21:23 - 2014-06-05 21:23 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnet.dll

2014-06-05 21:23 - 2014-06-05 21:23 - 00377856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnet.dll

2014-06-05 21:23 - 2014-06-05 21:23 - 00214016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplayx.dll

2014-06-05 21:23 - 2014-06-05 21:23 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnathlp.dll

2014-06-05 21:23 - 2014-06-05 21:23 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnathlp.dll

2014-06-05 21:23 - 2014-06-05 21:23 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpwsockx.dll

2014-06-05 21:23 - 2014-06-05 21:23 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnsvr.exe

2014-06-05 21:23 - 2014-06-05 21:23 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnsvr.exe

2014-06-05 21:23 - 2014-06-05 21:23 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplaysvr.exe

2014-06-05 21:23 - 2014-06-05 21:23 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpmodemx.dll

2014-06-05 21:23 - 2014-06-05 21:23 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhupnp.dll

2014-06-05 21:23 - 2014-06-05 21:23 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhpast.dll

2014-06-05 21:23 - 2014-06-05 21:23 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhupnp.dll

2014-06-05 21:23 - 2014-06-05 21:23 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhpast.dll

2014-06-05 21:23 - 2013-08-22 11:20 - 00000000 ____D () C:\WINDOWS\CbsTemp

2014-06-05 21:00 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\system32\sru

2014-06-05 20:57 - 2014-03-29 11:18 - 00000392 _____ () C:\WINDOWS\Tasks\WpsNotifyTask_Jason.job

2014-06-05 20:50 - 2014-03-29 11:18 - 00000392 _____ () C:\WINDOWS\Tasks\WpsUpdateTask_Jason.job

2014-06-05 20:32 - 2014-03-22 02:13 - 00000910 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job

2014-06-05 18:05 - 2014-03-22 03:01 - 00000000 ____D () C:\Program Files (x86)\Starcraft

2014-06-05 16:37 - 2014-06-05 16:36 - 00001057 _____ () C:\Users\Public\Desktop\StarCraft - Brood War.lnk

2014-06-05 16:37 - 2014-06-05 16:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StarCraft

2014-06-05 16:26 - 2014-03-22 02:04 - 00000000 ____D () C:\Users\Jason\AppData\Local\VirtualStore

2014-06-05 15:32 - 2014-06-05 15:32 - 02740978 _____ (Blizzard Entertainment) C:\Users\Jason\Downloads\Downloader_StarCraft_Combo_enUS.exe

2014-06-05 15:32 - 2014-03-22 01:55 - 00000000 ____D () C:\Users\Jason

2014-06-05 15:05 - 2014-03-22 01:56 - 01124055 _____ () C:\WINDOWS\WindowsUpdate.log

2014-06-05 14:43 - 2014-03-22 14:52 - 00000000 ____D () C:\ProgramData\Origin

2014-06-05 14:42 - 2014-03-25 03:53 - 00000000 __RDO () C:\Users\Jason\SkyDrive

2014-06-05 14:42 - 2014-03-24 22:41 - 00008192 _____ () C:\WINDOWS\SysWOW64\WDPABKP.dat

2014-06-05 14:42 - 2014-03-23 23:45 - 00000000 ____D () C:\Users\Jason\AppData\Local\LogMeIn Hamachi

2014-06-05 14:42 - 2014-03-22 02:55 - 00000000 ____D () C:\Program Files (x86)\Origin

2014-06-05 14:40 - 2014-03-22 02:11 - 00000000 ____D () C:\ProgramData\NVIDIA

2014-06-05 14:40 - 2013-08-22 10:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT

2014-06-05 11:04 - 2013-08-22 09:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI

2014-06-05 11:01 - 2014-03-22 19:12 - 00000000 ____D () C:\Users\Jason\AppData\Local\Battle.net

2014-06-05 10:24 - 2013-06-25 23:33 - 00000000 ____D () C:\Program Files\SUPERAntiSpyware

2014-06-05 07:33 - 2014-03-22 02:05 - 00000000 ___RD () C:\Users\Jason\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup

2014-06-05 07:32 - 2014-05-25 09:10 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy

2014-06-05 07:26 - 2014-06-05 07:25 - 00003654 _____ () C:\Users\Jason\Desktop\Rkill.txt

2014-06-05 07:24 - 2014-06-05 07:24 - 01940216 _____ (Bleeping Computer, LLC) C:\Users\Jason\Desktop\rkill.exe

2014-06-05 07:22 - 2014-06-05 07:22 - 01940216 _____ (Bleeping Computer, LLC) C:\Users\Jason\Downloads\1145.tmp

2014-06-05 07:17 - 2014-06-05 07:17 - 00009276 _____ () C:\WINDOWS\PFRO.log

2014-06-05 07:17 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\ELAMBKUP

2014-06-05 07:17 - 2013-07-13 23:45 - 00000000 ____D () C:\Program Files (x86)\Battlelog Web Plugins

2014-06-05 07:17 - 2013-03-29 16:43 - 00000000 ____D () C:\Program Files\Bitdefender

2014-06-05 07:16 - 2014-06-05 07:16 - 00258936 _____ () C:\ProgramData\1401966867.bdinstall.bin

2014-06-05 07:15 - 2014-03-22 19:33 - 00000000 ____D () C:\ProgramData\Bitdefender

2014-06-05 07:15 - 2012-08-25 14:03 - 00000000 ____D () C:\Program Files\Common Files\Bitdefender

2014-06-05 01:22 - 2014-06-05 01:22 - 00074512 _____ (BitDefender SRL) C:\WINDOWS\system32\bdsandboxuiskin32.dll

2014-06-05 01:20 - 2014-06-05 01:20 - 00011810 _____ () C:\WINDOWS\system32\bdsandbox.txt

2014-06-05 01:19 - 2014-03-30 00:30 - 00000000 ____D () C:\Users\Jason\AppData\Roaming\TS3Client

2014-06-05 01:19 - 2014-03-22 02:09 - 00082432 ___SH () C:\Users\Jason\Desktop\Thumbs.db

2014-06-05 01:11 - 2014-06-05 01:11 - 00000000 ____D () C:\Users\Jason\Desktop\New folder

2014-06-05 00:58 - 2014-03-25 19:09 - 00000000 ____D () C:\WINDOWS\Minidump

2014-06-05 00:58 - 2014-03-23 15:01 - 00000000 ____D () C:\ProgramData\Package Cache

2014-06-05 00:58 - 2013-08-22 11:36 - 00000000 ___RD () C:\WINDOWS\Offline Web Pages

2014-06-05 00:58 - 2011-03-15 17:32 - 00000000 ____D () C:\Recovery

2014-06-05 00:56 - 2014-03-22 19:40 - 00000000 ____D () C:\ProgramData\BDLogging

2014-06-05 00:53 - 2014-06-05 00:53 - 00572118 _____ () C:\ProgramData\1401943606.bdinstall.bin

2014-06-05 00:46 - 2014-06-05 00:46 - 07200360 _____ () C:\Users\Jason\Desktop\bitdefender_tsecurity_beta.exe

2014-06-05 00:45 - 2014-06-05 00:45 - 07302320 _____ () C:\Users\Jason\Desktop\bitdefender_tsecurity.exe

2014-06-04 23:04 - 2014-06-04 23:04 - 00001218 _____ () C:\Users\Public\Desktop\Battlefield 4.lnk

2014-06-04 23:04 - 2014-06-04 23:04 - 00001194 _____ () C:\Users\Public\Desktop\Battlefield 4(64 bit).lnk

2014-06-04 23:04 - 2014-06-04 23:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield 4

2014-06-04 23:04 - 2014-06-04 23:03 - 00281872 _____ () C:\WINDOWS\SysWOW64\PnkBstrB.exe

2014-06-04 23:03 - 2014-06-04 23:03 - 00281872 _____ () C:\WINDOWS\SysWOW64\PnkBstrB.ex0

2014-06-04 23:03 - 2014-06-04 23:03 - 00076888 _____ () C:\WINDOWS\SysWOW64\PnkBstrA.exe

2014-06-04 20:31 - 2014-05-28 14:13 - 00000000 ____D () C:\Program Files (x86)\Splashtop

2014-06-04 20:30 - 2014-06-04 20:30 - 00000000 ____D () C:\Users\Jason\Documents\Splashtop Whiteboard

2014-06-04 20:30 - 2014-06-04 20:30 - 00000000 ____D () C:\Users\Jason\Documents\Splashtop Presenter

2014-06-04 18:31 - 2013-08-22 09:25 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM

2014-06-04 18:30 - 2014-06-04 18:30 - 00255915 _____ () C:\ProgramData\1401920898.bdinstall.bin

2014-06-03 18:51 - 2014-06-03 18:51 - 00001122 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk

2014-06-03 18:51 - 2014-06-03 18:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware

2014-06-03 18:51 - 2014-06-03 18:51 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware

2014-06-03 18:51 - 2014-03-22 14:48 - 00000000 ____D () C:\ProgramData\Malwarebytes

2014-06-03 18:49 - 2014-06-03 18:49 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Jason\Desktop\mbam-setup-consumer-2.0.2.1012.exe

2014-06-03 18:34 - 2014-06-03 18:34 - 00000000 ____D () C:\SUPERDelete

2014-06-03 18:26 - 2014-06-03 18:25 - 00315392 _____ (Malwarebytes Corporation) C:\Users\Jason\Desktop\mbam-clean-2.0.2.0 (2).exe

2014-06-03 00:40 - 2014-04-06 20:50 - 00000000 ____D () C:\Program Files (x86)\PSeMu3

2014-06-02 15:30 - 2014-06-02 15:30 - 02347384 _____ (ESET) C:\Users\Jason\Desktop\esetsmartinstaller_enu.exe

2014-06-01 20:51 - 2014-06-01 19:01 - 00477364 _____ () C:\TDSSKiller.txt

2014-06-01 19:31 - 2014-06-01 19:31 - 00753290 _____ () C:\Users\Jason\Desktop\Fuller_projection.svg

2014-06-01 19:00 - 2014-06-01 19:00 - 04176736 _____ (Kaspersky Lab ZAO) C:\Users\Jason\Desktop\tdsskiller.exe

2014-06-01 17:36 - 2014-06-01 17:35 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Jason\Desktop\mbam-setup-2.0.2.1012 (1).exe

2014-06-01 17:22 - 2014-06-01 17:22 - 00315392 _____ (Malwarebytes Corporation) C:\Users\Jason\Desktop\mbam-clean-2.0.2.0 (1).exe

2014-06-01 16:53 - 2014-03-22 19:28 - 00000000 ____D () C:\Users\Jason\AppData\Roaming\QuickScan

2014-06-01 16:32 - 2014-06-01 16:32 - 00004635 _____ () C:\Users\Jason\Desktop\RKreport_SCN_06012014_162722.log

2014-06-01 16:20 - 2014-06-01 13:48 - 00000000 ____D () C:\Users\Jason\Desktop\Malware tools

2014-06-01 16:11 - 2014-06-01 16:11 - 00000000 ____D () C:\ProgramData\RogueKiller

2014-06-01 16:11 - 2014-06-01 16:10 - 04668928 _____ () C:\Users\Jason\Desktop\RogueKiller.exe

2014-06-01 14:39 - 2014-06-01 14:39 - 00000649 _____ () C:\Users\Jason\Desktop\JRT.txt

2014-06-01 13:51 - 2014-01-18 23:36 - 00000000 ____D () C:\AdwCleaner

2014-06-01 13:16 - 2014-06-01 13:15 - 00000000 ____D () C:\Users\Jason\Desktop\New folder (3)

2014-06-01 13:14 - 2014-06-01 13:15 - 00003620 _____ () C:\Users\Jason\Desktop\1401642845_1_01.xml

2014-06-01 13:14 - 2014-06-01 13:14 - 00003620 _____ () C:\Users\Jason\Desktop\1401642845_1_01.txt

2014-06-01 12:04 - 2014-04-12 15:25 - 00000000 ____D () C:\Users\Jason\AppData\Roaming\BitTorrent

2014-06-01 11:28 - 2014-06-01 11:28 - 00045160 _____ () C:\Users\Jason\Desktop\Addition.txt

2014-06-01 01:29 - 2014-05-18 09:37 - 00000000 ____D () C:\Users\Jason\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Verizon

2014-06-01 01:29 - 2014-05-18 09:34 - 00000000 ____D () C:\Users\Jason\AppData\Roaming\VERIZON

2014-06-01 01:28 - 2014-05-28 23:04 - 00000000 ____D () C:\Program Files (x86)\Samsung

2014-06-01 01:28 - 2014-05-18 09:35 - 00000000 ____D () C:\ProgramData\Samsung

2014-06-01 01:28 - 2014-03-22 02:22 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information

2014-05-31 23:33 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\AppReadiness

2014-05-31 20:03 - 2014-05-25 08:59 - 00000000 ____D () C:\ProgramData\Malwarebytes' Anti-Malware (portable)

2014-05-31 20:03 - 2014-05-25 08:58 - 00000000 ____D () C:\Users\Jason\Desktop\mbar

2014-05-31 14:03 - 2014-05-31 14:03 - 00000000 ____D () C:\Program Files (x86)\ESET

2014-05-30 16:44 - 2014-05-30 16:44 - 00000000 ____D () C:\Users\Jason\Desktop\WDFirmwareUpdater

2014-05-30 16:43 - 2014-05-30 16:43 - 02112847 _____ () C:\Users\Jason\Desktop\WDFirmwareUpdater.zip

2014-05-30 14:56 - 2014-03-22 02:26 - 00002457 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader X.lnk

2014-05-29 23:38 - 2014-05-29 23:38 - 87256095 _____ () C:\Users\Jason\Desktop\Dunkey_Album.zip

2014-05-29 22:58 - 2014-04-30 14:37 - 00000954 _____ () C:\Users\Jason\Desktop\PerformanceTest.lnk

2014-05-29 22:58 - 2014-04-30 14:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PerformanceTest

2014-05-29 22:58 - 2013-10-12 10:28 - 00000000 ____D () C:\Program Files\PerformanceTest

2014-05-29 21:27 - 2013-09-30 00:04 - 00863592 _____ () C:\WINDOWS\system32\PerfStringBackup.INI

2014-05-29 21:19 - 2014-05-29 21:19 - 00002156 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Belarc Advisor.lnk

2014-05-29 21:19 - 2014-05-29 21:19 - 00000000 ____D () C:\Program Files (x86)\Belarc

2014-05-29 19:40 - 2014-05-29 19:40 - 00001722 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rainmeter.lnk

2014-05-29 19:40 - 2014-05-29 19:40 - 00000000 ____D () C:\Users\Jason\Documents\Rainmeter

2014-05-29 19:40 - 2014-05-29 19:40 - 00000000 ____D () C:\Users\Jason\AppData\Roaming\Rainmeter

2014-05-29 19:40 - 2012-06-21 21:05 - 00000000 ____D () C:\Program Files\Rainmeter

2014-05-29 19:24 - 2013-12-25 23:59 - 00000000 ____D () C:\Users\Jason\Documents\3DMark

2014-05-29 19:20 - 2014-05-29 19:05 - 00000022 _____ () C:\WINDOWS\GPU-Z.INI

2014-05-29 19:04 - 2014-05-29 19:04 - 00000000 ____D () C:\Users\Jason\AppData\Local\Futuremark

2014-05-29 17:54 - 2013-12-05 18:02 - 00000000 ____D () C:\Program Files (x86)\Battle.net

2014-05-29 16:06 - 2014-05-29 16:06 - 00000000 ____D () C:\WINDOWS\ERUNT

2014-05-29 16:05 - 2014-04-20 21:14 - 00000000 ____D () C:\Program Files (x86)\Razer

2014-05-29 15:26 - 2014-05-29 15:26 - 00410112 _____ (Farbar) C:\Users\Jason\Desktop\FSS.exe

2014-05-29 15:17 - 2014-05-29 15:17 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Jason\Desktop\mbam-setup-2.0.2.1012.exe

2014-05-29 15:00 - 2014-05-29 15:00 - 00315392 _____ (Malwarebytes Corporation) C:\Users\Jason\Desktop\mbam-clean-2.0.2.0.exe

2014-05-28 22:38 - 2014-05-28 19:03 - 00000000 ____D () C:\Users\Jason\Desktop\Algerbra 2

2014-05-28 14:32 - 2014-05-28 14:32 - 00000276 _____ () C:\SSUUpdater.log

2014-05-28 14:16 - 2014-05-28 14:16 - 00000000 ____D () C:\Users\Jason\AppData\Local\Splashtop

2014-05-28 14:12 - 2014-05-28 14:12 - 20491928 _____ (Splashtop Inc.) C:\Users\Jason\Downloads\Splashtop_Streamer_WIN_v2.5.8.4.EXE

2014-05-26 19:24 - 2014-05-26 19:24 - 00012667 _____ () C:\Users\Jason\Downloads\67afd438-c22c-4c41-9167-ae08bcb45df6.xlsx

2014-05-26 11:21 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\rescache

2014-05-26 10:23 - 2014-05-26 10:23 - 00002157 _____ () C:\Users\Public\Desktop\3D Vision Photo Viewer.lnk

2014-05-26 10:23 - 2014-03-22 02:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation

2014-05-26 10:22 - 2014-03-22 02:10 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation

2014-05-26 10:04 - 2014-03-22 02:05 - 00000000 ___RD () C:\Users\Jason\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools

2014-05-26 10:01 - 2013-08-22 10:44 - 00355720 _____ () C:\WINDOWS\system32\FNTCACHE.DAT

2014-05-26 02:52 - 2014-05-26 02:52 - 00080384 _____ (Razer Inc) C:\WINDOWS\system32\RazerCoinstaller.dll

2014-05-26 02:39 - 2013-08-22 11:36 - 00000000 ___RD () C:\WINDOWS\ToastData

2014-05-26 02:39 - 2013-08-22 11:36 - 00000000 ___RD () C:\WINDOWS\ImmersiveControlPanel

2014-05-26 02:39 - 2013-08-22 09:36 - 00000000 ____D () C:\WINDOWS\system32\oobe

2014-05-25 16:03 - 2014-05-25 11:37 - 11698328 _____ () C:\Users\Jason\Downloads\mbam-chameleon-1.62.1.1000.zip

2014-05-25 15:49 - 2014-05-25 15:49 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll

2014-05-25 15:40 - 2014-05-25 12:32 - 00122584 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\48230029.sys

2014-05-25 11:36 - 2014-05-25 11:36 - 00065232 _____ (Malwarebytes) C:\Users\Jason\Downloads\regassassin-setup-1.03.exe

2014-05-25 11:34 - 2014-05-25 11:34 - 02463848 _____ (Malwarebytes ) C:\Users\Jason\Downloads\mbae-setup-0.10.3.0100.exe

2014-05-25 09:16 - 2014-03-22 03:00 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2

2014-05-25 09:14 - 2014-05-25 09:14 - 00000000 ____D () C:\WINDOWS\System32\Tasks\Safer-Networking

2014-05-25 08:57 - 2014-05-25 08:57 - 12589848 _____ (Malwarebytes Corp.) C:\Users\Jason\Downloads\mbar-1.07.0.1009.exe

2014-05-24 21:54 - 2014-05-24 17:07 - 00000000 ____D () C:\ProgramData\BlueStacksSetup

2014-05-24 17:07 - 2014-05-24 17:07 - 00000000 ____D () C:\Users\Jason\AppData\Local\Bluestacks

2014-05-24 17:06 - 2014-05-24 17:06 - 12814576 _____ (BlueStack Systems Inc.) C:\Users\Jason\Downloads\BlueStacks-SplitInstaller_native.exe

2014-05-23 22:30 - 2014-05-23 22:30 - 00000000 ____D () C:\Program Files\Western Digital

2014-05-23 22:30 - 2014-03-24 22:41 - 00000000 ____D () C:\Program Files\Common Files\Western Digital

2014-05-23 22:30 - 2014-03-24 22:40 - 00000000 ____D () C:\ProgramData\Western Digital

2014-05-23 22:30 - 2014-03-24 22:40 - 00000000 ____D () C:\Program Files (x86)\Western Digital

2014-05-23 19:24 - 2014-05-23 19:24 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Jason\Downloads\mbam-setup-2.0.2.1012 (1).exe

2014-05-23 19:11 - 2014-05-23 19:11 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Jason\Downloads\mbam-setup-2.0.2.1012.exe

2014-05-23 16:38 - 2014-03-22 03:01 - 00000000 ____D () C:\Program Files (x86)\StarCraft II

2014-05-19 22:44 - 2014-05-26 10:18 - 25256224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll

2014-05-19 22:44 - 2014-05-26 10:18 - 24025376 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll

2014-05-19 22:44 - 2014-05-26 10:18 - 17561544 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll

2014-05-19 22:44 - 2014-05-26 10:18 - 17480432 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dumx.dll

2014-05-19 22:44 - 2014-05-26 10:18 - 16003912 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvwgf2um.dll

2014-05-19 22:44 - 2014-05-26 10:18 - 12688328 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys

2014-05-19 22:44 - 2014-05-26 10:18 - 11644928 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll

2014-05-19 22:44 - 2014-05-26 10:18 - 11599072 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll

2014-05-19 22:44 - 2014-05-26 10:18 - 09735256 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll

2014-05-19 22:44 - 2014-05-26 10:18 - 09697640 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll

2014-05-19 22:44 - 2014-05-26 10:18 - 03141976 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll

2014-05-19 22:44 - 2014-05-26 10:18 - 02953672 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll

2014-05-19 22:44 - 2014-05-26 10:18 - 02785568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvenc.dll

2014-05-19 22:44 - 2014-05-26 10:18 - 02412376 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvenc.dll

2014-05-19 22:44 - 2014-05-26 10:18 - 01889112 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6433788.dll

2014-05-19 22:44 - 2014-05-26 10:18 - 01541576 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6433788.dll

2014-05-19 22:44 - 2014-05-26 10:18 - 00895776 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll

2014-05-19 22:44 - 2014-05-26 10:18 - 00892704 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll

2014-05-19 22:44 - 2014-05-26 10:18 - 00867784 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll

2014-05-19 22:44 - 2014-05-26 10:18 - 00861128 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll

2014-05-19 22:44 - 2014-05-26 10:18 - 00837056 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvumdshim.dll

2014-05-19 22:44 - 2014-05-26 10:18 - 00492376 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll

2014-05-19 22:44 - 2014-05-26 10:18 - 00416712 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll

2014-05-19 22:44 - 2014-05-26 10:18 - 00382240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll

2014-05-19 22:44 - 2014-05-26 10:18 - 00354016 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglshim64.dll

2014-05-19 22:44 - 2014-05-26 10:18 - 00335704 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll

2014-05-19 22:44 - 2014-05-26 10:18 - 00305600 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglshim32.dll

2014-05-19 22:44 - 2014-05-26 10:18 - 00166568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvinitx.dll

2014-05-19 22:44 - 2014-05-26 10:18 - 00146480 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvinit.dll

2014-05-19 22:44 - 2014-03-22 02:24 - 31387936 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll

2014-05-19 22:44 - 2014-03-22 02:24 - 18531568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvwgf2umx.dll

2014-05-19 22:44 - 2014-03-22 02:24 - 14434704 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvd3dum.dll

2014-05-19 22:44 - 2014-03-22 02:10 - 00061216 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll

2014-05-19 22:44 - 2014-03-22 02:10 - 00052056 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll

2014-05-19 22:44 - 2013-10-27 12:12 - 03109248 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll

2014-05-19 22:44 - 2013-10-27 12:12 - 02730208 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll

2014-05-19 22:44 - 2013-10-27 12:12 - 00952952 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvumdshimx.dll

2014-05-19 22:44 - 2013-10-27 12:12 - 00026069 _____ () C:\WINDOWS\system32\nvinfo.pb

2014-05-19 21:40 - 2014-05-19 21:40 - 00219631 _____ () C:\Users\Jason\Downloads\94cd43a8-4c58-47d8-8d64-7420a37f96b7.pptx

2014-05-19 21:25 - 2014-03-22 02:11 - 06769096 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll

2014-05-19 21:25 - 2014-03-22 02:11 - 03514144 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll

2014-05-19 21:25 - 2014-03-22 02:11 - 00927520 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe

2014-05-19 21:25 - 2014-03-22 02:11 - 00387528 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll

2014-05-19 21:25 - 2014-03-22 02:11 - 00062808 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll

2014-05-19 19:10 - 2014-05-26 10:22 - 00601432 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe

2014-05-18 22:48 - 2014-05-18 22:48 - 00001799 _____ () C:\Users\Public\Desktop\iTunes.lnk

2014-05-18 22:48 - 2014-05-18 22:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes

2014-05-18 22:48 - 2014-05-18 22:47 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69

2014-05-18 22:48 - 2014-03-22 14:44 - 00000000 ____D () C:\Program Files (x86)\iTunes

2014-05-18 22:48 - 2014-02-16 19:23 - 00000000 ____D () C:\Program Files\iTunes

2014-05-18 22:47 - 2014-02-16 19:23 - 00000000 ____D () C:\Program Files\iPod

2014-05-18 22:44 - 2014-05-18 22:44 - 00001861 _____ () C:\Users\Public\Desktop\QuickTime Player.lnk

2014-05-18 22:44 - 2014-05-18 22:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime

2014-05-18 22:44 - 2014-03-22 02:57 - 00000000 ____D () C:\Program Files (x86)\QuickTime

2014-05-18 18:08 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\LiveKernelReports

2014-05-18 12:42 - 2014-05-18 12:42 - 09294570 _____ () C:\Users\Jason\Downloads\DraStic_r2.2.0.2a [apkdaddy.com].apk

2014-05-18 12:37 - 2014-05-18 12:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Resource Hacker

2014-05-18 12:37 - 2014-03-22 02:59 - 00000000 ____D () C:\Program Files (x86)\Resource Hacker

2014-05-18 12:36 - 2014-05-18 12:36 - 00748246 _____ ( ) C:\Users\Jason\Downloads\reshack_setup.exe

2014-05-18 12:36 - 2014-05-18 12:35 - 00000000 ____D () C:\Users\Jason\Desktop\Extractions

2014-05-18 12:33 - 2014-05-18 12:32 - 09297252 _____ () C:\Users\Jason\Downloads\DraStic DS Emulator vr2.2.0.2a.apk

2014-05-18 12:05 - 2014-05-18 12:05 - 04981147 _____ () C:\Users\Jason\Downloads\0907 - Pokemon Ruby (U)(Mugs).zip

2014-05-18 12:05 - 2014-05-18 12:05 - 02426274 _____ () C:\Users\Jason\Downloads\1212 - Super Mario Advance 4 - Super Mario Bros 3 (U)(Independent).zip

2014-05-18 11:14 - 2014-05-18 11:14 - 00042975 _____ () C:\Users\Jason\Downloads\lord-kyl-mackay_english-gothic-17th-c (1).zip

2014-05-18 11:12 - 2014-05-18 11:12 - 00042975 _____ () C:\Users\Jason\Downloads\lord-kyl-mackay_english-gothic-17th-c.zip

2014-05-18 09:49 - 2014-05-18 09:49 - 00000000 ____D () C:\Users\Public\Documents\CrashDump

2014-05-18 09:36 - 2014-05-18 09:36 - 00000000 ____D () C:\Program Files\SAMSUNG

2014-05-18 09:34 - 2014-05-18 09:34 - 00000000 ____D () C:\Users\Public\Documents\Verizon2.0_Log

2014-05-17 21:15 - 2014-03-22 15:53 - 01724928 ___SH () C:\Users\Jason\Downloads\Thumbs.db

2014-05-16 17:53 - 2014-03-22 02:12 - 00000000 ____D () C:\Users\Jason\AppData\Local\Google

2014-05-16 16:59 - 2014-05-16 16:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware

2014-05-16 16:58 - 2014-05-16 16:58 - 00001824 _____ () C:\Users\Public\Desktop\SUPERAntiSpyware Professional.lnk

2014-05-16 16:58 - 2014-05-16 16:58 - 00000000 ____D () C:\Users\Jason\AppData\Roaming\SUPERAntiSpyware.com

2014-05-16 16:58 - 2014-05-16 16:58 - 00000000 ____D () C:\ProgramData\SUPERAntiSpyware.com

2014-05-16 16:56 - 2014-05-16 16:56 - 00008387 _____ () C:\Users\Jason\Desktop\RKreport[0]_D_05162014_165631.txt

2014-05-16 16:55 - 2014-05-16 16:55 - 00008337 _____ () C:\Users\Jason\Desktop\RKreport[0]_S_05162014_165532.txt

2014-05-16 16:48 - 2014-05-16 16:48 - 04527616 _____ () C:\Users\Jason\Downloads\RogueKillerX64.exe

2014-05-16 16:48 - 2014-05-16 16:48 - 00000949 _____ () C:\Users\Jason\Desktop\RKreport[0]_S_05162014_164809.txt

2014-05-16 16:45 - 2014-05-16 16:45 - 03972608 _____ () C:\Users\Jason\Downloads\RogueKiller.exe

2014-05-16 15:40 - 2014-05-16 15:40 - 00140032 _____ (ASMedia Technology Inc) C:\WINDOWS\system32\Drivers\asmthub3.sys

2014-05-16 15:31 - 2014-05-16 15:31 - 01933048 _____ (Bleeping Computer, LLC) C:\Users\Jason\Downloads\rkill.exe

2014-05-15 19:31 - 2014-05-15 19:30 - 00000000 ____D () C:\Users\Jason\AppData\Local\CrystalDiskMark

2014-05-15 17:50 - 2014-05-15 17:50 - 00733657 _____ () C:\Users\Jason\Downloads\Parkdale.zip

2014-05-15 14:33 - 2014-05-15 14:33 - 00021216 _____ (Splashtop Inc.) C:\WINDOWS\system32\Drivers\sthid.sys

2014-05-15 14:33 - 2014-05-15 14:33 - 00015072 _____ (Splashtop Inc.) C:\WINDOWS\system32\Drivers\hidkmdf.sys

2014-05-14 21:38 - 2013-08-22 11:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools

2014-05-14 21:38 - 2013-08-22 11:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools

2014-05-14 21:37 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\WinStore

2014-05-14 21:37 - 2013-08-22 11:36 - 00000000 ____D () C:\Program Files\Windows Defender

2014-05-14 21:37 - 2013-08-22 11:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender

2014-05-14 21:35 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\system32\SecureBootUpdates

2014-05-14 19:49 - 2014-03-22 02:11 - 03774821 _____ () C:\WINDOWS\system32\nvcoproc.bin

2014-05-14 17:03 - 2014-05-14 17:03 - 00001942 _____ () C:\Users\Jason\Desktop\Supraball.lnk

2014-05-14 17:03 - 2014-05-14 17:03 - 00000000 ____D () C:\Users\Jason\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Supraball

2014-05-14 17:03 - 2014-05-14 17:03 - 00000000 ____D () C:\Program Files (x86)\Supraball

2014-05-14 16:59 - 2014-05-14 16:47 - 277898742 _____ () C:\Users\Jason\Downloads\supraball_0.2.4.exe

2014-05-14 16:37 - 2014-05-14 16:36 - 25960448 _____ () C:\Users\Jason\Downloads\EA4A.tmp

2014-05-14 14:27 - 2014-03-22 17:22 - 00000000 ____D () C:\WINDOWS\system32\MRT

2014-05-14 13:49 - 2014-05-14 13:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi

2014-05-14 13:48 - 2014-03-22 14:41 - 00000000 ____D () C:\Program Files (x86)\LogMeIn Hamachi

2014-05-13 17:42 - 2014-05-12 20:02 - 00003718 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater

2014-05-13 14:29 - 2014-05-13 14:29 - 00046136 ____H (LogMeIn Inc.) C:\WINDOWS\system32\Drivers\Hamdrv.sys

2014-05-12 22:44 - 2014-05-12 22:44 - 85827854 _____ () C:\Users\Jason\Downloads\dogecoin.avi.mp4

2014-05-12 20:02 - 2014-03-24 16:44 - 00000000 ____D () C:\Users\Jason\AppData\Local\Adobe

2014-05-12 19:59 - 2014-05-12 19:59 - 00000000 __SHD () C:\Users\Jason\AppData\Local\EmieUserList

2014-05-12 19:59 - 2014-05-12 19:59 - 00000000 __SHD () C:\Users\Jason\AppData\Local\EmieSiteList

2014-05-12 12:42 - 2014-05-12 12:42 - 00001371 _____ () C:\Users\Public\Desktop\GeForce Experience.lnk

2014-05-12 12:37 - 2014-05-12 12:37 - 28033792 _____ (NVIDIA Corporation) C:\Users\Jason\Downloads\GeForce_Experience_v2.0.1.0.exe

2014-05-12 12:33 - 2014-05-12 12:33 - 28033792 _____ (NVIDIA Corporation) C:\Users\Jason\Downloads\15C6.tmp

2014-05-12 07:26 - 2014-06-03 18:51 - 00091352 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys

2014-05-12 07:26 - 2014-06-03 18:51 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys

2014-05-12 07:25 - 2014-06-03 18:51 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys

2014-05-11 18:14 - 2014-05-11 17:59 - 00000000 ____D () C:\Users\Jason\AppData\Roaming\Dogecoin

2014-05-11 17:07 - 2014-05-11 15:48 - 00000000 ____D () C:\Users\Jason\AppData\Local\Uber Entertainment

2014-05-11 14:06 - 2014-05-11 14:06 - 00211291 _____ () C:\Users\Jason\Downloads\LCDSirReal-285.exe

2014-05-11 14:06 - 2014-05-11 14:06 - 00000000 ____D () C:\Users\Jason\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LCDSirReal

2014-05-11 14:06 - 2014-04-18 18:17 - 00000000 ____D () C:\Users\Jason\Documents\LCDSirReal

2014-05-11 13:56 - 2014-05-11 13:56 - 01069776 _____ (Solid State Networks) C:\Users\Jason\Downloads\B6A8.tmp

2014-05-11 13:54 - 2014-05-11 13:54 - 00844976 _____ (Adobe Systems Incorporated) C:\Users\Jason\Downloads\uninstall_flash_player.exe

2014-05-11 13:47 - 2014-05-11 13:23 - 00000000 ____D () C:\Users\Jason\Documents\BYOND

2014-05-11 13:22 - 2014-05-11 13:22 - 03844796 _____ () C:\Users\Jason\Downloads\504.1234_byond.exe

2014-05-11 13:22 - 2014-05-11 13:22 - 00001724 _____ () C:\Users\Public\Desktop\BYOND.lnk

2014-05-11 13:22 - 2014-05-11 13:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BYOND

2014-05-11 13:22 - 2014-05-11 13:22 - 00000000 ____D () C:\Program Files (x86)\BYOND

2014-05-11 13:04 - 2014-05-11 13:04 - 07010428 _____ () C:\Users\Jason\Downloads\Pokemon Emerald.zip

2014-05-11 13:04 - 2014-05-11 13:04 - 00000000 ____D () C:\Users\Jason\Downloads\Pokemon Emerald

2014-05-11 13:03 - 2014-05-11 13:01 - 00142421 _____ () C:\Users\Jason\Downloads\NSE 2.1.zip

2014-05-11 12:59 - 2014-05-11 12:59 - 04860240 _____ () C:\Users\Jason\Downloads\Pokemon Ruby.zip

2014-05-11 12:58 - 2014-05-11 12:58 - 00659797 _____ () C:\Users\Jason\Downloads\VisualBoyAdvance-1.8.0-beta3.zip

2014-05-11 12:57 - 2014-05-11 12:57 - 01639012 _____ () C:\Users\Jason\Downloads\Pokemon_Mod_Tools.rar

2014-05-11 12:01 - 2014-05-09 17:48 - 00000000 ____D () C:\Users\Jason\Desktop\FTB Monster Server

2014-05-09 22:08 - 2014-03-25 03:21 - 00000000 ____D () C:\Users\Jason\AppData\Roaming\vlc

2014-05-09 18:46 - 2014-05-09 18:40 - 00000000 ____D () C:\Users\Jason\AppData\Roaming\Notepad++

2014-05-09 18:41 - 2014-05-09 18:41 - 00000000 ____D () C:\Users\Jason\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++

2014-05-09 18:41 - 2014-05-09 18:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++

2014-05-09 18:40 - 2014-05-09 18:40 - 07631728 _____ () C:\Users\Jason\Downloads\npp.6.6.2.Installer.exe

2014-05-09 18:40 - 2014-03-22 02:53 - 00000000 ____D () C:\Program Files (x86)\Notepad++

2014-05-09 18:36 - 2014-03-28 05:19 - 00000000 ____D () C:\Users\Jason\AppData\Roaming\.minecraft

2014-05-09 17:47 - 2014-05-09 17:46 - 176092464 _____ () C:\Users\Jason\Downloads\modpacks^Monster^1_1_1^MonsterServer.zip

2014-05-09 17:24 - 2014-05-09 17:23 - 24677393 _____ () C:\Users\Jason\Downloads\vlc-2.1.3-win32 (1).exe

2014-05-09 17:24 - 2014-03-25 03:21 - 00001090 _____ () C:\Users\Public\Desktop\VLC media player.lnk

2014-05-08 10:09 - 2014-05-08 10:08 - 00000000 ____D () C:\Users\Jason\AppData\Local\Skyrim

2014-05-06 00:40 - 2014-05-14 13:55 - 23544320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll

 

==================== Bamital & volsnap Check =================

 

C:\Windows\System32\winlogon.exe => MD5 is legit

C:\Windows\System32\wininit.exe => MD5 is legit

C:\Windows\explorer.exe => MD5 is legit

C:\Windows\SysWOW64\explorer.exe => MD5 is legit

C:\Windows\System32\svchost.exe => MD5 is legit

C:\Windows\SysWOW64\svchost.exe => MD5 is legit

C:\Windows\System32\services.exe

[2014-05-25 15:53] - [2014-03-28 11:58] - 0407016 ____A (Microsoft Corporation) 067CB90C277DB4A737D5DEABA3055972

 

C:\Windows\System32\User32.dll => MD5 is legit

C:\Windows\SysWOW64\User32.dll => MD5 is legit

C:\Windows\System32\userinit.exe => MD5 is legit

C:\Windows\SysWOW64\userinit.exe => MD5 is legit

C:\Windows\System32\rpcss.dll => MD5 is legit

C:\Windows\System32\Drivers\volsnap.sys

[2014-05-25 15:53] - [2014-03-06 08:42] - 0310616 ___AC (Microsoft Corporation) 4BB9BC49DEE1A319EC58274A7BBED663

 

 

 

LastRegBack: 2014-05-27 16:20

 

==================== End Of Log ============================

Link to post
Share on other sites

Addition:

 

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 02-06-2014

Ran by Jason at 2014-06-05 21:45:00

Running from C:\Users\Jason\Desktop

Boot Mode: Normal

==========================================================

 

 

==================== Security Center ========================

 

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

 

==================== Installed Programs ======================

 

Adobe Flash Player 13 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 13.0.0.214 - Adobe Systems Incorporated)

Adobe Reader X (10.1.10) MUI (HKLM-x32\...\{AC76BA86-7AD7-FFFF-7B44-AA0000000001}) (Version: 10.1.10 - Adobe Systems Incorporated)

Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.0.150 - Adobe Systems, Inc.)

AI Suite II (HKLM-x32\...\{34D3688E-A737-44C5-9E2A-FF73618728E1}) (Version: 2.01.01 - ASUSTeK Computer Inc.)

Apple Application Support (HKLM-x32\...\{D9DAD0FF-495A-472B-9F10-BAE430A26682}) (Version: 3.0.3 - Apple Inc.)

Apple Mobile Device Support (HKLM\...\{787136D2-F0F8-4625-AA3F-72D7795AC842}) (Version: 7.1.1.3 - Apple Inc.)

Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)

Asmedia ASM104x USB 3.0 Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.16.2.0 - Asmedia Technology)

ASUS Boot Setting (HKLM-x32\...\{7AAE9187-C24F-4073-A951-36C370E7A3A5}) (Version: 1.00.10 - ASUSTeK Computer Inc.)

ASUS WebStorage Sync Agent (HKLM-x32\...\ASUS WebStorage) (Version: 1.1.11.125 - ASUS Cloud Corporation)

Audacity 2.0.5 (HKLM-x32\...\Audacity_is1) (Version: 2.0.5 - Audacity Team)

Battlefield 4™ (HKLM-x32\...\{ABADE36E-EC37-413B-8179-B432AD3FACE7}) (Version: 1.1.0.1 - Electronic Arts)

Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.3.0 - EA Digital Illusions CE AB)

Belarc Advisor 8.4 (HKLM-x32\...\Belarc Advisor) (Version: 8.4.0.0 - Belarc Inc.)

Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)

BYOND (HKLM-x32\...\BYOND) (Version: 504.1234 - BYOND)

CCleaner (HKLM\...\CCleaner) (Version: 4.06 - Piriform)

Clash N Slash 1.22 (HKCU\...\Clash N Slash) (Version: 1.22 - Enkord)

Defraggler (HKLM\...\Defraggler) (Version: 2.17 - Piriform)

DelinvFile - 4.05 (HKLM-x32\...\DelinvFile_is1) (Version: 4.05 - Assistance and Resources for Computing, Inc.)

DisplayFusion 5.1.1 (HKLM-x32\...\B076073A-5527-4f4f-B46B-B10692277DA2_is1) (Version: 5.1.1.0 - Binary Fortress Software)

Dwarfs!? (HKLM-x32\...\Steam App 35480) (Version:  - Power of 2)

EVGA Precision X 4.2.1 (HKLM-x32\...\PrecisionX) (Version: 4.2.1 - EVGA Corporation)

Fraps (remove only) (HKLM-x32\...\Fraps) (Version:  - )

Futuremark SystemInfo (HKLM-x32\...\{EF7EA37B-C009-4D53-AE2A-FF7C6AEC35CE}) (Version: 4.26.386 - Futuremark)

Garry's Mod (HKLM-x32\...\Steam App 4000) (Version:  - Facepunch Studios)

Google Chrome (HKLM-x32\...\Google Chrome) (Version: 35.0.1916.114 - Google Inc.)

Google Update Helper (x32 Version: 1.3.24.7 - Google Inc.) Hidden

HP Officejet Pro 8600 Basic Device Software (HKLM\...\{791A06E2-340F-43B0-8FAB-62D151339362}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)

HP Update (HKLM-x32\...\{6F1C00D2-25C2-4CBA-8126-AE9A6E2E9CD5}) (Version: 5.003.003.001 - Hewlett-Packard)

I.R.I.S. OCR (HKLM-x32\...\{CA6BCA2F-EDEB-408F-850B-31404BE16A61}) (Version: 12.3.4.0 - HP)

iCloud (HKLM\...\{81E20D41-C277-4526-934D-F2380AF91B78}) (Version: 3.1.0.40 - Apple Inc.)

Intel® Watchdog Timer Driver (Intel® WDT) (HKLM-x32\...\{3FD0C489-0F02-481a-A3E1-9754CD396761}) (Version:  - Intel Corporation)

iTunes (HKLM\...\{1CF5754A-545B-4360-BFDE-2847BC728DFC}) (Version: 11.2.0.115 - Apple Inc.)

Java 7 Update 55 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86417055FF}) (Version: 7.0.550 - Oracle)

Java 7 Update 55 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217055FF}) (Version: 7.0.550 - Oracle)

Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden

Kingsoft Office 2013 (9.1.0.4514) (HKLM-x32\...\Kingsoft Office) (Version: 9.1.0.4514 - Kingsoft Corp.)

LCDSirReal - a multipurpose plugin for the Logitech G13/G15 (HKCU\...\LCDSirReal) (Version:  - Link Data Stockholm)

Logitech Gaming Software (Version: 8.45.88 - Logitech Inc.) Hidden

Logitech Gaming Software 8.52 (HKLM\...\Logitech Gaming Software) (Version: 8.52.15 - Logitech Inc.)

LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.193 - LogMeIn, Inc.)

LogMeIn Hamachi (x32 Version: 2.2.0.193 - LogMeIn, Inc.) Hidden

Malwarebytes Anti-Malware version 2.0.2.1012 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation)

Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)

Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)

Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)

Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)

Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)

Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)

Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)

Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden

Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden

Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden

Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden

Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)

Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden

Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden

Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation)

My Game Long Name (HKLM\...\UDK-8468e8f4-4495-4605-9b76-a43d2c57892e) (Version:  - Epic Games, Inc.)

NetWorx 5.3 (HKLM\...\NetWorx_is1) (Version:  - Softperfect Research)

Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.6.2 - Notepad++ Team)

NVIDIA 3D Vision Controller Driver 337.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 337.88 - NVIDIA Corporation)

NVIDIA 3D Vision Driver 337.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 337.88 - NVIDIA Corporation)

NVIDIA Control Panel 337.88 (Version: 337.88 - NVIDIA Corporation) Hidden

NVIDIA GeForce Experience 2.0.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.0.1 - NVIDIA Corporation)

NVIDIA Graphics Driver 337.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 337.88 - NVIDIA Corporation)

NVIDIA HD Audio Driver 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation)

NVIDIA Install Application (Version: 2.1002.154.1168 - NVIDIA Corporation) Hidden

NVIDIA LED Visualizer 1.0 (Version: 1.0 - NVIDIA Corporation) Hidden

NVIDIA Network Service (Version: 1.0 - NVIDIA Corporation) Hidden

NVIDIA PhysX (x32 Version: 9.13.1220 - NVIDIA Corporation) Hidden

NVIDIA PhysX System Software 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation)

NVIDIA ShadowPlay 12.4.67 (Version: 12.4.67 - NVIDIA Corporation) Hidden

NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.12.6514 - NVIDIA Corporation) Hidden

NVIDIA Update 12.4.67 (Version: 12.4.67 - NVIDIA Corporation) Hidden

NVIDIA Update Core (Version: 12.4.67 - NVIDIA Corporation) Hidden

NVIDIA Virtual Audio 1.2.23 (Version: 1.2.23 - NVIDIA Corporation) Hidden

Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version:  - )

Origin (HKLM-x32\...\Origin) (Version: 9.4.6.2792 - Electronic Arts, Inc.)

PerfectDisk Professional Business (HKLM\...\{682B22AB-EAAA-4B1C-83AF-B26E7D4ED01E}) (Version: 13.0.783 - Raxco Software Inc.)

PerformanceTest v8.0 (HKLM\...\PerformanceTest 8_is1) (Version: 8.0.1034.0 - Passmark Software)

PlanetSide 2 (HKLM-x32\...\Steam App 218230) (Version:  - Sony Online Entertainment)

Plantronics® GameCom 780/788 Software for Dolby® Headphone (HKLM-x32\...\{EB3C9064-9140-4279-9E51-965119402151}) (Version: 3.20.0001 - Plantronics)

PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.)

QuickTime 7 (HKLM-x32\...\{111EE7DF-FC45-40C7-98A7-753AC46B12FB}) (Version: 7.75.80.95 - Apple Inc.)

Rainmeter (HKLM-x32\...\Rainmeter) (Version: 3.1 r2290 - )

Razer Synapse 2.0 (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 1.18.02 - Razer Inc.)

Realtek Ethernet Diagnostic Utility (HKLM-x32\...\{DADC7AB0-E554-4705-9F6A-83EA82ED708E}) (Version: 1.00.0000 - Realtek)

Recuva (HKLM\...\Recuva) (Version: 1.51 - Piriform)

Resource Hacker Version 3.6.0 (HKLM-x32\...\ResourceHacker_is1) (Version:  - )

RuneScape Launcher 1.2.3 (HKLM-x32\...\{FAE99C85-0732-4C58-9C6B-10B5B12FA2E9}) (Version: 1.2.3 - Jagex Ltd)

SHIELD Streaming (Version: 2.1.108 - NVIDIA Corporation) Hidden

Skype™ 6.14 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.14.104 - Skype Technologies S.A.)

Speccy (HKLM\...\Speccy) (Version: 1.25 - Piriform)

Star Wars - Battlefront II (HKLM-x32\...\Steam App 6060) (Version:  - Pandemic Studios)

StarCraft (HKLM-x32\...\StarCraft) (Version:  - Blizzard Entertainment)

Stardock Start8 (HKLM-x32\...\Stardock Start8) (Version: 1.41 - Stardock Software, Inc.)

Steam (HKLM-x32\...\Steam) (Version:  - Valve Corporation)

SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 5.7.1018 - SUPERAntiSpyware.com)

Supraball (HKLM-x32\...\Supraball) (Version:  - Supra Games Gbr)

swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden

System Requirements Lab CYRI (HKLM-x32\...\{F3FCB08B-E752-444D-86A0-0634A4F3B23D}) (Version: 6.0.8.0 - Husdawg, LLC)

System Requirements Lab Detection (HKLM-x32\...\{A407FC22-36BF-4C82-A516-59D94BC505A9}) (Version: 1.0.5.0 - Husdawg, LLC)

Team Fortress 2 (HKLM-x32\...\Steam App 440) (Version:  - Valve)

TeamSpeak 3 Client (HKLM-x32\...\TeamSpeak 3 Client) (Version: 3.0.14 - TeamSpeak Systems GmbH)

TeamViewer 9 (HKLM-x32\...\TeamViewer 9) (Version: 9.0.27614 - TeamViewer)

TechPowerUp GPU-Z (HKLM-x32\...\TechPowerUp GPU-Z) (Version:  - TechPowerUp)

Titanfall™ (HKLM-x32\...\{347EE0C3-0690-48F6-A231-53853C2A80D6}) (Version: 1.0.3.6 - Electronic Arts)

Unity Web Player (HKCU\...\UnityWebPlayer) (Version:  - Unity Technologies ApS)

Verizon Wireless Software Utility Application for Android - Samsung (HKLM-x32\...\{69258FD1-F4EE-475A-83D1-BF68C8029592}) (Version: 2.14.0402 - Samsung Electronics Co., Ltd.)

VLC media player 2.1.3 (HKLM-x32\...\VLC media player) (Version: 2.1.3 - VideoLAN)

WD Drive Utilities (HKLM-x32\...\{7431ED5D-9247-4F17-91C9-702D9B36FAC4}) (Version: 1.0.7.3 - Western Digital Technologies, Inc.)

WD Quick View (HKLM-x32\...\{F181233F-67DF-4995-A159-EB81F2B5500B}) (Version: 2.4.0.39 - Western Digital Technologies, Inc.)

WD Security (HKLM-x32\...\{90C3D9C7-2F83-4399-8E28-A00228CFFDF8}) (Version: 1.0.7.3 - Western Digital Technologies, Inc.)

WD SmartWare (HKLM\...\{6E936B32-5120-412E-AC87-C1D3651E531F}) (Version: 2.4.0.39 - Western Digital Technologies, Inc.)

WD SmartWare Installer (HKLM-x32\...\{9af08980-8d36-4304-a8d0-53dc0c7d93a5}) (Version: 2.4.0.39 - Western Digital Technologies, Inc.)

WhatPulse version 2.3.1 (HKLM-x32\...\{95CC8D5F-90A1-4285-9B2D-8D0FBCFD8D0D}_is1) (Version: 2.3.1 - WhatPulse)

Wi-Fi Analytics Tool (HKLM-x32\...\{41A6B30E-330B-4B56-9054-8F3D22B857E5}) (Version: 2.1.5 - AmpedWireless)

WinPcap 4.1.3 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2980 - Riverbed Technology, Inc.)

WinRAR 5.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH)

 

==================== Restore Points  =========================

 

04-06-2014 18:57:33 Scheduled Checkpoint

05-06-2014 00:29:21 Removed Splashtop Streamer.

06-06-2014 01:22:38 Windows Modules Installer

 

==================== Hosts content: ==========================

 

2013-08-22 09:25 - 2014-05-25 11:34 - 00450709 ___RA C:\WINDOWS\system32\Drivers\etc\hosts

127.0.0.1 www.007guard.com

127.0.0.1 007guard.com

127.0.0.1 008i.com

127.0.0.1 www.008k.com

127.0.0.1 008k.com

127.0.0.1 www.00hq.com

127.0.0.1 00hq.com

127.0.0.1 010402.com

127.0.0.1 www.032439.com

127.0.0.1 032439.com

127.0.0.1 www.0scan.com

127.0.0.1 0scan.com

127.0.0.1 1000gratisproben.com

127.0.0.1 www.1000gratisproben.com

127.0.0.1 1001namen.com

127.0.0.1 www.1001namen.com

127.0.0.1 100888290cs.com

127.0.0.1 www.100888290cs.com

127.0.0.1 www.100sexlinks.com

127.0.0.1 100sexlinks.com

127.0.0.1 10sek.com

127.0.0.1 www.10sek.com

127.0.0.1 www.1-2005-search.com

127.0.0.1 1-2005-search.com

127.0.0.1 123fporn.info

127.0.0.1 www.123fporn.info

127.0.0.1 123haustiereundmehr.com

127.0.0.1 www.123haustiereundmehr.com

127.0.0.1 123moviedownload.com

 

There are 1000 more lines.

 

 

==================== Scheduled Tasks (whitelisted) =============

 

Task: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask

Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList

Task: {14772019-1469-40FF-9414-60DF6C590392} - System32\Tasks\Apple Diagnostics => C:\Program Files (x86)\Common Files\Apple\Internet Services\EReporter.exe [2013-11-20] (Apple Inc.)

Task: {17120128-D947-4F6E-8F8A-415D34FA19EB} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Management

Task: {2085BF56-520D-4951-B7C0-DF34AF90CC6A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask

Task: {2771DC59-B62B-49D2-8F64-4D99D0306AF2} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-03-22] (Google Inc.)

Task: {2C7D7BF5-711E-4381-B315-121826061A56} - System32\Tasks\Games\UpdateCheck_S-1-5-21-2425713805-3090955610-2678947378-1000

Task: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate

Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation)

Task: {35D2F05A-3660-4BBC-B4A9-11F0FAA162EC} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Validation

Task: {39A34FAD-3F63-4BD1-80D2-CCDD7DE73ACC} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2014-05-04] (Microsoft Corporation)

Task: {3B546AC1-F5D2-4852-AD75-FBD8F20CF3AE} - System32\Tasks\ASUS\USB 3.0 Boost Service => C:\Program Files (x86)\ASUS\AI Suite II\USB 3.0 Boost\U3BoostSvr.exe [2011-09-10] ()

Task: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [2013-08-22] (Microsoft Corporation)

Task: {3E786D4F-D719-4725-95A1-5E069745D442} - System32\Tasks\WpsUpdateTask_Jason => C:\Program Files (x86)\Kingsoft\Kingsoft Office\wtoolex\wpsupdate.exe [2014-03-05] (Zhuhai Kingsoft Office Software Co.,Ltd)

Task: {46932C84-88AF-491D-BFB2-B54E8DCCC87E} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-09-19] (Piriform Ltd)

Task: {47808387-75EE-4D3F-BFA4-E194C476AEFE} - System32\Tasks\ASUS\ASUS AI Suite II Execute => C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe [2012-03-13] (ASUSTeK Computer Inc.)

Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance

Task: {555A9C0F-A257-4888-AE2F-BF843D3D5A22} - System32\Tasks\Microsoft\Windows\DiskFootprint\Diagnostics

Task: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play Cleanup

Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task

Task: {73B1B253-CE67-4501-AE1A-377DD1D68B65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask

Task: {75C0B396-9146-4B4C-8944-7D8FC2B61005} - System32\Tasks\WpsNotifyTask_Jason => C:\Program Files (x86)\Kingsoft\Kingsoft Office\wtoolex\wpsnotify.exe [2014-03-05] (Zhuhai Kingsoft Office Software Co.,Ltd)

Task: {77F1D869-6E65-4079-A2A0-E2023408EF97} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState

Task: {842B53FC-E2E0-4C8A-920C-85D607F5880F} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-13] (Adobe Systems Incorporated)

Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task

Task: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask

Task: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work

Task: {A7355BA7-8D30-48DB-9DFD-8EE61D96BFD4} - System32\Tasks\Microsoft\Windows\DiskCleanup\SilentCleanup => C:\Windows\system32\cleanmgr.exe [2014-02-22] (Microsoft Corporation)

Task: {BAEE7B77-1D57-4DED-809F-08A5EE8EC22F} - System32\Tasks\ASUS\ASUS DigiPowerControl Help => C:\Program Files (x86)\ASUS\AI Suite II\DIGI+ VRM\PowerControlHelp.exe [2012-07-23] (ASUSTeK Computer Inc.)

Task: {BE40DC27-C5AC-479F-A297-89D541BA0C4F} - System32\Tasks\Seagate_Install_Launch => C:\Program Files (x86)\Seagate\Seagate Dashboard 2.0\Dashboard.exe

Task: {BECC9AB9-6750-497E-99AD-F728E7876426} - System32\Tasks\ASUS\ASUS Network iControl Help Execute => C:\Program Files (x86)\ASUS\AI Suite II\Network iControl\NetSvcHelp\NetSvcHelpEntry.exe [2012-05-03] (ASUSTeK Computer Inc.)

Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTask

Task: {D88FEC9E-A82A-46F9-87E2-B6B97B301C1A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing

Task: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization

Task: {DA94AE7C-852E-48A1-B036-9674C66D1AB9} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-03-22] (Google Inc.)

Task: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE

Task: {ED397F78-0056-477E-9212-014F86909ED8} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start With Network => Sc.exe start wuauserv

Task: {F730B35B-DFAE-4CB5-93DD-5AB1F501306E} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

Task: C:\WINDOWS\Tasks\WpsNotifyTask_Jason.job => C:\Program Files (x86)\Kingsoft\Kingsoft Office\wtoolex\wpsnotify.exe

Task: C:\WINDOWS\Tasks\WpsUpdateTask_Jason.job => C:\Program Files (x86)\Kingsoft\Kingsoft Office\wtoolex\wpsupdate.exe

 

==================== Loaded Modules (whitelisted) =============

 

2014-03-22 02:11 - 2014-05-19 21:25 - 00116568 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll

2014-03-22 02:26 - 2012-06-01 05:42 - 00920736 ____N () C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe

2012-06-18 11:24 - 2012-06-18 11:24 - 00222720 _____ () C:\Program Files (x86)\Notepad++\NppShell_05.dll

2014-06-04 23:03 - 2014-06-04 23:03 - 00076888 _____ () C:\WINDOWS\SysWOW64\PnkBstrA.exe

2014-03-22 19:27 - 2014-03-17 15:55 - 00711168 _____ () C:\Program Files\NetWorx\sqlite.dll

2014-03-22 23:07 - 2014-01-21 19:41 - 00817440 ____N () C:\Program Files\Plantronics\GameCom 780 & 788\GameCom780.exe

2014-03-28 01:04 - 2014-04-17 21:51 - 03054592 _____ () C:\Program Files (x86)\WhatPulse2\whatpulse.exe

2011-06-21 05:14 - 2011-06-21 05:14 - 00207872 _____ () C:\Users\Jason\Documents\LCDSirReal\LCDSirReal.exe

2014-03-22 02:26 - 2014-06-05 14:40 - 00027136 _____ () C:\Program Files (x86)\ASUS\AXSP\1.00.19\PEbiosinterface32.dll

2014-03-22 02:26 - 2010-06-28 22:58 - 00104448 ____N () C:\Program Files (x86)\ASUS\AXSP\1.00.19\ATKEX.dll

2014-03-22 23:07 - 2014-01-21 19:41 - 00149792 ____N () C:\Program Files\Plantronics\GameCom 780 & 788\VmixPLGC.dll

2014-03-22 02:55 - 2014-04-25 06:33 - 00962560 _____ () C:\Program Files (x86)\Origin\platforms\qwindows.dll

2014-03-22 02:55 - 2014-04-25 06:32 - 00024064 _____ () C:\Program Files (x86)\Origin\imageformats\qgif.dll

2014-03-22 02:55 - 2014-04-25 06:32 - 00025088 _____ () C:\Program Files (x86)\Origin\imageformats\qico.dll

2014-03-22 02:55 - 2014-04-25 06:32 - 00217088 _____ () C:\Program Files (x86)\Origin\imageformats\qjpeg.dll

2014-03-22 02:55 - 2014-04-25 06:33 - 00261632 _____ () C:\Program Files (x86)\Origin\imageformats\qmng.dll

2014-03-22 02:55 - 2014-04-25 06:33 - 00019968 _____ () C:\Program Files (x86)\Origin\imageformats\qtga.dll

2014-03-22 02:55 - 2014-04-25 06:33 - 00302592 _____ () C:\Program Files (x86)\Origin\imageformats\qtiff.dll

2014-03-22 02:55 - 2014-04-25 06:33 - 00018944 _____ () C:\Program Files (x86)\Origin\imageformats\qwbmp.dll

2014-03-28 01:04 - 2013-04-08 10:34 - 00039936 _____ () C:\Program Files (x86)\WhatPulse2\CrashRpt1402.dll

2014-03-22 02:31 - 2012-05-17 06:57 - 00043520 ____N () C:\Program Files (x86)\ASUS\AI Suite II\TurboV EVO\HookKey32.dll

2014-05-23 15:32 - 2014-05-13 19:40 - 04217672 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\pdf.dll

2014-05-23 15:32 - 2014-05-13 19:40 - 00414536 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\ppGoogleNaClPluginChrome.dll

2014-05-23 15:32 - 2014-05-13 19:40 - 01732424 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\ffmpegsumo.dll

2014-03-22 02:31 - 2012-07-05 15:05 - 00253952 _____ () C:\Program Files (x86)\ASUS\AI Suite II\TurboV EVO\pngio.dll

2014-03-22 02:27 - 2014-03-22 02:41 - 00147456 _____ () C:\Program Files (x86)\ASUS\AI Suite II\AssistFunc.dll

2014-03-22 02:27 - 2010-10-05 11:22 - 00253952 _____ () C:\Program Files (x86)\ASUS\AI Suite II\pngio.dll

2014-03-22 02:28 - 2011-09-26 22:36 - 00869376 _____ () C:\Program Files (x86)\ASUS\AI Suite II\AI Charger+\AIChargerPlus.dll

2014-03-22 02:27 - 2012-03-21 15:07 - 00972288 _____ () C:\Program Files (x86)\ASUS\AI Suite II\BarGadget\BarGadget.dll

2014-03-22 02:29 - 2012-06-19 15:56 - 01305600 _____ () C:\Program Files (x86)\ASUS\AI Suite II\MyLogo\MyLogo.dll

2014-03-22 02:30 - 2012-07-25 12:56 - 01124864 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Network iControl\Network iControl.dll

2014-03-22 02:30 - 2012-02-10 14:29 - 01047040 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Probe_II\ProbeII.dll

2014-03-22 02:27 - 2012-05-25 13:33 - 00883712 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Sensor\Sensor.dll

2014-03-22 02:27 - 2012-05-29 00:27 - 01622528 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Sensor Graph\SensorGraph.dll

2014-03-22 02:27 - 2011-09-19 23:18 - 01243136 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Settings\Settings.dll

2014-03-22 02:27 - 2011-07-21 12:06 - 00846848 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Splitter\Splitter.dll

2014-03-22 02:27 - 2011-10-14 23:03 - 00885248 _____ () C:\Program Files (x86)\ASUS\AI Suite II\TabGadget\TabGadget.dll

2014-03-22 02:26 - 2010-08-22 22:17 - 00662016 ____R () C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMLib.dll

2014-03-22 02:27 - 2010-10-05 11:22 - 00208896 _____ () C:\Program Files (x86)\ASUS\AI Suite II\ImageHelper.dll

2014-03-22 02:27 - 2009-08-12 23:15 - 00253952 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\pngio.dll

2014-05-23 15:32 - 2014-05-13 19:40 - 13695816 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\PepperFlash\pepflashplayer.dll

2014-05-23 22:32 - 2014-04-29 20:08 - 01135104 _____ () C:\Program Files (x86)\Steam\libavcodec-55.dll

2014-05-23 22:32 - 2014-04-29 20:08 - 00404992 _____ () C:\Program Files (x86)\Steam\libavformat-55.dll

2014-03-22 03:02 - 2014-04-29 20:08 - 00340992 _____ () C:\Program Files (x86)\Steam\libavresample-1.dll

2014-04-22 22:42 - 2014-04-29 20:08 - 00471552 _____ () C:\Program Files (x86)\Steam\libavutil-53.dll

2014-03-22 03:02 - 2014-05-16 21:36 - 00756224 _____ () C:\Program Files (x86)\Steam\SDL2.dll

2014-05-23 22:32 - 2014-05-29 13:37 - 02139840 _____ () C:\Program Files (x86)\Steam\video.dll

2014-05-23 22:32 - 2014-04-28 20:37 - 00519168 _____ () C:\Program Files (x86)\Steam\libswscale-2.dll

2014-03-22 03:08 - 2014-05-29 13:36 - 01116864 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL

2014-03-22 03:08 - 2014-05-01 19:35 - 20628160 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll

2014-03-22 03:08 - 2013-06-14 19:49 - 01100800 _____ () C:\Program Files (x86)\Steam\bin\avcodec-53.dll

2014-03-22 03:08 - 2013-06-14 19:49 - 00124416 _____ () C:\Program Files (x86)\Steam\bin\avutil-51.dll

2014-03-22 03:08 - 2013-06-14 19:49 - 00192000 _____ () C:\Program Files (x86)\Steam\bin\avformat-53.dll

2014-04-26 22:12 - 2014-02-10 13:44 - 04592128 _____ () C:\Users\Jason\AppData\Local\Google\Chrome\User Data\SwiftShader\3.2.6.45159\libglesv2.dll

2014-04-26 22:12 - 2014-02-10 13:44 - 00112128 _____ () C:\Users\Jason\AppData\Local\Google\Chrome\User Data\SwiftShader\3.2.6.45159\libegl.dll

 

==================== Alternate Data Streams (whitelisted) =========

 

AlternateDataStreams: C:\Users\Jason\SkyDrive:ms-properties

AlternateDataStreams: C:\Users\Jason\SkyDrive (2).old:ms-properties

AlternateDataStreams: C:\Users\Jason\Desktop\mbam-clean-2.0.2.0 (2).exe:BDU

AlternateDataStreams: C:\Users\Jason\Desktop\mbam-setup-consumer-2.0.2.1012.exe:BDU

 

==================== Safe Mode (whitelisted) ===================

 

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service"

 

==================== EXE Association (whitelisted) =============

 

 

==================== Disabled items from MSCONFIG ==============

 

MSCONFIG\Services: Apple Mobile Device => 2

MSCONFIG\Services: Bonjour Service => 2

MSCONFIG\Services: iPod Service => 3

 

==================== Faulty Device Manager Devices =============

 

 

==================== Event log errors: =========================

 

Application errors:

==================

Error: (06/05/2014 09:35:58 PM) (Source: Application Error) (EventID: 1000) (User: )

Description: Faulting application name: mbam.exe, version: 1.0.0.532, time stamp: 0x53518532

Faulting module name: MSVCR100.dll, version: 10.0.40219.325, time stamp: 0x4df2be1e

Exception code: 0x40000015

Fault offset: 0x0008d6fd

Faulting process id: 0x784

Faulting application start time: 0xmbam.exe0

Faulting application path: mbam.exe1

Faulting module path: mbam.exe2

Report Id: mbam.exe3

Faulting package full name: mbam.exe4

Faulting package-relative application ID: mbam.exe5

 

Error: (06/05/2014 09:22:46 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )

Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.

 

 

Details:

AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol.

 

System Error:

Access is denied.

.

 

Error: (06/05/2014 08:29:29 PM) (Source: Application Error) (EventID: 1000) (User: )

Description: Faulting application name: mbam.exe, version: 1.0.0.532, time stamp: 0x53518532

Faulting module name: MSVCR100.dll, version: 10.0.40219.325, time stamp: 0x4df2be1e

Exception code: 0x40000015

Fault offset: 0x0008d6fd

Faulting process id: 0x165c

Faulting application start time: 0xmbam.exe0

Faulting application path: mbam.exe1

Faulting module path: mbam.exe2

Report Id: mbam.exe3

Faulting package full name: mbam.exe4

Faulting package-relative application ID: mbam.exe5

 

Error: (06/05/2014 07:12:55 PM) (Source: Application Error) (EventID: 1000) (User: )

Description: Faulting application name: mbam.exe, version: 1.0.0.532, time stamp: 0x53518532

Faulting module name: MSVCR100.dll, version: 10.0.40219.325, time stamp: 0x4df2be1e

Exception code: 0x40000015

Fault offset: 0x0008d6fd

Faulting process id: 0x22fc

Faulting application start time: 0xmbam.exe0

Faulting application path: mbam.exe1

Faulting module path: mbam.exe2

Report Id: mbam.exe3

Faulting package full name: mbam.exe4

Faulting package-relative application ID: mbam.exe5

 

Error: (06/05/2014 06:06:12 PM) (Source: Application Error) (EventID: 1000) (User: )

Description: Faulting application name: mbam.exe, version: 1.0.0.532, time stamp: 0x53518532

Faulting module name: MSVCR100.dll, version: 10.0.40219.325, time stamp: 0x4df2be1e

Exception code: 0x40000015

Fault offset: 0x0008d6fd

Faulting process id: 0x2398

Faulting application start time: 0xmbam.exe0

Faulting application path: mbam.exe1

Faulting module path: mbam.exe2

Report Id: mbam.exe3

Faulting package full name: mbam.exe4

Faulting package-relative application ID: mbam.exe5

 

Error: (06/05/2014 05:01:58 PM) (Source: Application Error) (EventID: 1000) (User: )

Description: Faulting application name: mbam.exe, version: 1.0.0.532, time stamp: 0x53518532

Faulting module name: MSVCR100.dll, version: 10.0.40219.325, time stamp: 0x4df2be1e

Exception code: 0x40000015

Fault offset: 0x0008d6fd

Faulting process id: 0x213c

Faulting application start time: 0xmbam.exe0

Faulting application path: mbam.exe1

Faulting module path: mbam.exe2

Report Id: mbam.exe3

Faulting package full name: mbam.exe4

Faulting package-relative application ID: mbam.exe5

 

Error: (06/05/2014 04:30:51 PM) (Source: Application Error) (EventID: 1000) (User: )

Description: Faulting application name: mbam.exe, version: 1.0.0.532, time stamp: 0x53518532

Faulting module name: MSVCR100.dll, version: 10.0.40219.325, time stamp: 0x4df2be1e

Exception code: 0x40000015

Fault offset: 0x0008d6fd

Faulting process id: 0xab0

Faulting application start time: 0xmbam.exe0

Faulting application path: mbam.exe1

Faulting module path: mbam.exe2

Report Id: mbam.exe3

Faulting package full name: mbam.exe4

Faulting package-relative application ID: mbam.exe5

 

Error: (06/05/2014 04:29:36 PM) (Source: Application Error) (EventID: 1000) (User: )

Description: Faulting application name: mbam.exe, version: 1.0.0.532, time stamp: 0x53518532

Faulting module name: MSVCR100.dll, version: 10.0.40219.325, time stamp: 0x4df2be1e

Exception code: 0x40000015

Fault offset: 0x0008d6fd

Faulting process id: 0x26e8

Faulting application start time: 0xmbam.exe0

Faulting application path: mbam.exe1

Faulting module path: mbam.exe2

Report Id: mbam.exe3

Faulting package full name: mbam.exe4

Faulting package-relative application ID: mbam.exe5

 

Error: (06/05/2014 04:24:53 PM) (Source: Application Error) (EventID: 1000) (User: )

Description: Faulting application name: mbam.exe, version: 1.0.0.532, time stamp: 0x53518532

Faulting module name: MSVCR100.dll, version: 10.0.40219.325, time stamp: 0x4df2be1e

Exception code: 0x40000015

Fault offset: 0x0008d6fd

Faulting process id: 0x27e8

Faulting application start time: 0xmbam.exe0

Faulting application path: mbam.exe1

Faulting module path: mbam.exe2

Report Id: mbam.exe3

Faulting package full name: mbam.exe4

Faulting package-relative application ID: mbam.exe5

 

Error: (06/05/2014 04:01:09 PM) (Source: Application Error) (EventID: 1000) (User: )

Description: Faulting application name: mbam.exe, version: 1.0.0.532, time stamp: 0x53518532

Faulting module name: MSVCR100.dll, version: 10.0.40219.325, time stamp: 0x4df2be1e

Exception code: 0x40000015

Fault offset: 0x0008d6fd

Faulting process id: 0x197c

Faulting application start time: 0xmbam.exe0

Faulting application path: mbam.exe1

Faulting module path: mbam.exe2

Report Id: mbam.exe3

Faulting package full name: mbam.exe4

Faulting package-relative application ID: mbam.exe5

 

 

System errors:

=============

Error: (06/05/2014 05:11:20 PM) (Source: bowser) (EventID: 8003) (User: )

Description: The master browser has received a server announcement from the computer STARSHIP

that believes that it is the master browser for the domain on transport NetBT_Tcpip_{1A1D34F5-0457-45B6-85CB-B4A14478CB8D}.

The master browser is stopping or an election is being forced.

 

Error: (06/05/2014 02:38:40 PM) (Source: sptd) (EventID: 4) (User: )

Description: Driver detected an internal error in its data structures for .

 

Error: (06/05/2014 11:03:59 AM) (Source: Service Control Manager) (EventID: 7023) (User: )

Description: The Superfetch service terminated with the following error: 

%%1062

 

Error: (06/05/2014 07:19:28 AM) (Source: DCOM) (EventID: 10005) (User: JASON-PC)

Description: 1053WSearchUnavailable{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}

 

Error: (06/05/2014 07:19:28 AM) (Source: Service Control Manager) (EventID: 7000) (User: )

Description: The Windows Search service failed to start due to the following error: 

%%1053

 

Error: (06/05/2014 07:19:28 AM) (Source: Service Control Manager) (EventID: 7009) (User: )

Description: A timeout was reached (30000 milliseconds) while waiting for the Windows Search service to connect.

 

Error: (06/05/2014 07:19:28 AM) (Source: DCOM) (EventID: 10005) (User: JASON-PC)

Description: 1053WSearchUnavailable{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}

 

Error: (06/05/2014 07:19:28 AM) (Source: Service Control Manager) (EventID: 7000) (User: )

Description: The Windows Search service failed to start due to the following error: 

%%1053

 

Error: (06/05/2014 07:19:28 AM) (Source: Service Control Manager) (EventID: 7009) (User: )

Description: A timeout was reached (30000 milliseconds) while waiting for the Windows Search service to connect.

 

Error: (06/05/2014 07:19:28 AM) (Source: DCOM) (EventID: 10005) (User: JASON-PC)

Description: 1053WSearchUnavailable{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}

 

 

Microsoft Office Sessions:

=========================

Error: (06/05/2014 09:35:58 PM) (Source: Application Error) (EventID: 1000) (User: )

Description: mbam.exe1.0.0.53253518532MSVCR100.dll10.0.40219.3254df2be1e400000150008d6fd78401cf8127a9c1496cC:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exeC:\Program Files (x86)\Malwarebytes Anti-Malware\MSVCR100.dlle84dbf98-ed1a-11e3-82d3-60a44c619e63

 

Error: (06/05/2014 09:22:46 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )

Description: 

Details:

AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol.

 

System Error:

Access is denied.

 

Error: (06/05/2014 08:29:29 PM) (Source: Application Error) (EventID: 1000) (User: )

Description: mbam.exe1.0.0.53253518532MSVCR100.dll10.0.40219.3254df2be1e400000150008d6fd165c01cf811e5ffab265C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exeC:\Program Files (x86)\Malwarebytes Anti-Malware\MSVCR100.dll9e819a72-ed11-11e3-82d3-60a44c619e63

 

Error: (06/05/2014 07:12:55 PM) (Source: Application Error) (EventID: 1000) (User: )

Description: mbam.exe1.0.0.53253518532MSVCR100.dll10.0.40219.3254df2be1e400000150008d6fd22fc01cf8113ade1d601C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exeC:\Program Files (x86)\Malwarebytes Anti-Malware\MSVCR100.dllec6b2028-ed06-11e3-82d3-60a44c619e63

 

Error: (06/05/2014 06:06:12 PM) (Source: Application Error) (EventID: 1000) (User: )

Description: mbam.exe1.0.0.53253518532MSVCR100.dll10.0.40219.3254df2be1e400000150008d6fd239801cf810a5be83031C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exeC:\Program Files (x86)\Malwarebytes Anti-Malware\MSVCR100.dll9a6e238f-ecfd-11e3-82d3-60a44c619e63

 

Error: (06/05/2014 05:01:58 PM) (Source: Application Error) (EventID: 1000) (User: )

Description: mbam.exe1.0.0.53253518532MSVCR100.dll10.0.40219.3254df2be1e400000150008d6fd213c01cf810162bea8faC:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exeC:\Program Files (x86)\Malwarebytes Anti-Malware\MSVCR100.dlla157b61a-ecf4-11e3-82d3-60a44c619e63

 

Error: (06/05/2014 04:30:51 PM) (Source: Application Error) (EventID: 1000) (User: )

Description: mbam.exe1.0.0.53253518532MSVCR100.dll10.0.40219.3254df2be1e400000150008d6fdab001cf80fd09083868C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exeC:\Program Files (x86)\Malwarebytes Anti-Malware\MSVCR100.dll48baf942-ecf0-11e3-82d3-60a44c619e63

 

Error: (06/05/2014 04:29:36 PM) (Source: Application Error) (EventID: 1000) (User: )

Description: mbam.exe1.0.0.53253518532MSVCR100.dll10.0.40219.3254df2be1e400000150008d6fd26e801cf80fcdc1e3d97C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exeC:\Program Files (x86)\Malwarebytes Anti-Malware\MSVCR100.dll1bd1f24b-ecf0-11e3-82d3-60a44c619e63

 

Error: (06/05/2014 04:24:53 PM) (Source: Application Error) (EventID: 1000) (User: )

Description: mbam.exe1.0.0.53253518532MSVCR100.dll10.0.40219.3254df2be1e400000150008d6fd27e801cf80fc33f09648C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exeC:\Program Files (x86)\Malwarebytes Anti-Malware\MSVCR100.dll732e0bba-ecef-11e3-82d3-60a44c619e63

 

Error: (06/05/2014 04:01:09 PM) (Source: Application Error) (EventID: 1000) (User: )

Description: mbam.exe1.0.0.53253518532MSVCR100.dll10.0.40219.3254df2be1e400000150008d6fd197c01cf80f8e3c5632dC:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exeC:\Program Files (x86)\Malwarebytes Anti-Malware\MSVCR100.dll224903fd-ecec-11e3-82d3-60a44c619e63

 

 

==================== Memory info =========================== 

 

Percentage of memory in use: 29%

Total physical RAM: 16331.11 MB

Available physical RAM: 11472.27 MB

Total Pagefile: 32715.11 MB

Available Pagefile: 26751.59 MB

Total Virtual: 131072 MB

Available Virtual: 131071.84 MB

 

==================== Drives ================================

 

Drive c: (WIN7) (Fixed) (Total:917.23 GB) (Free:522 GB) NTFS ==>[system with boot components (obtained from reading drive)]

Drive e: (Extra Drive) (Fixed) (Total:284.09 GB) (Free:131.73 GB) NTFS

 

==================== MBR & Partition Table ==================

 

========================================================

Disk: 0 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: 1265316D)

Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)

Partition 2: (Not Active) - (Size=14 GB) - (Type=1B)

Partition 3: (Not Active) - (Size=917 GB) - (Type=07 NTFS)

 

========================================================

Disk: 1 (MBR Code: Windows 7 or 8) (Size: 298 GB) (Disk ID: 93239DF9)

Partition 1: (Not Active) - (Size=14 GB) - (Type=27)

Partition 2: (Not Active) - (Size=284 GB) - (Type=07 NTFS)

 

==================== End Of Log ============================

Link to post
Share on other sites

  • Root Admin

You have MBAM set to run in Compatibility mode. Please check all the file properties and remove all Compatibility settings and then double check in the Registry that they are not there as well.
 
I'd also recommend removing for the other listed files as well but at least for our program for sure.
 
 
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\appCompatFlags\Layers

    C:\Program Files (x86)\Realtek\Realtek Ethernet Diagnostic Utility\8169Diag.exe


    C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
    C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamdor.exe
    C:\Program Files (x86)\Malwarebytes Anti-Malware\mbampt.exe
    C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
    C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe


HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\appCompatFlags\Layers

    SeaToolsforWindows.exe
 
 
 
Once that is done then please do these items.
 

Please uninstall both of these programs out of the TEMP folder. No applications should ever be installed in the TEMP folder. If you want them then reinstall them in their own folders.
cpuz136
GPU-Z


Please go into Control Panel, Add/Remove and uninstall ALL versions of Java and then run the following
Please download JavaRa-1.16 and save it to your computer.

  • Double click to open the zip file and then select all and choose Copy.
  • Create a new folder on your Desktop named RemoveJava and paste the files into this new folder.
  • Quit all browsers and other running applications.
  • Right-click on JavaRa.exe in RemoveJava folder and choose Run as administrator to start the program.
  • From the drop-down menu, choose English and click on Select.
  • JavaRa will open; click on Remove Older Versions to remove the older versions of Java installed on your computer.
  • Click Yes when prompted. When JavaRa is done, a notice will appear that a logfile has been produced. Click OK.
  • A logfile will pop up. Please save it to a convenient location and post it in your next reply.

 

 

Next, Please Run TFC by OldTimer to clear temporary files:

  • Download TFC from here and save it to your desktop.
  • http://oldtimer.geekstogo.com/TFC.exe
  • Close any open programs and Internet browsers.
  • Double click TFC.exe to run it on XP (for Vista and Windows 7 right click and choose "Run as administrator") and once it opens click on the Start button on the lower left of the program to allow it to begin cleaning.
  • Please be patient as clearing out temp files may take a while.
  • Once it completes you may be prompted to restart your computer, please do so.
  • Once it's finished you may delete TFC.exe from your desktop or save it for later use for the cleaning of temporary files.
Link to post
Share on other sites

JavaRa log:

 

JavaRa 1.16 Removal Log.
 
Report follows after line.
 
------------------------------------
 
The JavaRa removal process was started on Fri Jun 06 09:45:32 2014
 
There was an error removing C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-ABCDEFFDCBA}. The error returned was 124.
 
There was an error removing C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0001-ABCDEFFDCBA}. The error returned was 124.
 
There was an error removing C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0002-ABCDEFFDCBA}. The error returned was 124.
 
There was an error removing C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0003-ABCDEFFDCBA}. The error returned was 124.
 
There was an error removing C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0004-ABCDEFFDCBA}. The error returned was 124.
 
There was an error removing C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0005-ABCDEFFDCBA}. The error returned was 124.
 
There was an error removing C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0006-ABCDEFFDCBA}. The error returned was 124.
 
There was an error removing C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0007-ABCDEFFDCBA}. The error returned was 124.
 
There was an error removing C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0008-ABCDEFFDCBA}. The error returned was 124.
 
There was an error removing C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0009-ABCDEFFDCBA}. The error returned was 124.
 
There was an error removing C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0010-ABCDEFFDCBA}. The error returned was 124.
 
There was an error removing C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0011-ABCDEFFDCBA}. The error returned was 124.
 
There was an error removing C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0012-ABCDEFFDCBA}. The error returned was 124.
 
There was an error removing C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0013-ABCDEFFDCBA}. The error returned was 124.
 
There was an error removing C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0014-ABCDEFFDCBA}. The error returned was 124.
 
There was an error removing C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0015-ABCDEFFDCBA}. The error returned was 124.
 
There was an error removing C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0016-ABCDEFFDCBA}. The error returned was 124.
 
There was an error removing C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0017-ABCDEFFDCBA}. The error returned was 124.
 
There was an error removing C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0018-ABCDEFFDCBA}. The error returned was 124.
 
There was an error removing C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0019-ABCDEFFDCBA}. The error returned was 124.
 
There was an error removing C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0020-ABCDEFFDCBA}. The error returned was 124.
 
There was an error removing C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0021-ABCDEFFDCBA}. The error returned was 124.
 
There was an error removing C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0022-ABCDEFFDCBA}. The error returned was 124.
 
Found and removed: SOFTWARE\Classes\CLSID\{08B0E5C0-4FCB-11CF-AAA5-00401C608501}
 
Found and removed: SOFTWARE\Classes\CLSID\{5852F5ED-8BF4-11D4-A245-0080C6F74284}
 
Found and removed: SOFTWARE\Classes\CLSID\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}
 
Found and removed: SOFTWARE\Classes\CLSID\{DBC80044-A445-435b-BC74-9C25C1C588A9}
 
Found and removed: SOFTWARE\Classes\Interface\{5852F5EC-8BF4-11D4-A245-0080C6F74284}
 
Found and removed: SOFTWARE\Classes\MIME\Database\Content Type\application/java-deployment-toolkit
 
Found and removed: SOFTWARE\Classes\TypeLib\{5852F5E0-8BF4-11D4-A245-0080C6F74284}
 
Found and removed: SOFTWARE\Classes\JavaWebStart.isInstalled
 
Found and removed: SOFTWARE\Classes\JavaWebStart.isInstalled.1.7.0.0
 
Found and removed: SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
 
Found and removed: SOFTWARE\JavaSoft
 
Found and removed: SOFTWARE\JreMetrics
 
Found and removed: SOFTWARE\MozillaPlugins
 
------------------------------------
 
Finished reporting.
Link to post
Share on other sites

  • 1 month later...
  • Root Admin

Due to the lack of feedback this topic is closed to prevent others from posting here. If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this thread with your request. This applies only to the originator of this thread.

Other members who need assistance please start your own topic in a new thread. Thanks!

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.