PrivateDuckii Posted June 13, 2014 ID:841001 Share Posted June 13, 2014 Hey there. As with this thread, my graphics card usage sits at 99-100% while idling and google searches brought up this thread. As requested, the 2 text files that FRST generated.Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 12-06-2014 02Ran by Duckii (administrator) on DUCKII-PC on 13-06-2014 12:39:33Running from C:\Users\Duckii\DownloadsPlatform: Windows 8.1 Pro (X64) OS Language: English(US)Internet Explorer Version 11Boot Mode: NormalThe only official download link for FRST:Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/ Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/ Download link from any site other than Bleeping Computer is unpermitted or outdated.See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/==================== Processes (Whitelisted) =================(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe(Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieSvc.exe(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe() C:\Windows\SysWOW64\ASGT.exe(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe(Foxit Corporation) C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe(Microsoft Corporation) C:\Windows\System32\dasHost.exe(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe() C:\Windows\SysWOW64\PnkBstrA.exe(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe(ASUS) C:\Program Files (x86)\ASUS\GPU Tweak\GPUTweak.exe(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe(ASUS) C:\Program Files (x86)\ASUS\GPU Tweak\Monitor.exe() C:\Program Files\AskMrRobot\AmrTray.exe(Valve Corporation) F:\Steam\Steam.exe(Blizzard Entertainment) C:\ProgramData\Battle.net\Agent\Agent.2880\Agent.exe(Blizzard Entertainment) D:\Program Files\Blizzard\Battle.net\Battle.net.4710\Battle.net.exe(Electronic Arts) D:\Origin\Origin.exe() C:\wm\wm.exe(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe(Dropbox, Inc.) C:\Users\Duckii\AppData\Roaming\Dropbox\bin\Dropbox.exe(Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe(Razer USA Ltd) C:\Program Files (x86)\Razer\Nostromo\RazerNostromoSysTray.exe(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe(Apple Inc.) D:\Program Files\iTunes\iTunesHelper.exe(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe(Electronic Arts) D:\Origin\OriginClientService.exe(TeamSpeak Systems GmbH) C:\Program Files (x86)\TeamSpeak 3 Client\ts3client_win32.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe(Farbar) C:\Users\Duckii\Downloads\FRST64 (1).exe==================== Registry (Whitelisted) ==================HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500208 2010-03-06] (Adobe Systems Incorporated)HKLM\...\Run: [Ask Mr. Robot] => C:\Program Files\AskMrRobot\AmrTray.exe [792576 2014-02-03] ()HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2352072 2014-05-30] (NVIDIA Corporation)HKLM\...\Run: [ShadowPlay] => C:\WINDOWS\system32\nvspcap64.dll [1279480 2014-05-30] (NVIDIA Corporation)HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [43848 2014-02-06] (Apple Inc.)HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)HKLM-x32\...\Run: [AdobeCS5ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [406992 2010-02-22] (Adobe Systems Incorporated)HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.)HKLM-x32\...\Run: [] => [X]HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [585048 2014-04-17] (Razer Inc.)HKLM-x32\...\Run: [Razer Nostromo Driver] => C:\Program Files (x86)\Razer\Nostromo\RazerNostromoSysTray.exe [979400 2012-11-16] (Razer USA Ltd)HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [3814736 2014-05-13] (LogMeIn Inc.)HKLM-x32\...\Run: [iTunesHelper] => D:\Program Files\iTunes\iTunesHelper.exe [152392 2014-05-26] (Apple Inc.)HKU\S-1-5-21-3794150929-2800894002-4186101125-1001\...\Run: [Steam] => F:\Steam\steam.exe [1754816 2014-05-30] (Valve Corporation)HKU\S-1-5-21-3794150929-2800894002-4186101125-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3673696 2013-08-01] (Disc Soft Ltd)HKU\S-1-5-21-3794150929-2800894002-4186101125-1001\...\Run: [DS3 Tool] => C:\Program Files\MotioninJoy\ds3\DS3_Tool.exe [104768 2012-05-12] (www.motioninjoy.com)HKU\S-1-5-21-3794150929-2800894002-4186101125-1001\...\Run: [Battle.net] => D:\Program Files\Blizzard\Battle.net\Battle.net Launcher.exe [2907184 2014-06-11] (Blizzard Entertainment)HKU\S-1-5-21-3794150929-2800894002-4186101125-1001\...\Run: [EADM] => D:\Origin\Origin.exe [3588952 2014-04-17] (Electronic Arts)HKU\S-1-5-21-3794150929-2800894002-4186101125-1001\...\Run: [SandboxieControl] => C:\Program Files\Sandboxie\SbieCtrl.exe [759496 2014-01-18] (Sandboxie Holdings, LLC)HKU\S-1-5-21-3794150929-2800894002-4186101125-1001\...\Run: [lesupd] => C:\wm\lesupd.exeHKU\S-1-5-21-3794150929-2800894002-4186101125-1001\...\Run: [wm] => C:\wm\wm.exe [5892096 2014-05-26] ()Startup: C:\Users\Duckii\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CurseClientStartup.ccip ()Startup: C:\Users\Duckii\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnkShortcutTarget: Dropbox.lnk -> C:\Users\Duckii\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)==================== Internet (Whitelisted) ====================HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.ninemsn.com.au/?ocid=iehpHKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xA88963EE7FF2CE01HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-AUBHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)Toolbar: HKLM - No Name - {ae07101b-46d4-4a98-af68-0333ea26e113} - No FileToolbar: HKLM - No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No FileToolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No FileToolbar: HKLM-x32 - No Name - {ae07101b-46d4-4a98-af68-0333ea26e113} - No FileHosts: There are more than one entry in Hosts. See Hosts section of Addition.txtTcpip\Parameters: [DhcpNameServer] 192.168.0.1FireFox:========FF ProfilePath: C:\Users\Duckii\AppData\Roaming\Mozilla\Firefox\Profiles\re0fqzhq.defaultFF NewTab: about:blankFF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll ()FF Plugin: @java.com/DTPlugin,version=10.55.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)FF Plugin: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - D:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)FF Plugin-x32: @adobe.com/FlashPlayer - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll ()FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1209149.dll (Adobe Systems, Inc.)FF Plugin-x32: @Apple.com/iTunes,version=1.0 - D:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()FF Plugin-x32: @esn/npbattlelog,version=2.4.0 - C:\Program Files (x86)\Battlelog Web Plugins\2.4.0\npbattlelog.dll (EA Digital Illusions CE AB)FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation)FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation)FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)FF Plugin-x32: @videolan.org/vlc,version=2.1.0 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)FF Plugin-x32: @videolan.org/vlc,version=2.1.1 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)FF Plugin-x32: @videolan.org/vlc,version=2.1.2 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)FF Plugin-x32: @videolan.org/vlc,version=2.1.3 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Duckii\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)FF Plugin HKCU: ubisoft.com/uplaypc - C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll ()FF user.js: detected! => C:\Users\Duckii\AppData\Roaming\Mozilla\Firefox\Profiles\re0fqzhq.default\user.jsFF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.)FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.)FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.)FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.)FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.)FF Extension: Hola Unblocker - C:\Users\Duckii\AppData\Roaming\Mozilla\Firefox\Profiles\re0fqzhq.default\Extensions\jid1-4P0kohSJxU1qGg@jetpack [2014-01-17]FF Extension: Reddit Enhancement Suite - C:\Users\Duckii\AppData\Roaming\Mozilla\Firefox\Profiles\re0fqzhq.default\Extensions\jid1-xUfzOsOFlzSOXg@jetpack.xpi [2013-09-05]FF Extension: Adblock Plus - C:\Users\Duckii\AppData\Roaming\Mozilla\Firefox\Profiles\re0fqzhq.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-09-05]FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-09-13]Chrome: =======CHR HomePage: hxxp://www.google.comCHR StartupUrls: "hxxp://www.google.com/"CHR DefaultSearchKeyword: google.com.auCHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\PepperFlash\pepflashplayer.dll ()CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewerCHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\ppGoogleNaClPluginChrome.dll ()CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\pdf.dll ()CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation)CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation)CHR Plugin: (Foxit Reader Plugin for Mozilla) - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll No FileCHR Plugin: (Java Deployment Toolkit 7.0.450.18) - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)CHR Plugin: (Java(TM) Platform SE 7 U45) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)CHR Plugin: (VLC Web Plugin) - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)CHR Plugin: (Unity Player) - C:\Users\Duckii\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll No FileCHR Plugin: (iTunes Application Detector) - D:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()CHR Extension: (BetterTTV) - C:\Users\Duckii\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2014-01-22]CHR Extension: (Google Docs) - C:\Users\Duckii\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-09-13]CHR Extension: (Google Drive) - C:\Users\Duckii\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-09-13]CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Duckii\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-05-26]CHR Extension: (YouTube) - C:\Users\Duckii\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-09-13]CHR Extension: (Adblock Plus) - C:\Users\Duckii\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-01-19]CHR Extension: (Google Search) - C:\Users\Duckii\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-09-13]CHR Extension: (Hola Better Internet) - C:\Users\Duckii\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkojfkhlekighikafcpjkiklfbnlmeio [2014-05-31]CHR Extension: (avast! Online Security) - C:\Users\Duckii\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-04-08]CHR Extension: (Imgur to Gfycat) - C:\Users\Duckii\AppData\Local\Google\Chrome\User Data\Default\Extensions\idnninnhcleaikepmmomfnknbldalnjj [2014-03-12]CHR Extension: (Reddit Enhancement Suite) - C:\Users\Duckii\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbmfpngjjgdllneeigpgjifpgocmfgmb [2014-01-19]CHR Extension: (Google Wallet) - C:\Users\Duckii\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-10-25]CHR Extension: (Enhanced Steam) - C:\Users\Duckii\AppData\Local\Google\Chrome\User Data\Default\Extensions\okadibdjfemgnhjiembecghcbfknbfhg [2014-05-04]CHR Extension: (Gmail) - C:\Users\Duckii\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-09-13]==================== Services (Whitelisted) =================R2 ASGT; C:\Windows\SysWOW64\ASGT.exe [55296 2012-01-17] () [File not signed]S3 EasyAntiCheat; C:\WINDOWS\SysWOW64\EasyAntiCheat.exe [93048 2014-05-28] (EasyAntiCheat Ltd)R2 FoxitCloudUpdateService; C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe [242216 2014-05-15] (Foxit Corporation)R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [377616 2014-04-15] (LogMeIn, Inc.)S3 npggsvc; C:\WINDOWS\SysWOW64\GameMon.des [4795672 2013-11-26] (INCA Internet Co., Ltd.)R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1631008 2014-05-30] (NVIDIA Corporation)R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21055432 2014-05-30] (NVIDIA Corporation)R2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [76888 2014-06-11] ()R2 SbieSvc; C:\Program Files\Sandboxie\SbieSvc.exe [187592 2014-01-18] (Sandboxie Holdings, LLC)S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-03-24] (Microsoft Corporation)R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-03-24] (Microsoft Corporation)==================== Drivers (Whitelisted) ====================S0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra)S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [21160 2012-09-23] (Advanced Micro Devices, Inc.)R3 athr; C:\Windows\system32\DRIVERS\athwnx.sys [3680256 2013-06-18] (Qualcomm Atheros Communications, Inc.)S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Windows (R) Win 7 DDK provider)R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2014-01-06] (Disc Soft Ltd)R3 hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [46136 2014-05-13] (LogMeIn Inc.)S3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-31] (Intel Corporation)S3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-26] (Intel Corporation)S0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-10] (Intel Corporation)R0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39768 2014-01-07] (Microsoft Corporation)R3 IOMap; C:\WINDOWS\system32\drivers\IOMap64.sys [24824 2013-02-19] (ASUSTeK Computer Inc.)S3 kbldfltr; C:\Windows\System32\drivers\kbldfltr.sys [22272 2013-11-14] (Microsoft Corporation)S0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation)R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [122584 2014-06-13] (Malwarebytes Corporation)R3 MTsensor; C:\Windows\system32\DRIVERS\ASACPI.sys [17280 2013-05-17] ()R3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation)S3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation)R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20256 2014-05-30] (NVIDIA Corporation)R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [40392 2014-04-01] (NVIDIA Corporation)S3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [924504 2014-02-22] (Microsoft Corporation)R3 rzendpt; C:\Windows\System32\drivers\rzendpt.sys [39080 2014-04-09] (Razer Inc)R3 rzjoystk; C:\Windows\System32\drivers\rzjoystk.sys [19968 2012-10-18] (Razer USA Ltd)R3 rzjstk; C:\Windows\System32\drivers\rzjstk.sys [27816 2014-04-09] (Razer Inc)R3 rzkeypadendpt; C:\Windows\System32\drivers\rzkeypadendpt.sys [32936 2014-04-09] (Razer Inc)S3 RZMAELSTROMVADService; C:\Windows\system32\drivers\RzMaelstromVAD.sys [40696 2013-11-21] (Windows (R) Win 7 DDK provider)R3 SbieDrv; C:\Program Files\Sandboxie\SbieDrv.sys [202600 2014-01-18] (Sandboxie Holdings, LLC)S3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146776 2014-01-07] (Microsoft Corporation)S0 stornvme; C:\Windows\System32\drivers\stornvme.sys [57176 2013-11-14] (Microsoft Corporation)S3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation)R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-03-24] (Microsoft Corporation)R0 Wof; C:\Windows\System32\Drivers\Wof.sys [157016 2014-03-13] (Microsoft Corporation)S3 xb1usb; C:\Windows\System32\drivers\xb1usb.sys [34016 2014-05-27] (Microsoft Corporation)==================== NetSvcs (Whitelisted) ======================================= One Month Created Files and Folders ========2014-06-13 12:39 - 2014-06-13 12:40 - 00022519 _____ () C:\Users\Duckii\Downloads\FRST.txt2014-06-13 12:39 - 2014-06-13 12:39 - 00000000 ____D () C:\FRST2014-06-13 12:38 - 2014-06-13 12:38 - 00122584 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys2014-06-13 12:38 - 2014-06-13 12:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware2014-06-13 12:38 - 2014-06-13 12:38 - 00000000 ____D () C:\ProgramData\Malwarebytes2014-06-13 12:38 - 2014-06-13 12:38 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware2014-06-13 12:38 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys2014-06-13 12:38 - 2014-05-12 07:26 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys2014-06-13 12:38 - 2014-05-12 07:25 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys2014-06-13 12:37 - 2014-06-13 12:37 - 02081792 _____ (Farbar) C:\Users\Duckii\Downloads\FRST64 (1).exe2014-06-13 12:32 - 2014-06-13 12:37 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Duckii\Downloads\mbam-setup-2.0.2.1012 (1).exe2014-06-13 12:24 - 2014-06-13 12:25 - 02042088 _____ () C:\Users\Duckii\Downloads\FRST64.exe2014-06-12 10:57 - 2014-06-12 10:58 - 04181856 _____ (Kaspersky Lab ZAO) C:\Users\Duckii\Downloads\tdsskiller.exe2014-06-11 18:52 - 2014-06-13 04:30 - 00000000 ____D () C:\Users\Duckii\Documents\Resume2014-06-11 17:27 - 2014-06-11 17:41 - 00000000 ____D () C:\Users\Duckii\Documents\BFH.Beta2014-06-11 17:27 - 2014-06-11 17:27 - 02247960 _____ () C:\Users\Duckii\Downloads\battlelog-web-plugins_2.4.0_141.exe2014-06-11 17:27 - 2014-06-11 17:27 - 00000000 ____D () C:\Users\Duckii\AppData\Local\ESN2014-06-11 17:27 - 2014-06-11 17:27 - 00000000 ____D () C:\Program Files (x86)\Battlelog Web Plugins2014-06-11 15:27 - 2014-05-30 18:21 - 23414784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll2014-06-11 15:27 - 2014-05-30 17:45 - 02768384 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll2014-06-11 15:27 - 2014-05-30 17:28 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll2014-06-11 15:27 - 2014-05-30 17:20 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll2014-06-11 15:27 - 2014-05-30 17:18 - 17271296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll2014-06-11 15:27 - 2014-05-30 17:08 - 05782528 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll2014-06-11 15:27 - 2014-05-30 17:06 - 00452096 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll2014-06-11 15:27 - 2014-05-30 16:46 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll2014-06-11 15:27 - 2014-05-30 16:44 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll2014-06-11 15:27 - 2014-05-30 16:43 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll2014-06-11 15:27 - 2014-05-30 16:38 - 02179072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll2014-06-11 15:27 - 2014-05-30 16:35 - 00608768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe2014-06-11 15:27 - 2014-05-30 16:29 - 00631808 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll2014-06-11 15:27 - 2014-05-30 16:27 - 00592896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll2014-06-11 15:27 - 2014-05-30 16:23 - 02040832 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl2014-06-11 15:27 - 2014-05-30 16:16 - 00368128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll2014-06-11 15:27 - 2014-05-30 16:04 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll2014-06-11 15:27 - 2014-05-30 16:02 - 00242688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll2014-06-11 15:27 - 2014-05-30 15:56 - 04244992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll2014-06-11 15:27 - 2014-05-30 15:56 - 02266112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll2014-06-11 15:27 - 2014-05-30 15:54 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll2014-06-11 15:27 - 2014-05-30 15:49 - 01964544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl2014-06-11 15:27 - 2014-05-30 15:43 - 13522944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll2014-06-11 15:27 - 2014-05-30 15:40 - 11725312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll2014-06-11 15:27 - 2014-05-30 15:30 - 01398272 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll2014-06-11 15:27 - 2014-05-30 15:21 - 01790976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll2014-06-11 15:27 - 2014-05-30 15:15 - 01143296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll2014-06-11 15:27 - 2014-05-30 15:13 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll2014-06-11 15:27 - 2014-05-30 15:13 - 00704512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieUnatt.exe2014-06-11 15:24 - 2014-06-11 15:24 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieUnatt.exe2014-06-11 15:24 - 2014-06-11 15:24 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe2014-06-11 15:24 - 2014-06-11 15:24 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieetwproxystub.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwproxystub.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollectorres.dll2014-06-11 15:24 - 2014-05-19 14:31 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvcfg.exe2014-06-11 15:24 - 2014-05-19 14:21 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe2014-06-11 15:24 - 2014-05-19 13:23 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvinst.exe2014-06-11 15:24 - 2014-05-10 11:46 - 02151424 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll2014-06-11 15:24 - 2014-05-10 11:22 - 01312256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll2014-06-11 15:24 - 2014-05-09 07:06 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ks.sys2014-06-11 15:24 - 2014-05-05 12:02 - 03360256 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll2014-06-11 15:24 - 2014-05-03 15:14 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe2014-06-11 15:24 - 2014-05-03 12:21 - 00249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll2014-06-11 15:24 - 2014-05-03 12:07 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll2014-06-11 15:24 - 2014-05-03 11:41 - 00921088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll2014-06-11 15:24 - 2014-05-03 11:38 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll2014-06-11 15:24 - 2014-04-30 19:16 - 01336648 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll2014-06-11 15:24 - 2014-04-30 12:43 - 01975296 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll2014-06-11 15:24 - 2014-04-30 12:26 - 01345536 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll2014-06-11 15:24 - 2014-04-30 11:51 - 01064448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll2014-06-11 15:24 - 2014-04-30 11:47 - 01509888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll2014-06-11 15:24 - 2014-04-03 15:59 - 02518872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys2014-06-11 15:24 - 2014-04-03 15:59 - 00428888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS2014-06-11 15:23 - 2014-06-11 15:23 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll2014-06-11 15:23 - 2014-05-01 21:31 - 03048904 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe2014-06-11 15:23 - 2014-05-01 21:31 - 00055328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wpcfltr.sys2014-06-11 15:23 - 2014-05-01 15:14 - 03118080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll2014-06-11 15:23 - 2014-05-01 15:05 - 02861056 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebSync.dll2014-06-11 15:23 - 2014-05-01 14:51 - 02344448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll2014-06-11 15:23 - 2014-05-01 13:24 - 02834944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpccpl.dll2014-06-11 06:17 - 2014-06-11 06:17 - 00000850 _____ () C:\Users\Public\Desktop\Battlefield Hardline Beta.lnk2014-06-11 06:17 - 2014-06-11 06:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield Hardline Beta2014-06-10 11:57 - 2014-06-10 11:58 - 00000000 ____D () C:\Users\Duckii\Documents\Dawngate2014-06-10 04:08 - 2014-06-10 04:09 - 17009768 _____ (Electronic Arts, Inc.) C:\Users\Duckii\Downloads\OriginThinSetup.exe2014-06-10 03:35 - 2014-06-10 11:58 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\DawngateData2014-06-10 03:35 - 2014-06-10 03:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dawngate2014-06-10 03:34 - 2014-06-10 03:34 - 09269248 _____ () C:\Users\Duckii\Downloads\Dawngate_en_us.msi2014-06-08 12:46 - 2014-06-08 12:46 - 09561964 _____ () C:\Users\Duckii\Downloads\cliffhorse.zip2014-06-06 11:59 - 2014-06-06 11:59 - 00000000 __SHD () C:\Users\Duckii\AppData\Local\EmieUserList2014-06-06 11:59 - 2014-06-06 11:59 - 00000000 __SHD () C:\Users\Duckii\AppData\Local\EmieSiteList2014-06-06 11:56 - 2013-02-19 18:02 - 00024824 _____ (ASUSTeK Computer Inc.) C:\WINDOWS\system32\Drivers\IOMap64.sys2014-06-06 01:02 - 2014-06-06 01:02 - 00000000 ____D () C:\Program Files\Microsoft Xbox One Controller for Windows2014-06-06 01:01 - 2014-06-06 01:01 - 02854912 _____ () C:\Users\Duckii\Downloads\xb1usb.11059.0.140526x64.msi2014-06-05 16:30 - 2014-06-05 16:30 - 00000572 _____ () C:\Users\Public\Desktop\Unity.lnk2014-06-05 16:21 - 2014-06-05 16:21 - 00246759 _____ () C:\Users\Duckii\Downloads\ZO XY Pokemon Icons.zip2014-06-05 15:45 - 2014-06-05 16:24 - 1175723520 _____ (Unity Technologies ApS) C:\Users\Duckii\Downloads\UnitySetup-4.5.0.exe2014-06-05 15:40 - 2014-06-05 15:40 - 00000000 ____D () C:\Users\Duckii\AppData\Local\VS Revo Group2014-06-05 15:40 - 2014-06-05 15:40 - 00000000 ____D () C:\ProgramData\VS Revo Group2014-06-05 15:40 - 2014-06-05 15:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro2014-06-05 15:40 - 2014-06-05 15:40 - 00000000 ____D () C:\Program Files\VS Revo Group2014-06-05 15:40 - 2009-12-30 10:21 - 00031800 _____ (VS Revo Group) C:\WINDOWS\system32\Drivers\revoflt.sys2014-06-05 15:39 - 2014-06-05 15:40 - 10619688 _____ (VS Revo Group ) C:\Users\Duckii\Downloads\RevoUninProSetup.exe2014-06-05 03:41 - 2014-06-05 03:41 - 00257100 _____ () C:\Users\Duckii\Downloads\DaxtarsShutdownTimer_v1.0.7.zip2014-06-05 03:41 - 2014-06-05 03:41 - 00000000 ____D () C:\Users\Duckii\Documents\DaxtarsShutdownTimer_v1.0.72014-06-05 03:05 - 2014-06-05 03:06 - 00000510 _____ () C:\Users\Duckii\Downloads\Pokemon Silver.zip2014-06-05 03:03 - 2014-06-05 03:03 - 00059881 _____ () C:\Users\Duckii\Downloads\lips102.zip2014-06-05 03:00 - 2014-06-05 03:00 - 00181514 _____ () C:\Users\Duckii\Downloads\Dark Energy Beta 4.0.zip2014-06-05 02:29 - 2014-06-05 02:30 - 00000000 ____D () C:\Users\Duckii\Documents\Pokemon2014-06-05 02:22 - 2014-06-05 02:27 - 35176093 _____ () C:\Users\Duckii\Downloads\Pokemon_Survival_Island_v112.zip2014-06-05 02:21 - 2014-06-05 02:26 - 35432863 _____ () C:\Users\Duckii\Downloads\Pokemon_Survival_Island_v112b.zip2014-06-05 02:20 - 2014-06-05 02:28 - 76247481 _____ () C:\Users\Duckii\Downloads\Sage Recovery.rar2014-06-05 01:57 - 2014-06-05 02:06 - 117663109 _____ () C:\Users\Duckii\Downloads\Beta15.exe2014-06-03 16:26 - 2014-06-03 16:26 - 00039432 _____ () C:\Users\Duckii\Downloads\What the censored.txt2014-06-03 13:59 - 2014-06-03 14:00 - 44199212 _____ () C:\Users\Duckii\Downloads\Pentakill-SmiteandIgnite.zip2014-06-02 21:24 - 2014-05-30 07:07 - 01715176 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspbridge64.dll2014-06-02 21:24 - 2014-05-30 07:07 - 01291232 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspbridge.dll2014-06-02 21:12 - 2014-04-18 22:57 - 00032600 _____ (Microsoft Corporation) C:\WINDOWS\system32\ploptin.dll2014-06-02 21:12 - 2014-04-18 22:44 - 01466856 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll2014-06-02 21:12 - 2014-04-18 21:29 - 01200288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll2014-06-02 21:12 - 2014-04-18 17:44 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\energyprov.dll2014-06-02 21:12 - 2014-04-18 17:32 - 13287936 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll2014-06-02 21:12 - 2014-04-18 16:58 - 11792384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll2014-06-02 21:12 - 2014-04-18 16:32 - 00805376 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll2014-06-02 21:12 - 2014-04-18 16:21 - 01126912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll2014-06-02 21:12 - 2014-04-18 16:09 - 08652800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll2014-06-02 21:12 - 2014-04-18 15:51 - 00836608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll2014-06-02 21:12 - 2014-04-18 15:49 - 05833216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll2014-06-02 21:12 - 2014-04-14 17:20 - 00324888 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll2014-06-02 21:12 - 2014-04-14 16:01 - 00285144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll2014-06-02 21:12 - 2014-04-11 12:51 - 00250368 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll2014-06-02 21:12 - 2014-04-11 12:23 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpencom.dll2014-06-02 21:12 - 2014-04-11 11:30 - 00449536 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll2014-06-02 21:12 - 2014-04-09 19:53 - 00337240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys2014-06-02 21:12 - 2014-04-09 14:39 - 00191488 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpchttp.dll2014-06-02 21:12 - 2014-04-09 13:44 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpchttp.dll2014-06-02 21:12 - 2014-04-09 12:35 - 01411584 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll2014-06-02 21:12 - 2014-04-09 11:33 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll2014-06-02 21:12 - 2014-04-08 10:01 - 00589656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys2014-06-02 21:12 - 2014-04-07 00:34 - 00372568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys2014-06-02 21:12 - 2014-04-07 00:34 - 00275800 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys2014-06-02 21:12 - 2014-04-07 00:32 - 00125496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll2014-06-02 21:12 - 2014-04-07 00:31 - 21268952 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll2014-06-02 21:12 - 2014-04-07 00:30 - 00201920 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll2014-06-02 21:12 - 2014-04-07 00:24 - 00360792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys2014-06-02 21:12 - 2014-04-07 00:20 - 02140888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll2014-06-02 21:12 - 2014-04-07 00:20 - 01403856 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll2014-06-02 21:12 - 2014-04-07 00:20 - 01379064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll2014-06-02 21:12 - 2014-04-07 00:20 - 00881616 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll2014-06-02 21:12 - 2014-04-07 00:20 - 00765408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll2014-06-02 21:12 - 2014-04-07 00:20 - 00609448 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll2014-06-02 21:12 - 2014-04-07 00:20 - 00491744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll2014-06-02 21:12 - 2014-04-07 00:20 - 00467496 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll2014-06-02 21:12 - 2014-04-07 00:20 - 00463256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll2014-06-02 21:12 - 2014-04-07 00:20 - 00364640 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll2014-06-02 21:12 - 2014-04-07 00:20 - 00244880 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe2014-06-02 21:12 - 2014-04-07 00:20 - 00233912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll2014-06-02 21:12 - 2014-04-07 00:20 - 00028408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfpmp.exe2014-06-02 21:12 - 2014-04-06 23:23 - 00098584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll2014-06-02 21:12 - 2014-04-06 23:22 - 18755672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll2014-06-02 21:12 - 2014-04-06 23:22 - 00178184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVideoDSP.dll2014-06-02 21:12 - 2014-04-06 23:16 - 02144984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll2014-06-02 21:12 - 2014-04-06 23:16 - 01209616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll2014-06-02 21:12 - 2014-04-06 23:16 - 00707048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll2014-06-02 21:12 - 2014-04-06 23:16 - 00669856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll2014-06-02 21:12 - 2014-04-06 23:16 - 00518544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll2014-06-02 21:12 - 2014-04-06 23:16 - 00406504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll2014-06-02 21:12 - 2014-04-06 23:16 - 00387896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll2014-06-02 21:12 - 2014-04-06 23:16 - 00326024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll2014-06-02 21:12 - 2014-04-06 23:16 - 00305768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll2014-06-02 21:12 - 2014-04-06 22:10 - 04190720 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys2014-06-02 21:12 - 2014-04-06 20:58 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\srclient.dll2014-06-02 21:12 - 2014-04-06 20:51 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll2014-06-02 21:12 - 2014-04-06 20:33 - 00335872 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe2014-06-02 21:12 - 2014-04-06 20:24 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\rstrui.exe2014-06-02 21:12 - 2014-04-06 20:06 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srclient.dll2014-06-02 21:12 - 2014-04-06 19:55 - 16872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll2014-06-02 21:12 - 2014-04-06 19:54 - 12711424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll2014-06-02 21:12 - 2014-04-06 19:26 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll2014-06-02 21:12 - 2014-04-06 19:20 - 00201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll2014-06-02 21:12 - 2014-04-06 19:01 - 00834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll2014-06-02 21:12 - 2014-04-06 18:52 - 00955904 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll2014-06-02 21:12 - 2014-04-06 18:51 - 01230336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll2014-06-02 21:12 - 2014-04-06 18:37 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll2014-06-02 21:12 - 2014-04-06 18:36 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll2014-06-02 21:12 - 2014-04-06 18:05 - 01222656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll2014-06-02 21:12 - 2014-04-06 17:59 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll2014-06-02 21:12 - 2014-04-03 16:12 - 02124840 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll2014-06-02 21:12 - 2014-04-03 16:12 - 00307304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll2014-06-02 21:12 - 2014-04-03 16:12 - 00130144 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll2014-06-02 21:12 - 2014-04-03 12:03 - 00230808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll2014-06-02 21:12 - 2014-04-03 12:03 - 00111528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpapi.dll2014-06-02 21:12 - 2014-04-03 11:53 - 01797896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll2014-06-02 21:12 - 2014-04-03 10:53 - 04269056 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll2014-06-02 21:12 - 2014-04-03 10:53 - 00677376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys2014-06-02 21:12 - 2014-04-03 10:51 - 01584128 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll2014-06-02 21:12 - 2014-04-03 10:23 - 00563200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys2014-06-02 21:12 - 2014-04-03 10:23 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys2014-06-02 21:12 - 2014-04-03 10:23 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tlscsp.dll2014-06-02 21:12 - 2014-04-03 10:22 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\tlscsp.dll2014-06-02 21:12 - 2014-04-01 14:23 - 00384856 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys2014-06-02 21:12 - 2014-03-31 13:42 - 07425368 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe2014-06-02 21:12 - 2014-03-31 08:41 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8thk.dll2014-06-02 21:12 - 2014-03-31 08:01 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll2014-06-02 21:12 - 2014-03-31 07:43 - 00761856 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll2014-06-02 21:12 - 2014-03-31 06:54 - 01308160 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll2014-06-02 21:12 - 2014-03-31 06:49 - 01287168 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll2014-06-02 21:12 - 2014-03-31 06:35 - 01029120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll2014-06-02 21:12 - 2014-03-31 06:11 - 00721408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll2014-06-02 21:12 - 2014-03-31 05:47 - 00872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe2014-06-02 21:12 - 2014-03-28 23:58 - 00407016 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe2014-06-02 21:12 - 2014-03-27 14:16 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys2014-06-02 21:12 - 2014-03-27 13:36 - 00281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll2014-06-02 21:12 - 2014-03-27 12:59 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll2014-06-02 21:12 - 2014-03-27 12:48 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll2014-06-02 21:12 - 2014-03-27 12:19 - 00313344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll2014-06-02 21:12 - 2014-03-27 11:46 - 00323072 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll2014-06-02 21:12 - 2014-03-27 11:15 - 00718336 _____ (Microsoft Corporation) C:\WINDOWS\system32\swprv.dll2014-06-02 21:12 - 2014-03-27 11:10 - 01436160 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe2014-06-02 21:12 - 2014-03-25 06:58 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys2014-06-02 21:12 - 2014-03-21 12:14 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\tscfgwmi.dll2014-06-02 21:12 - 2014-03-20 11:48 - 00263424 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe2014-06-02 21:12 - 2014-03-20 08:51 - 00667648 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpprefcl.dll2014-06-02 21:12 - 2014-03-20 08:44 - 06645248 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll2014-06-02 21:12 - 2014-03-20 07:38 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpprefcl.dll2014-06-02 21:12 - 2014-03-20 07:33 - 05774848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll2014-06-02 21:12 - 2014-03-19 16:15 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll2014-06-02 21:12 - 2014-03-19 16:07 - 00443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys2014-06-02 21:12 - 2014-03-19 15:24 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll2014-06-02 21:12 - 2014-03-19 15:17 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanhlp.dll2014-06-02 21:12 - 2014-03-19 14:36 - 01057280 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll2014-06-02 21:12 - 2014-03-19 13:56 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvidcrl.dll2014-06-02 21:12 - 2014-03-19 13:45 - 00443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll2014-06-02 21:12 - 2014-03-19 13:19 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll2014-06-02 21:12 - 2014-03-19 13:07 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll2014-06-02 21:12 - 2014-03-19 13:02 - 01527296 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll2014-06-02 21:12 - 2014-03-19 13:00 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll2014-06-02 21:12 - 2014-03-19 12:51 - 00300544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanmsm.dll2014-06-02 21:12 - 2014-03-19 12:31 - 02100736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll2014-06-02 21:12 - 2014-03-19 12:18 - 02688000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll2014-06-02 21:12 - 2014-03-18 16:19 - 00077312 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys2014-06-02 21:12 - 2014-03-18 13:00 - 07173120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll2014-06-02 21:12 - 2014-03-18 12:52 - 05104640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll2014-06-02 21:12 - 2014-03-17 13:09 - 00462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll2014-06-02 21:12 - 2014-03-17 12:11 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsGdiConverter.dll2014-06-02 21:12 - 2014-03-17 11:01 - 00486912 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv2014-06-02 21:12 - 2014-03-17 10:47 - 01025024 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll2014-06-02 21:12 - 2014-03-17 10:45 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv2014-06-02 21:12 - 2014-03-14 14:26 - 00491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\GeofenceMonitorService.dll2014-06-02 21:12 - 2014-03-14 14:10 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GeofenceMonitorService.dll2014-06-02 21:12 - 2014-03-06 20:42 - 00310616 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys2014-06-02 21:11 - 2014-06-02 21:11 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll2014-06-02 20:34 - 2014-05-20 10:44 - 12688328 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys2014-06-02 13:48 - 2014-06-02 13:48 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies2014-06-02 13:47 - 2014-06-02 13:47 - 00002153 _____ () C:\Users\Public\Desktop\3D Vision Photo Viewer.lnk2014-06-02 13:47 - 2014-05-20 07:10 - 00601432 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe2014-06-02 13:44 - 2014-05-20 10:44 - 31387936 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll2014-06-02 13:44 - 2014-05-20 10:44 - 25256224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll2014-06-02 13:44 - 2014-05-20 10:44 - 24025376 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll2014-06-02 13:44 - 2014-05-20 10:44 - 17561544 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll2014-06-02 13:44 - 2014-05-20 10:44 - 17480432 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dumx.dll2014-06-02 13:44 - 2014-05-20 10:44 - 16003912 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvwgf2um.dll2014-06-02 13:44 - 2014-05-20 10:44 - 12688328 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys.old2014-06-02 13:44 - 2014-05-20 10:44 - 11644928 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll2014-06-02 13:44 - 2014-05-20 10:44 - 11599072 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll2014-06-02 13:44 - 2014-05-20 10:44 - 09735256 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll2014-06-02 13:44 - 2014-05-20 10:44 - 09697640 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll2014-06-02 13:44 - 2014-05-20 10:44 - 03141976 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll2014-06-02 13:44 - 2014-05-20 10:44 - 02953672 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll2014-06-02 13:44 - 2014-05-20 10:44 - 02785568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvenc.dll2014-06-02 13:44 - 2014-05-20 10:44 - 02412376 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvenc.dll2014-06-02 13:44 - 2014-05-20 10:44 - 00895776 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll2014-06-02 13:44 - 2014-05-20 10:44 - 00892704 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll2014-06-02 13:44 - 2014-05-20 10:44 - 00867784 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll2014-06-02 13:44 - 2014-05-20 10:44 - 00861128 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll2014-06-02 13:44 - 2014-05-20 10:44 - 00837056 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvumdshim.dll2014-06-02 13:44 - 2014-05-20 10:44 - 00492376 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll2014-06-02 13:44 - 2014-05-20 10:44 - 00416712 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll2014-06-02 13:44 - 2014-05-20 10:44 - 00382240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll2014-06-02 13:44 - 2014-05-20 10:44 - 00354016 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglshim64.dll2014-06-02 13:44 - 2014-05-20 10:44 - 00335704 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll2014-06-02 13:44 - 2014-05-20 10:44 - 00305600 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglshim32.dll2014-06-02 13:44 - 2014-05-20 10:44 - 00166568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvinitx.dll2014-06-02 13:44 - 2014-05-20 10:44 - 00146480 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvinit.dll2014-05-31 13:54 - 2014-05-31 13:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes2014-05-31 13:54 - 2014-05-31 13:54 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF692014-05-31 13:54 - 2014-05-31 13:54 - 00000000 ____D () C:\Program Files\iTunes2014-05-31 13:54 - 2014-05-31 13:54 - 00000000 ____D () C:\Program Files\iPod2014-05-29 15:28 - 2014-05-29 15:28 - 00000000 ____D () C:\Users\Duckii\Desktop\Pokemon Zeta 1.4.72014-05-29 15:19 - 2014-05-29 15:20 - 06531055 _____ () C:\Users\Duckii\Downloads\Melly's UI Mega Overhaul Updated V1.1.rar2014-05-29 15:19 - 2014-05-29 15:19 - 00062122 _____ () C:\Users\Duckii\Downloads\Party Stealth Selectors.rar2014-05-29 14:58 - 2014-05-29 15:24 - 120437037 _____ () C:\Users\Duckii\Downloads\Pokemon Zeta 1.4 (Win).zip2014-05-29 14:52 - 2014-05-29 15:51 - 1007078353 _____ () C:\Users\Duckii\Downloads\XY Animated Sprite Sharpened 125 175b.rar2014-05-29 14:11 - 2014-05-29 14:14 - 61309945 _____ () C:\Users\Duckii\Downloads\hawkthorne-win-x86.zip2014-05-28 23:10 - 2014-05-28 17:30 - 00093048 _____ (EasyAntiCheat Ltd) C:\WINDOWS\SysWOW64\EasyAntiCheat.exe2014-05-28 22:38 - 2014-05-28 22:55 - 303757610 _____ () C:\Users\Duckii\Downloads\@PUBattleRoyale.ARMA.3.CLIENT.FILES.v0.2.0.zip2014-05-28 17:43 - 2014-05-28 17:43 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\WizardWars2014-05-28 00:22 - 2014-05-28 00:24 - 00000000 ____D () C:\Users\Duckii\AppData\Local\Dxtory Software2014-05-28 00:22 - 2014-05-28 00:22 - 00000000 ____D () C:\Program Files (x86)\Dxtory Software2014-05-27 16:34 - 2014-05-20 10:44 - 01889112 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6433788.dll2014-05-27 16:34 - 2014-05-20 10:44 - 01541576 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6433788.dll2014-05-27 01:13 - 2014-05-27 01:13 - 00034016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xb1usb.sys2014-05-26 17:42 - 2014-05-26 17:44 - 49397581 _____ () C:\Users\Duckii\Downloads\1.4.7 Zeta.zip2014-05-26 10:53 - 2014-05-26 10:53 - 00000000 ____D () C:\Users\Duckii\AppData\Local\WM2014-05-26 08:36 - 2014-06-05 16:46 - 00000000 ____D () C:\Users\Duckii\AppData\Local\Arma 32014-05-26 08:36 - 2014-05-26 08:37 - 00000000 ____D () C:\Users\Duckii\Documents\Arma 32014-05-26 08:36 - 2014-05-26 08:36 - 00000000 ____D () C:\ProgramData\Bohemia Interactive2014-05-26 02:52 - 2014-05-26 02:52 - 00080384 _____ (Razer Inc) C:\WINDOWS\system32\RazerCoinstaller.dll2014-05-26 01:58 - 2014-05-26 01:58 - 00000019 _____ () C:\Users\Duckii\Downloads\CD-KEY-ARMA-3.txt2014-05-24 01:02 - 2014-05-24 01:03 - 03259749 _____ () C:\Users\Duckii\Downloads\LiveSplit_1.33.zip2014-05-24 00:56 - 2014-05-24 00:58 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\mIRC2014-05-24 00:19 - 2014-05-24 00:19 - 00000202 _____ () C:\Users\Duckii\Desktop\SpeedRunners.url2014-05-20 21:51 - 2014-05-20 21:51 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\TeamViewer2014-05-20 21:30 - 2014-05-20 21:30 - 00001194 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 9.lnk2014-05-20 21:30 - 2014-05-20 21:30 - 00000000 ____D () C:\Program Files (x86)\TeamViewer2014-05-19 21:14 - 2014-05-26 10:53 - 00000000 ____D () C:\wm2014-05-19 21:14 - 2014-05-19 21:14 - 00000000 ____D () C:\Users\Duckii\AppData\Local\lesupd2014-05-18 21:54 - 2014-05-18 21:54 - 00169778 _____ () C:\Users\Duckii\Downloads\Tamer0 Glimmer.rpl2014-05-17 21:52 - 2014-05-17 21:58 - 00000000 ____D () C:\Users\Duckii\Documents\Speccy2014-05-17 21:48 - 2014-05-17 21:51 - 05269617 _____ () C:\Users\Duckii\Downloads\spsetup126.zip2014-05-17 20:37 - 2014-05-17 20:37 - 07837272 _____ (FreeDownloadManager.ORG ) C:\Users\Duckii\Downloads\fdminst (1).exe2014-05-17 12:22 - 2014-04-01 00:42 - 00040392 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad64v.sys2014-05-17 12:22 - 2014-04-01 00:42 - 00034760 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll2014-05-16 09:47 - 2014-05-16 09:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi2014-05-16 09:47 - 2014-05-16 09:47 - 00000000 ____D () C:\Program Files (x86)\LogMeIn Hamachi2014-05-15 00:05 - 2014-03-24 10:30 - 00257880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys2014-05-15 00:05 - 2014-03-24 10:30 - 00123224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys2014-05-15 00:05 - 2014-03-24 10:27 - 00035856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys2014-05-15 00:05 - 2014-03-13 15:42 - 00308224 _____ (Microsoft Corporation) C:\WINDOWS\system32\wusa.exe2014-05-15 00:05 - 2014-03-13 14:51 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wusa.exe2014-05-15 00:04 - 2014-04-11 18:03 - 00555736 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll2014-05-15 00:04 - 2014-04-11 18:03 - 00054776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe2014-05-15 00:04 - 2014-04-11 16:25 - 00419928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll2014-05-15 00:04 - 2014-04-11 14:04 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll2014-05-15 00:04 - 2014-04-11 13:22 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll2014-05-15 00:04 - 2014-04-11 11:54 - 00201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll2014-05-15 00:04 - 2014-04-11 11:06 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe2014-05-15 00:04 - 2014-04-11 11:05 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll2014-05-15 00:04 - 2014-04-11 11:02 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe2014-05-15 00:04 - 2014-04-11 11:01 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll2014-05-15 00:04 - 2014-04-11 11:00 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll2014-05-15 00:04 - 2014-04-11 10:59 - 00666624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll2014-05-15 00:04 - 2014-04-11 10:57 - 00190976 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll2014-05-15 00:04 - 2014-04-11 10:56 - 00381440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll2014-05-15 00:04 - 2014-04-11 10:55 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll2014-05-15 00:04 - 2014-04-11 10:53 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll2014-05-15 00:04 - 2014-04-11 10:52 - 03464192 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll2014-05-15 00:04 - 2014-04-11 10:46 - 01705472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll2014-05-15 00:04 - 2014-04-11 10:36 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll2014-05-15 00:04 - 2014-04-11 10:29 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll2014-05-15 00:03 - 2014-04-09 06:46 - 00086688 _____ (Microsoft Corporation) C:\WINDOWS\system32\mrt_map.dll2014-05-15 00:03 - 2014-04-09 06:46 - 00028320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mrt100.dll2014-05-15 00:03 - 2014-04-09 02:54 - 00080032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mrt_map.dll2014-05-15 00:03 - 2014-04-09 02:54 - 00026784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mrt100.dll==================== One Month Modified Files and Folders =======2014-06-13 12:40 - 2014-06-13 12:39 - 00022519 _____ () C:\Users\Duckii\Downloads\FRST.txt2014-06-13 12:40 - 2014-01-06 21:18 - 00000000 ____D () C:\Users\Duckii\AppData\Local\Temp2014-06-13 12:39 - 2014-06-13 12:39 - 00000000 ____D () C:\FRST2014-06-13 12:38 - 2014-06-13 12:38 - 00122584 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys2014-06-13 12:38 - 2014-06-13 12:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware2014-06-13 12:38 - 2014-06-13 12:38 - 00000000 ____D () C:\ProgramData\Malwarebytes2014-06-13 12:38 - 2014-06-13 12:38 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware2014-06-13 12:37 - 2014-06-13 12:37 - 02081792 _____ (Farbar) C:\Users\Duckii\Downloads\FRST64 (1).exe2014-06-13 12:37 - 2014-06-13 12:32 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Duckii\Downloads\mbam-setup-2.0.2.1012 (1).exe2014-06-13 12:37 - 2013-10-07 20:12 - 00000000 ____D () C:\Users\Duckii\AppData\Local\Battle.net2014-06-13 12:36 - 2013-09-11 23:07 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\BitTorrent2014-06-13 12:36 - 2013-08-23 14:46 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3794150929-2800894002-4186101125-10012014-06-13 12:33 - 2013-09-05 22:08 - 00000830 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job2014-06-13 12:31 - 2014-01-06 21:14 - 01584268 _____ () C:\WINDOWS\WindowsUpdate.log2014-06-13 12:25 - 2014-06-13 12:24 - 02042088 _____ () C:\Users\Duckii\Downloads\FRST64.exe2014-06-13 12:25 - 2013-08-22 01:43 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\vlc2014-06-13 12:03 - 2013-11-14 15:29 - 00863592 _____ () C:\WINDOWS\system32\PerfStringBackup.INI2014-06-13 12:03 - 2013-09-05 20:27 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\TS3Client2014-06-13 12:00 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\system32\sru2014-06-13 11:57 - 2014-05-07 11:13 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\DropboxMaster2014-06-13 11:57 - 2014-02-28 12:39 - 00000000 ____D () C:\Users\Duckii\AppData\Local\LogMeIn Hamachi2014-06-13 11:57 - 2013-09-13 17:14 - 00000914 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job2014-06-13 11:57 - 2013-09-11 12:50 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\Dropbox2014-06-13 11:57 - 2013-09-05 23:40 - 00000000 ____D () C:\ProgramData\Origin2014-06-13 11:57 - 2013-08-22 22:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT2014-06-13 11:56 - 2014-01-06 21:14 - 00000000 ____D () C:\ProgramData\NVIDIA2014-06-13 11:56 - 2013-11-14 15:20 - 00077644 _____ () C:\WINDOWS\PFRO.log2014-06-13 11:56 - 2013-08-22 22:44 - 04956136 _____ () C:\WINDOWS\system32\FNTCACHE.DAT2014-06-13 04:31 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\WinStore2014-06-13 04:30 - 2014-06-11 18:52 - 00000000 ____D () C:\Users\Duckii\Documents\Resume2014-06-13 04:24 - 2013-09-04 11:15 - 00000000 ____D () C:\ProgramData\Microsoft Help2014-06-13 03:52 - 2013-09-13 17:14 - 00000918 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job2014-06-12 10:58 - 2014-06-12 10:57 - 04181856 _____ (Kaspersky Lab ZAO) C:\Users\Duckii\Downloads\tdsskiller.exe2014-06-12 10:57 - 2012-07-26 15:59 - 00000000 ____D () C:\WINDOWS\CbsTemp2014-06-12 00:20 - 2013-09-06 09:05 - 95414520 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe2014-06-12 00:20 - 2013-08-22 23:36 - 00000000 ___RD () C:\WINDOWS\ToastData2014-06-11 17:41 - 2014-06-11 17:27 - 00000000 ____D () C:\Users\Duckii\Documents\BFH.Beta2014-06-11 17:27 - 2014-06-11 17:27 - 02247960 _____ () C:\Users\Duckii\Downloads\battlelog-web-plugins_2.4.0_141.exe2014-06-11 17:27 - 2014-06-11 17:27 - 00000000 ____D () C:\Users\Duckii\AppData\Local\ESN2014-06-11 17:27 - 2014-06-11 17:27 - 00000000 ____D () C:\Program Files (x86)\Battlelog Web Plugins2014-06-11 15:24 - 2014-06-11 15:24 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieUnatt.exe2014-06-11 15:24 - 2014-06-11 15:24 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieUnatt.exe2014-06-11 15:24 - 2014-06-11 15:24 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe2014-06-11 15:24 - 2014-06-11 15:24 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieetwproxystub.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwproxystub.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollectorres.dll2014-06-11 15:23 - 2014-06-11 15:23 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll2014-06-11 06:17 - 2014-06-11 06:17 - 00000850 _____ () C:\Users\Public\Desktop\Battlefield Hardline Beta.lnk2014-06-11 06:17 - 2014-06-11 06:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield Hardline Beta2014-06-11 06:17 - 2014-04-27 03:14 - 00281872 _____ () C:\WINDOWS\SysWOW64\PnkBstrB.exe2014-06-11 06:17 - 2014-04-27 03:14 - 00281872 _____ () C:\WINDOWS\SysWOW64\PnkBstrB.ex02014-06-11 06:17 - 2014-04-27 03:14 - 00076888 _____ () C:\WINDOWS\SysWOW64\PnkBstrA.exe2014-06-11 06:16 - 2013-09-07 23:34 - 00000000 ____D () C:\ProgramData\Package Cache2014-06-11 06:16 - 2013-08-22 22:05 - 00536026 _____ () C:\WINDOWS\DirectX.log2014-06-10 11:58 - 2014-06-10 11:57 - 00000000 ____D () C:\Users\Duckii\Documents\Dawngate2014-06-10 11:58 - 2014-06-10 03:35 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\DawngateData2014-06-10 04:18 - 2014-05-05 15:50 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\Dogecoin2014-06-10 04:09 - 2014-06-10 04:08 - 17009768 _____ (Electronic Arts, Inc.) C:\Users\Duckii\Downloads\OriginThinSetup.exe2014-06-10 03:35 - 2014-06-10 03:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dawngate2014-06-10 03:34 - 2014-06-10 03:34 - 09269248 _____ () C:\Users\Duckii\Downloads\Dawngate_en_us.msi2014-06-08 12:46 - 2014-06-08 12:46 - 09561964 _____ () C:\Users\Duckii\Downloads\cliffhorse.zip2014-06-08 02:13 - 2014-01-06 21:18 - 00000000 ____D () C:\Users\Duckii2014-06-06 22:15 - 2013-08-22 21:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI2014-06-06 11:59 - 2014-06-06 11:59 - 00000000 __SHD () C:\Users\Duckii\AppData\Local\EmieUserList2014-06-06 11:59 - 2014-06-06 11:59 - 00000000 __SHD () C:\Users\Duckii\AppData\Local\EmieSiteList2014-06-06 01:02 - 2014-06-06 01:02 - 00000000 ____D () C:\Program Files\Microsoft Xbox One Controller for Windows2014-06-06 01:01 - 2014-06-06 01:01 - 02854912 _____ () C:\Users\Duckii\Downloads\xb1usb.11059.0.140526x64.msi2014-06-05 16:46 - 2014-05-26 08:36 - 00000000 ____D () C:\Users\Duckii\AppData\Local\Arma 32014-06-05 16:33 - 2013-09-11 21:16 - 00000000 ____D () C:\ProgramData\Unity2014-06-05 16:30 - 2014-06-05 16:30 - 00000572 _____ () C:\Users\Public\Desktop\Unity.lnk2014-06-05 16:30 - 2013-09-11 21:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Unity2014-06-05 16:24 - 2014-06-05 15:45 - 1175723520 _____ (Unity Technologies ApS) C:\Users\Duckii\Downloads\UnitySetup-4.5.0.exe2014-06-05 16:21 - 2014-06-05 16:21 - 00246759 _____ () C:\Users\Duckii\Downloads\ZO XY Pokemon Icons.zip2014-06-05 15:40 - 2014-06-05 15:40 - 00000000 ____D () C:\Users\Duckii\AppData\Local\VS Revo Group2014-06-05 15:40 - 2014-06-05 15:40 - 00000000 ____D () C:\ProgramData\VS Revo Group2014-06-05 15:40 - 2014-06-05 15:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro2014-06-05 15:40 - 2014-06-05 15:40 - 00000000 ____D () C:\Program Files\VS Revo Group2014-06-05 15:40 - 2014-06-05 15:39 - 10619688 _____ (VS Revo Group ) C:\Users\Duckii\Downloads\RevoUninProSetup.exe2014-06-05 03:48 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\rescache2014-06-05 03:41 - 2014-06-05 03:41 - 00257100 _____ () C:\Users\Duckii\Downloads\DaxtarsShutdownTimer_v1.0.7.zip2014-06-05 03:41 - 2014-06-05 03:41 - 00000000 ____D () C:\Users\Duckii\Documents\DaxtarsShutdownTimer_v1.0.72014-06-05 03:06 - 2014-06-05 03:05 - 00000510 _____ () C:\Users\Duckii\Downloads\Pokemon Silver.zip2014-06-05 03:04 - 2014-02-20 22:34 - 00000000 ____D () C:\Users\Duckii\Documents\ROMS2014-06-05 03:03 - 2014-06-05 03:03 - 00059881 _____ () C:\Users\Duckii\Downloads\lips102.zip2014-06-05 03:00 - 2014-06-05 03:00 - 00181514 _____ () C:\Users\Duckii\Downloads\Dark Energy Beta 4.0.zip2014-06-05 02:30 - 2014-06-05 02:29 - 00000000 ____D () C:\Users\Duckii\Documents\Pokemon2014-06-05 02:28 - 2014-06-05 02:20 - 76247481 _____ () C:\Users\Duckii\Downloads\Sage Recovery.rar2014-06-05 02:27 - 2014-06-05 02:22 - 35176093 _____ () C:\Users\Duckii\Downloads\Pokemon_Survival_Island_v112.zip2014-06-05 02:26 - 2014-06-05 02:21 - 35432863 _____ () C:\Users\Duckii\Downloads\Pokemon_Survival_Island_v112b.zip2014-06-05 02:06 - 2014-06-05 01:57 - 117663109 _____ () C:\Users\Duckii\Downloads\Beta15.exe2014-06-03 16:26 - 2014-06-03 16:26 - 00039432 _____ () C:\Users\Duckii\Downloads\What the censored.txt2014-06-03 14:00 - 2014-06-03 13:59 - 44199212 _____ () C:\Users\Duckii\Downloads\Pentakill-SmiteandIgnite.zip2014-06-02 21:24 - 2014-01-06 21:14 - 00000000 ____D () C:\Program Files\NVIDIA Corporation2014-06-02 21:24 - 2013-08-22 22:46 - 00299501 _____ () C:\WINDOWS\setupact.log2014-06-02 21:19 - 2014-01-06 21:30 - 00000000 ___RD () C:\Users\Duckii\SkyDrive2014-06-02 21:19 - 2013-08-21 22:26 - 00000000 ___RD () C:\Users\Duckii\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup2014-06-02 21:19 - 2013-08-21 22:26 - 00000000 ___RD () C:\Users\Duckii\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools2014-06-02 21:18 - 2013-08-22 23:36 - 00000000 ___RD () C:\WINDOWS\ImmersiveControlPanel2014-06-02 21:18 - 2013-08-22 21:36 - 00000000 ____D () C:\WINDOWS\system32\oobe2014-06-02 21:17 - 2013-02-28 12:09 - 00000024 _____ () C:\Users\Duckii\random.dat2014-06-02 21:13 - 2013-02-28 12:09 - 00000045 _____ () C:\Users\Duckii\jagex_cl_runescape_LIVE.dat2014-06-02 21:11 - 2014-06-02 21:11 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll2014-06-02 15:21 - 2013-10-09 22:14 - 00000045 _____ () C:\Users\Duckii\jagex_cl_oldschool_LIVE.dat2014-06-02 13:48 - 2014-06-02 13:48 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies2014-06-02 13:47 - 2014-06-02 13:47 - 00002153 _____ () C:\Users\Public\Desktop\3D Vision Photo Viewer.lnk2014-06-02 13:47 - 2014-01-06 21:14 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation2014-05-31 13:57 - 2013-12-20 12:44 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox2014-05-31 13:54 - 2014-05-31 13:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes2014-05-31 13:54 - 2014-05-31 13:54 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF692014-05-31 13:54 - 2014-05-31 13:54 - 00000000 ____D () C:\Program Files\iTunes2014-05-31 13:54 - 2014-05-31 13:54 - 00000000 ____D () C:\Program Files\iPod2014-05-31 13:13 - 2013-08-22 23:38 - 00703992 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe2014-05-31 13:13 - 2013-08-22 23:38 - 00105464 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl2014-05-30 18:21 - 2014-06-11 15:27 - 23414784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll2014-05-30 17:45 - 2014-06-11 15:27 - 02768384 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll2014-05-30 17:28 - 2014-06-11 15:27 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll2014-05-30 17:20 - 2014-06-11 15:27 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll2014-05-30 17:18 - 2014-06-11 15:27 - 17271296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll2014-05-30 17:08 - 2014-06-11 15:27 - 05782528 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll2014-05-30 17:06 - 2014-06-11 15:27 - 00452096 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll2014-05-30 16:46 - 2014-06-11 15:27 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll2014-05-30 16:44 - 2014-06-11 15:27 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll2014-05-30 16:43 - 2014-06-11 15:27 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll2014-05-30 16:38 - 2014-06-11 15:27 - 02179072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll2014-05-30 16:35 - 2014-06-11 15:27 - 00608768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe2014-05-30 16:29 - 2014-06-11 15:27 - 00631808 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll2014-05-30 16:27 - 2014-06-11 15:27 - 00592896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll2014-05-30 16:23 - 2014-06-11 15:27 - 02040832 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl2014-05-30 16:16 - 2014-06-11 15:27 - 00368128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll2014-05-30 16:04 - 2014-06-11 15:27 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll2014-05-30 16:02 - 2014-06-11 15:27 - 00242688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll2014-05-30 15:56 - 2014-06-11 15:27 - 04244992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll2014-05-30 15:56 - 2014-06-11 15:27 - 02266112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll2014-05-30 15:54 - 2014-06-11 15:27 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll2014-05-30 15:49 - 2014-06-11 15:27 - 01964544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl2014-05-30 15:43 - 2014-06-11 15:27 - 13522944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll2014-05-30 15:40 - 2014-06-11 15:27 - 11725312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll2014-05-30 15:30 - 2014-06-11 15:27 - 01398272 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll2014-05-30 15:21 - 2014-06-11 15:27 - 01790976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll2014-05-30 15:15 - 2014-06-11 15:27 - 01143296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll2014-05-30 15:13 - 2014-06-11 15:27 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll2014-05-30 15:13 - 2014-06-11 15:27 - 00704512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll2014-05-30 07:07 - 2014-06-02 21:24 - 01715176 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspbridge64.dll2014-05-30 07:07 - 2014-06-02 21:24 - 01291232 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspbridge.dll2014-05-30 07:07 - 2014-04-08 23:58 - 01279480 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll2014-05-30 07:07 - 2014-04-08 23:58 - 01122312 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll2014-05-29 23:57 - 2013-08-23 00:45 - 00380426 _____ () C:\WINDOWS\DPINST.LOG2014-05-29 15:51 - 2014-05-29 14:52 - 1007078353 _____ () C:\Users\Duckii\Downloads\XY Animated Sprite Sharpened 125 175b.rar2014-05-29 15:28 - 2014-05-29 15:28 - 00000000 ____D () C:\Users\Duckii\Desktop\Pokemon Zeta 1.4.72014-05-29 15:24 - 2014-05-29 14:58 - 120437037 _____ () C:\Users\Duckii\Downloads\Pokemon Zeta 1.4 (Win).zip2014-05-29 15:20 - 2014-05-29 15:19 - 06531055 _____ () C:\Users\Duckii\Downloads\Melly's UI Mega Overhaul Updated V1.1.rar2014-05-29 15:19 - 2014-05-29 15:19 - 00062122 _____ () C:\Users\Duckii\Downloads\Party Stealth Selectors.rar2014-05-29 14:17 - 2013-09-10 15:27 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\hawkthorne_release2014-05-29 14:16 - 2013-09-10 15:27 - 00000000 ____D () C:\Users\Duckii\Documents\hawkthorne2014-05-29 14:14 - 2014-05-29 14:11 - 61309945 _____ () C:\Users\Duckii\Downloads\hawkthorne-win-x86.zip2014-05-29 11:44 - 2013-08-23 00:45 - 00000000 ____D () C:\Program Files (x86)\Razer2014-05-28 22:55 - 2014-05-28 22:38 - 303757610 _____ () C:\Users\Duckii\Downloads\@PUBattleRoyale.ARMA.3.CLIENT.FILES.v0.2.0.zip2014-05-28 17:43 - 2014-05-28 17:43 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\WizardWars2014-05-28 17:30 - 2014-05-28 23:10 - 00093048 _____ (EasyAntiCheat Ltd) C:\WINDOWS\SysWOW64\EasyAntiCheat.exe2014-05-28 13:06 - 2013-09-11 12:51 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox2014-05-28 01:32 - 2014-01-07 11:23 - 00000000 ____D () C:\Users\Duckii\AppData\Local\Deployment2014-05-28 00:24 - 2014-05-28 00:22 - 00000000 ____D () C:\Users\Duckii\AppData\Local\Dxtory Software2014-05-28 00:22 - 2014-05-28 00:22 - 00000000 ____D () C:\Program Files (x86)\Dxtory Software2014-05-27 13:02 - 2014-05-06 12:07 - 00001796 _____ () C:\WINDOWS\Sandboxie.ini2014-05-27 01:13 - 2014-05-27 01:13 - 00034016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xb1usb.sys2014-05-26 17:44 - 2014-05-26 17:42 - 49397581 _____ () C:\Users\Duckii\Downloads\1.4.7 Zeta.zip2014-05-26 10:53 - 2014-05-26 10:53 - 00000000 ____D () C:\Users\Duckii\AppData\Local\WM2014-05-26 10:53 - 2014-05-19 21:14 - 00000000 ____D () C:\wm2014-05-26 08:37 - 2014-05-26 08:36 - 00000000 ____D () C:\Users\Duckii\Documents\Arma 32014-05-26 08:36 - 2014-05-26 08:36 - 00000000 ____D () C:\ProgramData\Bohemia Interactive2014-05-26 02:52 - 2014-05-26 02:52 - 00080384 _____ (Razer Inc) C:\WINDOWS\system32\RazerCoinstaller.dll2014-05-26 01:58 - 2014-05-26 01:58 - 00000019 _____ () C:\Users\Duckii\Downloads\CD-KEY-ARMA-3.txt2014-05-24 14:41 - 2014-04-28 11:29 - 00000000 ____D () C:\Users\Duckii\Documents\Live Split2014-05-24 01:03 - 2014-05-24 01:02 - 03259749 _____ () C:\Users\Duckii\Downloads\LiveSplit_1.33.zip2014-05-24 00:58 - 2014-05-24 00:56 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\mIRC2014-05-24 00:19 - 2014-05-24 00:19 - 00000202 _____ () C:\Users\Duckii\Desktop\SpeedRunners.url2014-05-24 00:14 - 2014-04-30 01:07 - 00000000 ____D () C:\Program Files (x86)\OBS2014-05-23 21:39 - 2014-04-02 23:27 - 00000000 ____D () C:\Users\Duckii\Documents\SavedGames2014-05-20 21:51 - 2014-05-20 21:51 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\TeamViewer2014-05-20 21:30 - 2014-05-20 21:30 - 00001194 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 9.lnk2014-05-20 21:30 - 2014-05-20 21:30 - 00000000 ____D () C:\Program Files (x86)\TeamViewer2014-05-20 10:44 - 2014-06-02 20:34 - 12688328 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys2014-05-20 10:44 - 2014-06-02 13:44 - 31387936 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll2014-05-20 10:44 - 2014-06-02 13:44 - 25256224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll2014-05-20 10:44 - 2014-06-02 13:44 - 24025376 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll2014-05-20 10:44 - 2014-06-02 13:44 - 17561544 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll2014-05-20 10:44 - 2014-06-02 13:44 - 17480432 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dumx.dll2014-05-20 10:44 - 2014-06-02 13:44 - 16003912 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvwgf2um.dll2014-05-20 10:44 - 2014-06-02 13:44 - 12688328 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys.old2014-05-20 10:44 - 2014-06-02 13:44 - 11644928 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll2014-05-20 10:44 - 2014-06-02 13:44 - 11599072 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll2014-05-20 10:44 - 2014-06-02 13:44 - 09735256 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll2014-05-20 10:44 - 2014-06-02 13:44 - 09697640 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll2014-05-20 10:44 - 2014-06-02 13:44 - 03141976 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll2014-05-20 10:44 - 2014-06-02 13:44 - 02953672 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll2014-05-20 10:44 - 2014-06-02 13:44 - 02785568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvenc.dll2014-05-20 10:44 - 2014-06-02 13:44 - 02412376 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvenc.dll2014-05-20 10:44 - 2014-06-02 13:44 - 00895776 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll2014-05-20 10:44 - 2014-06-02 13:44 - 00892704 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll2014-05-20 10:44 - 2014-06-02 13:44 - 00867784 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll2014-05-20 10:44 - 2014-06-02 13:44 - 00861128 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll2014-05-20 10:44 - 2014-06-02 13:44 - 00837056 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvumdshim.dll2014-05-20 10:44 - 2014-06-02 13:44 - 00492376 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll2014-05-20 10:44 - 2014-06-02 13:44 - 00416712 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll2014-05-20 10:44 - 2014-06-02 13:44 - 00382240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll2014-05-20 10:44 - 2014-06-02 13:44 - 00354016 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglshim64.dll2014-05-20 10:44 - 2014-06-02 13:44 - 00335704 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll2014-05-20 10:44 - 2014-06-02 13:44 - 00305600 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglshim32.dll2014-05-20 10:44 - 2014-06-02 13:44 - 00166568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvinitx.dll2014-05-20 10:44 - 2014-06-02 13:44 - 00146480 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvinit.dll2014-05-20 10:44 - 2014-05-27 16:34 - 01889112 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6433788.dll2014-05-20 10:44 - 2014-05-27 16:34 - 01541576 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6433788.dll2014-05-20 10:44 - 2014-04-08 23:57 - 00061216 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll2014-05-20 10:44 - 2014-04-08 23:57 - 00052056 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll2014-05-20 10:44 - 2014-04-08 23:55 - 18531568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvwgf2umx.dll2014-05-20 10:44 - 2014-04-08 23:55 - 14434704 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvd3dum.dll2014-05-20 10:44 - 2014-04-08 23:55 - 03109248 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll2014-05-20 10:44 - 2014-04-08 23:55 - 02730208 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll2014-05-20 10:44 - 2014-04-08 23:55 - 00952952 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvumdshimx.dll2014-05-20 10:44 - 2014-04-08 23:55 - 00026069 _____ () C:\WINDOWS\system32\nvinfo.pb2014-05-20 09:25 - 2014-04-08 23:57 - 06769096 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll2014-05-20 09:25 - 2014-04-08 23:57 - 03514144 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll2014-05-20 09:25 - 2014-04-08 23:57 - 00927520 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe2014-05-20 09:25 - 2014-04-08 23:57 - 00387528 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll2014-05-20 09:25 - 2014-04-08 23:57 - 00062808 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll2014-05-20 07:10 - 2014-06-02 13:47 - 00601432 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe2014-05-19 21:14 - 2014-05-19 21:14 - 00000000 ____D () C:\Users\Duckii\AppData\Local\lesupd2014-05-19 14:31 - 2014-06-11 15:24 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvcfg.exe2014-05-19 14:21 - 2014-06-11 15:24 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe2014-05-19 13:23 - 2014-06-11 15:24 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvinst.exe2014-05-18 21:54 - 2014-05-18 21:54 - 00169778 _____ () C:\Users\Duckii\Downloads\Tamer0 Glimmer.rpl2014-05-17 21:58 - 2014-05-17 21:52 - 00000000 ____D () C:\Users\Duckii\Documents\Speccy2014-05-17 21:51 - 2014-05-17 21:48 - 05269617 _____ () C:\Users\Duckii\Downloads\spsetup126.zip2014-05-17 20:37 - 2014-05-17 20:37 - 07837272 _____ (FreeDownloadManager.ORG ) C:\Users\Duckii\Downloads\fdminst (1).exe2014-05-17 14:13 - 2013-09-23 18:07 - 00000000 ____D () C:\Users\Duckii\Documents\4A Games2014-05-17 12:24 - 2013-12-03 16:51 - 00000000 ____D () C:\Users\Duckii\AppData\Local\NVIDIA Corporation2014-05-17 10:10 - 2013-09-23 17:47 - 00000000 ____D () C:\Users\Duckii\AppData\Local\4A Games2014-05-16 14:09 - 2014-04-30 01:08 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\OBS2014-05-16 09:47 - 2014-05-16 09:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi2014-05-16 09:47 - 2014-05-16 09:47 - 00000000 ____D () C:\Program Files (x86)\LogMeIn Hamachi2014-05-16 00:29 - 2013-08-22 23:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools2014-05-16 00:29 - 2013-08-22 23:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools2014-05-16 00:29 - 2013-08-22 23:36 - 00000000 ____D () C:\Program Files\Windows Defender2014-05-16 00:29 - 2013-08-22 23:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender2014-05-15 12:02 - 2013-09-06 09:05 - 00000000 ____D () C:\WINDOWS\system32\MRT2014-05-15 12:02 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\system32\SecureBootUpdates2014-05-15 12:00 - 2013-08-22 21:25 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM2014-05-15 07:49 - 2014-04-08 23:57 - 03774821 _____ () C:\WINDOWS\system32\nvcoproc.bin2014-05-14 12:34 - 2013-09-05 22:08 - 00003718 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player UpdaterFiles to move or delete:====================C:\Users\Duckii\jagex_cl_oldschool_LIVE.datC:\Users\Duckii\jagex_cl_runescape_LIVE.datC:\Users\Duckii\jagex_cl_runescape_LIVE1.datC:\Users\Duckii\jagex_cl_runescape_LIVE_BETA.datC:\Users\Duckii\random.datSome content of TEMP:====================C:\Users\Duckii\AppData\Local\Temp\AskMrRobot-Setup-1.3.14.0.exeC:\Users\Duckii\AppData\Local\Temp\AskMrRobot-Setup-1.3.16.0.exeC:\Users\Duckii\AppData\Local\Temp\AskMrRobot-Setup-1.3.17.0.exeC:\Users\Duckii\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpmba4ns.dllC:\Users\Duckii\AppData\Local\Temp\Foxit Reader Updater.exeC:\Users\Duckii\AppData\Local\Temp\Foxit Updater.exeC:\Users\Duckii\AppData\Local\Temp\jre-7u51-windows-i586-iftw.exeC:\Users\Duckii\AppData\Local\Temp\jre-7u55-windows-i586-iftw.exeC:\Users\Duckii\AppData\Local\Temp\mirc732.exeC:\Users\Duckii\AppData\Local\Temp\nv3DVStreaming.dllC:\Users\Duckii\AppData\Local\Temp\nvSCPAPI.dllC:\Users\Duckii\AppData\Local\Temp\nvSCPAPI64.dllC:\Users\Duckii\AppData\Local\Temp\nvStereoApiI.dllC:\Users\Duckii\AppData\Local\Temp\nvStereoApiI64.dllC:\Users\Duckii\AppData\Local\Temp\nvStInst.exeC:\Users\Duckii\AppData\Local\Temp\SRLDetectionLibrary8188974946217751875.dllC:\Users\Duckii\AppData\Local\Temp\uninstall.exeC:\Users\Duckii\AppData\Local\Temp\vlc-2.1.3-win32.exe==================== Bamital & volsnap Check =================C:\Windows\System32\winlogon.exe => File is digitally signedC:\Windows\System32\wininit.exe => File is digitally signedC:\Windows\explorer.exe => File is digitally signedC:\Windows\SysWOW64\explorer.exe => File is digitally signedC:\Windows\System32\svchost.exe => File is digitally signedC:\Windows\SysWOW64\svchost.exe => File is digitally signedC:\Windows\System32\services.exe => File is digitally signedC:\Windows\System32\User32.dll => File is digitally signedC:\Windows\SysWOW64\User32.dll => File is digitally signedC:\Windows\System32\userinit.exe => File is digitally signedC:\Windows\SysWOW64\userinit.exe => File is digitally signedC:\Windows\System32\rpcss.dll => File is digitally signedC:\Windows\System32\Drivers\volsnap.sys => File is digitally signedLastRegBack: 2014-06-08 02:13==================== End Of Log ============================ Link to post Share on other sites More sharing options...
PrivateDuckii Posted June 13, 2014 Author ID:841013 Share Posted June 13, 2014 And because I ran out of space, the Addition.txtAdditional scan result of Farbar Recovery Scan Tool (x64) Version: 12-06-2014 02Ran by Duckii at 2014-06-13 12:40:34Running from C:\Users\Duckii\DownloadsBoot Mode: Normal============================================================================== Security Center ========================AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}==================== Installed Programs ====================== (HKLM\...\UDK-331b4708-3c58-4340-8326-a03119b80910) (Version: - RuneStorm7-Zip 9.20 (HKLM-x32\...\7-Zip) (Version: - )7-Zip 9.22 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0922-000001000000}) (Version: 9.22.00.0 - Igor Pavlov)AaaaaAAaaaAAAaaAAAAaAAAAA!!! for the Awesome (HKLM-x32\...\Steam App 15560) (Version: - Dejobaan Games, LLC)Add or Remove Adobe Premiere Pro CS5 (HKLM-x32\...\{96F9B265-1367-4E1A-B8B9-F8530EF3AA62}) (Version: 5.0 - Adobe Systems Incorporated)Adobe After Effects CS5 (HKLM-x32\...\{DA1B174B-4297-467C-9EF8-0AB8D4D5171E}) (Version: 10 - Adobe Systems Incorporated)Adobe After Effects CS5 Third Party Content (HKLM-x32\...\{C0AA232E-BD1B-40B5-A176-A2BEB67FFAE1}) (Version: 10 - Adobe Systems Incorporated)Adobe After Effects CS5 Third Party Royalty Content (HKLM-x32\...\{CD29B5CA-4727-4114-9AD9-25CCCE6E4014}) (Version: 10 - Adobe Systems Incorporated)Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 13.0.0.111 - Adobe Systems Incorporated)Adobe AIR (x32 Version: 13.0.0.111 - Adobe Systems Incorporated) HiddenAdobe Community Help (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.0.0.400 - Adobe Systems Incorporated)Adobe Community Help (x32 Version: 3.0.0 - Adobe Systems Incorporated) HiddenAdobe Flash Player 13 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 13.0.0.214 - Adobe Systems Incorporated)Adobe Media Encoder CS5 Dolby X64 (HKLM-x32\...\{5DDABB74-A879-4BE7-A4C6-FD41793942DB}) (Version: 5.0 - Adobe Systems Incorporated)Adobe Media Encoder CS5 PCI X64 (HKLM-x32\...\{F9C71630-0EE3-475C-9E2B-ED95AE197DBD}) (Version: 5.0 - Adobe Systems Incorporated)Adobe Media Player (HKLM-x32\...\com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.8 - Adobe Systems Incorporated)Adobe Media Player (x32 Version: 1.8 - Adobe Systems Incorporated) HiddenAdobe Premiere Pro CS5 Third Party Royalty Content (HKLM-x32\...\{565DE707-5798-4FC3-8DF6-0F58A348A9B0}) (Version: 5.0.0 - Adobe Systems Incorporated)Adobe Shockwave Player 12.0 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.0.9.149 - Adobe Systems, Inc.)AI War: Fleet Command (HKLM-x32\...\Steam App 40400) (Version: - Arcen Games, LLC)AMD Wireless Display v3.0 (Version: 1.0.0.14 - Advanced Micro Devices, Inc.) HiddenAmrAddonInstall (Version: 1.2.8.0 - Microsoft) HiddenApple Application Support (HKLM-x32\...\{D9DAD0FF-495A-472B-9F10-BAE430A26682}) (Version: 3.0.3 - Apple Inc.)Apple Mobile Device Support (HKLM\...\{787136D2-F0F8-4625-AA3F-72D7795AC842}) (Version: 7.1.1.3 - Apple Inc.)Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)Arma 3 (HKLM-x32\...\Steam App 107410) (Version: - Bohemia Interactive)Ask Mr. Robot (HKLM-x32\...\{86e39a0a-85dd-4d6f-b1cd-46d8208bd2e9}) (Version: 1.3.17.0 - Ask Mr. Robot)Ask Mr. Robot (Version: 1.3.17.0 - Ask Mr. Robot) HiddenASUS GPU Tweak (HKLM-x32\...\InstallShield_{532F6E8A-AF97-41C3-915F-39F718EC07D1}) (Version: 2.4.2.4 - ASUSTek COMPUTER INC.)ASUS GPU Tweak (x32 Version: 2.4.2.4 - ASUSTek COMPUTER INC.) HiddenASUS Product Register Program (HKLM-x32\...\{9D29D67C-315D-46A1-A3A9-3CAF24871578}) (Version: 1.0.022 - ASUSTek Computer Inc.)Audiosurf 2 (HKLM-x32\...\Steam App 235800) (Version: - Dylan Fitterer)Axis Game Factory (HKLM-x32\...\Steam App 253370) (Version: - Axis Game Factory)Bang Bang Racing (HKLM-x32\...\Steam App 207020) (Version: - Digital Reality Software & Playbox)Bastion (HKLM-x32\...\Steam App 107100) (Version: - Supergiant Games)Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)Battlefield™ Hardline Beta (HKLM-x32\...\{599276A7-F45D-40B1-A0B6-CF132A1CAD49}) (Version: 1.0.0.3 - Electronic Arts)Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.4.0 - EA Digital Illusions CE AB)BeamNG-Techdemo-0.3 (remove only) (HKCU\...\BeamNG-Techdemo-0.3) (Version: - )BIT.TRIP Presents... Runner2: Future Legend of Rhythm Alien (HKLM-x32\...\Steam App 218060) (Version: - Gaijin Games)Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)Call of Duty: Black Ops II - Multiplayer (HKLM-x32\...\Steam App 202990) (Version: - )Call of Duty: Black Ops II - Zombies (HKLM-x32\...\Steam App 212910) (Version: - )Counter-Strike: Source (HKLM-x32\...\Steam App 240) (Version: - Valve)Curse Client (HKCU\...\101a9f93b8f0bb6f) (Version: 5.1.1.792 - Curse)DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.47.1.0337 - Disc Soft Ltd)Dawngate (HKLM-x32\...\{1330926C-251C-414E-A681-F8CEF84899BC}) (Version: 182.23.92.0 - Electronic Arts, Inc.)DayZ (HKLM-x32\...\Steam App 221100) (Version: - Bohemia Interactive)Dead Rising 2 (x32 Version: 1.0.0002.130 - Capcom) HiddenDiablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment)Dogecoin (HKCU\...\Dogecoin) (Version: 1.6.0.0 - Dogecoin)Dolphin (HKLM-x32\...\Dolphin) (Version: 4.0.1 - Dolphin Development Team)Dropbox (HKCU\...\Dropbox) (Version: 2.8.2 - Dropbox, Inc.)Dungeon Defenders (HKLM-x32\...\Steam App 65800) (Version: - Trendy Entertainment)Fallout 3 - Game of the Year Edition (HKLM-x32\...\Steam App 22370) (Version: - Bethesda Game Studios)Fallout: New Vegas (HKLM-x32\...\Steam App 22380) (Version: - Obsidian Entertainment)ffdshow v1.1.3800 [2011-03-28] (HKLM-x32\...\ffdshow_is1) (Version: 1.1.3800.0 - )Floating Point (HKLM-x32\...\Steam App 302380) (Version: - Suspicious Developments)Foxit Cloud (HKLM-x32\...\{41914D8B-9D6E-4764-A1F9-BC43FB6782C1}_is1) (Version: 1.5.127.515 - Foxit Corporation)Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 6.1.4.217 - Foxit Corporation)Fraps (remove only) (HKLM-x32\...\Fraps) (Version: - )FTL: Faster Than Light (HKLM-x32\...\Steam App 212680) (Version: - Subset Games)Goat Simulator (HKLM-x32\...\Steam App 265930) (Version: - Coffee Stain Studios)Google Chrome (HKLM-x32\...\Google Chrome) (Version: 35.0.1916.114 - Google Inc.)Google Earth Plug-in (HKLM-x32\...\{4AB54F11-2F8C-11E3-B09F-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)Google Update Helper (x32 Version: 1.3.24.7 - Google Inc.) HiddenHearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment)HOARD (HKLM-x32\...\Steam App 63000) (Version: - Big Sandwich Games)iTunes (HKLM\...\{5A68A656-979F-4168-8795-E2E368AA4DC2}) (Version: 11.2.2.3 - Apple Inc.)Jagged Alliance: Crossfire (HKLM-x32\...\Steam App 205810) (Version: - Coreplay GmbH)Java 7 Update 55 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86417055FF}) (Version: 7.0.550 - Oracle)Java 7 Update 55 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217055FF}) (Version: 7.0.550 - Oracle)Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) HiddenJust Cause 2 (HKLM-x32\...\Steam App 8190) (Version: - Avalanche)Just Cause 2: Multiplayer Mod (HKLM-x32\...\Steam App 259080) (Version: - JC2-MP Team)Loadout (HKLM-x32\...\Steam App 208090) (Version: - Edge of Reality)LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.193 - LogMeIn, Inc.)LogMeIn Hamachi (x32 Version: 2.2.0.193 - LogMeIn, Inc.) HiddenMagicka: Wizard Wars (HKLM-x32\...\Steam App 202090) (Version: - Paradox North)Malwarebytes Anti-Malware version 2.0.2.1012 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation)Metro 2033 (HKLM-x32\...\Steam App 43110) (Version: - 4A Games)Metro: Last Light (HKLM-x32\...\Steam App 43160) (Version: - 4A Games)Microsoft Chart Controls for Microsoft .NET Framework 3.5 (HKLM-x32\...\{41785C66-90F2-40CE-8CB5-1C94BFC97280}) (Version: 3.5.0.0 - Microsoft Corporation)Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}) (Version: 3.5.92.0 - Microsoft Corporation)Microsoft Games for Windows Marketplace (HKLM-x32\...\{67F42018-F647-4D3C-BE62-F8CB4FE2FCD5}) (Version: 3.5.67.0 - Microsoft Corporation)Microsoft Office Office 32-bit Components 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) HiddenMicrosoft Office Proof (English) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) HiddenMicrosoft Office Proof (French) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) HiddenMicrosoft Office Proof (Spanish) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) HiddenMicrosoft Office Proofing (English) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) HiddenMicrosoft Office Shared 32-bit MUI (English) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) HiddenMicrosoft Office Shared MUI (English) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) HiddenMicrosoft Office Shared Setup Metadata MUI (English) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) HiddenMicrosoft Office Word 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) HiddenMicrosoft Office Word MUI (English) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) HiddenMicrosoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 (HKLM-x32\...\{8e70e4e1-06d7-470b-9f74-a51bef21088e}) (Version: 11.0.51106.1 - Microsoft Corporation)Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) HiddenMicrosoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) HiddenMicrosoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) HiddenMicrosoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) HiddenMicrosoft Word 2010 (HKLM\...\Office14.WORD) (Version: 14.0.4763.1000 - Microsoft Corporation)Microsoft Xbox One Controller for Windows (HKLM\...\{DC2CB48C-FD96-48EB-A36A-7D995BB587EB}) (Version: 1.0.2 - Microsoft Corporation)Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation)Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)Microsoft_VC80_ATL_x86 (x32 Version: 8.0.50727.4053 - Adobe) HiddenMicrosoft_VC80_CRT_x86 (x32 Version: 8.0.50727.4053 - Adobe) HiddenMicrosoft_VC80_CRT_x86_x64 (Version: 8.0.50727.4053 - Adobe) HiddenMicrosoft_VC80_MFC_x86 (x32 Version: 8.0.50727.4053 - Adobe) HiddenMicrosoft_VC80_MFC_x86_x64 (Version: 8.0.50727.4053 - Adobe) HiddenMicrosoft_VC80_MFCLOC_x86 (x32 Version: 8.0.50727.4053 - Adobe) HiddenMicrosoft_VC80_MFCLOC_x86_x64 (Version: 80.50727.4053 - Adobe) HiddenMicrosoft_VC90_ATL_x86 (x32 Version: 1.00.0000 - Adobe) HiddenMicrosoft_VC90_ATL_x86_x64 (Version: 1.00.0000 - Adobe) HiddenMicrosoft_VC90_CRT_x86 (x32 Version: 1.00.0000 - Adobe) HiddenMicrosoft_VC90_CRT_x86_x64 (Version: 1.00.0000 - Adobe) HiddenMicrosoft_VC90_MFC_x86 (x32 Version: 1.00.0000 - Adobe) HiddenMicrosoft_VC90_MFC_x86_x64 (Version: 1.00.0000 - Adobe) HiddenMini Ninjas (HKLM-x32\...\Steam App 35000) (Version: - IO Interactive)MotioninJoy Gamepad tool 0.7.1001 (HKLM\...\{330DAC67-5B62-452A-A0E4-6B4A5923940F}_is1) (Version: 0.7.1001 - www.motioninjoy.com)Mozilla Firefox 29.0.1 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 29.0.1 (x86 en-US)) (Version: 29.0.1 - Mozilla)Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 26.0 - Mozilla)Muffin Knight (HKLM-x32\...\Steam App 263700) (Version: - Angry Mob Games)My Game Long Name (HKLM\...\UDK-58278108-eac1-4154-8341-0efab68c5861) (Version: - Epic Games, Inc.)neonRings (HKLM-x32\...\neonRings_is1) (Version: - )Next Car Game (HKLM-x32\...\Steam App 228380) (Version: - )Next Car Game Technology Sneak Peek 2.0 (HKLM-x32\...\Next Car Game Technology Sneak Peek) (Version: - Bugbear Entertainment)Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.47.3 - Black Tree Gaming)No More Room in Hell (HKLM-x32\...\Steam App 224260) (Version: - No More Room in Hell Team)NVIDIA 3D Vision Controller Driver 337.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 337.88 - NVIDIA Corporation)NVIDIA 3D Vision Driver 337.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 337.88 - NVIDIA Corporation)NVIDIA Control Panel 337.88 (Version: 337.88 - NVIDIA Corporation) HiddenNVIDIA GeForce Experience 2.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1 - NVIDIA Corporation)NVIDIA Graphics Driver 337.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 337.88 - NVIDIA Corporation)NVIDIA HD Audio Driver 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation)NVIDIA Install Application (Version: 2.1002.157.1165 - NVIDIA Corporation) HiddenNVIDIA LED Visualizer 1.0 (Version: 1.0 - NVIDIA Corporation) HiddenNVIDIA Network Service (Version: 1.0 - NVIDIA Corporation) HiddenNVIDIA PhysX (x32 Version: 9.13.1220 - NVIDIA Corporation) HiddenNVIDIA PhysX System Software 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation)NVIDIA ShadowPlay 14.6.22 (Version: 14.6.22 - NVIDIA Corporation) HiddenNVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.12.6514 - NVIDIA Corporation) HiddenNVIDIA Update 14.6.22 (Version: 14.6.22 - NVIDIA Corporation) HiddenNVIDIA Update Core (Version: 14.6.22 - NVIDIA Corporation) HiddenNVIDIA Virtual Audio 1.2.23 (Version: 1.2.23 - NVIDIA Corporation) HiddenOne Finger Death Punch (HKLM-x32\...\Steam App 264200) (Version: - Silver Dollar Games)Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version: - )OpenAL (HKLM-x32\...\OpenAL) (Version: - )Origin (HKLM-x32\...\Origin) (Version: 9.4.7.2799 - Electronic Arts, Inc.)Path of Exile (HKLM-x32\...\Steam App 238960) (Version: - Grinding Gear Games)Pid (HKLM-x32\...\Steam App 218740) (Version: - Might and Delight)Pinball FX2 (HKLM-x32\...\Steam App 226980) (Version: - Zen Studios)Prison Architect (HKLM-x32\...\Steam App 233450) (Version: - Introversion Software)PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.)PxMergeModule (x32 Version: 1.00.0000 - Your Company Name) HiddenQuickTime (HKLM-x32\...\{B67BAFBA-4C9F-48FA-9496-933E3B255044}) (Version: 7.74.80.86 - Apple Inc.)Race The Sun (HKLM-x32\...\Steam App 253030) (Version: - Flippfly LLC)Razer Nostromo (HKLM-x32\...\{2397C30A-9A6C-4DDA-81CE-07C7A8C38E45}) (Version: 2.05.02 - Razer USA Ltd.)Razer Nostromo Firmware Updater (HKLM-x32\...\{49C5BD36-F5B9-4E6A-9DC1-04818B9D55E3}) (Version: 1.02.03 - Razer USA Ltd.)Razer Synapse 2.0 (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 1.18.02 - Razer Inc.)Razor2: Hidden Skies (HKLM-x32\...\Steam App 34920) (Version: - Invent4 Entertainment)Revo Uninstaller Pro 3.0.8 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 3.0.8 - VS Revo Group, Ltd.)RuneScape Launcher 1.2.3 (HKLM-x32\...\{FAE99C85-0732-4C58-9C6B-10B5B12FA2E9}) (Version: 1.2.3 - Jagex Ltd)Saints Row IV, âåðñèÿ 1.0.0.0 (HKLM-x32\...\Saints Row IV_is1) (Version: 1.0.0.0 - )Sandboxie 4.08 (64-bit) (HKLM\...\Sandboxie) (Version: 4.08 - Sandboxie Holdings, LLC)SHIELD Streaming (Version: 2.1.214 - NVIDIA Corporation) HiddenSid Meier's Civilization V (HKLM-x32\...\Steam App 8930) (Version: - 2K Games, Inc.)SkyDrift (HKLM-x32\...\Steam App 91100) (Version: - Digital Reality)Source SDK (HKLM-x32\...\Steam App 211) (Version: - Valve)SpeedRunners (HKLM-x32\...\Steam App 207140) (Version: - DoubleDutch Games)Star Wars - Battlefront II (HKLM-x32\...\Steam App 6060) (Version: - Pandemic Studios)StarCraft II (HKLM-x32\...\StarCraft II) (Version: - Blizzard Entertainment)State of Decay (HKLM-x32\...\Steam App 241540) (Version: - Undead Labs)Super Meat Boy (HKLM-x32\...\Steam App 40800) (Version: - Team Meat)swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) HiddenSystem Requirements Lab CYRI (HKLM-x32\...\{F3FCB08B-E752-444D-86A0-0634A4F3B23D}) (Version: 6.0.8.0 - Husdawg, LLC)Tank Operations: European Campaign (HKLM-x32\...\Steam App 258240) (Version: - Linked Dimensions)TeamSpeak 3 Client (HKLM-x32\...\TeamSpeak 3 Client) (Version: 3.0.14 - TeamSpeak Systems GmbH)TeamViewer 9 (HKLM-x32\...\TeamViewer 9) (Version: 9.0.28223 - TeamViewer)TechPowerUp GPU-Z (HKLM-x32\...\TechPowerUp GPU-Z) (Version: - TechPowerUp)Terraria (HKLM-x32\...\Steam App 105600) (Version: - Re-Logic)The Ship (HKLM-x32\...\Steam App 2400) (Version: - Outerlight Ltd.)Titanfall™ (HKLM-x32\...\{347EE0C3-0690-48F6-A231-53853C2A80D6}) (Version: 1.0.3.6 - Electronic Arts)TrackMania² Stadium (HKLM-x32\...\Steam App 232910) (Version: - Nadeo)Trials Fusion (HKLM-x32\...\Steam App 245490) (Version: - RedLynx, in collaboration with Ubisoft Shanghai, Ubisoft Kiev)Unity (HKLM-x32\...\Unity) (Version: 4.5.0f6 - Unity Technologies ApS)Unity Web Player (HKCU\...\UnityWebPlayer) (Version: 4.5.0f6 - Unity Technologies ApS)Unreal Development Kit: 2012-07 (HKLM\...\UDK-bef5aeb5-bf25-4772-ad6c-da674c446f88) (Version: - Epic Games, Inc.)Uplay (HKLM-x32\...\Uplay) (Version: 4.3 - Ubisoft)USB GAMEPAD (HKLM-x32\...\{FEC7CD2E-2BB5-40C3-9592-078F64677E6C}) (Version: 1.00.0000 - GASIA)Ventrilo Client for Windows x64 (HKLM\...\{EEB3F6BB-318D-4CE5-989F-8191FCBFB578}) (Version: 3.0.8.0 - Flagship Industries, Inc.)Viscera Cleanup Detail (HKLM-x32\...\Steam App 246900) (Version: - RuneStorm)Viscera Cleanup Detail: Shadow WarriorViscera Cleanup Detail: Shadow Warrior (HKLM-x32\...\Steam App 255520) (Version: - RuneStorm)VLC media player 2.1.3 (HKLM-x32\...\VLC media player) (Version: 2.1.3 - VideoLAN)Warframe (HKLM-x32\...\Steam App 230410) (Version: - Digital Extremes)Warhammer 40,000: Dawn of War – Dark Crusade (HKLM-x32\...\Steam App 4580) (Version: - Relic Entertainment)Warhammer 40,000: Dawn of War - Game of the Year Edition (HKLM-x32\...\Steam App 4570) (Version: - Relic Entertainment)Warhammer 40,000: Dawn of War – Winter Assault (HKLM-x32\...\Steam App 9310) (Version: - Relic Entertainment)WildStar (HKLM-x32\...\WildStar) (Version: - NCSOFT)Worms Revolution (HKLM-x32\...\Steam App 200170) (Version: - Team17 Digital Ltd.)WoW UI Designer (HKLM-x32\...\{CD37B8FD-303B-401D-8F2B-D2272E2B5679}) (Version: 1.1.110 - SSC)==================== Restore Points =========================09-06-2014 19:35:06 Installed Dawngate10-06-2014 22:16:01 Installed DirectX12-06-2014 02:54:42 Windows Modules Installer12-06-2014 02:55:04 Windows Modules Installer12-06-2014 02:55:32 Windows Modules Installer12-06-2014 02:55:53 Windows Modules Installer12-06-2014 02:56:09 Windows Modules Installer12-06-2014 02:56:29 Windows Modules Installer12-06-2014 02:56:47 Windows Modules Installer12-06-2014 02:57:03 Windows Modules Installer13-06-2014 04:24:19 avast! antivirus system restore point==================== Hosts content: ==========================2012-07-26 13:26 - 2013-10-30 22:31 - 00001339 ____A C:\WINDOWS\system32\Drivers\etc\hosts127.0.0.1 activate.adobe.com127.0.0.1 practivate.adobe.com127.0.0.1 ereg.adobe.com127.0.0.1 activate.wip3.adobe.com127.0.0.1 wip3.adobe.com127.0.0.1 3dns-3.adobe.com127.0.0.1 3dns-2.adobe.com127.0.0.1 adobe-dns.adobe.com127.0.0.1 adobe-dns-2.adobe.com127.0.0.1 adobe-dns-3.adobe.com127.0.0.1 ereg.wip3.adobe.com127.0.0.1 activate-sea.adobe.com127.0.0.1 wwis-dubc1-vip60.adobe.com127.0.0.1 activate-sjc0.adobe.com127.0.0.1 adobe.activate.com==================== Scheduled Tasks (whitelisted) =============Task: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTaskTask: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsListTask: {10873861-3C6B-439E-8EA6-7410FA0B7790} - System32\Tasks\Microsoft\Windows\SysResetLogSuccess => Rundll32.exe ResetEng.dll,RjvLogSuccessEntryPointTask: {2085BF56-520D-4951-B7C0-DF34AF90CC6A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTaskTask: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulateTask: {30805796-986D-4C2B-8FC1-9E79AD330B32} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2014-06-12] (Microsoft Corporation)Task: {32698A53-7DB0-428D-8D0E-5BA98138AFA9} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation)Task: {3726BC18-4D67-48BF-887B-0A64A641FC8E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-09-13] (Google Inc.)Task: {37414156-C3C3-448B-8BEA-DECF0A373F9F} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start With Network => Sc.exe start wuauservTask: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [2013-08-22] (Microsoft Corporation)Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalanceTask: {49E70A84-02C5-47D7-B4F4-8692F8B21C77} - System32\Tasks\Microsoft\Windows\DiskCleanup\SilentCleanup => C:\Windows\system32\cleanmgr.exe [2014-02-22] (Microsoft Corporation)Task: {5BB34DD9-F645-4FC9-AB76-DA216AB84E71} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-ValidationTask: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play CleanupTask: {6DB62D5C-B970-4CC7-B275-242C9C9A9E38} - System32\Tasks\ASUS\ASUS Product Register Service => C:\Program Files (x86)\ASUS\APRP\aprp.exe [2013-06-21] (ASUSTek Computer Inc.)Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance TaskTask: {73B1B253-CE67-4501-AE1A-377DD1D68B65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTaskTask: {76D6C62C-EFEB-48C3-BCE8-BC219D5F996B} - System32\Tasks\Microsoft\Windows\DiskFootprint\DiagnosticsTask: {77F1D869-6E65-4079-A2A0-E2023408EF97} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryStateTask: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance TaskTask: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTaskTask: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance WorkTask: {A262D1B3-BDD9-4B8A-8054-148184CDFBF4} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-ManagementTask: {AE7D6768-183C-4CCA-B0BF-8AABFB1CA8BD} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-14] (Adobe Systems Incorporated)Task: {B559AC20-1451-4DAF-A973-E15389E01247} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-09-13] (Google Inc.)Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTaskTask: {D88FEC9E-A82A-46F9-87E2-B6B97B301C1A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensingTask: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon SynchronizationTask: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRETask: {E8168B46-EF4E-4D07-AB8D-25211ECB5224} - System32\Tasks\AdobeAAMUpdater-1.0-Duckii-PC-Duckii => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06] (Adobe Systems Incorporated)Task: {EAAF3446-CCFD-40E3-B017-F58ED630E176} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyUploadTask: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exeTask: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exeTask: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe==================== Loaded Modules (whitelisted) =============2014-04-08 23:57 - 2014-05-20 09:25 - 00116568 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll2012-01-17 11:24 - 2012-01-17 11:24 - 00055296 _____ () C:\Windows\SysWOW64\ASGT.exe2014-04-27 03:14 - 2014-06-11 06:17 - 00076888 _____ () C:\WINDOWS\SysWOW64\PnkBstrA.exe2014-02-03 18:55 - 2014-02-03 18:55 - 00792576 _____ () C:\Program Files\AskMrRobot\AmrTray.exe2014-05-26 10:53 - 2014-05-26 10:53 - 05892096 _____ () C:\wm\wm.exe2014-02-06 00:52 - 2014-02-06 00:52 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll2014-02-06 00:52 - 2014-02-06 00:52 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll2013-06-20 11:01 - 2013-06-20 11:01 - 00258048 _____ () C:\Program Files (x86)\ASUS\GPU Tweak\Vender.dll2013-05-14 15:11 - 2013-05-14 15:11 - 00049152 _____ () C:\Program Files (x86)\ASUS\GPU Tweak\Exeio.dll2014-05-22 13:56 - 2014-04-30 08:08 - 01135104 _____ () F:\Steam\libavcodec-55.dll2014-05-22 13:56 - 2014-04-30 08:08 - 00404992 _____ () F:\Steam\libavformat-55.dll2014-05-22 13:56 - 2014-04-30 08:08 - 00340992 _____ () F:\Steam\libavresample-1.dll2014-05-22 13:56 - 2014-04-30 08:08 - 00471552 _____ () F:\Steam\libavutil-53.dll2014-05-22 13:56 - 2014-05-17 09:36 - 00756224 _____ () F:\Steam\SDL2.dll2014-05-30 11:43 - 2014-05-30 01:37 - 02139840 _____ () F:\Steam\video.dll2014-05-22 13:56 - 2014-04-29 08:37 - 00519168 _____ () F:\Steam\libswscale-2.dll2014-05-30 11:43 - 2014-05-30 01:36 - 01116864 _____ () F:\Steam\bin\chromehtml.DLL2014-05-22 13:56 - 2014-05-02 07:35 - 20628160 _____ () F:\Steam\bin\libcef.dll2013-09-05 21:16 - 2013-06-15 07:49 - 01100800 _____ () F:\Steam\bin\avcodec-53.dll2013-09-05 21:16 - 2013-06-15 07:49 - 00124416 _____ () F:\Steam\bin\avutil-51.dll2013-09-05 21:16 - 2013-06-15 07:49 - 00192000 _____ () F:\Steam\bin\avformat-53.dll2014-06-11 02:44 - 2014-06-11 02:44 - 26065408 _____ () D:\Program Files\Blizzard\Battle.net\Battle.net.4710\libcef.dll2014-06-11 02:44 - 2014-06-11 02:44 - 00739840 _____ () D:\Program Files\Blizzard\Battle.net\Battle.net.4710\libglesv2.dll2014-06-11 02:44 - 2014-06-11 02:44 - 00130048 _____ () D:\Program Files\Blizzard\Battle.net\Battle.net.4710\libegl.dll2014-02-15 01:24 - 2014-04-25 11:53 - 00962560 _____ () D:\Origin\platforms\qwindows.dll2014-02-15 01:24 - 2014-04-25 11:52 - 00024064 _____ () D:\Origin\imageformats\qgif.dll2014-02-15 01:24 - 2014-04-25 11:52 - 00025088 _____ () D:\Origin\imageformats\qico.dll2014-02-15 01:24 - 2014-04-25 11:52 - 00217088 _____ () D:\Origin\imageformats\qjpeg.dll2014-02-15 01:24 - 2014-04-25 11:52 - 00261632 _____ () D:\Origin\imageformats\qmng.dll2014-02-15 01:24 - 2014-04-25 11:52 - 00019968 _____ () D:\Origin\imageformats\qtga.dll2014-02-15 01:24 - 2014-04-25 11:52 - 00302592 _____ () D:\Origin\imageformats\qtiff.dll2014-02-15 01:24 - 2014-04-25 11:52 - 00018944 _____ () D:\Origin\imageformats\qwbmp.dll2014-02-15 01:25 - 2014-04-25 11:53 - 00993280 _____ () D:\Origin\twitchsdk_32_release.dll2014-02-15 01:24 - 2014-04-25 11:53 - 00394810 _____ () D:\Origin\libmp3lame-ttv.dll2014-02-15 01:25 - 2014-04-25 11:53 - 00113171 _____ () D:\Origin\swresample-ttv-0.dll2014-02-15 01:24 - 2014-04-25 11:53 - 00246332 _____ () D:\Origin\avutil-ttv-51.dll2014-06-13 11:57 - 2014-06-13 11:57 - 00043008 _____ () c:\users\duckii\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpmba4ns.dll2013-08-24 03:01 - 2013-08-24 03:01 - 25100288 _____ () C:\Users\Duckii\AppData\Roaming\Dropbox\bin\libcef.dll2014-03-28 00:46 - 2014-03-28 00:46 - 00148480 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\quazip.dll2014-03-28 00:46 - 2014-03-28 00:46 - 00864768 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\platforms\qwindows.dll2014-03-28 00:46 - 2014-03-28 00:46 - 00677376 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\sqldrivers\qsqlite.dll2013-08-06 15:19 - 2014-03-28 00:46 - 00092104 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\soundbackends\directsound_win32.dll2013-08-06 15:19 - 2014-03-28 00:46 - 00105416 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\soundbackends\windowsaudiosession_win32.dll2014-03-28 00:46 - 2014-03-28 00:46 - 00025600 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\imageformats\qgif.dll2014-03-28 00:46 - 2014-03-28 00:46 - 00242688 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\imageformats\qjpeg.dll2013-08-06 15:19 - 2014-03-28 00:46 - 00117704 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\plugins\appscanner_plugin.dll2013-08-06 15:19 - 2014-03-28 00:46 - 00477128 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\plugins\clientquery_plugin.dll2013-09-12 13:09 - 2014-03-28 00:46 - 00483784 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\plugins\teamspeak_control_plugin.dll2014-03-28 00:46 - 2014-03-28 00:46 - 00123904 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\accessible\qtaccessiblewidgets.dll2014-05-26 01:03 - 2014-05-14 07:40 - 00716616 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\libglesv2.dll2014-05-26 01:03 - 2014-05-14 07:40 - 00126280 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\libegl.dll2014-05-26 01:03 - 2014-05-14 07:40 - 04217672 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\pdf.dll2014-05-26 01:03 - 2014-05-14 07:40 - 00414536 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\ppGoogleNaClPluginChrome.dll2014-05-26 01:03 - 2014-05-14 07:40 - 01732424 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\ffmpegsumo.dll2014-05-26 01:03 - 2014-05-14 07:40 - 13695816 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\PepperFlash\pepflashplayer.dll==================== Alternate Data Streams (whitelisted) =========AlternateDataStreams: C:\Users\Duckii\SkyDrive:ms-properties==================== Safe Mode (whitelisted) ===================HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service"==================== EXE Association (whitelisted) ================================= MSCONFIG/TASK MANAGER disabled items =========HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"HKCU\...\StartupApproved\StartupFolder: => "CurseClientStartup.ccip"HKCU\...\StartupApproved\Run: => "DAEMON Tools Lite"HKCU\...\StartupApproved\Run: => "DS3 Tool"HKCU\...\StartupApproved\Run: => "SandboxieControl"HKCU\...\StartupApproved\Run: => "lesupd"==================== Faulty Device Manager Devices ================================= Event log errors: =========================Application errors:==================Error: (06/13/2014 00:07:28 PM) (Source: ESENT) (EventID: 454) (User: )Description: svchost (3140) Instance: Database recovery/restore failed with unexpected error -501.Error: (06/13/2014 00:07:28 PM) (Source: ESENT) (EventID: 465) (User: )Description: svchost (3140) Instance: Corruption was detected during soft recovery in logfile C:\ProgramData\Microsoft\Windows\AppRepository\edb.log. The failing checksum record is located at position END. Data not matching the log-file fill pattern first appeared in sector 96 (0x00000060). This logfile has been damaged and is unusable.Error: (06/13/2014 00:07:28 PM) (Source: ESENT) (EventID: 477) (User: )Description: svchost (3140) Instance: The log range read from the file "C:\ProgramData\Microsoft\Windows\AppRepository\edb.log" at offset 393216 (0x0000000000060000) for 4096 (0x00001000) bytes failed verification due to a range checksum mismatch. The expected checksum was 152893690764419688 (0x21f30006e696268) and the actual checksum was 409171780582 (0x5f4489e3e6). The read operation will fail with error -501 (0xfffffe0b). If this condition persists then please restore the logfile from a previous backup.Error: (06/13/2014 00:07:28 PM) (Source: ESENT) (EventID: 465) (User: )Description: svchost (3140) Instance: Corruption was detected during soft recovery in logfile C:\ProgramData\Microsoft\Windows\AppRepository\edb.log. The failing checksum record is located at position END. Data not matching the log-file fill pattern first appeared in sector 96 (0x00000060). This logfile has been damaged and is unusable.Error: (06/13/2014 00:07:28 PM) (Source: ESENT) (EventID: 477) (User: )Description: svchost (3140) Instance: The log range read from the file "C:\ProgramData\Microsoft\Windows\AppRepository\edb.log" at offset 393216 (0x0000000000060000) for 4096 (0x00001000) bytes failed verification due to a range checksum mismatch. The expected checksum was 152893690764419688 (0x21f30006e696268) and the actual checksum was 409171780582 (0x5f4489e3e6). The read operation will fail with error -501 (0xfffffe0b). If this condition persists then please restore the logfile from a previous backup.Error: (06/13/2014 00:07:28 PM) (Source: ESENT) (EventID: 454) (User: )Description: svchost (3140) Instance: Database recovery/restore failed with unexpected error -501.Error: (06/13/2014 00:07:28 PM) (Source: ESENT) (EventID: 465) (User: )Description: svchost (3140) Instance: Corruption was detected during soft recovery in logfile C:\ProgramData\Microsoft\Windows\AppRepository\edb.log. The failing checksum record is located at position END. Data not matching the log-file fill pattern first appeared in sector 96 (0x00000060). This logfile has been damaged and is unusable.Error: (06/13/2014 00:07:28 PM) (Source: ESENT) (EventID: 477) (User: )Description: svchost (3140) Instance: The log range read from the file "C:\ProgramData\Microsoft\Windows\AppRepository\edb.log" at offset 393216 (0x0000000000060000) for 4096 (0x00001000) bytes failed verification due to a range checksum mismatch. The expected checksum was 152893690764419688 (0x21f30006e696268) and the actual checksum was 409171780582 (0x5f4489e3e6). The read operation will fail with error -501 (0xfffffe0b). If this condition persists then please restore the logfile from a previous backup.Error: (06/13/2014 00:07:28 PM) (Source: ESENT) (EventID: 465) (User: )Description: svchost (3140) Instance: Corruption was detected during soft recovery in logfile C:\ProgramData\Microsoft\Windows\AppRepository\edb.log. The failing checksum record is located at position END. Data not matching the log-file fill pattern first appeared in sector 96 (0x00000060). This logfile has been damaged and is unusable.Error: (06/13/2014 00:07:28 PM) (Source: ESENT) (EventID: 477) (User: )Description: svchost (3140) Instance: The log range read from the file "C:\ProgramData\Microsoft\Windows\AppRepository\edb.log" at offset 393216 (0x0000000000060000) for 4096 (0x00001000) bytes failed verification due to a range checksum mismatch. The expected checksum was 152893690764419688 (0x21f30006e696268) and the actual checksum was 409171780582 (0x5f4489e3e6). The read operation will fail with error -501 (0xfffffe0b). If this condition persists then please restore the logfile from a previous backup.System errors:=============Error: (06/13/2014 00:25:11 PM) (Source: DCOM) (EventID: 10010) (User: Duckii-PC)Description: {1B1F472E-3221-4826-97DB-2C2324D389AE}Error: (06/12/2014 04:23:17 PM) (Source: DCOM) (EventID: 10010) (User: Duckii-PC)Description: {1B1F472E-3221-4826-97DB-2C2324D389AE}Error: (06/11/2014 06:27:37 PM) (Source: DCOM) (EventID: 10010) (User: Duckii-PC)Description: {1B1F472E-3221-4826-97DB-2C2324D389AE}Error: (06/11/2014 00:43:03 PM) (Source: DCOM) (EventID: 10010) (User: Duckii-PC)Description: {1B1F472E-3221-4826-97DB-2C2324D389AE}Error: (06/11/2014 00:42:33 PM) (Source: DCOM) (EventID: 10010) (User: Duckii-PC)Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001}Error: (06/11/2014 06:19:02 AM) (Source: DCOM) (EventID: 10010) (User: Duckii-PC)Description: {1B1F472E-3221-4826-97DB-2C2324D389AE}Error: (06/11/2014 06:18:32 AM) (Source: DCOM) (EventID: 10010) (User: Duckii-PC)Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001}Error: (06/10/2014 11:46:24 AM) (Source: DCOM) (EventID: 10010) (User: Duckii-PC)Description: {1B1F472E-3221-4826-97DB-2C2324D389AE}Error: (06/09/2014 00:07:47 PM) (Source: DCOM) (EventID: 10010) (User: Duckii-PC)Description: {1B1F472E-3221-4826-97DB-2C2324D389AE}Error: (06/09/2014 00:52:30 AM) (Source: DCOM) (EventID: 10010) (User: Duckii-PC)Description: {1B1F472E-3221-4826-97DB-2C2324D389AE}Microsoft Office Sessions:=========================Error: (06/13/2014 00:07:28 PM) (Source: ESENT) (EventID: 454) (User: )Description: svchost3140Instance: -501Error: (06/13/2014 00:07:28 PM) (Source: ESENT) (EventID: 465) (User: )Description: svchost3140Instance: C:\ProgramData\Microsoft\Windows\AppRepository\edb.logEND96 (0x00000060)Error: (06/13/2014 00:07:28 PM) (Source: ESENT) (EventID: 477) (User: )Description: svchost3140Instance: C:\ProgramData\Microsoft\Windows\AppRepository\edb.log393216 (0x0000000000060000)4096 (0x00001000)-501 (0xfffffe0b)152893690764419688 (0x21f30006e696268)409171780582 (0x5f4489e3e6)Error: (06/13/2014 00:07:28 PM) (Source: ESENT) (EventID: 465) (User: )Description: svchost3140Instance: C:\ProgramData\Microsoft\Windows\AppRepository\edb.logEND96 (0x00000060)Error: (06/13/2014 00:07:28 PM) (Source: ESENT) (EventID: 477) (User: )Description: svchost3140Instance: C:\ProgramData\Microsoft\Windows\AppRepository\edb.log393216 (0x0000000000060000)4096 (0x00001000)-501 (0xfffffe0b)152893690764419688 (0x21f30006e696268)409171780582 (0x5f4489e3e6)Error: (06/13/2014 00:07:28 PM) (Source: ESENT) (EventID: 454) (User: )Description: svchost3140Instance: -501Error: (06/13/2014 00:07:28 PM) (Source: ESENT) (EventID: 465) (User: )Description: svchost3140Instance: C:\ProgramData\Microsoft\Windows\AppRepository\edb.logEND96 (0x00000060)Error: (06/13/2014 00:07:28 PM) (Source: ESENT) (EventID: 477) (User: )Description: svchost3140Instance: C:\ProgramData\Microsoft\Windows\AppRepository\edb.log393216 (0x0000000000060000)4096 (0x00001000)-501 (0xfffffe0b)152893690764419688 (0x21f30006e696268)409171780582 (0x5f4489e3e6)Error: (06/13/2014 00:07:28 PM) (Source: ESENT) (EventID: 465) (User: )Description: svchost3140Instance: C:\ProgramData\Microsoft\Windows\AppRepository\edb.logEND96 (0x00000060)Error: (06/13/2014 00:07:28 PM) (Source: ESENT) (EventID: 477) (User: )Description: svchost3140Instance: C:\ProgramData\Microsoft\Windows\AppRepository\edb.log393216 (0x0000000000060000)4096 (0x00001000)-501 (0xfffffe0b)152893690764419688 (0x21f30006e696268)409171780582 (0x5f4489e3e6)CodeIntegrity Errors:=================================== Date: 2013-11-12 15:53:49.731 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2013-11-12 15:53:41.834 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2013-11-10 19:03:09.089 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2013-11-10 19:03:01.959 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2013-11-05 23:22:53.695 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2013-11-05 23:22:44.772 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2013-11-03 20:26:36.715 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2013-11-03 20:26:28.334 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2013-10-31 22:28:51.228 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2013-10-31 22:28:34.676 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.==================== Memory info =========================== Percentage of memory in use: 18%Total physical RAM: 16382.05 MBAvailable physical RAM: 13340.19 MBTotal Pagefile: 18814.05 MBAvailable Pagefile: 15266.64 MBTotal Virtual: 131072 MBAvailable Virtual: 131071.8 MB==================== Drives ================================Drive c: () (Fixed) (Total:111.79 GB) (Free:24.2 GB) NTFS ==>[Drive with boot components (obtained from BCD)]Drive d: (Local Disk) (Fixed) (Total:931.51 GB) (Free:111.58 GB) NTFSDrive e: (System Reserved) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS ==>[System with boot components (obtained from reading drive)]Drive f: (Steam) (Fixed) (Total:232.79 GB) (Free:15.65 GB) NTFS==================== MBR & Partition Table ==========================================================================Disk: 0 (MBR Code: Windows 7 or 8) (Size: 112 GB) (Disk ID: 85213EDB)Partition 1: (Active) - (Size=112 GB) - (Type=07 NTFS)========================================================Disk: 1 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: 0EB1357E)Partition 1: (Not Active) - (Size=932 GB) - (Type=07 NTFS)========================================================Disk: 2 (MBR Code: Windows 7 or 8) (Size: 233 GB) (Disk ID: 05A1E326)Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)Partition 2: (Not Active) - (Size=233 GB) - (Type=07 NTFS)==================== End Of Log ============================ Link to post Share on other sites More sharing options...
kevinf80 Posted June 13, 2014 ID:841076 Share Posted June 13, 2014 Hello and P2P/Piracy Warning: If you're using Peer 2 Peer software such as uTorrent, BitTorrent or similar you must either fully uninstall them or completely disable them from running while being assisted here.Failure to remove or disable such software will result in your topic being closed and no further assistance being provided.If you have illegal/cracked software, cracks, keygens etc. on the system, please remove or uninstall them now and read the policy on Piracy. Please ensure that you adhere to forum Protocol regarding cracked software.... Next, Download CKScanner from here: http://downloads.malwareremoval.com/CKScanner.exeImportant - Save it to your desktop.Doubleclick CKScanner.exe (Right click and "Run as administrator" in Vista/Win7).Give permission if necessary, and click Search For Files.After a very short time, when the cursor hourglass disappears, click Save List To File.A message box will verify the file saved. Please run the program once only.Double-click the CKFiles.txt icon on your desktop and copy/paste the contents in your next reply. Next, Re-run FRST one more time, ensure to checkmark "Addition" under "Optional Scan" Post both produced logs... Please do not post logs in Code or Quote boxes, copy paste direct to your reply... Kevin Link to post Share on other sites More sharing options...
PrivateDuckii Posted June 13, 2014 Author ID:841131 Share Posted June 13, 2014 I have since uninstalled BitTorrent. The CKFiles.txt output: CKScanner 2.4 - Additional Security Risks - These are not necessarily badscanner sequence 3.FI.11.DDNAP0 ----- EOF ----- Sorry about that. Most recent FRST scan: Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 12-06-2014 02Ran by Duckii (administrator) on DUCKII-PC on 13-06-2014 21:59:29Running from C:\Users\Duckii\DesktopPlatform: Windows 8.1 Pro (X64) OS Language: English(US)Internet Explorer Version 11Boot Mode: Normal The only official download link for FRST:Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/ Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/ Download link from any site other than Bleeping Computer is unpermitted or outdated.See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe(Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieSvc.exe(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe() C:\Windows\SysWOW64\ASGT.exe(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe(Foxit Corporation) C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe(Microsoft Corporation) C:\Windows\System32\dasHost.exe(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe() C:\Windows\SysWOW64\PnkBstrA.exe(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe(ASUS) C:\Program Files (x86)\ASUS\GPU Tweak\GPUTweak.exe(ASUS) C:\Program Files (x86)\ASUS\GPU Tweak\Monitor.exe() C:\Program Files\AskMrRobot\AmrTray.exe(Valve Corporation) F:\Steam\Steam.exe(Blizzard Entertainment) C:\ProgramData\Battle.net\Agent\Agent.2880\Agent.exe(Blizzard Entertainment) D:\Program Files\Blizzard\Battle.net\Battle.net.4710\Battle.net.exe(Electronic Arts) D:\Origin\Origin.exe() C:\wm\wm.exe(Dropbox, Inc.) C:\Users\Duckii\AppData\Roaming\Dropbox\bin\Dropbox.exe(Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe(Razer USA Ltd) C:\Program Files (x86)\Razer\Nostromo\RazerNostromoSysTray.exe(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe(Apple Inc.) D:\Program Files\iTunes\iTunesHelper.exe(TeamSpeak Systems GmbH) C:\Program Files (x86)\TeamSpeak 3 Client\ts3client_win32.exe() C:\wm\64\wincpu.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe() C:\Users\Duckii\Desktop\CKScanner.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500208 2010-03-06] (Adobe Systems Incorporated)HKLM\...\Run: [Ask Mr. Robot] => C:\Program Files\AskMrRobot\AmrTray.exe [792576 2014-02-03] ()HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2352072 2014-05-30] (NVIDIA Corporation)HKLM\...\Run: [shadowPlay] => C:\WINDOWS\system32\nvspcap64.dll [1279480 2014-05-30] (NVIDIA Corporation)HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [43848 2014-02-06] (Apple Inc.)HKLM-x32\...\Run: [switchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)HKLM-x32\...\Run: [AdobeCS5ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [406992 2010-02-22] (Adobe Systems Incorporated)HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.)HKLM-x32\...\Run: [] => [X]HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [585048 2014-04-17] (Razer Inc.)HKLM-x32\...\Run: [Razer Nostromo Driver] => C:\Program Files (x86)\Razer\Nostromo\RazerNostromoSysTray.exe [979400 2012-11-16] (Razer USA Ltd)HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [3814736 2014-05-13] (LogMeIn Inc.)HKLM-x32\...\Run: [iTunesHelper] => D:\Program Files\iTunes\iTunesHelper.exe [152392 2014-05-26] (Apple Inc.)HKU\S-1-5-21-3794150929-2800894002-4186101125-1001\...\Run: [steam] => F:\Steam\steam.exe [1754816 2014-05-30] (Valve Corporation)HKU\S-1-5-21-3794150929-2800894002-4186101125-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3673696 2013-08-01] (Disc Soft Ltd)HKU\S-1-5-21-3794150929-2800894002-4186101125-1001\...\Run: [DS3 Tool] => C:\Program Files\MotioninJoy\ds3\DS3_Tool.exe [104768 2012-05-12] (www.motioninjoy.com)HKU\S-1-5-21-3794150929-2800894002-4186101125-1001\...\Run: [battle.net] => D:\Program Files\Blizzard\Battle.net\Battle.net Launcher.exe [2907184 2014-06-11] (Blizzard Entertainment)HKU\S-1-5-21-3794150929-2800894002-4186101125-1001\...\Run: [EADM] => D:\Origin\Origin.exe [3588952 2014-04-17] (Electronic Arts)HKU\S-1-5-21-3794150929-2800894002-4186101125-1001\...\Run: [sandboxieControl] => C:\Program Files\Sandboxie\SbieCtrl.exe [759496 2014-01-18] (Sandboxie Holdings, LLC)HKU\S-1-5-21-3794150929-2800894002-4186101125-1001\...\Run: [lesupd] => C:\wm\lesupd.exeHKU\S-1-5-21-3794150929-2800894002-4186101125-1001\...\Run: [wm] => C:\wm\wm.exe [5892096 2014-05-26] ()Startup: C:\Users\Duckii\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CurseClientStartup.ccip ()Startup: C:\Users\Duckii\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnkShortcutTarget: Dropbox.lnk -> C:\Users\Duckii\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.ninemsn.com.au/?ocid=iehpHKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xA88963EE7FF2CE01HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-AUBHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)BHO-x32: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)BHO-x32: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)Toolbar: HKLM - No Name - {ae07101b-46d4-4a98-af68-0333ea26e113} - No FileToolbar: HKLM - No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No FileToolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No FileToolbar: HKLM-x32 - No Name - {ae07101b-46d4-4a98-af68-0333ea26e113} - No FileHosts: There are more than one entry in Hosts. See Hosts section of Addition.txt FireFox:========FF ProfilePath: C:\Users\Duckii\AppData\Roaming\Mozilla\Firefox\Profiles\re0fqzhq.defaultFF NewTab: about:blankFF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll ()FF Plugin: @java.com/DTPlugin,version=10.55.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)FF Plugin: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - D:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)FF Plugin-x32: @adobe.com/FlashPlayer - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll ()FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1209149.dll (Adobe Systems, Inc.)FF Plugin-x32: @Apple.com/iTunes,version=1.0 - D:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()FF Plugin-x32: @esn/npbattlelog,version=2.4.0 - C:\Program Files (x86)\Battlelog Web Plugins\2.4.0\npbattlelog.dll (EA Digital Illusions CE AB)FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation)FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation)FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)FF Plugin-x32: @videolan.org/vlc,version=2.1.0 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)FF Plugin-x32: @videolan.org/vlc,version=2.1.1 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)FF Plugin-x32: @videolan.org/vlc,version=2.1.2 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)FF Plugin-x32: @videolan.org/vlc,version=2.1.3 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Duckii\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)FF Plugin HKCU: ubisoft.com/uplaypc - C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll ()FF user.js: detected! => C:\Users\Duckii\AppData\Roaming\Mozilla\Firefox\Profiles\re0fqzhq.default\user.jsFF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.)FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.)FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.)FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.)FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.)FF Extension: Hola Unblocker - C:\Users\Duckii\AppData\Roaming\Mozilla\Firefox\Profiles\re0fqzhq.default\Extensions\jid1-4P0kohSJxU1qGg@jetpack [2014-01-17]FF Extension: Reddit Enhancement Suite - C:\Users\Duckii\AppData\Roaming\Mozilla\Firefox\Profiles\re0fqzhq.default\Extensions\jid1-xUfzOsOFlzSOXg@jetpack.xpi [2013-09-05]FF Extension: Adblock Plus - C:\Users\Duckii\AppData\Roaming\Mozilla\Firefox\Profiles\re0fqzhq.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-09-05] Chrome: =======CHR HomePage: hxxp://www.google.comCHR StartupUrls: "hxxp://www.google.com/"CHR DefaultSearchKeyword: google.com.auCHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\PepperFlash\pepflashplayer.dll ()CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewerCHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\ppGoogleNaClPluginChrome.dll ()CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\pdf.dll ()CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation)CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation)CHR Plugin: (Foxit Reader Plugin for Mozilla) - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll No FileCHR Plugin: (Java Deployment Toolkit 7.0.450.18) - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)CHR Plugin: (Java Platform SE 7 U45) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)CHR Plugin: (VLC Web Plugin) - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)CHR Plugin: (Unity Player) - C:\Users\Duckii\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll No FileCHR Plugin: (iTunes Application Detector) - D:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()CHR Extension: (BetterTTV) - C:\Users\Duckii\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2014-01-22]CHR Extension: (Google Docs) - C:\Users\Duckii\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-09-13]CHR Extension: (Google Drive) - C:\Users\Duckii\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-09-13]CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Duckii\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-05-26]CHR Extension: (YouTube) - C:\Users\Duckii\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-09-13]CHR Extension: (Adblock Plus) - C:\Users\Duckii\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-01-19]CHR Extension: (Google Search) - C:\Users\Duckii\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-09-13]CHR Extension: (Hola Better Internet) - C:\Users\Duckii\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkojfkhlekighikafcpjkiklfbnlmeio [2014-05-31]CHR Extension: (Imgur to Gfycat) - C:\Users\Duckii\AppData\Local\Google\Chrome\User Data\Default\Extensions\idnninnhcleaikepmmomfnknbldalnjj [2014-03-12]CHR Extension: (Reddit Enhancement Suite) - C:\Users\Duckii\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbmfpngjjgdllneeigpgjifpgocmfgmb [2014-01-19]CHR Extension: (Google Wallet) - C:\Users\Duckii\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-10-25]CHR Extension: (Enhanced Steam) - C:\Users\Duckii\AppData\Local\Google\Chrome\User Data\Default\Extensions\okadibdjfemgnhjiembecghcbfknbfhg [2014-05-04]CHR Extension: (Gmail) - C:\Users\Duckii\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-09-13] ==================== Services (Whitelisted) ================= R2 ASGT; C:\Windows\SysWOW64\ASGT.exe [55296 2012-01-17] () [File not signed]S3 EasyAntiCheat; C:\WINDOWS\SysWOW64\EasyAntiCheat.exe [93048 2014-05-28] (EasyAntiCheat Ltd)R2 FoxitCloudUpdateService; C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe [242216 2014-05-15] (Foxit Corporation)R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [377616 2014-04-15] (LogMeIn, Inc.)S3 npggsvc; C:\WINDOWS\SysWOW64\GameMon.des [4795672 2013-11-26] (INCA Internet Co., Ltd.)R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1631008 2014-05-30] (NVIDIA Corporation)R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21055432 2014-05-30] (NVIDIA Corporation)R2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [76888 2014-06-11] ()R2 SbieSvc; C:\Program Files\Sandboxie\SbieSvc.exe [187592 2014-01-18] (Sandboxie Holdings, LLC)S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-03-24] (Microsoft Corporation)R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-03-24] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== S0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra)S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [21160 2012-09-23] (Advanced Micro Devices, Inc.)R3 athr; C:\Windows\system32\DRIVERS\athwnx.sys [3680256 2013-06-18] (Qualcomm Atheros Communications, Inc.)S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Windows ® Win 7 DDK provider)R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2014-01-06] (Disc Soft Ltd)R3 hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [46136 2014-05-13] (LogMeIn Inc.)S3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-31] (Intel Corporation)S3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-26] (Intel Corporation)S0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-10] (Intel Corporation)R0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39768 2014-01-07] (Microsoft Corporation)R3 IOMap; C:\WINDOWS\system32\drivers\IOMap64.sys [24824 2013-02-19] (ASUSTeK Computer Inc.)S3 kbldfltr; C:\Windows\System32\drivers\kbldfltr.sys [22272 2013-11-14] (Microsoft Corporation)S0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation)R3 MTsensor; C:\Windows\system32\DRIVERS\ASACPI.sys [17280 2013-05-17] ()R3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation)S3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation)R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20256 2014-05-30] (NVIDIA Corporation)R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [40392 2014-04-01] (NVIDIA Corporation)S3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [924504 2014-02-22] (Microsoft Corporation)R3 rzendpt; C:\Windows\System32\drivers\rzendpt.sys [39080 2014-04-09] (Razer Inc)R3 rzjoystk; C:\Windows\System32\drivers\rzjoystk.sys [19968 2012-10-18] (Razer USA Ltd)R3 rzjstk; C:\Windows\System32\drivers\rzjstk.sys [27816 2014-04-09] (Razer Inc)R3 rzkeypadendpt; C:\Windows\System32\drivers\rzkeypadendpt.sys [32936 2014-04-09] (Razer Inc)S3 RZMAELSTROMVADService; C:\Windows\system32\drivers\RzMaelstromVAD.sys [40696 2013-11-21] (Windows ® Win 7 DDK provider)R3 SbieDrv; C:\Program Files\Sandboxie\SbieDrv.sys [202600 2014-01-18] (Sandboxie Holdings, LLC)S3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146776 2014-01-07] (Microsoft Corporation)S0 stornvme; C:\Windows\System32\drivers\stornvme.sys [57176 2013-11-14] (Microsoft Corporation)S3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation)R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-03-24] (Microsoft Corporation)R0 Wof; C:\Windows\System32\Drivers\Wof.sys [157016 2014-03-13] (Microsoft Corporation)S3 xb1usb; C:\Windows\System32\drivers\xb1usb.sys [34016 2014-05-27] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-06-13 21:59 - 2014-06-13 21:59 - 00021518 _____ () C:\Users\Duckii\Desktop\FRST.txt2014-06-13 21:57 - 2014-06-13 21:58 - 00000127 _____ () C:\Users\Duckii\Desktop\ckfiles.txt2014-06-13 21:47 - 2014-06-13 21:47 - 00468480 _____ () C:\Users\Duckii\Desktop\CKScanner.exe2014-06-13 12:58 - 2014-06-13 12:58 - 00001171 _____ () C:\Users\Duckii\Desktop\MBAM-13-06-2014.txt2014-06-13 12:40 - 2014-06-13 12:41 - 00048673 _____ () C:\Users\Duckii\Downloads\Addition.txt2014-06-13 12:39 - 2014-06-13 21:59 - 00000000 ____D () C:\FRST2014-06-13 12:39 - 2014-06-13 12:41 - 00090863 _____ () C:\Users\Duckii\Downloads\FRST.txt2014-06-13 12:38 - 2014-06-13 12:41 - 00122584 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys2014-06-13 12:38 - 2014-06-13 12:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware2014-06-13 12:38 - 2014-06-13 12:38 - 00000000 ____D () C:\ProgramData\Malwarebytes2014-06-13 12:38 - 2014-06-13 12:38 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware2014-06-13 12:38 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys2014-06-13 12:38 - 2014-05-12 07:26 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys2014-06-13 12:38 - 2014-05-12 07:25 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys2014-06-13 12:37 - 2014-06-13 12:37 - 02081792 _____ (Farbar) C:\Users\Duckii\Desktop\FRST64.exe2014-06-13 12:32 - 2014-06-13 12:37 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Duckii\Downloads\mbam-setup-2.0.2.1012 (1).exe2014-06-13 12:24 - 2014-06-13 12:25 - 02042088 _____ () C:\Users\Duckii\Downloads\FRST64.exe2014-06-12 10:57 - 2014-06-12 10:58 - 04181856 _____ (Kaspersky Lab ZAO) C:\Users\Duckii\Downloads\tdsskiller.exe2014-06-11 18:52 - 2014-06-13 04:30 - 00000000 ____D () C:\Users\Duckii\Documents\Resume2014-06-11 17:27 - 2014-06-11 17:41 - 00000000 ____D () C:\Users\Duckii\Documents\BFH.Beta2014-06-11 17:27 - 2014-06-11 17:27 - 02247960 _____ () C:\Users\Duckii\Downloads\battlelog-web-plugins_2.4.0_141.exe2014-06-11 17:27 - 2014-06-11 17:27 - 00000000 ____D () C:\Users\Duckii\AppData\Local\ESN2014-06-11 17:27 - 2014-06-11 17:27 - 00000000 ____D () C:\Program Files (x86)\Battlelog Web Plugins2014-06-11 15:27 - 2014-05-30 18:21 - 23414784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll2014-06-11 15:27 - 2014-05-30 17:45 - 02768384 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll2014-06-11 15:27 - 2014-05-30 17:28 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll2014-06-11 15:27 - 2014-05-30 17:20 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll2014-06-11 15:27 - 2014-05-30 17:18 - 17271296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll2014-06-11 15:27 - 2014-05-30 17:08 - 05782528 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll2014-06-11 15:27 - 2014-05-30 17:06 - 00452096 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll2014-06-11 15:27 - 2014-05-30 16:46 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll2014-06-11 15:27 - 2014-05-30 16:44 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll2014-06-11 15:27 - 2014-05-30 16:43 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll2014-06-11 15:27 - 2014-05-30 16:38 - 02179072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll2014-06-11 15:27 - 2014-05-30 16:35 - 00608768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe2014-06-11 15:27 - 2014-05-30 16:29 - 00631808 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll2014-06-11 15:27 - 2014-05-30 16:27 - 00592896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll2014-06-11 15:27 - 2014-05-30 16:23 - 02040832 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl2014-06-11 15:27 - 2014-05-30 16:16 - 00368128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll2014-06-11 15:27 - 2014-05-30 16:04 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll2014-06-11 15:27 - 2014-05-30 16:02 - 00242688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll2014-06-11 15:27 - 2014-05-30 15:56 - 04244992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll2014-06-11 15:27 - 2014-05-30 15:56 - 02266112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll2014-06-11 15:27 - 2014-05-30 15:54 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll2014-06-11 15:27 - 2014-05-30 15:49 - 01964544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl2014-06-11 15:27 - 2014-05-30 15:43 - 13522944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll2014-06-11 15:27 - 2014-05-30 15:40 - 11725312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll2014-06-11 15:27 - 2014-05-30 15:30 - 01398272 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll2014-06-11 15:27 - 2014-05-30 15:21 - 01790976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll2014-06-11 15:27 - 2014-05-30 15:15 - 01143296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll2014-06-11 15:27 - 2014-05-30 15:13 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll2014-06-11 15:27 - 2014-05-30 15:13 - 00704512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieUnatt.exe2014-06-11 15:24 - 2014-06-11 15:24 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieUnatt.exe2014-06-11 15:24 - 2014-06-11 15:24 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe2014-06-11 15:24 - 2014-06-11 15:24 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieetwproxystub.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwproxystub.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollectorres.dll2014-06-11 15:24 - 2014-05-19 14:31 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvcfg.exe2014-06-11 15:24 - 2014-05-19 14:21 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe2014-06-11 15:24 - 2014-05-19 13:23 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvinst.exe2014-06-11 15:24 - 2014-05-10 11:46 - 02151424 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll2014-06-11 15:24 - 2014-05-10 11:22 - 01312256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll2014-06-11 15:24 - 2014-05-09 07:06 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ks.sys2014-06-11 15:24 - 2014-05-05 12:02 - 03360256 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll2014-06-11 15:24 - 2014-05-03 15:14 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe2014-06-11 15:24 - 2014-05-03 12:21 - 00249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll2014-06-11 15:24 - 2014-05-03 12:07 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll2014-06-11 15:24 - 2014-05-03 11:41 - 00921088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll2014-06-11 15:24 - 2014-05-03 11:38 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll2014-06-11 15:24 - 2014-04-30 19:16 - 01336648 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll2014-06-11 15:24 - 2014-04-30 12:43 - 01975296 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll2014-06-11 15:24 - 2014-04-30 12:26 - 01345536 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll2014-06-11 15:24 - 2014-04-30 11:51 - 01064448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll2014-06-11 15:24 - 2014-04-30 11:47 - 01509888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll2014-06-11 15:24 - 2014-04-03 15:59 - 02518872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys2014-06-11 15:24 - 2014-04-03 15:59 - 00428888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS2014-06-11 15:23 - 2014-06-11 15:23 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll2014-06-11 15:23 - 2014-05-01 21:31 - 03048904 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe2014-06-11 15:23 - 2014-05-01 21:31 - 00055328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wpcfltr.sys2014-06-11 15:23 - 2014-05-01 15:14 - 03118080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll2014-06-11 15:23 - 2014-05-01 15:05 - 02861056 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebSync.dll2014-06-11 15:23 - 2014-05-01 14:51 - 02344448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll2014-06-11 15:23 - 2014-05-01 13:24 - 02834944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpccpl.dll2014-06-11 06:17 - 2014-06-11 06:17 - 00000850 _____ () C:\Users\Public\Desktop\Battlefield Hardline Beta.lnk2014-06-11 06:17 - 2014-06-11 06:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield Hardline Beta2014-06-10 11:57 - 2014-06-10 11:58 - 00000000 ____D () C:\Users\Duckii\Documents\Dawngate2014-06-10 04:08 - 2014-06-10 04:09 - 17009768 _____ (Electronic Arts, Inc.) C:\Users\Duckii\Downloads\OriginThinSetup.exe2014-06-10 03:35 - 2014-06-10 11:58 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\DawngateData2014-06-10 03:35 - 2014-06-10 03:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dawngate2014-06-10 03:34 - 2014-06-10 03:34 - 09269248 _____ () C:\Users\Duckii\Downloads\Dawngate_en_us.msi2014-06-08 12:46 - 2014-06-08 12:46 - 09561964 _____ () C:\Users\Duckii\Downloads\cliffhorse.zip2014-06-06 11:59 - 2014-06-06 11:59 - 00000000 __SHD () C:\Users\Duckii\AppData\Local\EmieUserList2014-06-06 11:59 - 2014-06-06 11:59 - 00000000 __SHD () C:\Users\Duckii\AppData\Local\EmieSiteList2014-06-06 11:56 - 2013-02-19 18:02 - 00024824 _____ (ASUSTeK Computer Inc.) C:\WINDOWS\system32\Drivers\IOMap64.sys2014-06-06 01:02 - 2014-06-06 01:02 - 00000000 ____D () C:\Program Files\Microsoft Xbox One Controller for Windows2014-06-06 01:01 - 2014-06-06 01:01 - 02854912 _____ () C:\Users\Duckii\Downloads\xb1usb.11059.0.140526x64.msi2014-06-05 16:30 - 2014-06-05 16:30 - 00000572 _____ () C:\Users\Public\Desktop\Unity.lnk2014-06-05 16:21 - 2014-06-05 16:21 - 00246759 _____ () C:\Users\Duckii\Downloads\ZO XY Pokemon Icons.zip2014-06-05 15:45 - 2014-06-05 16:24 - 1175723520 _____ (Unity Technologies ApS) C:\Users\Duckii\Downloads\UnitySetup-4.5.0.exe2014-06-05 15:40 - 2014-06-05 15:40 - 00000000 ____D () C:\Users\Duckii\AppData\Local\VS Revo Group2014-06-05 15:40 - 2014-06-05 15:40 - 00000000 ____D () C:\ProgramData\VS Revo Group2014-06-05 15:40 - 2014-06-05 15:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro2014-06-05 15:40 - 2014-06-05 15:40 - 00000000 ____D () C:\Program Files\VS Revo Group2014-06-05 15:40 - 2009-12-30 10:21 - 00031800 _____ (VS Revo Group) C:\WINDOWS\system32\Drivers\revoflt.sys2014-06-05 15:39 - 2014-06-05 15:40 - 10619688 _____ (VS Revo Group ) C:\Users\Duckii\Downloads\RevoUninProSetup.exe2014-06-05 03:41 - 2014-06-05 03:41 - 00257100 _____ () C:\Users\Duckii\Downloads\DaxtarsShutdownTimer_v1.0.7.zip2014-06-05 03:41 - 2014-06-05 03:41 - 00000000 ____D () C:\Users\Duckii\Documents\DaxtarsShutdownTimer_v1.0.72014-06-05 03:05 - 2014-06-05 03:06 - 00000510 _____ () C:\Users\Duckii\Downloads\Pokemon Silver.zip2014-06-05 03:03 - 2014-06-05 03:03 - 00059881 _____ () C:\Users\Duckii\Downloads\lips102.zip2014-06-05 03:00 - 2014-06-05 03:00 - 00181514 _____ () C:\Users\Duckii\Downloads\Dark Energy Beta 4.0.zip2014-06-05 02:29 - 2014-06-05 02:30 - 00000000 ____D () C:\Users\Duckii\Documents\Pokemon2014-06-05 02:22 - 2014-06-05 02:27 - 35176093 _____ () C:\Users\Duckii\Downloads\Pokemon_Survival_Island_v112.zip2014-06-05 02:21 - 2014-06-05 02:26 - 35432863 _____ () C:\Users\Duckii\Downloads\Pokemon_Survival_Island_v112b.zip2014-06-05 02:20 - 2014-06-05 02:28 - 76247481 _____ () C:\Users\Duckii\Downloads\Sage Recovery.rar2014-06-05 01:57 - 2014-06-05 02:06 - 117663109 _____ () C:\Users\Duckii\Downloads\Beta15.exe2014-06-03 16:26 - 2014-06-03 16:26 - 00039432 _____ () C:\Users\Duckii\Downloads\What the censored.txt2014-06-03 13:59 - 2014-06-03 14:00 - 44199212 _____ () C:\Users\Duckii\Downloads\Pentakill-SmiteandIgnite.zip2014-06-02 21:24 - 2014-05-30 07:07 - 01715176 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspbridge64.dll2014-06-02 21:24 - 2014-05-30 07:07 - 01291232 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspbridge.dll2014-06-02 21:12 - 2014-04-18 22:57 - 00032600 _____ (Microsoft Corporation) C:\WINDOWS\system32\ploptin.dll2014-06-02 21:12 - 2014-04-18 22:44 - 01466856 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll2014-06-02 21:12 - 2014-04-18 21:29 - 01200288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll2014-06-02 21:12 - 2014-04-18 17:44 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\energyprov.dll2014-06-02 21:12 - 2014-04-18 17:32 - 13287936 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll2014-06-02 21:12 - 2014-04-18 16:58 - 11792384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll2014-06-02 21:12 - 2014-04-18 16:32 - 00805376 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll2014-06-02 21:12 - 2014-04-18 16:21 - 01126912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll2014-06-02 21:12 - 2014-04-18 16:09 - 08652800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll2014-06-02 21:12 - 2014-04-18 15:51 - 00836608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll2014-06-02 21:12 - 2014-04-18 15:49 - 05833216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll2014-06-02 21:12 - 2014-04-14 17:20 - 00324888 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll2014-06-02 21:12 - 2014-04-14 16:01 - 00285144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll2014-06-02 21:12 - 2014-04-11 12:51 - 00250368 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll2014-06-02 21:12 - 2014-04-11 12:23 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpencom.dll2014-06-02 21:12 - 2014-04-11 11:30 - 00449536 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll2014-06-02 21:12 - 2014-04-09 19:53 - 00337240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys2014-06-02 21:12 - 2014-04-09 14:39 - 00191488 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpchttp.dll2014-06-02 21:12 - 2014-04-09 13:44 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpchttp.dll2014-06-02 21:12 - 2014-04-09 12:35 - 01411584 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll2014-06-02 21:12 - 2014-04-09 11:33 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll2014-06-02 21:12 - 2014-04-08 10:01 - 00589656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys2014-06-02 21:12 - 2014-04-07 00:34 - 00372568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys2014-06-02 21:12 - 2014-04-07 00:34 - 00275800 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys2014-06-02 21:12 - 2014-04-07 00:32 - 00125496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll2014-06-02 21:12 - 2014-04-07 00:31 - 21268952 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll2014-06-02 21:12 - 2014-04-07 00:30 - 00201920 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll2014-06-02 21:12 - 2014-04-07 00:24 - 00360792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys2014-06-02 21:12 - 2014-04-07 00:20 - 02140888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll2014-06-02 21:12 - 2014-04-07 00:20 - 01403856 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll2014-06-02 21:12 - 2014-04-07 00:20 - 01379064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll2014-06-02 21:12 - 2014-04-07 00:20 - 00881616 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll2014-06-02 21:12 - 2014-04-07 00:20 - 00765408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll2014-06-02 21:12 - 2014-04-07 00:20 - 00609448 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll2014-06-02 21:12 - 2014-04-07 00:20 - 00491744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll2014-06-02 21:12 - 2014-04-07 00:20 - 00467496 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll2014-06-02 21:12 - 2014-04-07 00:20 - 00463256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll2014-06-02 21:12 - 2014-04-07 00:20 - 00364640 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll2014-06-02 21:12 - 2014-04-07 00:20 - 00244880 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe2014-06-02 21:12 - 2014-04-07 00:20 - 00233912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll2014-06-02 21:12 - 2014-04-07 00:20 - 00028408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfpmp.exe2014-06-02 21:12 - 2014-04-06 23:23 - 00098584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll2014-06-02 21:12 - 2014-04-06 23:22 - 18755672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll2014-06-02 21:12 - 2014-04-06 23:22 - 00178184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVideoDSP.dll2014-06-02 21:12 - 2014-04-06 23:16 - 02144984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll2014-06-02 21:12 - 2014-04-06 23:16 - 01209616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll2014-06-02 21:12 - 2014-04-06 23:16 - 00707048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll2014-06-02 21:12 - 2014-04-06 23:16 - 00669856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll2014-06-02 21:12 - 2014-04-06 23:16 - 00518544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll2014-06-02 21:12 - 2014-04-06 23:16 - 00406504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll2014-06-02 21:12 - 2014-04-06 23:16 - 00387896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll2014-06-02 21:12 - 2014-04-06 23:16 - 00326024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll2014-06-02 21:12 - 2014-04-06 23:16 - 00305768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll2014-06-02 21:12 - 2014-04-06 22:10 - 04190720 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys2014-06-02 21:12 - 2014-04-06 20:58 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\srclient.dll2014-06-02 21:12 - 2014-04-06 20:51 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll2014-06-02 21:12 - 2014-04-06 20:33 - 00335872 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe2014-06-02 21:12 - 2014-04-06 20:24 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\rstrui.exe2014-06-02 21:12 - 2014-04-06 20:06 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srclient.dll2014-06-02 21:12 - 2014-04-06 19:55 - 16872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll2014-06-02 21:12 - 2014-04-06 19:54 - 12711424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll2014-06-02 21:12 - 2014-04-06 19:26 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll2014-06-02 21:12 - 2014-04-06 19:20 - 00201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll2014-06-02 21:12 - 2014-04-06 19:01 - 00834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll2014-06-02 21:12 - 2014-04-06 18:52 - 00955904 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll2014-06-02 21:12 - 2014-04-06 18:51 - 01230336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll2014-06-02 21:12 - 2014-04-06 18:37 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll2014-06-02 21:12 - 2014-04-06 18:36 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll2014-06-02 21:12 - 2014-04-06 18:05 - 01222656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll2014-06-02 21:12 - 2014-04-06 17:59 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll2014-06-02 21:12 - 2014-04-03 16:12 - 02124840 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll2014-06-02 21:12 - 2014-04-03 16:12 - 00307304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll2014-06-02 21:12 - 2014-04-03 16:12 - 00130144 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll2014-06-02 21:12 - 2014-04-03 12:03 - 00230808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll2014-06-02 21:12 - 2014-04-03 12:03 - 00111528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpapi.dll2014-06-02 21:12 - 2014-04-03 11:53 - 01797896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll2014-06-02 21:12 - 2014-04-03 10:53 - 04269056 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll2014-06-02 21:12 - 2014-04-03 10:53 - 00677376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys2014-06-02 21:12 - 2014-04-03 10:51 - 01584128 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll2014-06-02 21:12 - 2014-04-03 10:23 - 00563200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys2014-06-02 21:12 - 2014-04-03 10:23 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys2014-06-02 21:12 - 2014-04-03 10:23 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tlscsp.dll2014-06-02 21:12 - 2014-04-03 10:22 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\tlscsp.dll2014-06-02 21:12 - 2014-04-01 14:23 - 00384856 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys2014-06-02 21:12 - 2014-03-31 13:42 - 07425368 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe2014-06-02 21:12 - 2014-03-31 08:41 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8thk.dll2014-06-02 21:12 - 2014-03-31 08:01 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll2014-06-02 21:12 - 2014-03-31 07:43 - 00761856 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll2014-06-02 21:12 - 2014-03-31 06:54 - 01308160 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll2014-06-02 21:12 - 2014-03-31 06:49 - 01287168 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll2014-06-02 21:12 - 2014-03-31 06:35 - 01029120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll2014-06-02 21:12 - 2014-03-31 06:11 - 00721408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll2014-06-02 21:12 - 2014-03-31 05:47 - 00872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe2014-06-02 21:12 - 2014-03-28 23:58 - 00407016 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe2014-06-02 21:12 - 2014-03-27 14:16 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys2014-06-02 21:12 - 2014-03-27 13:36 - 00281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll2014-06-02 21:12 - 2014-03-27 12:59 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll2014-06-02 21:12 - 2014-03-27 12:48 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll2014-06-02 21:12 - 2014-03-27 12:19 - 00313344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll2014-06-02 21:12 - 2014-03-27 11:46 - 00323072 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll2014-06-02 21:12 - 2014-03-27 11:15 - 00718336 _____ (Microsoft Corporation) C:\WINDOWS\system32\swprv.dll2014-06-02 21:12 - 2014-03-27 11:10 - 01436160 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe2014-06-02 21:12 - 2014-03-25 06:58 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys2014-06-02 21:12 - 2014-03-21 12:14 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\tscfgwmi.dll2014-06-02 21:12 - 2014-03-20 11:48 - 00263424 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe2014-06-02 21:12 - 2014-03-20 08:51 - 00667648 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpprefcl.dll2014-06-02 21:12 - 2014-03-20 08:44 - 06645248 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll2014-06-02 21:12 - 2014-03-20 07:38 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpprefcl.dll2014-06-02 21:12 - 2014-03-20 07:33 - 05774848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll2014-06-02 21:12 - 2014-03-19 16:15 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll2014-06-02 21:12 - 2014-03-19 16:07 - 00443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys2014-06-02 21:12 - 2014-03-19 15:24 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll2014-06-02 21:12 - 2014-03-19 15:17 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanhlp.dll2014-06-02 21:12 - 2014-03-19 14:36 - 01057280 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll2014-06-02 21:12 - 2014-03-19 13:56 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvidcrl.dll2014-06-02 21:12 - 2014-03-19 13:45 - 00443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll2014-06-02 21:12 - 2014-03-19 13:19 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll2014-06-02 21:12 - 2014-03-19 13:07 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll2014-06-02 21:12 - 2014-03-19 13:02 - 01527296 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll2014-06-02 21:12 - 2014-03-19 13:00 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll2014-06-02 21:12 - 2014-03-19 12:51 - 00300544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanmsm.dll2014-06-02 21:12 - 2014-03-19 12:31 - 02100736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll2014-06-02 21:12 - 2014-03-19 12:18 - 02688000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll2014-06-02 21:12 - 2014-03-18 16:19 - 00077312 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys2014-06-02 21:12 - 2014-03-18 13:00 - 07173120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll2014-06-02 21:12 - 2014-03-18 12:52 - 05104640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll2014-06-02 21:12 - 2014-03-17 13:09 - 00462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll2014-06-02 21:12 - 2014-03-17 12:11 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsGdiConverter.dll2014-06-02 21:12 - 2014-03-17 11:01 - 00486912 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv2014-06-02 21:12 - 2014-03-17 10:47 - 01025024 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll2014-06-02 21:12 - 2014-03-17 10:45 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv2014-06-02 21:12 - 2014-03-14 14:26 - 00491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\GeofenceMonitorService.dll2014-06-02 21:12 - 2014-03-14 14:10 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GeofenceMonitorService.dll2014-06-02 21:12 - 2014-03-06 20:42 - 00310616 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys2014-06-02 21:11 - 2014-06-02 21:11 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll2014-06-02 20:34 - 2014-05-20 10:44 - 12688328 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys2014-06-02 13:48 - 2014-06-02 13:48 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies2014-06-02 13:47 - 2014-06-02 13:47 - 00002153 _____ () C:\Users\Public\Desktop\3D Vision Photo Viewer.lnk2014-06-02 13:47 - 2014-05-20 07:10 - 00601432 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe2014-06-02 13:44 - 2014-05-20 10:44 - 31387936 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll2014-06-02 13:44 - 2014-05-20 10:44 - 25256224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll2014-06-02 13:44 - 2014-05-20 10:44 - 24025376 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll2014-06-02 13:44 - 2014-05-20 10:44 - 17561544 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll2014-06-02 13:44 - 2014-05-20 10:44 - 17480432 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dumx.dll2014-06-02 13:44 - 2014-05-20 10:44 - 16003912 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvwgf2um.dll2014-06-02 13:44 - 2014-05-20 10:44 - 12688328 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys.old2014-06-02 13:44 - 2014-05-20 10:44 - 11644928 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll2014-06-02 13:44 - 2014-05-20 10:44 - 11599072 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll2014-06-02 13:44 - 2014-05-20 10:44 - 09735256 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll2014-06-02 13:44 - 2014-05-20 10:44 - 09697640 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll2014-06-02 13:44 - 2014-05-20 10:44 - 03141976 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll2014-06-02 13:44 - 2014-05-20 10:44 - 02953672 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll2014-06-02 13:44 - 2014-05-20 10:44 - 02785568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvenc.dll2014-06-02 13:44 - 2014-05-20 10:44 - 02412376 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvenc.dll2014-06-02 13:44 - 2014-05-20 10:44 - 00895776 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll2014-06-02 13:44 - 2014-05-20 10:44 - 00892704 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll2014-06-02 13:44 - 2014-05-20 10:44 - 00867784 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll2014-06-02 13:44 - 2014-05-20 10:44 - 00861128 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll2014-06-02 13:44 - 2014-05-20 10:44 - 00837056 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvumdshim.dll2014-06-02 13:44 - 2014-05-20 10:44 - 00492376 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll2014-06-02 13:44 - 2014-05-20 10:44 - 00416712 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll2014-06-02 13:44 - 2014-05-20 10:44 - 00382240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll2014-06-02 13:44 - 2014-05-20 10:44 - 00354016 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglshim64.dll2014-06-02 13:44 - 2014-05-20 10:44 - 00335704 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll2014-06-02 13:44 - 2014-05-20 10:44 - 00305600 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglshim32.dll2014-06-02 13:44 - 2014-05-20 10:44 - 00166568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvinitx.dll2014-06-02 13:44 - 2014-05-20 10:44 - 00146480 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvinit.dll2014-05-31 13:54 - 2014-05-31 13:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes2014-05-31 13:54 - 2014-05-31 13:54 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF692014-05-31 13:54 - 2014-05-31 13:54 - 00000000 ____D () C:\Program Files\iTunes2014-05-31 13:54 - 2014-05-31 13:54 - 00000000 ____D () C:\Program Files\iPod2014-05-29 15:28 - 2014-05-29 15:28 - 00000000 ____D () C:\Users\Duckii\Desktop\Pokemon Zeta 1.4.72014-05-29 15:19 - 2014-05-29 15:20 - 06531055 _____ () C:\Users\Duckii\Downloads\Melly's UI Mega Overhaul Updated V1.1.rar2014-05-29 15:19 - 2014-05-29 15:19 - 00062122 _____ () C:\Users\Duckii\Downloads\Party Stealth Selectors.rar2014-05-29 14:58 - 2014-05-29 15:24 - 120437037 _____ () C:\Users\Duckii\Downloads\Pokemon Zeta 1.4 (Win).zip2014-05-29 14:52 - 2014-05-29 15:51 - 1007078353 _____ () C:\Users\Duckii\Downloads\XY Animated Sprite Sharpened 125 175b.rar2014-05-29 14:11 - 2014-05-29 14:14 - 61309945 _____ () C:\Users\Duckii\Downloads\hawkthorne-win-x86.zip2014-05-28 23:10 - 2014-05-28 17:30 - 00093048 _____ (EasyAntiCheat Ltd) C:\WINDOWS\SysWOW64\EasyAntiCheat.exe2014-05-28 22:38 - 2014-05-28 22:55 - 303757610 _____ () C:\Users\Duckii\Downloads\@PUBattleRoyale.ARMA.3.CLIENT.FILES.v0.2.0.zip2014-05-28 17:43 - 2014-05-28 17:43 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\WizardWars2014-05-28 00:22 - 2014-05-28 00:24 - 00000000 ____D () C:\Users\Duckii\AppData\Local\Dxtory Software2014-05-28 00:22 - 2014-05-28 00:22 - 00000000 ____D () C:\Program Files (x86)\Dxtory Software2014-05-27 16:34 - 2014-05-20 10:44 - 01889112 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6433788.dll2014-05-27 16:34 - 2014-05-20 10:44 - 01541576 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6433788.dll2014-05-27 01:13 - 2014-05-27 01:13 - 00034016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xb1usb.sys2014-05-26 17:42 - 2014-05-26 17:44 - 49397581 _____ () C:\Users\Duckii\Downloads\1.4.7 Zeta.zip2014-05-26 10:53 - 2014-05-26 10:53 - 00000000 ____D () C:\Users\Duckii\AppData\Local\WM2014-05-26 08:36 - 2014-06-05 16:46 - 00000000 ____D () C:\Users\Duckii\AppData\Local\Arma 32014-05-26 08:36 - 2014-05-26 08:37 - 00000000 ____D () C:\Users\Duckii\Documents\Arma 32014-05-26 08:36 - 2014-05-26 08:36 - 00000000 ____D () C:\ProgramData\Bohemia Interactive2014-05-26 02:52 - 2014-05-26 02:52 - 00080384 _____ (Razer Inc) C:\WINDOWS\system32\RazerCoinstaller.dll2014-05-26 01:58 - 2014-05-26 01:58 - 00000019 _____ () C:\Users\Duckii\Downloads\CD-KEY-ARMA-3.txt2014-05-24 01:02 - 2014-05-24 01:03 - 03259749 _____ () C:\Users\Duckii\Downloads\LiveSplit_1.33.zip2014-05-24 00:56 - 2014-05-24 00:58 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\mIRC2014-05-24 00:19 - 2014-05-24 00:19 - 00000202 _____ () C:\Users\Duckii\Desktop\SpeedRunners.url2014-05-20 21:51 - 2014-05-20 21:51 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\TeamViewer2014-05-20 21:30 - 2014-05-20 21:30 - 00001194 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 9.lnk2014-05-20 21:30 - 2014-05-20 21:30 - 00000000 ____D () C:\Program Files (x86)\TeamViewer2014-05-19 21:14 - 2014-05-26 10:53 - 00000000 ____D () C:\wm2014-05-19 21:14 - 2014-05-19 21:14 - 00000000 ____D () C:\Users\Duckii\AppData\Local\lesupd2014-05-18 21:54 - 2014-05-18 21:54 - 00169778 _____ () C:\Users\Duckii\Downloads\Tamer0 Glimmer.rpl2014-05-17 21:52 - 2014-05-17 21:58 - 00000000 ____D () C:\Users\Duckii\Documents\Speccy2014-05-17 21:48 - 2014-05-17 21:51 - 05269617 _____ () C:\Users\Duckii\Downloads\spsetup126.zip2014-05-17 20:37 - 2014-05-17 20:37 - 07837272 _____ (FreeDownloadManager.ORG ) C:\Users\Duckii\Downloads\fdminst (1).exe2014-05-17 12:22 - 2014-04-01 00:42 - 00040392 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad64v.sys2014-05-17 12:22 - 2014-04-01 00:42 - 00034760 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll2014-05-16 09:47 - 2014-05-16 09:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi2014-05-16 09:47 - 2014-05-16 09:47 - 00000000 ____D () C:\Program Files (x86)\LogMeIn Hamachi2014-05-15 00:05 - 2014-03-24 10:30 - 00257880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys2014-05-15 00:05 - 2014-03-24 10:30 - 00123224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys2014-05-15 00:05 - 2014-03-24 10:27 - 00035856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys2014-05-15 00:05 - 2014-03-13 15:42 - 00308224 _____ (Microsoft Corporation) C:\WINDOWS\system32\wusa.exe2014-05-15 00:05 - 2014-03-13 14:51 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wusa.exe2014-05-15 00:04 - 2014-04-11 18:03 - 00555736 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll2014-05-15 00:04 - 2014-04-11 18:03 - 00054776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe2014-05-15 00:04 - 2014-04-11 16:25 - 00419928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll2014-05-15 00:04 - 2014-04-11 14:04 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll2014-05-15 00:04 - 2014-04-11 13:22 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll2014-05-15 00:04 - 2014-04-11 11:54 - 00201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll2014-05-15 00:04 - 2014-04-11 11:06 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe2014-05-15 00:04 - 2014-04-11 11:05 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll2014-05-15 00:04 - 2014-04-11 11:02 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe2014-05-15 00:04 - 2014-04-11 11:01 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll2014-05-15 00:04 - 2014-04-11 11:00 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll2014-05-15 00:04 - 2014-04-11 10:59 - 00666624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll2014-05-15 00:04 - 2014-04-11 10:57 - 00190976 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll2014-05-15 00:04 - 2014-04-11 10:56 - 00381440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll2014-05-15 00:04 - 2014-04-11 10:55 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll2014-05-15 00:04 - 2014-04-11 10:53 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll2014-05-15 00:04 - 2014-04-11 10:52 - 03464192 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll2014-05-15 00:04 - 2014-04-11 10:46 - 01705472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll2014-05-15 00:04 - 2014-04-11 10:36 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll2014-05-15 00:04 - 2014-04-11 10:29 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll2014-05-15 00:03 - 2014-04-09 06:46 - 00086688 _____ (Microsoft Corporation) C:\WINDOWS\system32\mrt_map.dll2014-05-15 00:03 - 2014-04-09 06:46 - 00028320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mrt100.dll2014-05-15 00:03 - 2014-04-09 02:54 - 00080032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mrt_map.dll2014-05-15 00:03 - 2014-04-09 02:54 - 00026784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mrt100.dll ==================== One Month Modified Files and Folders ======= 2014-06-13 21:59 - 2014-06-13 21:59 - 00021518 _____ () C:\Users\Duckii\Desktop\FRST.txt2014-06-13 21:59 - 2014-06-13 12:39 - 00000000 ____D () C:\FRST2014-06-13 21:59 - 2014-01-06 21:18 - 00000000 ____D () C:\Users\Duckii\AppData\Local\Temp2014-06-13 21:58 - 2014-06-13 21:57 - 00000127 _____ () C:\Users\Duckii\Desktop\ckfiles.txt2014-06-13 21:55 - 2013-10-07 20:12 - 00000000 ____D () C:\Users\Duckii\AppData\Local\Battle.net2014-06-13 21:52 - 2013-09-13 17:14 - 00000918 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job2014-06-13 21:50 - 2013-08-23 14:46 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3794150929-2800894002-4186101125-10012014-06-13 21:47 - 2014-06-13 21:47 - 00468480 _____ () C:\Users\Duckii\Desktop\CKScanner.exe2014-06-13 21:45 - 2014-05-07 11:13 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\DropboxMaster2014-06-13 21:45 - 2014-02-28 12:39 - 00000000 ____D () C:\Users\Duckii\AppData\Local\LogMeIn Hamachi2014-06-13 21:45 - 2013-09-13 17:14 - 00000914 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job2014-06-13 21:45 - 2013-09-11 12:50 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\Dropbox2014-06-13 21:45 - 2013-09-05 23:40 - 00000000 ____D () C:\ProgramData\Origin2014-06-13 21:45 - 2013-09-05 20:27 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\TS3Client2014-06-13 21:45 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\system32\sru2014-06-13 17:12 - 2014-01-06 21:18 - 00000000 ____D () C:\Users\Duckii2014-06-13 16:37 - 2013-11-14 15:29 - 00863592 _____ () C:\WINDOWS\system32\PerfStringBackup.INI2014-06-13 16:33 - 2013-09-05 22:08 - 00000830 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job2014-06-13 16:30 - 2014-01-06 21:14 - 00000000 ____D () C:\ProgramData\NVIDIA2014-06-13 16:30 - 2013-11-14 15:20 - 00406394 _____ () C:\WINDOWS\PFRO.log2014-06-13 16:30 - 2013-08-22 22:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT2014-06-13 16:26 - 2014-01-06 21:14 - 01670963 _____ () C:\WINDOWS\WindowsUpdate.log2014-06-13 13:52 - 2013-08-22 21:25 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM2014-06-13 12:59 - 2013-09-13 17:13 - 00000000 ____D () C:\ProgramData\AVAST Software2014-06-13 12:59 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\IME2014-06-13 12:59 - 2013-08-22 21:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI2014-06-13 12:58 - 2014-06-13 12:58 - 00001171 _____ () C:\Users\Duckii\Desktop\MBAM-13-06-2014.txt2014-06-13 12:41 - 2014-06-13 12:40 - 00048673 _____ () C:\Users\Duckii\Downloads\Addition.txt2014-06-13 12:41 - 2014-06-13 12:39 - 00090863 _____ () C:\Users\Duckii\Downloads\FRST.txt2014-06-13 12:41 - 2014-06-13 12:38 - 00122584 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys2014-06-13 12:38 - 2014-06-13 12:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware2014-06-13 12:38 - 2014-06-13 12:38 - 00000000 ____D () C:\ProgramData\Malwarebytes2014-06-13 12:38 - 2014-06-13 12:38 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware2014-06-13 12:37 - 2014-06-13 12:37 - 02081792 _____ (Farbar) C:\Users\Duckii\Desktop\FRST64.exe2014-06-13 12:37 - 2014-06-13 12:32 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Duckii\Downloads\mbam-setup-2.0.2.1012 (1).exe2014-06-13 12:25 - 2014-06-13 12:24 - 02042088 _____ () C:\Users\Duckii\Downloads\FRST64.exe2014-06-13 12:25 - 2013-08-22 01:43 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\vlc2014-06-13 11:56 - 2013-08-22 22:44 - 04956136 _____ () C:\WINDOWS\system32\FNTCACHE.DAT2014-06-13 04:31 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\WinStore2014-06-13 04:30 - 2014-06-11 18:52 - 00000000 ____D () C:\Users\Duckii\Documents\Resume2014-06-13 04:24 - 2013-09-04 11:15 - 00000000 ____D () C:\ProgramData\Microsoft Help2014-06-12 10:58 - 2014-06-12 10:57 - 04181856 _____ (Kaspersky Lab ZAO) C:\Users\Duckii\Downloads\tdsskiller.exe2014-06-12 10:57 - 2012-07-26 15:59 - 00000000 ____D () C:\WINDOWS\CbsTemp2014-06-12 00:20 - 2013-09-06 09:05 - 95414520 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe2014-06-12 00:20 - 2013-08-22 23:36 - 00000000 ___RD () C:\WINDOWS\ToastData2014-06-11 17:41 - 2014-06-11 17:27 - 00000000 ____D () C:\Users\Duckii\Documents\BFH.Beta2014-06-11 17:27 - 2014-06-11 17:27 - 02247960 _____ () C:\Users\Duckii\Downloads\battlelog-web-plugins_2.4.0_141.exe2014-06-11 17:27 - 2014-06-11 17:27 - 00000000 ____D () C:\Users\Duckii\AppData\Local\ESN2014-06-11 17:27 - 2014-06-11 17:27 - 00000000 ____D () C:\Program Files (x86)\Battlelog Web Plugins2014-06-11 15:24 - 2014-06-11 15:24 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieUnatt.exe2014-06-11 15:24 - 2014-06-11 15:24 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieUnatt.exe2014-06-11 15:24 - 2014-06-11 15:24 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe2014-06-11 15:24 - 2014-06-11 15:24 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieetwproxystub.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwproxystub.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollectorres.dll2014-06-11 15:23 - 2014-06-11 15:23 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll2014-06-11 06:17 - 2014-06-11 06:17 - 00000850 _____ () C:\Users\Public\Desktop\Battlefield Hardline Beta.lnk2014-06-11 06:17 - 2014-06-11 06:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield Hardline Beta2014-06-11 06:17 - 2014-04-27 03:14 - 00281872 _____ () C:\WINDOWS\SysWOW64\PnkBstrB.exe2014-06-11 06:17 - 2014-04-27 03:14 - 00281872 _____ () C:\WINDOWS\SysWOW64\PnkBstrB.ex02014-06-11 06:17 - 2014-04-27 03:14 - 00076888 _____ () C:\WINDOWS\SysWOW64\PnkBstrA.exe2014-06-11 06:16 - 2013-09-07 23:34 - 00000000 ____D () C:\ProgramData\Package Cache2014-06-11 06:16 - 2013-08-22 22:05 - 00536026 _____ () C:\WINDOWS\DirectX.log2014-06-10 11:58 - 2014-06-10 11:57 - 00000000 ____D () C:\Users\Duckii\Documents\Dawngate2014-06-10 11:58 - 2014-06-10 03:35 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\DawngateData2014-06-10 04:18 - 2014-05-05 15:50 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\Dogecoin2014-06-10 04:09 - 2014-06-10 04:08 - 17009768 _____ (Electronic Arts, Inc.) C:\Users\Duckii\Downloads\OriginThinSetup.exe2014-06-10 03:35 - 2014-06-10 03:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dawngate2014-06-10 03:34 - 2014-06-10 03:34 - 09269248 _____ () C:\Users\Duckii\Downloads\Dawngate_en_us.msi2014-06-08 12:46 - 2014-06-08 12:46 - 09561964 _____ () C:\Users\Duckii\Downloads\cliffhorse.zip2014-06-06 11:59 - 2014-06-06 11:59 - 00000000 __SHD () C:\Users\Duckii\AppData\Local\EmieUserList2014-06-06 11:59 - 2014-06-06 11:59 - 00000000 __SHD () C:\Users\Duckii\AppData\Local\EmieSiteList2014-06-06 01:02 - 2014-06-06 01:02 - 00000000 ____D () C:\Program Files\Microsoft Xbox One Controller for Windows2014-06-06 01:01 - 2014-06-06 01:01 - 02854912 _____ () C:\Users\Duckii\Downloads\xb1usb.11059.0.140526x64.msi2014-06-05 16:46 - 2014-05-26 08:36 - 00000000 ____D () C:\Users\Duckii\AppData\Local\Arma 32014-06-05 16:33 - 2013-09-11 21:16 - 00000000 ____D () C:\ProgramData\Unity2014-06-05 16:30 - 2014-06-05 16:30 - 00000572 _____ () C:\Users\Public\Desktop\Unity.lnk2014-06-05 16:30 - 2013-09-11 21:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Unity2014-06-05 16:24 - 2014-06-05 15:45 - 1175723520 _____ (Unity Technologies ApS) C:\Users\Duckii\Downloads\UnitySetup-4.5.0.exe2014-06-05 16:21 - 2014-06-05 16:21 - 00246759 _____ () C:\Users\Duckii\Downloads\ZO XY Pokemon Icons.zip2014-06-05 15:40 - 2014-06-05 15:40 - 00000000 ____D () C:\Users\Duckii\AppData\Local\VS Revo Group2014-06-05 15:40 - 2014-06-05 15:40 - 00000000 ____D () C:\ProgramData\VS Revo Group2014-06-05 15:40 - 2014-06-05 15:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro2014-06-05 15:40 - 2014-06-05 15:40 - 00000000 ____D () C:\Program Files\VS Revo Group2014-06-05 15:40 - 2014-06-05 15:39 - 10619688 _____ (VS Revo Group ) C:\Users\Duckii\Downloads\RevoUninProSetup.exe2014-06-05 03:48 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\rescache2014-06-05 03:41 - 2014-06-05 03:41 - 00257100 _____ () C:\Users\Duckii\Downloads\DaxtarsShutdownTimer_v1.0.7.zip2014-06-05 03:41 - 2014-06-05 03:41 - 00000000 ____D () C:\Users\Duckii\Documents\DaxtarsShutdownTimer_v1.0.72014-06-05 03:06 - 2014-06-05 03:05 - 00000510 _____ () C:\Users\Duckii\Downloads\Pokemon Silver.zip2014-06-05 03:04 - 2014-02-20 22:34 - 00000000 ____D () C:\Users\Duckii\Documents\ROMS2014-06-05 03:03 - 2014-06-05 03:03 - 00059881 _____ () C:\Users\Duckii\Downloads\lips102.zip2014-06-05 03:00 - 2014-06-05 03:00 - 00181514 _____ () C:\Users\Duckii\Downloads\Dark Energy Beta 4.0.zip2014-06-05 02:30 - 2014-06-05 02:29 - 00000000 ____D () C:\Users\Duckii\Documents\Pokemon2014-06-05 02:28 - 2014-06-05 02:20 - 76247481 _____ () C:\Users\Duckii\Downloads\Sage Recovery.rar2014-06-05 02:27 - 2014-06-05 02:22 - 35176093 _____ () C:\Users\Duckii\Downloads\Pokemon_Survival_Island_v112.zip2014-06-05 02:26 - 2014-06-05 02:21 - 35432863 _____ () C:\Users\Duckii\Downloads\Pokemon_Survival_Island_v112b.zip2014-06-05 02:06 - 2014-06-05 01:57 - 117663109 _____ () C:\Users\Duckii\Downloads\Beta15.exe2014-06-03 16:26 - 2014-06-03 16:26 - 00039432 _____ () C:\Users\Duckii\Downloads\What the censored.txt2014-06-03 14:00 - 2014-06-03 13:59 - 44199212 _____ () C:\Users\Duckii\Downloads\Pentakill-SmiteandIgnite.zip2014-06-02 21:24 - 2014-01-06 21:14 - 00000000 ____D () C:\Program Files\NVIDIA Corporation2014-06-02 21:24 - 2013-08-22 22:46 - 00299501 _____ () C:\WINDOWS\setupact.log2014-06-02 21:19 - 2014-01-06 21:30 - 00000000 ___RD () C:\Users\Duckii\SkyDrive2014-06-02 21:19 - 2013-08-21 22:26 - 00000000 ___RD () C:\Users\Duckii\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup2014-06-02 21:19 - 2013-08-21 22:26 - 00000000 ___RD () C:\Users\Duckii\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools2014-06-02 21:18 - 2013-08-22 23:36 - 00000000 ___RD () C:\WINDOWS\ImmersiveControlPanel2014-06-02 21:18 - 2013-08-22 21:36 - 00000000 ____D () C:\WINDOWS\system32\oobe2014-06-02 21:17 - 2013-02-28 12:09 - 00000024 _____ () C:\Users\Duckii\random.dat2014-06-02 21:13 - 2013-02-28 12:09 - 00000045 _____ () C:\Users\Duckii\jagex_cl_runescape_LIVE.dat2014-06-02 21:11 - 2014-06-02 21:11 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll2014-06-02 15:21 - 2013-10-09 22:14 - 00000045 _____ () C:\Users\Duckii\jagex_cl_oldschool_LIVE.dat2014-06-02 13:48 - 2014-06-02 13:48 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies2014-06-02 13:47 - 2014-06-02 13:47 - 00002153 _____ () C:\Users\Public\Desktop\3D Vision Photo Viewer.lnk2014-06-02 13:47 - 2014-01-06 21:14 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation2014-05-31 13:57 - 2013-12-20 12:44 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox2014-05-31 13:54 - 2014-05-31 13:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes2014-05-31 13:54 - 2014-05-31 13:54 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF692014-05-31 13:54 - 2014-05-31 13:54 - 00000000 ____D () C:\Program Files\iTunes2014-05-31 13:54 - 2014-05-31 13:54 - 00000000 ____D () C:\Program Files\iPod2014-05-31 13:13 - 2013-08-22 23:38 - 00703992 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe2014-05-31 13:13 - 2013-08-22 23:38 - 00105464 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl2014-05-30 18:21 - 2014-06-11 15:27 - 23414784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll2014-05-30 17:45 - 2014-06-11 15:27 - 02768384 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll2014-05-30 17:28 - 2014-06-11 15:27 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll2014-05-30 17:20 - 2014-06-11 15:27 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll2014-05-30 17:18 - 2014-06-11 15:27 - 17271296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll2014-05-30 17:08 - 2014-06-11 15:27 - 05782528 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll2014-05-30 17:06 - 2014-06-11 15:27 - 00452096 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll2014-05-30 16:46 - 2014-06-11 15:27 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll2014-05-30 16:44 - 2014-06-11 15:27 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll2014-05-30 16:43 - 2014-06-11 15:27 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll2014-05-30 16:38 - 2014-06-11 15:27 - 02179072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll2014-05-30 16:35 - 2014-06-11 15:27 - 00608768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe2014-05-30 16:29 - 2014-06-11 15:27 - 00631808 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll2014-05-30 16:27 - 2014-06-11 15:27 - 00592896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll2014-05-30 16:23 - 2014-06-11 15:27 - 02040832 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl2014-05-30 16:16 - 2014-06-11 15:27 - 00368128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll2014-05-30 16:04 - 2014-06-11 15:27 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll2014-05-30 16:02 - 2014-06-11 15:27 - 00242688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll2014-05-30 15:56 - 2014-06-11 15:27 - 04244992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll2014-05-30 15:56 - 2014-06-11 15:27 - 02266112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll2014-05-30 15:54 - 2014-06-11 15:27 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll2014-05-30 15:49 - 2014-06-11 15:27 - 01964544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl2014-05-30 15:43 - 2014-06-11 15:27 - 13522944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll2014-05-30 15:40 - 2014-06-11 15:27 - 11725312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll2014-05-30 15:30 - 2014-06-11 15:27 - 01398272 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll2014-05-30 15:21 - 2014-06-11 15:27 - 01790976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll2014-05-30 15:15 - 2014-06-11 15:27 - 01143296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll2014-05-30 15:13 - 2014-06-11 15:27 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll2014-05-30 15:13 - 2014-06-11 15:27 - 00704512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll2014-05-30 07:07 - 2014-06-02 21:24 - 01715176 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspbridge64.dll2014-05-30 07:07 - 2014-06-02 21:24 - 01291232 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspbridge.dll2014-05-30 07:07 - 2014-04-08 23:58 - 01279480 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll2014-05-30 07:07 - 2014-04-08 23:58 - 01122312 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll2014-05-29 23:57 - 2013-08-23 00:45 - 00380426 _____ () C:\WINDOWS\DPINST.LOG2014-05-29 15:51 - 2014-05-29 14:52 - 1007078353 _____ () C:\Users\Duckii\Downloads\XY Animated Sprite Sharpened 125 175b.rar2014-05-29 15:28 - 2014-05-29 15:28 - 00000000 ____D () C:\Users\Duckii\Desktop\Pokemon Zeta 1.4.72014-05-29 15:24 - 2014-05-29 14:58 - 120437037 _____ () C:\Users\Duckii\Downloads\Pokemon Zeta 1.4 (Win).zip2014-05-29 15:20 - 2014-05-29 15:19 - 06531055 _____ () C:\Users\Duckii\Downloads\Melly's UI Mega Overhaul Updated V1.1.rar2014-05-29 15:19 - 2014-05-29 15:19 - 00062122 _____ () C:\Users\Duckii\Downloads\Party Stealth Selectors.rar2014-05-29 14:17 - 2013-09-10 15:27 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\hawkthorne_release2014-05-29 14:16 - 2013-09-10 15:27 - 00000000 ____D () C:\Users\Duckii\Documents\hawkthorne2014-05-29 14:14 - 2014-05-29 14:11 - 61309945 _____ () C:\Users\Duckii\Downloads\hawkthorne-win-x86.zip2014-05-29 11:44 - 2013-08-23 00:45 - 00000000 ____D () C:\Program Files (x86)\Razer2014-05-28 22:55 - 2014-05-28 22:38 - 303757610 _____ () C:\Users\Duckii\Downloads\@PUBattleRoyale.ARMA.3.CLIENT.FILES.v0.2.0.zip2014-05-28 17:43 - 2014-05-28 17:43 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\WizardWars2014-05-28 17:30 - 2014-05-28 23:10 - 00093048 _____ (EasyAntiCheat Ltd) C:\WINDOWS\SysWOW64\EasyAntiCheat.exe2014-05-28 13:06 - 2013-09-11 12:51 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox2014-05-28 01:32 - 2014-01-07 11:23 - 00000000 ____D () C:\Users\Duckii\AppData\Local\Deployment2014-05-28 00:24 - 2014-05-28 00:22 - 00000000 ____D () C:\Users\Duckii\AppData\Local\Dxtory Software2014-05-28 00:22 - 2014-05-28 00:22 - 00000000 ____D () C:\Program Files (x86)\Dxtory Software2014-05-27 13:02 - 2014-05-06 12:07 - 00001796 _____ () C:\WINDOWS\Sandboxie.ini2014-05-27 01:13 - 2014-05-27 01:13 - 00034016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xb1usb.sys2014-05-26 17:44 - 2014-05-26 17:42 - 49397581 _____ () C:\Users\Duckii\Downloads\1.4.7 Zeta.zip2014-05-26 10:53 - 2014-05-26 10:53 - 00000000 ____D () C:\Users\Duckii\AppData\Local\WM2014-05-26 10:53 - 2014-05-19 21:14 - 00000000 ____D () C:\wm2014-05-26 08:37 - 2014-05-26 08:36 - 00000000 ____D () C:\Users\Duckii\Documents\Arma 32014-05-26 08:36 - 2014-05-26 08:36 - 00000000 ____D () C:\ProgramData\Bohemia Interactive2014-05-26 02:52 - 2014-05-26 02:52 - 00080384 _____ (Razer Inc) C:\WINDOWS\system32\RazerCoinstaller.dll2014-05-26 01:58 - 2014-05-26 01:58 - 00000019 _____ () C:\Users\Duckii\Downloads\CD-KEY-ARMA-3.txt2014-05-24 14:41 - 2014-04-28 11:29 - 00000000 ____D () C:\Users\Duckii\Documents\Live Split2014-05-24 01:03 - 2014-05-24 01:02 - 03259749 _____ () C:\Users\Duckii\Downloads\LiveSplit_1.33.zip2014-05-24 00:58 - 2014-05-24 00:56 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\mIRC2014-05-24 00:19 - 2014-05-24 00:19 - 00000202 _____ () C:\Users\Duckii\Desktop\SpeedRunners.url2014-05-24 00:14 - 2014-04-30 01:07 - 00000000 ____D () C:\Program Files (x86)\OBS2014-05-23 21:39 - 2014-04-02 23:27 - 00000000 ____D () C:\Users\Duckii\Documents\SavedGames2014-05-20 21:51 - 2014-05-20 21:51 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\TeamViewer2014-05-20 21:30 - 2014-05-20 21:30 - 00001194 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 9.lnk2014-05-20 21:30 - 2014-05-20 21:30 - 00000000 ____D () C:\Program Files (x86)\TeamViewer2014-05-20 10:44 - 2014-06-02 20:34 - 12688328 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys2014-05-20 10:44 - 2014-06-02 13:44 - 31387936 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll2014-05-20 10:44 - 2014-06-02 13:44 - 25256224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll2014-05-20 10:44 - 2014-06-02 13:44 - 24025376 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll2014-05-20 10:44 - 2014-06-02 13:44 - 17561544 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll2014-05-20 10:44 - 2014-06-02 13:44 - 17480432 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dumx.dll2014-05-20 10:44 - 2014-06-02 13:44 - 16003912 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvwgf2um.dll2014-05-20 10:44 - 2014-06-02 13:44 - 12688328 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys.old2014-05-20 10:44 - 2014-06-02 13:44 - 11644928 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll2014-05-20 10:44 - 2014-06-02 13:44 - 11599072 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll2014-05-20 10:44 - 2014-06-02 13:44 - 09735256 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll2014-05-20 10:44 - 2014-06-02 13:44 - 09697640 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll2014-05-20 10:44 - 2014-06-02 13:44 - 03141976 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll2014-05-20 10:44 - 2014-06-02 13:44 - 02953672 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll2014-05-20 10:44 - 2014-06-02 13:44 - 02785568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvenc.dll2014-05-20 10:44 - 2014-06-02 13:44 - 02412376 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvenc.dll2014-05-20 10:44 - 2014-06-02 13:44 - 00895776 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll2014-05-20 10:44 - 2014-06-02 13:44 - 00892704 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll2014-05-20 10:44 - 2014-06-02 13:44 - 00867784 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll2014-05-20 10:44 - 2014-06-02 13:44 - 00861128 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll2014-05-20 10:44 - 2014-06-02 13:44 - 00837056 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvumdshim.dll2014-05-20 10:44 - 2014-06-02 13:44 - 00492376 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll2014-05-20 10:44 - 2014-06-02 13:44 - 00416712 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll2014-05-20 10:44 - 2014-06-02 13:44 - 00382240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll2014-05-20 10:44 - 2014-06-02 13:44 - 00354016 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglshim64.dll2014-05-20 10:44 - 2014-06-02 13:44 - 00335704 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll2014-05-20 10:44 - 2014-06-02 13:44 - 00305600 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglshim32.dll2014-05-20 10:44 - 2014-06-02 13:44 - 00166568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvinitx.dll2014-05-20 10:44 - 2014-06-02 13:44 - 00146480 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvinit.dll2014-05-20 10:44 - 2014-05-27 16:34 - 01889112 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6433788.dll2014-05-20 10:44 - 2014-05-27 16:34 - 01541576 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6433788.dll2014-05-20 10:44 - 2014-04-08 23:57 - 00061216 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll2014-05-20 10:44 - 2014-04-08 23:57 - 00052056 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll2014-05-20 10:44 - 2014-04-08 23:55 - 18531568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvwgf2umx.dll2014-05-20 10:44 - 2014-04-08 23:55 - 14434704 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvd3dum.dll2014-05-20 10:44 - 2014-04-08 23:55 - 03109248 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll2014-05-20 10:44 - 2014-04-08 23:55 - 02730208 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll2014-05-20 10:44 - 2014-04-08 23:55 - 00952952 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvumdshimx.dll2014-05-20 10:44 - 2014-04-08 23:55 - 00026069 _____ () C:\WINDOWS\system32\nvinfo.pb2014-05-20 09:25 - 2014-04-08 23:57 - 06769096 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll2014-05-20 09:25 - 2014-04-08 23:57 - 03514144 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll2014-05-20 09:25 - 2014-04-08 23:57 - 00927520 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe2014-05-20 09:25 - 2014-04-08 23:57 - 00387528 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll2014-05-20 09:25 - 2014-04-08 23:57 - 00062808 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll2014-05-20 07:10 - 2014-06-02 13:47 - 00601432 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe2014-05-19 21:14 - 2014-05-19 21:14 - 00000000 ____D () C:\Users\Duckii\AppData\Local\lesupd2014-05-19 14:31 - 2014-06-11 15:24 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvcfg.exe2014-05-19 14:21 - 2014-06-11 15:24 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe2014-05-19 13:23 - 2014-06-11 15:24 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvinst.exe2014-05-18 21:54 - 2014-05-18 21:54 - 00169778 _____ () C:\Users\Duckii\Downloads\Tamer0 Glimmer.rpl2014-05-17 21:58 - 2014-05-17 21:52 - 00000000 ____D () C:\Users\Duckii\Documents\Speccy2014-05-17 21:51 - 2014-05-17 21:48 - 05269617 _____ () C:\Users\Duckii\Downloads\spsetup126.zip2014-05-17 20:37 - 2014-05-17 20:37 - 07837272 _____ (FreeDownloadManager.ORG ) C:\Users\Duckii\Downloads\fdminst (1).exe2014-05-17 14:13 - 2013-09-23 18:07 - 00000000 ____D () C:\Users\Duckii\Documents\4A Games2014-05-17 12:24 - 2013-12-03 16:51 - 00000000 ____D () C:\Users\Duckii\AppData\Local\NVIDIA Corporation2014-05-17 10:10 - 2013-09-23 17:47 - 00000000 ____D () C:\Users\Duckii\AppData\Local\4A Games2014-05-16 14:09 - 2014-04-30 01:08 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\OBS2014-05-16 09:47 - 2014-05-16 09:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi2014-05-16 09:47 - 2014-05-16 09:47 - 00000000 ____D () C:\Program Files (x86)\LogMeIn Hamachi2014-05-16 00:29 - 2013-08-22 23:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools2014-05-16 00:29 - 2013-08-22 23:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools2014-05-16 00:29 - 2013-08-22 23:36 - 00000000 ____D () C:\Program Files\Windows Defender2014-05-16 00:29 - 2013-08-22 23:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender2014-05-15 12:02 - 2013-09-06 09:05 - 00000000 ____D () C:\WINDOWS\system32\MRT2014-05-15 12:02 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\system32\SecureBootUpdates2014-05-15 07:49 - 2014-04-08 23:57 - 03774821 _____ () C:\WINDOWS\system32\nvcoproc.bin2014-05-14 12:34 - 2013-09-05 22:08 - 00003718 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater Files to move or delete:====================C:\Users\Duckii\jagex_cl_oldschool_LIVE.datC:\Users\Duckii\jagex_cl_runescape_LIVE.datC:\Users\Duckii\jagex_cl_runescape_LIVE1.datC:\Users\Duckii\jagex_cl_runescape_LIVE_BETA.datC:\Users\Duckii\random.dat Some content of TEMP:====================C:\Users\Duckii\AppData\Local\Temp\AskMrRobot-Setup-1.3.14.0.exeC:\Users\Duckii\AppData\Local\Temp\AskMrRobot-Setup-1.3.16.0.exeC:\Users\Duckii\AppData\Local\Temp\AskMrRobot-Setup-1.3.17.0.exeC:\Users\Duckii\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpc7dppy.dllC:\Users\Duckii\AppData\Local\Temp\Foxit Reader Updater.exeC:\Users\Duckii\AppData\Local\Temp\Foxit Updater.exeC:\Users\Duckii\AppData\Local\Temp\jre-7u51-windows-i586-iftw.exeC:\Users\Duckii\AppData\Local\Temp\jre-7u55-windows-i586-iftw.exeC:\Users\Duckii\AppData\Local\Temp\mirc732.exeC:\Users\Duckii\AppData\Local\Temp\nv3DVStreaming.dllC:\Users\Duckii\AppData\Local\Temp\nvSCPAPI.dllC:\Users\Duckii\AppData\Local\Temp\nvSCPAPI64.dllC:\Users\Duckii\AppData\Local\Temp\nvStereoApiI.dllC:\Users\Duckii\AppData\Local\Temp\nvStereoApiI64.dllC:\Users\Duckii\AppData\Local\Temp\nvStInst.exeC:\Users\Duckii\AppData\Local\Temp\SRLDetectionLibrary8188974946217751875.dllC:\Users\Duckii\AppData\Local\Temp\uninstall.exeC:\Users\Duckii\AppData\Local\Temp\vlc-2.1.3-win32.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => File is digitally signedC:\Windows\System32\wininit.exe => File is digitally signedC:\Windows\explorer.exe => File is digitally signedC:\Windows\SysWOW64\explorer.exe => File is digitally signedC:\Windows\System32\svchost.exe => File is digitally signedC:\Windows\SysWOW64\svchost.exe => File is digitally signedC:\Windows\System32\services.exe => File is digitally signedC:\Windows\System32\User32.dll => File is digitally signedC:\Windows\SysWOW64\User32.dll => File is digitally signedC:\Windows\System32\userinit.exe => File is digitally signedC:\Windows\SysWOW64\userinit.exe => File is digitally signedC:\Windows\System32\rpcss.dll => File is digitally signedC:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-06-13 17:12 ==================== End Of Log ============================ Link to post Share on other sites More sharing options...
PrivateDuckii Posted June 13, 2014 Author ID:841132 Share Posted June 13, 2014 And the most recent Addition.txt Additional scan result of Farbar Recovery Scan Tool (x64) Version: 12-06-2014 02Ran by Duckii at 2014-06-13 22:00:08Running from C:\Users\Duckii\DesktopBoot Mode: Normal========================================================== ==================== Security Center ======================== AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (HKLM\...\UDK-331b4708-3c58-4340-8326-a03119b80910) (Version: - RuneStorm7-Zip 9.20 (HKLM-x32\...\7-Zip) (Version: - )7-Zip 9.22 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0922-000001000000}) (Version: 9.22.00.0 - Igor Pavlov)AaaaaAAaaaAAAaaAAAAaAAAAA!!! for the Awesome (HKLM-x32\...\Steam App 15560) (Version: - Dejobaan Games, LLC)Add or Remove Adobe Premiere Pro CS5 (HKLM-x32\...\{96F9B265-1367-4E1A-B8B9-F8530EF3AA62}) (Version: 5.0 - Adobe Systems Incorporated)Adobe After Effects CS5 (HKLM-x32\...\{DA1B174B-4297-467C-9EF8-0AB8D4D5171E}) (Version: 10 - Adobe Systems Incorporated)Adobe After Effects CS5 Third Party Content (HKLM-x32\...\{C0AA232E-BD1B-40B5-A176-A2BEB67FFAE1}) (Version: 10 - Adobe Systems Incorporated)Adobe After Effects CS5 Third Party Royalty Content (HKLM-x32\...\{CD29B5CA-4727-4114-9AD9-25CCCE6E4014}) (Version: 10 - Adobe Systems Incorporated)Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 13.0.0.111 - Adobe Systems Incorporated)Adobe AIR (x32 Version: 13.0.0.111 - Adobe Systems Incorporated) HiddenAdobe Community Help (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.0.0.400 - Adobe Systems Incorporated)Adobe Community Help (x32 Version: 3.0.0 - Adobe Systems Incorporated) HiddenAdobe Flash Player 13 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 13.0.0.214 - Adobe Systems Incorporated)Adobe Media Encoder CS5 Dolby X64 (HKLM-x32\...\{5DDABB74-A879-4BE7-A4C6-FD41793942DB}) (Version: 5.0 - Adobe Systems Incorporated)Adobe Media Encoder CS5 PCI X64 (HKLM-x32\...\{F9C71630-0EE3-475C-9E2B-ED95AE197DBD}) (Version: 5.0 - Adobe Systems Incorporated)Adobe Media Player (HKLM-x32\...\com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.8 - Adobe Systems Incorporated)Adobe Media Player (x32 Version: 1.8 - Adobe Systems Incorporated) HiddenAdobe Premiere Pro CS5 Third Party Royalty Content (HKLM-x32\...\{565DE707-5798-4FC3-8DF6-0F58A348A9B0}) (Version: 5.0.0 - Adobe Systems Incorporated)Adobe Shockwave Player 12.0 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.0.9.149 - Adobe Systems, Inc.)AI War: Fleet Command (HKLM-x32\...\Steam App 40400) (Version: - Arcen Games, LLC)AMD Wireless Display v3.0 (Version: 1.0.0.14 - Advanced Micro Devices, Inc.) HiddenAmrAddonInstall (Version: 1.2.8.0 - Microsoft) HiddenApple Application Support (HKLM-x32\...\{D9DAD0FF-495A-472B-9F10-BAE430A26682}) (Version: 3.0.3 - Apple Inc.)Apple Mobile Device Support (HKLM\...\{787136D2-F0F8-4625-AA3F-72D7795AC842}) (Version: 7.1.1.3 - Apple Inc.)Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)Arma 3 (HKLM-x32\...\Steam App 107410) (Version: - Bohemia Interactive)Ask Mr. Robot (HKLM-x32\...\{86e39a0a-85dd-4d6f-b1cd-46d8208bd2e9}) (Version: 1.3.17.0 - Ask Mr. Robot)Ask Mr. Robot (Version: 1.3.17.0 - Ask Mr. Robot) HiddenASUS GPU Tweak (HKLM-x32\...\InstallShield_{532F6E8A-AF97-41C3-915F-39F718EC07D1}) (Version: 2.4.2.4 - ASUSTek COMPUTER INC.)ASUS GPU Tweak (x32 Version: 2.4.2.4 - ASUSTek COMPUTER INC.) HiddenASUS Product Register Program (HKLM-x32\...\{9D29D67C-315D-46A1-A3A9-3CAF24871578}) (Version: 1.0.022 - ASUSTek Computer Inc.)Audiosurf 2 (HKLM-x32\...\Steam App 235800) (Version: - Dylan Fitterer)Axis Game Factory (HKLM-x32\...\Steam App 253370) (Version: - Axis Game Factory)Bang Bang Racing (HKLM-x32\...\Steam App 207020) (Version: - Digital Reality Software & Playbox)Bastion (HKLM-x32\...\Steam App 107100) (Version: - Supergiant Games)Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)Battlefield™ Hardline Beta (HKLM-x32\...\{599276A7-F45D-40B1-A0B6-CF132A1CAD49}) (Version: 1.0.0.3 - Electronic Arts)Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.4.0 - EA Digital Illusions CE AB)BeamNG-Techdemo-0.3 (remove only) (HKCU\...\BeamNG-Techdemo-0.3) (Version: - )BIT.TRIP Presents... Runner2: Future Legend of Rhythm Alien (HKLM-x32\...\Steam App 218060) (Version: - Gaijin Games)Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)Call of Duty: Black Ops II - Multiplayer (HKLM-x32\...\Steam App 202990) (Version: - )Call of Duty: Black Ops II - Zombies (HKLM-x32\...\Steam App 212910) (Version: - )Counter-Strike: Source (HKLM-x32\...\Steam App 240) (Version: - Valve)Curse Client (HKCU\...\101a9f93b8f0bb6f) (Version: 5.1.1.792 - Curse)DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.47.1.0337 - Disc Soft Ltd)Dawngate (HKLM-x32\...\{1330926C-251C-414E-A681-F8CEF84899BC}) (Version: 182.23.92.0 - Electronic Arts, Inc.)DayZ (HKLM-x32\...\Steam App 221100) (Version: - Bohemia Interactive)Dead Rising 2 (x32 Version: 1.0.0002.130 - Capcom) HiddenDiablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment)Dogecoin (HKCU\...\Dogecoin) (Version: 1.6.0.0 - Dogecoin)Dolphin (HKLM-x32\...\Dolphin) (Version: 4.0.1 - Dolphin Development Team)Dropbox (HKCU\...\Dropbox) (Version: 2.8.2 - Dropbox, Inc.)Dungeon Defenders (HKLM-x32\...\Steam App 65800) (Version: - Trendy Entertainment)Fallout 3 - Game of the Year Edition (HKLM-x32\...\Steam App 22370) (Version: - Bethesda Game Studios)Fallout: New Vegas (HKLM-x32\...\Steam App 22380) (Version: - Obsidian Entertainment)ffdshow v1.1.3800 [2011-03-28] (HKLM-x32\...\ffdshow_is1) (Version: 1.1.3800.0 - )Floating Point (HKLM-x32\...\Steam App 302380) (Version: - Suspicious Developments)Foxit Cloud (HKLM-x32\...\{41914D8B-9D6E-4764-A1F9-BC43FB6782C1}_is1) (Version: 1.5.127.515 - Foxit Corporation)Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 6.1.4.217 - Foxit Corporation)Fraps (remove only) (HKLM-x32\...\Fraps) (Version: - )FTL: Faster Than Light (HKLM-x32\...\Steam App 212680) (Version: - Subset Games)Goat Simulator (HKLM-x32\...\Steam App 265930) (Version: - Coffee Stain Studios)Google Chrome (HKLM-x32\...\Google Chrome) (Version: 35.0.1916.114 - Google Inc.)Google Earth Plug-in (HKLM-x32\...\{4AB54F11-2F8C-11E3-B09F-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)Google Update Helper (x32 Version: 1.3.24.7 - Google Inc.) HiddenHearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment)HOARD (HKLM-x32\...\Steam App 63000) (Version: - Big Sandwich Games)iTunes (HKLM\...\{5A68A656-979F-4168-8795-E2E368AA4DC2}) (Version: 11.2.2.3 - Apple Inc.)Jagged Alliance: Crossfire (HKLM-x32\...\Steam App 205810) (Version: - Coreplay GmbH)Java 7 Update 55 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86417055FF}) (Version: 7.0.550 - Oracle)Java 7 Update 55 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217055FF}) (Version: 7.0.550 - Oracle)Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) HiddenJust Cause 2 (HKLM-x32\...\Steam App 8190) (Version: - Avalanche)Just Cause 2: Multiplayer Mod (HKLM-x32\...\Steam App 259080) (Version: - JC2-MP Team)Loadout (HKLM-x32\...\Steam App 208090) (Version: - Edge of Reality)LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.193 - LogMeIn, Inc.)LogMeIn Hamachi (x32 Version: 2.2.0.193 - LogMeIn, Inc.) HiddenMagicka: Wizard Wars (HKLM-x32\...\Steam App 202090) (Version: - Paradox North)Malwarebytes Anti-Malware version 2.0.2.1012 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation)Metro 2033 (HKLM-x32\...\Steam App 43110) (Version: - 4A Games)Metro: Last Light (HKLM-x32\...\Steam App 43160) (Version: - 4A Games)Microsoft Chart Controls for Microsoft .NET Framework 3.5 (HKLM-x32\...\{41785C66-90F2-40CE-8CB5-1C94BFC97280}) (Version: 3.5.0.0 - Microsoft Corporation)Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}) (Version: 3.5.92.0 - Microsoft Corporation)Microsoft Games for Windows Marketplace (HKLM-x32\...\{67F42018-F647-4D3C-BE62-F8CB4FE2FCD5}) (Version: 3.5.67.0 - Microsoft Corporation)Microsoft Office Office 32-bit Components 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) HiddenMicrosoft Office Proof (English) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) HiddenMicrosoft Office Proof (French) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) HiddenMicrosoft Office Proof (Spanish) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) HiddenMicrosoft Office Proofing (English) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) HiddenMicrosoft Office Shared 32-bit MUI (English) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) HiddenMicrosoft Office Shared MUI (English) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) HiddenMicrosoft Office Shared Setup Metadata MUI (English) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) HiddenMicrosoft Office Word 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) HiddenMicrosoft Office Word MUI (English) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) HiddenMicrosoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 (HKLM-x32\...\{8e70e4e1-06d7-470b-9f74-a51bef21088e}) (Version: 11.0.51106.1 - Microsoft Corporation)Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) HiddenMicrosoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) HiddenMicrosoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) HiddenMicrosoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) HiddenMicrosoft Word 2010 (HKLM\...\Office14.WORD) (Version: 14.0.4763.1000 - Microsoft Corporation)Microsoft Xbox One Controller for Windows (HKLM\...\{DC2CB48C-FD96-48EB-A36A-7D995BB587EB}) (Version: 1.0.2 - Microsoft Corporation)Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation)Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)Microsoft_VC80_ATL_x86 (x32 Version: 8.0.50727.4053 - Adobe) HiddenMicrosoft_VC80_CRT_x86 (x32 Version: 8.0.50727.4053 - Adobe) HiddenMicrosoft_VC80_CRT_x86_x64 (Version: 8.0.50727.4053 - Adobe) HiddenMicrosoft_VC80_MFC_x86 (x32 Version: 8.0.50727.4053 - Adobe) HiddenMicrosoft_VC80_MFC_x86_x64 (Version: 8.0.50727.4053 - Adobe) HiddenMicrosoft_VC80_MFCLOC_x86 (x32 Version: 8.0.50727.4053 - Adobe) HiddenMicrosoft_VC80_MFCLOC_x86_x64 (Version: 80.50727.4053 - Adobe) HiddenMicrosoft_VC90_ATL_x86 (x32 Version: 1.00.0000 - Adobe) HiddenMicrosoft_VC90_ATL_x86_x64 (Version: 1.00.0000 - Adobe) HiddenMicrosoft_VC90_CRT_x86 (x32 Version: 1.00.0000 - Adobe) HiddenMicrosoft_VC90_CRT_x86_x64 (Version: 1.00.0000 - Adobe) HiddenMicrosoft_VC90_MFC_x86 (x32 Version: 1.00.0000 - Adobe) HiddenMicrosoft_VC90_MFC_x86_x64 (Version: 1.00.0000 - Adobe) HiddenMini Ninjas (HKLM-x32\...\Steam App 35000) (Version: - IO Interactive)MotioninJoy Gamepad tool 0.7.1001 (HKLM\...\{330DAC67-5B62-452A-A0E4-6B4A5923940F}_is1) (Version: 0.7.1001 - www.motioninjoy.com)Mozilla Firefox 29.0.1 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 29.0.1 (x86 en-US)) (Version: 29.0.1 - Mozilla)Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 26.0 - Mozilla)Muffin Knight (HKLM-x32\...\Steam App 263700) (Version: - Angry Mob Games)My Game Long Name (HKLM\...\UDK-58278108-eac1-4154-8341-0efab68c5861) (Version: - Epic Games, Inc.)neonRings (HKLM-x32\...\neonRings_is1) (Version: - )Next Car Game (HKLM-x32\...\Steam App 228380) (Version: - )Next Car Game Technology Sneak Peek 2.0 (HKLM-x32\...\Next Car Game Technology Sneak Peek) (Version: - Bugbear Entertainment)Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.47.3 - Black Tree Gaming)No More Room in Hell (HKLM-x32\...\Steam App 224260) (Version: - No More Room in Hell Team)NVIDIA 3D Vision Controller Driver 337.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 337.88 - NVIDIA Corporation)NVIDIA 3D Vision Driver 337.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 337.88 - NVIDIA Corporation)NVIDIA Control Panel 337.88 (Version: 337.88 - NVIDIA Corporation) HiddenNVIDIA GeForce Experience 2.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1 - NVIDIA Corporation)NVIDIA Graphics Driver 337.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 337.88 - NVIDIA Corporation)NVIDIA HD Audio Driver 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation)NVIDIA Install Application (Version: 2.1002.157.1165 - NVIDIA Corporation) HiddenNVIDIA LED Visualizer 1.0 (Version: 1.0 - NVIDIA Corporation) HiddenNVIDIA Network Service (Version: 1.0 - NVIDIA Corporation) HiddenNVIDIA PhysX (x32 Version: 9.13.1220 - NVIDIA Corporation) HiddenNVIDIA PhysX System Software 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation)NVIDIA ShadowPlay 14.6.22 (Version: 14.6.22 - NVIDIA Corporation) HiddenNVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.12.6514 - NVIDIA Corporation) HiddenNVIDIA Update 14.6.22 (Version: 14.6.22 - NVIDIA Corporation) HiddenNVIDIA Update Core (Version: 14.6.22 - NVIDIA Corporation) HiddenNVIDIA Virtual Audio 1.2.23 (Version: 1.2.23 - NVIDIA Corporation) HiddenOne Finger Death Punch (HKLM-x32\...\Steam App 264200) (Version: - Silver Dollar Games)Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version: - )OpenAL (HKLM-x32\...\OpenAL) (Version: - )Origin (HKLM-x32\...\Origin) (Version: 9.4.7.2799 - Electronic Arts, Inc.)Path of Exile (HKLM-x32\...\Steam App 238960) (Version: - Grinding Gear Games)Pid (HKLM-x32\...\Steam App 218740) (Version: - Might and Delight)Pinball FX2 (HKLM-x32\...\Steam App 226980) (Version: - Zen Studios)Prison Architect (HKLM-x32\...\Steam App 233450) (Version: - Introversion Software)PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.)PxMergeModule (x32 Version: 1.00.0000 - Your Company Name) HiddenQuickTime (HKLM-x32\...\{B67BAFBA-4C9F-48FA-9496-933E3B255044}) (Version: 7.74.80.86 - Apple Inc.)Race The Sun (HKLM-x32\...\Steam App 253030) (Version: - Flippfly LLC)Razer Nostromo (HKLM-x32\...\{2397C30A-9A6C-4DDA-81CE-07C7A8C38E45}) (Version: 2.05.02 - Razer USA Ltd.)Razer Nostromo Firmware Updater (HKLM-x32\...\{49C5BD36-F5B9-4E6A-9DC1-04818B9D55E3}) (Version: 1.02.03 - Razer USA Ltd.)Razer Synapse 2.0 (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 1.18.02 - Razer Inc.)Razor2: Hidden Skies (HKLM-x32\...\Steam App 34920) (Version: - Invent4 Entertainment)Revo Uninstaller Pro 3.0.8 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 3.0.8 - VS Revo Group, Ltd.)RuneScape Launcher 1.2.3 (HKLM-x32\...\{FAE99C85-0732-4C58-9C6B-10B5B12FA2E9}) (Version: 1.2.3 - Jagex Ltd)Saints Row IV, âåðñèÿ 1.0.0.0 (HKLM-x32\...\Saints Row IV_is1) (Version: 1.0.0.0 - )Sandboxie 4.08 (64-bit) (HKLM\...\Sandboxie) (Version: 4.08 - Sandboxie Holdings, LLC)SHIELD Streaming (Version: 2.1.214 - NVIDIA Corporation) HiddenSid Meier's Civilization V (HKLM-x32\...\Steam App 8930) (Version: - 2K Games, Inc.)SkyDrift (HKLM-x32\...\Steam App 91100) (Version: - Digital Reality)Source SDK (HKLM-x32\...\Steam App 211) (Version: - Valve)SpeedRunners (HKLM-x32\...\Steam App 207140) (Version: - DoubleDutch Games)Star Wars - Battlefront II (HKLM-x32\...\Steam App 6060) (Version: - Pandemic Studios)StarCraft II (HKLM-x32\...\StarCraft II) (Version: - Blizzard Entertainment)State of Decay (HKLM-x32\...\Steam App 241540) (Version: - Undead Labs)Super Meat Boy (HKLM-x32\...\Steam App 40800) (Version: - Team Meat)swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) HiddenSystem Requirements Lab CYRI (HKLM-x32\...\{F3FCB08B-E752-444D-86A0-0634A4F3B23D}) (Version: 6.0.8.0 - Husdawg, LLC)Tank Operations: European Campaign (HKLM-x32\...\Steam App 258240) (Version: - Linked Dimensions)TeamSpeak 3 Client (HKLM-x32\...\TeamSpeak 3 Client) (Version: 3.0.14 - TeamSpeak Systems GmbH)TeamViewer 9 (HKLM-x32\...\TeamViewer 9) (Version: 9.0.28223 - TeamViewer)TechPowerUp GPU-Z (HKLM-x32\...\TechPowerUp GPU-Z) (Version: - TechPowerUp)Terraria (HKLM-x32\...\Steam App 105600) (Version: - Re-Logic)The Ship (HKLM-x32\...\Steam App 2400) (Version: - Outerlight Ltd.)Titanfall™ (HKLM-x32\...\{347EE0C3-0690-48F6-A231-53853C2A80D6}) (Version: 1.0.3.6 - Electronic Arts)TrackMania² Stadium (HKLM-x32\...\Steam App 232910) (Version: - Nadeo)Trials Fusion (HKLM-x32\...\Steam App 245490) (Version: - RedLynx, in collaboration with Ubisoft Shanghai, Ubisoft Kiev)Unity (HKLM-x32\...\Unity) (Version: 4.5.0f6 - Unity Technologies ApS)Unity Web Player (HKCU\...\UnityWebPlayer) (Version: 4.5.0f6 - Unity Technologies ApS)Unreal Development Kit: 2012-07 (HKLM\...\UDK-bef5aeb5-bf25-4772-ad6c-da674c446f88) (Version: - Epic Games, Inc.)Uplay (HKLM-x32\...\Uplay) (Version: 4.3 - Ubisoft)USB GAMEPAD (HKLM-x32\...\{FEC7CD2E-2BB5-40C3-9592-078F64677E6C}) (Version: 1.00.0000 - GASIA)Ventrilo Client for Windows x64 (HKLM\...\{EEB3F6BB-318D-4CE5-989F-8191FCBFB578}) (Version: 3.0.8.0 - Flagship Industries, Inc.)Viscera Cleanup Detail (HKLM-x32\...\Steam App 246900) (Version: - RuneStorm)Viscera Cleanup Detail: Shadow WarriorViscera Cleanup Detail: Shadow Warrior (HKLM-x32\...\Steam App 255520) (Version: - RuneStorm)VLC media player 2.1.3 (HKLM-x32\...\VLC media player) (Version: 2.1.3 - VideoLAN)Warframe (HKLM-x32\...\Steam App 230410) (Version: - Digital Extremes)Warhammer 40,000: Dawn of War – Dark Crusade (HKLM-x32\...\Steam App 4580) (Version: - Relic Entertainment)Warhammer 40,000: Dawn of War - Game of the Year Edition (HKLM-x32\...\Steam App 4570) (Version: - Relic Entertainment)Warhammer 40,000: Dawn of War – Winter Assault (HKLM-x32\...\Steam App 9310) (Version: - Relic Entertainment)WildStar (HKLM-x32\...\WildStar) (Version: - NCSOFT)Worms Revolution (HKLM-x32\...\Steam App 200170) (Version: - Team17 Digital Ltd.)WoW UI Designer (HKLM-x32\...\{CD37B8FD-303B-401D-8F2B-D2272E2B5679}) (Version: 1.1.110 - SSC) ==================== Restore Points ========================= 09-06-2014 19:35:06 Installed Dawngate10-06-2014 22:16:01 Installed DirectX12-06-2014 02:54:42 Windows Modules Installer12-06-2014 02:55:04 Windows Modules Installer12-06-2014 02:55:32 Windows Modules Installer12-06-2014 02:55:53 Windows Modules Installer12-06-2014 02:56:09 Windows Modules Installer12-06-2014 02:56:29 Windows Modules Installer12-06-2014 02:56:47 Windows Modules Installer12-06-2014 02:57:03 Windows Modules Installer13-06-2014 04:24:19 avast! antivirus system restore point ==================== Hosts content: ========================== 2012-07-26 13:26 - 2013-10-30 22:31 - 00001339 ____A C:\WINDOWS\system32\Drivers\etc\hosts127.0.0.1 activate.adobe.com127.0.0.1 practivate.adobe.com127.0.0.1 ereg.adobe.com127.0.0.1 activate.wip3.adobe.com127.0.0.1 wip3.adobe.com127.0.0.1 3dns-3.adobe.com127.0.0.1 3dns-2.adobe.com127.0.0.1 adobe-dns.adobe.com127.0.0.1 adobe-dns-2.adobe.com127.0.0.1 adobe-dns-3.adobe.com127.0.0.1 ereg.wip3.adobe.com127.0.0.1 activate-sea.adobe.com127.0.0.1 wwis-dubc1-vip60.adobe.com127.0.0.1 activate-sjc0.adobe.com127.0.0.1 adobe.activate.com ==================== Scheduled Tasks (whitelisted) ============= Task: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTaskTask: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsListTask: {10873861-3C6B-439E-8EA6-7410FA0B7790} - System32\Tasks\Microsoft\Windows\SysResetLogSuccess => Rundll32.exe ResetEng.dll,RjvLogSuccessEntryPointTask: {2085BF56-520D-4951-B7C0-DF34AF90CC6A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTaskTask: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulateTask: {30805796-986D-4C2B-8FC1-9E79AD330B32} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2014-06-12] (Microsoft Corporation)Task: {32698A53-7DB0-428D-8D0E-5BA98138AFA9} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation)Task: {3726BC18-4D67-48BF-887B-0A64A641FC8E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-09-13] (Google Inc.)Task: {37414156-C3C3-448B-8BEA-DECF0A373F9F} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start With Network => Sc.exe start wuauservTask: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [2013-08-22] (Microsoft Corporation)Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalanceTask: {49E70A84-02C5-47D7-B4F4-8692F8B21C77} - System32\Tasks\Microsoft\Windows\DiskCleanup\SilentCleanup => C:\Windows\system32\cleanmgr.exe [2014-02-22] (Microsoft Corporation)Task: {5BB34DD9-F645-4FC9-AB76-DA216AB84E71} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-ValidationTask: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play CleanupTask: {6DB62D5C-B970-4CC7-B275-242C9C9A9E38} - System32\Tasks\ASUS\ASUS Product Register Service => C:\Program Files (x86)\ASUS\APRP\aprp.exe [2013-06-21] (ASUSTek Computer Inc.)Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance TaskTask: {73B1B253-CE67-4501-AE1A-377DD1D68B65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTaskTask: {76D6C62C-EFEB-48C3-BCE8-BC219D5F996B} - System32\Tasks\Microsoft\Windows\DiskFootprint\DiagnosticsTask: {77F1D869-6E65-4079-A2A0-E2023408EF97} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryStateTask: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance TaskTask: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTaskTask: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance WorkTask: {A262D1B3-BDD9-4B8A-8054-148184CDFBF4} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-ManagementTask: {AE7D6768-183C-4CCA-B0BF-8AABFB1CA8BD} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-14] (Adobe Systems Incorporated)Task: {B559AC20-1451-4DAF-A973-E15389E01247} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-09-13] (Google Inc.)Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTaskTask: {D88FEC9E-A82A-46F9-87E2-B6B97B301C1A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensingTask: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon SynchronizationTask: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRETask: {E8168B46-EF4E-4D07-AB8D-25211ECB5224} - System32\Tasks\AdobeAAMUpdater-1.0-Duckii-PC-Duckii => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06] (Adobe Systems Incorporated)Task: {EAAF3446-CCFD-40E3-B017-F58ED630E176} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyUploadTask: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exeTask: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exeTask: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2012-01-17 11:24 - 2012-01-17 11:24 - 00055296 _____ () C:\Windows\SysWOW64\ASGT.exe2014-04-27 03:14 - 2014-06-11 06:17 - 00076888 _____ () C:\WINDOWS\SysWOW64\PnkBstrA.exe2014-04-08 23:57 - 2014-05-20 09:25 - 00116568 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll2014-02-03 18:55 - 2014-02-03 18:55 - 00792576 _____ () C:\Program Files\AskMrRobot\AmrTray.exe2014-05-26 10:53 - 2014-05-26 10:53 - 05892096 _____ () C:\wm\wm.exe2014-06-13 13:00 - 2014-06-13 13:00 - 00395264 _____ () C:\wm\64\wincpu.exe2014-06-13 13:00 - 2014-06-13 13:00 - 00216576 _____ () C:\wm\64\libcurl-4.dll2014-06-13 13:00 - 2014-06-13 13:00 - 00095744 _____ () C:\wm\64\zlib1.dll2014-06-13 21:47 - 2014-06-13 21:47 - 00468480 _____ () C:\Users\Duckii\Desktop\CKScanner.exe2014-02-06 00:52 - 2014-02-06 00:52 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll2014-02-06 00:52 - 2014-02-06 00:52 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll2013-06-20 11:01 - 2013-06-20 11:01 - 00258048 _____ () C:\Program Files (x86)\ASUS\GPU Tweak\Vender.dll2013-05-14 15:11 - 2013-05-14 15:11 - 00049152 _____ () C:\Program Files (x86)\ASUS\GPU Tweak\Exeio.dll2014-05-22 13:56 - 2014-04-30 08:08 - 01135104 _____ () F:\Steam\libavcodec-55.dll2014-05-22 13:56 - 2014-04-30 08:08 - 00404992 _____ () F:\Steam\libavformat-55.dll2014-05-22 13:56 - 2014-04-30 08:08 - 00340992 _____ () F:\Steam\libavresample-1.dll2014-05-22 13:56 - 2014-04-30 08:08 - 00471552 _____ () F:\Steam\libavutil-53.dll2014-05-22 13:56 - 2014-05-17 09:36 - 00756224 _____ () F:\Steam\SDL2.dll2014-05-30 11:43 - 2014-05-30 01:37 - 02139840 _____ () F:\Steam\video.dll2014-05-22 13:56 - 2014-04-29 08:37 - 00519168 _____ () F:\Steam\libswscale-2.dll2014-05-30 11:43 - 2014-05-30 01:36 - 01116864 _____ () F:\Steam\bin\chromehtml.DLL2014-05-22 13:56 - 2014-05-02 07:35 - 20628160 _____ () F:\Steam\bin\libcef.dll2013-09-05 21:16 - 2013-06-15 07:49 - 01100800 _____ () F:\Steam\bin\avcodec-53.dll2013-09-05 21:16 - 2013-06-15 07:49 - 00124416 _____ () F:\Steam\bin\avutil-51.dll2013-09-05 21:16 - 2013-06-15 07:49 - 00192000 _____ () F:\Steam\bin\avformat-53.dll2014-06-11 02:44 - 2014-06-11 02:44 - 26065408 _____ () D:\Program Files\Blizzard\Battle.net\Battle.net.4710\libcef.dll2014-06-11 02:44 - 2014-06-11 02:44 - 00739840 _____ () D:\Program Files\Blizzard\Battle.net\Battle.net.4710\libglesv2.dll2014-06-11 02:44 - 2014-06-11 02:44 - 00130048 _____ () D:\Program Files\Blizzard\Battle.net\Battle.net.4710\libegl.dll2014-02-15 01:24 - 2014-04-25 11:53 - 00962560 _____ () D:\Origin\platforms\qwindows.dll2014-02-15 01:24 - 2014-04-25 11:52 - 00024064 _____ () D:\Origin\imageformats\qgif.dll2014-02-15 01:24 - 2014-04-25 11:52 - 00025088 _____ () D:\Origin\imageformats\qico.dll2014-02-15 01:24 - 2014-04-25 11:52 - 00217088 _____ () D:\Origin\imageformats\qjpeg.dll2014-02-15 01:24 - 2014-04-25 11:52 - 00261632 _____ () D:\Origin\imageformats\qmng.dll2014-02-15 01:24 - 2014-04-25 11:52 - 00019968 _____ () D:\Origin\imageformats\qtga.dll2014-02-15 01:24 - 2014-04-25 11:52 - 00302592 _____ () D:\Origin\imageformats\qtiff.dll2014-02-15 01:24 - 2014-04-25 11:52 - 00018944 _____ () D:\Origin\imageformats\qwbmp.dll2014-02-15 01:25 - 2014-04-25 11:53 - 00993280 _____ () D:\Origin\twitchsdk_32_release.dll2014-02-15 01:24 - 2014-04-25 11:53 - 00394810 _____ () D:\Origin\libmp3lame-ttv.dll2014-02-15 01:25 - 2014-04-25 11:53 - 00113171 _____ () D:\Origin\swresample-ttv-0.dll2014-02-15 01:24 - 2014-04-25 11:53 - 00246332 _____ () D:\Origin\avutil-ttv-51.dll2014-06-13 21:45 - 2014-06-13 21:45 - 00043008 _____ () c:\users\duckii\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpc7dppy.dll2013-08-24 03:01 - 2013-08-24 03:01 - 25100288 _____ () C:\Users\Duckii\AppData\Roaming\Dropbox\bin\libcef.dll2014-03-28 00:46 - 2014-03-28 00:46 - 00148480 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\quazip.dll2014-03-28 00:46 - 2014-03-28 00:46 - 00864768 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\platforms\qwindows.dll2014-03-28 00:46 - 2014-03-28 00:46 - 00677376 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\sqldrivers\qsqlite.dll2013-08-06 15:19 - 2014-03-28 00:46 - 00092104 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\soundbackends\directsound_win32.dll2013-08-06 15:19 - 2014-03-28 00:46 - 00105416 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\soundbackends\windowsaudiosession_win32.dll2014-03-28 00:46 - 2014-03-28 00:46 - 00025600 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\imageformats\qgif.dll2014-03-28 00:46 - 2014-03-28 00:46 - 00242688 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\imageformats\qjpeg.dll2013-08-06 15:19 - 2014-03-28 00:46 - 00117704 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\plugins\appscanner_plugin.dll2013-08-06 15:19 - 2014-03-28 00:46 - 00477128 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\plugins\clientquery_plugin.dll2013-09-12 13:09 - 2014-03-28 00:46 - 00483784 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\plugins\teamspeak_control_plugin.dll2014-03-28 00:46 - 2014-03-28 00:46 - 00123904 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\accessible\qtaccessiblewidgets.dll2014-05-26 01:03 - 2014-05-14 07:40 - 00716616 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\libglesv2.dll2014-05-26 01:03 - 2014-05-14 07:40 - 00126280 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\libegl.dll2014-05-26 01:03 - 2014-05-14 07:40 - 04217672 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\pdf.dll2014-05-26 01:03 - 2014-05-14 07:40 - 00414536 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\ppGoogleNaClPluginChrome.dll2014-05-26 01:03 - 2014-05-14 07:40 - 01732424 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\ffmpegsumo.dll2014-05-26 01:03 - 2014-05-14 07:40 - 13695816 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\PepperFlash\pepflashplayer.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\Users\Duckii\SkyDrive:ms-properties ==================== Safe Mode (whitelisted) =================== HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service" ==================== EXE Association (whitelisted) ============= ==================== MSCONFIG/TASK MANAGER disabled items ========= HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"HKCU\...\StartupApproved\StartupFolder: => "CurseClientStartup.ccip"HKCU\...\StartupApproved\Run: => "DAEMON Tools Lite"HKCU\...\StartupApproved\Run: => "DS3 Tool"HKCU\...\StartupApproved\Run: => "SandboxieControl"HKCU\...\StartupApproved\Run: => "lesupd" ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors:==================Error: (06/13/2014 09:48:05 PM) (Source: ESENT) (EventID: 454) (User: )Description: svchost (4436) Instance: Database recovery/restore failed with unexpected error -501. Error: (06/13/2014 09:48:05 PM) (Source: ESENT) (EventID: 465) (User: )Description: svchost (4436) Instance: Corruption was detected during soft recovery in logfile C:\ProgramData\Microsoft\Windows\AppRepository\edb.log. The failing checksum record is located at position END. Data not matching the log-file fill pattern first appeared in sector 96 (0x00000060). This logfile has been damaged and is unusable. Error: (06/13/2014 09:48:05 PM) (Source: ESENT) (EventID: 477) (User: )Description: svchost (4436) Instance: The log range read from the file "C:\ProgramData\Microsoft\Windows\AppRepository\edb.log" at offset 393216 (0x0000000000060000) for 4096 (0x00001000) bytes failed verification due to a range checksum mismatch. The expected checksum was 152893690764419688 (0x21f30006e696268) and the actual checksum was 409171780582 (0x5f4489e3e6). The read operation will fail with error -501 (0xfffffe0b). If this condition persists then please restore the logfile from a previous backup. Error: (06/13/2014 09:48:05 PM) (Source: ESENT) (EventID: 465) (User: )Description: svchost (4436) Instance: Corruption was detected during soft recovery in logfile C:\ProgramData\Microsoft\Windows\AppRepository\edb.log. The failing checksum record is located at position END. Data not matching the log-file fill pattern first appeared in sector 96 (0x00000060). This logfile has been damaged and is unusable. Error: (06/13/2014 09:48:05 PM) (Source: ESENT) (EventID: 477) (User: )Description: svchost (4436) Instance: The log range read from the file "C:\ProgramData\Microsoft\Windows\AppRepository\edb.log" at offset 393216 (0x0000000000060000) for 4096 (0x00001000) bytes failed verification due to a range checksum mismatch. The expected checksum was 152893690764419688 (0x21f30006e696268) and the actual checksum was 409171780582 (0x5f4489e3e6). The read operation will fail with error -501 (0xfffffe0b). If this condition persists then please restore the logfile from a previous backup. Error: (06/13/2014 05:12:56 PM) (Source: ESENT) (EventID: 454) (User: )Description: svchost (4436) Instance: Database recovery/restore failed with unexpected error -501. Error: (06/13/2014 05:12:56 PM) (Source: ESENT) (EventID: 465) (User: )Description: svchost (4436) Instance: Corruption was detected during soft recovery in logfile C:\ProgramData\Microsoft\Windows\AppRepository\edb.log. The failing checksum record is located at position END. Data not matching the log-file fill pattern first appeared in sector 96 (0x00000060). This logfile has been damaged and is unusable. Error: (06/13/2014 05:12:56 PM) (Source: ESENT) (EventID: 477) (User: )Description: svchost (4436) Instance: The log range read from the file "C:\ProgramData\Microsoft\Windows\AppRepository\edb.log" at offset 393216 (0x0000000000060000) for 4096 (0x00001000) bytes failed verification due to a range checksum mismatch. The expected checksum was 152893690764419688 (0x21f30006e696268) and the actual checksum was 409171780582 (0x5f4489e3e6). The read operation will fail with error -501 (0xfffffe0b). If this condition persists then please restore the logfile from a previous backup. Error: (06/13/2014 05:12:56 PM) (Source: ESENT) (EventID: 465) (User: )Description: svchost (4436) Instance: Corruption was detected during soft recovery in logfile C:\ProgramData\Microsoft\Windows\AppRepository\edb.log. The failing checksum record is located at position END. Data not matching the log-file fill pattern first appeared in sector 96 (0x00000060). This logfile has been damaged and is unusable. Error: (06/13/2014 05:12:56 PM) (Source: ESENT) (EventID: 477) (User: )Description: svchost (4436) Instance: The log range read from the file "C:\ProgramData\Microsoft\Windows\AppRepository\edb.log" at offset 393216 (0x0000000000060000) for 4096 (0x00001000) bytes failed verification due to a range checksum mismatch. The expected checksum was 152893690764419688 (0x21f30006e696268) and the actual checksum was 409171780582 (0x5f4489e3e6). The read operation will fail with error -501 (0xfffffe0b). If this condition persists then please restore the logfile from a previous backup. System errors:=============Error: (06/13/2014 09:48:39 PM) (Source: DCOM) (EventID: 10010) (User: Duckii-PC)Description: {1B1F472E-3221-4826-97DB-2C2324D389AE} Error: (06/13/2014 04:30:51 PM) (Source: EventLog) (EventID: 6008) (User: )Description: The previous system shutdown at 4:19:46 PM on 6/13/2014 was unexpected. Error: (06/13/2014 01:32:42 PM) (Source: DCOM) (EventID: 10010) (User: Duckii-PC)Description: {1B1F472E-3221-4826-97DB-2C2324D389AE} Error: (06/13/2014 00:25:11 PM) (Source: DCOM) (EventID: 10010) (User: Duckii-PC)Description: {1B1F472E-3221-4826-97DB-2C2324D389AE} Error: (06/12/2014 04:23:17 PM) (Source: DCOM) (EventID: 10010) (User: Duckii-PC)Description: {1B1F472E-3221-4826-97DB-2C2324D389AE} Error: (06/11/2014 06:27:37 PM) (Source: DCOM) (EventID: 10010) (User: Duckii-PC)Description: {1B1F472E-3221-4826-97DB-2C2324D389AE} Error: (06/11/2014 00:43:03 PM) (Source: DCOM) (EventID: 10010) (User: Duckii-PC)Description: {1B1F472E-3221-4826-97DB-2C2324D389AE} Error: (06/11/2014 00:42:33 PM) (Source: DCOM) (EventID: 10010) (User: Duckii-PC)Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} Error: (06/11/2014 06:19:02 AM) (Source: DCOM) (EventID: 10010) (User: Duckii-PC)Description: {1B1F472E-3221-4826-97DB-2C2324D389AE} Error: (06/11/2014 06:18:32 AM) (Source: DCOM) (EventID: 10010) (User: Duckii-PC)Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} Microsoft Office Sessions:=========================Error: (06/13/2014 09:48:05 PM) (Source: ESENT) (EventID: 454) (User: )Description: svchost4436Instance: -501 Error: (06/13/2014 09:48:05 PM) (Source: ESENT) (EventID: 465) (User: )Description: svchost4436Instance: C:\ProgramData\Microsoft\Windows\AppRepository\edb.logEND96 (0x00000060) Error: (06/13/2014 09:48:05 PM) (Source: ESENT) (EventID: 477) (User: )Description: svchost4436Instance: C:\ProgramData\Microsoft\Windows\AppRepository\edb.log393216 (0x0000000000060000)4096 (0x00001000)-501 (0xfffffe0b)152893690764419688 (0x21f30006e696268)409171780582 (0x5f4489e3e6) Error: (06/13/2014 09:48:05 PM) (Source: ESENT) (EventID: 465) (User: )Description: svchost4436Instance: C:\ProgramData\Microsoft\Windows\AppRepository\edb.logEND96 (0x00000060) Error: (06/13/2014 09:48:05 PM) (Source: ESENT) (EventID: 477) (User: )Description: svchost4436Instance: C:\ProgramData\Microsoft\Windows\AppRepository\edb.log393216 (0x0000000000060000)4096 (0x00001000)-501 (0xfffffe0b)152893690764419688 (0x21f30006e696268)409171780582 (0x5f4489e3e6) Error: (06/13/2014 05:12:56 PM) (Source: ESENT) (EventID: 454) (User: )Description: svchost4436Instance: -501 Error: (06/13/2014 05:12:56 PM) (Source: ESENT) (EventID: 465) (User: )Description: svchost4436Instance: C:\ProgramData\Microsoft\Windows\AppRepository\edb.logEND96 (0x00000060) Error: (06/13/2014 05:12:56 PM) (Source: ESENT) (EventID: 477) (User: )Description: svchost4436Instance: C:\ProgramData\Microsoft\Windows\AppRepository\edb.log393216 (0x0000000000060000)4096 (0x00001000)-501 (0xfffffe0b)152893690764419688 (0x21f30006e696268)409171780582 (0x5f4489e3e6) Error: (06/13/2014 05:12:56 PM) (Source: ESENT) (EventID: 465) (User: )Description: svchost4436Instance: C:\ProgramData\Microsoft\Windows\AppRepository\edb.logEND96 (0x00000060) Error: (06/13/2014 05:12:56 PM) (Source: ESENT) (EventID: 477) (User: )Description: svchost4436Instance: C:\ProgramData\Microsoft\Windows\AppRepository\edb.log393216 (0x0000000000060000)4096 (0x00001000)-501 (0xfffffe0b)152893690764419688 (0x21f30006e696268)409171780582 (0x5f4489e3e6) CodeIntegrity Errors:=================================== Date: 2013-11-12 15:53:49.731 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2013-11-12 15:53:41.834 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2013-11-10 19:03:09.089 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2013-11-10 19:03:01.959 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2013-11-05 23:22:53.695 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2013-11-05 23:22:44.772 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2013-11-03 20:26:36.715 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2013-11-03 20:26:28.334 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2013-10-31 22:28:51.228 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2013-10-31 22:28:34.676 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Memory info =========================== Percentage of memory in use: 18%Total physical RAM: 16382.05 MBAvailable physical RAM: 13392.44 MBTotal Pagefile: 18814.05 MBAvailable Pagefile: 15499.98 MBTotal Virtual: 131072 MBAvailable Virtual: 131071.82 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:111.79 GB) (Free:24.13 GB) NTFS ==>[Drive with boot components (obtained from BCD)]Drive d: (Local Disk) (Fixed) (Total:931.51 GB) (Free:124.67 GB) NTFSDrive e: (System Reserved) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS ==>[system with boot components (obtained from reading drive)]Drive f: (Steam) (Fixed) (Total:232.79 GB) (Free:15.65 GB) NTFS ==================== MBR & Partition Table ================== ========================================================Disk: 0 (MBR Code: Windows 7 or 8) (Size: 112 GB) (Disk ID: 85213EDB)Partition 1: (Active) - (Size=112 GB) - (Type=07 NTFS) ========================================================Disk: 1 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: 0EB1357E)Partition 1: (Not Active) - (Size=932 GB) - (Type=07 NTFS) ========================================================Disk: 2 (MBR Code: Windows 7 or 8) (Size: 233 GB) (Disk ID: 05A1E326)Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)Partition 2: (Not Active) - (Size=233 GB) - (Type=07 NTFS) ==================== End Of Log ============================ Link to post Share on other sites More sharing options...
kevinf80 Posted June 13, 2014 ID:841167 Share Posted June 13, 2014 The log from CKScanner is not correct, several lines are missing. You also still have an illegal Crack running to bypass Adobe legitimacy checks... I cannot offer any help until you post the full log from CKScanner and adhere to Forum Protocol as previously advised... Thank you, Kevin Link to post Share on other sites More sharing options...
PrivateDuckii Posted June 14, 2014 Author ID:841487 Share Posted June 14, 2014 Attempt 3. Have since uninstalled illegal versions of Adobe, I'll add the FRST/Addition text files as well. Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 12-06-2014 02Ran by Duckii (administrator) on DUCKII-PC on 14-06-2014 14:50:35Running from C:\Users\Duckii\DesktopPlatform: Windows 8.1 Pro (X64) OS Language: English(US)Internet Explorer Version 11Boot Mode: Normal The only official download link for FRST:Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/ Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/ Download link from any site other than Bleeping Computer is unpermitted or outdated.See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe(Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieSvc.exe(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe() C:\Windows\SysWOW64\ASGT.exe(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe(Microsoft Corporation) C:\Windows\System32\dasHost.exe(Foxit Corporation) C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe() C:\Windows\SysWOW64\PnkBstrA.exe(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe(ASUS) C:\Program Files (x86)\ASUS\GPU Tweak\GPUTweak.exe(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe(ASUS) C:\Program Files (x86)\ASUS\GPU Tweak\Monitor.exe() C:\Program Files\AskMrRobot\AmrTray.exe(Valve Corporation) F:\Steam\Steam.exe(Blizzard Entertainment) C:\ProgramData\Battle.net\Agent\Agent.2880\Agent.exe(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe(Blizzard Entertainment) D:\Program Files\Blizzard\Battle.net\Battle.net.4710\Battle.net.exe(Electronic Arts) D:\Origin\Origin.exe() C:\wm\wm.exe(Dropbox, Inc.) C:\Users\Duckii\AppData\Roaming\Dropbox\bin\Dropbox.exe(Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe(Razer USA Ltd) C:\Program Files (x86)\Razer\Nostromo\RazerNostromoSysTray.exe(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe(Apple Inc.) D:\Program Files\iTunes\iTunesHelper.exe(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(TeamSpeak Systems GmbH) C:\Program Files (x86)\TeamSpeak 3 Client\ts3client_win32.exe(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe() C:\wm\64\wincpu.exe() D:\Program Files\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe() D:\Program Files\Riot Games\League of Legends\RADS\projects\lol_launcher\releases\0.0.0.209\deploy\LoLLauncher.exe() D:\Program Files\Riot Games\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.94\deploy\LolClient.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe() C:\Users\Duckii\Desktop\CKScanner.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500208 2010-03-06] (Adobe Systems Incorporated)HKLM\...\Run: [Ask Mr. Robot] => C:\Program Files\AskMrRobot\AmrTray.exe [792576 2014-02-03] ()HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2352072 2014-05-30] (NVIDIA Corporation)HKLM\...\Run: [shadowPlay] => C:\WINDOWS\system32\nvspcap64.dll [1279480 2014-05-30] (NVIDIA Corporation)HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [43848 2014-02-06] (Apple Inc.)HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.)HKLM-x32\...\Run: [] => [X]HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [585048 2014-04-17] (Razer Inc.)HKLM-x32\...\Run: [Razer Nostromo Driver] => C:\Program Files (x86)\Razer\Nostromo\RazerNostromoSysTray.exe [979400 2012-11-16] (Razer USA Ltd)HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [3814736 2014-05-13] (LogMeIn Inc.)HKLM-x32\...\Run: [iTunesHelper] => D:\Program Files\iTunes\iTunesHelper.exe [152392 2014-05-26] (Apple Inc.)HKU\S-1-5-21-3794150929-2800894002-4186101125-1001\...\Run: [steam] => F:\Steam\steam.exe [1754816 2014-05-30] (Valve Corporation)HKU\S-1-5-21-3794150929-2800894002-4186101125-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3673696 2013-08-01] (Disc Soft Ltd)HKU\S-1-5-21-3794150929-2800894002-4186101125-1001\...\Run: [DS3 Tool] => C:\Program Files\MotioninJoy\ds3\DS3_Tool.exe [104768 2012-05-12] (www.motioninjoy.com)HKU\S-1-5-21-3794150929-2800894002-4186101125-1001\...\Run: [battle.net] => D:\Program Files\Blizzard\Battle.net\Battle.net Launcher.exe [2907184 2014-06-11] (Blizzard Entertainment)HKU\S-1-5-21-3794150929-2800894002-4186101125-1001\...\Run: [EADM] => D:\Origin\Origin.exe [3588952 2014-04-17] (Electronic Arts)HKU\S-1-5-21-3794150929-2800894002-4186101125-1001\...\Run: [sandboxieControl] => C:\Program Files\Sandboxie\SbieCtrl.exe [759496 2014-01-18] (Sandboxie Holdings, LLC)HKU\S-1-5-21-3794150929-2800894002-4186101125-1001\...\Run: [lesupd] => C:\wm\lesupd.exeHKU\S-1-5-21-3794150929-2800894002-4186101125-1001\...\Run: [wm] => C:\wm\wm.exe [5892096 2014-05-26] ()Startup: C:\Users\Duckii\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CurseClientStartup.ccip ()Startup: C:\Users\Duckii\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnkShortcutTarget: Dropbox.lnk -> C:\Users\Duckii\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.ninemsn.com.au/?ocid=iehpHKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xA88963EE7FF2CE01HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-AUBHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)BHO-x32: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)BHO-x32: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)Toolbar: HKLM - No Name - {ae07101b-46d4-4a98-af68-0333ea26e113} - No FileToolbar: HKLM - No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No FileToolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No FileToolbar: HKLM-x32 - No Name - {ae07101b-46d4-4a98-af68-0333ea26e113} - No FileTcpip\Parameters: [DhcpNameServer] 192.168.0.1 FireFox:========FF ProfilePath: C:\Users\Duckii\AppData\Roaming\Mozilla\Firefox\Profiles\re0fqzhq.defaultFF NewTab: about:blankFF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll ()FF Plugin: @java.com/DTPlugin,version=10.55.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)FF Plugin: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - D:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)FF Plugin-x32: @adobe.com/FlashPlayer - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll ()FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1209149.dll (Adobe Systems, Inc.)FF Plugin-x32: @Apple.com/iTunes,version=1.0 - D:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()FF Plugin-x32: @esn/npbattlelog,version=2.4.0 - C:\Program Files (x86)\Battlelog Web Plugins\2.4.0\npbattlelog.dll (EA Digital Illusions CE AB)FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation)FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation)FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)FF Plugin-x32: @videolan.org/vlc,version=2.1.0 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)FF Plugin-x32: @videolan.org/vlc,version=2.1.1 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)FF Plugin-x32: @videolan.org/vlc,version=2.1.2 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)FF Plugin-x32: @videolan.org/vlc,version=2.1.3 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Duckii\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)FF Plugin HKCU: ubisoft.com/uplaypc - C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll ()FF user.js: detected! => C:\Users\Duckii\AppData\Roaming\Mozilla\Firefox\Profiles\re0fqzhq.default\user.jsFF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.)FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.)FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.)FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.)FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.)FF Extension: Hola Unblocker - C:\Users\Duckii\AppData\Roaming\Mozilla\Firefox\Profiles\re0fqzhq.default\Extensions\jid1-4P0kohSJxU1qGg@jetpack [2014-01-17]FF Extension: Reddit Enhancement Suite - C:\Users\Duckii\AppData\Roaming\Mozilla\Firefox\Profiles\re0fqzhq.default\Extensions\jid1-xUfzOsOFlzSOXg@jetpack.xpi [2013-09-05]FF Extension: Adblock Plus - C:\Users\Duckii\AppData\Roaming\Mozilla\Firefox\Profiles\re0fqzhq.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-09-05] Chrome: =======CHR HomePage: hxxp://www.google.comCHR StartupUrls: "hxxp://www.google.com/"CHR DefaultSearchKeyword: google.com.auCHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\PepperFlash\pepflashplayer.dll ()CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewerCHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\ppGoogleNaClPluginChrome.dll ()CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\pdf.dll ()CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation)CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation)CHR Plugin: (Foxit Reader Plugin for Mozilla) - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll No FileCHR Plugin: (Java Deployment Toolkit 7.0.450.18) - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)CHR Plugin: (Java Platform SE 7 U45) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)CHR Plugin: (VLC Web Plugin) - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)CHR Plugin: (Unity Player) - C:\Users\Duckii\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll No FileCHR Plugin: (iTunes Application Detector) - D:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()CHR Extension: (BetterTTV) - C:\Users\Duckii\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2014-01-22]CHR Extension: (Google Docs) - C:\Users\Duckii\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-09-13]CHR Extension: (Google Drive) - C:\Users\Duckii\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-09-13]CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Duckii\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-05-26]CHR Extension: (YouTube) - C:\Users\Duckii\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-09-13]CHR Extension: (Adblock Plus) - C:\Users\Duckii\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-01-19]CHR Extension: (Google Search) - C:\Users\Duckii\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-09-13]CHR Extension: (Hola Better Internet) - C:\Users\Duckii\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkojfkhlekighikafcpjkiklfbnlmeio [2014-05-31]CHR Extension: (Imgur to Gfycat) - C:\Users\Duckii\AppData\Local\Google\Chrome\User Data\Default\Extensions\idnninnhcleaikepmmomfnknbldalnjj [2014-03-12]CHR Extension: (Reddit Enhancement Suite) - C:\Users\Duckii\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbmfpngjjgdllneeigpgjifpgocmfgmb [2014-01-19]CHR Extension: (Google Wallet) - C:\Users\Duckii\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-10-25]CHR Extension: (Enhanced Steam) - C:\Users\Duckii\AppData\Local\Google\Chrome\User Data\Default\Extensions\okadibdjfemgnhjiembecghcbfknbfhg [2014-05-04]CHR Extension: (Gmail) - C:\Users\Duckii\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-09-13] ==================== Services (Whitelisted) ================= R2 ASGT; C:\Windows\SysWOW64\ASGT.exe [55296 2012-01-17] () [File not signed]S3 EasyAntiCheat; C:\WINDOWS\SysWOW64\EasyAntiCheat.exe [93048 2014-05-28] (EasyAntiCheat Ltd)R2 FoxitCloudUpdateService; C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe [242216 2014-05-15] (Foxit Corporation)R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [377616 2014-04-15] (LogMeIn, Inc.)S3 npggsvc; C:\WINDOWS\SysWOW64\GameMon.des [4795672 2013-11-26] (INCA Internet Co., Ltd.)R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1631008 2014-05-30] (NVIDIA Corporation)R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21055432 2014-05-30] (NVIDIA Corporation)R2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [76888 2014-06-11] ()R2 SbieSvc; C:\Program Files\Sandboxie\SbieSvc.exe [187592 2014-01-18] (Sandboxie Holdings, LLC)R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-03-24] (Microsoft Corporation)R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-03-24] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== S0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra)S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [21160 2012-09-23] (Advanced Micro Devices, Inc.)R3 athr; C:\Windows\system32\DRIVERS\athwnx.sys [3680256 2013-06-18] (Qualcomm Atheros Communications, Inc.)S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Windows ® Win 7 DDK provider)R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2014-01-06] (Disc Soft Ltd)R3 hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [46136 2014-05-13] (LogMeIn Inc.)S3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-31] (Intel Corporation)S3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-26] (Intel Corporation)S0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-10] (Intel Corporation)R0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39768 2014-01-07] (Microsoft Corporation)R3 IOMap; C:\WINDOWS\system32\drivers\IOMap64.sys [24824 2013-02-19] (ASUSTeK Computer Inc.)S3 kbldfltr; C:\Windows\System32\drivers\kbldfltr.sys [22272 2013-11-14] (Microsoft Corporation)S0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation)R3 MTsensor; C:\Windows\system32\DRIVERS\ASACPI.sys [17280 2013-05-17] ()R3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation)S3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation)R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20256 2014-05-30] (NVIDIA Corporation)R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [40392 2014-04-01] (NVIDIA Corporation)S3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [924504 2014-02-22] (Microsoft Corporation)R3 rzendpt; C:\Windows\System32\drivers\rzendpt.sys [39080 2014-04-09] (Razer Inc)R3 rzjoystk; C:\Windows\System32\drivers\rzjoystk.sys [19968 2012-10-18] (Razer USA Ltd)R3 rzjstk; C:\Windows\System32\drivers\rzjstk.sys [27816 2014-04-09] (Razer Inc)R3 rzkeypadendpt; C:\Windows\System32\drivers\rzkeypadendpt.sys [32936 2014-04-09] (Razer Inc)S3 RZMAELSTROMVADService; C:\Windows\system32\drivers\RzMaelstromVAD.sys [40696 2013-11-21] (Windows ® Win 7 DDK provider)R3 SbieDrv; C:\Program Files\Sandboxie\SbieDrv.sys [202600 2014-01-18] (Sandboxie Holdings, LLC)S3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146776 2014-01-07] (Microsoft Corporation)S0 stornvme; C:\Windows\System32\drivers\stornvme.sys [57176 2013-11-14] (Microsoft Corporation)S3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation)R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-03-24] (Microsoft Corporation)R0 Wof; C:\Windows\System32\Drivers\Wof.sys [157016 2014-03-13] (Microsoft Corporation)S3 xb1usb; C:\Windows\System32\drivers\xb1usb.sys [34016 2014-05-27] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-06-14 14:46 - 2014-06-14 14:47 - 00000513 _____ () C:\Users\Duckii\Documents\UserID.txt2014-06-14 13:32 - 2014-06-14 13:32 - 00296792 _____ () C:\WINDOWS\Minidump\061414-8890-01.dmp2014-06-13 22:00 - 2014-06-13 22:39 - 00049037 _____ () C:\Users\Duckii\Desktop\Addition.txt2014-06-13 21:59 - 2014-06-14 14:51 - 00021515 _____ () C:\Users\Duckii\Desktop\FRST.txt2014-06-13 21:57 - 2014-06-14 14:50 - 00000127 _____ () C:\Users\Duckii\Desktop\ckfiles.txt2014-06-13 21:47 - 2014-06-13 21:47 - 00468480 _____ () C:\Users\Duckii\Desktop\CKScanner.exe2014-06-13 12:58 - 2014-06-13 12:58 - 00001171 _____ () C:\Users\Duckii\Desktop\MBAM-13-06-2014.txt2014-06-13 12:40 - 2014-06-13 12:41 - 00048673 _____ () C:\Users\Duckii\Downloads\Addition.txt2014-06-13 12:39 - 2014-06-14 14:50 - 00000000 ____D () C:\FRST2014-06-13 12:39 - 2014-06-13 12:41 - 00090863 _____ () C:\Users\Duckii\Downloads\FRST.txt2014-06-13 12:38 - 2014-06-13 12:41 - 00122584 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys2014-06-13 12:38 - 2014-06-13 12:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware2014-06-13 12:38 - 2014-06-13 12:38 - 00000000 ____D () C:\ProgramData\Malwarebytes2014-06-13 12:38 - 2014-06-13 12:38 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware2014-06-13 12:38 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys2014-06-13 12:38 - 2014-05-12 07:26 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys2014-06-13 12:38 - 2014-05-12 07:25 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys2014-06-13 12:37 - 2014-06-13 12:37 - 02081792 _____ (Farbar) C:\Users\Duckii\Desktop\FRST64.exe2014-06-13 12:32 - 2014-06-13 12:37 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Duckii\Downloads\mbam-setup-2.0.2.1012 (1).exe2014-06-13 12:24 - 2014-06-13 12:25 - 02042088 _____ () C:\Users\Duckii\Downloads\FRST64.exe2014-06-12 10:57 - 2014-06-12 10:58 - 04181856 _____ (Kaspersky Lab ZAO) C:\Users\Duckii\Downloads\tdsskiller.exe2014-06-11 18:52 - 2014-06-13 04:30 - 00000000 ____D () C:\Users\Duckii\Documents\Resume2014-06-11 17:27 - 2014-06-11 17:41 - 00000000 ____D () C:\Users\Duckii\Documents\BFH.Beta2014-06-11 17:27 - 2014-06-11 17:27 - 02247960 _____ () C:\Users\Duckii\Downloads\battlelog-web-plugins_2.4.0_141.exe2014-06-11 17:27 - 2014-06-11 17:27 - 00000000 ____D () C:\Users\Duckii\AppData\Local\ESN2014-06-11 17:27 - 2014-06-11 17:27 - 00000000 ____D () C:\Program Files (x86)\Battlelog Web Plugins2014-06-11 15:27 - 2014-05-30 18:21 - 23414784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll2014-06-11 15:27 - 2014-05-30 17:45 - 02768384 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll2014-06-11 15:27 - 2014-05-30 17:28 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll2014-06-11 15:27 - 2014-05-30 17:20 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll2014-06-11 15:27 - 2014-05-30 17:18 - 17271296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll2014-06-11 15:27 - 2014-05-30 17:08 - 05782528 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll2014-06-11 15:27 - 2014-05-30 17:06 - 00452096 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll2014-06-11 15:27 - 2014-05-30 16:46 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll2014-06-11 15:27 - 2014-05-30 16:44 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll2014-06-11 15:27 - 2014-05-30 16:43 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll2014-06-11 15:27 - 2014-05-30 16:38 - 02179072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll2014-06-11 15:27 - 2014-05-30 16:35 - 00608768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe2014-06-11 15:27 - 2014-05-30 16:29 - 00631808 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll2014-06-11 15:27 - 2014-05-30 16:27 - 00592896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll2014-06-11 15:27 - 2014-05-30 16:23 - 02040832 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl2014-06-11 15:27 - 2014-05-30 16:16 - 00368128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll2014-06-11 15:27 - 2014-05-30 16:04 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll2014-06-11 15:27 - 2014-05-30 16:02 - 00242688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll2014-06-11 15:27 - 2014-05-30 15:56 - 04244992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll2014-06-11 15:27 - 2014-05-30 15:56 - 02266112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll2014-06-11 15:27 - 2014-05-30 15:54 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll2014-06-11 15:27 - 2014-05-30 15:49 - 01964544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl2014-06-11 15:27 - 2014-05-30 15:43 - 13522944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll2014-06-11 15:27 - 2014-05-30 15:40 - 11725312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll2014-06-11 15:27 - 2014-05-30 15:30 - 01398272 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll2014-06-11 15:27 - 2014-05-30 15:21 - 01790976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll2014-06-11 15:27 - 2014-05-30 15:15 - 01143296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll2014-06-11 15:27 - 2014-05-30 15:13 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll2014-06-11 15:27 - 2014-05-30 15:13 - 00704512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieUnatt.exe2014-06-11 15:24 - 2014-06-11 15:24 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieUnatt.exe2014-06-11 15:24 - 2014-06-11 15:24 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe2014-06-11 15:24 - 2014-06-11 15:24 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieetwproxystub.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwproxystub.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollectorres.dll2014-06-11 15:24 - 2014-05-19 14:31 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvcfg.exe2014-06-11 15:24 - 2014-05-19 14:21 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe2014-06-11 15:24 - 2014-05-19 13:23 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvinst.exe2014-06-11 15:24 - 2014-05-10 11:46 - 02151424 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll2014-06-11 15:24 - 2014-05-10 11:22 - 01312256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll2014-06-11 15:24 - 2014-05-09 07:06 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ks.sys2014-06-11 15:24 - 2014-05-05 12:02 - 03360256 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll2014-06-11 15:24 - 2014-05-03 15:14 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe2014-06-11 15:24 - 2014-05-03 12:21 - 00249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll2014-06-11 15:24 - 2014-05-03 12:07 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll2014-06-11 15:24 - 2014-05-03 11:41 - 00921088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll2014-06-11 15:24 - 2014-05-03 11:38 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll2014-06-11 15:24 - 2014-04-30 19:16 - 01336648 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll2014-06-11 15:24 - 2014-04-30 12:43 - 01975296 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll2014-06-11 15:24 - 2014-04-30 12:26 - 01345536 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll2014-06-11 15:24 - 2014-04-30 11:51 - 01064448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll2014-06-11 15:24 - 2014-04-30 11:47 - 01509888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll2014-06-11 15:24 - 2014-04-03 15:59 - 02518872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys2014-06-11 15:24 - 2014-04-03 15:59 - 00428888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS2014-06-11 15:23 - 2014-06-11 15:23 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll2014-06-11 15:23 - 2014-05-01 21:31 - 03048904 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe2014-06-11 15:23 - 2014-05-01 21:31 - 00055328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wpcfltr.sys2014-06-11 15:23 - 2014-05-01 15:14 - 03118080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll2014-06-11 15:23 - 2014-05-01 15:05 - 02861056 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebSync.dll2014-06-11 15:23 - 2014-05-01 14:51 - 02344448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll2014-06-11 15:23 - 2014-05-01 13:24 - 02834944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpccpl.dll2014-06-11 06:17 - 2014-06-11 06:17 - 00000850 _____ () C:\Users\Public\Desktop\Battlefield Hardline Beta.lnk2014-06-11 06:17 - 2014-06-11 06:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield Hardline Beta2014-06-10 11:57 - 2014-06-10 11:58 - 00000000 ____D () C:\Users\Duckii\Documents\Dawngate2014-06-10 04:08 - 2014-06-10 04:09 - 17009768 _____ (Electronic Arts, Inc.) C:\Users\Duckii\Downloads\OriginThinSetup.exe2014-06-10 03:35 - 2014-06-10 11:58 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\DawngateData2014-06-10 03:35 - 2014-06-10 03:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dawngate2014-06-10 03:34 - 2014-06-10 03:34 - 09269248 _____ () C:\Users\Duckii\Downloads\Dawngate_en_us.msi2014-06-08 12:46 - 2014-06-08 12:46 - 09561964 _____ () C:\Users\Duckii\Downloads\cliffhorse.zip2014-06-06 11:59 - 2014-06-06 11:59 - 00000000 __SHD () C:\Users\Duckii\AppData\Local\EmieUserList2014-06-06 11:59 - 2014-06-06 11:59 - 00000000 __SHD () C:\Users\Duckii\AppData\Local\EmieSiteList2014-06-06 11:56 - 2013-02-19 18:02 - 00024824 _____ (ASUSTeK Computer Inc.) C:\WINDOWS\system32\Drivers\IOMap64.sys2014-06-06 01:02 - 2014-06-06 01:02 - 00000000 ____D () C:\Program Files\Microsoft Xbox One Controller for Windows2014-06-06 01:01 - 2014-06-06 01:01 - 02854912 _____ () C:\Users\Duckii\Downloads\xb1usb.11059.0.140526x64.msi2014-06-05 16:30 - 2014-06-05 16:30 - 00000572 _____ () C:\Users\Public\Desktop\Unity.lnk2014-06-05 16:21 - 2014-06-05 16:21 - 00246759 _____ () C:\Users\Duckii\Downloads\ZO XY Pokemon Icons.zip2014-06-05 15:45 - 2014-06-05 16:24 - 1175723520 _____ (Unity Technologies ApS) C:\Users\Duckii\Downloads\UnitySetup-4.5.0.exe2014-06-05 15:40 - 2014-06-05 15:40 - 00000000 ____D () C:\Users\Duckii\AppData\Local\VS Revo Group2014-06-05 15:40 - 2014-06-05 15:40 - 00000000 ____D () C:\ProgramData\VS Revo Group2014-06-05 15:40 - 2014-06-05 15:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro2014-06-05 15:40 - 2014-06-05 15:40 - 00000000 ____D () C:\Program Files\VS Revo Group2014-06-05 15:40 - 2009-12-30 10:21 - 00031800 _____ (VS Revo Group) C:\WINDOWS\system32\Drivers\revoflt.sys2014-06-05 15:39 - 2014-06-05 15:40 - 10619688 _____ (VS Revo Group ) C:\Users\Duckii\Downloads\RevoUninProSetup.exe2014-06-05 03:41 - 2014-06-05 03:41 - 00257100 _____ () C:\Users\Duckii\Downloads\DaxtarsShutdownTimer_v1.0.7.zip2014-06-05 03:41 - 2014-06-05 03:41 - 00000000 ____D () C:\Users\Duckii\Documents\DaxtarsShutdownTimer_v1.0.72014-06-05 03:05 - 2014-06-05 03:06 - 00000510 _____ () C:\Users\Duckii\Downloads\Pokemon Silver.zip2014-06-05 03:03 - 2014-06-05 03:03 - 00059881 _____ () C:\Users\Duckii\Downloads\lips102.zip2014-06-05 03:00 - 2014-06-05 03:00 - 00181514 _____ () C:\Users\Duckii\Downloads\Dark Energy Beta 4.0.zip2014-06-05 02:29 - 2014-06-05 02:30 - 00000000 ____D () C:\Users\Duckii\Documents\Pokemon2014-06-05 02:22 - 2014-06-05 02:27 - 35176093 _____ () C:\Users\Duckii\Downloads\Pokemon_Survival_Island_v112.zip2014-06-05 02:21 - 2014-06-05 02:26 - 35432863 _____ () C:\Users\Duckii\Downloads\Pokemon_Survival_Island_v112b.zip2014-06-05 02:20 - 2014-06-05 02:28 - 76247481 _____ () C:\Users\Duckii\Downloads\Sage Recovery.rar2014-06-05 01:57 - 2014-06-05 02:06 - 117663109 _____ () C:\Users\Duckii\Downloads\Beta15.exe2014-06-03 16:26 - 2014-06-03 16:26 - 00039432 _____ () C:\Users\Duckii\Downloads\What the censored.txt2014-06-03 13:59 - 2014-06-03 14:00 - 44199212 _____ () C:\Users\Duckii\Downloads\Pentakill-SmiteandIgnite.zip2014-06-02 21:24 - 2014-05-30 07:07 - 01715176 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspbridge64.dll2014-06-02 21:24 - 2014-05-30 07:07 - 01291232 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspbridge.dll2014-06-02 21:12 - 2014-04-18 22:57 - 00032600 _____ (Microsoft Corporation) C:\WINDOWS\system32\ploptin.dll2014-06-02 21:12 - 2014-04-18 22:44 - 01466856 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll2014-06-02 21:12 - 2014-04-18 21:29 - 01200288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll2014-06-02 21:12 - 2014-04-18 17:44 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\energyprov.dll2014-06-02 21:12 - 2014-04-18 17:32 - 13287936 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll2014-06-02 21:12 - 2014-04-18 16:58 - 11792384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll2014-06-02 21:12 - 2014-04-18 16:32 - 00805376 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll2014-06-02 21:12 - 2014-04-18 16:21 - 01126912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll2014-06-02 21:12 - 2014-04-18 16:09 - 08652800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll2014-06-02 21:12 - 2014-04-18 15:51 - 00836608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll2014-06-02 21:12 - 2014-04-18 15:49 - 05833216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll2014-06-02 21:12 - 2014-04-14 17:20 - 00324888 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll2014-06-02 21:12 - 2014-04-14 16:01 - 00285144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll2014-06-02 21:12 - 2014-04-11 12:51 - 00250368 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll2014-06-02 21:12 - 2014-04-11 12:23 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpencom.dll2014-06-02 21:12 - 2014-04-11 11:30 - 00449536 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll2014-06-02 21:12 - 2014-04-09 19:53 - 00337240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys2014-06-02 21:12 - 2014-04-09 14:39 - 00191488 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpchttp.dll2014-06-02 21:12 - 2014-04-09 13:44 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpchttp.dll2014-06-02 21:12 - 2014-04-09 12:35 - 01411584 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll2014-06-02 21:12 - 2014-04-09 11:33 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll2014-06-02 21:12 - 2014-04-08 10:01 - 00589656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys2014-06-02 21:12 - 2014-04-07 00:34 - 00372568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys2014-06-02 21:12 - 2014-04-07 00:34 - 00275800 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys2014-06-02 21:12 - 2014-04-07 00:32 - 00125496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll2014-06-02 21:12 - 2014-04-07 00:31 - 21268952 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll2014-06-02 21:12 - 2014-04-07 00:30 - 00201920 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll2014-06-02 21:12 - 2014-04-07 00:24 - 00360792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys2014-06-02 21:12 - 2014-04-07 00:20 - 02140888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll2014-06-02 21:12 - 2014-04-07 00:20 - 01403856 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll2014-06-02 21:12 - 2014-04-07 00:20 - 01379064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll2014-06-02 21:12 - 2014-04-07 00:20 - 00881616 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll2014-06-02 21:12 - 2014-04-07 00:20 - 00765408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll2014-06-02 21:12 - 2014-04-07 00:20 - 00609448 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll2014-06-02 21:12 - 2014-04-07 00:20 - 00491744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll2014-06-02 21:12 - 2014-04-07 00:20 - 00467496 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll2014-06-02 21:12 - 2014-04-07 00:20 - 00463256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll2014-06-02 21:12 - 2014-04-07 00:20 - 00364640 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll2014-06-02 21:12 - 2014-04-07 00:20 - 00244880 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe2014-06-02 21:12 - 2014-04-07 00:20 - 00233912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll2014-06-02 21:12 - 2014-04-07 00:20 - 00028408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfpmp.exe2014-06-02 21:12 - 2014-04-06 23:23 - 00098584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll2014-06-02 21:12 - 2014-04-06 23:22 - 18755672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll2014-06-02 21:12 - 2014-04-06 23:22 - 00178184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVideoDSP.dll2014-06-02 21:12 - 2014-04-06 23:16 - 02144984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll2014-06-02 21:12 - 2014-04-06 23:16 - 01209616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll2014-06-02 21:12 - 2014-04-06 23:16 - 00707048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll2014-06-02 21:12 - 2014-04-06 23:16 - 00669856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll2014-06-02 21:12 - 2014-04-06 23:16 - 00518544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll2014-06-02 21:12 - 2014-04-06 23:16 - 00406504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll2014-06-02 21:12 - 2014-04-06 23:16 - 00387896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll2014-06-02 21:12 - 2014-04-06 23:16 - 00326024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll2014-06-02 21:12 - 2014-04-06 23:16 - 00305768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll2014-06-02 21:12 - 2014-04-06 22:10 - 04190720 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys2014-06-02 21:12 - 2014-04-06 20:58 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\srclient.dll2014-06-02 21:12 - 2014-04-06 20:51 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll2014-06-02 21:12 - 2014-04-06 20:33 - 00335872 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe2014-06-02 21:12 - 2014-04-06 20:24 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\rstrui.exe2014-06-02 21:12 - 2014-04-06 20:06 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srclient.dll2014-06-02 21:12 - 2014-04-06 19:55 - 16872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll2014-06-02 21:12 - 2014-04-06 19:54 - 12711424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll2014-06-02 21:12 - 2014-04-06 19:26 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll2014-06-02 21:12 - 2014-04-06 19:20 - 00201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll2014-06-02 21:12 - 2014-04-06 19:01 - 00834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll2014-06-02 21:12 - 2014-04-06 18:52 - 00955904 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll2014-06-02 21:12 - 2014-04-06 18:51 - 01230336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll2014-06-02 21:12 - 2014-04-06 18:37 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll2014-06-02 21:12 - 2014-04-06 18:36 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll2014-06-02 21:12 - 2014-04-06 18:05 - 01222656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll2014-06-02 21:12 - 2014-04-06 17:59 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll2014-06-02 21:12 - 2014-04-03 16:12 - 02124840 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll2014-06-02 21:12 - 2014-04-03 16:12 - 00307304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll2014-06-02 21:12 - 2014-04-03 16:12 - 00130144 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll2014-06-02 21:12 - 2014-04-03 12:03 - 00230808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll2014-06-02 21:12 - 2014-04-03 12:03 - 00111528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpapi.dll2014-06-02 21:12 - 2014-04-03 11:53 - 01797896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll2014-06-02 21:12 - 2014-04-03 10:53 - 04269056 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll2014-06-02 21:12 - 2014-04-03 10:53 - 00677376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys2014-06-02 21:12 - 2014-04-03 10:51 - 01584128 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll2014-06-02 21:12 - 2014-04-03 10:23 - 00563200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys2014-06-02 21:12 - 2014-04-03 10:23 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys2014-06-02 21:12 - 2014-04-03 10:23 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tlscsp.dll2014-06-02 21:12 - 2014-04-03 10:22 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\tlscsp.dll2014-06-02 21:12 - 2014-04-01 14:23 - 00384856 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys2014-06-02 21:12 - 2014-03-31 13:42 - 07425368 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe2014-06-02 21:12 - 2014-03-31 08:41 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8thk.dll2014-06-02 21:12 - 2014-03-31 08:01 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll2014-06-02 21:12 - 2014-03-31 07:43 - 00761856 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll2014-06-02 21:12 - 2014-03-31 06:54 - 01308160 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll2014-06-02 21:12 - 2014-03-31 06:49 - 01287168 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll2014-06-02 21:12 - 2014-03-31 06:35 - 01029120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll2014-06-02 21:12 - 2014-03-31 06:11 - 00721408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll2014-06-02 21:12 - 2014-03-31 05:47 - 00872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe2014-06-02 21:12 - 2014-03-28 23:58 - 00407016 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe2014-06-02 21:12 - 2014-03-27 14:16 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys2014-06-02 21:12 - 2014-03-27 13:36 - 00281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll2014-06-02 21:12 - 2014-03-27 12:59 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll2014-06-02 21:12 - 2014-03-27 12:48 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll2014-06-02 21:12 - 2014-03-27 12:19 - 00313344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll2014-06-02 21:12 - 2014-03-27 11:46 - 00323072 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll2014-06-02 21:12 - 2014-03-27 11:15 - 00718336 _____ (Microsoft Corporation) C:\WINDOWS\system32\swprv.dll2014-06-02 21:12 - 2014-03-27 11:10 - 01436160 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe2014-06-02 21:12 - 2014-03-25 06:58 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys2014-06-02 21:12 - 2014-03-21 12:14 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\tscfgwmi.dll2014-06-02 21:12 - 2014-03-20 11:48 - 00263424 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe2014-06-02 21:12 - 2014-03-20 08:51 - 00667648 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpprefcl.dll2014-06-02 21:12 - 2014-03-20 08:44 - 06645248 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll2014-06-02 21:12 - 2014-03-20 07:38 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpprefcl.dll2014-06-02 21:12 - 2014-03-20 07:33 - 05774848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll2014-06-02 21:12 - 2014-03-19 16:15 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll2014-06-02 21:12 - 2014-03-19 16:07 - 00443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys2014-06-02 21:12 - 2014-03-19 15:24 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll2014-06-02 21:12 - 2014-03-19 15:17 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanhlp.dll2014-06-02 21:12 - 2014-03-19 14:36 - 01057280 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll2014-06-02 21:12 - 2014-03-19 13:56 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvidcrl.dll2014-06-02 21:12 - 2014-03-19 13:45 - 00443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll2014-06-02 21:12 - 2014-03-19 13:19 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll2014-06-02 21:12 - 2014-03-19 13:07 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll2014-06-02 21:12 - 2014-03-19 13:02 - 01527296 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll2014-06-02 21:12 - 2014-03-19 13:00 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll2014-06-02 21:12 - 2014-03-19 12:51 - 00300544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanmsm.dll2014-06-02 21:12 - 2014-03-19 12:31 - 02100736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll2014-06-02 21:12 - 2014-03-19 12:18 - 02688000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll2014-06-02 21:12 - 2014-03-18 16:19 - 00077312 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys2014-06-02 21:12 - 2014-03-18 13:00 - 07173120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll2014-06-02 21:12 - 2014-03-18 12:52 - 05104640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll2014-06-02 21:12 - 2014-03-17 13:09 - 00462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll2014-06-02 21:12 - 2014-03-17 12:11 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsGdiConverter.dll2014-06-02 21:12 - 2014-03-17 11:01 - 00486912 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv2014-06-02 21:12 - 2014-03-17 10:47 - 01025024 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll2014-06-02 21:12 - 2014-03-17 10:45 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv2014-06-02 21:12 - 2014-03-14 14:26 - 00491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\GeofenceMonitorService.dll2014-06-02 21:12 - 2014-03-14 14:10 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GeofenceMonitorService.dll2014-06-02 21:12 - 2014-03-06 20:42 - 00310616 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys2014-06-02 21:11 - 2014-06-02 21:11 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll2014-06-02 20:34 - 2014-05-20 10:44 - 12688328 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys2014-06-02 13:48 - 2014-06-02 13:48 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies2014-06-02 13:47 - 2014-06-02 13:47 - 00002153 _____ () C:\Users\Public\Desktop\3D Vision Photo Viewer.lnk2014-06-02 13:47 - 2014-05-20 07:10 - 00601432 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe2014-06-02 13:44 - 2014-05-20 10:44 - 31387936 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll2014-06-02 13:44 - 2014-05-20 10:44 - 25256224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll2014-06-02 13:44 - 2014-05-20 10:44 - 24025376 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll2014-06-02 13:44 - 2014-05-20 10:44 - 17561544 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll2014-06-02 13:44 - 2014-05-20 10:44 - 17480432 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dumx.dll2014-06-02 13:44 - 2014-05-20 10:44 - 16003912 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvwgf2um.dll2014-06-02 13:44 - 2014-05-20 10:44 - 12688328 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys.old2014-06-02 13:44 - 2014-05-20 10:44 - 11644928 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll2014-06-02 13:44 - 2014-05-20 10:44 - 11599072 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll2014-06-02 13:44 - 2014-05-20 10:44 - 09735256 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll2014-06-02 13:44 - 2014-05-20 10:44 - 09697640 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll2014-06-02 13:44 - 2014-05-20 10:44 - 03141976 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll2014-06-02 13:44 - 2014-05-20 10:44 - 02953672 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll2014-06-02 13:44 - 2014-05-20 10:44 - 02785568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvenc.dll2014-06-02 13:44 - 2014-05-20 10:44 - 02412376 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvenc.dll2014-06-02 13:44 - 2014-05-20 10:44 - 00895776 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll2014-06-02 13:44 - 2014-05-20 10:44 - 00892704 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll2014-06-02 13:44 - 2014-05-20 10:44 - 00867784 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll2014-06-02 13:44 - 2014-05-20 10:44 - 00861128 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll2014-06-02 13:44 - 2014-05-20 10:44 - 00837056 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvumdshim.dll2014-06-02 13:44 - 2014-05-20 10:44 - 00492376 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll2014-06-02 13:44 - 2014-05-20 10:44 - 00416712 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll2014-06-02 13:44 - 2014-05-20 10:44 - 00382240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll2014-06-02 13:44 - 2014-05-20 10:44 - 00354016 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglshim64.dll2014-06-02 13:44 - 2014-05-20 10:44 - 00335704 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll2014-06-02 13:44 - 2014-05-20 10:44 - 00305600 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglshim32.dll2014-06-02 13:44 - 2014-05-20 10:44 - 00166568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvinitx.dll2014-06-02 13:44 - 2014-05-20 10:44 - 00146480 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvinit.dll2014-05-31 13:54 - 2014-05-31 13:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes2014-05-31 13:54 - 2014-05-31 13:54 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF692014-05-31 13:54 - 2014-05-31 13:54 - 00000000 ____D () C:\Program Files\iTunes2014-05-31 13:54 - 2014-05-31 13:54 - 00000000 ____D () C:\Program Files\iPod2014-05-29 15:28 - 2014-05-29 15:28 - 00000000 ____D () C:\Users\Duckii\Desktop\Pokemon Zeta 1.4.72014-05-29 15:19 - 2014-05-29 15:20 - 06531055 _____ () C:\Users\Duckii\Downloads\Melly's UI Mega Overhaul Updated V1.1.rar2014-05-29 15:19 - 2014-05-29 15:19 - 00062122 _____ () C:\Users\Duckii\Downloads\Party Stealth Selectors.rar2014-05-29 14:58 - 2014-05-29 15:24 - 120437037 _____ () C:\Users\Duckii\Downloads\Pokemon Zeta 1.4 (Win).zip2014-05-29 14:52 - 2014-05-29 15:51 - 1007078353 _____ () C:\Users\Duckii\Downloads\XY Animated Sprite Sharpened 125 175b.rar2014-05-29 14:11 - 2014-05-29 14:14 - 61309945 _____ () C:\Users\Duckii\Downloads\hawkthorne-win-x86.zip2014-05-28 23:10 - 2014-05-28 17:30 - 00093048 _____ (EasyAntiCheat Ltd) C:\WINDOWS\SysWOW64\EasyAntiCheat.exe2014-05-28 22:38 - 2014-05-28 22:55 - 303757610 _____ () C:\Users\Duckii\Downloads\@PUBattleRoyale.ARMA.3.CLIENT.FILES.v0.2.0.zip2014-05-28 17:43 - 2014-05-28 17:43 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\WizardWars2014-05-28 00:22 - 2014-05-28 00:24 - 00000000 ____D () C:\Users\Duckii\AppData\Local\Dxtory Software2014-05-28 00:22 - 2014-05-28 00:22 - 00000000 ____D () C:\Program Files (x86)\Dxtory Software2014-05-27 16:34 - 2014-05-20 10:44 - 01889112 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6433788.dll2014-05-27 16:34 - 2014-05-20 10:44 - 01541576 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6433788.dll2014-05-27 01:13 - 2014-05-27 01:13 - 00034016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xb1usb.sys2014-05-26 17:42 - 2014-05-26 17:44 - 49397581 _____ () C:\Users\Duckii\Downloads\1.4.7 Zeta.zip2014-05-26 10:53 - 2014-05-26 10:53 - 00000000 ____D () C:\Users\Duckii\AppData\Local\WM2014-05-26 08:36 - 2014-06-05 16:46 - 00000000 ____D () C:\Users\Duckii\AppData\Local\Arma 32014-05-26 08:36 - 2014-05-26 08:37 - 00000000 ____D () C:\Users\Duckii\Documents\Arma 32014-05-26 08:36 - 2014-05-26 08:36 - 00000000 ____D () C:\ProgramData\Bohemia Interactive2014-05-26 02:52 - 2014-05-26 02:52 - 00080384 _____ (Razer Inc) C:\WINDOWS\system32\RazerCoinstaller.dll2014-05-26 01:58 - 2014-05-26 01:58 - 00000019 _____ () C:\Users\Duckii\Downloads\CD-KEY-ARMA-3.txt2014-05-24 01:02 - 2014-05-24 01:03 - 03259749 _____ () C:\Users\Duckii\Downloads\LiveSplit_1.33.zip2014-05-24 00:56 - 2014-05-24 00:58 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\mIRC2014-05-24 00:19 - 2014-05-24 00:19 - 00000202 _____ () C:\Users\Duckii\Desktop\SpeedRunners.url2014-05-20 21:51 - 2014-05-20 21:51 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\TeamViewer2014-05-20 21:30 - 2014-05-20 21:30 - 00001194 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 9.lnk2014-05-20 21:30 - 2014-05-20 21:30 - 00000000 ____D () C:\Program Files (x86)\TeamViewer2014-05-19 21:14 - 2014-05-26 10:53 - 00000000 ____D () C:\wm2014-05-19 21:14 - 2014-05-19 21:14 - 00000000 ____D () C:\Users\Duckii\AppData\Local\lesupd2014-05-18 21:54 - 2014-05-18 21:54 - 00169778 _____ () C:\Users\Duckii\Downloads\Tamer0 Glimmer.rpl2014-05-17 21:52 - 2014-05-17 21:58 - 00000000 ____D () C:\Users\Duckii\Documents\Speccy2014-05-17 21:48 - 2014-05-17 21:51 - 05269617 _____ () C:\Users\Duckii\Downloads\spsetup126.zip2014-05-17 20:37 - 2014-05-17 20:37 - 07837272 _____ (FreeDownloadManager.ORG ) C:\Users\Duckii\Downloads\fdminst (1).exe2014-05-17 12:22 - 2014-04-01 00:42 - 00040392 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad64v.sys2014-05-17 12:22 - 2014-04-01 00:42 - 00034760 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll2014-05-16 09:47 - 2014-05-16 09:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi2014-05-16 09:47 - 2014-05-16 09:47 - 00000000 ____D () C:\Program Files (x86)\LogMeIn Hamachi2014-05-15 00:05 - 2014-03-24 10:30 - 00257880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys2014-05-15 00:05 - 2014-03-24 10:30 - 00123224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys2014-05-15 00:05 - 2014-03-24 10:27 - 00035856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys2014-05-15 00:05 - 2014-03-13 15:42 - 00308224 _____ (Microsoft Corporation) C:\WINDOWS\system32\wusa.exe2014-05-15 00:05 - 2014-03-13 14:51 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wusa.exe2014-05-15 00:04 - 2014-04-11 18:03 - 00555736 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll2014-05-15 00:04 - 2014-04-11 18:03 - 00054776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe2014-05-15 00:04 - 2014-04-11 16:25 - 00419928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll2014-05-15 00:04 - 2014-04-11 14:04 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll2014-05-15 00:04 - 2014-04-11 13:22 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll2014-05-15 00:04 - 2014-04-11 11:54 - 00201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll2014-05-15 00:04 - 2014-04-11 11:06 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe2014-05-15 00:04 - 2014-04-11 11:05 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll2014-05-15 00:04 - 2014-04-11 11:02 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe2014-05-15 00:04 - 2014-04-11 11:01 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll2014-05-15 00:04 - 2014-04-11 11:00 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll2014-05-15 00:04 - 2014-04-11 10:59 - 00666624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll2014-05-15 00:04 - 2014-04-11 10:57 - 00190976 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll2014-05-15 00:04 - 2014-04-11 10:56 - 00381440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll2014-05-15 00:04 - 2014-04-11 10:55 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll2014-05-15 00:04 - 2014-04-11 10:53 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll2014-05-15 00:04 - 2014-04-11 10:52 - 03464192 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll2014-05-15 00:04 - 2014-04-11 10:46 - 01705472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll2014-05-15 00:04 - 2014-04-11 10:36 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll2014-05-15 00:04 - 2014-04-11 10:29 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll2014-05-15 00:03 - 2014-04-09 06:46 - 00086688 _____ (Microsoft Corporation) C:\WINDOWS\system32\mrt_map.dll2014-05-15 00:03 - 2014-04-09 06:46 - 00028320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mrt100.dll2014-05-15 00:03 - 2014-04-09 02:54 - 00080032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mrt_map.dll2014-05-15 00:03 - 2014-04-09 02:54 - 00026784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mrt100.dll ==================== One Month Modified Files and Folders ======= 2014-06-14 14:51 - 2014-06-13 21:59 - 00021515 _____ () C:\Users\Duckii\Desktop\FRST.txt2014-06-14 14:51 - 2014-01-06 21:18 - 00000000 ____D () C:\Users\Duckii\AppData\Local\Temp2014-06-14 14:50 - 2014-06-13 21:57 - 00000127 _____ () C:\Users\Duckii\Desktop\ckfiles.txt2014-06-14 14:50 - 2014-06-13 12:39 - 00000000 ____D () C:\FRST2014-06-14 14:48 - 2013-10-30 22:35 - 00000000 ____D () C:\Program Files\Common Files\Adobe2014-06-14 14:48 - 2013-10-30 22:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe2014-06-14 14:48 - 2013-10-07 20:12 - 00000000 ____D () C:\Users\Duckii\AppData\Local\Battle.net2014-06-14 14:48 - 2013-08-25 00:50 - 00000000 ____D () C:\ProgramData\Adobe2014-06-14 14:48 - 2013-08-25 00:50 - 00000000 ____D () C:\Program Files (x86)\Adobe2014-06-14 14:48 - 2013-08-23 14:46 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3794150929-2800894002-4186101125-10012014-06-14 14:47 - 2014-06-14 14:46 - 00000513 _____ () C:\Users\Duckii\Documents\UserID.txt2014-06-14 14:47 - 2013-10-30 22:35 - 00000000 ____D () C:\Program Files\Adobe2014-06-14 14:33 - 2013-09-05 22:08 - 00000830 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job2014-06-14 14:02 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\system32\sru2014-06-14 13:56 - 2014-01-06 21:14 - 01770194 _____ () C:\WINDOWS\WindowsUpdate.log2014-06-14 13:54 - 2013-09-13 17:14 - 00000918 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job2014-06-14 13:38 - 2013-11-14 15:29 - 00863592 _____ () C:\WINDOWS\system32\PerfStringBackup.INI2014-06-14 13:34 - 2013-09-05 20:27 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\TS3Client2014-06-14 13:33 - 2014-05-07 11:13 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\DropboxMaster2014-06-14 13:33 - 2014-02-28 12:39 - 00000000 ____D () C:\Users\Duckii\AppData\Local\LogMeIn Hamachi2014-06-14 13:33 - 2013-09-11 12:50 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\Dropbox2014-06-14 13:33 - 2013-09-05 23:40 - 00000000 ____D () C:\ProgramData\Origin2014-06-14 13:32 - 2014-06-14 13:32 - 00296792 _____ () C:\WINDOWS\Minidump\061414-8890-01.dmp2014-06-14 13:32 - 2014-02-03 15:10 - 00000000 ____D () C:\WINDOWS\Minidump2014-06-14 13:32 - 2014-01-06 21:14 - 00000000 ____D () C:\ProgramData\NVIDIA2014-06-14 13:32 - 2013-10-21 00:40 - 616189941 _____ () C:\WINDOWS\MEMORY.DMP2014-06-14 13:32 - 2013-09-13 17:14 - 00000914 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job2014-06-14 13:32 - 2013-08-22 22:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT2014-06-13 22:39 - 2014-06-13 22:00 - 00049037 _____ () C:\Users\Duckii\Desktop\Addition.txt2014-06-13 21:47 - 2014-06-13 21:47 - 00468480 _____ () C:\Users\Duckii\Desktop\CKScanner.exe2014-06-13 17:12 - 2014-01-06 21:18 - 00000000 ____D () C:\Users\Duckii2014-06-13 16:30 - 2013-11-14 15:20 - 00406394 _____ () C:\WINDOWS\PFRO.log2014-06-13 13:52 - 2013-08-22 21:25 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM2014-06-13 12:59 - 2013-09-13 17:13 - 00000000 ____D () C:\ProgramData\AVAST Software2014-06-13 12:59 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\IME2014-06-13 12:59 - 2013-08-22 21:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI2014-06-13 12:58 - 2014-06-13 12:58 - 00001171 _____ () C:\Users\Duckii\Desktop\MBAM-13-06-2014.txt2014-06-13 12:41 - 2014-06-13 12:40 - 00048673 _____ () C:\Users\Duckii\Downloads\Addition.txt2014-06-13 12:41 - 2014-06-13 12:39 - 00090863 _____ () C:\Users\Duckii\Downloads\FRST.txt2014-06-13 12:41 - 2014-06-13 12:38 - 00122584 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys2014-06-13 12:38 - 2014-06-13 12:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware2014-06-13 12:38 - 2014-06-13 12:38 - 00000000 ____D () C:\ProgramData\Malwarebytes2014-06-13 12:38 - 2014-06-13 12:38 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware2014-06-13 12:37 - 2014-06-13 12:37 - 02081792 _____ (Farbar) C:\Users\Duckii\Desktop\FRST64.exe2014-06-13 12:37 - 2014-06-13 12:32 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Duckii\Downloads\mbam-setup-2.0.2.1012 (1).exe2014-06-13 12:36 - 2013-09-11 23:07 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\BitTorrent2014-06-13 12:25 - 2014-06-13 12:24 - 02042088 _____ () C:\Users\Duckii\Downloads\FRST64.exe2014-06-13 12:25 - 2013-08-22 01:43 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\vlc2014-06-13 11:56 - 2013-08-22 22:44 - 04956136 _____ () C:\WINDOWS\system32\FNTCACHE.DAT2014-06-13 04:31 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\WinStore2014-06-13 04:30 - 2014-06-11 18:52 - 00000000 ____D () C:\Users\Duckii\Documents\Resume2014-06-13 04:24 - 2013-09-04 11:15 - 00000000 ____D () C:\ProgramData\Microsoft Help2014-06-12 10:58 - 2014-06-12 10:57 - 04181856 _____ (Kaspersky Lab ZAO) C:\Users\Duckii\Downloads\tdsskiller.exe2014-06-12 10:57 - 2012-07-26 15:59 - 00000000 ____D () C:\WINDOWS\CbsTemp2014-06-12 00:20 - 2013-09-06 09:05 - 95414520 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe2014-06-12 00:20 - 2013-08-22 23:36 - 00000000 ___RD () C:\WINDOWS\ToastData2014-06-11 17:41 - 2014-06-11 17:27 - 00000000 ____D () C:\Users\Duckii\Documents\BFH.Beta2014-06-11 17:27 - 2014-06-11 17:27 - 02247960 _____ () C:\Users\Duckii\Downloads\battlelog-web-plugins_2.4.0_141.exe2014-06-11 17:27 - 2014-06-11 17:27 - 00000000 ____D () C:\Users\Duckii\AppData\Local\ESN2014-06-11 17:27 - 2014-06-11 17:27 - 00000000 ____D () C:\Program Files (x86)\Battlelog Web Plugins2014-06-11 15:24 - 2014-06-11 15:24 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieUnatt.exe2014-06-11 15:24 - 2014-06-11 15:24 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieUnatt.exe2014-06-11 15:24 - 2014-06-11 15:24 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe2014-06-11 15:24 - 2014-06-11 15:24 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieetwproxystub.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwproxystub.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll2014-06-11 15:24 - 2014-06-11 15:24 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollectorres.dll2014-06-11 15:23 - 2014-06-11 15:23 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll2014-06-11 06:17 - 2014-06-11 06:17 - 00000850 _____ () C:\Users\Public\Desktop\Battlefield Hardline Beta.lnk2014-06-11 06:17 - 2014-06-11 06:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield Hardline Beta2014-06-11 06:17 - 2014-04-27 03:14 - 00281872 _____ () C:\WINDOWS\SysWOW64\PnkBstrB.exe2014-06-11 06:17 - 2014-04-27 03:14 - 00281872 _____ () C:\WINDOWS\SysWOW64\PnkBstrB.ex02014-06-11 06:17 - 2014-04-27 03:14 - 00076888 _____ () C:\WINDOWS\SysWOW64\PnkBstrA.exe2014-06-11 06:16 - 2013-09-07 23:34 - 00000000 ____D () C:\ProgramData\Package Cache2014-06-11 06:16 - 2013-08-22 22:05 - 00536026 _____ () C:\WINDOWS\DirectX.log2014-06-10 11:58 - 2014-06-10 11:57 - 00000000 ____D () C:\Users\Duckii\Documents\Dawngate2014-06-10 11:58 - 2014-06-10 03:35 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\DawngateData2014-06-10 04:18 - 2014-05-05 15:50 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\Dogecoin2014-06-10 04:09 - 2014-06-10 04:08 - 17009768 _____ (Electronic Arts, Inc.) C:\Users\Duckii\Downloads\OriginThinSetup.exe2014-06-10 03:35 - 2014-06-10 03:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dawngate2014-06-10 03:34 - 2014-06-10 03:34 - 09269248 _____ () C:\Users\Duckii\Downloads\Dawngate_en_us.msi2014-06-08 12:46 - 2014-06-08 12:46 - 09561964 _____ () C:\Users\Duckii\Downloads\cliffhorse.zip2014-06-06 11:59 - 2014-06-06 11:59 - 00000000 __SHD () C:\Users\Duckii\AppData\Local\EmieUserList2014-06-06 11:59 - 2014-06-06 11:59 - 00000000 __SHD () C:\Users\Duckii\AppData\Local\EmieSiteList2014-06-06 01:02 - 2014-06-06 01:02 - 00000000 ____D () C:\Program Files\Microsoft Xbox One Controller for Windows2014-06-06 01:01 - 2014-06-06 01:01 - 02854912 _____ () C:\Users\Duckii\Downloads\xb1usb.11059.0.140526x64.msi2014-06-05 16:46 - 2014-05-26 08:36 - 00000000 ____D () C:\Users\Duckii\AppData\Local\Arma 32014-06-05 16:33 - 2013-09-11 21:16 - 00000000 ____D () C:\ProgramData\Unity2014-06-05 16:30 - 2014-06-05 16:30 - 00000572 _____ () C:\Users\Public\Desktop\Unity.lnk2014-06-05 16:30 - 2013-09-11 21:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Unity2014-06-05 16:24 - 2014-06-05 15:45 - 1175723520 _____ (Unity Technologies ApS) C:\Users\Duckii\Downloads\UnitySetup-4.5.0.exe2014-06-05 16:21 - 2014-06-05 16:21 - 00246759 _____ () C:\Users\Duckii\Downloads\ZO XY Pokemon Icons.zip2014-06-05 15:40 - 2014-06-05 15:40 - 00000000 ____D () C:\Users\Duckii\AppData\Local\VS Revo Group2014-06-05 15:40 - 2014-06-05 15:40 - 00000000 ____D () C:\ProgramData\VS Revo Group2014-06-05 15:40 - 2014-06-05 15:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro2014-06-05 15:40 - 2014-06-05 15:40 - 00000000 ____D () C:\Program Files\VS Revo Group2014-06-05 15:40 - 2014-06-05 15:39 - 10619688 _____ (VS Revo Group ) C:\Users\Duckii\Downloads\RevoUninProSetup.exe2014-06-05 03:48 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\rescache2014-06-05 03:41 - 2014-06-05 03:41 - 00257100 _____ () C:\Users\Duckii\Downloads\DaxtarsShutdownTimer_v1.0.7.zip2014-06-05 03:41 - 2014-06-05 03:41 - 00000000 ____D () C:\Users\Duckii\Documents\DaxtarsShutdownTimer_v1.0.72014-06-05 03:06 - 2014-06-05 03:05 - 00000510 _____ () C:\Users\Duckii\Downloads\Pokemon Silver.zip2014-06-05 03:04 - 2014-02-20 22:34 - 00000000 ____D () C:\Users\Duckii\Documents\ROMS2014-06-05 03:03 - 2014-06-05 03:03 - 00059881 _____ () C:\Users\Duckii\Downloads\lips102.zip2014-06-05 03:00 - 2014-06-05 03:00 - 00181514 _____ () C:\Users\Duckii\Downloads\Dark Energy Beta 4.0.zip2014-06-05 02:30 - 2014-06-05 02:29 - 00000000 ____D () C:\Users\Duckii\Documents\Pokemon2014-06-05 02:28 - 2014-06-05 02:20 - 76247481 _____ () C:\Users\Duckii\Downloads\Sage Recovery.rar2014-06-05 02:27 - 2014-06-05 02:22 - 35176093 _____ () C:\Users\Duckii\Downloads\Pokemon_Survival_Island_v112.zip2014-06-05 02:26 - 2014-06-05 02:21 - 35432863 _____ () C:\Users\Duckii\Downloads\Pokemon_Survival_Island_v112b.zip2014-06-05 02:06 - 2014-06-05 01:57 - 117663109 _____ () C:\Users\Duckii\Downloads\Beta15.exe2014-06-03 16:26 - 2014-06-03 16:26 - 00039432 _____ () C:\Users\Duckii\Downloads\What the censored.txt2014-06-03 14:00 - 2014-06-03 13:59 - 44199212 _____ () C:\Users\Duckii\Downloads\Pentakill-SmiteandIgnite.zip2014-06-02 21:24 - 2014-01-06 21:14 - 00000000 ____D () C:\Program Files\NVIDIA Corporation2014-06-02 21:24 - 2013-08-22 22:46 - 00299501 _____ () C:\WINDOWS\setupact.log2014-06-02 21:19 - 2014-01-06 21:30 - 00000000 ___RD () C:\Users\Duckii\SkyDrive2014-06-02 21:19 - 2013-08-21 22:26 - 00000000 ___RD () C:\Users\Duckii\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup2014-06-02 21:19 - 2013-08-21 22:26 - 00000000 ___RD () C:\Users\Duckii\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools2014-06-02 21:18 - 2013-08-22 23:36 - 00000000 ___RD () C:\WINDOWS\ImmersiveControlPanel2014-06-02 21:18 - 2013-08-22 21:36 - 00000000 ____D () C:\WINDOWS\system32\oobe2014-06-02 21:17 - 2013-02-28 12:09 - 00000024 _____ () C:\Users\Duckii\random.dat2014-06-02 21:13 - 2013-02-28 12:09 - 00000045 _____ () C:\Users\Duckii\jagex_cl_runescape_LIVE.dat2014-06-02 21:11 - 2014-06-02 21:11 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll2014-06-02 15:21 - 2013-10-09 22:14 - 00000045 _____ () C:\Users\Duckii\jagex_cl_oldschool_LIVE.dat2014-06-02 13:48 - 2014-06-02 13:48 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies2014-06-02 13:47 - 2014-06-02 13:47 - 00002153 _____ () C:\Users\Public\Desktop\3D Vision Photo Viewer.lnk2014-06-02 13:47 - 2014-01-06 21:14 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation2014-05-31 13:57 - 2013-12-20 12:44 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox2014-05-31 13:54 - 2014-05-31 13:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes2014-05-31 13:54 - 2014-05-31 13:54 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF692014-05-31 13:54 - 2014-05-31 13:54 - 00000000 ____D () C:\Program Files\iTunes2014-05-31 13:54 - 2014-05-31 13:54 - 00000000 ____D () C:\Program Files\iPod2014-05-31 13:13 - 2013-08-22 23:38 - 00703992 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe2014-05-31 13:13 - 2013-08-22 23:38 - 00105464 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl2014-05-30 18:21 - 2014-06-11 15:27 - 23414784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll2014-05-30 17:45 - 2014-06-11 15:27 - 02768384 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll2014-05-30 17:28 - 2014-06-11 15:27 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll2014-05-30 17:20 - 2014-06-11 15:27 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll2014-05-30 17:18 - 2014-06-11 15:27 - 17271296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll2014-05-30 17:08 - 2014-06-11 15:27 - 05782528 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll2014-05-30 17:06 - 2014-06-11 15:27 - 00452096 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll2014-05-30 16:46 - 2014-06-11 15:27 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll2014-05-30 16:44 - 2014-06-11 15:27 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll2014-05-30 16:43 - 2014-06-11 15:27 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll2014-05-30 16:38 - 2014-06-11 15:27 - 02179072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll2014-05-30 16:35 - 2014-06-11 15:27 - 00608768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe2014-05-30 16:29 - 2014-06-11 15:27 - 00631808 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll2014-05-30 16:27 - 2014-06-11 15:27 - 00592896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll2014-05-30 16:23 - 2014-06-11 15:27 - 02040832 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl2014-05-30 16:16 - 2014-06-11 15:27 - 00368128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll2014-05-30 16:04 - 2014-06-11 15:27 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll2014-05-30 16:02 - 2014-06-11 15:27 - 00242688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll2014-05-30 15:56 - 2014-06-11 15:27 - 04244992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll2014-05-30 15:56 - 2014-06-11 15:27 - 02266112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll2014-05-30 15:54 - 2014-06-11 15:27 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll2014-05-30 15:49 - 2014-06-11 15:27 - 01964544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl2014-05-30 15:43 - 2014-06-11 15:27 - 13522944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll2014-05-30 15:40 - 2014-06-11 15:27 - 11725312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll2014-05-30 15:30 - 2014-06-11 15:27 - 01398272 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll2014-05-30 15:21 - 2014-06-11 15:27 - 01790976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll2014-05-30 15:15 - 2014-06-11 15:27 - 01143296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll2014-05-30 15:13 - 2014-06-11 15:27 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll2014-05-30 15:13 - 2014-06-11 15:27 - 00704512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll2014-05-30 07:07 - 2014-06-02 21:24 - 01715176 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspbridge64.dll2014-05-30 07:07 - 2014-06-02 21:24 - 01291232 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspbridge.dll2014-05-30 07:07 - 2014-04-08 23:58 - 01279480 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll2014-05-30 07:07 - 2014-04-08 23:58 - 01122312 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll2014-05-29 23:57 - 2013-08-23 00:45 - 00380426 _____ () C:\WINDOWS\DPINST.LOG2014-05-29 15:51 - 2014-05-29 14:52 - 1007078353 _____ () C:\Users\Duckii\Downloads\XY Animated Sprite Sharpened 125 175b.rar2014-05-29 15:28 - 2014-05-29 15:28 - 00000000 ____D () C:\Users\Duckii\Desktop\Pokemon Zeta 1.4.72014-05-29 15:24 - 2014-05-29 14:58 - 120437037 _____ () C:\Users\Duckii\Downloads\Pokemon Zeta 1.4 (Win).zip2014-05-29 15:20 - 2014-05-29 15:19 - 06531055 _____ () C:\Users\Duckii\Downloads\Melly's UI Mega Overhaul Updated V1.1.rar2014-05-29 15:19 - 2014-05-29 15:19 - 00062122 _____ () C:\Users\Duckii\Downloads\Party Stealth Selectors.rar2014-05-29 14:17 - 2013-09-10 15:27 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\hawkthorne_release2014-05-29 14:16 - 2013-09-10 15:27 - 00000000 ____D () C:\Users\Duckii\Documents\hawkthorne2014-05-29 14:14 - 2014-05-29 14:11 - 61309945 _____ () C:\Users\Duckii\Downloads\hawkthorne-win-x86.zip2014-05-29 11:44 - 2013-08-23 00:45 - 00000000 ____D () C:\Program Files (x86)\Razer2014-05-28 22:55 - 2014-05-28 22:38 - 303757610 _____ () C:\Users\Duckii\Downloads\@PUBattleRoyale.ARMA.3.CLIENT.FILES.v0.2.0.zip2014-05-28 17:43 - 2014-05-28 17:43 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\WizardWars2014-05-28 17:30 - 2014-05-28 23:10 - 00093048 _____ (EasyAntiCheat Ltd) C:\WINDOWS\SysWOW64\EasyAntiCheat.exe2014-05-28 13:06 - 2013-09-11 12:51 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox2014-05-28 01:32 - 2014-01-07 11:23 - 00000000 ____D () C:\Users\Duckii\AppData\Local\Deployment2014-05-28 00:24 - 2014-05-28 00:22 - 00000000 ____D () C:\Users\Duckii\AppData\Local\Dxtory Software2014-05-28 00:22 - 2014-05-28 00:22 - 00000000 ____D () C:\Program Files (x86)\Dxtory Software2014-05-27 13:02 - 2014-05-06 12:07 - 00001796 _____ () C:\WINDOWS\Sandboxie.ini2014-05-27 01:13 - 2014-05-27 01:13 - 00034016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xb1usb.sys2014-05-26 17:44 - 2014-05-26 17:42 - 49397581 _____ () C:\Users\Duckii\Downloads\1.4.7 Zeta.zip2014-05-26 10:53 - 2014-05-26 10:53 - 00000000 ____D () C:\Users\Duckii\AppData\Local\WM2014-05-26 10:53 - 2014-05-19 21:14 - 00000000 ____D () C:\wm2014-05-26 08:37 - 2014-05-26 08:36 - 00000000 ____D () C:\Users\Duckii\Documents\Arma 32014-05-26 08:36 - 2014-05-26 08:36 - 00000000 ____D () C:\ProgramData\Bohemia Interactive2014-05-26 02:52 - 2014-05-26 02:52 - 00080384 _____ (Razer Inc) C:\WINDOWS\system32\RazerCoinstaller.dll2014-05-26 01:58 - 2014-05-26 01:58 - 00000019 _____ () C:\Users\Duckii\Downloads\CD-KEY-ARMA-3.txt2014-05-24 14:41 - 2014-04-28 11:29 - 00000000 ____D () C:\Users\Duckii\Documents\Live Split2014-05-24 01:03 - 2014-05-24 01:02 - 03259749 _____ () C:\Users\Duckii\Downloads\LiveSplit_1.33.zip2014-05-24 00:58 - 2014-05-24 00:56 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\mIRC2014-05-24 00:19 - 2014-05-24 00:19 - 00000202 _____ () C:\Users\Duckii\Desktop\SpeedRunners.url2014-05-24 00:14 - 2014-04-30 01:07 - 00000000 ____D () C:\Program Files (x86)\OBS2014-05-23 21:39 - 2014-04-02 23:27 - 00000000 ____D () C:\Users\Duckii\Documents\SavedGames2014-05-20 21:51 - 2014-05-20 21:51 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\TeamViewer2014-05-20 21:30 - 2014-05-20 21:30 - 00001194 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 9.lnk2014-05-20 21:30 - 2014-05-20 21:30 - 00000000 ____D () C:\Program Files (x86)\TeamViewer2014-05-20 10:44 - 2014-06-02 20:34 - 12688328 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys2014-05-20 10:44 - 2014-06-02 13:44 - 31387936 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll2014-05-20 10:44 - 2014-06-02 13:44 - 25256224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll2014-05-20 10:44 - 2014-06-02 13:44 - 24025376 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll2014-05-20 10:44 - 2014-06-02 13:44 - 17561544 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll2014-05-20 10:44 - 2014-06-02 13:44 - 17480432 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dumx.dll2014-05-20 10:44 - 2014-06-02 13:44 - 16003912 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvwgf2um.dll2014-05-20 10:44 - 2014-06-02 13:44 - 12688328 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys.old2014-05-20 10:44 - 2014-06-02 13:44 - 11644928 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll2014-05-20 10:44 - 2014-06-02 13:44 - 11599072 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll2014-05-20 10:44 - 2014-06-02 13:44 - 09735256 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll2014-05-20 10:44 - 2014-06-02 13:44 - 09697640 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll2014-05-20 10:44 - 2014-06-02 13:44 - 03141976 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll2014-05-20 10:44 - 2014-06-02 13:44 - 02953672 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll2014-05-20 10:44 - 2014-06-02 13:44 - 02785568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvenc.dll2014-05-20 10:44 - 2014-06-02 13:44 - 02412376 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvenc.dll2014-05-20 10:44 - 2014-06-02 13:44 - 00895776 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll2014-05-20 10:44 - 2014-06-02 13:44 - 00892704 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll2014-05-20 10:44 - 2014-06-02 13:44 - 00867784 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll2014-05-20 10:44 - 2014-06-02 13:44 - 00861128 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll2014-05-20 10:44 - 2014-06-02 13:44 - 00837056 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvumdshim.dll2014-05-20 10:44 - 2014-06-02 13:44 - 00492376 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll2014-05-20 10:44 - 2014-06-02 13:44 - 00416712 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll2014-05-20 10:44 - 2014-06-02 13:44 - 00382240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll2014-05-20 10:44 - 2014-06-02 13:44 - 00354016 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglshim64.dll2014-05-20 10:44 - 2014-06-02 13:44 - 00335704 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll2014-05-20 10:44 - 2014-06-02 13:44 - 00305600 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglshim32.dll2014-05-20 10:44 - 2014-06-02 13:44 - 00166568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvinitx.dll2014-05-20 10:44 - 2014-06-02 13:44 - 00146480 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvinit.dll2014-05-20 10:44 - 2014-05-27 16:34 - 01889112 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6433788.dll2014-05-20 10:44 - 2014-05-27 16:34 - 01541576 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6433788.dll2014-05-20 10:44 - 2014-04-08 23:57 - 00061216 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll2014-05-20 10:44 - 2014-04-08 23:57 - 00052056 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll2014-05-20 10:44 - 2014-04-08 23:55 - 18531568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvwgf2umx.dll2014-05-20 10:44 - 2014-04-08 23:55 - 14434704 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvd3dum.dll2014-05-20 10:44 - 2014-04-08 23:55 - 03109248 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll2014-05-20 10:44 - 2014-04-08 23:55 - 02730208 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll2014-05-20 10:44 - 2014-04-08 23:55 - 00952952 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvumdshimx.dll2014-05-20 10:44 - 2014-04-08 23:55 - 00026069 _____ () C:\WINDOWS\system32\nvinfo.pb2014-05-20 09:25 - 2014-04-08 23:57 - 06769096 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll2014-05-20 09:25 - 2014-04-08 23:57 - 03514144 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll2014-05-20 09:25 - 2014-04-08 23:57 - 00927520 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe2014-05-20 09:25 - 2014-04-08 23:57 - 00387528 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll2014-05-20 09:25 - 2014-04-08 23:57 - 00062808 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll2014-05-20 07:10 - 2014-06-02 13:47 - 00601432 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe2014-05-19 21:14 - 2014-05-19 21:14 - 00000000 ____D () C:\Users\Duckii\AppData\Local\lesupd2014-05-19 14:31 - 2014-06-11 15:24 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvcfg.exe2014-05-19 14:21 - 2014-06-11 15:24 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe2014-05-19 13:23 - 2014-06-11 15:24 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvinst.exe2014-05-18 21:54 - 2014-05-18 21:54 - 00169778 _____ () C:\Users\Duckii\Downloads\Tamer0 Glimmer.rpl2014-05-17 21:58 - 2014-05-17 21:52 - 00000000 ____D () C:\Users\Duckii\Documents\Speccy2014-05-17 21:51 - 2014-05-17 21:48 - 05269617 _____ () C:\Users\Duckii\Downloads\spsetup126.zip2014-05-17 20:37 - 2014-05-17 20:37 - 07837272 _____ (FreeDownloadManager.ORG ) C:\Users\Duckii\Downloads\fdminst (1).exe2014-05-17 14:13 - 2013-09-23 18:07 - 00000000 ____D () C:\Users\Duckii\Documents\4A Games2014-05-17 12:24 - 2013-12-03 16:51 - 00000000 ____D () C:\Users\Duckii\AppData\Local\NVIDIA Corporation2014-05-17 10:10 - 2013-09-23 17:47 - 00000000 ____D () C:\Users\Duckii\AppData\Local\4A Games2014-05-16 14:09 - 2014-04-30 01:08 - 00000000 ____D () C:\Users\Duckii\AppData\Roaming\OBS2014-05-16 09:47 - 2014-05-16 09:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi2014-05-16 09:47 - 2014-05-16 09:47 - 00000000 ____D () C:\Program Files (x86)\LogMeIn Hamachi2014-05-16 00:29 - 2013-08-22 23:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools2014-05-16 00:29 - 2013-08-22 23:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools2014-05-16 00:29 - 2013-08-22 23:36 - 00000000 ____D () C:\Program Files\Windows Defender2014-05-16 00:29 - 2013-08-22 23:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender2014-05-15 12:02 - 2013-09-06 09:05 - 00000000 ____D () C:\WINDOWS\system32\MRT2014-05-15 12:02 - 2013-08-22 23:36 - 00000000 ____D () C:\WINDOWS\system32\SecureBootUpdates2014-05-15 07:49 - 2014-04-08 23:57 - 03774821 _____ () C:\WINDOWS\system32\nvcoproc.bin Files to move or delete:====================C:\Users\Duckii\jagex_cl_oldschool_LIVE.datC:\Users\Duckii\jagex_cl_runescape_LIVE.datC:\Users\Duckii\jagex_cl_runescape_LIVE1.datC:\Users\Duckii\jagex_cl_runescape_LIVE_BETA.datC:\Users\Duckii\random.dat Some content of TEMP:====================C:\Users\Duckii\AppData\Local\Temp\AskMrRobot-Setup-1.3.14.0.exeC:\Users\Duckii\AppData\Local\Temp\AskMrRobot-Setup-1.3.16.0.exeC:\Users\Duckii\AppData\Local\Temp\AskMrRobot-Setup-1.3.17.0.exeC:\Users\Duckii\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp1gkcai.dllC:\Users\Duckii\AppData\Local\Temp\Foxit Reader Updater.exeC:\Users\Duckii\AppData\Local\Temp\Foxit Updater.exeC:\Users\Duckii\AppData\Local\Temp\jre-7u51-windows-i586-iftw.exeC:\Users\Duckii\AppData\Local\Temp\jre-7u55-windows-i586-iftw.exeC:\Users\Duckii\AppData\Local\Temp\mirc732.exeC:\Users\Duckii\AppData\Local\Temp\nv3DVStreaming.dllC:\Users\Duckii\AppData\Local\Temp\nvSCPAPI.dllC:\Users\Duckii\AppData\Local\Temp\nvSCPAPI64.dllC:\Users\Duckii\AppData\Local\Temp\nvStereoApiI.dllC:\Users\Duckii\AppData\Local\Temp\nvStereoApiI64.dllC:\Users\Duckii\AppData\Local\Temp\nvStInst.exeC:\Users\Duckii\AppData\Local\Temp\SRLDetectionLibrary8188974946217751875.dllC:\Users\Duckii\AppData\Local\Temp\uninstall.exeC:\Users\Duckii\AppData\Local\Temp\vlc-2.1.3-win32.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => File is digitally signedC:\Windows\System32\wininit.exe => File is digitally signedC:\Windows\explorer.exe => File is digitally signedC:\Windows\SysWOW64\explorer.exe => File is digitally signedC:\Windows\System32\svchost.exe => File is digitally signedC:\Windows\SysWOW64\svchost.exe => File is digitally signedC:\Windows\System32\services.exe => File is digitally signedC:\Windows\System32\User32.dll => File is digitally signedC:\Windows\SysWOW64\User32.dll => File is digitally signedC:\Windows\System32\userinit.exe => File is digitally signedC:\Windows\SysWOW64\userinit.exe => File is digitally signedC:\Windows\System32\rpcss.dll => File is digitally signedC:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-06-13 17:12 ==================== End Of Log ============================ Link to post Share on other sites More sharing options...
PrivateDuckii Posted June 14, 2014 Author ID:841488 Share Posted June 14, 2014 Additional scan result of Farbar Recovery Scan Tool (x64) Version: 12-06-2014 02Ran by Duckii at 2014-06-14 14:51:37Running from C:\Users\Duckii\DesktopBoot Mode: Normal========================================================== ==================== Security Center ======================== AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (HKLM\...\UDK-331b4708-3c58-4340-8326-a03119b80910) (Version: - RuneStorm7-Zip 9.20 (HKLM-x32\...\7-Zip) (Version: - )7-Zip 9.22 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0922-000001000000}) (Version: 9.22.00.0 - Igor Pavlov)AaaaaAAaaaAAAaaAAAAaAAAAA!!! for the Awesome (HKLM-x32\...\Steam App 15560) (Version: - Dejobaan Games, LLC)Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 13.0.0.111 - Adobe Systems Incorporated)Adobe AIR (x32 Version: 13.0.0.111 - Adobe Systems Incorporated) HiddenAdobe Community Help (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.0.0.400 - Adobe Systems Incorporated)Adobe Community Help (x32 Version: 3.0.0 - Adobe Systems Incorporated) HiddenAdobe Flash Player 13 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 13.0.0.214 - Adobe Systems Incorporated)Adobe Media Player (HKLM-x32\...\com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.8 - Adobe Systems Incorporated)Adobe Media Player (x32 Version: 1.8 - Adobe Systems Incorporated) HiddenAdobe Shockwave Player 12.0 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.0.9.149 - Adobe Systems, Inc.)AI War: Fleet Command (HKLM-x32\...\Steam App 40400) (Version: - Arcen Games, LLC)AMD Wireless Display v3.0 (Version: 1.0.0.14 - Advanced Micro Devices, Inc.) HiddenAmrAddonInstall (Version: 1.2.8.0 - Microsoft) HiddenApple Application Support (HKLM-x32\...\{D9DAD0FF-495A-472B-9F10-BAE430A26682}) (Version: 3.0.3 - Apple Inc.)Apple Mobile Device Support (HKLM\...\{787136D2-F0F8-4625-AA3F-72D7795AC842}) (Version: 7.1.1.3 - Apple Inc.)Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)Arma 3 (HKLM-x32\...\Steam App 107410) (Version: - Bohemia Interactive)Ask Mr. Robot (HKLM-x32\...\{86e39a0a-85dd-4d6f-b1cd-46d8208bd2e9}) (Version: 1.3.17.0 - Ask Mr. Robot)Ask Mr. Robot (Version: 1.3.17.0 - Ask Mr. Robot) HiddenASUS GPU Tweak (HKLM-x32\...\InstallShield_{532F6E8A-AF97-41C3-915F-39F718EC07D1}) (Version: 2.4.2.4 - ASUSTek COMPUTER INC.)ASUS GPU Tweak (x32 Version: 2.4.2.4 - ASUSTek COMPUTER INC.) HiddenASUS Product Register Program (HKLM-x32\...\{9D29D67C-315D-46A1-A3A9-3CAF24871578}) (Version: 1.0.022 - ASUSTek Computer Inc.)Audiosurf 2 (HKLM-x32\...\Steam App 235800) (Version: - Dylan Fitterer)Axis Game Factory (HKLM-x32\...\Steam App 253370) (Version: - Axis Game Factory)Bang Bang Racing (HKLM-x32\...\Steam App 207020) (Version: - Digital Reality Software & Playbox)Bastion (HKLM-x32\...\Steam App 107100) (Version: - Supergiant Games)Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)Battlefield™ Hardline Beta (HKLM-x32\...\{599276A7-F45D-40B1-A0B6-CF132A1CAD49}) (Version: 1.0.0.3 - Electronic Arts)Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.4.0 - EA Digital Illusions CE AB)BeamNG-Techdemo-0.3 (remove only) (HKCU\...\BeamNG-Techdemo-0.3) (Version: - )BIT.TRIP Presents... Runner2: Future Legend of Rhythm Alien (HKLM-x32\...\Steam App 218060) (Version: - Gaijin Games)Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)Call of Duty: Black Ops II - Multiplayer (HKLM-x32\...\Steam App 202990) (Version: - )Call of Duty: Black Ops II - Zombies (HKLM-x32\...\Steam App 212910) (Version: - )Counter-Strike: Source (HKLM-x32\...\Steam App 240) (Version: - Valve)Curse Client (HKCU\...\101a9f93b8f0bb6f) (Version: 5.1.1.792 - Curse)DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.47.1.0337 - Disc Soft Ltd)Dawngate (HKLM-x32\...\{1330926C-251C-414E-A681-F8CEF84899BC}) (Version: 182.23.92.0 - Electronic Arts, Inc.)DayZ (HKLM-x32\...\Steam App 221100) (Version: - Bohemia Interactive)Dead Rising 2 (x32 Version: 1.0.0002.130 - Capcom) HiddenDiablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment)Dogecoin (HKCU\...\Dogecoin) (Version: 1.6.0.0 - Dogecoin)Dolphin (HKLM-x32\...\Dolphin) (Version: 4.0.1 - Dolphin Development Team)Dropbox (HKCU\...\Dropbox) (Version: 2.8.2 - Dropbox, Inc.)Dungeon Defenders (HKLM-x32\...\Steam App 65800) (Version: - Trendy Entertainment)Fallout 3 - Game of the Year Edition (HKLM-x32\...\Steam App 22370) (Version: - Bethesda Game Studios)Fallout: New Vegas (HKLM-x32\...\Steam App 22380) (Version: - Obsidian Entertainment)ffdshow v1.1.3800 [2011-03-28] (HKLM-x32\...\ffdshow_is1) (Version: 1.1.3800.0 - )Floating Point (HKLM-x32\...\Steam App 302380) (Version: - Suspicious Developments)Foxit Cloud (HKLM-x32\...\{41914D8B-9D6E-4764-A1F9-BC43FB6782C1}_is1) (Version: 1.5.127.515 - Foxit Corporation)Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 6.1.4.217 - Foxit Corporation)Fraps (remove only) (HKLM-x32\...\Fraps) (Version: - )FTL: Faster Than Light (HKLM-x32\...\Steam App 212680) (Version: - Subset Games)Goat Simulator (HKLM-x32\...\Steam App 265930) (Version: - Coffee Stain Studios)Google Chrome (HKLM-x32\...\Google Chrome) (Version: 35.0.1916.153 - Google Inc.)Google Earth Plug-in (HKLM-x32\...\{4AB54F11-2F8C-11E3-B09F-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)Google Update Helper (x32 Version: 1.3.24.7 - Google Inc.) HiddenHearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment)HOARD (HKLM-x32\...\Steam App 63000) (Version: - Big Sandwich Games)iTunes (HKLM\...\{5A68A656-979F-4168-8795-E2E368AA4DC2}) (Version: 11.2.2.3 - Apple Inc.)Jagged Alliance: Crossfire (HKLM-x32\...\Steam App 205810) (Version: - Coreplay GmbH)Java 7 Update 55 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86417055FF}) (Version: 7.0.550 - Oracle)Java 7 Update 55 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217055FF}) (Version: 7.0.550 - Oracle)Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) HiddenJust Cause 2 (HKLM-x32\...\Steam App 8190) (Version: - Avalanche)Just Cause 2: Multiplayer Mod (HKLM-x32\...\Steam App 259080) (Version: - JC2-MP Team)Loadout (HKLM-x32\...\Steam App 208090) (Version: - Edge of Reality)LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.193 - LogMeIn, Inc.)LogMeIn Hamachi (x32 Version: 2.2.0.193 - LogMeIn, Inc.) HiddenMagicka: Wizard Wars (HKLM-x32\...\Steam App 202090) (Version: - Paradox North)Malwarebytes Anti-Malware version 2.0.2.1012 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation)Metro 2033 (HKLM-x32\...\Steam App 43110) (Version: - 4A Games)Metro: Last Light (HKLM-x32\...\Steam App 43160) (Version: - 4A Games)Microsoft Chart Controls for Microsoft .NET Framework 3.5 (HKLM-x32\...\{41785C66-90F2-40CE-8CB5-1C94BFC97280}) (Version: 3.5.0.0 - Microsoft Corporation)Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}) (Version: 3.5.92.0 - Microsoft Corporation)Microsoft Games for Windows Marketplace (HKLM-x32\...\{67F42018-F647-4D3C-BE62-F8CB4FE2FCD5}) (Version: 3.5.67.0 - Microsoft Corporation)Microsoft Office Office 32-bit Components 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) HiddenMicrosoft Office Proof (English) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) HiddenMicrosoft Office Proof (French) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) HiddenMicrosoft Office Proof (Spanish) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) HiddenMicrosoft Office Proofing (English) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) HiddenMicrosoft Office Shared 32-bit MUI (English) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) HiddenMicrosoft Office Shared MUI (English) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) HiddenMicrosoft Office Shared Setup Metadata MUI (English) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) HiddenMicrosoft Office Word 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) HiddenMicrosoft Office Word MUI (English) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) HiddenMicrosoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 (HKLM-x32\...\{8e70e4e1-06d7-470b-9f74-a51bef21088e}) (Version: 11.0.51106.1 - Microsoft Corporation)Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) HiddenMicrosoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) HiddenMicrosoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) HiddenMicrosoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) HiddenMicrosoft Word 2010 (HKLM\...\Office14.WORD) (Version: 14.0.4763.1000 - Microsoft Corporation)Microsoft Xbox One Controller for Windows (HKLM\...\{DC2CB48C-FD96-48EB-A36A-7D995BB587EB}) (Version: 1.0.2 - Microsoft Corporation)Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation)Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)Microsoft_VC80_ATL_x86 (x32 Version: 8.0.50727.4053 - Adobe) HiddenMicrosoft_VC80_CRT_x86 (x32 Version: 8.0.50727.4053 - Adobe) HiddenMicrosoft_VC80_CRT_x86_x64 (Version: 8.0.50727.4053 - Adobe) HiddenMicrosoft_VC80_MFC_x86 (x32 Version: 8.0.50727.4053 - Adobe) HiddenMicrosoft_VC80_MFC_x86_x64 (Version: 8.0.50727.4053 - Adobe) HiddenMicrosoft_VC80_MFCLOC_x86 (x32 Version: 8.0.50727.4053 - Adobe) HiddenMicrosoft_VC80_MFCLOC_x86_x64 (Version: 80.50727.4053 - Adobe) HiddenMicrosoft_VC90_ATL_x86 (x32 Version: 1.00.0000 - Adobe) HiddenMicrosoft_VC90_ATL_x86_x64 (Version: 1.00.0000 - Adobe) HiddenMicrosoft_VC90_CRT_x86 (x32 Version: 1.00.0000 - Adobe) HiddenMicrosoft_VC90_CRT_x86_x64 (Version: 1.00.0000 - Adobe) HiddenMicrosoft_VC90_MFC_x86 (x32 Version: 1.00.0000 - Adobe) HiddenMicrosoft_VC90_MFC_x86_x64 (Version: 1.00.0000 - Adobe) HiddenMini Ninjas (HKLM-x32\...\Steam App 35000) (Version: - IO Interactive)MotioninJoy Gamepad tool 0.7.1001 (HKLM\...\{330DAC67-5B62-452A-A0E4-6B4A5923940F}_is1) (Version: 0.7.1001 - www.motioninjoy.com)Mozilla Firefox 29.0.1 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 29.0.1 (x86 en-US)) (Version: 29.0.1 - Mozilla)Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 26.0 - Mozilla)Muffin Knight (HKLM-x32\...\Steam App 263700) (Version: - Angry Mob Games)My Game Long Name (HKLM\...\UDK-58278108-eac1-4154-8341-0efab68c5861) (Version: - Epic Games, Inc.)neonRings (HKLM-x32\...\neonRings_is1) (Version: - )Next Car Game (HKLM-x32\...\Steam App 228380) (Version: - )Next Car Game Technology Sneak Peek 2.0 (HKLM-x32\...\Next Car Game Technology Sneak Peek) (Version: - Bugbear Entertainment)Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.47.3 - Black Tree Gaming)No More Room in Hell (HKLM-x32\...\Steam App 224260) (Version: - No More Room in Hell Team)NVIDIA 3D Vision Controller Driver 337.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 337.88 - NVIDIA Corporation)NVIDIA 3D Vision Driver 337.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 337.88 - NVIDIA Corporation)NVIDIA Control Panel 337.88 (Version: 337.88 - NVIDIA Corporation) HiddenNVIDIA GeForce Experience 2.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1 - NVIDIA Corporation)NVIDIA Graphics Driver 337.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 337.88 - NVIDIA Corporation)NVIDIA HD Audio Driver 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation)NVIDIA Install Application (Version: 2.1002.157.1165 - NVIDIA Corporation) HiddenNVIDIA LED Visualizer 1.0 (Version: 1.0 - NVIDIA Corporation) HiddenNVIDIA Network Service (Version: 1.0 - NVIDIA Corporation) HiddenNVIDIA PhysX (x32 Version: 9.13.1220 - NVIDIA Corporation) HiddenNVIDIA PhysX System Software 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation)NVIDIA ShadowPlay 14.6.22 (Version: 14.6.22 - NVIDIA Corporation) HiddenNVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.12.6514 - NVIDIA Corporation) HiddenNVIDIA Update 14.6.22 (Version: 14.6.22 - NVIDIA Corporation) HiddenNVIDIA Update Core (Version: 14.6.22 - NVIDIA Corporation) HiddenNVIDIA Virtual Audio 1.2.23 (Version: 1.2.23 - NVIDIA Corporation) HiddenOne Finger Death Punch (HKLM-x32\...\Steam App 264200) (Version: - Silver Dollar Games)Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version: - )OpenAL (HKLM-x32\...\OpenAL) (Version: - )Origin (HKLM-x32\...\Origin) (Version: 9.4.7.2799 - Electronic Arts, Inc.)Path of Exile (HKLM-x32\...\Steam App 238960) (Version: - Grinding Gear Games)Pid (HKLM-x32\...\Steam App 218740) (Version: - Might and Delight)Pinball FX2 (HKLM-x32\...\Steam App 226980) (Version: - Zen Studios)Prison Architect (HKLM-x32\...\Steam App 233450) (Version: - Introversion Software)PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.)PxMergeModule (x32 Version: 1.00.0000 - Your Company Name) HiddenQuickTime (HKLM-x32\...\{B67BAFBA-4C9F-48FA-9496-933E3B255044}) (Version: 7.74.80.86 - Apple Inc.)Race The Sun (HKLM-x32\...\Steam App 253030) (Version: - Flippfly LLC)Razer Nostromo (HKLM-x32\...\{2397C30A-9A6C-4DDA-81CE-07C7A8C38E45}) (Version: 2.05.02 - Razer USA Ltd.)Razer Nostromo Firmware Updater (HKLM-x32\...\{49C5BD36-F5B9-4E6A-9DC1-04818B9D55E3}) (Version: 1.02.03 - Razer USA Ltd.)Razer Synapse 2.0 (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 1.18.02 - Razer Inc.)Razor2: Hidden Skies (HKLM-x32\...\Steam App 34920) (Version: - Invent4 Entertainment)Revo Uninstaller Pro 3.0.8 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 3.0.8 - VS Revo Group, Ltd.)RuneScape Launcher 1.2.3 (HKLM-x32\...\{FAE99C85-0732-4C58-9C6B-10B5B12FA2E9}) (Version: 1.2.3 - Jagex Ltd)Saints Row IV, âåðñèÿ 1.0.0.0 (HKLM-x32\...\Saints Row IV_is1) (Version: 1.0.0.0 - )Sandboxie 4.08 (64-bit) (HKLM\...\Sandboxie) (Version: 4.08 - Sandboxie Holdings, LLC)SHIELD Streaming (Version: 2.1.214 - NVIDIA Corporation) HiddenSid Meier's Civilization V (HKLM-x32\...\Steam App 8930) (Version: - 2K Games, Inc.)SkyDrift (HKLM-x32\...\Steam App 91100) (Version: - Digital Reality)Source SDK (HKLM-x32\...\Steam App 211) (Version: - Valve)SpeedRunners (HKLM-x32\...\Steam App 207140) (Version: - DoubleDutch Games)Star Wars - Battlefront II (HKLM-x32\...\Steam App 6060) (Version: - Pandemic Studios)StarCraft II (HKLM-x32\...\StarCraft II) (Version: - Blizzard Entertainment)State of Decay (HKLM-x32\...\Steam App 241540) (Version: - Undead Labs)Super Meat Boy (HKLM-x32\...\Steam App 40800) (Version: - Team Meat)swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) HiddenSystem Requirements Lab CYRI (HKLM-x32\...\{F3FCB08B-E752-444D-86A0-0634A4F3B23D}) (Version: 6.0.8.0 - Husdawg, LLC)Tank Operations: European Campaign (HKLM-x32\...\Steam App 258240) (Version: - Linked Dimensions)TeamSpeak 3 Client (HKLM-x32\...\TeamSpeak 3 Client) (Version: 3.0.14 - TeamSpeak Systems GmbH)TeamViewer 9 (HKLM-x32\...\TeamViewer 9) (Version: 9.0.28223 - TeamViewer)TechPowerUp GPU-Z (HKLM-x32\...\TechPowerUp GPU-Z) (Version: - TechPowerUp)Terraria (HKLM-x32\...\Steam App 105600) (Version: - Re-Logic)The Ship (HKLM-x32\...\Steam App 2400) (Version: - Outerlight Ltd.)Titanfall™ (HKLM-x32\...\{347EE0C3-0690-48F6-A231-53853C2A80D6}) (Version: 1.0.3.6 - Electronic Arts)TrackMania² Stadium (HKLM-x32\...\Steam App 232910) (Version: - Nadeo)Trials Fusion (HKLM-x32\...\Steam App 245490) (Version: - RedLynx, in collaboration with Ubisoft Shanghai, Ubisoft Kiev)Unity (HKLM-x32\...\Unity) (Version: 4.5.0f6 - Unity Technologies ApS)Unity Web Player (HKCU\...\UnityWebPlayer) (Version: 4.5.0f6 - Unity Technologies ApS)Unreal Development Kit: 2012-07 (HKLM\...\UDK-bef5aeb5-bf25-4772-ad6c-da674c446f88) (Version: - Epic Games, Inc.)Uplay (HKLM-x32\...\Uplay) (Version: 4.3 - Ubisoft)USB GAMEPAD (HKLM-x32\...\{FEC7CD2E-2BB5-40C3-9592-078F64677E6C}) (Version: 1.00.0000 - GASIA)Ventrilo Client for Windows x64 (HKLM\...\{EEB3F6BB-318D-4CE5-989F-8191FCBFB578}) (Version: 3.0.8.0 - Flagship Industries, Inc.)Viscera Cleanup Detail (HKLM-x32\...\Steam App 246900) (Version: - RuneStorm)Viscera Cleanup Detail: Shadow WarriorViscera Cleanup Detail: Shadow Warrior (HKLM-x32\...\Steam App 255520) (Version: - RuneStorm)VLC media player 2.1.3 (HKLM-x32\...\VLC media player) (Version: 2.1.3 - VideoLAN)Warframe (HKLM-x32\...\Steam App 230410) (Version: - Digital Extremes)Warhammer 40,000: Dawn of War – Dark Crusade (HKLM-x32\...\Steam App 4580) (Version: - Relic Entertainment)Warhammer 40,000: Dawn of War - Game of the Year Edition (HKLM-x32\...\Steam App 4570) (Version: - Relic Entertainment)Warhammer 40,000: Dawn of War – Winter Assault (HKLM-x32\...\Steam App 9310) (Version: - Relic Entertainment)WildStar (HKLM-x32\...\WildStar) (Version: - NCSOFT)Worms Revolution (HKLM-x32\...\Steam App 200170) (Version: - Team17 Digital Ltd.)WoW UI Designer (HKLM-x32\...\{CD37B8FD-303B-401D-8F2B-D2272E2B5679}) (Version: 1.1.110 - SSC) ==================== Restore Points ========================= 09-06-2014 19:35:06 Installed Dawngate10-06-2014 22:16:01 Installed DirectX12-06-2014 02:54:42 Windows Modules Installer12-06-2014 02:55:04 Windows Modules Installer12-06-2014 02:55:32 Windows Modules Installer12-06-2014 02:55:53 Windows Modules Installer12-06-2014 02:56:09 Windows Modules Installer12-06-2014 02:56:29 Windows Modules Installer12-06-2014 02:56:47 Windows Modules Installer12-06-2014 02:57:03 Windows Modules Installer13-06-2014 04:24:19 avast! antivirus system restore point ==================== Hosts content: ========================== 2012-07-26 13:26 - 2014-06-14 14:46 - 00000826 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTaskTask: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsListTask: {10873861-3C6B-439E-8EA6-7410FA0B7790} - System32\Tasks\Microsoft\Windows\SysResetLogSuccess => Rundll32.exe ResetEng.dll,RjvLogSuccessEntryPointTask: {2085BF56-520D-4951-B7C0-DF34AF90CC6A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTaskTask: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulateTask: {30805796-986D-4C2B-8FC1-9E79AD330B32} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2014-06-12] (Microsoft Corporation)Task: {32698A53-7DB0-428D-8D0E-5BA98138AFA9} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation)Task: {3726BC18-4D67-48BF-887B-0A64A641FC8E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-09-13] (Google Inc.)Task: {37414156-C3C3-448B-8BEA-DECF0A373F9F} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start With Network => Sc.exe start wuauservTask: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [2013-08-22] (Microsoft Corporation)Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalanceTask: {49E70A84-02C5-47D7-B4F4-8692F8B21C77} - System32\Tasks\Microsoft\Windows\DiskCleanup\SilentCleanup => C:\Windows\system32\cleanmgr.exe [2014-02-22] (Microsoft Corporation)Task: {5BB34DD9-F645-4FC9-AB76-DA216AB84E71} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-ValidationTask: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play CleanupTask: {6DB62D5C-B970-4CC7-B275-242C9C9A9E38} - System32\Tasks\ASUS\ASUS Product Register Service => C:\Program Files (x86)\ASUS\APRP\aprp.exe [2013-06-21] (ASUSTek Computer Inc.)Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance TaskTask: {73B1B253-CE67-4501-AE1A-377DD1D68B65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTaskTask: {76D6C62C-EFEB-48C3-BCE8-BC219D5F996B} - System32\Tasks\Microsoft\Windows\DiskFootprint\DiagnosticsTask: {77F1D869-6E65-4079-A2A0-E2023408EF97} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryStateTask: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance TaskTask: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTaskTask: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance WorkTask: {A262D1B3-BDD9-4B8A-8054-148184CDFBF4} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-ManagementTask: {AE7D6768-183C-4CCA-B0BF-8AABFB1CA8BD} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-14] (Adobe Systems Incorporated)Task: {B559AC20-1451-4DAF-A973-E15389E01247} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-09-13] (Google Inc.)Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTaskTask: {D88FEC9E-A82A-46F9-87E2-B6B97B301C1A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensingTask: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon SynchronizationTask: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRETask: {E8168B46-EF4E-4D07-AB8D-25211ECB5224} - System32\Tasks\AdobeAAMUpdater-1.0-Duckii-PC-Duckii => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06] (Adobe Systems Incorporated)Task: {EAAF3446-CCFD-40E3-B017-F58ED630E176} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyUploadTask: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exeTask: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exeTask: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2014-04-08 23:57 - 2014-05-20 09:25 - 00116568 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll2012-01-17 11:24 - 2012-01-17 11:24 - 00055296 _____ () C:\Windows\SysWOW64\ASGT.exe2014-04-27 03:14 - 2014-06-11 06:17 - 00076888 _____ () C:\WINDOWS\SysWOW64\PnkBstrA.exe2014-02-03 18:55 - 2014-02-03 18:55 - 00792576 _____ () C:\Program Files\AskMrRobot\AmrTray.exe2014-05-26 10:53 - 2014-05-26 10:53 - 05892096 _____ () C:\wm\wm.exe2014-06-13 13:00 - 2014-06-13 13:00 - 00395264 _____ () C:\wm\64\wincpu.exe2014-06-13 13:00 - 2014-06-13 13:00 - 00216576 _____ () C:\wm\64\libcurl-4.dll2014-06-13 13:00 - 2014-06-13 13:00 - 00095744 _____ () C:\wm\64\zlib1.dll2012-09-15 12:17 - 2011-12-24 15:36 - 01294336 _____ () D:\Program Files\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe2012-09-15 12:17 - 2014-06-05 20:36 - 05431800 _____ () D:\Program Files\Riot Games\League of Legends\RADS\projects\lol_launcher\releases\0.0.0.209\deploy\LoLLauncher.exe2013-07-11 08:28 - 2013-07-11 08:28 - 00074752 _____ () D:\Program Files\Riot Games\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.94\deploy\LolClient.exe2014-06-13 21:47 - 2014-06-13 21:47 - 00468480 _____ () C:\Users\Duckii\Desktop\CKScanner.exe2014-02-06 00:52 - 2014-02-06 00:52 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll2014-02-06 00:52 - 2014-02-06 00:52 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll2013-06-20 11:01 - 2013-06-20 11:01 - 00258048 _____ () C:\Program Files (x86)\ASUS\GPU Tweak\Vender.dll2013-05-14 15:11 - 2013-05-14 15:11 - 00049152 _____ () C:\Program Files (x86)\ASUS\GPU Tweak\Exeio.dll2014-05-22 13:56 - 2014-04-30 08:08 - 01135104 _____ () F:\Steam\libavcodec-55.dll2014-05-22 13:56 - 2014-04-30 08:08 - 00404992 _____ () F:\Steam\libavformat-55.dll2014-05-22 13:56 - 2014-04-30 08:08 - 00340992 _____ () F:\Steam\libavresample-1.dll2014-05-22 13:56 - 2014-04-30 08:08 - 00471552 _____ () F:\Steam\libavutil-53.dll2014-05-22 13:56 - 2014-05-17 09:36 - 00756224 _____ () F:\Steam\SDL2.dll2014-05-30 11:43 - 2014-05-30 01:37 - 02139840 _____ () F:\Steam\video.dll2014-05-22 13:56 - 2014-04-29 08:37 - 00519168 _____ () F:\Steam\libswscale-2.dll2014-05-30 11:43 - 2014-05-30 01:36 - 01116864 _____ () F:\Steam\bin\chromehtml.DLL2014-05-22 13:56 - 2014-05-02 07:35 - 20628160 _____ () F:\Steam\bin\libcef.dll2013-09-05 21:16 - 2013-06-15 07:49 - 01100800 _____ () F:\Steam\bin\avcodec-53.dll2013-09-05 21:16 - 2013-06-15 07:49 - 00124416 _____ () F:\Steam\bin\avutil-51.dll2013-09-05 21:16 - 2013-06-15 07:49 - 00192000 _____ () F:\Steam\bin\avformat-53.dll2014-06-11 02:44 - 2014-06-11 02:44 - 26065408 _____ () D:\Program Files\Blizzard\Battle.net\Battle.net.4710\libcef.dll2014-06-11 02:44 - 2014-06-11 02:44 - 00739840 _____ () D:\Program Files\Blizzard\Battle.net\Battle.net.4710\libglesv2.dll2014-06-11 02:44 - 2014-06-11 02:44 - 00130048 _____ () D:\Program Files\Blizzard\Battle.net\Battle.net.4710\libegl.dll2014-02-15 01:24 - 2014-04-25 11:53 - 00962560 _____ () D:\Origin\platforms\qwindows.dll2014-02-15 01:24 - 2014-04-25 11:52 - 00024064 _____ () D:\Origin\imageformats\qgif.dll2014-02-15 01:24 - 2014-04-25 11:52 - 00025088 _____ () D:\Origin\imageformats\qico.dll2014-02-15 01:24 - 2014-04-25 11:52 - 00217088 _____ () D:\Origin\imageformats\qjpeg.dll2014-02-15 01:24 - 2014-04-25 11:52 - 00261632 _____ () D:\Origin\imageformats\qmng.dll2014-02-15 01:24 - 2014-04-25 11:52 - 00019968 _____ () D:\Origin\imageformats\qtga.dll2014-02-15 01:24 - 2014-04-25 11:52 - 00302592 _____ () D:\Origin\imageformats\qtiff.dll2014-02-15 01:24 - 2014-04-25 11:52 - 00018944 _____ () D:\Origin\imageformats\qwbmp.dll2014-02-15 01:25 - 2014-04-25 11:53 - 00993280 _____ () D:\Origin\twitchsdk_32_release.dll2014-02-15 01:24 - 2014-04-25 11:53 - 00394810 _____ () D:\Origin\libmp3lame-ttv.dll2014-02-15 01:25 - 2014-04-25 11:53 - 00113171 _____ () D:\Origin\swresample-ttv-0.dll2014-02-15 01:24 - 2014-04-25 11:53 - 00246332 _____ () D:\Origin\avutil-ttv-51.dll2014-06-14 13:33 - 2014-06-14 13:33 - 00043008 _____ () c:\users\duckii\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp1gkcai.dll2013-08-24 03:01 - 2013-08-24 03:01 - 25100288 _____ () C:\Users\Duckii\AppData\Roaming\Dropbox\bin\libcef.dll2014-05-26 01:03 - 2014-05-14 07:40 - 00716616 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\libglesv2.dll2014-05-26 01:03 - 2014-05-14 07:40 - 00126280 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\libegl.dll2014-05-26 01:03 - 2014-05-14 07:40 - 04217672 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\pdf.dll2014-05-26 01:03 - 2014-05-14 07:40 - 00414536 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\ppGoogleNaClPluginChrome.dll2014-05-26 01:03 - 2014-05-14 07:40 - 01732424 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\ffmpegsumo.dll2014-03-28 00:46 - 2014-03-28 00:46 - 00148480 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\quazip.dll2014-03-28 00:46 - 2014-03-28 00:46 - 00864768 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\platforms\qwindows.dll2014-03-28 00:46 - 2014-03-28 00:46 - 00677376 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\sqldrivers\qsqlite.dll2013-08-06 15:19 - 2014-03-28 00:46 - 00092104 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\soundbackends\directsound_win32.dll2013-08-06 15:19 - 2014-03-28 00:46 - 00105416 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\soundbackends\windowsaudiosession_win32.dll2014-03-28 00:46 - 2014-03-28 00:46 - 00025600 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\imageformats\qgif.dll2014-03-28 00:46 - 2014-03-28 00:46 - 00242688 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\imageformats\qjpeg.dll2013-08-06 15:19 - 2014-03-28 00:46 - 00117704 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\plugins\appscanner_plugin.dll2013-08-06 15:19 - 2014-03-28 00:46 - 00477128 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\plugins\clientquery_plugin.dll2013-09-12 13:09 - 2014-03-28 00:46 - 00483784 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\plugins\teamspeak_control_plugin.dll2014-03-28 00:46 - 2014-03-28 00:46 - 00123904 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\accessible\qtaccessiblewidgets.dll2013-09-06 09:55 - 2014-06-05 20:36 - 01531896 _____ () D:\Program Files\Riot Games\League of Legends\RADS\projects\lol_launcher\releases\0.0.0.209\deploy\RiotLauncher.dll2014-05-26 01:03 - 2014-05-14 07:40 - 13695816 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.114\PepperFlash\pepflashplayer.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\Users\Duckii\SkyDrive:ms-properties ==================== Safe Mode (whitelisted) =================== HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service" ==================== EXE Association (whitelisted) ============= ==================== MSCONFIG/TASK MANAGER disabled items ========= HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"HKCU\...\StartupApproved\StartupFolder: => "CurseClientStartup.ccip"HKCU\...\StartupApproved\Run: => "DAEMON Tools Lite"HKCU\...\StartupApproved\Run: => "DS3 Tool"HKCU\...\StartupApproved\Run: => "SandboxieControl"HKCU\...\StartupApproved\Run: => "lesupd" ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors:==================Error: (06/14/2014 01:38:05 PM) (Source: ESENT) (EventID: 454) (User: )Description: svchost (5016) Instance: Database recovery/restore failed with unexpected error -501. Error: (06/14/2014 01:38:05 PM) (Source: ESENT) (EventID: 465) (User: )Description: svchost (5016) Instance: Corruption was detected during soft recovery in logfile C:\ProgramData\Microsoft\Windows\AppRepository\edb.log. The failing checksum record is located at position END. Data not matching the log-file fill pattern first appeared in sector 96 (0x00000060). This logfile has been damaged and is unusable. Error: (06/14/2014 01:38:05 PM) (Source: ESENT) (EventID: 477) (User: )Description: svchost (5016) Instance: The log range read from the file "C:\ProgramData\Microsoft\Windows\AppRepository\edb.log" at offset 393216 (0x0000000000060000) for 4096 (0x00001000) bytes failed verification due to a range checksum mismatch. The expected checksum was 152893690764419688 (0x21f30006e696268) and the actual checksum was 409171780582 (0x5f4489e3e6). The read operation will fail with error -501 (0xfffffe0b). If this condition persists then please restore the logfile from a previous backup. Error: (06/14/2014 01:38:05 PM) (Source: ESENT) (EventID: 465) (User: )Description: svchost (5016) Instance: Corruption was detected during soft recovery in logfile C:\ProgramData\Microsoft\Windows\AppRepository\edb.log. The failing checksum record is located at position END. Data not matching the log-file fill pattern first appeared in sector 96 (0x00000060). This logfile has been damaged and is unusable. Error: (06/14/2014 01:38:05 PM) (Source: ESENT) (EventID: 477) (User: )Description: svchost (5016) Instance: The log range read from the file "C:\ProgramData\Microsoft\Windows\AppRepository\edb.log" at offset 393216 (0x0000000000060000) for 4096 (0x00001000) bytes failed verification due to a range checksum mismatch. The expected checksum was 152893690764419688 (0x21f30006e696268) and the actual checksum was 409171780582 (0x5f4489e3e6). The read operation will fail with error -501 (0xfffffe0b). If this condition persists then please restore the logfile from a previous backup. Error: (06/14/2014 01:38:05 PM) (Source: ESENT) (EventID: 454) (User: )Description: svchost (5016) Instance: Database recovery/restore failed with unexpected error -501. Error: (06/14/2014 01:38:05 PM) (Source: ESENT) (EventID: 465) (User: )Description: svchost (5016) Instance: Corruption was detected during soft recovery in logfile C:\ProgramData\Microsoft\Windows\AppRepository\edb.log. The failing checksum record is located at position END. Data not matching the log-file fill pattern first appeared in sector 96 (0x00000060). This logfile has been damaged and is unusable. Error: (06/14/2014 01:38:05 PM) (Source: ESENT) (EventID: 477) (User: )Description: svchost (5016) Instance: The log range read from the file "C:\ProgramData\Microsoft\Windows\AppRepository\edb.log" at offset 393216 (0x0000000000060000) for 4096 (0x00001000) bytes failed verification due to a range checksum mismatch. The expected checksum was 152893690764419688 (0x21f30006e696268) and the actual checksum was 409171780582 (0x5f4489e3e6). The read operation will fail with error -501 (0xfffffe0b). If this condition persists then please restore the logfile from a previous backup. Error: (06/14/2014 01:38:05 PM) (Source: ESENT) (EventID: 465) (User: )Description: svchost (5016) Instance: Corruption was detected during soft recovery in logfile C:\ProgramData\Microsoft\Windows\AppRepository\edb.log. The failing checksum record is located at position END. Data not matching the log-file fill pattern first appeared in sector 96 (0x00000060). This logfile has been damaged and is unusable. Error: (06/14/2014 01:38:05 PM) (Source: ESENT) (EventID: 477) (User: )Description: svchost (5016) Instance: The log range read from the file "C:\ProgramData\Microsoft\Windows\AppRepository\edb.log" at offset 393216 (0x0000000000060000) for 4096 (0x00001000) bytes failed verification due to a range checksum mismatch. The expected checksum was 152893690764419688 (0x21f30006e696268) and the actual checksum was 409171780582 (0x5f4489e3e6). The read operation will fail with error -501 (0xfffffe0b). If this condition persists then please restore the logfile from a previous backup. System errors:=============Error: (06/14/2014 02:41:53 PM) (Source: DCOM) (EventID: 10010) (User: Duckii-PC)Description: {1B1F472E-3221-4826-97DB-2C2324D389AE} Error: (06/14/2014 01:32:45 PM) (Source: BugCheck) (EventID: 1001) (User: )Description: 0x00000133 (0x0000000000000000, 0x0000000000000501, 0x0000000000000500, 0x0000000000000000)C:\WINDOWS\MEMORY.DMP061414-8890-01 Error: (06/14/2014 01:32:45 PM) (Source: EventLog) (EventID: 6008) (User: )Description: The previous system shutdown at 11:42:44 PM on 6/13/2014 was unexpected. Error: (06/13/2014 09:48:39 PM) (Source: DCOM) (EventID: 10010) (User: Duckii-PC)Description: {1B1F472E-3221-4826-97DB-2C2324D389AE} Error: (06/13/2014 04:30:51 PM) (Source: EventLog) (EventID: 6008) (User: )Description: The previous system shutdown at 4:19:46 PM on 6/13/2014 was unexpected. Error: (06/13/2014 01:32:42 PM) (Source: DCOM) (EventID: 10010) (User: Duckii-PC)Description: {1B1F472E-3221-4826-97DB-2C2324D389AE} Error: (06/13/2014 00:25:11 PM) (Source: DCOM) (EventID: 10010) (User: Duckii-PC)Description: {1B1F472E-3221-4826-97DB-2C2324D389AE} Error: (06/12/2014 04:23:17 PM) (Source: DCOM) (EventID: 10010) (User: Duckii-PC)Description: {1B1F472E-3221-4826-97DB-2C2324D389AE} Error: (06/11/2014 06:27:37 PM) (Source: DCOM) (EventID: 10010) (User: Duckii-PC)Description: {1B1F472E-3221-4826-97DB-2C2324D389AE} Error: (06/11/2014 00:43:03 PM) (Source: DCOM) (EventID: 10010) (User: Duckii-PC)Description: {1B1F472E-3221-4826-97DB-2C2324D389AE} Microsoft Office Sessions:=========================Error: (06/14/2014 01:38:05 PM) (Source: ESENT) (EventID: 454) (User: )Description: svchost5016Instance: -501 Error: (06/14/2014 01:38:05 PM) (Source: ESENT) (EventID: 465) (User: )Description: svchost5016Instance: C:\ProgramData\Microsoft\Windows\AppRepository\edb.logEND96 (0x00000060) Error: (06/14/2014 01:38:05 PM) (Source: ESENT) (EventID: 477) (User: )Description: svchost5016Instance: C:\ProgramData\Microsoft\Windows\AppRepository\edb.log393216 (0x0000000000060000)4096 (0x00001000)-501 (0xfffffe0b)152893690764419688 (0x21f30006e696268)409171780582 (0x5f4489e3e6) Error: (06/14/2014 01:38:05 PM) (Source: ESENT) (EventID: 465) (User: )Description: svchost5016Instance: C:\ProgramData\Microsoft\Windows\AppRepository\edb.logEND96 (0x00000060) Error: (06/14/2014 01:38:05 PM) (Source: ESENT) (EventID: 477) (User: )Description: svchost5016Instance: C:\ProgramData\Microsoft\Windows\AppRepository\edb.log393216 (0x0000000000060000)4096 (0x00001000)-501 (0xfffffe0b)152893690764419688 (0x21f30006e696268)409171780582 (0x5f4489e3e6) Error: (06/14/2014 01:38:05 PM) (Source: ESENT) (EventID: 454) (User: )Description: svchost5016Instance: -501 Error: (06/14/2014 01:38:05 PM) (Source: ESENT) (EventID: 465) (User: )Description: svchost5016Instance: C:\ProgramData\Microsoft\Windows\AppRepository\edb.logEND96 (0x00000060) Error: (06/14/2014 01:38:05 PM) (Source: ESENT) (EventID: 477) (User: )Description: svchost5016Instance: C:\ProgramData\Microsoft\Windows\AppRepository\edb.log393216 (0x0000000000060000)4096 (0x00001000)-501 (0xfffffe0b)152893690764419688 (0x21f30006e696268)409171780582 (0x5f4489e3e6) Error: (06/14/2014 01:38:05 PM) (Source: ESENT) (EventID: 465) (User: )Description: svchost5016Instance: C:\ProgramData\Microsoft\Windows\AppRepository\edb.logEND96 (0x00000060) Error: (06/14/2014 01:38:05 PM) (Source: ESENT) (EventID: 477) (User: )Description: svchost5016Instance: C:\ProgramData\Microsoft\Windows\AppRepository\edb.log393216 (0x0000000000060000)4096 (0x00001000)-501 (0xfffffe0b)152893690764419688 (0x21f30006e696268)409171780582 (0x5f4489e3e6) CodeIntegrity Errors:=================================== Date: 2013-11-12 15:53:49.731 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2013-11-12 15:53:41.834 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2013-11-10 19:03:09.089 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2013-11-10 19:03:01.959 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2013-11-05 23:22:53.695 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2013-11-05 23:22:44.772 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2013-11-03 20:26:36.715 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2013-11-03 20:26:28.334 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2013-10-31 22:28:51.228 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2013-10-31 22:28:34.676 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Memory info =========================== Percentage of memory in use: 21%Total physical RAM: 16382.05 MBAvailable physical RAM: 12830.86 MBTotal Pagefile: 32766.05 MBAvailable Pagefile: 28718.73 MBTotal Virtual: 131072 MBAvailable Virtual: 131071.84 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:111.79 GB) (Free:27.72 GB) NTFS ==>[Drive with boot components (obtained from BCD)]Drive d: (Local Disk) (Fixed) (Total:931.51 GB) (Free:110.83 GB) NTFSDrive e: (System Reserved) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS ==>[system with boot components (obtained from reading drive)]Drive f: (Steam) (Fixed) (Total:232.79 GB) (Free:15.65 GB) NTFS ==================== MBR & Partition Table ================== ========================================================Disk: 0 (MBR Code: Windows 7 or 8) (Size: 112 GB) (Disk ID: 85213EDB)Partition 1: (Active) - (Size=112 GB) - (Type=07 NTFS) ========================================================Disk: 1 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: 0EB1357E)Partition 1: (Not Active) - (Size=932 GB) - (Type=07 NTFS) ========================================================Disk: 2 (MBR Code: Windows 7 or 8) (Size: 233 GB) (Disk ID: 05A1E326)Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)Partition 2: (Not Active) - (Size=233 GB) - (Type=07 NTFS) ==================== End Of Log ============================ Link to post Share on other sites More sharing options...
PrivateDuckii Posted June 14, 2014 Author ID:841489 Share Posted June 14, 2014 And the ck scan. CKScanner 2.4 - Additional Security Risks - These are not necessarily badscanner sequence 3.RP.11.IEAASA ----- EOF ----- Link to post Share on other sites More sharing options...
kevinf80 Posted June 14, 2014 ID:841498 Share Posted June 14, 2014 Thanks for the new logs, we continue please: Download attached fixlist.txt file and save it to the Desktop, or the folder you saved FRST into.NOTE. It's important that both FRST and fixlist.txt are in the same location or the fix will not work. Run FRST and press the Fix button just once and wait.The tool will make a log on the Desktop (Fixlog.txt) or the folder it was ran from. Please post it to your reply. Next, Open Malwarebytes 2.0, run a Threat Scan On the Dashboard, click the 'Update Now >>' linkAfter the update completes, click the 'Scan Now >>' button.Or, on the Dashboard, click the Scan Now >> button. If an update is available, click the Update Now button.A Threat Scan will begin.When the scan is complete, if there have been detections, click Apply Actions to allow MBAM to clean what was detected.In most cases, a restart will be required.Wait for the prompt to restart the computer to appear, then click on Yes. Post log: After the restart once you are back at your desktop, open MBAM once more.Click on the History tab > Application Logs.Double click on the scan log which shows the Date and time of the scan just performed.Click 'Copy to Clipboard'Paste the contents of the clipboard into your reply. Next, Download AdwCleaner by Xplode onto your Desktop. Double click on Adwcleaner.exe to run the tool. Click on Scan Once the scan is done, click on the Clean button. You will get a prompt asking to close all programs. Click OK. Click OK again to reboot your computer. A text file will open after the restart. Please post the content of that logfile in your reply. You can also find the logfile at C:\AdwCleaner[sn].txt. Where n in the scan reference number Next, Please download Junkware Removal Tool to your desktop.Shut down your protection software now to avoid potential conflicts.Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".The tool will open and start scanning your system.Please be patient as this can take a while to complete depending on your system's specifications.On completion, a log (JRT.txt) is saved to your desktop and will automatically open.Post the contents of JRT.txt into your next message. Let me see those logs, also give an update on any remaining issues or concerns.... Kevin fixlist.txt Link to post Share on other sites More sharing options...
PrivateDuckii Posted June 15, 2014 Author ID:841927 Share Posted June 15, 2014 Fixlog.txt as requested. Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 12-06-2014 02Ran by Duckii at 2014-06-15 16:21:31 Run:1Running from C:\Users\Duckii\DesktopBoot Mode: Normal============================================== Content of fixlist:*****************StartHKU\S-1-5-21-3794150929-2800894002-4186101125-1001\...\Run: [lesupd] => C:\wm\lesupd.exeC:\wm\lesupd.exeHKU\S-1-5-21-3794150929-2800894002-4186101125-1001\...\Run: [wm] => C:\wm\wm.exe [5892096 2014-05-26] ()C:\wm\wm.exeToolbar: HKLM - No Name - {ae07101b-46d4-4a98-af68-0333ea26e113} - No FileToolbar: HKLM - No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No FileToolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No FileToolbar: HKLM-x32 - No Name - {ae07101b-46d4-4a98-af68-0333ea26e113} - No File2014-05-19 21:14 - 2014-05-26 10:53 - 00000000 ____D () C:\wm2014-05-19 21:14 - 2014-05-19 21:14 - 00000000 ____D () C:\Users\Duckii\AppData\Local\lesupd014-05-26 10:53 - 2014-05-26 10:53 - 00000000 ____D () C:\Users\Duckii\AppData\Local\WMC:\Users\Duckii\jagex_cl_oldschool_LIVE.datC:\Users\Duckii\jagex_cl_runescape_LIVE.datC:\Users\Duckii\jagex_cl_runescape_LIVE1.datC:\Users\Duckii\jagex_cl_runescape_LIVE_BETA.datC:\Users\Duckii\random.datC:\Users\Duckii\AppData\Local\Temp\AskMrRobot-Setup-1.3.14.0.exeC:\Users\Duckii\AppData\Local\Temp\AskMrRobot-Setup-1.3.16.0.exeC:\Users\Duckii\AppData\Local\Temp\AskMrRobot-Setup-1.3.17.0.exeC:\Users\Duckii\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp1gkcai.dllC:\Users\Duckii\AppData\Local\Temp\Foxit Reader Updater.exeC:\Users\Duckii\AppData\Local\Temp\Foxit Updater.exeC:\Users\Duckii\AppData\Local\Temp\jre-7u51-windows-i586-iftw.exeC:\Users\Duckii\AppData\Local\Temp\jre-7u55-windows-i586-iftw.exeC:\Users\Duckii\AppData\Local\Temp\mirc732.exeC:\Users\Duckii\AppData\Local\Temp\nv3DVStreaming.dllC:\Users\Duckii\AppData\Local\Temp\nvSCPAPI.dllC:\Users\Duckii\AppData\Local\Temp\nvSCPAPI64.dllC:\Users\Duckii\AppData\Local\Temp\nvStereoApiI.dllC:\Users\Duckii\AppData\Local\Temp\nvStereoApiI64.dllC:\Users\Duckii\AppData\Local\Temp\nvStInst.exeC:\Users\Duckii\AppData\Local\Temp\SRLDetectionLibrary8188974946217751875.dllC:\Users\Duckii\AppData\Local\Temp\uninstall.exeC:\Users\Duckii\AppData\Local\Temp\vlc-2.1.3-win32.exeAlternateDataStreams: C:\Users\Duckii\SkyDrive:ms-propertiesEnd***************** HKU\S-1-5-21-3794150929-2800894002-4186101125-1001\Software\Microsoft\Windows\CurrentVersion\Run\\lesupd => value deleted successfully."C:\wm\lesupd.exe" => File/Directory not found.HKU\S-1-5-21-3794150929-2800894002-4186101125-1001\Software\Microsoft\Windows\CurrentVersion\Run\\wm => value deleted successfully.C:\wm\wm.exe => Moved successfully.HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{ae07101b-46d4-4a98-af68-0333ea26e113} => value deleted successfully.'HKCR\CLSID\{ae07101b-46d4-4a98-af68-0333ea26e113}' => Key deleted successfully.HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} => value deleted successfully.'HKCR\CLSID\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}'=> Key not found.HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} => value deleted successfully.'HKCR\CLSID\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}'=> Key not found.HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\\{ae07101b-46d4-4a98-af68-0333ea26e113} => value deleted successfully.'HKCR\Wow6432Node\CLSID\{ae07101b-46d4-4a98-af68-0333ea26e113}' => Key deleted successfully. "C:\wm" directory move: C:\wm\nv\cudart32_55.dll => Moved successfully.C:\wm\nv\pthreadVC2.dll => Moved successfully.C:\wm\nv\winNvidia.exe => Moved successfully.C:\wm\nv\winNvidia.vbs => Moved successfully.C:\wm\amd\ckolivasGeForce GTX 760glg2tc4032w256l4.bin => Moved successfully.C:\wm\amd\libcurl.dll => Moved successfully.C:\wm\amd\libeay32.dll => Moved successfully.C:\wm\amd\libidn-11.dll => Moved successfully.C:\wm\amd\libpdcurses.dll => Moved successfully.C:\wm\amd\pthreadGC2.dll => Moved successfully.C:\wm\amd\ssleay32.dll => Moved successfully.C:\wm\amd\winAMD.exe => Moved successfully.C:\wm\amd\winAMD.vbs => Moved successfully.C:\wm\amd\zlib1.dll => Moved successfully.C:\wm\amd\kernel\alexkarnew.cl => Moved successfully.C:\wm\amd\kernel\alexkarold.cl => Moved successfully.C:\wm\amd\kernel\ckolivas.cl => Moved successfully.C:\wm\amd\kernel\psw.cl => Moved successfully.C:\wm\amd\kernel\zuikkis.cl => Moved successfully.C:\wm\64\libcurl-4.dll => Moved successfully.C:\wm\64\libwinpthread-1.dll => Moved successfully.C:\wm\64\wincpu.exe => Moved successfully.C:\wm\64\wincpu.vbs => Moved successfully.C:\wm\64\wincpuidle.vbs => Moved successfully.C:\wm\64\zlib1.dll => Moved successfully.Could not move "C:\wm" directory. => Scheduled to move on reboot. C:\Users\Duckii\AppData\Local\lesupd => Moved successfully.C:\Users\Duckii\jagex_cl_oldschool_LIVE.dat => Moved successfully.C:\Users\Duckii\jagex_cl_runescape_LIVE.dat => Moved successfully.C:\Users\Duckii\jagex_cl_runescape_LIVE1.dat => Moved successfully.C:\Users\Duckii\jagex_cl_runescape_LIVE_BETA.dat => Moved successfully.C:\Users\Duckii\random.dat => Moved successfully.C:\Users\Duckii\AppData\Local\Temp\AskMrRobot-Setup-1.3.14.0.exe => Moved successfully.C:\Users\Duckii\AppData\Local\Temp\AskMrRobot-Setup-1.3.16.0.exe => Moved successfully.C:\Users\Duckii\AppData\Local\Temp\AskMrRobot-Setup-1.3.17.0.exe => Moved successfully."C:\Users\Duckii\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp1gkcai.dll" => File/Directory not found.C:\Users\Duckii\AppData\Local\Temp\Foxit Reader Updater.exe => Moved successfully.C:\Users\Duckii\AppData\Local\Temp\Foxit Updater.exe => Moved successfully.C:\Users\Duckii\AppData\Local\Temp\jre-7u51-windows-i586-iftw.exe => Moved successfully.C:\Users\Duckii\AppData\Local\Temp\jre-7u55-windows-i586-iftw.exe => Moved successfully.C:\Users\Duckii\AppData\Local\Temp\mirc732.exe => Moved successfully.C:\Users\Duckii\AppData\Local\Temp\nv3DVStreaming.dll => Moved successfully.C:\Users\Duckii\AppData\Local\Temp\nvSCPAPI.dll => Moved successfully.C:\Users\Duckii\AppData\Local\Temp\nvSCPAPI64.dll => Moved successfully.C:\Users\Duckii\AppData\Local\Temp\nvStereoApiI.dll => Moved successfully.C:\Users\Duckii\AppData\Local\Temp\nvStereoApiI64.dll => Moved successfully.C:\Users\Duckii\AppData\Local\Temp\nvStInst.exe => Moved successfully.C:\Users\Duckii\AppData\Local\Temp\SRLDetectionLibrary8188974946217751875.dll => Moved successfully.C:\Users\Duckii\AppData\Local\Temp\uninstall.exe => Moved successfully.C:\Users\Duckii\AppData\Local\Temp\vlc-2.1.3-win32.exe => Moved successfully."C:\Users\Duckii\SkyDrive" => ":ms-properties" ADS not found. => Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2014-06-15 16:22:54)<= C:\wm => Is moved successfully. ==== End of Fixlog ==== Link to post Share on other sites
Recommended Posts