"Win32/Bundled.Toolbar.Google.D" looks like a nasty virus. ESET Online Scanner found and deleted it but any recommendations on how to fix it for sure?
Here is what FarBar found:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 06-05-2015 01
Ran by alec_2 at 2015-05-08 19:05:45
Running from C:\Users\alec_2\AppData\Local\Microsoft\Windows\INetCache\IE\LGJ2APEU
Boot Mode: Safe Mode (with Networking)
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-812805949-1783070821-1753766748-500 - Administrator - Disabled)
Alec (S-1-5-21-812805949-1783070821-1753766748-1001 - Administrator - Enabled) => C:\Users\Alec
alec_2 (S-1-5-21-812805949-1783070821-1753766748-1003 - Administrator - Enabled) => C:\Users\alec_2
Guest (S-1-5-21-812805949-1783070821-1753766748-501 - Limited - Enabled)
HomeGroupUser$ (S-1-5-21-812805949-1783070821-1753766748-1005 - Limited - Enabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Adobe Flash Player 17 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 17.0.0.169 - Adobe Systems Incorporated)
AMD Catalyst Install Manager (HKLM\...\{F2A7CE36-57BF-5C86-952D-90DBF3746D82}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
Avant Browser (remove only) (HKLM-x32\...\AvantBrowser) (Version: 12.5.0.0 - Avant Force)
Canon CanoScan Toolbox 5.0 (HKLM-x32\...\CanoScan Toolbox 5.0) (Version: - )
CanoScan LiDE 600F (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_CNQ4802) (Version: - )
Catalyst Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD)
CCleaner (HKLM\...\CCleaner) (Version: 5.05 - Piriform)
Chromium (HKU\S-1-5-21-812805949-1783070821-1753766748-1003\...\Chromium) (Version: 44.0.2386.0 - Chromium)
Classic Shell (HKLM\...\{7C129CF8-199F-4269-AAEE-60B5D8D716E2}) (Version: 4.2.1 - IvoSoft)
Ditto (HKLM\...\Ditto_is1) (Version: - Scott Brogden)
Dropbox (HKU\S-1-5-21-812805949-1783070821-1753766748-1003\...\Dropbox) (Version: 3.4.6 - Dropbox, Inc.)
ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version: - )
Everything 1.3.4.686 (x64) (HKLM\...\Everything) (Version: - )
FastStone Capture 8.2 (HKLM-x32\...\FastStone Capture) (Version: 8.2 - FastStone Soft)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 42.0.2311.135 - Google Inc.)
Google Update Helper (x32 Version: 1.3.26.9 - Google Inc.) Hidden
HP Officejet Pro 8620 Basic Device Software (HKLM\...\{A977D10D-989A-40D4-B0B1-450954516543}) (Version: 32.3.198.49673 - Hewlett-Packard Co.)
HP Officejet Pro 8620 Help (HKLM-x32\...\{9A4D71AB-9C68-4702-A4A2-A4DB7B0FE270}) (Version: 32.0.0 - Hewlett Packard)
HP Support Solutions Framework (HKLM-x32\...\{FC3C2B77-6800-48C6-A15D-9D1031130C16}) (Version: 11.51.0049 - Hewlett-Packard Company)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
I.R.I.S. OCR (HKLM-x32\...\{CA6BCA2F-EDEB-408F-850B-31404BE16A61}) (Version: 12.3.4.0 - HP)
LastPass (uninstall only) (HKLM-x32\...\LastPass) (Version: - LastPass)
LibreOffice 4.4.3.2 (HKLM-x32\...\{A651A592-2F6C-4D66-AEA8-9BFE4B61BCB3}) (Version: 4.4.3.2 - The Document Foundation)
Logitech SetPoint 6.65 (HKLM\...\sp6) (Version: 6.65.62 - Logitech)
Malwarebytes Anti-Exploit version 1.06.1.1019 (HKLM\...\Malwarebytes Anti-Exploit_is1) (Version: 1.06.1.1019 - Malwarebytes)
Malwarebytes Anti-Malware version 2.1.6.1022 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.6.1022 - Malwarebytes Corporation)
Microsoft Office 365 - en-us (HKLM\...\O365HomePremRetail - en-us) (Version: 15.0.4711.1003 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-812805949-1783070821-1753766748-1003\...\OneDriveSetup.exe) (Version: 17.3.5849.0427 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft Sync Framework 2.0 Core Components (x64) ENU (HKLM\...\{8CCBEC22-D2DB-4DC9-A58A-E1A1F3A38C8A}) (Version: 2.0.1578.0 - Microsoft Corporation)
Microsoft Sync Framework 2.0 Provider Services (x64) ENU (HKLM\...\{03AC245F-4C64-425C-89CF-7783C1D3AB2C}) (Version: 2.0.1578.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Mozilla Firefox 37.0.2 (x86 en-GB) (HKLM-x32\...\Mozilla Firefox 37.0.2 (x86 en-GB)) (Version: 37.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 37.0.2 - Mozilla)
MyLifeOrganized v. 4.3.2 (HKLM-x32\...\MyLife Organized) (Version: 4.3.2 - MyLifeOrganized.net)
Network Activity Indicator for Windows 7 - 8.1 (HKLM-x32\...\NetworkIndicator_is1) (Version: 1.7 - ITSamples.com)
Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4711.1003 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (Version: 15.0.4711.1003 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4711.1003 - Microsoft Corporation) Hidden
Opera Stable 29.0.1795.47 (HKLM-x32\...\Opera 29.0.1795.47) (Version: 29.0.1795.47 - Opera Software ASA)
Product Improvement Study for HP Officejet Pro 8620 (HKLM\...\{99039186-EBEB-4127-BFA2-18B10A05ACE2}) (Version: 32.3.198.49673 - Hewlett-Packard Co.)
Raptr (HKLM-x32\...\Raptr) (Version: - )
Skype™ 7.4 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.4.102 - Skype Technologies S.A.)
SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 6.0.1186 - SUPERAntiSpyware.com)
SyncToy 2.1 (x64) (HKLM\...\{88DAAF05-5A72-46D2-A7C5-C3759697E943}) (Version: 2.1.0 - Microsoft)
TeamViewer 10 (HKLM-x32\...\TeamViewer) (Version: 10.0.41459 - TeamViewer)
TextPad 7 (HKLM\...\{3DE3E4EE-F270-4A31-AB76-475515C661BD}) (Version: 7.4.0 - Helios)
TightVNC 2.0.4 (HKLM-x32\...\TightVNC) (Version: 2.0.4 - GlavSoft LLC.)
==================== Custom CLSID (selected items): ==========================
(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
CustomCLSID: HKU\S-1-5-21-812805949-1783070821-1753766748-1003_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\alec_2\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-812805949-1783070821-1753766748-1003_Classes\CLSID\{8A791F0C-C63C-4EC5-B97F-FBCE74EDBC54}\InprocServer32 -> C:\Program Files\TextPad 7\System\shellext64.dll (Helios Software Solutions)
CustomCLSID: HKU\S-1-5-21-812805949-1783070821-1753766748-1003_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\alec_2\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-812805949-1783070821-1753766748-1003_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\alec_2\AppData\Local\Microsoft\OneDrive\17.3.5849.0427\amd64\FileSyncApi64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-812805949-1783070821-1753766748-1003_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\alec_2\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-812805949-1783070821-1753766748-1003_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\alec_2\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-812805949-1783070821-1753766748-1003_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\alec_2\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-812805949-1783070821-1753766748-1003_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\alec_2\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-812805949-1783070821-1753766748-1003_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\alec_2\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-812805949-1783070821-1753766748-1003_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\alec_2\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-812805949-1783070821-1753766748-1003_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\alec_2\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-812805949-1783070821-1753766748-1003_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\alec_2\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
==================== Restore Points =========================
07-05-2015 17:13:40 Windows Modules Installer
08-05-2015 14:42:58 About to remove Okay Freedom
08-05-2015 16:52:48 About to remove OkayFreedom and run BitDefender
==================== Hosts content: ==========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)
Task: {052B7758-6A09-445F-9F41-D38C18000AE2} - System32\Tasks\HPCustParticipation HP Officejet Pro 8620 => C:\Program Files\HP\HP Officejet Pro 8620\Bin\HPCustPartic.exe [2014-07-21] (Hewlett-Packard Development Company, LP)
Task: {3EBB6CCE-768F-48C2-AEAE-AB57887E9BCA} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxcontent => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-24] (Microsoft Corporation)
Task: {88327E65-8F76-4D0B-9867-3C0375884A51} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-04-22] (Microsoft Corporation)
Task: {8A1F7B0D-E8EB-4C05-A1BA-A639CD4E2A27} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-05-07] (Google Inc.)
Task: {8BAAACCC-9F1D-4E92-8436-26D9907940E2} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2015-04-01] (Microsoft Corporation)
Task: {90CA8F4E-95F8-4242-865C-BBEE6DDFBCD7} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-05-07] (Google Inc.)
Task: {940FA8A3-7EDF-48A9-AF02-51A822D40C10} - System32\Tasks\Chromium => C:\Users\alec_2\AppData\Local\Chromium\Application\44.0.2386.0\Installer\uninstall.exe [2015-05-08] ()
Task: {97B00433-A892-4BF8-BD5E-56DDCC66B93F} - System32\Tasks\SUPERAntiSpyware Scheduled Task a2ca3eb0-96a8-46f4-ab85-28a59d0b3d17 => C:\Program Files\SUPERAntiSpyware\SASTask.exe [2013-11-07] (SUPERAdBlocker.com)
Task: {A59B2460-04C3-4615-82A3-F5547F25F40F} - System32\Tasks\Microsoft\Windows\Setup\gwx\launchtrayprocess => C:\Windows\system32\GWX\GWX.exe [2015-03-24] (Microsoft Corporation)
Task: {B8B041C5-F8D7-45F5-8AFD-734AC3D918CB} - System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-812805949-1783070821-1753766748-1003 => %localappdata%\Microsoft\OneDrive\OneDrive.exe
Task: {BDD6689C-0207-48E8-82C9-D40CF176A2D0} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2015-05-07] (Microsoft Corporation)
Task: {C8C597C8-85FA-4B0B-BCDE-1B24B509162E} - System32\Tasks\SUPERAntiSpyware Scheduled Task 568cfb83-e3bb-4fc4-a198-f8407d745b6b => C:\Program Files\SUPERAntiSpyware\SASTask.exe [2013-11-07] (SUPERAdBlocker.com)
Task: {C95E6A09-F792-4372-8371-6E828C1CBD89} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-04-23] (Piriform Ltd)
Task: {D97A90F5-8D5C-428A-B17C-114A15E4D722} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2015-04-22] (Microsoft Corporation)
Task: {DDB1011C-1515-44F9-BD51-7FD79167DD09} - System32\Tasks\Microsoft\Windows\Setup\gwx\runappraiser => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-24] (Microsoft Corporation)
Task: {E70D17B1-FED4-4BA3-9A34-81FDB91E8835} - System32\Tasks\Opera scheduled Autoupdate 1431022559 => C:\Program Files (x86)\Opera\launcher.exe [2015-04-17] (Opera Software)
Task: {F18A6C9B-A987-438B-BA8C-F9F8DDEC4175} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfig => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-24] (Microsoft Corporation)
Task: C:\Windows\Tasks\Chromium.job => C:\Users\alec_2\AppData\Local\Chromium\APPLIC~1\440238~1.0\INSTAL~1\UNINST~1.EXE
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 568cfb83-e3bb-4fc4-a198-f8407d745b6b.job => C:\Program Files\SUPERAntiSpyware\SASTask.exedC:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
Task: C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task a2ca3eb0-96a8-46f4-ab85-28a59d0b3d17.job => C:\Program Files\SUPERAntiSpyware\SASTask.exedC:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
==================== Loaded Modules (whitelisted) ==============
2015-05-07 20:37 - 2015-05-07 20:37 - 08898720 _____ () C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\1033\GrooveIntlResource.dll
==================== Alternate Data Streams (whitelisted) =========
(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)
AlternateDataStreams: C:\Users\Alec\OneDrive:ms-properties
==================== Safe Mode (whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Option => "OptionValue"="2"
==================== EXE Association (whitelisted) ===============
(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, the associated entry will be removed from the registry.)
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-812805949-1783070821-1753766748-1003\Control Panel\Desktop\\Wallpaper ->
DNS Servers: 192.168.0.1
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-812805949-1783070821-1753766748-1003\...\StartupApproved\Run: => "GoogleChromeAutoLaunch_A59815766CE6CC012D87A1C3C83D1F03"
HKU\S-1-5-21-812805949-1783070821-1753766748-1003\...\StartupApproved\Run: => "SUPERAntiSpyware"
==================== FirewallRules (whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{B52099C5-59B2-4568-8A71-6FD4F1B72848}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{85030491-3FC3-4275-AD1A-70577D294D5F}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{994827C9-3C9D-4272-BB8F-CE7790E97A46}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{BA5CB0D7-D6A9-4377-86EB-EBA5336198B1}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{2AB60DD6-BA6C-4B23-B088-1752373C923E}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [{09621C71-0542-462D-B3E8-39AF3A95C9DE}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [TCP Query User{24C1D459-B439-45AF-8F7E-A67F1A6B56F1}C:\program files\ditto\ditto.exe] => (Allow) C:\program files\ditto\ditto.exe
FirewallRules: [UDP Query User{E7A0A10D-7C84-48DF-9729-7A57AC82830E}C:\program files\ditto\ditto.exe] => (Allow) C:\program files\ditto\ditto.exe
FirewallRules: [TCP Query User{A874B2A3-67F4-403D-9C44-66EB7C6934D2}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{7B38FD8E-B8A2-437F-91A2-04A77F89B0D8}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{7B1CC00C-0C93-438D-9FBE-0249CDDDA6DD}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{96884199-7262-4EC2-8704-58AFE36C94F8}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{D53251F6-1BDD-4AB8-BF7E-EC6553E4981C}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{B7E4A1F8-3547-415D-99AE-B83450383391}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{C0CF212C-5EF8-44EE-908C-062D7ABA14E4}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{5AAAA958-014C-4714-8D4A-EB7CA8162F76}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe
FirewallRules: [{7E5B2F1A-459B-4745-8C6F-BC7E45F0630A}] => (Allow) C:\Users\alec_2\AppData\Local\Microsoft\OneDrive\OneDrive.exe
FirewallRules: [{6ADC8473-D83B-4DF0-948D-DDD0E5D68441}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8620\bin\FaxApplications.exe
FirewallRules: [{4B55CCA2-4562-44D4-917F-D687D62D9113}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8620\bin\DigitalWizards.exe
FirewallRules: [{A1B4E4CE-047B-4F44-A1EE-6AD185E70A36}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8620\bin\SendAFax.exe
FirewallRules: [{777028B0-EC42-445F-9B50-32BB2514632C}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8620\Bin\DeviceSetup.exe
FirewallRules: [{2A849EED-50A5-417B-BDFC-6FAA8ED96E51}] => (Allow) LPort=5357
FirewallRules: [{92EEA795-3671-4116-A231-031C2A337A27}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8620\Bin\HPNetworkCommunicatorCom.exe
FirewallRules: [{9059752F-E603-4AFD-BD0F-0100D085B800}] => (Allow) C:\Users\alec_2\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{54AD1F23-41F2-4624-82F6-DE677C1030D5}] => (Allow) C:\Users\alec_2\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{DAF46796-8EC9-4516-8B28-71F49533937F}] => (Allow) C:\Users\alec_2\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{1619D7F9-A35E-4561-B488-D63F0421F175}] => (Allow) C:\Users\alec_2\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{9224E312-5AFC-497C-8BB9-00AC458294B1}] => (Allow) C:\Program Files (x86)\TightVNC\tvnserver.exe
FirewallRules: [{E9EA5AE8-980C-4358-989C-73EB7286FE7B}] => (Allow) C:\Program Files (x86)\TightVNC\tvnserver.exe
FirewallRules: [{67CB0907-3DCE-423E-97DF-4644AA33F077}] => (Allow) C:\Program Files (x86)\TightVNC\vncviewer.exe
FirewallRules: [{37636E27-388F-46BB-B514-BB4D68252836}] => (Allow) C:\Program Files (x86)\TightVNC\vncviewer.exe
FirewallRules: [{EC4494C2-88E8-4DAD-9697-58DE07DE946C}] => (Allow) C:\Users\alec_2\AppData\Local\Chromium\Application\chrome.exe
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (05/08/2015 06:57:51 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifest.
Error: (05/08/2015 06:41:25 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: svchost.exe_stisvc, version: 6.3.9600.17415, time stamp: 0x54504177
Faulting module name: ntdll.dll, version: 6.3.9600.17736, time stamp: 0x550f4336
Exception code: 0xc0000008
Fault offset: 0x000000000009310a
Faulting process ID: 0x780
Faulting application start time: 0xsvchost.exe_stisvc0
Faulting application path: svchost.exe_stisvc1
Faulting module path: svchost.exe_stisvc2
Report ID: svchost.exe_stisvc3
Faulting package full name: svchost.exe_stisvc4
Faulting package-relative application ID: svchost.exe_stisvc5
Error: (05/08/2015 06:39:00 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: svchost.exe_stisvc, version: 6.3.9600.17415, time stamp: 0x54504177
Faulting module name: ntdll.dll, version: 6.3.9600.17736, time stamp: 0x550f4336
Exception code: 0xc0000008
Fault offset: 0x000000000009310a
Faulting process ID: 0x794
Faulting application start time: 0xsvchost.exe_stisvc0
Faulting application path: svchost.exe_stisvc1
Faulting module path: svchost.exe_stisvc2
Report ID: svchost.exe_stisvc3
Faulting package full name: svchost.exe_stisvc4
Faulting package-relative application ID: svchost.exe_stisvc5
Error: (05/08/2015 06:33:27 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: svchost.exe_stisvc, version: 6.3.9600.17415, time stamp: 0x54504177
Faulting module name: ntdll.dll, version: 6.3.9600.17736, time stamp: 0x550f4336
Exception code: 0xc0000008
Fault offset: 0x000000000009310a
Faulting process ID: 0x79c
Faulting application start time: 0xsvchost.exe_stisvc0
Faulting application path: svchost.exe_stisvc1
Faulting module path: svchost.exe_stisvc2
Report ID: svchost.exe_stisvc3
Faulting package full name: svchost.exe_stisvc4
Faulting package-relative application ID: svchost.exe_stisvc5
Error: (05/08/2015 06:04:17 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: svchost.exe_stisvc, version: 6.3.9600.17415, time stamp: 0x54504177
Faulting module name: ntdll.dll, version: 6.3.9600.17736, time stamp: 0x550f4336
Exception code: 0xc0000008
Fault offset: 0x000000000009310a
Faulting process ID: 0x780
Faulting application start time: 0xsvchost.exe_stisvc0
Faulting application path: svchost.exe_stisvc1
Faulting module path: svchost.exe_stisvc2
Report ID: svchost.exe_stisvc3
Faulting package full name: svchost.exe_stisvc4
Faulting package-relative application ID: svchost.exe_stisvc5
Error: (05/08/2015 04:51:56 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: OkayFreedomClient.exe, version: 1.5.3.11262, time stamp: 0x5540ec9e
Faulting module name: OkayFreedomClient.exe, version: 1.5.3.11262, time stamp: 0x5540ec9e
Exception code: 0xc000041d
Fault offset: 0x0019b4d7
Faulting process ID: 0x1794
Faulting application start time: 0xOkayFreedomClient.exe0
Faulting application path: OkayFreedomClient.exe1
Faulting module path: OkayFreedomClient.exe2
Report ID: OkayFreedomClient.exe3
Faulting package full name: OkayFreedomClient.exe4
Faulting package-relative application ID: OkayFreedomClient.exe5
Error: (05/08/2015 04:51:55 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: OkayFreedomClient.exe, version: 1.5.3.11262, time stamp: 0x5540ec9e
Faulting module name: OkayFreedomClient.exe, version: 1.5.3.11262, time stamp: 0x5540ec9e
Exception code: 0xc0000005
Fault offset: 0x0019b4d7
Faulting process ID: 0x1794
Faulting application start time: 0xOkayFreedomClient.exe0
Faulting application path: OkayFreedomClient.exe1
Faulting module path: OkayFreedomClient.exe2
Report ID: OkayFreedomClient.exe3
Faulting package full name: OkayFreedomClient.exe4
Faulting package-relative application ID: OkayFreedomClient.exe5
Error: (05/08/2015 03:38:08 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifest.
Error: (05/08/2015 03:38:08 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifest.
Error: (05/08/2015 03:38:06 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifest.
System errors:
=============
Error: (05/08/2015 07:04:03 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
%%1068
Error: (05/08/2015 07:04:03 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
%%1068
Error: (05/08/2015 07:04:03 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
%%1068
Error: (05/08/2015 07:03:11 PM) (Source: DCOM) (EventID: 10005) (User: ALEC09-Win8)
Description: 1084WSearchUnavailable{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}
Error: (05/08/2015 07:03:11 PM) (Source: DCOM) (EventID: 10005) (User: ALEC09-Win8)
Description: 1084WSearchUnavailable{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}
Error: (05/08/2015 07:02:55 PM) (Source: DCOM) (EventID: 10005) (User: ALEC09-Win8)
Description: 1084WSearchUnavailable{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}
Error: (05/08/2015 07:02:55 PM) (Source: DCOM) (EventID: 10005) (User: ALEC09-Win8)
Description: 1084WSearchUnavailable{B52D54BB-4818-4EB9-AA80-F9EACD371DF8}
Error: (05/08/2015 07:02:55 PM) (Source: DCOM) (EventID: 10005) (User: ALEC09-Win8)
Description: 1084ShellHWDetectionUnavailable{DD522ACC-F821-461A-A407-50B198B896DC}
Error: (05/08/2015 07:02:43 PM) (Source: DCOM) (EventID: 10005) (User: ALEC09-Win8)
Description: 1084WSearchUnavailable{7D096C5F-AC08-4F1F-BEB7-5C22C517CE39}
Error: (05/08/2015 07:02:43 PM) (Source: DCOM) (EventID: 10005) (User: ALEC09-Win8)
Description: 1084ShellHWDetectionUnavailable{DD522ACC-F821-461A-A407-50B198B896DC}
Microsoft Office Sessions:
=========================
Error: (05/08/2015 06:57:51 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifestC:\Users\alec_2\Downloads\esetsmartinstaller_enu.exe
Error: (05/08/2015 06:41:25 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: svchost.exe_stisvc6.3.9600.1741554504177ntdll.dll6.3.9600.17736550f4336c0000008000000000009310a78001d089b62fc30da3C:\Windows\system32\svchost.exeC:\Windows\SYSTEM32\ntdll.dll7265f979-f5a9-11e4-8264-001cc0f984bb
Error: (05/08/2015 06:39:00 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: svchost.exe_stisvc6.3.9600.1741554504177ntdll.dll6.3.9600.17736550f4336c0000008000000000009310a79401d089b5d8fd686bC:\Windows\system32\svchost.exeC:\Windows\SYSTEM32\ntdll.dll1c0267e9-f5a9-11e4-8263-001cc0f984bb
Error: (05/08/2015 06:33:27 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: svchost.exe_stisvc6.3.9600.1741554504177ntdll.dll6.3.9600.17736550f4336c0000008000000000009310a79c01d089b5127721a6C:\Windows\system32\svchost.exeC:\Windows\SYSTEM32\ntdll.dll5595e9e0-f5a8-11e4-8261-001cc0f984bb
Error: (05/08/2015 06:04:17 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: svchost.exe_stisvc6.3.9600.1741554504177ntdll.dll6.3.9600.17736550f4336c0000008000000000009310a78001d089b0fe4b2908C:\Windows\system32\svchost.exeC:\Windows\SYSTEM32\ntdll.dll42351dab-f5a4-11e4-825c-001cc0f984bb
Error: (05/08/2015 04:51:56 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: OkayFreedomClient.exe1.5.3.112625540ec9eOkayFreedomClient.exe1.5.3.112625540ec9ec000041d0019b4d7179401d089a6deffd51cC:\Program Files (x86)\OkayFreedom\OkayFreedomClient.exeC:\Program Files (x86)\OkayFreedom\OkayFreedomClient.exe27292401-f59a-11e4-825a-001cc0f984bb
Error: (05/08/2015 04:51:55 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: OkayFreedomClient.exe1.5.3.112625540ec9eOkayFreedomClient.exe1.5.3.112625540ec9ec00000050019b4d7179401d089a6deffd51cC:\Program Files (x86)\OkayFreedom\OkayFreedomClient.exeC:\Program Files (x86)\OkayFreedom\OkayFreedomClient.exe26908d5e-f59a-11e4-825a-001cc0f984bb
Error: (05/08/2015 03:38:08 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifestC:\Users\alec_2\Downloads\esetsmartinstaller_enu.exe
Error: (05/08/2015 03:38:08 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifestC:\Users\alec_2\Downloads\esetsmartinstaller_enu.exe
Error: (05/08/2015 03:38:06 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_6240486fecbd8abb.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17415_none_a9ed7f470139b3c1.manifestC:\Users\alec_2\Downloads\esetsmartinstaller_enu.exe
CodeIntegrity Errors:
===================================
Date: 2015-05-08 16:09:05.795
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-05-08 16:09:05.681
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-05-08 16:09:05.570
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-05-08 16:09:05.270
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-05-08 16:09:05.034
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-05-08 16:09:04.800
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-05-08 16:09:04.495
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-05-08 15:21:31.438
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-05-08 15:21:31.329
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-05-08 15:21:31.219
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i5 CPU 750 @ 2.67GHz
Percentage of memory in use: 20%
Total physical RAM: 8182.28 MB
Available physical RAM: 6472.43 MB
Total Pagefile: 10102.28 MB
Available Pagefile: 8546.73 MB
Total Virtual: 131072 MB
Available Virtual: 131071.78 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:279.36 GB) (Free:227.66 GB) NTFS
Drive z: () (Network) (Total:452.44 GB) (Free:98.27 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 279.5 GB) (Disk ID: 7CF99FB9)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=279.4 GB) - (Type=07 NTFS)
==================== End Of Log ============================
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 06-05-2015 01
Ran by alec_2 (administrator) on ALEC09-WIN8 on 08-05-2015 19:05:19
Running from C:\Users\alec_2\AppData\Local\Microsoft\Windows\INetCache\IE\LGJ2APEU
Loaded Profiles: alec_2 (Available profiles: Alec & alec_2)
Platform: Windows 8.1 (X64) OS Language: English (United Kingdom)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Safe Mode (with Networking)
Tutorial for Farbar Recovery Scan Tool:
FRST Tutorial - How to use Farbar Recovery Scan Tool - Geeks to Go Forum
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore64.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe
(Microsoft Corporation) C:\Windows\HelpPane.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Helios Software Solutions) C:\Program Files\TextPad 7\TextPad.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [163520 2015-04-09] (IvoSoft)
HKLM\...\Run: [EvtMgr6] => C:\Program Files\Logitech\SetPointP\SetPoint.exe [3100440 2014-05-19] (Logitech, Inc.)
HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr\raptrstub.exe [55568 2015-05-05] (Raptr, Inc)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [tvncontrol] => C:\Program Files (x86)\TightVNC\tvnserver.exe [828944 2011-08-03] (GlavSoft LLC.)
HKLM-x32\...\Run: [Malwarebytes Anti-Exploit] => C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae.exe [2618680 2015-04-08] (Malwarebytes Corporation)
Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.)
HKU\S-1-5-21-812805949-1783070821-1753766748-1003\...\Run: [Ditto] => C:\Program Files\Ditto\Ditto.exe [1975808 2015-01-10] ()
HKU\S-1-5-21-812805949-1783070821-1753766748-1003\...\Run: [NetworkIndicator] => C:\Program Files\ITSamples\NetworkIndicator\NetworkIndicator.exe [367616 2014-12-12] (ITSamples.com)
HKU\S-1-5-21-812805949-1783070821-1753766748-1003\...\Run: [GoogleChromeAutoLaunch_A59815766CE6CC012D87A1C3C83D1F03] => C:\Users\alec_2\AppData\Local\Chromium\Application\chrome.exe [655872 2015-04-29] (The Chromium Authors)
HKU\S-1-5-21-812805949-1783070821-1753766748-1003\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [7806232 2015-03-25] (SUPERAntiSpyware)
HKU\S-1-5-21-812805949-1783070821-1753766748-1003\...\RunOnce: [Report] => C:\AdwCleaner\AdwCleaner[S0].txt [1165 2015-05-08] ()
Startup: C:\Users\alec_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2015-05-08]
ShortcutTarget: Dropbox.lnk -> C:\Users\alec_2\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Install LastPass FF RunOnce.lnk [2015-05-07]
ShortcutTarget: Install LastPass FF RunOnce.lnk -> C:\Program Files (x86)\Common Files\lpuninstall.exe (LastPass)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Install LastPass IE RunOnce.lnk [2015-05-07]
ShortcutTarget: Install LastPass IE RunOnce.lnk -> C:\Program Files (x86)\Common Files\lpuninstall.exe (LastPass)
ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\alec_2\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-05-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\alec_2\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-05-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\alec_2\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-05-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\alec_2\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-05-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\alec_2\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-05-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\alec_2\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-05-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\alec_2\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-05-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\alec_2\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll [2015-05-05] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll [2015-04-09] (IvoSoft)
ShellIconOverlayIdentifiers-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer32.dll [2015-04-09] (IvoSoft)
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-812805949-1783070821-1753766748-1003\Software\Microsoft\Internet Explorer\Main,Start Page =
Yahoo Search - Web Search 8.1
HKU\S-1-5-21-812805949-1783070821-1753766748-1003\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache =
MSN UK | Hotmail, Outlook, Skype, Bing, Latest News, Photos and Videos
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2015-05-07] (Microsoft Corporation)
BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer64.dll [2015-04-09] (IvoSoft)
BHO: LastPass Vault -> {95D9ECF5-2A4D-4550-BE49-70D42F71296E} -> C:\Program Files (x86)\LastPass\LPToolbar_x64.dll [2015-05-07] (LastPass)
BHO: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2014-05-19] (Logitech, Inc.)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2015-05-07] (Microsoft Corporation)
BHO: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2015-04-09] (IvoSoft)
BHO-x32: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer32.dll [2015-04-09] (IvoSoft)
BHO-x32: LastPass Vault -> {95D9ECF5-2A4D-4550-BE49-70D42F71296E} -> C:\Program Files (x86)\LastPass\LPToolbar.dll [2015-05-07] (LastPass)
BHO-x32: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll [2014-05-19] (Logitech, Inc.)
BHO-x32: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2015-04-09] (IvoSoft)
Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2015-04-09] (IvoSoft)
Toolbar: HKLM - LastPass Toolbar - {9f6b5cc3-5c7b-4b5c-97af-19dec1e380e5} - C:\Program Files (x86)\LastPass\LPToolbar_x64.dll [2015-05-07] (LastPass)
Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2015-04-09] (IvoSoft)
Toolbar: HKLM-x32 - LastPass Toolbar - {9f6b5cc3-5c7b-4b5c-97af-19dec1e380e5} - C:\Program Files (x86)\LastPass\LPToolbar.dll [2015-05-07] (LastPass)
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-05-07] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
FireFox:
========
FF ProfilePath: C:\Users\alec_2\AppData\Roaming\Mozilla\Firefox\Profiles\yb5zn8lw.default
FF DefaultSearchEngine: Search Provided by Yahoo
FF Homepage: hxxp://uk.yhs4.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wncy_frg01_15_19¶m1=1¶m2=f%3D1%26b%3DFirefox%26cc%3Dgb%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzutDtDtC0C0CtD0FzyzzyE0B0B0EtD0FtCtN0D0Tzu0StCtBtBtAtN1L2XzutAtFtCtDtFyCtFtCtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2StAtCzz0DyCyCzy0DtGtD0BtAzztGzz0EyCtAtG0DyCtB0FtGyB0AtByEtCyEtD0B0F0A0DyE2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0C0E0DtA0CtA0C0DtGyBtDtByBtGyEtBtBzztGzzyB0AzztGyBtBtCzy0DyEtAzytCzz0C0E2QtN0A0LzuyEtN1B2Z1V1T1S1NzuyByEzz%26cr%3D1021354084%26a%3Dwncy_frg01_15_19%26os%3DWindows 8.1
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_17_0_0_169.dll [2015-05-08] ()
FF Plugin: @lastpass.com/NPLastPass -> C:\Program Files (x86)\LastPass\nplastpass64.dll [2015-05-07] (LastPass)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_169.dll [2015-05-08] ()
FF Plugin-x32: @lastpass.com/NPLastPass -> C:\Program Files (x86)\LastPass\nplastpass64.dll [2015-05-07] (LastPass)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2015-05-07] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-05-07] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-05-07] (Google Inc.)
FF Extension: LastPass - C:\Users\alec_2\AppData\Roaming\Mozilla\Firefox\Profiles\yb5zn8lw.default\Extensions\support@lastpass.com [2015-05-07]
FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt
FF Extension: Logitech SetPoint - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2015-05-08]
StartMenuInternet: FIREFOX.EXE - firefox.exe
Chrome:
=======
CHR HomePage: Default -> hxxp://uk.yhs4.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wncy_frg01_15_19¶m1=1¶m2=f%3D1%26b%3DChrome%26cc%3Dgb%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzutDtDtC0C0CtD0FzyzzyE0B0B0EtD0FtCtN0D0Tzu0StCtBtBtAtN1L2XzutAtFtCtDtFyCtFtCtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2StAtCzz0DyCyCzy0DtGtD0BtAzztGzz0EyCtAtG0DyCtB0FtGyB0AtByEtCyEtD0B0F0A0DyE2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0C0E0DtA0CtA0C0DtGyBtDtByBtGyEtBtBzztGzzyB0AzztGyBtBtCzy0DyEtAzytCzz0C0E2QtN0A0LzuyEtN1B2Z1V1T1S1NzuyByEzz%26cr%3D1021354084%26a%3Dwncy_frg01_15_19%26os%3DWindows 8.1
CHR StartupUrls: Default -> "hxxp://uk.yhs4.search.yahoo.com/yhs/web?hspart=iry&hsimp=yhs-fullyhosted_003&type=wncy_frg01_15_19¶m1=1¶m2=f%3D7%26b%3DChrome%26cc%3Dgb%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzutDtDtC0C0CtD0FzyzzyE0B0B0EtD0FtCtN0D0Tzu0StCtBtBtAtN1L2XzutAtFtCtDtFyCtFtCtN1L1CzutN1L1G1B1V1N2Y1L1Qzu2StAtCzz0DyCyCzy0DtGtD0BtAzztGzz0EyCtAtG0DyCtB0FtGyB0AtByEtCyEtD0B0F0A0DyE2QtN1M1F1B2Z1V1N2Y1L1Qzu2S0C0E0DtA0CtA0C0DtGyBtDtByBtGyEtBtBzztGzzyB0AzztGyBtBtCzy0DyEtAzytCzz0C0E2QtN0A0LzuyEtN1B2Z1V1T1S1NzuyByEzz%26cr%3D1021354084%26a%3Dwncy_frg01_15_19%26os%3DWindows 8.1"
CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google
ageClassification}{google:searchVersion}{google:sessionToken}{google
refetchQuery}sugkey={google:suggestAPIKeyParameter}
CHR Profile: C:\Users\alec_2\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\alec_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-05-07]
CHR Extension: (Google Docs) - C:\Users\alec_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-05-07]
CHR Extension: (Google Drive) - C:\Users\alec_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-05-07]
CHR Extension: (YouTube) - C:\Users\alec_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-05-07]
CHR Extension: (Google Search) - C:\Users\alec_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-05-07]
CHR Extension: (Google Sheets) - C:\Users\alec_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-05-07]
CHR Extension: (Bookmark Manager) - C:\Users\alec_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik [2015-05-07]
CHR Extension: (LastPass: Free Password Manager) - C:\Users\alec_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2015-05-07]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\alec_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-05-07]
CHR Extension: (Google Wallet) - C:\Users\alec_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-05-07]
CHR Extension: (Gmail) - C:\Users\alec_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-05-07]
CHR HKLM\...\Chrome\Extension: [hdokiejnpimakedhajhdlcegeplioahd] -
Not Found
CHR HKLM-x32\...\Chrome\Extension: [hdokiejnpimakedhajhdlcegeplioahd] -
Not Found
StartMenuInternet: Google Chrome - chrome.exe
Opera:
=======
OPR Extension: (LastPass) - C:\Users\alec_2\AppData\Roaming\Opera Software\Opera Stable\Extensions\hnjalnkldgigidggphhmacmimbdlafdo [2015-05-07]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [172344 2014-07-23] (SUPERAntiSpyware.com)
S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-11-22] (Microsoft Corporation)
S2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2719928 2015-04-22] (Microsoft Corporation)
S2 DiagTrack; C:\Windows\system32\diagtrack.dll [1429504 2015-03-05] (Microsoft Corporation)
S2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe [89840 2015-03-28] (Hewlett-Packard Company)
S2 MbaeSvc; C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae-svc.exe [656184 2015-04-08] (Malwarebytes Corporation)
S2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2015-04-14] (Malwarebytes Corporation)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1080120 2015-04-14] (Malwarebytes Corporation)
S2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5448976 2015-04-17] (TeamViewer GmbH)
S2 tvnserver; C:\Program Files (x86)\TightVNC\tvnserver.exe [828944 2011-08-03] (GlavSoft LLC.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [21160 2012-09-23] (Advanced Micro Devices, Inc.)
S3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWB6.sys [223232 2014-06-21] (Advanced Micro Devices)
S1 ESProtectionDriver; C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae64.sys [63064 2015-04-08] ()
S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-04-14] (Malwarebytes Corporation)
S3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [136408 2015-05-08] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64216 2015-04-14] (Malwarebytes Corporation)
S1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
S1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-05-08 19:05 - 2015-05-08 19:05 - 00000000 ____D () C:\FRST
2015-05-08 18:58 - 2015-05-08 19:01 - 00000000 ____D () C:\AdwCleaner
2015-05-08 18:57 - 2015-05-08 18:57 - 02204160 _____ () C:\Users\alec_2\Downloads\AdwCleaner.exe
2015-05-08 18:57 - 2015-05-08 18:57 - 02204160 _____ () C:\Users\alec_2\Downloads\AdwCleaner (1).exe
2015-05-08 18:55 - 2015-05-08 19:03 - 00002342 _____ () C:\Users\alec_2\Desktop\Rkill.txt
2015-05-08 18:55 - 2015-05-08 18:55 - 01943800 _____ (Bleeping Computer, LLC) C:\Users\alec_2\Downloads\rkill(1).exe
2015-05-08 18:54 - 2015-05-08 18:54 - 01943800 _____ (Bleeping Computer, LLC) C:\Users\alec_2\Downloads\rkill.exe
2015-05-08 18:45 - 2015-05-08 18:45 - 00000000 ____D () C:\Windows\pss
2015-05-08 17:31 - 2015-05-08 18:41 - 00002204 _____ () C:\Windows\setupact.log
2015-05-08 17:31 - 2015-05-08 17:31 - 00001820 _____ () C:\Windows\PFRO.log
2015-05-08 17:31 - 2015-05-08 17:31 - 00000000 _____ () C:\Windows\setuperr.log
2015-05-08 16:01 - 2015-05-08 16:01 - 00000000 ____D () C:\Users\Public\Documents\Logishrd
2015-05-08 16:01 - 2015-05-08 16:01 - 00000000 ____D () C:\ProgramData\Logitech
2015-05-08 16:00 - 2015-05-08 18:45 - 00421546 _____ () C:\Windows\WindowsUpdate.log
2015-05-08 16:00 - 2015-05-08 16:01 - 00000000 ____D () C:\ProgramData\Logishrd
2015-05-08 16:00 - 2015-05-08 16:00 - 00018960 _____ (Logitech, Inc.) C:\Windows\system32\Drivers\LNonPnP.sys
2015-05-08 16:00 - 2015-05-08 16:00 - 00006485 _____ () C:\Windows\LDPINST.LOG
2015-05-08 16:00 - 2015-05-08 16:00 - 00000860 _____ () C:\Windows\LkmdfCoInst.log
2015-05-08 16:00 - 2015-05-08 16:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech
2015-05-08 16:00 - 2015-05-08 16:00 - 00000000 ____D () C:\Program Files\Logitech
2015-05-08 15:57 - 2015-05-08 15:57 - 03677488 _____ (Logitech Inc.) C:\Users\alec_2\Downloads\SetPoint6.65.62_smart (2).exe
2015-05-08 15:56 - 2015-05-08 16:01 - 00000000 ____D () C:\Users\alec_2\AppData\Roaming\Logitech
2015-05-08 15:56 - 2015-05-08 15:57 - 03677488 _____ (Logitech Inc.) C:\Users\alec_2\Downloads\SetPoint6.65.62_smart (1).exe
2015-05-08 15:56 - 2015-05-08 15:57 - 00000000 ____D () C:\Users\alec_2\AppData\Roaming\Logishrd
2015-05-08 15:56 - 2015-05-08 15:56 - 03677488 _____ (Logitech Inc.) C:\Users\alec_2\Downloads\SetPoint6.65.62_smart.exe
2015-05-08 15:38 - 2015-05-08 15:38 - 00000000 ____D () C:\Program Files (x86)\ESET
2015-05-08 15:37 - 2015-05-08 15:38 - 02347384 _____ (ESET) C:\Users\alec_2\Downloads\esetsmartinstaller_enu.exe
2015-05-08 15:29 - 2015-05-08 18:41 - 00000000 ____D () C:\Program Files\SUPERAntiSpyware
2015-05-08 15:29 - 2015-05-08 17:31 - 00000536 _____ () C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task a2ca3eb0-96a8-46f4-ab85-28a59d0b3d17.job
2015-05-08 15:29 - 2015-05-08 17:31 - 00000536 _____ () C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 568cfb83-e3bb-4fc4-a198-f8407d745b6b.job
2015-05-08 15:29 - 2015-05-08 15:29 - 21832440 _____ (SUPERAntiSpyware) C:\Users\alec_2\Downloads\SUPERAntiSpyware.exe
2015-05-08 15:29 - 2015-05-08 15:29 - 00003598 _____ () C:\Windows\System32\Tasks\SUPERAntiSpyware Scheduled Task a2ca3eb0-96a8-46f4-ab85-28a59d0b3d17
2015-05-08 15:29 - 2015-05-08 15:29 - 00003516 _____ () C:\Windows\System32\Tasks\SUPERAntiSpyware Scheduled Task 568cfb83-e3bb-4fc4-a198-f8407d745b6b
2015-05-08 15:29 - 2015-05-08 15:29 - 00001869 _____ () C:\Users\Public\Desktop\SUPERAntiSpyware Free Edition.lnk
2015-05-08 15:29 - 2015-05-08 15:29 - 00000000 ____D () C:\Users\alec_2\AppData\Roaming\SUPERAntiSpyware.com
2015-05-08 15:29 - 2015-05-08 15:29 - 00000000 ____D () C:\ProgramData\SUPERAntiSpyware.com
2015-05-08 15:29 - 2015-05-08 15:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
2015-05-08 15:16 - 2015-05-08 15:16 - 00002750 _____ () C:\Users\alec_2\Downloads\software_removal_tool.log
2015-05-08 14:45 - 2015-05-08 18:41 - 00136408 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-05-08 14:45 - 2015-05-08 14:45 - 00001163 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-05-08 14:45 - 2015-05-08 14:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-05-08 14:45 - 2015-05-08 14:45 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-05-08 14:45 - 2015-05-08 14:45 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-05-08 14:45 - 2015-04-14 09:38 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-05-08 14:45 - 2015-04-14 09:37 - 00107736 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-05-08 14:45 - 2015-04-14 09:37 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-05-08 14:44 - 2015-05-08 14:44 - 21546080 _____ (Malwarebytes Corporation ) C:\Users\alec_2\Downloads\mbam-setup-2.1.6.1022.exe
2015-05-08 14:40 - 2015-05-08 16:51 - 00000000 ____D () C:\Users\alec_2\AppData\Local\CrashDumps
2015-05-08 14:40 - 2015-05-08 14:40 - 00001516 _____ () C:\Users\Public\Desktop\LibreOffice 4.4.lnk
2015-05-08 14:40 - 2015-05-08 14:40 - 00000000 ___SD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 4.4
2015-05-08 14:39 - 2015-05-08 14:40 - 00000000 ____D () C:\Program Files (x86)\LibreOffice 4
2015-05-08 14:37 - 2015-05-08 14:37 - 01376768 _____ () C:\Users\alec_2\Downloads\7z920-x64.msi
2015-05-08 14:36 - 2015-05-08 14:38 - 224387072 _____ () C:\Users\alec_2\Downloads\LibreOffice_4.4.3_Win_x86.msi
2015-05-08 14:35 - 2015-05-08 18:36 - 00000356 _____ () C:\Windows\Tasks\Chromium.job
2015-05-08 14:35 - 2015-05-08 16:53 - 00000000 ____D () C:\Users\alec_2\AppData\Roaming\Steganos
2015-05-08 14:35 - 2015-05-08 16:51 - 00000000 ____D () C:\Users\alec_2\AppData\Roaming\Steganos VPN
2015-05-08 14:35 - 2015-05-08 14:38 - 00000000 ____D () C:\Users\alec_2\AppData\Roaming\FileZilla
2015-05-08 14:35 - 2015-05-08 14:35 - 00002694 _____ () C:\Windows\System32\Tasks\Chromium
2015-05-08 14:35 - 2015-05-08 14:35 - 00000000 ____D () C:\Users\alec_2\AppData\Local\Chromium
2015-05-08 14:34 - 2015-05-08 14:34 - 06420600 _____ (Tim Kosse) C:\Users\alec_2\Downloads\FileZilla_3.10.3_win64-setup [1].exe
2015-05-08 14:30 - 2015-05-08 14:30 - 00000000 ____D () C:\Users\alec_2\AppData\Local\Macromedia
2015-05-08 14:20 - 2015-05-08 18:39 - 00000000 ____D () C:\ProgramData\Malwarebytes Anti-Exploit
2015-05-08 14:20 - 2015-05-08 14:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Exploit
2015-05-08 14:20 - 2015-05-08 14:20 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Exploit
2015-05-08 14:19 - 2015-05-08 14:19 - 03020968 _____ (Malwarebytes ) C:\Users\alec_2\Downloads\mbae-setup-1.06.1.1019.exe
2015-05-08 14:01 - 2015-05-08 14:01 - 00000000 ____D () C:\Users\alec_2\Downloads\network-activity-indicator-setup-64
2015-05-08 13:58 - 2015-05-08 13:58 - 00456100 _____ () C:\Users\alec_2\Downloads\network-activity-indicator-setup-64.zip
2015-05-08 13:43 - 2015-05-08 15:48 - 00012288 ___SH () C:\Users\alec_2\Desktop\Thumbs.db
2015-05-08 13:42 - 2015-05-08 13:42 - 00000000 ____D () C:\Users\alec_2\Documents\MyLifeOrganized
2015-05-08 13:42 - 2015-05-08 13:42 - 00000000 ____D () C:\Users\alec_2\AppData\Roaming\MyLifeOrganized
2015-05-08 13:42 - 2015-05-08 13:42 - 00000000 ____D () C:\Users\alec_2\AppData\Local\MyLifeOrganized
2015-05-08 13:41 - 2015-05-08 13:41 - 05429832 _____ () C:\Users\alec_2\Downloads\MLO-Setup.exe
2015-05-08 13:41 - 2015-05-08 13:41 - 00001212 _____ () C:\Users\Public\Desktop\MLO.lnk
2015-05-08 13:41 - 2015-05-08 13:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyLifeOrganized
2015-05-08 13:41 - 2015-05-08 13:41 - 00000000 ____D () C:\Program Files (x86)\MyLifeOrganized.net
2015-05-08 12:48 - 2015-05-08 12:48 - 02454264 _____ (X1 Discovery) C:\Users\alec_2\Downloads\x1searchsetup(1).exe
2015-05-08 12:29 - 2015-05-08 12:29 - 00000000 ____D () C:\Users\alec_2\AppData\Local\Adobe
2015-05-08 12:15 - 2015-05-08 12:15 - 00000000 ____D () C:\ProgramData\X1 Search
2015-05-08 12:15 - 2015-05-08 12:15 - 00000000 ____D () C:\Program Files\X1 Search
2015-05-08 12:14 - 2015-05-08 12:15 - 02454264 _____ (X1 Discovery) C:\Users\alec_2\Downloads\x1searchsetup.exe
2015-05-08 10:40 - 2015-05-08 10:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TightVNC
2015-05-08 10:40 - 2015-05-08 10:40 - 00000000 ____D () C:\Program Files (x86)\TightVNC
2015-05-08 03:20 - 2015-05-08 13:54 - 00000000 ____D () C:\Users\alec_2\Documents\Outlook Files
2015-05-08 00:38 - 2015-05-08 18:42 - 00000000 ___RD () C:\Users\alec_2\Dropbox
2015-05-08 00:38 - 2015-05-08 00:38 - 00001181 _____ () C:\Users\alec_2\Desktop\Dropbox.lnk
2015-05-08 00:37 - 2015-05-08 18:42 - 00000000 ____D () C:\Users\alec_2\AppData\Roaming\Dropbox
2015-05-08 00:37 - 2015-05-08 00:37 - 00000000 ____D () C:\Users\alec_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2015-05-08 00:15 - 2015-05-08 00:15 - 00002798 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2015-05-08 00:15 - 2015-05-08 00:15 - 00000883 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2015-05-08 00:15 - 2015-05-08 00:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2015-05-08 00:15 - 2015-05-08 00:15 - 00000000 ____D () C:\Program Files\CCleaner
2015-05-07 22:33 - 2015-05-07 22:33 - 00000000 ___HD () C:\ProgramData\CanonBJ
2015-05-07 22:06 - 2015-05-07 22:06 - 00003622 _____ () C:\Windows\System32\Tasks\HPCustParticipation HP Officejet Pro 8620
2015-05-07 22:06 - 2015-05-07 22:06 - 00002269 _____ () C:\Users\Public\Desktop\HP Officejet Pro 8620.lnk
2015-05-07 22:06 - 2015-05-07 22:06 - 00001221 _____ () C:\Users\Public\Desktop\Shop for Supplies - HP Officejet Pro 8620.lnk
2015-05-07 22:06 - 2015-05-07 22:06 - 00000978 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\I.R.I.S. OCR Registration.lnk
2015-05-07 22:06 - 2015-05-07 22:06 - 00000057 _____ () C:\ProgramData\Ament.ini
2015-05-07 22:06 - 2015-05-07 22:06 - 00000000 ____D () C:\Users\alec_2\AppData\Roaming\HpUpdate
2015-05-07 22:06 - 2015-05-07 22:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2015-05-07 22:06 - 2015-05-07 22:06 - 00000000 ____D () C:\ProgramData\HP
2015-05-07 22:06 - 2015-05-07 22:06 - 00000000 ____D () C:\Program Files\HP
2015-05-07 22:06 - 2014-07-21 16:31 - 00763912 ____N (Hewlett-Packard Development Company, LP) C:\Windows\system32\HPDiscoPM7012.dll
2015-05-07 22:05 - 2015-05-07 22:06 - 00000000 ____D () C:\Users\alec_2\AppData\Local\HP
2015-05-07 22:02 - 2015-05-07 22:02 - 00000000 ____D () C:\Users\alec_2\AppData\Local\Hewlett-Packard
2015-05-07 22:01 - 2015-05-07 22:06 - 00000000 ____D () C:\Program Files (x86)\Hp
2015-05-07 22:01 - 2015-05-07 22:01 - 00000000 ____D () C:\Program Files (x86)\Hewlett-Packard
2015-05-07 22:00 - 2015-05-07 22:00 - 05197824 _____ () C:\Users\alec_2\Downloads\HPSupportSolutionsFramework-11.51.0049.msi
2015-05-07 21:55 - 2015-05-07 21:55 - 00337240 _____ () C:\Users\alec_2\Downloads\argb1998win141ea24.exe
2015-05-07 21:55 - 2015-05-07 21:55 - 00002189 _____ () C:\Users\Public\Desktop\CanoScan Toolbox 5.0.lnk
2015-05-07 21:55 - 2015-05-07 21:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities
2015-05-07 21:55 - 2015-05-07 21:55 - 00000000 ____D () C:\Program Files\Common Files\CANON
2015-05-07 21:55 - 2015-05-07 21:55 - 00000000 ____D () C:\Program Files (x86)\Canon
2015-05-07 21:54 - 2015-05-07 21:54 - 16375640 _____ () C:\Users\alec_2\Downloads\cstbwin5012aea15.exe
2015-05-07 21:54 - 2015-05-07 21:54 - 12783192 _____ () C:\Users\alec_2\Downloads\lide600fvst641212ea15.exe
2015-05-07 21:54 - 2015-05-07 21:54 - 00000000 ___HD () C:\Windows\system32\CanonIJ Uninstaller Information
2015-05-07 21:54 - 2015-05-07 21:54 - 00000000 ___HD () C:\Program Files\CanonBJ
2015-05-07 21:54 - 2015-05-07 21:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CanoScan LiDE 600F
2015-05-07 21:54 - 2007-05-18 15:30 - 00172032 _____ (CANON INC.) C:\Windows\system32\CNQL4802.DLL
2015-05-07 21:54 - 2006-07-20 16:14 - 01336320 _____ (CANON INC.) C:\Windows\system32\CNQC4802.DLL
2015-05-07 21:54 - 2006-07-20 16:14 - 00049664 _____ (CANON INC.) C:\Windows\system32\CNQI4802.DLL
2015-05-07 21:54 - 2006-06-29 14:30 - 00017408 _____ (Canon Inc.) C:\Windows\system32\cnqo4802.dll
2015-05-07 21:30 - 2015-05-07 21:30 - 00001136 _____ () C:\Users\Public\Desktop\FastStone Capture.lnk
2015-05-07 21:30 - 2015-05-07 21:30 - 00000000 ____D () C:\Users\alec_2\AppData\Roaming\FastStone
2015-05-07 21:30 - 2015-05-07 21:30 - 00000000 ____D () C:\Users\alec_2\AppData\Local\FastStone
2015-05-07 21:30 - 2015-05-07 21:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FastStone Capture
2015-05-07 21:30 - 2015-05-07 21:30 - 00000000 ____D () C:\ProgramData\FastStone
2015-05-07 21:30 - 2015-05-07 21:30 - 00000000 ____D () C:\Program Files (x86)\FastStone Capture
2015-05-07 21:28 - 2014-06-09 23:13 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2015-05-07 21:28 - 2014-06-09 23:13 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2015-05-07 21:04 - 2015-05-08 14:01 - 00001111 _____ () C:\Users\Public\Desktop\Network Indicator.lnk
2015-05-07 21:04 - 2015-05-07 21:04 - 00000000 ____D () C:\Users\alec_2\Desktop\network-activity-indicator-setup-64
2015-05-07 21:04 - 2015-05-07 21:04 - 00000000 ____D () C:\Program Files\ITSamples
2015-05-07 21:03 - 2015-05-07 21:03 - 00456100 _____ () C:\Users\alec_2\Desktop\network-activity-indicator-setup-64.zip
2015-05-07 20:59 - 2015-05-08 15:11 - 00000000 ____D () C:\zz_Offline emails
2015-05-07 20:59 - 2015-05-07 21:03 - 00000000 ____D () C:\PSTs
2015-05-07 20:42 - 2015-05-08 12:38 - 00003104 _____ () C:\Windows\System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-812805949-1783070821-1753766748-1003
2015-05-07 20:42 - 2015-05-08 12:38 - 00000000 ___RD () C:\Users\alec_2\OneDrive
2015-05-07 20:42 - 2015-05-07 20:42 - 00000000 ____D () C:\ProgramData\Microsoft OneDrive
2015-05-07 20:36 - 2015-05-07 20:36 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2015-05-07 20:35 - 2015-05-07 20:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2015-05-07 20:33 - 2015-05-07 20:33 - 01076408 _____ (Microsoft Corporation) C:\Users\alec_2\Downloads\Setup.X86.en-US_O365HomePremRetail_11c87201-a408-415e-a018-31678ff47f20_TX_DB_.exe
2015-05-07 20:33 - 2015-05-07 20:33 - 00000000 ____D () C:\Program Files\Microsoft Office 15
2015-05-07 20:19 - 2015-05-07 20:19 - 00002601 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SyncToy 2.1(x64).lnk
2015-05-07 20:19 - 2015-05-07 20:19 - 00000000 ____D () C:\Program Files\SyncToy 2.1
2015-05-07 20:17 - 2015-05-07 20:17 - 00000000 ____D () C:\Program Files\Reference Assemblies
2015-05-07 20:17 - 2015-05-07 20:17 - 00000000 ____D () C:\Program Files\MSBuild
2015-05-07 20:17 - 2015-05-07 20:17 - 00000000 ____D () C:\Program Files (x86)\Reference Assemblies
2015-05-07 20:17 - 2015-05-07 20:17 - 00000000 ____D () C:\Program Files (x86)\MSBuild
2015-05-07 20:16 - 2013-08-03 05:48 - 01166520 _____ (Microsoft Corporation) C:\Windows\system32\PresentationNative_v0300.dll
2015-05-07 20:16 - 2013-08-03 05:48 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-05-07 20:16 - 2013-08-03 05:41 - 00778936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationNative_v0300.dll
2015-05-07 20:16 - 2013-08-03 05:41 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-05-07 20:13 - 2015-05-08 14:45 - 00000000 ____D () C:\Users\alec_2\AppData\Roaming\Everything
2015-05-07 20:13 - 2015-05-07 20:13 - 00001050 _____ () C:\Users\alec_2\Desktop\Search Everything.lnk
2015-05-07 20:13 - 2015-05-07 20:13 - 00000000 ____D () C:\Users\alec_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Everything
2015-05-07 20:13 - 2015-05-07 20:13 - 00000000 ____D () C:\Program Files\Everything
2015-05-07 20:12 - 2015-05-07 20:13 - 00559063 _____ () C:\Users\alec_2\Downloads\Everything-1.3.4.686.x64-Setup.exe
2015-05-07 20:10 - 2015-05-07 20:10 - 01021432 _____ (Microsoft Corporation) C:\Users\alec_2\Downloads\NDP451-KB2859818-Web.exe
2015-05-07 20:07 - 2015-05-07 20:07 - 00000000 ____D () C:\Program Files\Microsoft Sync Framework
2015-05-07 20:02 - 2015-05-07 22:32 - 00000000 ____D () C:\Docs
2015-05-07 19:52 - 2015-05-07 19:52 - 00000000 ____H () C:\Users\alec_2\Documents\Default.rdp
2015-05-07 19:45 - 2015-05-07 19:45 - 00001192 _____ () C:\Users\Public\Desktop\My LastPass Vault.lnk
2015-05-07 19:45 - 2015-05-07 19:45 - 00000000 ____D () C:\Users\alec_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LastPass
2015-05-07 19:45 - 2015-05-07 19:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LastPass
2015-05-07 19:44 - 2015-05-07 19:45 - 00000000 ____D () C:\Program Files (x86)\LastPass
2015-05-07 19:41 - 2015-05-08 18:41 - 00000918 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-05-07 19:41 - 2015-05-08 15:46 - 00000922 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-05-07 19:41 - 2015-05-08 14:34 - 00002324 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2015-05-07 19:41 - 2015-05-07 19:41 - 00003894 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-05-07 19:41 - 2015-05-07 19:41 - 00003658 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-05-07 19:41 - 2015-05-07 19:41 - 00000000 ____D () C:\Users\alec_2\AppData\Local\Google
2015-05-07 19:41 - 2015-05-07 19:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-05-07 19:41 - 2015-05-07 19:41 - 00000000 ____D () C:\Program Files (x86)\Google
2015-05-07 19:29 - 2015-05-07 19:29 - 00000000 ____D () C:\Users\alec_2\AppData\Local\TeamViewer
2015-05-07 19:26 - 2015-05-07 19:26 - 00001104 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 10.lnk
2015-05-07 19:26 - 2015-05-07 19:26 - 00001092 _____ () C:\Users\Public\Desktop\TeamViewer 10.lnk
2015-05-07 19:26 - 2015-05-07 19:26 - 00000000 ____D () C:\Program Files (x86)\TeamViewer
2015-05-07 19:19 - 2015-05-07 19:19 - 00001984 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Avant Browser.lnk
2015-05-07 19:19 - 2015-05-07 19:19 - 00001978 _____ () C:\Users\Public\Desktop\Avant Browser.lnk
2015-05-07 19:19 - 2015-05-07 19:19 - 00000000 ____D () C:\Users\alec_2\AppData\Roaming\Avant Downloader
2015-05-07 19:19 - 2015-05-07 19:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avant Browser
2015-05-07 19:18 - 2015-05-07 19:19 - 00000000 ____D () C:\Program Files (x86)\Avant Browser
2015-05-07 19:17 - 2015-05-07 19:17 - 05335862 _____ () C:\Users\alec_2\Desktop\txpeng740-64.zip
2015-05-07 19:17 - 2015-05-07 19:17 - 00001018 _____ () C:\Users\alec_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TextPad.lnk
2015-05-07 19:17 - 2015-05-07 19:17 - 00000000 ____D () C:\Users\alec_2\AppData\Roaming\Helios
2015-05-07 19:17 - 2015-05-07 19:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TextPad
2015-05-07 19:17 - 2015-05-07 19:17 - 00000000 ____D () C:\Program Files\TextPad 7
2015-05-07 19:16 - 2015-05-07 19:16 - 00003828 _____ () C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1431022559
2015-05-07 19:16 - 2015-05-07 19:16 - 00001196 _____ () C:\Users\Public\Desktop\Opera.lnk
2015-05-07 19:16 - 2015-05-07 19:16 - 00001196 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2015-05-07 19:16 - 2015-05-07 19:16 - 00000000 ____D () C:\Users\alec_2\AppData\Roaming\Opera Software
2015-05-07 19:16 - 2015-05-07 19:16 - 00000000 ____D () C:\Users\alec_2\AppData\Local\Opera Software
2015-05-07 19:15 - 2015-05-07 21:48 - 00000000 ____D () C:\Program Files (x86)\Opera
2015-05-07 19:08 - 2015-05-08 00:16 - 00000000 ____D () C:\Windows\Panther
2015-05-07 19:08 - 2015-05-07 19:08 - 00000000 ____D () C:\Users\alec_2\Tracing
2015-05-07 19:07 - 2015-05-08 12:14 - 00000000 ____D () C:\Users\alec_2\AppData\Roaming\Skype
2015-05-07 19:07 - 2015-05-07 19:07 - 00000000 ____D () C:\Users\alec_2\AppData\Local\Skype
2015-05-07 19:06 - 2015-05-07 21:44 - 00000000 ____D () C:\ProgramData\Skype
2015-05-07 19:06 - 2015-05-07 19:06 - 00002713 _____ () C:\Users\Public\Desktop\Skype.lnk
2015-05-07 19:06 - 2015-05-07 19:06 - 00000000 ___RD () C:\Program Files (x86)\Skype
2015-05-07 19:06 - 2015-05-07 19:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-05-07 19:06 - 2015-05-07 19:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2015-05-07 19:05 - 2015-05-07 19:05 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2015-05-07 19:05 - 2015-05-07 19:05 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2015-05-07 19:04 - 2015-01-06 04:01 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys
2015-05-07 19:04 - 2015-01-06 03:59 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys
2015-05-07 19:04 - 2015-01-06 02:12 - 00185856 _____ (Microsoft Corporation) C:\Windows\system32\rascfg.dll
2015-05-07 19:04 - 2015-01-06 02:02 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rascfg.dll
2015-05-07 19:04 - 2014-04-16 00:35 - 00028352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aspnet_counters.dll
2015-05-07 19:04 - 2014-04-16 00:34 - 00029888 _____ (Microsoft Corporation) C:\Windows\system32\aspnet_counters.dll
2015-05-07 19:03 - 2015-04-24 22:32 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll
2015-05-07 19:03 - 2015-04-10 01:34 - 02256896 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2015-05-07 19:03 - 2015-04-10 01:11 - 01943040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2015-05-07 19:03 - 2015-04-03 01:35 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\PhotoMetadataHandler.dll
2015-05-07 19:03 - 2015-04-03 01:14 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhotoMetadataHandler.dll
2015-05-07 19:03 - 2015-04-01 23:22 - 02985984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbgeng.dll
2015-05-07 19:03 - 2015-04-01 23:20 - 04417536 _____ (Microsoft Corporation) C:\Windows\system32\dbgeng.dll
2015-05-07 19:03 - 2015-04-01 04:45 - 01491456 _____ (Microsoft Corporation) C:\Windows\system32\dbghelp.dll
2015-05-07 19:03 - 2015-04-01 03:31 - 01207296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbghelp.dll
2015-05-07 19:03 - 2015-03-20 02:56 - 00080384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ahcache.sys
2015-05-07 19:03 - 2015-03-17 18:26 - 00467776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS
2015-05-07 19:03 - 2015-03-14 03:03 - 04179968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-05-07 19:03 - 2015-03-13 05:03 - 00239424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys
2015-05-07 19:03 - 2015-03-13 05:03 - 00154432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys
2015-05-07 19:03 - 2015-03-13 03:59 - 00430080 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-05-07 19:03 - 2015-03-13 03:38 - 00358912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-05-07 19:03 - 2015-03-13 03:02 - 00316416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys
2015-05-07 19:03 - 2015-03-13 02:11 - 02162176 _____ (Microsoft Corporation) C:\Windows\system32\SRH.dll
2015-05-07 19:03 - 2015-03-13 01:39 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SRH.dll
2015-05-07 19:03 - 2015-03-11 02:49 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\sdbinst.exe
2015-05-07 19:03 - 2015-03-11 02:09 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sdbinst.exe
2015-05-07 19:03 - 2015-03-09 03:02 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthhfenum.sys
2015-05-07 19:03 - 2015-03-06 04:08 - 02067968 _____ (Microsoft Corporation) C:\Windows\system32\wpdshext.dll
2015-05-07 19:03 - 2015-03-06 03:47 - 01696256 _____ (Microsoft Corporation) C:\Windows\system32\wevtsvc.dll
2015-05-07 19:03 - 2015-03-06 03:43 - 01969664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpdshext.dll
2015-05-07 19:03 - 2015-03-05 00:09 - 01429504 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2015-05-07 19:03 - 2015-03-04 02:32 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Input.Inking.dll
2015-05-07 19:03 - 2015-03-04 02:12 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Input.Inking.dll
2015-05-07 19:03 - 2015-02-18 00:19 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\dpapisrv.dll
2015-05-07 19:03 - 2015-02-13 03:22 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2015-05-07 19:03 - 2015-02-13 02:46 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2015-05-07 19:03 - 2015-01-30 01:53 - 02819584 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers.dll
2015-05-07 19:03 - 2014-11-17 21:17 - 00672984 _____ (Microsoft Corporation) C:\Windows\system32\MDMAgent.exe
2015-05-07 19:03 - 2014-11-17 21:17 - 00273240 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlows.exe
2015-05-07 19:03 - 2014-11-15 20:05 - 00801584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2015-05-07 19:03 - 2014-11-15 07:29 - 00962216 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2015-05-07 19:03 - 2014-11-14 07:58 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsDatabase.dll
2015-05-07 19:03 - 2014-11-14 07:57 - 01027584 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll
2015-05-07 19:03 - 2014-11-14 07:54 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.Handlers.dll
2015-05-07 19:03 - 2014-11-14 07:46 - 02171904 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlowUI.dll
2015-05-07 19:03 - 2014-11-14 06:03 - 00885760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
2015-05-07 19:03 - 2014-11-10 19:06 - 02485056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2015-05-07 19:03 - 2014-11-10 19:06 - 00473408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2015-05-07 19:03 - 2014-11-10 19:06 - 00428864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2015-05-07 19:03 - 2014-11-10 19:06 - 00136512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys
2015-05-07 19:03 - 2014-11-10 03:57 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\agilevpn.sys
2015-05-07 19:03 - 2014-11-10 02:37 - 00845312 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL
2015-05-07 19:03 - 2014-11-10 02:34 - 01084416 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2015-05-07 19:03 - 2014-11-10 02:26 - 00422400 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2015-05-07 19:03 - 2014-11-10 02:20 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll
2015-05-07 19:03 - 2014-11-10 02:09 - 00272384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
2015-05-07 19:03 - 2014-11-10 02:08 - 00702464 _____ (Microsoft Corporation) C:\Windows\system32\rasapi32.dll
2015-05-07 19:03 - 2014-11-10 02:06 - 00713216 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2015-05-07 19:03 - 2014-11-10 01:57 - 00624640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasapi32.dll
2015-05-07 19:03 - 2014-11-10 01:57 - 00561664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2015-05-07 19:03 - 2014-11-08 05:00 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndistapi.sys
2015-05-07 19:03 - 2014-11-08 04:58 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rasl2tp.sys
2015-05-07 19:03 - 2014-11-08 04:56 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\kmddsp.tsp
2015-05-07 19:03 - 2014-11-08 04:56 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\rasmxs.dll
2015-05-07 19:03 - 2014-11-08 04:56 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\rasser.dll
2015-05-07 19:03 - 2014-11-08 04:24 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\rasdiag.dll
2015-05-07 19:03 - 2014-11-08 04:13 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kmddsp.tsp
2015-05-07 19:03 - 2014-11-08 04:13 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasmxs.dll
2015-05-07 19:03 - 2014-11-08 04:13 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasser.dll
2015-05-07 19:03 - 2014-11-08 03:48 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasdiag.dll
2015-05-07 19:03 - 2014-11-08 03:38 - 00166912 _____ (Microsoft Corporation) C:\Windows\system32\AppxAllUserStore.dll
2015-05-07 19:03 - 2014-11-08 03:17 - 00143360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxAllUserStore.dll
2015-05-07 19:03 - 2014-11-08 03:03 - 00733696 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveTelemetry.dll
2015-05-07 19:03 - 2014-11-08 02:58 - 04837376 _____ (Microsoft Corporation) C:\Windows\system32\SyncEngine.dll
2015-05-07 19:03 - 2014-11-08 02:49 - 01154048 _____ (Microsoft Corporation) C:\Windows\system32\SkyDrive.exe
2015-05-07 19:03 - 2014-11-07 04:58 - 00952896 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll
2015-05-07 19:03 - 2014-11-07 04:20 - 00786120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll
2015-05-07 19:03 - 2014-11-05 03:12 - 00211968 _____ (Microsoft Corporation) C:\Windows\system32\QSHVHOST.DLL
2015-05-07 19:03 - 2014-11-05 03:12 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\QSVRMGMT.DLL
2015-05-07 19:03 - 2014-11-05 03:06 - 00514048 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairing.dll
2015-05-07 19:03 - 2014-11-05 02:44 - 00657920 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2015-05-07 19:03 - 2014-11-05 02:43 - 00252416 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
2015-05-07 19:03 - 2014-11-05 02:41 - 00558080 _____ (Microsoft Corporation) C:\Windows\system32\untfs.dll
2015-05-07 19:03 - 2014-11-05 02:39 - 00155648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QSHVHOST.DLL
2015-05-07 19:03 - 2014-11-05 02:39 - 00094208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QSVRMGMT.DLL
2015-05-07 19:03 - 2014-11-05 02:33 - 00465408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DevicePairing.dll
2015-05-07 19:03 - 2014-11-05 02:21 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\WSDApi.dll
2015-05-07 19:03 - 2014-11-05 02:20 - 00498688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2015-05-07 19:03 - 2014-11-05 02:18 - 00507392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\untfs.dll
2015-05-07 19:03 - 2014-11-05 02:14 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\WSDMon.dll
2015-05-07 19:03 - 2014-11-05 02:06 - 00555520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSDApi.dll
2015-05-07 19:03 - 2014-11-04 20:33 - 00058176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dam.sys
2015-05-07 19:03 - 2014-11-04 20:25 - 00059712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\kbdclass.sys
2015-05-07 19:03 - 2014-11-04 20:25 - 00051008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mouclass.sys
2015-05-07 19:03 - 2014-11-04 07:55 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sermouse.sys
2015-05-07 19:03 - 2014-11-04 07:54 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\i8042prt.sys
2015-05-07 19:03 - 2014-11-04 07:54 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\kbdhid.sys
2015-05-07 19:03 - 2014-11-04 07:54 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mouhid.sys
2015-05-07 19:03 - 2014-11-04 07:27 - 00128512 _____ (Microsoft Corporation) C:\Windows\splwow64.exe
2015-05-07 19:03 - 2014-11-04 06:01 - 00827392 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2015-05-07 19:03 - 2014-10-31 01:51 - 18823168 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2015-05-07 19:03 - 2014-10-31 01:10 - 15158784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2015-05-07 19:03 - 2014-10-29 04:05 - 00551232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhdmp.sys
2015-05-07 19:03 - 2014-10-29 02:55 - 00242176 _____ (Microsoft Corporation) C:\Windows\system32\WinSCard.dll
2015-05-07 19:03 - 2014-10-29 02:13 - 00169984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSCard.dll
2015-05-07 19:03 - 2014-10-21 02:59 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\eventcls.dll
2015-05-07 19:03 - 2014-10-21 02:19 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eventcls.dll
2015-05-07 19:03 - 2014-10-21 01:50 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\vsstrace.dll
2015-05-07 19:03 - 2014-10-21 01:31 - 01574400 _____ (Microsoft Corporation) C:\Windows\system32\vssapi.dll
2015-05-07 19:03 - 2014-10-21 01:31 - 00055296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vsstrace.dll
2015-05-07 19:03 - 2014-10-21 01:30 - 01454080 _____ (Microsoft Corporation) C:\Windows\system32\VSSVC.exe
2015-05-07 19:03 - 2014-10-21 01:20 - 01142272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vssapi.dll
2015-05-07 19:03 - 2014-10-17 05:56 - 00039744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys
2015-05-07 19:03 - 2014-10-17 04:35 - 00086336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys
2015-05-07 19:02 - 2015-03-13 01:29 - 00410017 _____ () C:\Windows\system32\ApnDatabase.xml
2015-05-07 18:58 - 2015-05-07 18:59 - 00000000 ___SD () C:\Windows\system32\GWX
2015-05-07 18:58 - 2015-05-07 18:58 - 00000000 ___SD () C:\Windows\SysWOW64\GWX
2015-05-07 18:58 - 2015-05-07 18:58 - 00000000 ____D () C:\Windows\system32\appraiser
2015-05-07 18:52 - 2015-05-07 18:53 - 00000000 ____D () C:\Windows\system32\MRT
2015-05-07 18:52 - 2015-04-01 11:16 - 128913832 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-05-07 18:47 - 2015-03-03 14:17 - 00295552 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2015-05-07 18:38 - 2015-05-07 18:38 - 00000000 ____D () C:\Users\Alec\AppData\Roaming\Ditto
2015-05-07 18:37 - 2015-05-08 18:41 - 00000000 ____D () C:\Users\alec_2\AppData\Roaming\Ditto
2015-05-07 18:37 - 2015-05-07 18:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ditto
2015-05-07 18:37 - 2015-05-07 18:37 - 00000000 ____D () C:\Program Files\Ditto
2015-05-07 18:35 - 2015-05-07 18:35 - 00000000 __SHD () C:\Users\alec_2\AppData\Local\EmieUserList
2015-05-07 18:35 - 2015-05-07 18:35 - 00000000 __SHD () C:\Users\alec_2\AppData\Local\EmieSiteList
2015-05-07 18:35 - 2015-05-07 18:35 - 00000000 __SHD () C:\Users\alec_2\AppData\Local\EmieBrowserModeList
2015-05-07 18:35 - 2015-05-07 18:35 - 00000000 ____D () C:\Users\alec_2\AppData\Roaming\Macromedia
2015-05-07 18:29 - 2015-05-08 18:20 - 00003596 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-812805949-1783070821-1753766748-1003
2015-05-07 18:28 - 2015-05-08 18:51 - 00000000 ____D () C:\Users\alec_2\AppData\Local\ClassicShell
2015-05-07 18:28 - 2015-05-07 18:28 - 00000000 ____D () C:\Users\alec_2\AppData\Roaming\Mozilla
2015-05-07 18:28 - 2015-05-07 18:28 - 00000000 ____D () C:\Users\alec_2\AppData\Roaming\ClassicShell
2015-05-07 18:28 - 2015-05-07 18:28 - 00000000 ____D () C:\Users\alec_2\AppData\Local\Mozilla
2015-05-07 18:24 - 2015-05-08 18:41 - 00000000 ____D () C:\Users\alec_2\AppData\Roaming\Raptr
2015-05-07 18:24 - 2015-05-08 11:27 - 00000000 ____D () C:\Users\alec_2\AppData\Local\Packages
2015-05-07 18:24 - 2015-05-08 00:38 - 00000000 ____D () C:\Users\alec_2
2015-05-07 18:24 - 2015-05-07 20:34 - 00000000 ____D () C:\Users\alec_2\AppData\Local\VirtualStore
2015-05-07 18:24 - 2015-05-07 18:24 - 00001491 _____ () C:\Users\alec_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-05-07 18:24 - 2015-05-07 18:24 - 00000020 ___SH () C:\Users\alec_2\ntuser.ini
2015-05-07 18:24 - 2015-05-07 18:24 - 00000000 ____D () C:\Users\alec_2\AppData\Roaming\ATI
2015-05-07 18:24 - 2015-05-07 18:24 - 00000000 ____D () C:\Users\alec_2\AppData\Roaming\Adobe
2015-05-07 18:24 - 2015-05-07 18:24 - 00000000 ____D () C:\Users\alec_2\AppData\Local\ATI
2015-05-07 18:24 - 2014-11-22 06:25 - 00000000 ___RD () C:\Users\alec_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-05-07 18:24 - 2014-11-22 06:25 - 00000000 ___RD () C:\Users\alec_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-05-07 18:24 - 2014-11-22 06:25 - 00000000 ___RD () C:\Users\alec_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-05-07 18:24 - 2014-11-22 02:02 - 00000369 _____ () C:\Users\alec_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2015-05-07 18:24 - 2014-11-22 02:02 - 00000369 _____ () C:\Users\alec_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2015-05-07 18:24 - 2013-08-22 16:36 - 00000000 ____D () C:\Users\alec_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-05-07 18:09 - 2015-05-07 18:09 - 00000000 __SHD () C:\Recovery
2015-05-07 18:05 - 2015-05-07 18:05 - 00000000 ____D () C:\ProgramData\ATI
2015-05-07 18:01 - 2015-05-07 18:39 - 00000000 ____D () C:\Users\Alec\AppData\Roaming\Raptr
2015-05-07 18:01 - 2015-05-07 18:38 - 00000000 ____D () C:\Users\Alec\AppData\Local\ClassicShell
2015-05-07 18:01 - 2015-05-07 18:01 - 00000000 ____D () C:\Users\Alec\AppData\Roaming\library_dir
2015-05-07 18:01 - 2015-05-07 18:01 - 00000000 ____D () C:\Users\Alec\AppData\Roaming\ClassicShell
2015-05-07 18:01 - 2015-05-07 18:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Gaming Evolved
2015-05-07 18:01 - 2015-05-07 18:01 - 00000000 ____D () C:\ProgramData\ClassicShell
2015-05-07 18:01 - 2015-05-07 18:01 - 00000000 ____D () C:\Program Files (x86)\Raptr
2015-05-07 18:00 - 2015-05-07 18:00 - 00059756 _____ () C:\Windows\SysWOW64\CCCInstall_201505071800019189.log
2015-05-07 18:00 - 2015-05-07 18:00 - 00053564 _____ () C:\Windows\SysWOW64\CCCInstall_201505071800515900.log
2015-05-07 18:00 - 2015-05-07 18:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
2015-05-07 18:00 - 2015-05-07 18:00 - 00000000 ____D () C:\ProgramData\AMD
2015-05-07 18:00 - 2015-05-07 18:00 - 00000000 ____D () C:\Program Files\Common Files\ATI Technologies
2015-05-07 18:00 - 2015-05-07 18:00 - 00000000 ____D () C:\Program Files (x86)\AMD AVT
2015-05-07 18:00 - 2015-05-07 18:00 - 00000000 ____D () C:\Program Files (x86)\AMD
2015-05-07 17:59 - 2015-05-07 17:59 - 00000000 ____D () C:\Users\Alec\AppData\Roaming\ATI
2015-05-07 17:59 - 2015-05-07 17:59 - 00000000 ____D () C:\Users\Alec\AppData\Local\ATI
2015-05-07 17:56 - 2015-02-04 00:58 - 00264000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys
2015-05-07 17:56 - 2015-02-04 00:58 - 00114496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdNisDrv.sys
2015-05-07 17:56 - 2015-02-04 00:58 - 00044024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys
2015-05-07 17:56 - 2015-02-03 00:53 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\winshfhc.dll
2015-05-07 17:56 - 2015-02-03 00:53 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winshfhc.dll
2015-05-07 17:56 - 2015-01-27 04:44 - 00933888 _____ (Microsoft Corporation) C:\Windows\system32\calc.exe
2015-05-07 17:56 - 2015-01-24 02:51 - 00816128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\calc.exe
2015-05-07 17:56 - 2014-11-10 03:29 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSetupStatusProvider.dll
2015-05-07 17:56 - 2014-11-10 02:51 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceSetupStatusProvider.dll
2015-05-07 17:56 - 2014-10-31 00:39 - 01970432 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2015-05-07 17:56 - 2014-10-31 00:38 - 01612992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2015-05-07 17:55 - 2015-03-23 22:59 - 07476032 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-05-07 17:55 - 2015-03-23 22:59 - 01733952 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-05-07 17:55 - 2015-03-23 22:59 - 00360480 _____ (Microsoft Corporation) C:\Windows\system32\sechost.dll
2015-05-07 17:55 - 2015-03-23 22:58 - 01498872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-05-07 17:55 - 2015-03-23 22:45 - 00257216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sechost.dll
2015-05-07 17:55 - 2015-03-20 05:12 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-system-events.dll
2015-05-07 17:55 - 2015-03-20 05:10 - 00285184 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2015-05-07 17:55 - 2015-03-20 05:10 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2015-05-07 17:55 - 2015-03-20 04:17 - 00411648 _____ (Microsoft Corporation) C:\Windows\system32\tracerpt.exe
2015-05-07 17:55 - 2015-03-20 03:41 - 00369152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tracerpt.exe
2015-05-07 17:55 - 2015-03-20 03:40 - 00950784 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2015-05-07 17:55 - 2015-03-20 03:16 - 00749568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2015-05-07 17:55 - 2015-03-14 09:20 - 01385256 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2015-05-07 17:55 - 2015-03-14 09:13 - 01124352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2015-05-07 17:55 - 2015-03-13 04:42 - 19695616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-05-07 17:55 - 2015-03-13 04:28 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-05-07 17:55 - 2015-03-13 04:08 - 00720384 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-05-07 17:55 - 2015-03-13 03:44 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-05-07 17:55 - 2015-03-13 03:16 - 01311232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-05-07 17:55 - 2015-02-21 01:27 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-05-07 17:55 - 2015-02-21 01:27 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2015-05-07 17:55 - 2015-02-21 00:49 - 00780800 _____ (Microsoft Corporation) C:\Windows\system32\lsm.dll
2015-05-07 17:55 - 2015-02-21 00:32 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-05-07 17:55 - 2015-02-20 04:03 - 00358912 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-05-07 17:55 - 2015-02-20 03:58 - 00044032 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-05-07 17:55 - 2015-02-20 03:20 - 00301056 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-05-07 17:55 - 2015-02-20 03:15 - 00035840 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-05-07 17:55 - 2015-02-20 03:07 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2015-05-07 17:55 - 2015-02-20 03:06 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-05-07 17:55 - 2015-02-05 21:24 - 01113920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2015-05-07 17:55 - 2015-01-31 00:42 - 03097600 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2015-05-07 17:55 - 2015-01-31 00:29 - 02484224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll
2015-05-07 17:55 - 2015-01-30 04:01 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidbth.sys
2015-05-07 17:55 - 2015-01-29 02:58 - 00347136 _____ (Microsoft Corporation) C:\Windows\system32\photowiz.dll
2015-05-07 17:55 - 2015-01-29 02:29 - 00290816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\photowiz.dll
2015-05-07 17:55 - 2015-01-23 08:17 - 00723072 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll
2015-05-07 17:55 - 2015-01-23 06:02 - 00560392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll
2015-05-07 17:55 - 2015-01-15 23:43 - 00563504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-05-07 17:55 - 2015-01-15 23:43 - 00177984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-05-07 17:55 - 2015-01-12 02:23 - 00327168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-05-07 17:55 - 2014-12-19 09:57 - 00788680 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2015-05-07 17:55 - 2014-12-19 09:25 - 00602776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2015-05-07 17:55 - 2014-12-19 07:26 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2015-05-07 17:55 - 2014-12-13 22:28 - 00513488 _____ () C:\Windows\SysWOW64\locale.nls
2015-05-07 17:55 - 2014-12-13 22:28 - 00513488 _____ () C:\Windows\system32\locale.nls
2015-05-07 17:55 - 2014-12-12 03:04 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2015-05-07 17:55 - 2014-12-09 04:45 - 00393728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll
2015-05-07 17:55 - 2014-12-09 02:56 - 00538624 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2015-05-07 17:55 - 2014-12-09 02:50 - 00225280 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2015-05-07 17:55 - 2014-10-29 02:57 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2015-05-07 17:55 - 2014-10-29 02:15 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2015-05-07 17:55 - 2014-10-29 02:15 - 00005632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2015-05-07 17:55 - 2014-10-29 02:14 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2015-05-07 17:55 - 2014-10-29 02:13 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2015-05-07 17:55 - 2014-10-29 02:13 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2015-05-07 17:54 - 2015-03-13 05:32 - 24980480 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-05-07 17:54 - 2015-03-13 05:08 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-05-07 17:54 - 2015-03-13 05:07 - 02886144 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-05-07 17:54 - 2015-03-13 04:53 - 00816128 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-05-07 17:54 - 2015-03-13 04:50 - 06025216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-05-07 17:54 - 2015-03-13 04:26 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-05-07 17:54 - 2015-03-13 04:22 - 02278400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-05-07 17:54 - 2015-03-13 04:17 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2015-05-07 17:54 - 2015-03-13 04:16 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-05-07 17:54 - 2015-03-13 04:07 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-05-07 17:54 - 2015-03-13 04:00 - 14397440 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-05-07 17:54 - 2015-03-13 03:50 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2015-05-07 17:54 - 2015-03-13 03:49 - 04305408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-05-07 17:54 - 2015-03-13 03:45 - 02358784 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-05-07 17:54 - 2015-03-13 03:34 - 12825600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-05-07 17:54 - 2015-03-13 03:33 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-05-07 17:54 - 2015-03-13 03:22 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-05-07 17:54 - 2015-03-13 03:20 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-05-07 17:54 - 2015-03-13 03:14 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-05-07 17:54 - 2015-02-20 03:47 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-05-07 17:54 - 2015-02-20 03:34 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-05-07 17:54 - 2015-02-20 03:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-05-07 17:54 - 2015-02-20 02:52 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-05-07 17:54 - 2015-02-20 02:49 - 00374272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-05-07 17:54 - 2015-02-20 02:46 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-05-07 17:54 - 2015-02-20 02:29 - 02865152 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2015-05-07 17:54 - 2015-02-20 02:26 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2015-05-07 17:54 - 2015-02-20 02:24 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-05-07 17:54 - 2015-02-03 01:03 - 03551744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_47.dll
2015-05-07 17:54 - 2015-02-03 01:02 - 04298240 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_47.dll
2015-05-07 17:54 - 2015-01-30 03:03 - 01488896 _____ (Microsoft Corporation) C:\Windows\system32\mfc42u.dll
2015-05-07 17:54 - 2015-01-30 03:03 - 01464832 _____ (Microsoft Corporation) C:\Windows\system32\mfc42.dll
2015-05-07 17:54 - 2015-01-30 02:44 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42u.dll
2015-05-07 17:54 - 2015-01-30 02:42 - 01204224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42.dll
2015-05-07 17:54 - 2015-01-30 02:29 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\atlthunk.dll
2015-05-07 17:54 - 2015-01-29 01:59 - 02773504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-05-07 17:54 - 2015-01-29 01:49 - 02459136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2015-05-07 17:54 - 2015-01-28 03:24 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\StorageContextHandler.dll
2015-05-07 17:54 - 2015-01-28 02:47 - 00060928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StorageContextHandler.dll
2015-05-07 17:54 - 2015-01-19 19:42 - 01487976 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2015-05-07 17:54 - 2015-01-12 03:21 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-05-07 17:54 - 2015-01-12 02:45 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-05-07 17:54 - 2014-12-06 04:17 - 00360448 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2015-05-07 17:54 - 2014-12-06 02:41 - 00391680 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2015-05-07 17:54 - 2014-11-22 03:49 - 00417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-05-07 17:54 - 2014-11-22 03:06 - 00340992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-05-07 17:52 - 2015-03-13 03:58 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
2015-05-07 17:52 - 2015-03-13 03:37 - 00208896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll
2015-05-07 17:52 - 2015-01-31 00:20 - 00203264 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2015-05-07 17:52 - 2015-01-29 02:11 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-05-07 17:52 - 2015-01-29 02:00 - 00210944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-05-07 17:52 - 2015-01-29 01:55 - 00971776 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll
2015-05-07 17:52 - 2015-01-29 01:50 - 00811008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll
2015-05-07 17:52 - 2015-01-27 05:22 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2015-05-07 17:52 - 2015-01-27 03:11 - 03547648 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2015-05-07 17:51 - 2015-01-30 03:02 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\eappgnui.dll
2015-05-07 17:51 - 2015-01-30 02:40 - 00091648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappgnui.dll
2015-05-07 17:51 - 2015-01-30 02:37 - 00331776 _____ (Microsoft Corporation) C:\Windows\system32\eapp3hst.dll
2015-05-07 17:51 - 2015-01-30 02:24 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\eapphost.dll
2015-05-07 17:51 - 2015-01-30 02:24 - 00250880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapp3hst.dll
2015-05-07 17:51 - 2015-01-30 02:16 - 00266752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapphost.dll
2015-05-07 17:51 - 2015-01-30 02:08 - 00346112 _____ (Microsoft Corporation) C:\Windows\system32\eappcfg.dll
2015-05-07 17:51 - 2015-01-30 02:06 - 00278016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappcfg.dll
2015-05-07 17:51 - 2014-10-30 23:37 - 00129536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2015-05-07 17:51 - 2014-10-30 23:34 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2015-05-07 17:50 - 2015-02-24 09:32 - 00991552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2015-05-07 17:50 - 2015-02-12 18:40 - 22291584 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-05-07 17:50 - 2015-02-12 18:34 - 19731824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2015-05-07 17:50 - 2015-01-29 19:45 - 01763352 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-05-07 17:50 - 2015-01-29 19:34 - 01488040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2015-05-07 17:50 - 2014-12-11 06:36 - 00046456 _____ (Microsoft Corporation) C:\Windows\system32\LockScreenContentServer.exe
2015-05-07 17:49 - 2015-02-08 00:57 - 01090048 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll
2015-05-07 17:49 - 2015-02-08 00:49 - 00791040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll
2015-05-07 17:49 - 2015-01-28 02:31 - 00402432 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2015-05-07 17:49 - 2015-01-28 02:11 - 00357376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2015-05-07 17:48 - 2015-03-22 23:45 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-05-07 17:48 - 2015-03-22 23:09 - 01111552 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-05-07 17:48 - 2015-03-22 23:09 - 00957440 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-05-07 17:48 - 2015-03-22 23:09 - 00769024 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-05-07 17:48 - 2015-03-22 23:09 - 00726528 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-05-07 17:48 - 2015-03-22 23:09 - 00419328 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-05-07 17:48 - 2015-03-22 23:09 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2015-05-07 17:48 - 2015-03-04 11:25 - 00377152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys
2015-05-07 17:48 - 2015-03-04 04:04 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\clfsw32.dll
2015-05-07 17:48 - 2015-03-04 03:19 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clfsw32.dll
2015-05-07 17:48 - 2015-01-28 00:47 - 02501368 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2015-05-07 17:48 - 2015-01-28 00:41 - 02207488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2015-05-07 17:48 - 2014-12-08 20:42 - 00535640 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2015-05-07 17:48 - 2014-12-08 20:42 - 00531616 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2015-05-07 17:48 - 2014-12-08 20:42 - 00448792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2015-05-07 17:48 - 2014-12-08 20:42 - 00413248 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll
2015-05-07 17:48 - 2014-12-08 20:42 - 00372408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll
2015-05-07 17:48 - 2014-12-08 20:42 - 00108944 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2015-05-07 17:48 - 2014-12-08 20:42 - 00038264 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe
2015-05-07 17:48 - 2014-12-08 20:42 - 00033584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFaultSecure.exe
2015-05-07 17:48 - 2014-12-06 02:35 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2015-05-07 17:48 - 2014-12-03 00:09 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2015-05-07 17:48 - 2014-11-10 00:19 - 00991232 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-05-07 17:48 - 2014-11-10 00:19 - 00806400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-05-07 17:48 - 2014-07-24 04:20 - 00875688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr120_clr0400.dll
2015-05-07 17:48 - 2014-07-24 04:20 - 00869544 _____ (Microsoft Corporation) C:\Windows\system32\msvcr120_clr0400.dll
2015-05-07 17:45 - 2015-05-07 17:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classic Shell
2015-05-07 17:45 - 2015-05-07 17:45 - 00000000 ____D () C:\Program Files\Classic Shell
2015-05-07 17:39 - 2015-05-07 17:39 - 00060601 _____ () C:\Windows\SysWOW64\CCCInstall_201505071739094798.log
2015-05-07 17:38 - 2015-05-07 17:38 - 00000000 ____D () C:\ProgramData\Package Cache
2015-05-07 17:38 - 2015-01-29 02:04 - 01091072 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2015-05-07 17:38 - 2015-01-29 02:04 - 00864256 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2015-05-07 17:36 - 2015-05-08 16:00 - 00000000 ____D () C:\Program Files\Common Files\logishrd
2015-05-07 17:36 - 2015-05-07 21:41 - 00008145 _____ () C:\Windows\system32\lvcoinst.log
2015-05-07 17:32 - 2015-05-07 17:59 - 00000000 ____D () C:\Program Files\AMD
2015-05-07 17:32 - 2015-05-07 17:57 - 00000000 ____D () C:\AMD
2015-05-07 17:32 - 2015-05-07 17:32 - 00000000 _____ () C:\Windows\ativpsrm.bin
2015-05-07 17:28 - 2015-05-08 14:34 - 00001159 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2015-05-07 17:28 - 2015-05-07 17:28 - 00001171 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-05-07 17:28 - 2015-05-07 17:28 - 00000000 ____D () C:\Users\Alec\AppData\Roaming\Mozilla
2015-05-07 17:28 - 2015-05-07 17:28 - 00000000 ____D () C:\Users\Alec\AppData\Local\Mozilla
2015-05-07 17:28 - 2015-05-07 17:28 - 00000000 ____D () C:\ProgramData\Mozilla
2015-05-07 17:28 - 2015-05-07 17:28 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2015-05-07 17:28 - 2015-05-07 17:28 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2015-05-07 17:27 - 2015-05-07 18:20 - 00003596 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-812805949-1783070821-1753766748-1001
2015-05-07 17:27 - 2015-05-07 17:27 - 00000000 __SHD () C:\Users\Alec\AppData\Local\EmieUserList
2015-05-07 17:27 - 2015-05-07 17:27 - 00000000 __SHD () C:\Users\Alec\AppData\Local\EmieSiteList
2015-05-07 17:27 - 2015-05-07 17:27 - 00000000 __SHD () C:\Users\Alec\AppData\Local\EmieBrowserModeList
2015-05-07 17:27 - 2015-05-07 17:27 - 00000000 ____D () C:\Users\Alec\AppData\Roaming\Macromedia
2015-05-07 17:26 - 2015-05-07 18:38 - 00000000 ___RD () C:\Users\Alec\OneDrive
2015-05-07 17:22 - 2015-05-07 18:24 - 00000000 ____D () C:\Windows\System32\Tasks\WPD
2015-05-07 17:22 - 2015-05-07 17:22 - 00001442 _____ () C:\Users\Alec\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-05-07 17:22 - 2015-05-07 17:22 - 00000000 ____D () C:\Users\Alec\AppData\Roaming\Adobe
2015-05-07 17:22 - 2015-05-07 17:22 - 00000000 ____D () C:\Users\Alec\AppData\Local\VirtualStore
2015-05-07 17:22 - 2015-05-07 17:22 - 00000000 ____D () C:\Users\Alec\AppData\Local\Packages
2015-05-07 17:21 - 2015-05-07 17:26 - 00000000 ____D () C:\Users\Alec
2015-05-07 17:21 - 2015-05-07 17:21 - 00000020 ___SH () C:\Users\Alec\ntuser.ini
2015-05-07 17:21 - 2014-11-22 06:25 - 00000000 ___RD () C:\Users\Alec\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-05-07 17:21 - 2014-11-22 06:25 - 00000000 ___RD () C:\Users\Alec\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-05-07 17:21 - 2014-11-22 06:25 - 00000000 ___RD () C:\Users\Alec\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-05-07 17:21 - 2014-11-22 02:02 - 00000369 _____ () C:\Users\Alec\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2015-05-07 17:21 - 2014-11-22 02:02 - 00000369 _____ () C:\Users\Alec\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2015-05-07 17:21 - 2013-08-22 16:36 - 00000000 ____D () C:\Users\Alec\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-05-07 17:13 - 2015-03-14 09:54 - 00133256 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-05-07 17:13 - 2015-03-14 02:56 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-05-07 17:13 - 2015-03-14 02:56 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-05-07 17:13 - 2015-03-14 02:51 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2015-05-07 17:13 - 2015-03-14 02:37 - 00267264 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2015-05-07 17:13 - 2015-03-14 02:14 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2015-05-07 17:13 - 2015-03-14 01:22 - 03678720 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-05-07 17:13 - 2015-03-14 01:12 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-05-07 17:13 - 2015-03-14 01:12 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-05-07 17:13 - 2015-03-14 01:09 - 00200192 _____ (Microsoft Corporation) C:\Windows\system32\storewuauth.dll
2015-05-07 17:13 - 2015-03-14 01:08 - 00408064 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll
2015-05-07 17:13 - 2015-03-14 01:08 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-05-07 17:13 - 2015-03-14 01:06 - 02373632 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-05-07 17:13 - 2015-03-14 01:06 - 00891392 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-05-07 17:13 - 2015-03-14 01:02 - 00124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2015-05-07 17:13 - 2015-03-14 01:02 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2015-05-07 17:13 - 2015-03-14 00:59 - 00721920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-05-07 17:13 - 2015-03-14 00:59 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2015-05-07 17:13 - 2014-10-18 07:50 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\wuaext.dll
2015-04-29 07:51 - 2015-04-29 07:51 - 00875472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr110.dll
2015-04-29 07:51 - 2015-04-29 07:51 - 00535008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp110.dll
2015-04-29 07:51 - 2015-04-29 07:51 - 00252400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vccorlib110.dll
2015-04-09 23:08 - 2015-04-09 23:08 - 00288448 _____ (IvoSoft) C:\Windows\system32\StartMenuHelper64.dll
2015-04-09 23:08 - 2015-04-09 23:08 - 00247488 _____ (IvoSoft) C:\Windows\SysWOW64\StartMenuHelper32.dll
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-05-08 18:58 - 2014-11-22 02:01 - 00863592 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-05-08 18:45 - 2013-08-22 15:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-05-08 18:43 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sru
2015-05-08 17:31 - 2013-08-22 16:43 - 00000000 ____D () C:\Windows\DigitalLocker
2015-05-08 17:31 - 2013-08-22 15:44 - 00547960 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-05-08 12:48 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\tracing
2015-05-08 12:39 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\NDF
2015-05-08 12:32 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\BBI
2015-05-07 22:33 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\spool
2015-05-07 21:56 - 2013-08-22 16:36 - 00000000 __RSD () C:\Windows\Media
2015-05-07 21:50 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\AppCompat
2015-05-07 21:29 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2015-05-07 21:29 - 2013-08-22 16:20 - 00000000 ____D () C:\Windows\CbsTemp
2015-05-07 19:43 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\AppReadiness
2015-05-07 19:11 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\ImmersiveControlPanel
2015-05-07 19:11 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\setup
2015-05-07 19:11 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\setup
2015-05-07 19:11 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\en-GB
2015-05-07 19:08 - 2013-08-22 16:36 - 00262144 _____ () C:\Windows\system32\config\BCD-Template
2015-05-07 18:58 - 2014-11-22 06:25 - 00000000 ___SD () C:\Windows\system32\CompatTel
2015-05-07 18:58 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\ToastData
2015-05-07 18:58 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-05-07 18:58 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-05-07 18:58 - 2013-08-22 16:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-05-07 18:58 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\WinStore
2015-05-07 18:58 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\en-GB
2015-05-07 18:58 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sr-Latn-RS
2015-05-07 18:58 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sr-Latn-CS
2015-05-07 18:58 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\PolicyDefinitions
2015-05-07 18:58 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Defender
2015-05-07 18:58 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2015-05-07 18:48 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\ELAM
2015-05-07 18:09 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\Recovery
2015-05-07 18:08 - 2013-08-22 14:36 - 00000000 __RHD () C:\Users\Default
2015-05-07 17:13 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\system32\AdvancedInstallers
2015-04-14 00:24 - 2014-11-22 06:29 - 00792056 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-04-14 00:24 - 2014-11-22 06:29 - 00178168 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
==================== Files in the root of some directories =======
2015-05-07 19:45 - 2015-05-07 19:45 - 16258616 _____ (LastPass) C:\Program Files (x86)\Common Files\lpuninstall.exe
2015-05-07 22:06 - 2015-05-07 22:06 - 0000057 _____ () C:\ProgramData\Ament.ini
Some content of TEMP:
====================
C:\Users\Alec\AppData\Local\Temp\amd-catalyst-omega-14.12-without-dotnet45-win8.1-64bit.exe
C:\Users\Alec\AppData\Local\Temp\AutoDetectUtilApp.exe
C:\Users\Alec\AppData\Local\Temp\raptrpatch.exe
C:\Users\Alec\AppData\Local\Temp\raptr_stub.exe
C:\Users\alec_2\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp1divvu.dll
C:\Users\alec_2\AppData\Local\Temp\LMkRstPt.exe
C:\Users\alec_2\AppData\Local\Temp\Quarantine.exe
C:\Users\alec_2\AppData\Local\Temp\sqlite3.dll
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-05-07 18:08
==================== End Of Log ============================