Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-03-2014 Ran by Sean (administrator) on PHANTASM on 04-04-2014 09:05:38 Running from C:\Users\Sean\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: English(US) Internet Explorer Version 11 Boot Mode: Normal The only official download link for FRST: Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/ Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/ Download link from any site other than Bleeping Computer is unpermitted or outdated. See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (Microsoft Corporation) c:\Program Files\Microsoft Security Client\MsMpEng.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (COMODO) C:\Program Files\COMODO\Unite\EzVpnSvc.exe () C:\Windows\SysWOW64\ASGT.exe (Acer Incorporated) C:\Program Files (x86)\Gateway\Registration\GREGsvc.exe (Acer Incorporated) C:\Program Files\Gateway\Gateway Updater\UpdaterService.exe (Microsoft Corporation) C:\Program Files\Microsoft LifeCam\MSCamS64.exe (Symantec Corporation) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Razer Inc.) C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe (Razer, Inc.) C:\Program Files (x86)\Razer\Core\64bit\rzovlmon.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (US Tech Support LLC) C:\Program Files (x86)\USTechSupport\SchedulerService\SchedulerService.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE (Microsoft Corporation) c:\Program Files\Microsoft Security Client\NisSrv.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Microsoft Corporation) C:\Windows\vVX3000.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe (COMODO) C:\Program Files\COMODO\Unite\Unite.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe (COMODO) C:\Program Files\COMODO\Unite\AppShare.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe () C:\Program Files (x86)\puush\puush.exe (PC Drivers Headquarters) C:\Program Files (x86)\PC Drivers HeadQuarters\Driver Detective\DriversHQ.DriverDetective.Client.exe (COMODO) C:\Program Files\COMODO\Unite\crdphService.exe (Akamai Technologies, Inc.) C:\Users\Sean\AppData\Local\Akamai\netsession_win.exe (Akamai Technologies, Inc.) C:\Users\Sean\AppData\Local\Akamai\netsession_win.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe () C:\Program Files (x86)\Maxin Gaming Keyboard\Monitor.EXE (Razer Inc.) C:\Program Files (x86)\Razer\Razer Game Booster\main.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (CyberLink) C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Google Inc.) C:\Users\Sean\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Sean\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Sean\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Sean\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Sean\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Sean\AppData\Local\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [VX3000] - C:\Windows\vVX3000.exe [762736 2010-05-20] (Microsoft Corporation) HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1028384 2013-11-14] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\nvspcap64.dll [1100248 2013-12-09] (NVIDIA Corporation) HKLM\...\Run: [NvBackend] - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2279712 2013-12-09] (NVIDIA Corporation) HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13662936 2013-10-24] (Realtek Semiconductor) HKLM\...\Run: [MSC] - c:\Program Files\Microsoft Security Client\msseces.exe [1271072 2014-03-11] (Microsoft Corporation) HKLM-x32\...\Run: [Razer Synapse] - C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [444760 2014-03-07] (Razer Inc.) HKLM-x32\...\Run: [LifeCam] - C:\Program Files (x86)\Microsoft LifeCam\LifeExp.exe [119152 2010-05-20] (Microsoft Corporation) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [] - [X] HKLM-x32\...\Run: [RazerGameBooster] - C:\Program Files (x86)\Razer\Razer Game Booster\RazerGameBooster.exe [61152 2014-02-25] (Razer Inc.) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Dare-U Keyboard] - C:\Program Files (x86)\Maxin Gaming Keyboard\Monitor.exe [475136 2013-05-22] () HKLM-x32\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [3854640 2014-04-01] (AVAST Software) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-1692878950-4230530971-1470192091-1000\...\Run: [Google Update] - C:\Users\Sean\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2012-06-05] (Google Inc.) HKU\S-1-5-21-1692878950-4230530971-1470192091-1000\...\Run: [Steam] - C:\Program Files (x86)\Steam\steam.exe [1821888 2014-02-25] (Valve Corporation) HKU\S-1-5-21-1692878950-4230530971-1470192091-1000\...\Run: [Gyazo] - C:\Program Files (x86)\Gyazo\GyStation.exe HKU\S-1-5-21-1692878950-4230530971-1470192091-1000\...\Run: [puush] - C:\Program Files (x86)\puush\puush.exe [567880 2013-10-21] () HKU\S-1-5-21-1692878950-4230530971-1470192091-1000\...\Run: [Driver Detective] - C:\Program Files (x86)\PC Drivers HeadQuarters\Driver Detective\DriversHQ.DriverDetective.Client.exe [3988888 2013-09-19] (PC Drivers Headquarters) HKU\S-1-5-21-1692878950-4230530971-1470192091-1000\...\Run: [Akamai NetSession Interface] - C:\Users\Sean\AppData\Local\Akamai\netsession_win.exe [4672920 2014-03-06] (Akamai Technologies, Inc.) HKU\S-1-5-21-1692878950-4230530971-1470192091-1000\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [20924576 2014-02-10] (Skype Technologies S.A.) HKU\S-1-5-21-1692878950-4230530971-1470192091-1000\...\Policies\Explorer: [NofolderOptions] 0 HKU\S-1-5-21-1692878950-4230530971-1470192091-1000\...\Policies\Explorer: [NoInstrumentation] 0 Startup: C:\Users\Sean\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CurseClientStartup.ccip () Startup: C:\Users\Sean\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\tsk-e.exe - Shortcut.lnk ShortcutTarget: tsk-e.exe - Shortcut.lnk -> C:\Users\Sean\Documents\~Touhou Project~\Hisoutensoku\tsk-e.exe (No File) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dailymotion.com/ HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dosearches.com/?utm_source=b&utm_medium=amt&utm_campaign=rg&utm_content=hp&from=amt&uid=ST1000DM003-9YN162_Z1D0MTY7XXXXZ1D0MTY7&ts=1384048694 HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.dosearches.com/web/?utm_source=b&utm_medium=amt&utm_campaign=rg&utm_content=ds&from=amt&uid=ST1000DM003-9YN162_Z1D0MTY7XXXXZ1D0MTY7&ts=1384048694&type=default&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.dosearches.com/web/?utm_source=b&utm_medium=amt&utm_campaign=rg&utm_content=ds&from=amt&uid=ST1000DM003-9YN162_Z1D0MTY7XXXXZ1D0MTY7&ts=1384048694&type=default&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dosearches.com/?utm_source=b&utm_medium=amt&utm_campaign=rg&utm_content=hp&from=amt&uid=ST1000DM003-9YN162_Z1D0MTY7XXXXZ1D0MTY7&ts=1384048694 HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dosearches.com/?utm_source=b&utm_medium=amt&utm_campaign=rg&utm_content=hp&from=amt&uid=ST1000DM003-9YN162_Z1D0MTY7XXXXZ1D0MTY7&ts=1384048694 HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://search.dosearches.com/web/?utm_source=b&utm_medium=amt&utm_campaign=rg&utm_content=ds&from=amt&uid=ST1000DM003-9YN162_Z1D0MTY7XXXXZ1D0MTY7&ts=1384048694&type=default&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.dosearches.com/web/?utm_source=b&utm_medium=amt&utm_campaign=rg&utm_content=ds&from=amt&uid=ST1000DM003-9YN162_Z1D0MTY7XXXXZ1D0MTY7&ts=1384048694&type=default&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dosearches.com/?utm_source=b&utm_medium=amt&utm_campaign=rg&utm_content=hp&from=amt&uid=ST1000DM003-9YN162_Z1D0MTY7XXXXZ1D0MTY7&ts=1384048694 SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://search.dosearches.com/web/?utm_source=b&utm_medium=amt&utm_campaign=rg&utm_content=ds&from=amt&uid=ST1000DM003-9YN162_Z1D0MTY7XXXXZ1D0MTY7&ts=1384048694&type=default&q={searchTerms} SearchScopes: HKLM - {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://search.dosearches.com/web/?utm_source=b&utm_medium=amt&utm_campaign=rg&utm_content=ds&from=amt&uid=ST1000DM003-9YN162_Z1D0MTY7XXXXZ1D0MTY7&ts=1384048694&type=default&q={searchTerms} SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKCU - DefaultScope {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = http://search.conduit.com/Results.aspx?ctid=CT3317187&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=2&UP=SP0C94AEE3-6E45-4C42-B039-5CCE706487B1&q={searchTerms}&SSPV= SearchScopes: HKCU - {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = http://search.conduit.com/Results.aspx?ctid=CT3317187&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=2&UP=SP0C94AEE3-6E45-4C42-B039-5CCE706487B1&q={searchTerms}&SSPV= BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Funmoods Helper Object - {75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7} - No File BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - No Name - {ae07101b-46d4-4a98-af68-0333ea26e113} - No File Toolbar: HKLM-x32 - Funmoods Toolbar - {A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3} - No File Toolbar: HKLM-x32 - No Name - {ae07101b-46d4-4a98-af68-0333ea26e113} - No File Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File Toolbar: HKCU - No Name - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No File Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Hosts: 127.0.0.1 pc-gizmos-ssl.com www.pc-gizmos-ssl.com # added by PC-Gizmos.com Tcpip\Parameters: [DhcpNameServer] 209.18.47.61 209.18.47.62 Tcpip\..\Interfaces\{ABEDF9F8-CD0F-49B8-82E7-D30F9C844DA5}: [NameServer]209.18.47.61,209.18.47.62 FireFox: ======== FF Plugin: @java.com/DTPlugin,version=10.21.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.21.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @microsoft.com/GENUINE - disabled No File FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @comodo.com/EasyvpnLvn - C:\Program Files\COMODO\Unite\npEasyVpnLVN.dll (COMODO) FF Plugin-x32: @comodo.com/EasyvpnRdp - C:\Program Files\COMODO\Unite\NpRdpView.dll ( ) FF Plugin-x32: @comodo.com/EasyvpnVnc - C:\Program Files\COMODO\Unite\NpVncView.dll ( ) FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/GENUINE - disabled No File FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @nexon.net/NxGame - C:\ProgramData\NexonUS\NGM\npNxGameUS.dll (Nexon) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Sean\AppData\Local\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Sean\AppData\Local\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: thehappycloud.com/HappyCloudPlugin - C:\ProgramData\HappyCloud\Application\npHappyCloudPlugin.dll (The Happy Cloud) FF Extension: No Name - C:\Users\Sean\AppData\Roaming\Mozilla\Firefox\profiles\extensions\defaults [2013-11-09] FF Extension: No Name - C:\Users\Sean\AppData\Roaming\Mozilla\Firefox\profiles\extensions\extensions [2012-09-14] FF Extension: OneClickDownloader - C:\Users\Sean\AppData\Roaming\Mozilla\Firefox\profiles\extensions\OneClickDownload@OneClickDownload.com [2012-07-28] FF Extension: PutLockerDownloader 2 - C:\Users\Sean\AppData\Roaming\Mozilla\Firefox\profiles\extensions\putlockerdownloader2@putlockerdownloader.com.xpi [2013-02-11] Chrome: ======= CHR HomePage: hxxp://www.youtube.com/ CHR Extension: (Extended Protection) - C:\Users\Sean\AppData\Local\Google\Chrome\User Data\Default\Extensions\cekcjpgehmohobmdiikfnopibipmgnml [2013-11-09] CHR Extension: (Adblock Plus) - C:\Users\Sean\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2013-08-29] CHR Extension: (No Name) - C:\Users\Sean\AppData\Local\Google\Chrome\User Data\Default\Extensions\edhilgpnlmgniclikjhefmadegchepcg [2012-11-21] CHR Extension: (avast! Online Security) - C:\Users\Sean\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-04-01] CHR Extension: (No Name) - C:\Users\Sean\AppData\Local\Google\Chrome\User Data\Default\Extensions\kpfhgnebikhafakgnbbdnpjigaohhgnh [2013-03-13] CHR Extension: (Google Wallet) - C:\Users\Sean\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-20] CHR HKLM\...\Chrome\Extension: [fdloijijlkoblmigdofommgnheckmaki] - C:\Users\Sean\AppData\Local\funmoods.crx [2012-06-24] CHR HKCU\...\Chrome\Extension: [ejpbbhjlbipncjklfjjaedaieimbmdda] - C:\Users\Sean\AppData\Local\CRE\ejpbbhjlbipncjklfjjaedaieimbmdda.crx [2012-06-24] CHR HKCU\...\Chrome\Extension: [fdloijijlkoblmigdofommgnheckmaki] - C:\Users\Sean\AppData\Local\funmoods.crx [2012-06-24] CHR HKCU\...\Chrome\Extension: [iigplimlmgilpobjilfbfeilnpiigpgl] - C:\Users\Sean\AppData\Local\CRE\iigplimlmgilpobjilfbfeilnpiigpgl.crx [2013-08-27] CHR HKCU\...\Chrome\Extension: [nikpibnbobmbdbheedjfogjlikpgpnhp] - C:\Users\Sean\AppData\Roaming\DVDVideoSoft\dvsYoutubeDownload.crx [2012-09-14] CHR HKCU\...\Chrome\Extension: [plmlpkfpkijnlijgalnjaacllnjmoamo] - C:\Users\Sean\AppData\Local\CRE\plmlpkfpkijnlijgalnjaacllnjmoamo.crx [2012-09-14] CHR HKLM-x32\...\Chrome\Extension: [dnnajmlhehgnkclpdlggknanmcplloej] - C:\Program Files (x86)\PutLockerDownloader\PutLockerDownloader10.crx [2013-02-11] CHR HKLM-x32\...\Chrome\Extension: [ejpbbhjlbipncjklfjjaedaieimbmdda] - C:\Users\Sean\AppData\Local\CRE\ejpbbhjlbipncjklfjjaedaieimbmdda.crx [2013-02-11] CHR HKLM-x32\...\Chrome\Extension: [fdloijijlkoblmigdofommgnheckmaki] - C:\Users\Sean\AppData\Local\funmoods.crx [2012-06-24] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-04-01] CHR HKLM-x32\...\Chrome\Extension: [gpicboiclhmnllnjdcfcffifpoaebgkm] - C:\Program Files (x86)\Freecorder extension\Freecorder.crx [2014-04-01] CHR HKLM-x32\...\Chrome\Extension: [ifohbjbgfchkkfhphahclmkpgejiplfo] - C:\Users\Sean\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtab.crx [2013-11-09] CHR HKLM-x32\...\Chrome\Extension: [iigplimlmgilpobjilfbfeilnpiigpgl] - C:\Users\Sean\AppData\Local\CRE\iigplimlmgilpobjilfbfeilnpiigpgl.crx [2013-08-27] CHR HKLM-x32\...\Chrome\Extension: [jbpkiefagocgkmemidfngdkamloieekf] - C:\Program Files (x86)\TornTV.com\torn11.crx [2013-08-27] CHR HKLM-x32\...\Chrome\Extension: [kincjchfokkeneeofpeefomkikfkiedl] - C:\Program Files (x86)\OApps\chromeaddon.crx [2013-08-27] CHR HKLM-x32\...\Chrome\Extension: [plmlpkfpkijnlijgalnjaacllnjmoamo] - C:\Users\Sean\AppData\Local\CRE\plmlpkfpkijnlijgalnjaacllnjmoamo.crx [2013-08-27] CHR HKLM-x32\...\Chrome\Extension: [pmlghpafmmnmmkjdhacccolfgnkiboco] - C:\Program Files (x86)\1ClickDownload\oneclickdownloader10.crx [2013-08-27] CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Services (Whitelisted) ================= R2 ASGT; C:\Windows\SysWOW64\ASGT.exe [55296 2012-01-17] () R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-04-01] (AVAST Software) R2 EzVpnSvc; C:\Program Files\COMODO\Unite\EzVpnSvc.exe [534832 2011-08-22] (COMODO) S3 McComponentHostService; C:\Program Files (x86)\McAfee Security Scan\2.1.121\McCHSvc.exe [227232 2010-09-02] (McAfee, Inc.) R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2014-03-11] (Microsoft Corporation) R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [347872 2014-03-11] (Microsoft Corporation) R2 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2804568 2010-06-01] (Symantec Corporation) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1494304 2013-12-09] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15129376 2013-12-09] (NVIDIA Corporation) S3 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [117264 2010-06-25] (CACE Technologies, Inc.) R2 RzKLService; C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe [105448 2014-02-25] (Razer Inc.) R2 RzOvlMon; C:\Program Files (x86)\Razer\Core\64bit\rzovlmon.exe [32960 2014-02-20] (Razer, Inc.) R2 USTSScheduler; C:\Program Files (x86)\USTechSupport\SchedulerService\SchedulerService.exe [736648 2012-07-12] (US Tech Support LLC) S3 MSCSPTISRV; "C:\Program Files (x86)\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe" [X] S3 SPTISRV; "C:\Program Files (x86)\Common Files\Sony Shared\AVLib\SPTISRV.exe" [X] ==================== Drivers (Whitelisted) ==================== R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-04-01] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-04-01] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-04-01] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1039096 2014-04-01] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [423240 2014-04-01] (AVAST Software) R3 aswStm; C:\Windows\system32\drivers\aswStm.sys [84816 2014-04-01] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [208928 2014-04-01] () R3 ATP; C:\Windows\System32\DRIVERS\cmdatp.sys [20888 2011-04-14] (Comodo, Inc.) R4 IOMap; C:\Windows\system32\drivers\IOMap64.sys [23680 2010-02-23] (ASUSTeK Computer Inc.) R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [268512 2014-01-25] (Microsoft Corporation) R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [133928 2014-03-11] (Microsoft Corporation) S3 NPF; C:\Windows\System32\drivers\npf.sys [35344 2010-06-25] (CACE Technologies, Inc.) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-12-05] (NVIDIA Corporation) R3 RzDxgk; C:\Windows\system32\drivers\RzDxgk.sys [129472 2014-02-20] (Razer, Inc.) R0 RzFilter; C:\Windows\System32\drivers\RzFilter.sys [74432 2014-02-20] (Razer, Inc.) S3 vhidmini; C:\Windows\System32\DRIVERS\vjoy.sys [15104 2012-10-15] (Headsoft) S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X] S3 sclbl; \??\C:\AeriaGames\ScarletBlade\avital\scarbt64.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-04-04 09:05 - 2014-04-04 09:05 - 00024075 _____ () C:\Users\Sean\Downloads\FRST.txt 2014-04-04 09:05 - 2014-04-04 09:05 - 00000000 ____D () C:\FRST 2014-04-04 09:04 - 2014-04-04 09:04 - 02157056 _____ (Farbar) C:\Users\Sean\Downloads\FRST64.exe 2014-04-04 05:27 - 2014-04-04 17:23 - 01135030 _____ () C:\Users\Sysinfo.nfo 2014-04-02 22:30 - 2013-12-15 15:18 - 00024350 _____ () C:\Users\Brittany%20Bradley%20Resume.doc_0.odt 2014-04-02 20:06 - 2014-04-02 20:06 - 00007665 _____ () C:\Users\Sean\AppData\Local\recently-used.xbel 2014-04-02 03:38 - 2014-04-02 03:38 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-04-02 03:38 - 2014-04-02 03:38 - 00000000 ____D () C:\Users\Sean\AppData\Local\Skype 2014-04-02 03:37 - 2014-04-02 03:38 - 34829472 _____ (Skype Technologies S.A.) C:\Users\Sean\Downloads\SkypeSetupFull.exe 2014-04-01 09:08 - 2014-04-01 09:08 - 00000000 ____D () C:\Users\Sean\AppData\Roaming\AVAST Software 2014-04-01 09:03 - 2014-04-02 19:38 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update 2014-04-01 09:03 - 2014-04-01 09:03 - 01039096 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2014-04-01 09:03 - 2014-04-01 09:03 - 00423240 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys 2014-04-01 09:03 - 2014-04-01 09:03 - 00208928 _____ () C:\Windows\system32\Drivers\aswVmm.sys 2014-04-01 09:03 - 2014-04-01 09:03 - 00084816 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys 2014-04-01 09:03 - 2014-04-01 09:03 - 00001973 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk 2014-04-01 09:03 - 2014-04-01 09:02 - 00334648 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2014-04-01 09:03 - 2014-04-01 09:02 - 00093568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2014-04-01 09:03 - 2014-04-01 09:02 - 00079184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2014-04-01 09:03 - 2014-04-01 09:02 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys 2014-04-01 09:02 - 2014-04-01 09:02 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr 2014-04-01 09:02 - 2014-04-01 09:02 - 00000000 ____D () C:\ProgramData\AVAST Software 2014-04-01 09:02 - 2014-04-01 09:02 - 00000000 ____D () C:\Program Files\AVAST Software 2014-04-01 04:24 - 2014-04-01 04:25 - 88551496 _____ (AVAST Software) C:\Users\Sean\Downloads\avast_free_antivirus_setup.exe 2014-04-01 04:15 - 2014-04-01 04:16 - 105654552 _____ (Microsoft Corporation) C:\Users\Sean\Downloads\msert.exe 2014-04-01 03:11 - 2014-04-01 03:11 - 00000000 ____D () C:\Users\Sean\AppData\Local\SWTOR 2014-03-26 18:10 - 2014-03-26 18:10 - 00000000 ____D () C:\Users\Sean\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\dotDev Studio 2014-03-26 15:26 - 2014-03-26 15:26 - 00000000 ____D () C:\Users\Sean\AppData\Local\WinZip 2014-03-26 15:25 - 2014-03-26 15:26 - 00000000 ____D () C:\ProgramData\WinZip 2014-03-26 15:25 - 2014-03-26 15:25 - 00000000 ____D () C:\Program Files\WinZip 2014-03-22 03:29 - 2014-03-04 04:32 - 00599840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2014-03-22 03:26 - 2014-03-04 07:35 - 31474976 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-03-22 03:26 - 2014-03-04 07:35 - 25255256 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-03-22 03:26 - 2014-03-04 07:35 - 23716640 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-03-22 03:26 - 2014-03-04 07:35 - 17561544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-03-22 03:26 - 2014-03-04 07:35 - 15783992 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-03-22 03:26 - 2014-03-04 07:35 - 12708128 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-03-22 03:26 - 2014-03-04 07:35 - 11636176 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-03-22 03:26 - 2014-03-04 07:35 - 11589272 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-03-22 03:26 - 2014-03-04 07:35 - 09728064 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-03-22 03:26 - 2014-03-04 07:35 - 09690424 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-03-22 03:26 - 2014-03-04 07:35 - 03143456 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-03-22 03:26 - 2014-03-04 07:35 - 02958792 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-03-22 03:26 - 2014-03-04 07:35 - 02783008 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-03-22 03:26 - 2014-03-04 07:35 - 02411976 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2014-03-22 03:26 - 2014-03-04 07:35 - 01885472 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433523.dll 2014-03-22 03:26 - 2014-03-04 07:35 - 01516488 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433523.dll 2014-03-22 03:26 - 2014-03-04 07:35 - 00892704 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-03-22 03:26 - 2014-03-04 07:35 - 00877856 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-03-22 03:26 - 2014-03-04 07:35 - 00863064 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-03-22 03:26 - 2014-03-04 07:35 - 00846168 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-03-22 03:26 - 2014-03-04 07:35 - 00832936 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-03-22 03:26 - 2014-03-04 07:35 - 00353504 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-03-22 03:26 - 2014-03-04 07:35 - 00305600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-03-22 03:26 - 2014-03-04 07:35 - 00174296 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2014-03-22 03:26 - 2014-03-04 07:35 - 00148016 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-03-22 00:47 - 2014-03-22 00:47 - 00001986 _____ () C:\Users\Sean\Desktop\Maxin Gaming Keyboard Driver.lnk 2014-03-21 14:16 - 2014-03-21 20:22 - 00000000 ____D () C:\Program Files (x86)\Maxin Gaming Keyboard 2014-03-18 18:30 - 2014-03-18 18:30 - 00001986 _____ () C:\Users\Public\Desktop\Adobe Reader X.lnk 2014-03-16 03:55 - 2014-03-29 16:30 - 00002155 _____ () C:\Windows\epplauncher.mif 2014-03-16 03:55 - 2014-03-29 16:30 - 00000000 ____D () C:\Program Files\Microsoft Security Client 2014-03-16 03:55 - 2014-03-29 16:30 - 00000000 ____D () C:\Program Files (x86)\Microsoft Security Client 2014-03-14 19:11 - 2014-03-14 19:56 - 00001908 _____ () C:\Windows\diagwrn.xml 2014-03-14 19:11 - 2014-03-14 19:56 - 00001908 _____ () C:\Windows\diagerr.xml 2014-03-12 04:01 - 2014-02-28 23:05 - 23133696 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-03-12 04:01 - 2014-02-28 22:17 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-03-12 04:01 - 2014-02-28 22:16 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-03-12 04:01 - 2014-02-28 21:58 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-03-12 04:01 - 2014-02-28 21:52 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-03-12 04:01 - 2014-02-28 21:51 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-03-12 04:01 - 2014-02-28 21:42 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-03-12 04:01 - 2014-02-28 21:40 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-03-12 04:01 - 2014-02-28 21:37 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-03-12 04:01 - 2014-02-28 21:33 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-03-12 04:01 - 2014-02-28 21:33 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-03-12 04:01 - 2014-02-28 21:32 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-03-12 04:01 - 2014-02-28 21:30 - 17074688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-03-12 04:01 - 2014-02-28 21:23 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-03-12 04:01 - 2014-02-28 21:17 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-03-12 04:01 - 2014-02-28 21:11 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-03-12 04:01 - 2014-02-28 21:02 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-03-12 04:01 - 2014-02-28 20:54 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-03-12 04:01 - 2014-02-28 20:52 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-03-12 04:01 - 2014-02-28 20:51 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-03-12 04:01 - 2014-02-28 20:47 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-03-12 04:01 - 2014-02-28 20:43 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-03-12 04:01 - 2014-02-28 20:43 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-03-12 04:01 - 2014-02-28 20:42 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-03-12 04:01 - 2014-02-28 20:40 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-03-12 04:01 - 2014-02-28 20:38 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-03-12 04:01 - 2014-02-28 20:37 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-03-12 04:01 - 2014-02-28 20:35 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-03-12 04:01 - 2014-02-28 20:18 - 13051904 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-03-12 04:01 - 2014-02-28 20:16 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-03-12 04:01 - 2014-02-28 20:14 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-03-12 04:01 - 2014-02-28 20:10 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-03-12 04:01 - 2014-02-28 20:03 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-03-12 04:01 - 2014-02-28 20:00 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-03-12 04:01 - 2014-02-28 19:57 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-03-12 04:01 - 2014-02-28 19:38 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-03-12 04:01 - 2014-02-28 19:32 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-03-12 04:01 - 2014-02-28 19:27 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-03-12 04:01 - 2014-02-28 19:25 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-03-12 04:01 - 2014-02-28 19:25 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-03-12 04:01 - 2014-02-06 18:23 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-03-12 04:01 - 2014-01-28 19:32 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll 2014-03-12 04:01 - 2014-01-28 19:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll 2014-03-12 04:01 - 2014-01-27 19:32 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2014-03-12 04:00 - 2014-02-03 19:32 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2014-03-12 04:00 - 2014-02-03 19:32 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2014-03-12 04:00 - 2014-02-03 19:04 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2014-03-12 04:00 - 2014-02-03 19:04 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2014-03-09 23:27 - 2014-03-09 23:27 - 00000000 ____D () C:\Users\Sean\AppData\Roaming\SYSTEMAX Software Development 2014-03-09 23:27 - 2014-03-09 23:27 - 00000000 ____D () C:\ProgramData\SYSTEMAX Software Development 2014-03-09 23:26 - 2014-04-02 21:48 - 00000000 ____D () C:\Users\Sean\Documents\PaintToolSAI 2014-03-08 09:21 - 2014-04-04 07:21 - 00010991 _____ () C:\Windows\setupact.log 2014-03-08 09:21 - 2014-03-14 19:11 - 00000000 _____ () C:\Windows\setuperr.log 2014-03-07 01:57 - 2014-03-07 01:57 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-03-07 01:57 - 2013-11-05 20:47 - 03707864 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-03-07 01:57 - 2013-11-04 12:11 - 02587864 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2014-03-07 01:57 - 2013-10-28 18:29 - 01021656 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-03-07 01:57 - 2013-10-11 12:31 - 00947760 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll 2014-03-07 01:57 - 2013-10-09 21:12 - 02103040 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2014-03-07 01:57 - 2013-10-07 12:05 - 02810072 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-03-07 01:57 - 2013-09-09 16:32 - 05681192 _____ () C:\Windows\system32\Drivers\rtvienna.dat 2014-03-07 01:57 - 2013-08-24 04:14 - 01014016 _____ (SRS Labs, Inc.) C:\Windows\system32\slcnt64.dll 2014-03-07 01:57 - 2013-08-24 04:14 - 00897792 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll 2014-03-07 01:57 - 2013-08-24 04:14 - 00722688 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll 2014-03-07 01:57 - 2013-08-24 04:14 - 00244480 _____ (TODO: ) C:\Windows\system32\slprp64.dll 2014-03-07 01:57 - 2013-06-25 13:47 - 00871856 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll 2014-03-07 01:57 - 2013-06-25 13:47 - 00162224 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll 2014-03-07 01:57 - 2013-06-25 13:46 - 00582056 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll 2014-03-07 01:57 - 2013-04-24 18:16 - 01662024 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-03-07 01:57 - 2012-01-30 12:43 - 00836544 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll 2014-03-07 01:57 - 2012-01-10 11:20 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll 2014-03-07 01:57 - 2011-12-20 16:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2014-03-07 01:57 - 2011-11-22 17:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2014-03-07 01:57 - 2011-09-02 15:21 - 00221024 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll 2014-03-07 01:57 - 2011-09-02 15:21 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll 2014-03-07 01:57 - 2011-09-02 15:21 - 00078688 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll 2014-03-07 01:57 - 2011-03-17 13:17 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll 2014-03-07 01:57 - 2011-03-07 18:11 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll 2014-03-07 01:57 - 2010-11-08 08:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2014-03-07 01:57 - 2010-11-08 08:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2014-03-07 01:57 - 2010-11-03 19:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2014-03-07 01:57 - 2010-07-22 17:48 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll 2014-03-07 01:57 - 2009-11-24 10:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll 2014-03-07 01:57 - 2009-11-24 10:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll 2014-03-07 01:57 - 2009-11-24 10:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll 2014-03-07 01:57 - 2009-11-24 10:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll 2014-03-07 01:56 - 2013-11-05 19:54 - 38385664 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat 2014-03-07 01:56 - 2013-11-05 16:48 - 00681905 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT 2014-03-07 01:56 - 2013-11-04 20:26 - 00153304 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2014-03-07 01:56 - 2013-10-30 17:31 - 00929080 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOSettingsIPC.dll 2014-03-07 01:56 - 2013-10-25 11:49 - 05751576 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOlfx.dll 2014-03-07 01:56 - 2013-10-18 17:41 - 01286360 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-03-07 01:56 - 2013-10-09 21:13 - 01921792 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek264.dll 2014-03-07 01:56 - 2013-10-09 21:13 - 01345280 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll 2014-03-07 01:56 - 2013-10-09 21:13 - 01286400 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll 2014-03-07 01:56 - 2013-10-09 21:12 - 27644160 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnA64.dll 2014-03-07 01:56 - 2013-10-09 21:12 - 14152960 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll 2014-03-07 01:56 - 2013-10-09 21:12 - 03714304 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnN64.dll 2014-03-07 01:56 - 2013-10-09 21:12 - 02036992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2014-03-07 01:56 - 2013-10-09 21:12 - 01012992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2014-03-07 01:56 - 2013-10-02 18:10 - 00617176 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2014-03-07 01:56 - 2013-08-14 17:36 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll 2014-03-07 01:56 - 2013-08-14 17:35 - 01084160 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll 2014-03-07 01:56 - 2013-08-14 17:35 - 00907008 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll 2014-03-07 01:56 - 2013-08-14 17:35 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2014-03-07 01:56 - 2013-07-23 16:39 - 00790272 _____ (Waves Audio Ltd.) C:\Windows\SysWOW64\MaxxAudioAPOShell.dll 2014-03-07 01:56 - 2013-04-03 15:13 - 00906800 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll 2014-03-07 01:56 - 2012-08-31 20:18 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll 2014-03-07 01:56 - 2012-08-31 20:17 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll 2014-03-07 01:56 - 2012-08-31 20:17 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll 2014-03-07 01:56 - 2012-08-31 20:17 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll 2014-03-07 01:56 - 2012-08-31 20:17 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll 2014-03-07 01:56 - 2011-08-23 18:00 - 00603984 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll 2014-03-07 01:56 - 2010-11-08 08:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2014-03-07 01:56 - 2010-11-08 08:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2014-03-07 01:56 - 2010-11-08 08:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2014-03-07 01:56 - 2010-11-08 08:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2014-03-07 01:56 - 2010-09-27 10:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2014-03-07 01:55 - 2013-10-16 04:43 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-03-07 01:55 - 2013-10-11 13:47 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2014-03-07 01:55 - 2013-10-07 01:26 - 00501184 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll 2014-03-07 01:55 - 2013-10-07 01:26 - 00487360 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll 2014-03-07 01:55 - 2013-10-07 01:26 - 00415680 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll 2014-03-07 01:55 - 2013-09-10 05:02 - 06217904 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll 2014-03-07 01:55 - 2013-09-10 05:02 - 00313520 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll 2014-03-07 01:55 - 2013-09-10 05:01 - 01938608 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll 2014-03-07 01:55 - 2013-09-10 05:01 - 00260272 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll 2014-03-07 01:55 - 2013-08-20 18:37 - 00605496 _____ () C:\Windows\system32\audioLibVc.dll 2014-03-07 01:55 - 2013-08-05 19:11 - 02743328 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-03-07 01:55 - 2013-06-21 12:01 - 00109848 _____ () C:\Windows\system32\AcpiServiceVnA64.dll 2014-03-07 01:55 - 2012-03-08 12:47 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2014-03-07 01:55 - 2011-05-31 10:42 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll 2014-03-07 01:55 - 2011-05-31 10:42 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll 2014-03-07 01:55 - 2011-05-31 10:42 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll 2014-03-07 01:55 - 2011-05-31 10:42 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll 2014-03-07 01:55 - 2011-05-31 10:42 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll 2014-03-07 01:55 - 2011-05-31 10:42 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll 2014-03-07 01:55 - 2011-05-31 10:42 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll 2014-03-07 01:55 - 2011-05-31 10:42 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll 2014-03-07 01:55 - 2011-05-31 10:42 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll 2014-03-07 01:55 - 2011-05-31 10:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll 2014-03-07 01:55 - 2011-05-31 10:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll 2014-03-07 01:55 - 2011-05-31 10:42 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll 2014-03-07 01:54 - 2014-03-07 01:54 - 00003154 _____ () C:\Windows\System32\Tasks\{B51D5A95-C410-4449-983C-707190C470A0} 2014-03-07 00:54 - 2014-03-07 00:54 - 00000000 ____D () C:\Users\Sean\Documents\FINAL FANTASY XIV - A Realm Reborn (Beta Version) 2014-03-06 23:21 - 2014-03-06 23:21 - 00000000 ____D () C:\Users\Sean\Documents\Razer 2014-03-06 23:21 - 2014-03-06 23:21 - 00000000 ____D () C:\Users\Sean\AppData\Local\Razer_Inc 2014-03-06 23:07 - 2014-03-18 18:28 - 00002096 _____ () C:\Users\Public\Desktop\Razer Game Booster.lnk 2014-03-06 22:22 - 2014-03-06 22:22 - 00021712 _____ (Phoenix Technologies) C:\Windows\SysWOW64\Drivers\DrvAgent64.SYS 2014-03-06 22:22 - 2014-03-06 22:22 - 00000000 ____D () C:\Users\Sean\AppData\Local\eSupport.com 2014-03-06 22:22 - 2014-03-06 22:22 - 00000000 ____D () C:\Program Files (x86)\eSupport.com ==================== One Month Modified Files and Folders ======= 2014-04-04 17:23 - 2014-04-04 05:27 - 01135030 _____ () C:\Users\Sysinfo.nfo 2014-04-04 09:05 - 2014-04-04 09:05 - 00024075 _____ () C:\Users\Sean\Downloads\FRST.txt 2014-04-04 09:05 - 2014-04-04 09:05 - 00000000 ____D () C:\FRST 2014-04-04 09:04 - 2014-04-04 09:04 - 02157056 _____ (Farbar) C:\Users\Sean\Downloads\FRST64.exe 2014-04-04 09:03 - 2013-05-20 16:48 - 00000000 ____D () C:\Users\Sean\AppData\Roaming\Skype 2014-04-04 08:48 - 2012-06-05 18:19 - 00000904 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1692878950-4230530971-1470192091-1000UA.job 2014-04-04 08:21 - 2012-07-09 09:43 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-04-04 07:29 - 2009-07-13 22:13 - 00783596 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-04-04 07:28 - 2009-07-13 21:45 - 00016976 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-04-04 07:28 - 2009-07-13 21:45 - 00016976 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-04-04 07:24 - 2012-03-12 23:12 - 01417230 _____ () C:\Windows\WindowsUpdate.log 2014-04-04 07:21 - 2014-03-08 09:21 - 00010991 _____ () C:\Windows\setupact.log 2014-04-04 07:21 - 2013-07-11 19:11 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-04-04 07:21 - 2009-07-13 22:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-04-04 07:20 - 2013-07-15 11:42 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-04-04 04:06 - 2012-12-15 18:14 - 00000000 ____D () C:\Users\Sean\Documents\osu! 2014-04-03 10:48 - 2012-06-05 18:19 - 00000852 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1692878950-4230530971-1470192091-1000Core.job 2014-04-03 10:43 - 2012-06-05 18:19 - 00003876 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1692878950-4230530971-1470192091-1000UA 2014-04-03 10:43 - 2012-06-05 18:19 - 00003480 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1692878950-4230530971-1470192091-1000Core 2014-04-02 21:48 - 2014-03-09 23:26 - 00000000 ____D () C:\Users\Sean\Documents\PaintToolSAI 2014-04-02 21:42 - 2012-06-05 19:43 - 00000000 ____D () C:\New Folder1 2014-04-02 20:42 - 2012-06-07 18:38 - 00000000 ____D () C:\Users\Sean\AppData\Local\CrashDumps 2014-04-02 20:08 - 2013-07-14 21:34 - 00000000 ____D () C:\Users\Sean\.gimp-2.8 2014-04-02 20:06 - 2014-04-02 20:06 - 00007665 _____ () C:\Users\Sean\AppData\Local\recently-used.xbel 2014-04-02 19:39 - 2014-01-03 22:02 - 00000000 ____D () C:\Users\Sean\AppData\Local\Akamai 2014-04-02 19:38 - 2014-04-01 09:03 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update 2014-04-02 07:53 - 2013-10-21 14:55 - 00231936 ___SH () C:\Users\Sean\Documents\Thumbs.db 2014-04-02 03:38 - 2014-04-02 03:38 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-04-02 03:38 - 2014-04-02 03:38 - 00000000 ____D () C:\Users\Sean\AppData\Local\Skype 2014-04-02 03:38 - 2014-04-02 03:37 - 34829472 _____ (Skype Technologies S.A.) C:\Users\Sean\Downloads\SkypeSetupFull.exe 2014-04-02 03:38 - 2011-10-27 03:42 - 00000000 ____D () C:\ProgramData\Skype 2014-04-02 02:50 - 2012-08-11 01:21 - 00000000 ____D () C:\Users\Sean\AppData\Roaming\Audacity 2014-04-01 09:46 - 2012-06-05 18:18 - 00000000 ____D () C:\Users\Sean\AppData\Local\Deployment 2014-04-01 09:42 - 2013-11-10 14:21 - 00226490 _____ () C:\Windows\PFRO.log 2014-04-01 09:08 - 2014-04-01 09:08 - 00000000 ____D () C:\Users\Sean\AppData\Roaming\AVAST Software 2014-04-01 09:03 - 2014-04-01 09:03 - 01039096 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2014-04-01 09:03 - 2014-04-01 09:03 - 00423240 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys 2014-04-01 09:03 - 2014-04-01 09:03 - 00208928 _____ () C:\Windows\system32\Drivers\aswVmm.sys 2014-04-01 09:03 - 2014-04-01 09:03 - 00084816 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys 2014-04-01 09:03 - 2014-04-01 09:03 - 00001973 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk 2014-04-01 09:02 - 2014-04-01 09:03 - 00334648 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2014-04-01 09:02 - 2014-04-01 09:03 - 00093568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2014-04-01 09:02 - 2014-04-01 09:03 - 00079184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2014-04-01 09:02 - 2014-04-01 09:03 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys 2014-04-01 09:02 - 2014-04-01 09:02 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr 2014-04-01 09:02 - 2014-04-01 09:02 - 00000000 ____D () C:\ProgramData\AVAST Software 2014-04-01 09:02 - 2014-04-01 09:02 - 00000000 ____D () C:\Program Files\AVAST Software 2014-04-01 05:55 - 2013-02-03 21:38 - 00000000 ____D () C:\Users\Sean\Documents\Hisoutensoku Plus 2014-04-01 05:46 - 2013-08-25 03:45 - 00000000 ____D () C:\ProgramData\sAafei savE 2014-04-01 04:25 - 2014-04-01 04:24 - 88551496 _____ (AVAST Software) C:\Users\Sean\Downloads\avast_free_antivirus_setup.exe 2014-04-01 04:16 - 2014-04-01 04:15 - 105654552 _____ (Microsoft Corporation) C:\Users\Sean\Downloads\msert.exe 2014-04-01 03:11 - 2014-04-01 03:11 - 00000000 ____D () C:\Users\Sean\AppData\Local\SWTOR 2014-03-30 04:47 - 2013-07-14 21:37 - 00000000 ____D () C:\Users\Sean\AppData\Local\gtk-2.0 2014-03-29 16:30 - 2014-03-16 03:55 - 00002155 _____ () C:\Windows\epplauncher.mif 2014-03-29 16:30 - 2014-03-16 03:55 - 00000000 ____D () C:\Program Files\Microsoft Security Client 2014-03-29 16:30 - 2014-03-16 03:55 - 00000000 ____D () C:\Program Files (x86)\Microsoft Security Client 2014-03-27 10:45 - 2012-12-31 05:14 - 00000000 ____D () C:\Users\Sean\AppData\Local\Paint.NET 2014-03-26 18:15 - 2013-05-20 18:01 - 00000000 ____D () C:\Users\Sean\Documents\Sounds 2014-03-26 18:10 - 2014-03-26 18:10 - 00000000 ____D () C:\Users\Sean\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\dotDev Studio 2014-03-26 15:28 - 2012-06-05 17:57 - 00000000 ____D () C:\Windows\system32\ico (256) 2014-03-26 15:26 - 2014-03-26 15:26 - 00000000 ____D () C:\Users\Sean\AppData\Local\WinZip 2014-03-26 15:26 - 2014-03-26 15:25 - 00000000 ____D () C:\ProgramData\WinZip 2014-03-26 15:25 - 2014-03-26 15:25 - 00000000 ____D () C:\Program Files\WinZip 2014-03-22 03:29 - 2013-07-15 11:42 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-03-22 02:04 - 2013-09-01 05:53 - 00010752 _____ () C:\Users\Sean\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2014-03-22 01:40 - 2013-09-01 05:31 - 00000000 ____D () C:\Program Files (x86)\MP3 My MP3 4.0 2014-03-22 00:47 - 2014-03-22 00:47 - 00001986 _____ () C:\Users\Sean\Desktop\Maxin Gaming Keyboard Driver.lnk 2014-03-21 23:49 - 2014-01-05 05:55 - 00000000 ____D () C:\Users\Sean\AppData\Local\Battle.net 2014-03-21 23:44 - 2013-12-20 00:09 - 00000000 ____D () C:\Program Files (x86)\World of Warcraft 2014-03-21 23:40 - 2012-06-07 20:36 - 00000000 ____D () C:\Program Files (x86)\StarCraft II 2014-03-21 23:38 - 2014-01-05 05:55 - 00000000 ____D () C:\Program Files (x86)\Battle.net 2014-03-21 20:22 - 2014-03-21 14:16 - 00000000 ____D () C:\Program Files (x86)\Maxin Gaming Keyboard 2014-03-21 14:16 - 2011-10-27 03:34 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-03-18 18:30 - 2014-03-18 18:30 - 00001986 _____ () C:\Users\Public\Desktop\Adobe Reader X.lnk 2014-03-18 18:28 - 2014-03-06 23:07 - 00002096 _____ () C:\Users\Public\Desktop\Razer Game Booster.lnk 2014-03-17 23:29 - 2013-10-06 18:42 - 90015360 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-03-17 23:29 - 2013-10-06 18:42 - 00000000 ____D () C:\Windows\system32\MRT 2014-03-17 19:59 - 2013-08-25 04:46 - 00000000 ____D () C:\Users\Sean\Documents\Vanguard Princess v1.00.1 2014-03-14 19:56 - 2014-03-14 19:11 - 00001908 _____ () C:\Windows\diagwrn.xml 2014-03-14 19:56 - 2014-03-14 19:11 - 00001908 _____ () C:\Windows\diagerr.xml 2014-03-14 19:11 - 2014-03-08 09:21 - 00000000 _____ () C:\Windows\setuperr.log 2014-03-12 13:59 - 2013-10-30 13:06 - 00000000 ____D () C:\Windows\Razer Core 2014-03-12 13:48 - 2009-07-13 21:45 - 00331800 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-03-12 13:47 - 2013-03-14 11:32 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-03-12 13:47 - 2013-03-14 11:32 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight 2014-03-11 12:21 - 2012-07-09 09:43 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-03-11 12:21 - 2012-07-09 09:43 - 00003768 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-03-11 12:21 - 2011-10-27 03:51 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-03-11 09:52 - 2013-09-27 09:53 - 00133928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\NisDrvWFP.sys 2014-03-10 12:18 - 2012-06-05 19:43 - 00000000 ____D () C:\Users\Sean\Documents\GIF Image 2014-03-10 00:24 - 2013-12-04 01:07 - 00000000 ____D () C:\Users\Sean\Documents\Paint.NET User Files 2014-03-10 00:24 - 2012-12-31 05:14 - 00000000 ____D () C:\Program Files\Paint.NET 2014-03-09 23:27 - 2014-03-09 23:27 - 00000000 ____D () C:\Users\Sean\AppData\Roaming\SYSTEMAX Software Development 2014-03-09 23:27 - 2014-03-09 23:27 - 00000000 ____D () C:\ProgramData\SYSTEMAX Software Development 2014-03-07 01:57 - 2014-03-07 01:57 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-03-07 01:54 - 2014-03-07 01:54 - 00003154 _____ () C:\Windows\System32\Tasks\{B51D5A95-C410-4449-983C-707190C470A0} 2014-03-07 00:54 - 2014-03-07 00:54 - 00000000 ____D () C:\Users\Sean\Documents\FINAL FANTASY XIV - A Realm Reborn (Beta Version) 2014-03-06 23:21 - 2014-03-06 23:21 - 00000000 ____D () C:\Users\Sean\Documents\Razer 2014-03-06 23:21 - 2014-03-06 23:21 - 00000000 ____D () C:\Users\Sean\AppData\Local\Razer_Inc 2014-03-06 23:07 - 2013-06-07 11:38 - 00000000 ____D () C:\Users\Sean\AppData\Local\Razer 2014-03-06 23:07 - 2013-06-07 11:38 - 00000000 ____D () C:\ProgramData\Razer 2014-03-06 23:07 - 2013-06-07 11:38 - 00000000 ____D () C:\Program Files (x86)\Razer 2014-03-06 22:22 - 2014-03-06 22:22 - 00021712 _____ (Phoenix Technologies) C:\Windows\SysWOW64\Drivers\DrvAgent64.SYS 2014-03-06 22:22 - 2014-03-06 22:22 - 00000000 ____D () C:\Users\Sean\AppData\Local\eSupport.com 2014-03-06 22:22 - 2014-03-06 22:22 - 00000000 ____D () C:\Program Files (x86)\eSupport.com 2014-03-05 12:05 - 2009-07-13 22:08 - 00032578 _____ () C:\Windows\Tasks\SCHEDLGU.TXT Files to move or delete: ==================== C:\Users\Sean\Windows_7_MouseFix_TextSize(DPI)=100%_Scale=1-to-1_@6.5-of-11.reg C:\Users\Sean\Windows_7_MouseFix_TextSize(DPI)=100%_Scale=1-to-1_@7-of-11.reg C:\Users\Sean\Windows_7_MouseFix_TextSize(DPI)=100%_Scale=1-to-1_@8-of-11.reg Some content of TEMP: ==================== C:\Users\Sean\AppData\Local\Temp\nvStInst.exe C:\Users\Sean\AppData\Local\Temp\_isC5BE.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-03-30 12:38 ==================== End Of Log ============================