OTL logfile created on: 2014-08-23 12:02:41 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Ja\Desktop\scany Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,50 Gb Total Physical Memory | 2,38 Gb Available Physical Memory | 68,10% Memory free 7,00 Gb Paging File | 5,66 Gb Available in Paging File | 80,97% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 37,46 Gb Total Space | 12,55 Gb Free Space | 33,51% Space Free | Partition Type: NTFS Drive D: | 19,65 Gb Total Space | 17,55 Gb Free Space | 89,35% Space Free | Partition Type: NTFS Drive E: | 54,09 Gb Total Space | 18,34 Gb Free Space | 33,90% Space Free | Partition Type: NTFS Computer Name: JA-KOMPUTER | User Name: Ja | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2014-08-23 12:01:03 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Ja\Desktop\scany\OTL.exe PRC - [2014-08-22 22:04:58 | 001,868,976 | ---- | M] (Adobe Systems, Inc.) -- C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_14_0_0_179.exe PRC - [2014-08-03 17:17:04 | 000,275,568 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe PRC - [2014-07-25 15:51:18 | 002,403,104 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe PRC - [2014-07-25 15:51:13 | 001,720,608 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe PRC - [2014-07-25 15:51:12 | 017,536,800 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe PRC - [2014-07-02 21:42:26 | 000,940,320 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe PRC - [2014-07-02 21:42:25 | 001,818,968 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe PRC - [2014-07-02 19:39:15 | 000,413,128 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe PRC - [2014-06-27 11:52:26 | 002,088,408 | ---- | M] (Safer-Networking Ltd.) -- C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe PRC - [2014-06-24 10:41:42 | 001,738,168 | ---- | M] (Safer-Networking Ltd.) -- C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe PRC - [2014-04-25 14:12:20 | 000,171,928 | ---- | M] (Safer-Networking Ltd.) -- C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe PRC - [2009-07-14 03:14:42 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe PRC - [2009-07-14 03:14:20 | 002,613,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe PRC - [2009-07-14 03:14:15 | 000,271,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\conhost.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2014-08-17 14:34:40 | 017,048,240 | ---- | M] () -- C:\Windows\System32\Macromed\Flash\NPSWF32_14_0_0_179.dll MOD - [2014-08-03 17:17:03 | 003,800,688 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll [color=#E56717]========== Services (SafeList) ==========[/color] SRV - File not found [Auto | Running] -- C:\Program Files\Spybot -- (SDWSCService) SRV - File not found [Auto | Running] -- C:\Program Files\Spybot -- (SDUpdateService) SRV - File not found [Auto | Running] -- C:\Program Files\Spybot -- (SDScannerService) SRV - [2014-08-17 14:34:40 | 000,262,320 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc) SRV - [2014-08-03 17:17:03 | 000,119,408 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance) SRV - [2014-07-25 15:51:13 | 001,720,608 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe -- (NvNetworkService) SRV - [2014-07-25 15:51:12 | 017,536,800 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe -- (NvStreamSvc) SRV - [2014-07-16 04:28:18 | 000,542,912 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Steam\SteamService.exe -- (Steam Client Service) SRV - [2014-07-02 19:39:15 | 000,413,128 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service) SRV - [2014-04-03 20:21:48 | 000,315,008 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate) SRV - [2013-11-06 18:30:44 | 000,758,224 | ---- | M] (Tunngle.net GmbH) [On_Demand | Stopped] -- C:\Program Files\Tunngle\TnglCtrl.exe -- (TunngleService) SRV - [2009-07-14 03:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc) SRV - [2009-07-14 03:16:12 | 001,004,544 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\PeerDistSvc.dll -- (PeerDistSvc) SRV - [2009-07-14 03:15:41 | 000,680,960 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend) SRV - [2009-07-14 03:15:31 | 000,396,288 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\inetsrv\iisw3adm.dll -- (WAS) SRV - [2009-07-14 03:15:31 | 000,396,288 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\inetsrv\iisw3adm.dll -- (W3SVC) SRV - [2009-07-14 03:15:21 | 000,308,224 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\inetsrv\ftpsvc.dll -- (ftpsvc) SRV - [2009-07-14 03:14:53 | 000,061,440 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\inetsrv\apphostsvc.dll -- (AppHostSvc) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2014-07-25 15:51:12 | 000,019,232 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys -- (NvStreamKms) DRV - [2014-07-02 22:54:57 | 010,681,176 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvlddmkm.sys -- (nvlddmkm) DRV - [2014-06-27 08:59:18 | 000,116,320 | ---- | M] (Power Software Ltd) [Kernel | System | Running] -- C:\Windows\System32\drivers\scdemu.sys -- (SCDEmu) DRV - [2014-05-16 15:25:48 | 000,204,064 | ---- | M] (Oracle Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\VBoxDrv.sys -- (VBoxDrv) DRV - [2014-05-16 15:24:56 | 000,126,752 | ---- | M] (Oracle Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\VBoxNetFlt.sys -- (VBoxNetFlt) DRV - [2014-05-16 15:24:56 | 000,116,512 | ---- | M] (Oracle Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\VBoxNetAdp.sys -- (VBoxNetAdp) DRV - [2014-05-16 15:24:54 | 000,104,736 | ---- | M] (Oracle Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\VBoxUSBMon.sys -- (VBoxUSBMon) DRV - [2014-03-31 18:42:44 | 000,034,080 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvvad32v.sys -- (nvvad_WaveExtensible) DRV - [2012-12-29 22:59:38 | 000,024,184 | ---- | M] (Almico Software) [Kernel | Boot | Running] -- C:\Windows\System32\speedfan.sys -- (speedfan) DRV - [2010-02-23 11:39:48 | 001,500,160 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\athur.sys -- (athur) DRV - [2009-09-16 07:02:40 | 000,027,136 | ---- | M] (Tunngle.net) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\tap0901t.sys -- (tap0901t) DRV - [2009-07-14 03:19:10 | 000,175,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vmbus.sys -- (vmbus) DRV - [2009-07-14 03:19:10 | 000,040,896 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\vmstorfl.sys -- (storflt) DRV - [2009-07-14 03:19:10 | 000,028,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\storvsc.sys -- (storvsc) DRV - [2009-07-14 01:51:11 | 000,034,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\winusb.sys -- (WinUsb) DRV - [2009-07-14 01:28:47 | 000,005,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vms3cap.sys -- (s3cap) DRV - [2009-07-14 01:28:45 | 000,017,920 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\VMBusHID.sys -- (VMBusHID) DRV - [2009-07-14 00:02:52 | 000,347,264 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvm62x32.sys -- (NVENETFD) DRV - [2008-09-24 13:45:54 | 000,022,368 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ggsemc.sys -- (ggsemc) DRV - [2008-09-24 13:45:54 | 000,010,976 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ggflt.sys -- (ggflt) DRV - [1996-04-03 21:33:26 | 000,005,248 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\System32\giveio.sys -- (giveio) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-2845882948-995769861-2257615813-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank IE - HKU\S-1-5-21-2845882948-995769861-2257615813-1000\..\SearchScopes,DefaultScope = {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} IE - HKU\S-1-5-21-2845882948-995769861-2257615813-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC IE - HKU\S-1-5-21-2845882948-995769861-2257615813-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.useDBForOrder: true FF - prefs.js..browser.startup.homepage: "http://www.google.pl/" FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:31.0 FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32_14_0_0_179.dll () FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.65.2: C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.65.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.12.450: C:\Program Files\Real Alternative\browser\plugins\nppl3260.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.448: C:\Program Files\Real Alternative\browser\plugins\nprpjplug.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) [2014-07-03 17:19:27 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Ja\AppData\Roaming\mozilla\Extensions [2014-08-22 22:53:54 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Ja\AppData\Roaming\mozilla\Firefox\Profiles\l0evn66z.default\extensions [2014-07-23 12:15:32 | 000,967,685 | ---- | M] () (No name found) -- C:\Users\Ja\AppData\Roaming\mozilla\firefox\profiles\l0evn66z.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-07-03 17:19:17 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\browser\extensions [2014-08-03 17:17:04 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} O1 HOSTS File: ([2014-08-19 13:19:14 | 000,000,885 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) O4 - HKLM..\Run: [NvBackend] C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation) O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation) O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (Microsoft Corporation) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O13 - gopher Prefix: missing O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{066D72B3-9060-432B-9225-E5E42C8472AC}: DhcpNameServer = 10.254.254.254 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{D3B5A7D3-6FB1-4EB6-A6A5-C15EEA4AC7EA}: NameServer = 8.8.8.8,8.8.4.4 O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation) O20 - Winlogon\Notify\SDWinLogon: DllName - (SDWinLogon.dll) - File not found O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2009-06-10 23:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ] O32 - AutoRun File - [2012-09-09 02:07:25 | 000,000,000 | ---D | M] - D:\AutoAlchemy -- [ NTFS ] O32 - AutoRun File - [2014-07-13 10:38:03 | 000,245,044 | ---- | M] () - D:\AutoAlchemy.rar -- [ NTFS ] O33 - MountPoints2\{94b4ce4b-2852-11e4-909b-001fd06a5022}\Shell - "" = AutoRun O33 - MountPoints2\{94b4ce4b-2852-11e4-909b-001fd06a5022}\Shell\AutoRun\command - "" = H:\ICM_Manager.exe O33 - MountPoints2\G\Shell - "" = AutoRun O33 - MountPoints2\G\Shell\AutoRun\command - "" = G:\setup.exe O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) O38 - SubSystems\\Windows: (ServerDll=sxssrv,4) [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2014-08-23 12:01:22 | 000,000,000 | ---D | C] -- C:\Users\Ja\Desktop\scany [2014-08-23 11:59:18 | 000,000,000 | ---D | C] -- C:\FRST [2014-08-22 23:05:56 | 000,000,000 | ---D | C] -- C:\SOPHTEMP [2014-08-22 22:47:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Doctor Web [2014-08-22 22:31:28 | 000,140,280 | ---- | C] (BullGuard Ltd.) -- C:\Windows\System32\BgGamingMonitor.dll [2014-08-22 22:30:58 | 000,064,336 | ---- | C] (BullGuard Ltd.) -- C:\Windows\System32\BGLsp.dll [2014-08-22 22:12:33 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Roaming\Virus Scan [2014-08-22 22:12:17 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Bitdefender [2014-08-22 22:08:29 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Roaming\QuickScan [2014-08-22 21:44:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Sophos [2014-08-22 21:44:21 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Sophos [2014-08-22 21:44:19 | 000,000,000 | ---D | C] -- C:\Program Files\Sophos [2014-08-22 21:40:32 | 000,000,000 | ---D | C] -- C:\Users\Ja\Doctor Web [2014-08-22 21:26:42 | 000,110,296 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [2014-08-22 21:26:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware [2014-08-22 21:26:28 | 000,051,928 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mwac.sys [2014-08-22 21:26:28 | 000,023,256 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys [2014-08-22 21:26:28 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes Anti-Malware [2014-08-22 21:26:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes [2014-08-22 21:26:12 | 000,074,456 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamchameleon.sys [2014-08-22 20:59:16 | 000,000,000 | ---D | C] -- C:\ProgramData\GridinSoft [2014-08-22 20:52:55 | 000,000,000 | ---D | C] -- C:\Users\Ja\Desktop\BOTEK [2014-08-22 20:04:30 | 000,000,000 | ---D | C] -- C:\Users\Ja\Documents\ProcAlyzer Dumps [2014-08-22 17:44:24 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Roaming\TeamViewer [2014-08-22 16:43:21 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Office [2014-08-22 16:33:20 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2008 [2014-08-22 16:18:22 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2008 R2 [2014-08-21 22:52:20 | 000,000,000 | ---D | C] -- C:\180110002883b32ffe [2014-08-21 22:44:59 | 000,000,000 | ---D | C] -- C:\85adb93569ba9e069b457551ca8e [2014-08-21 19:35:09 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla Server [2014-08-21 19:22:45 | 000,000,000 | ---D | C] -- C:\Users\Ja\Documents\aspnet_client [2014-08-21 18:29:01 | 000,000,000 | ---D | C] -- C:\Users\Ja\Documents\Visual Studio 2005 [2014-08-21 18:22:40 | 000,000,000 | ---D | C] -- C:\Windows\System32\BestPractices [2014-08-21 18:22:39 | 000,000,000 | ---D | C] -- C:\inetpub [2014-08-21 18:18:46 | 000,000,000 | ---D | C] -- C:\Users\Ja\Documents\Integration Services Script Component [2014-08-21 18:18:01 | 000,000,000 | ---D | C] -- C:\Users\Ja\Documents\Integration Services Script Task [2014-08-21 18:17:48 | 000,000,000 | ---D | C] -- C:\Users\Ja\Documents\SQL Server Management Studio [2014-08-21 17:59:36 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Visual Studio 9.0 [2014-08-21 17:11:07 | 000,000,000 | ---D | C] -- C:\Users\Ja\Documents\Visual Studio 2008 [2014-08-21 17:10:56 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Local\Microsoft Help [2014-08-21 17:10:13 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Local\Microsoft_Corporation [2014-08-21 17:09:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft Help [2014-08-21 17:07:47 | 000,000,000 | ---D | C] -- C:\Windows\PCHEALTH [2014-08-21 17:04:53 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft SQL Server [2014-08-21 17:04:39 | 000,000,000 | ---D | C] -- C:\3ba82f4889329391ae9b1b1f [2014-08-21 16:31:09 | 000,000,000 | ---D | C] -- C:\Users\Ja\Desktop\Temp [2014-08-21 16:21:48 | 000,000,000 | ---D | C] -- C:\FFOutput [2014-08-21 16:21:35 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory [2014-08-21 16:21:23 | 000,000,000 | ---D | C] -- C:\Program Files\FreeTime [2014-08-21 15:47:15 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\YTD Video Downloader [2014-08-21 15:12:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2 [2014-08-21 15:12:14 | 000,018,968 | ---- | C] (Safer Networking Limited) -- C:\Windows\System32\sdnclean.exe [2014-08-21 15:12:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Spybot - Search & Destroy [2014-08-21 15:12:09 | 000,000,000 | ---D | C] -- C:\Program Files\Spybot - Search & Destroy 2 [2014-08-20 17:54:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client [2014-08-20 17:38:43 | 000,000,000 | ---D | C] -- C:\Users\Ja\Desktop\Creddy_Avengers_sroking_bot [2014-08-20 13:17:00 | 000,012,416 | ---- | C] (MCCI Corporation) -- C:\Windows\System32\drivers\ss_bcm.sys [2014-08-20 13:17:00 | 000,012,288 | ---- | C] (MCCI Corporation) -- C:\Windows\System32\drivers\ss_bwh.sys [2014-08-20 13:16:59 | 000,000,000 | ---D | C] -- C:\Program Files\SAMSUNG [2014-08-20 13:16:37 | 000,000,000 | ---D | C] -- C:\ProgramData\Samsung [2014-08-19 20:22:14 | 000,000,000 | ---D | C] -- C:\Users\Ja\Desktop\How to Make a Silkroad Private Server - SSE v2_files [2014-08-19 20:12:34 | 000,000,000 | ---D | C] -- C:\Program Files\Google [2014-08-19 20:11:30 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Local\Google [2014-08-19 20:10:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft [2014-08-19 20:10:05 | 000,000,000 | ---D | C] -- C:\Program Files\DVDVideoSoft [2014-08-19 20:10:05 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DVDVideoSoft [2014-08-19 20:03:41 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Roaming\DVDVideoSoft [2014-08-19 20:00:01 | 000,000,000 | R--D | C] -- C:\Users\Ja\Documents\MEGA [2014-08-19 19:54:08 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Local\Mega Limited [2014-08-19 16:02:56 | 000,000,000 | ---D | C] -- C:\Windows\System32\RTCOM [2014-08-19 16:02:27 | 001,783,056 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\System32\WavesLib.dll [2014-08-19 16:02:27 | 001,725,784 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\System32\WavesGUILib.dll [2014-08-19 16:02:27 | 001,379,760 | ---- | C] (TOSHIBA Corporation) -- C:\Windows\System32\tosade.dll [2014-08-19 16:02:26 | 000,819,648 | ---- | C] (TOSHIBA Corporation) -- C:\Windows\System32\tadefxapo2.dll [2014-08-19 16:02:26 | 000,058,264 | ---- | C] (TOSHIBA CORPORATION.) -- C:\Windows\System32\TepeqAPO.dll [2014-08-19 16:02:25 | 000,345,328 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\System32\SRSTSXT.dll [2014-08-19 16:02:25 | 000,185,584 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\System32\SRSTSHD.dll [2014-08-19 16:02:25 | 000,173,296 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\System32\SRSHP360.dll [2014-08-19 16:02:25 | 000,140,528 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\System32\SRSWOW.dll [2014-08-19 16:02:25 | 000,134,584 | ---- | C] (TOSHIBA Corporation) -- C:\Windows\System32\tadefxapo.dll [2014-08-19 16:02:24 | 001,497,704 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\System32\RTSndMgr.cpl [2014-08-19 16:02:24 | 000,214,368 | ---- | C] (Synopsys, Inc.) -- C:\Windows\System32\SFNHK.dll [2014-08-19 16:02:24 | 000,192,104 | ---- | C] (Sony Corporation) -- C:\Windows\System32\SFSS_APO.dll [2014-08-19 16:02:24 | 000,074,080 | ---- | C] (Synopsys, Inc.) -- C:\Windows\System32\SFCOM.dll [2014-08-19 16:02:24 | 000,068,960 | ---- | C] (Synopsys, Inc.) -- C:\Windows\System32\SFAPO.dll [2014-08-19 16:02:23 | 003,173,008 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\System32\RtkAPO.dll [2014-08-19 16:02:23 | 002,417,808 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\System32\RtkPgExt.dll [2014-08-19 16:02:23 | 000,645,776 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\System32\RtkApoApi.dll [2014-08-19 16:02:23 | 000,359,768 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\System32\RTEEP32A.dll [2014-08-19 16:02:23 | 000,295,768 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\System32\RP3DHT32.dll [2014-08-19 16:02:23 | 000,295,768 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\System32\RP3DAA32.dll [2014-08-19 16:02:23 | 000,170,840 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\System32\RTEED32A.dll [2014-08-19 16:02:23 | 000,087,696 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\System32\RtkCoInstII.dll [2014-08-19 16:02:23 | 000,078,680 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\System32\RTEEL32A.dll [2014-08-19 16:02:23 | 000,064,856 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\System32\RTEEG32A.dll [2014-08-19 16:02:23 | 000,013,416 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\System32\RtkCoLDR.dll [2014-08-19 16:02:22 | 007,161,696 | ---- | C] (Dolby Laboratories) -- C:\Windows\System32\R4EEP32A.dll [2014-08-19 16:02:22 | 005,096,448 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\System32\RCoRes.dat [2014-08-19 16:02:22 | 001,185,112 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\System32\MaxxAudioRealtek2.dll [2014-08-19 16:02:22 | 000,351,072 | ---- | C] (Dolby Laboratories) -- C:\Windows\System32\R4EED32A.dll [2014-08-19 16:02:22 | 000,350,552 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\System32\MaxxVolumeSDAPO.dll [2014-08-19 16:02:22 | 000,105,824 | ---- | C] (Dolby Laboratories) -- C:\Windows\System32\R4EEL32A.dll [2014-08-19 16:02:22 | 000,091,488 | ---- | C] (Dolby Laboratories) -- C:\Windows\System32\R4EEA32A.dll [2014-08-19 16:02:22 | 000,061,792 | ---- | C] (Dolby Laboratories) -- C:\Windows\System32\R4EEG32A.dll [2014-08-19 16:02:21 | 007,783,768 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\System32\MaxxAudioRealtek.dll [2014-08-19 16:02:21 | 001,836,376 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\System32\MaxxAudioEQ.dll [2014-08-19 16:02:21 | 000,709,976 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\System32\MaxxAudioAPOShell.dll [2014-08-19 16:02:21 | 000,357,712 | ---- | C] (Knowles Acoustics ) -- C:\Windows\System32\KAAPORT.dll [2014-08-19 16:02:21 | 000,259,928 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\System32\MaxxAudioAPO30.dll [2014-08-19 16:02:21 | 000,232,792 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\System32\MaxxAudioAPO20.dll [2014-08-19 16:02:21 | 000,132,368 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\System32\MaxxAudioAPO.dll [2014-08-19 16:02:17 | 002,193,472 | ---- | C] (Fortemedia Corporation) -- C:\Windows\System32\FMAPO.dll [2014-08-19 16:02:17 | 001,509,480 | ---- | C] (DTS) -- C:\Windows\System32\DTSS2SpeakerDLL.dll [2014-08-19 16:02:17 | 001,292,904 | ---- | C] (DTS) -- C:\Windows\System32\DTSS2HeadphoneDLL.dll [2014-08-19 16:02:17 | 001,220,200 | ---- | C] (DTS) -- C:\Windows\System32\DTSBoostDLL.dll [2014-08-19 16:02:17 | 000,654,952 | ---- | C] (DTS) -- C:\Windows\System32\DTSBassEnhancementDLL.dll [2014-08-19 16:02:17 | 000,631,400 | ---- | C] (DTS) -- C:\Windows\System32\DTSSymmetryDLL.dll [2014-08-19 16:02:17 | 000,601,704 | ---- | C] (DTS) -- C:\Windows\System32\DTSVoiceClarityDLL.dll [2014-08-19 16:02:17 | 000,458,344 | ---- | C] (DTS) -- C:\Windows\System32\DTSNeoPCDLL.dll [2014-08-19 16:02:17 | 000,421,744 | ---- | C] (DTS) -- C:\Windows\System32\DTSU2PLFX32.dll [2014-08-19 16:02:17 | 000,398,192 | ---- | C] (DTS) -- C:\Windows\System32\DTSU2PGFX32.dll [2014-08-19 16:02:17 | 000,389,736 | ---- | C] (DTS) -- C:\Windows\System32\DTSGainCompensatorDLL.dll [2014-08-19 16:02:17 | 000,375,400 | ---- | C] (DTS) -- C:\Windows\System32\DTSLimiterDLL.dll [2014-08-19 16:02:17 | 000,335,216 | ---- | C] (DTS) -- C:\Windows\System32\DTSU2PREC32.dll [2014-08-19 16:02:17 | 000,218,728 | ---- | C] (DTS) -- C:\Windows\System32\DTSGFXAPONS.dll [2014-08-19 16:02:17 | 000,218,728 | ---- | C] (DTS) -- C:\Windows\System32\DTSGFXAPO.dll [2014-08-19 16:02:17 | 000,218,216 | ---- | C] (DTS) -- C:\Windows\System32\DTSLFXAPO.dll [2014-08-19 16:02:17 | 000,176,736 | ---- | C] (Andrea Electronics Corporation) -- C:\Windows\System32\AERTACap.dll [2014-08-19 16:02:17 | 000,095,840 | ---- | C] (Andrea Electronics Corporation) -- C:\Windows\System32\AERTARen.dll [2014-08-19 16:01:18 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield [2014-08-19 13:05:53 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Roaming\Comodo [2014-08-19 12:48:52 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Local\AdTrustMedia [2014-08-19 12:47:49 | 001,700,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\gdiplus.dll [2014-08-19 12:47:49 | 001,060,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfc71.dll [2014-08-19 12:46:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Adtrustmedia [2014-08-19 12:46:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Comodo [2014-08-19 12:45:51 | 000,000,000 | ---D | C] -- C:\Program Files\Comodo [2014-08-19 12:44:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Comodo [2014-08-19 01:47:06 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1 [2014-08-15 02:23:48 | 000,000,000 | ---D | C] -- C:\NVIDIA Corporation [2014-08-14 23:57:28 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Roaming\Media Player Classic [2014-08-14 20:20:15 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Local\Geckofx [2014-08-14 20:20:06 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Roaming\Firefly Studios [2014-08-14 20:20:05 | 000,000,000 | ---D | C] -- C:\Users\Ja\Documents\Stronghold Kingdoms [2014-08-14 20:17:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Firefly Studios [2014-08-14 20:17:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefly Studios [2014-08-13 20:38:06 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Local\Risen3 [2014-08-13 20:31:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Risen 3 - Titan Lords [2014-08-13 15:28:38 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Europa Universalis IV [2014-08-13 13:54:11 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G. Mechanics [2014-08-13 13:54:11 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Roaming\Car Mechanic Simulator 2014 [2014-08-13 10:44:20 | 000,000,000 | ---D | C] -- C:\Windows\pss [2014-08-13 10:42:26 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner [2014-08-11 18:57:02 | 000,000,000 | ---D | C] -- C:\Users\Ja\Documents\Witcher 2 [2014-08-11 18:57:02 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Local\The Witcher 2 [2014-08-09 12:20:38 | 000,000,000 | ---D | C] -- C:\ProgramData\Package Cache [2014-08-08 17:58:30 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PAYDAY 2 [2014-08-08 14:05:09 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Local\PAYDAY 2 (Demo) [2014-08-08 13:54:07 | 000,000,000 | ---D | C] -- C:\Program Files\AGEIA Technologies [2014-08-08 10:11:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G.Pirats Games [2014-08-08 10:10:23 | 000,000,000 | ---D | C] -- C:\Windows\System32\appmgmt [2014-08-08 09:54:59 | 000,000,000 | ---D | C] -- C:\Users\Ja\Documents\Tunngle [2014-08-08 09:54:59 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Roaming\Tunngle [2014-08-08 09:54:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Tunngle [2014-08-08 09:54:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tunngle [2014-08-08 09:54:58 | 000,027,136 | ---- | C] (Tunngle.net) -- C:\Windows\System32\drivers\tap0901t.sys [2014-08-08 09:54:58 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Tunngle [2014-08-08 09:54:58 | 000,000,000 | ---D | C] -- C:\Program Files\Tunngle [2014-08-07 18:36:07 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Local\PAYDAY 2 [2014-08-07 17:46:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Caphyon [2014-08-07 14:17:43 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Local\PAYDAY [2014-08-07 14:17:42 | 000,000,000 | ---D | C] -- C:\ProgramData\RELOADED [2014-08-06 15:44:38 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Guitar Pro 6 [2014-08-03 17:17:06 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Maintenance Service [2014-08-03 17:17:06 | 000,000,000 | ---D | C] -- C:\ProgramData\Mozilla [2014-08-03 10:54:44 | 024,198,088 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvoglv32.dll [2014-08-03 10:54:44 | 016,122,344 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvwgf2um.dll [2014-08-03 10:54:44 | 015,296,456 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcompiler.dll [2014-08-03 10:54:44 | 011,283,344 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvopencl.dll [2014-08-03 10:54:44 | 011,222,048 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcuda.dll [2014-08-03 10:54:44 | 010,681,176 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\drivers\nvlddmkm.sys [2014-08-03 10:54:44 | 003,988,952 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcuvid.dll [2014-08-03 10:54:44 | 001,054,552 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvdispco3234052.dll [2014-08-03 10:54:44 | 000,907,552 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvdispgenco3234052.dll [2014-08-03 10:54:44 | 000,907,096 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NvIFR.dll [2014-08-03 10:54:44 | 000,869,152 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NvFBC.dll [2014-08-03 10:51:07 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Local\NVIDIA Corporation [2014-08-03 10:51:06 | 001,291,280 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvspbridge.dll [2014-08-03 10:51:06 | 001,126,480 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvspcap.dll [2014-07-27 21:17:05 | 000,000,000 | ---D | C] -- C:\Users\Ja\Documents\SIM-Lock Patch Generator [2014-07-27 21:04:30 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony Ericsson [2014-07-27 21:04:29 | 000,000,000 | ---D | C] -- C:\Program Files\Sony Ericsson [2014-07-27 20:57:58 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Local\ElevatedDiagnostics [2014-07-27 20:56:21 | 000,000,000 | ---D | C] -- C:\Users\Ja\Desktop\Sterowniki usb flash [2014-07-26 10:04:40 | 000,000,000 | ---D | C] -- C:\Users\Ja\AppData\Local\SKIDROW [2014-07-26 08:13:26 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerISO [2014-07-26 08:13:15 | 000,000,000 | ---D | C] -- C:\Program Files\PowerISO [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2014-08-23 11:19:25 | 000,790,830 | ---- | M] () -- C:\Windows\System32\perfh015.dat [2014-08-23 11:19:25 | 000,699,088 | ---- | M] () -- C:\Windows\System32\perfh009.dat [2014-08-23 11:19:25 | 000,175,002 | ---- | M] () -- C:\Windows\System32\perfc015.dat [2014-08-23 11:19:25 | 000,135,758 | ---- | M] () -- C:\Windows\System32\perfc009.dat [2014-08-23 11:17:00 | 000,001,028 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job [2014-08-23 11:14:35 | 000,001,024 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job [2014-08-23 11:14:27 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2014-08-23 11:14:25 | 2817,433,600 | -HS- | M] () -- C:\hiberfil.sys [2014-08-23 01:24:04 | 000,110,296 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\MBAMSwissArmy.sys [2014-08-22 23:49:30 | 000,000,028 | ---- | M] () -- C:\Windows\ODBC.INI [2014-08-22 23:04:16 | 000,009,584 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2014-08-22 23:04:16 | 000,009,584 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2014-08-22 22:48:08 | 000,000,416 | ---- | M] () -- C:\Windows\System32\F39D4DE6-98B8-4E05-91BD-549E8A8248BD [2014-08-22 22:30:26 | 000,140,280 | ---- | M] (BullGuard Ltd.) -- C:\Windows\System32\BgGamingMonitor.dll [2014-08-22 22:30:26 | 000,064,336 | ---- | M] (BullGuard Ltd.) -- C:\Windows\System32\BGLsp.dll [2014-08-22 22:11:06 | 000,000,930 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job [2014-08-22 21:54:36 | 000,131,660 | ---- | M] () -- C:\Users\Ja\Desktop\jeefosfx.exe [2014-08-22 21:44:21 | 000,003,179 | ---- | M] () -- C:\Users\Ja\Desktop\Sophos Virus Removal Tool.lnk [2014-08-22 21:27:56 | 000,011,291 | ---- | M] () -- C:\Windows\wininit.ini [2014-08-22 21:26:33 | 000,001,060 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk [2014-08-22 21:13:27 | 000,000,080 | ---- | M] () -- C:\Users\Ja\AppData\Roaming\mBot.ini [2014-08-22 16:37:51 | 002,359,350 | ---- | M] () -- C:\Users\Ja\Desktop\ISRO.bmp [2014-08-21 18:25:49 | 000,000,168 | ---- | M] () -- C:\Users\Ja\Documents\web.config [2014-08-21 18:22:37 | 000,184,946 | ---- | M] () -- C:\Users\Ja\Documents\welcome.png [2014-08-21 18:22:37 | 000,000,689 | ---- | M] () -- C:\Users\Ja\Documents\iisstart.htm [2014-08-21 16:21:35 | 000,001,156 | ---- | M] () -- C:\Users\Ja\Desktop\Format Factory.lnk [2014-08-21 15:47:15 | 000,001,247 | ---- | M] () -- C:\Users\Public\Desktop\YTD Video Downloader.lnk [2014-08-21 15:12:17 | 000,002,119 | ---- | M] () -- C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk [2014-08-20 17:54:56 | 000,001,120 | ---- | M] () -- C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk [2014-08-20 13:17:00 | 000,012,416 | ---- | M] (MCCI Corporation) -- C:\Windows\System32\drivers\ss_bcm.sys [2014-08-20 13:17:00 | 000,012,288 | ---- | M] (MCCI Corporation) -- C:\Windows\System32\drivers\ss_bwh.sys [2014-08-20 12:41:38 | 000,000,000 | ---- | M] () -- C:\Users\Ja\Desktop\Archive-adb9.zip [2014-08-19 20:55:44 | 000,003,584 | ---- | M] () -- C:\Users\Ja\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2014-08-19 20:22:13 | 000,286,342 | ---- | M] () -- C:\Users\Ja\Desktop\How to Make a Silkroad Private Server - SSE v2.htm [2014-08-19 20:10:25 | 000,002,272 | ---- | M] () -- C:\Users\Public\Desktop\Free YouTube to MP3 Converter.lnk [2014-08-19 15:28:27 | 001,783,056 | ---- | M] (Waves Audio Ltd.) -- C:\Windows\System32\WavesLib.dll [2014-08-19 15:28:27 | 001,725,784 | ---- | M] (Waves Audio Ltd.) -- C:\Windows\System32\WavesGUILib.dll [2014-08-19 15:28:27 | 001,379,760 | ---- | M] (TOSHIBA Corporation) -- C:\Windows\System32\tosade.dll [2014-08-19 15:28:26 | 002,417,808 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Windows\System32\RtkPgExt.dll [2014-08-19 15:28:26 | 000,819,648 | ---- | M] (TOSHIBA Corporation) -- C:\Windows\System32\tadefxapo2.dll [2014-08-19 15:28:26 | 000,345,328 | ---- | M] (SRS Labs, Inc.) -- C:\Windows\System32\SRSTSXT.dll [2014-08-19 15:28:26 | 000,214,368 | ---- | M] (Synopsys, Inc.) -- C:\Windows\System32\SFNHK.dll [2014-08-19 15:28:26 | 000,192,104 | ---- | M] (Sony Corporation) -- C:\Windows\System32\SFSS_APO.dll [2014-08-19 15:28:26 | 000,185,584 | ---- | M] (SRS Labs, Inc.) -- C:\Windows\System32\SRSTSHD.dll [2014-08-19 15:28:26 | 000,173,296 | ---- | M] (SRS Labs, Inc.) -- C:\Windows\System32\SRSHP360.dll [2014-08-19 15:28:26 | 000,140,528 | ---- | M] (SRS Labs, Inc.) -- C:\Windows\System32\SRSWOW.dll [2014-08-19 15:28:26 | 000,134,584 | ---- | M] (TOSHIBA Corporation) -- C:\Windows\System32\tadefxapo.dll [2014-08-19 15:28:26 | 000,074,080 | ---- | M] (Synopsys, Inc.) -- C:\Windows\System32\SFCOM.dll [2014-08-19 15:28:26 | 000,068,960 | ---- | M] (Synopsys, Inc.) -- C:\Windows\System32\SFAPO.dll [2014-08-19 15:28:26 | 000,058,264 | ---- | M] (TOSHIBA CORPORATION.) -- C:\Windows\System32\TepeqAPO.dll [2014-08-19 15:28:25 | 003,173,008 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Windows\System32\RtkAPO.dll [2014-08-19 15:28:25 | 000,645,776 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Windows\System32\RtkApoApi.dll [2014-08-19 15:28:25 | 000,359,768 | ---- | M] (Dolby Laboratories, Inc.) -- C:\Windows\System32\RTEEP32A.dll [2014-08-19 15:28:25 | 000,295,768 | ---- | M] (Dolby Laboratories, Inc.) -- C:\Windows\System32\RP3DHT32.dll [2014-08-19 15:28:25 | 000,295,768 | ---- | M] (Dolby Laboratories, Inc.) -- C:\Windows\System32\RP3DAA32.dll [2014-08-19 15:28:25 | 000,170,840 | ---- | M] (Dolby Laboratories, Inc.) -- C:\Windows\System32\RTEED32A.dll [2014-08-19 15:28:25 | 000,087,696 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Windows\System32\RtkCoInstII.dll [2014-08-19 15:28:25 | 000,078,680 | ---- | M] (Dolby Laboratories, Inc.) -- C:\Windows\System32\RTEEL32A.dll [2014-08-19 15:28:25 | 000,064,856 | ---- | M] (Dolby Laboratories, Inc.) -- C:\Windows\System32\RTEEG32A.dll [2014-08-19 15:28:25 | 000,013,416 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Windows\System32\RtkCoLDR.dll [2014-08-19 15:28:24 | 007,161,696 | ---- | M] (Dolby Laboratories) -- C:\Windows\System32\R4EEP32A.dll [2014-08-19 15:28:24 | 000,351,072 | ---- | M] (Dolby Laboratories) -- C:\Windows\System32\R4EED32A.dll [2014-08-19 15:28:24 | 000,105,824 | ---- | M] (Dolby Laboratories) -- C:\Windows\System32\R4EEL32A.dll [2014-08-19 15:28:24 | 000,091,488 | ---- | M] (Dolby Laboratories) -- C:\Windows\System32\R4EEA32A.dll [2014-08-19 15:28:24 | 000,061,792 | ---- | M] (Dolby Laboratories) -- C:\Windows\System32\R4EEG32A.dll [2014-08-19 15:28:23 | 007,783,768 | ---- | M] (Waves Audio Ltd.) -- C:\Windows\System32\MaxxAudioRealtek.dll [2014-08-19 15:28:23 | 001,185,112 | ---- | M] (Waves Audio Ltd.) -- C:\Windows\System32\MaxxAudioRealtek2.dll [2014-08-19 15:28:23 | 000,350,552 | ---- | M] (Waves Audio Ltd.) -- C:\Windows\System32\MaxxVolumeSDAPO.dll [2014-08-19 15:28:22 | 002,193,472 | ---- | M] (Fortemedia Corporation) -- C:\Windows\System32\FMAPO.dll [2014-08-19 15:28:22 | 001,836,376 | ---- | M] (Waves Audio Ltd.) -- C:\Windows\System32\MaxxAudioEQ.dll [2014-08-19 15:28:22 | 000,709,976 | ---- | M] (Waves Audio Ltd.) -- C:\Windows\System32\MaxxAudioAPOShell.dll [2014-08-19 15:28:22 | 000,357,712 | ---- | M] (Knowles Acoustics ) -- C:\Windows\System32\KAAPORT.dll [2014-08-19 15:28:22 | 000,259,928 | ---- | M] (Waves Audio Ltd.) -- C:\Windows\System32\MaxxAudioAPO30.dll [2014-08-19 15:28:22 | 000,232,792 | ---- | M] (Waves Audio Ltd.) -- C:\Windows\System32\MaxxAudioAPO20.dll [2014-08-19 15:28:22 | 000,132,368 | ---- | M] (Waves Audio Ltd.) -- C:\Windows\System32\MaxxAudioAPO.dll [2014-08-19 15:28:21 | 001,509,480 | ---- | M] (DTS) -- C:\Windows\System32\DTSS2SpeakerDLL.dll [2014-08-19 15:28:21 | 001,292,904 | ---- | M] (DTS) -- C:\Windows\System32\DTSS2HeadphoneDLL.dll [2014-08-19 15:28:21 | 001,220,200 | ---- | M] (DTS) -- C:\Windows\System32\DTSBoostDLL.dll [2014-08-19 15:28:21 | 000,654,952 | ---- | M] (DTS) -- C:\Windows\System32\DTSBassEnhancementDLL.dll [2014-08-19 15:28:21 | 000,631,400 | ---- | M] (DTS) -- C:\Windows\System32\DTSSymmetryDLL.dll [2014-08-19 15:28:21 | 000,601,704 | ---- | M] (DTS) -- C:\Windows\System32\DTSVoiceClarityDLL.dll [2014-08-19 15:28:21 | 000,458,344 | ---- | M] (DTS) -- C:\Windows\System32\DTSNeoPCDLL.dll [2014-08-19 15:28:21 | 000,421,744 | ---- | M] (DTS) -- C:\Windows\System32\DTSU2PLFX32.dll [2014-08-19 15:28:21 | 000,398,192 | ---- | M] (DTS) -- C:\Windows\System32\DTSU2PGFX32.dll [2014-08-19 15:28:21 | 000,389,736 | ---- | M] (DTS) -- C:\Windows\System32\DTSGainCompensatorDLL.dll [2014-08-19 15:28:21 | 000,375,400 | ---- | M] (DTS) -- C:\Windows\System32\DTSLimiterDLL.dll [2014-08-19 15:28:21 | 000,335,216 | ---- | M] (DTS) -- C:\Windows\System32\DTSU2PREC32.dll [2014-08-19 15:28:21 | 000,218,728 | ---- | M] (DTS) -- C:\Windows\System32\DTSGFXAPONS.dll [2014-08-19 15:28:21 | 000,218,728 | ---- | M] (DTS) -- C:\Windows\System32\DTSGFXAPO.dll [2014-08-19 15:28:21 | 000,218,216 | ---- | M] (DTS) -- C:\Windows\System32\DTSLFXAPO.dll [2014-08-19 15:28:20 | 000,176,736 | ---- | M] (Andrea Electronics Corporation) -- C:\Windows\System32\AERTACap.dll [2014-08-19 15:28:20 | 000,095,840 | ---- | M] (Andrea Electronics Corporation) -- C:\Windows\System32\AERTARen.dll [2014-08-19 15:28:16 | 001,497,704 | ---- | M] (Realtek Semiconductor Corp.) -- C:\Windows\System32\RTSndMgr.cpl [2014-08-19 13:19:14 | 000,000,885 | ---- | M] () -- C:\Windows\System32\drivers\etc\hosts [2014-08-19 12:47:49 | 001,700,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\gdiplus.dll [2014-08-19 12:47:49 | 001,060,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\mfc71.dll [2014-08-19 11:49:17 | 003,690,936 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT [2014-08-19 02:05:23 | 000,078,921 | ---- | M] () -- C:\Users\Ja\Desktop\dmt.png [2014-08-19 02:05:23 | 000,000,132 | ---- | M] () -- C:\Users\Ja\AppData\Roaming\Preferencje formatu PNG CS6 firmy Adobe [2014-08-19 01:59:03 | 000,078,553 | ---- | M] () -- C:\Users\Ja\Desktop\dt.png [2014-08-17 14:34:40 | 000,071,344 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerCPLApp.cpl [2014-08-14 20:17:24 | 000,000,711 | ---- | M] () -- C:\Users\Public\Desktop\Stronghold Kingdoms.lnk [2014-08-13 20:31:08 | 000,000,860 | ---- | M] () -- C:\Users\Public\Desktop\Risen 3 - Titan Lords.lnk [2014-08-13 15:28:38 | 000,000,773 | ---- | M] () -- C:\Users\Public\Desktop\Europa Universalis IV.lnk [2014-08-13 10:42:26 | 000,000,965 | ---- | M] () -- C:\Users\Ja\Desktop\CCleaner.lnk [2014-08-09 19:40:46 | 002,190,274 | ---- | M] () -- C:\Users\Ja\Desktop\Film0026.mp4 [2014-08-09 14:02:39 | 000,025,301 | ---- | M] () -- C:\Users\Ja\Desktop\load.png [2014-08-09 12:39:31 | 000,000,626 | ---- | M] () -- C:\Users\Public\Desktop\PAYDAY 2.lnk [2014-08-08 23:50:14 | 001,663,051 | ---- | M] () -- C:\Users\Ja\Desktop\pay.png [2014-08-08 13:09:23 | 000,000,202 | ---- | M] () -- C:\Users\Ja\Desktop\PAYDAY 2 Demo.url [2014-08-08 09:59:01 | 000,000,000 | ---- | M] () -- C:\Windows\System32\Access.dat [2014-08-08 09:54:59 | 000,000,949 | ---- | M] () -- C:\Users\Public\Desktop\Tunngle beta.lnk [2014-08-07 18:08:43 | 000,696,225 | ---- | M] () -- C:\Users\Ja\Desktop\rr.png [2014-08-07 13:49:19 | 000,000,453 | ---- | M] () -- C:\Users\Public\Desktop\Payday The Heist.lnk [2014-08-06 15:44:38 | 000,000,535 | ---- | M] () -- C:\Users\Public\Desktop\Guitar Pro 6.lnk [2014-07-27 21:22:23 | 030,160,336 | ---- | M] () -- C:\K770_R8BC004_MAIN_GENERIC_VI_RED53.mbn [2014-07-27 21:06:28 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_Kernel_ggsemc_01007.Wdf [2014-07-26 08:13:26 | 000,000,965 | ---- | M] () -- C:\Users\Public\Desktop\PowerISO.lnk [2014-07-25 15:50:29 | 001,291,280 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\nvspbridge.dll [2014-07-25 15:50:29 | 001,126,480 | ---- | M] (NVIDIA Corporation) -- C:\Windows\System32\nvspcap.dll [2014-07-24 20:33:58 | 000,248,813 | ---- | M] () -- C:\Users\Ja\Desktop\tbj&dm.png [color=#E56717]========== Files Created - No Company Name ==========[/color] [2014-08-22 22:58:41 | 000,131,660 | ---- | C] () -- C:\Users\Ja\Desktop\jeefosfx.exe [2014-08-22 22:48:08 | 000,000,416 | ---- | C] () -- C:\Windows\System32\F39D4DE6-98B8-4E05-91BD-549E8A8248BD [2014-08-22 21:44:21 | 000,003,179 | ---- | C] () -- C:\Users\Ja\Desktop\Sophos Virus Removal Tool.lnk [2014-08-22 21:27:40 | 000,011,291 | ---- | C] () -- C:\Windows\wininit.ini [2014-08-22 21:26:33 | 000,001,060 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk [2014-08-22 16:37:42 | 002,359,350 | ---- | C] () -- C:\Users\Ja\Desktop\ISRO.bmp [2014-08-21 19:22:45 | 000,184,946 | ---- | C] () -- C:\Users\Ja\Documents\welcome.png [2014-08-21 19:22:45 | 000,000,689 | ---- | C] () -- C:\Users\Ja\Documents\iisstart.htm [2014-08-21 19:22:45 | 000,000,168 | ---- | C] () -- C:\Users\Ja\Documents\web.config [2014-08-21 18:53:59 | 000,000,028 | ---- | C] () -- C:\Windows\ODBC.INI [2014-08-21 16:21:35 | 000,001,156 | ---- | C] () -- C:\Users\Ja\Desktop\Format Factory.lnk [2014-08-21 15:12:17 | 000,002,131 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk [2014-08-21 15:12:17 | 000,002,119 | ---- | C] () -- C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk [2014-08-20 17:54:56 | 000,001,120 | ---- | C] () -- C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk [2014-08-20 12:41:38 | 000,000,000 | ---- | C] () -- C:\Users\Ja\Desktop\Archive-adb9.zip [2014-08-19 20:55:44 | 000,003,584 | ---- | C] () -- C:\Users\Ja\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2014-08-19 20:22:08 | 000,286,342 | ---- | C] () -- C:\Users\Ja\Desktop\How to Make a Silkroad Private Server - SSE v2.htm [2014-08-19 20:12:51 | 000,001,028 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job [2014-08-19 20:12:51 | 000,001,024 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job [2014-08-19 20:10:25 | 000,002,272 | ---- | C] () -- C:\Users\Public\Desktop\Free YouTube to MP3 Converter.lnk [2014-08-19 16:02:23 | 000,293,889 | ---- | C] () -- C:\Windows\System32\drivers\RTAIODAT.DAT [2014-08-19 12:32:57 | 000,078,921 | ---- | C] () -- C:\Users\Ja\Desktop\dmt.png [2014-08-19 12:32:57 | 000,078,553 | ---- | C] () -- C:\Users\Ja\Desktop\dt.png [2014-08-14 20:17:24 | 000,000,711 | ---- | C] () -- C:\Users\Public\Desktop\Stronghold Kingdoms.lnk [2014-08-13 20:31:08 | 000,000,860 | ---- | C] () -- C:\Users\Public\Desktop\Risen 3 - Titan Lords.lnk [2014-08-13 15:55:50 | 002,190,274 | ---- | C] () -- C:\Users\Ja\Desktop\Film0026.mp4 [2014-08-13 15:28:38 | 000,000,773 | ---- | C] () -- C:\Users\Public\Desktop\Europa Universalis IV.lnk [2014-08-13 10:42:26 | 000,000,965 | ---- | C] () -- C:\Users\Ja\Desktop\CCleaner.lnk [2014-08-09 14:02:38 | 000,025,301 | ---- | C] () -- C:\Users\Ja\Desktop\load.png [2014-08-08 23:50:13 | 001,663,051 | ---- | C] () -- C:\Users\Ja\Desktop\pay.png [2014-08-08 17:58:30 | 000,000,626 | ---- | C] () -- C:\Users\Public\Desktop\PAYDAY 2.lnk [2014-08-08 13:09:23 | 000,000,202 | ---- | C] () -- C:\Users\Ja\Desktop\PAYDAY 2 Demo.url [2014-08-08 09:59:01 | 000,000,000 | ---- | C] () -- C:\Windows\System32\Access.dat [2014-08-08 09:54:59 | 000,000,949 | ---- | C] () -- C:\Users\Public\Desktop\Tunngle beta.lnk [2014-08-07 18:08:43 | 000,696,225 | ---- | C] () -- C:\Users\Ja\Desktop\rr.png [2014-08-07 13:49:19 | 000,000,453 | ---- | C] () -- C:\Users\Public\Desktop\Payday The Heist.lnk [2014-08-07 13:49:19 | 000,000,453 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Payday The Heist.lnk [2014-08-06 15:44:38 | 000,000,535 | ---- | C] () -- C:\Users\Public\Desktop\Guitar Pro 6.lnk [2014-07-27 21:52:52 | 030,160,336 | ---- | C] () -- C:\K770_R8BC004_MAIN_GENERIC_VI_RED53.mbn [2014-07-27 21:06:28 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_Kernel_ggsemc_01007.Wdf [2014-07-26 08:13:26 | 000,000,965 | ---- | C] () -- C:\Users\Public\Desktop\PowerISO.lnk [2014-07-24 20:33:56 | 000,248,813 | ---- | C] () -- C:\Users\Ja\Desktop\tbj&dm.png [2014-07-22 20:22:01 | 000,218,200 | ---- | C] () -- C:\Windows\System32\unrar.dll [2014-07-19 12:52:29 | 000,000,132 | ---- | C] () -- C:\Users\Ja\AppData\Roaming\Preferencje formatu PNG CS6 firmy Adobe [2014-07-03 18:15:39 | 000,000,080 | ---- | C] () -- C:\Users\Ja\AppData\Roaming\mBot.ini [2014-07-03 17:39:06 | 003,826,628 | ---- | C] () -- C:\Windows\System32\nvcoproc.bin [2014-07-03 17:23:43 | 000,000,000 | -H-- | C] () -- C:\ProgramData\DP45977C.lfl [color=#E56717]========== ZeroAccess Check ==========[/color] [2009-07-14 06:42:31 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] "" = %SystemRoot%\system32\shell32.dll -- [2009-07-14 03:16:14 | 012,866,560 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] "" = %systemroot%\system32\wbem\fastprox.dll -- [2009-07-14 03:15:20 | 000,605,696 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] "" = %systemroot%\system32\wbem\wbemess.dll -- [2009-07-14 03:16:17 | 000,342,528 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Both [color=#E56717]========== LOP Check ==========[/color] [2014-08-20 13:12:55 | 000,000,000 | ---D | M] -- C:\Users\Ja\AppData\Roaming\Audacity [2014-07-04 15:04:55 | 000,000,000 | ---D | M] -- C:\Users\Ja\AppData\Roaming\Awesomium [2014-07-08 22:24:24 | 000,000,000 | ---D | M] -- C:\Users\Ja\AppData\Roaming\BlueSprig [2014-08-13 13:54:11 | 000,000,000 | ---D | M] -- C:\Users\Ja\AppData\Roaming\Car Mechanic Simulator 2014 [2014-08-19 20:42:36 | 000,000,000 | ---D | M] -- C:\Users\Ja\AppData\Roaming\DVDVideoSoft [2014-08-14 20:20:06 | 000,000,000 | ---D | M] -- C:\Users\Ja\AppData\Roaming\Firefly Studios [2014-08-21 16:02:48 | 000,000,000 | ---D | M] -- C:\Users\Ja\AppData\Roaming\FreeFLVConverter [2014-08-06 15:45:21 | 000,000,000 | ---D | M] -- C:\Users\Ja\AppData\Roaming\Guitar Pro 6 [2014-07-17 22:38:57 | 000,000,000 | ---D | M] -- C:\Users\Ja\AppData\Roaming\HeroesAndGeneralsDesktop [2014-07-22 20:22:52 | 000,000,000 | ---D | M] -- C:\Users\Ja\AppData\Roaming\MPC-HC [2014-08-22 22:15:51 | 000,000,000 | ---D | M] -- C:\Users\Ja\AppData\Roaming\QuickScan [2014-08-19 01:47:06 | 000,000,000 | ---D | M] -- C:\Users\Ja\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1 [2014-08-22 17:44:24 | 000,000,000 | ---D | M] -- C:\Users\Ja\AppData\Roaming\TeamViewer [2014-08-22 23:02:37 | 000,000,000 | ---D | M] -- C:\Users\Ja\AppData\Roaming\TS3Client [2014-08-11 00:02:37 | 000,000,000 | ---D | M] -- C:\Users\Ja\AppData\Roaming\Tunngle [2014-08-22 22:15:49 | 000,000,000 | ---D | M] -- C:\Users\Ja\AppData\Roaming\uTorrent [2014-08-22 22:12:40 | 000,000,000 | ---D | M] -- C:\Users\Ja\AppData\Roaming\Virus Scan [color=#E56717]========== Purity Check ==========[/color] < End of report >