ill keep vuze for now pop ups seem to be gone though! but here are the other logs as per your request
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 07-03-2014
Ran by Anton (administrator) on ANTON-PC on 08-03-2014 20:36:01
Running from C:\Users\Anton\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: English(US)
Internet Explorer Version 11
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version:
http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/
Download link for 64-Bit Version:
http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST:
http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgrsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgcsrva.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgfws.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgui.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Skype Technologies) C:\Program Files (x86)\Skype\Updater\Updater.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgnsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgemca.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgcsrva.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1028384 2013-10-17] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\nvspcap64.dll [1100248 2013-12-09] (NVIDIA Corporation)
HKLM\...\Run: [Logitech Download Assistant] - C:\Windows\System32\LogiLDA.dll [1832760 2012-09-20] (Logitech, Inc.)
HKLM\...\Run: [NvBackend] - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2279712 2013-12-09] (NVIDIA Corporation)
HKLM-x32\...\Run: [SDTray] - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [5624784 2013-07-25] (Safer-Networking Ltd.)
HKLM-x32\...\Run: [AVG_UI] - C:\Program Files (x86)\AVG\AVG2014\avgui.exe [5317136 2014-02-11] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-02-06] (Apple Inc.)
Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
HKU\S-1-5-21-772803573-4249959648-332304230-1000\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [20924576 2014-02-10] (Skype Technologies S.A.)
AppInit_DLLs: C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll => C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll File Not Found
AppInit_DLLs-x32: C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC32Loader.dll => "C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC32Loader.dll" File Not Found
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache =
http://ca.msn.com/?rd=1&ucc=CA&dcc=CA&opt=0&ocid=iehp
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x72C32F1F38BDCE01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-us
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 172.16.1.254 142.165.21.5
FireFox:
========
FF ProfilePath: C:\Users\Anton\AppData\Roaming\Mozilla\Firefox\Profiles\2hxjrxom.default
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_70.dll ()
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_70.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.0 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.0 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
Chrome:
=======
CHR HomePage: hxxp://www.google.com
CHR Extension: (Google Wallet) - C:\Users\Anton\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-29]
==================== Services (Whitelisted) =================
R2 avgfws; C:\Program Files (x86)\AVG\AVG2014\avgfws.exe [1510896 2014-02-06] (AVG Technologies CZ, s.r.o.)
R2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe [3746112 2014-02-17] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe [314048 2014-02-06] (AVG Technologies CZ, s.r.o.)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1494304 2013-12-09] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15129376 2013-12-09] (NVIDIA Corporation)
R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1817560 2013-05-16] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [1033688 2013-05-16] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2013-05-15] (Safer-Networking Ltd.)
==================== Drivers (Whitelisted) ====================
R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [152344 2014-01-19] (AVG Technologies CZ, s.r.o.)
R1 Avgfwfd; C:\Windows\System32\DRIVERS\avgfwd6a.sys [57144 2013-09-26] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [233752 2014-02-06] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [191768 2014-01-31] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [220952 2013-12-15] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [326936 2014-01-12] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [129304 2014-02-06] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [31512 2013-12-15] (AVG Technologies CZ, s.r.o.)
R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [251160 2014-01-19] (AVG Technologies CZ, s.r.o.)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-12-05] (NVIDIA Corporation)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-03-08 20:36 - 2014-03-08 20:36 - 00010256 _____ () C:\Users\Anton\Desktop\FRST.txt
2014-03-08 20:35 - 2014-03-08 20:35 - 00003211 _____ () C:\Users\Anton\Desktop\AdwCleaner[S0].txt
2014-03-08 09:13 - 2014-03-08 09:13 - 00002133 _____ () C:\Users\Public\Desktop\Path of Exile.lnk
2014-03-08 09:13 - 2014-03-08 09:13 - 00000000 ____D () C:\Users\Anton\Documents\My Games
2014-03-08 09:13 - 2014-03-08 09:13 - 00000000 ____D () C:\Program Files (x86)\Grinding Gear Games
2014-03-08 09:13 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll
2014-03-08 09:12 - 2014-03-08 09:12 - 07548928 _____ () C:\Users\Anton\Downloads\PathOfExileInstaller.msi
2014-03-07 20:56 - 2014-03-07 20:57 - 79454728 _____ () C:\Users\Anton\Downloads\vlcmediaplayer-setup (1).exe
2014-03-07 20:54 - 2014-03-07 20:55 - 79454728 _____ () C:\Users\Anton\Downloads\vlcmediaplayer-setup.exe
2014-03-07 11:21 - 2014-03-08 20:31 - 00000000 ____D () C:\AdwCleaner
2014-03-07 11:20 - 2014-03-07 11:20 - 01244192 _____ () C:\Users\Anton\Downloads\AdwCleaner.exe
2014-03-07 11:19 - 2014-03-07 11:19 - 02156544 _____ (Farbar) C:\Users\Anton\Downloads\FRST64 (1).exe
2014-03-07 08:24 - 2014-03-07 08:24 - 00043614 _____ () C:\Users\Anton\Downloads\FRST.txt
2014-03-07 08:24 - 2014-03-07 08:24 - 00019185 _____ () C:\Users\Anton\Downloads\Addition.txt
2014-03-07 08:23 - 2014-03-08 20:36 - 00000000 ____D () C:\FRST
2014-03-07 08:23 - 2014-03-07 08:23 - 02156544 _____ (Farbar) C:\Users\Anton\Desktop\FRST64.exe
2014-03-07 08:21 - 2014-03-07 08:21 - 04745728 _____ (AVAST Software) C:\Users\Anton\Downloads\aswMBR (1).exe
2014-03-07 08:19 - 2014-03-07 08:19 - 00987442 _____ () C:\Users\Anton\Downloads\SecurityCheck.exe
2014-03-06 20:52 - 2014-03-06 20:53 - 04745728 _____ (AVAST Software) C:\Users\Anton\Downloads\aswMBR.exe
2014-03-06 20:52 - 2014-03-06 20:52 - 00688992 ____R (Swearware) C:\Users\Anton\Downloads\dds.scr
2014-03-06 09:12 - 2014-03-06 09:12 - 836371410 _____ () C:\Windows\MEMORY.DMP
2014-03-06 09:12 - 2014-03-06 09:12 - 00291616 _____ () C:\Windows\Minidump\030614-72218-01.dmp
2014-03-06 09:12 - 2014-03-06 09:12 - 00275712 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-03-05 22:08 - 2014-03-05 22:08 - 00108056 _____ () C:\Users\Anton\Downloads\Installer.exe
2014-03-05 22:04 - 2014-03-05 22:04 - 24677393 _____ () C:\Users\Anton\Downloads\vlc2.1.3win32.exe
2014-03-05 22:03 - 2014-03-05 22:03 - 00607192 _____ () C:\Users\Anton\Downloads\vlc media player setup.exe
2014-03-05 22:03 - 2014-03-05 22:03 - 00058016 _____ () C:\Users\Anton\AppData\Local\GDIPFONTCACHEV1.DAT
2014-03-05 18:44 - 2014-03-05 18:44 - 00002697 _____ () C:\Users\Public\Desktop\Skype.lnk
2014-03-05 18:44 - 2014-03-05 18:44 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-03-05 18:42 - 2014-03-05 18:43 - 34829472 _____ (Skype Technologies S.A.) C:\Users\Anton\Downloads\SkypeSetupFull.exe
2014-03-05 16:28 - 2014-03-05 16:28 - 00000000 ____D () C:\Users\Anton\AppData\Local\Skype
2014-03-05 16:27 - 2014-03-08 20:36 - 00000000 ____D () C:\Users\Anton\AppData\Roaming\Skype
2014-03-05 16:27 - 2014-03-05 18:44 - 00000000 ____D () C:\ProgramData\Skype
2014-03-05 16:26 - 2014-03-05 16:26 - 01678496 _____ (Skype Technologies S.A.) C:\Users\Anton\Downloads\SkypeSetup.exe
2014-03-04 16:05 - 2014-03-04 16:06 - 00321680 _____ (Right Soft) C:\Users\Anton\Downloads\the.big.bang.theory.601.hdtv-lol.mp4.exe
2014-03-04 09:04 - 2014-03-08 20:34 - 00003360 _____ () C:\Windows\setupact.log
2014-03-04 09:04 - 2014-03-04 09:04 - 00000000 _____ () C:\Windows\setuperr.log
2014-03-01 17:01 - 2014-03-01 17:01 - 00016100 _____ () C:\Users\Anton\Downloads\D51E9D07C4BE063D28385346CA484416D504F56F.torrent
2014-02-28 20:42 - 2014-02-28 20:42 - 00015284 _____ () C:\Users\Anton\Downloads\158CEBE2E6C9FA4D8E12CB29DB9196EF67F8E5D1.torrent
2014-02-28 20:42 - 2014-02-28 20:42 - 00015284 _____ () C:\Users\Anton\Downloads\158CEBE2E6C9FA4D8E12CB29DB9196EF67F8E5D1 (1).torrent
2014-02-28 20:38 - 2014-02-28 20:38 - 00095532 _____ () C:\Users\Anton\Downloads\3E7F80279F341AD94C0D7FA8BF0D8CFD1E56F6FE.torrent
2014-02-28 20:38 - 2014-02-28 20:38 - 00095532 _____ () C:\Users\Anton\Downloads\3E7F80279F341AD94C0D7FA8BF0D8CFD1E56F6FE (1).torrent
2014-02-26 08:57 - 2014-02-26 08:57 - 00000000 ____D () C:\Windows\Sun
2014-02-17 17:14 - 2014-02-17 17:15 - 00000000 ____D () C:\Users\Anton\AppData\Roaming\Apple Computer
2014-02-17 17:14 - 2014-02-17 17:14 - 00001783 _____ () C:\Users\Public\Desktop\iTunes.lnk
2014-02-17 17:14 - 2014-02-17 17:14 - 00000000 ____D () C:\Users\Anton\AppData\Local\Apple Computer
2014-02-17 17:14 - 2014-02-17 17:14 - 00000000 ____D () C:\ProgramData\Apple Computer
2014-02-17 17:14 - 2014-02-17 17:14 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-02-17 17:14 - 2014-02-17 17:14 - 00000000 ____D () C:\Program Files\iTunes
2014-02-17 17:14 - 2014-02-17 17:14 - 00000000 ____D () C:\Program Files\iPod
2014-02-17 17:14 - 2014-02-17 17:14 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-02-17 17:14 - 2012-08-21 13:01 - 00033240 _____ (GEAR Software Inc.) C:\Windows\system32\Drivers\GEARAspiWDM.sys
2014-02-17 17:13 - 2014-02-17 17:13 - 00000000 ____D () C:\Windows\System32\Tasks\Apple
2014-02-17 17:13 - 2014-02-17 17:13 - 00000000 ____D () C:\Users\Anton\AppData\Local\Apple
2014-02-17 17:13 - 2014-02-17 17:13 - 00000000 ____D () C:\ProgramData\Apple
2014-02-17 17:13 - 2014-02-17 17:13 - 00000000 ____D () C:\Program Files\Common Files\Apple
2014-02-17 17:13 - 2014-02-17 17:13 - 00000000 ____D () C:\Program Files\Bonjour
2014-02-17 17:13 - 2014-02-17 17:13 - 00000000 ____D () C:\Program Files (x86)\Bonjour
2014-02-17 17:13 - 2014-02-17 17:13 - 00000000 ____D () C:\Program Files (x86)\Apple Software Update
2014-02-17 17:10 - 2014-02-17 17:12 - 148896080 _____ (Apple Inc.) C:\Users\Anton\Downloads\iTunes64Setup.exe
2014-02-16 19:10 - 2014-02-16 19:10 - 00055031 _____ () C:\Users\Anton\Downloads\Enders.Game.2013.BDRip.X264-SPARKS.torrent
2014-02-13 03:01 - 2013-12-21 03:53 - 00548864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-02-13 03:01 - 2013-12-21 02:56 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-02-13 03:00 - 2014-02-06 06:16 - 23170048 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-02-13 03:00 - 2014-02-06 05:30 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-02-13 03:00 - 2014-02-06 05:30 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-02-13 03:00 - 2014-02-06 05:12 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-02-13 03:00 - 2014-02-06 05:07 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-02-13 03:00 - 2014-02-06 05:06 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-02-13 03:00 - 2014-02-06 04:57 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-02-13 03:00 - 2014-02-06 04:56 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-02-13 03:00 - 2014-02-06 04:52 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-02-13 03:00 - 2014-02-06 04:49 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-02-13 03:00 - 2014-02-06 04:48 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-02-13 03:00 - 2014-02-06 04:48 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-02-13 03:00 - 2014-02-06 04:38 - 17103872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-02-13 03:00 - 2014-02-06 04:32 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-02-13 03:00 - 2014-02-06 04:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-02-13 03:00 - 2014-02-06 04:17 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-02-13 03:00 - 2014-02-06 04:11 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-02-13 03:00 - 2014-02-06 04:01 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-02-13 03:00 - 2014-02-06 04:00 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-02-13 03:00 - 2014-02-06 03:57 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-02-13 03:00 - 2014-02-06 03:57 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-02-13 03:00 - 2014-02-06 03:52 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-02-13 03:00 - 2014-02-06 03:52 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-02-13 03:00 - 2014-02-06 03:50 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-02-13 03:00 - 2014-02-06 03:49 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-02-13 03:00 - 2014-02-06 03:47 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-02-13 03:00 - 2014-02-06 03:46 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-02-13 03:00 - 2014-02-06 03:25 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-02-13 03:00 - 2014-02-06 03:25 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-02-13 03:00 - 2014-02-06 03:24 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-02-13 03:00 - 2014-02-06 03:22 - 13051392 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-02-13 03:00 - 2014-02-06 03:13 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-02-13 03:00 - 2014-02-06 03:09 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-02-13 03:00 - 2014-02-06 03:03 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-02-13 03:00 - 2014-02-06 02:55 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-02-13 03:00 - 2014-02-06 02:41 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-02-13 03:00 - 2014-02-06 02:40 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-02-13 03:00 - 2014-02-06 02:36 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-02-13 03:00 - 2014-02-06 02:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-02-12 22:16 - 2014-02-12 22:16 - 00001929 _____ () C:\Users\Anton\Downloads\FD4B6C82328DFFB707D2CBD30818AD05C377F83E.torrent
2014-02-12 22:16 - 2014-02-12 22:16 - 00001929 _____ () C:\Users\Anton\Downloads\FD4B6C82328DFFB707D2CBD30818AD05C377F83E (1).torrent
2014-02-12 12:55 - 2013-12-31 17:05 - 00420008 _____ () C:\Windows\SysWOW64\locale.nls
2014-02-12 12:55 - 2013-12-31 17:04 - 00420008 _____ () C:\Windows\system32\locale.nls
2014-02-12 12:55 - 2013-12-24 17:09 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2014-02-12 12:55 - 2013-12-24 16:48 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2014-02-12 12:55 - 2013-12-05 20:30 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-02-12 12:55 - 2013-12-05 20:30 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-02-12 12:55 - 2013-12-05 20:02 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-02-12 12:55 - 2013-12-05 20:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-02-12 12:55 - 2013-12-03 20:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2014-02-12 12:55 - 2013-12-03 20:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2014-02-12 12:55 - 2013-12-03 20:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2014-02-12 12:55 - 2013-12-03 20:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
2014-02-12 12:55 - 2013-12-03 20:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2014-02-12 12:55 - 2013-12-03 20:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2014-02-12 12:55 - 2013-12-03 20:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2014-02-12 12:55 - 2013-12-03 20:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2014-02-12 12:55 - 2013-12-03 20:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2014-02-12 12:55 - 2013-12-03 20:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll
2014-02-12 12:55 - 2013-12-03 20:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll
2014-02-12 12:55 - 2013-12-03 20:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll
2014-02-12 12:55 - 2013-12-03 20:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll
2014-02-12 12:55 - 2013-12-03 20:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll
2014-02-12 12:55 - 2013-12-03 19:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe
2014-02-12 12:55 - 2013-12-03 19:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe
2014-02-12 12:55 - 2013-12-03 19:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe
2014-02-12 12:55 - 2013-12-03 19:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe
2014-02-12 12:55 - 2013-11-26 02:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2014-02-12 12:55 - 2013-11-22 16:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2014-02-08 20:35 - 2014-02-08 20:35 - 00008811 _____ () C:\Users\Anton\Downloads\Punisher.War.Zone.(2008).torrent
2014-02-08 20:35 - 2014-02-08 20:35 - 00008811 _____ () C:\Users\Anton\Downloads\Punisher.War.Zone.(2008) (1).torrent
2014-02-08 10:40 - 2014-02-08 10:40 - 00008801 _____ () C:\Users\Anton\Downloads\420FFA5CB90241D398A75FA6AB314B4D7B7E1EAC.torrent
2014-02-08 10:37 - 2014-02-08 10:37 - 00017492 _____ () C:\Users\Anton\Downloads\6393195B9986C748E4F8E7CCB4F10C72F6CE7BBC.torrent
2014-02-08 09:17 - 2014-02-08 09:17 - 00057807 _____ () C:\Users\Anton\Downloads\FFB09AFEFDB29CFF7188D9697E8CCC3698089897.torrent
2014-02-08 09:17 - 2014-02-08 09:17 - 00057807 _____ () C:\Users\Anton\Downloads\FFB09AFEFDB29CFF7188D9697E8CCC3698089897 (1).torrent
2014-02-06 16:33 - 2014-02-06 16:33 - 00233752 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsdrivera.sys
2014-02-06 16:33 - 2014-02-06 16:33 - 00129304 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgmfx64.sys
==================== One Month Modified Files and Folders =======
2014-03-08 20:36 - 2014-03-08 20:36 - 00010256 _____ () C:\Users\Anton\Desktop\FRST.txt
2014-03-08 20:36 - 2014-03-07 08:23 - 00000000 ____D () C:\FRST
2014-03-08 20:36 - 2014-03-05 16:27 - 00000000 ____D () C:\Users\Anton\AppData\Roaming\Skype
2014-03-08 20:35 - 2014-03-08 20:35 - 00003211 _____ () C:\Users\Anton\Desktop\AdwCleaner[S0].txt
2014-03-08 20:34 - 2014-03-04 09:04 - 00003360 _____ () C:\Windows\setupact.log
2014-03-08 20:34 - 2013-09-29 10:26 - 00000892 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-03-08 20:33 - 2013-09-29 11:44 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-03-08 20:33 - 2009-07-13 23:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-03-08 20:32 - 2013-09-29 11:09 - 01082743 _____ () C:\Windows\WindowsUpdate.log
2014-03-08 20:31 - 2014-03-07 11:21 - 00000000 ____D () C:\AdwCleaner
2014-03-08 20:19 - 2013-09-29 10:26 - 00000896 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-03-08 20:13 - 2013-11-15 21:38 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-03-08 20:01 - 2013-09-30 19:16 - 00000000 ____D () C:\ProgramData\MFAData
2014-03-08 09:25 - 2009-07-13 22:45 - 00021888 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-03-08 09:25 - 2009-07-13 22:45 - 00021888 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-03-08 09:13 - 2014-03-08 09:13 - 00002133 _____ () C:\Users\Public\Desktop\Path of Exile.lnk
2014-03-08 09:13 - 2014-03-08 09:13 - 00000000 ____D () C:\Users\Anton\Documents\My Games
2014-03-08 09:13 - 2014-03-08 09:13 - 00000000 ____D () C:\Program Files (x86)\Grinding Gear Games
2014-03-08 09:12 - 2014-03-08 09:12 - 07548928 _____ () C:\Users\Anton\Downloads\PathOfExileInstaller.msi
2014-03-07 20:58 - 2013-10-06 14:41 - 00001066 _____ () C:\Users\Public\Desktop\VLC media player.lnk
2014-03-07 20:57 - 2014-03-07 20:56 - 79454728 _____ () C:\Users\Anton\Downloads\vlcmediaplayer-setup (1).exe
2014-03-07 20:55 - 2014-03-07 20:54 - 79454728 _____ () C:\Users\Anton\Downloads\vlcmediaplayer-setup.exe
2014-03-07 20:55 - 2009-07-13 21:20 - 00000000 ____D () C:\Windows\Resources
2014-03-07 11:20 - 2014-03-07 11:20 - 01244192 _____ () C:\Users\Anton\Downloads\AdwCleaner.exe
2014-03-07 11:20 - 2013-09-29 11:16 - 00000000 ____D () C:\Users\Anton
2014-03-07 11:19 - 2014-03-07 11:19 - 02156544 _____ (Farbar) C:\Users\Anton\Downloads\FRST64 (1).exe
2014-03-07 08:24 - 2014-03-07 08:24 - 00043614 _____ () C:\Users\Anton\Downloads\FRST.txt
2014-03-07 08:24 - 2014-03-07 08:24 - 00019185 _____ () C:\Users\Anton\Downloads\Addition.txt
2014-03-07 08:23 - 2014-03-07 08:23 - 02156544 _____ (Farbar) C:\Users\Anton\Desktop\FRST64.exe
2014-03-07 08:21 - 2014-03-07 08:21 - 04745728 _____ (AVAST Software) C:\Users\Anton\Downloads\aswMBR (1).exe
2014-03-07 08:19 - 2014-03-07 08:19 - 00987442 _____ () C:\Users\Anton\Downloads\SecurityCheck.exe
2014-03-06 20:53 - 2014-03-06 20:52 - 04745728 _____ (AVAST Software) C:\Users\Anton\Downloads\aswMBR.exe
2014-03-06 20:52 - 2014-03-06 20:52 - 00688992 ____R (Swearware) C:\Users\Anton\Downloads\dds.scr
2014-03-06 09:17 - 2009-07-13 23:13 - 00782470 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-03-06 09:12 - 2014-03-06 09:12 - 836371410 _____ () C:\Windows\MEMORY.DMP
2014-03-06 09:12 - 2014-03-06 09:12 - 00291616 _____ () C:\Windows\Minidump\030614-72218-01.dmp
2014-03-06 09:12 - 2014-03-06 09:12 - 00275712 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-03-06 09:12 - 2013-10-04 01:30 - 00000000 ____D () C:\Windows\Minidump
2014-03-06 08:58 - 2013-12-19 07:59 - 00000208 _____ () C:\Users\Anton\AppData\Roaming\WB.CFG
2014-03-05 22:08 - 2014-03-05 22:08 - 00108056 _____ () C:\Users\Anton\Downloads\Installer.exe
2014-03-05 22:04 - 2014-03-05 22:04 - 24677393 _____ () C:\Users\Anton\Downloads\vlc2.1.3win32.exe
2014-03-05 22:03 - 2014-03-05 22:03 - 00607192 _____ () C:\Users\Anton\Downloads\vlc media player setup.exe
2014-03-05 22:03 - 2014-03-05 22:03 - 00058016 _____ () C:\Users\Anton\AppData\Local\GDIPFONTCACHEV1.DAT
2014-03-05 18:44 - 2014-03-05 18:44 - 00002697 _____ () C:\Users\Public\Desktop\Skype.lnk
2014-03-05 18:44 - 2014-03-05 18:44 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-03-05 18:44 - 2014-03-05 16:27 - 00000000 ____D () C:\ProgramData\Skype
2014-03-05 18:43 - 2014-03-05 18:42 - 34829472 _____ (Skype Technologies S.A.) C:\Users\Anton\Downloads\SkypeSetupFull.exe
2014-03-05 16:28 - 2014-03-05 16:28 - 00000000 ____D () C:\Users\Anton\AppData\Local\Skype
2014-03-05 16:26 - 2014-03-05 16:26 - 01678496 _____ (Skype Technologies S.A.) C:\Users\Anton\Downloads\SkypeSetup.exe
2014-03-04 16:06 - 2014-03-04 16:05 - 00321680 _____ (Right Soft) C:\Users\Anton\Downloads\the.big.bang.theory.601.hdtv-lol.mp4.exe
2014-03-04 09:08 - 2013-09-29 10:27 - 00002183 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-03-04 09:04 - 2014-03-04 09:04 - 00000000 _____ () C:\Windows\setuperr.log
2014-03-02 21:26 - 2013-12-23 14:39 - 00000000 ____D () C:\Users\Anton\AppData\Roaming\TS3Client
2014-03-02 21:26 - 2013-10-06 09:41 - 00000000 ____D () C:\Users\Anton\AppData\Roaming\Azureus
2014-03-02 21:24 - 2013-09-29 12:06 - 00000000 ____D () C:\Windows\Panther
2014-03-01 17:01 - 2014-03-01 17:01 - 00016100 _____ () C:\Users\Anton\Downloads\D51E9D07C4BE063D28385346CA484416D504F56F.torrent
2014-03-01 02:04 - 2013-10-06 14:42 - 00000000 ____D () C:\Users\Anton\AppData\Roaming\vlc
2014-02-28 20:42 - 2014-02-28 20:42 - 00015284 _____ () C:\Users\Anton\Downloads\158CEBE2E6C9FA4D8E12CB29DB9196EF67F8E5D1.torrent
2014-02-28 20:42 - 2014-02-28 20:42 - 00015284 _____ () C:\Users\Anton\Downloads\158CEBE2E6C9FA4D8E12CB29DB9196EF67F8E5D1 (1).torrent
2014-02-28 20:38 - 2014-02-28 20:38 - 00095532 _____ () C:\Users\Anton\Downloads\3E7F80279F341AD94C0D7FA8BF0D8CFD1E56F6FE.torrent
2014-02-28 20:38 - 2014-02-28 20:38 - 00095532 _____ () C:\Users\Anton\Downloads\3E7F80279F341AD94C0D7FA8BF0D8CFD1E56F6FE (1).torrent
2014-02-26 08:57 - 2014-02-26 08:57 - 00000000 ____D () C:\Windows\Sun
2014-02-22 00:44 - 2013-09-30 19:36 - 00000965 _____ () C:\Users\Public\Desktop\AVG 2014.lnk
2014-02-20 22:07 - 2013-11-15 21:38 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-02-20 22:07 - 2013-11-15 21:38 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-02-20 22:07 - 2013-11-15 21:38 - 00003768 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-02-17 17:15 - 2014-02-17 17:14 - 00000000 ____D () C:\Users\Anton\AppData\Roaming\Apple Computer
2014-02-17 17:14 - 2014-02-17 17:14 - 00001783 _____ () C:\Users\Public\Desktop\iTunes.lnk
2014-02-17 17:14 - 2014-02-17 17:14 - 00000000 ____D () C:\Users\Anton\AppData\Local\Apple Computer
2014-02-17 17:14 - 2014-02-17 17:14 - 00000000 ____D () C:\ProgramData\Apple Computer
2014-02-17 17:14 - 2014-02-17 17:14 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-02-17 17:14 - 2014-02-17 17:14 - 00000000 ____D () C:\Program Files\iTunes
2014-02-17 17:14 - 2014-02-17 17:14 - 00000000 ____D () C:\Program Files\iPod
2014-02-17 17:14 - 2014-02-17 17:14 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-02-17 17:13 - 2014-02-17 17:13 - 00000000 ____D () C:\Windows\System32\Tasks\Apple
2014-02-17 17:13 - 2014-02-17 17:13 - 00000000 ____D () C:\Users\Anton\AppData\Local\Apple
2014-02-17 17:13 - 2014-02-17 17:13 - 00000000 ____D () C:\ProgramData\Apple
2014-02-17 17:13 - 2014-02-17 17:13 - 00000000 ____D () C:\Program Files\Common Files\Apple
2014-02-17 17:13 - 2014-02-17 17:13 - 00000000 ____D () C:\Program Files\Bonjour
2014-02-17 17:13 - 2014-02-17 17:13 - 00000000 ____D () C:\Program Files (x86)\Bonjour
2014-02-17 17:13 - 2014-02-17 17:13 - 00000000 ____D () C:\Program Files (x86)\Apple Software Update
2014-02-17 17:12 - 2014-02-17 17:10 - 148896080 _____ (Apple Inc.) C:\Users\Anton\Downloads\iTunes64Setup.exe
2014-02-17 03:01 - 2013-10-12 16:50 - 00000000 ____D () C:\Windows\system32\MRT
2014-02-17 03:00 - 2013-10-12 16:50 - 88567024 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-02-16 19:10 - 2014-02-16 19:10 - 00055031 _____ () C:\Users\Anton\Downloads\Enders.Game.2013.BDRip.X264-SPARKS.torrent
2014-02-14 12:06 - 2009-07-13 21:20 - 00000000 ____D () C:\Windows\rescache
2014-02-14 00:14 - 2013-09-29 10:26 - 00003892 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-02-14 00:14 - 2013-09-29 10:26 - 00003640 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-02-13 03:02 - 2013-09-29 11:51 - 00774592 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-02-12 22:16 - 2014-02-12 22:16 - 00001929 _____ () C:\Users\Anton\Downloads\FD4B6C82328DFFB707D2CBD30818AD05C377F83E.torrent
2014-02-12 22:16 - 2014-02-12 22:16 - 00001929 _____ () C:\Users\Anton\Downloads\FD4B6C82328DFFB707D2CBD30818AD05C377F83E (1).torrent
2014-02-08 20:35 - 2014-02-08 20:35 - 00008811 _____ () C:\Users\Anton\Downloads\Punisher.War.Zone.(2008).torrent
2014-02-08 20:35 - 2014-02-08 20:35 - 00008811 _____ () C:\Users\Anton\Downloads\Punisher.War.Zone.(2008) (1).torrent
2014-02-08 10:40 - 2014-02-08 10:40 - 00008801 _____ () C:\Users\Anton\Downloads\420FFA5CB90241D398A75FA6AB314B4D7B7E1EAC.torrent
2014-02-08 10:37 - 2014-02-08 10:37 - 00017492 _____ () C:\Users\Anton\Downloads\6393195B9986C748E4F8E7CCB4F10C72F6CE7BBC.torrent
2014-02-08 09:17 - 2014-02-08 09:17 - 00057807 _____ () C:\Users\Anton\Downloads\FFB09AFEFDB29CFF7188D9697E8CCC3698089897.torrent
2014-02-08 09:17 - 2014-02-08 09:17 - 00057807 _____ () C:\Users\Anton\Downloads\FFB09AFEFDB29CFF7188D9697E8CCC3698089897 (1).torrent
2014-02-06 16:33 - 2014-02-06 16:33 - 00233752 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsdrivera.sys
2014-02-06 16:33 - 2014-02-06 16:33 - 00129304 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgmfx64.sys
2014-02-06 06:16 - 2014-02-13 03:00 - 23170048 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-02-06 05:30 - 2014-02-13 03:00 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-02-06 05:30 - 2014-02-13 03:00 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-02-06 05:12 - 2014-02-13 03:00 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-02-06 05:07 - 2014-02-13 03:00 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-02-06 05:06 - 2014-02-13 03:00 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-02-06 04:57 - 2014-02-13 03:00 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-02-06 04:56 - 2014-02-13 03:00 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-02-06 04:52 - 2014-02-13 03:00 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-02-06 04:49 - 2014-02-13 03:00 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-02-06 04:48 - 2014-02-13 03:00 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-02-06 04:48 - 2014-02-13 03:00 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-02-06 04:38 - 2014-02-13 03:00 - 17103872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-02-06 04:32 - 2014-02-13 03:00 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-02-06 04:20 - 2014-02-13 03:00 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-02-06 04:17 - 2014-02-13 03:00 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-02-06 04:11 - 2014-02-13 03:00 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-02-06 04:01 - 2014-02-13 03:00 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-02-06 04:00 - 2014-02-13 03:00 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-02-06 03:57 - 2014-02-13 03:00 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-02-06 03:57 - 2014-02-13 03:00 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-02-06 03:52 - 2014-02-13 03:00 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-02-06 03:52 - 2014-02-13 03:00 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-02-06 03:50 - 2014-02-13 03:00 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-02-06 03:49 - 2014-02-13 03:00 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-02-06 03:47 - 2014-02-13 03:00 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-02-06 03:46 - 2014-02-13 03:00 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-02-06 03:25 - 2014-02-13 03:00 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-02-06 03:25 - 2014-02-13 03:00 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-02-06 03:24 - 2014-02-13 03:00 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-02-06 03:22 - 2014-02-13 03:00 - 13051392 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-02-06 03:13 - 2014-02-13 03:00 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-02-06 03:09 - 2014-02-13 03:00 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-02-06 03:03 - 2014-02-13 03:00 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-02-06 02:55 - 2014-02-13 03:00 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-02-06 02:41 - 2014-02-13 03:00 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-02-06 02:40 - 2014-02-13 03:00 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-02-06 02:36 - 2014-02-13 03:00 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-02-06 02:34 - 2014-02-13 03:00 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
Some content of TEMP:
====================
C:\Users\Anton\AppData\Local\Temp\1393859675_the_wedownload_manager.exe
C:\Users\Anton\AppData\Local\Temp\nsa3432.exe
C:\Users\Anton\AppData\Local\Temp\nsd2FBC.exe
C:\Users\Anton\AppData\Local\Temp\nsf66DD.exe
C:\Users\Anton\AppData\Local\Temp\nsh2C7F.exe
C:\Users\Anton\AppData\Local\Temp\nsiF05C.exe
C:\Users\Anton\AppData\Local\Temp\nsmED6D.exe
C:\Users\Anton\AppData\Local\Temp\nso640D.exe
C:\Users\Anton\AppData\Local\Temp\nsoAFA2.exe
C:\Users\Anton\AppData\Local\Temp\nsqB486.exe
C:\Users\Anton\AppData\Local\Temp\nsvEA4F.exe
C:\Users\Anton\AppData\Local\Temp\nsx618B.exe
C:\Users\Anton\AppData\Local\Temp\nszB204.exe
C:\Users\Anton\AppData\Local\Temp\Quarantine.exe
C:\Users\Anton\AppData\Local\Temp\sp_downloader.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-03-01 10:15
==================== End Of Log ============================
# AdwCleaner v3.020 - Report created 08/03/2014 at 20:31:51
# Updated 27/02/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Anton - ANTON-PC
# Running from : C:\Users\Anton\Downloads\AdwCleaner.exe
# Option : Clean
***** [ Services ] *****
[#] Service Deleted : CltMngSvc
***** [ Files / Folders ] *****
Folder Deleted : C:\Program Files (x86)\SearchProtect
Folder Deleted : C:\Program Files (x86)\WinZip Registry Optimizer
[x] Not Deleted : C:\Program Files (x86)\Vuze
Folder Deleted : C:\Windows\SysWOW64\AI_RecycleBin
Folder Deleted : C:\Users\Anton\AppData\Local\SearchProtect
Folder Deleted : C:\Users\Anton\AppData\Roaming\UpdaterEX
File Deleted : C:\END
File Deleted : C:\Windows\System32\roboot64.exe
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKCU\Software\Classes\iLivid.torrent
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\optprostart_rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\optprostart_rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\wajam_download_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\wajam_download_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\wajam_install_rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\wajam_install_rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\wajamupdater_rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\wajamupdater_rasmancs
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{D616A4A2-7B38-4DBC-9093-6FE7A4A21B17}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\ilivid
Key Deleted : HKCU\Software\InstallCore
Key Deleted : HKCU\Software\UpdaterEX
Key Deleted : HKCU\Software\WEDLMNGR
Key Deleted : HKCU\Software\AppDataLow\Software\Crossrider
Key Deleted : HKLM\Software\caphyon
Key Deleted : HKLM\Software\SearchProtect
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\UpdaterEX
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.16518
-\\ Mozilla Firefox v25.0.1 (en-US)
[ File : C:\Users\Anton\AppData\Roaming\Mozilla\Firefox\Profiles\2hxjrxom.default\prefs.js ]
Line Deleted : user_pref("browser.newtab.url", "hxxp://search.conduit.com/?ctid=CT3314759&octid=EB_ORIGINAL_CTID&SearchSource=69&CUI=&SSPV=&Lay=1&UM=4&UP=SP7F511950-C5C1-42F4-813D-6A7C12AEAF07");
-\\ Google Chrome v33.0.1750.146
[ File : C:\Users\Anton\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Deleted : homepage
*************************
AdwCleaner[R0].txt - [3217 octets] - [07/03/2014 11:21:14]
AdwCleaner[R1].txt - [3308 octets] - [08/03/2014 20:31:09]
AdwCleaner[S0].txt - [3071 octets] - [08/03/2014 20:31:51]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [3131 octets] ##########