PDA

View Full Version : I can't update windows. I may have an infection.



sufferinginsilence
2014-10-10, 16:10
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 08-10-2014 01
Ran by Crosshair (administrator) on FORMULAV on 10-10-2014 14:36:22
Running from C:\Users\Crosshair\Desktop
Loaded Profile: Crosshair (Available profiles: Crosshair)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: English (United States)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(ASUSTeK COMPUTER INC.) C:\Windows\System32\ATKFUSService.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
() C:\Program Files (x86)\ASUS\AXSP\1.00.13\atkexComSvc.exe
() C:\Windows\SysWOW64\ASDR.exe
() C:\Program Files (x86)\ASUS\AAHM\1.00.14\aaHMSvc.exe
() C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.11\AsSysCtrlService.exe
(DeviceVM, Inc.) C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCUService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
() C:\Program Files (x86)\Samsung\USB Drivers\26_VIA_driver2\amd64\VIAService.exe
(Garmin Ltd or its subsidiaries) C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
() C:\Program Files (x86)\NETGEAR\WNDA3100v2\WifiSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
() C:\Program Files\ASUS\GamerOSD\ATKFastUserSwitching.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\DIGI+ VRM\VRMHelp.exe
() C:\Windows\DAODx.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Logitech Inc.) C:\Program Files\Logitech\Gaming Software\LWEMon.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Garmin Ltd or its subsidiaries) C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
(LG Electronics) C:\Program Files (x86)\LG Soft India Pvt Ltd\Dual Package\bin\Dual Package.exe
(DeviceVM, Inc.) C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\GamerOSD\GamerOSD.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
(InstallShield Software Corporation) C:\Program Files (x86)\Common Files\InstallShield\UpdateService\issch.exe
() C:\Program Files (x86)\LG Soft India Pvt Ltd\Dual Package\bin\TestDDCCI.exe
(NETGEAR) C:\Program Files (x86)\NETGEAR\WG111T\wlan111t.exe
(TODO: <Company name>) C:\Program Files (x86)\LG Soft India Pvt Ltd\Dual Package\bin\SmartHookTestApp.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe
() C:\Program Files (x86)\NETGEAR\WNDA3100v2\WNDA3100v2.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\TurboV EVO\TurboVHelp.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\EPU\EPUHelp.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\AI Suite II.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\AlertHelper.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11842152 2011-05-03] (Realtek Semiconductor)
HKLM\...\Run: [Start WingMan Profiler] => C:\Program Files\Logitech\Gaming Software\LWEMon.exe [190536 2010-06-14] (Logitech Inc.)
HKLM\...\Run: [Nvtmru] => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1028384 2013-11-14] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2279712 2013-12-10] (NVIDIA Corporation)
HKLM\...\Run: [KiesTrayAgent] => C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [3508112 2011-09-29] (Samsung Electronics Co., Ltd.)
HKLM-x32\...\Run: => C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe [375000 2009-10-26] (DeviceVM, Inc.)
HKLM-x32\...\Run: [ASUSGamerOSD] => C:\Program Files (x86)\ASUS\GamerOSD\GamerOSD.exe [380928 2009-07-30] (ASUSTeK Computer Inc.)
HKLM-x32\...\Run: [ISUSScheduler] => C:\Program Files (x86)\Common Files\InstallShield\UpdateService\issch.exe [69632 2004-04-13] (InstallShield Software Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [ASUS AiChargerPlus Execute] => C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe [465536 2010-11-08] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\rFactor\Hamachi\hamachi-2-ui.exe [1996200 2012-06-27] (LogMeIn Inc.)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [43816 2014-07-31] (Apple Inc.)
HKLM-x32\...\Run: [AirServer] => C:\Program Files (x86)\AirServer\AirServer\AirServer.exe
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-11] (Oracle Corporation)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-01-17] (Apple Inc.)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-09-01] (Apple Inc.)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4085896 2014-10-07] (AVAST Software)
HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.)
Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
HKU\S-1-5-21-888456847-2528441040-574326226-1000\...\Run: [ISUSPM Startup] => C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe [196608 2004-04-17] (InstallShield Software Corporation)
HKU\S-1-5-21-888456847-2528441040-574326226-1000\...\Run: [GarminExpressTrayApp] => C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [688984 2014-07-23] (Garmin Ltd or its subsidiaries)
HKU\S-1-5-21-888456847-2528441040-574326226-1000\...\Run: [Voobly] => [X]
HKU\S-1-5-21-888456847-2528441040-574326226-1000\...\Run: [Steam] => C:\Program Files (x86)\Valve\Steam\\Steam.exe [1775808 2014-05-21] (Valve Corporation)
HKU\S-1-5-21-888456847-2528441040-574326226-1000\...\Run: [msnmsgr] => "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
HKU\S-1-5-21-888456847-2528441040-574326226-1000\...\Run: [LogMeIn Cubby] => "C:\Users\Crosshair\AppData\Roaming\cubby\cubby.exe" -hidden
HKU\S-1-5-21-888456847-2528441040-574326226-1000\...\Run: [LightScribe Control Panel] => C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2363392 2009-06-17] (Hewlett-Packard Company)
HKU\S-1-5-21-888456847-2528441040-574326226-1000\...\Run: [KiesHelper] => C:\Program Files (x86)\Samsung\Kies\KiesHelper.exe [929680 2011-09-29] (Samsung)
HKU\S-1-5-21-888456847-2528441040-574326226-1000\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3600216 2014-10-07] (Electronic Arts)
HKU\S-1-5-21-888456847-2528441040-574326226-1000\...\Run: [Spybot-S&D Cleaning] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [4566952 2014-06-24] (Safer-Networking Ltd.)
HKU\S-1-5-21-888456847-2528441040-574326226-1000\...\MountPoints2: {3dddfb07-d10e-11e0-bffb-806e6f6e6963} - D:\.\Bin\ASSETUP.exe
HKU\S-1-5-18\...\Run: [GarminExpressTrayApp] => C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [688984 2014-07-23] (Garmin Ltd or its subsidiaries)
AppInit_DLLs: C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll => C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll File Not Found
AppInit_DLLs: C:\ProgramData\Fast And Safe\FastAndSafe_x64.dll => C:\ProgramData\Fast And Safe\FastAndSafe_x64.dll File Not Found
AppInit_DLLs-x32: c:\progra~2\searchprotect\searchprotect\bin\spvc32loader.dll => "c:\progra~2\searchprotect\searchprotect\bin\spvc32loader.dll" File Not Found
AppInit_DLLs-x32: c:\progra~3\fastan~1\fastan~1.dll => "c:\progra~3\fastan~1\fastan~1.dll" File Not Found
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma Loader.lnk
ShortcutTarget: Adobe Gamma Loader.lnk -> C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Dual Package.lnk
ShortcutTarget: Dual Package.lnk -> C:\Program Files (x86)\LG Soft India Pvt Ltd\Dual Package\bin\Dual Package.exe (LG Electronics)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\NETGEAR WG111T Smart Wizard.lnk
ShortcutTarget: NETGEAR WG111T Smart Wizard.lnk -> C:\Program Files (x86)\NETGEAR\WG111T\wlan111t.exe (NETGEAR)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\NETGEAR WNDA3100v2 Smart Wizard.lnk
ShortcutTarget: NETGEAR WNDA3100v2 Smart Wizard.lnk -> C:\Program Files (x86)\NETGEAR\WNDA3100v2\WNDA3100v2.exe ()
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Crosshair\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Crosshair\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Crosshair\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Crosshair\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Crosshair\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Crosshair\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Crosshair\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Crosshair\AppData\Roaming\Dropbox\bin\DropboxExt.22.dll (Dropbox, Inc.)
BootExecute: ampasdnclean64.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://uk.search.yahoo.com/yhs/search?type=avastbcl&hspart=avast&hsimp=yhs-001&p={searchTerms}
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://uk.yahoo.com?fr=hp-avast&type=avastbcl
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://uk.msn.com/?ocid=iehp
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x31C3CB7D5B67CC01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-GB
HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://uk.yahoo.com?fr=hp-avast&type=avastbcl
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://speedial.com/?f=1&a=spd_dsites03_14_22_ff&cd=2XzuyEtN2Y1L1Qzu0FyEyC0DtDyEyDyE0E0BtCyCyC0AzztDtN0D0Tzu0SzzzztCtN1L2XzutBtFtBtDtFtCzytFyCtN1L1CzutCyEtBzytDyD1V1PtN1L1G1B1V1N2Y1L1Qzu2StAyBtB0CtD0A0B0BtG0F0EzzzytGyC0AyDyEtG0E0DyC0BtGyDyB0EzytBtCyEzyzz0EtD0F2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyBtCtB0EtCtBtA0CtG0EtByC0AtG0FyE0D0CtGyC0EyDzytGtAyCyByByEtAtA0AtDtC0A0D2Q&cr=1284146606&ir=
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = https://uk.yahoo.com?fr=hp-avast&type=avastbcl
URLSearchHook: HKCU - SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch64.dll (DeviceVM, Inc.)
URLSearchHook: HKCU - SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch.dll (DeviceVM, Inc.)
SearchScopes: HKLM - DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = http://www.searchqu.com/web?src=ieb&appid=102&systemid=406&sr=0&q={searchTerms}
SearchScopes: HKLM - {31090377-0740-419E-BEFC-A56E50500D5B} URL = http://speedial.com/results.php?f=4&q={searchTerms}&a=spd_dsites03_14_22_ff&cd=2XzuyEtN2Y1L1Qzu0FyEyC0DtDyEyDyE0E0BtCyCyC0AzztDtN0D0Tzu0SzzzztCtN1L2XzutBtFtBtDtFtCzytFyCtN1L1CzutCyEtBzytDyD1V1PtN1L1G1B1V1N2Y1L1Qzu2StAyBtB0CtD0A0B0BtG0F0EzzzytGyC0AyDyEtG0E0DyC0BtGyDyB0EzytBtCyEzyzz0EtD0F2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyBtCtB0EtCtBtA0CtG0EtByC0AtG0FyE0D0CtGyC0EyDzytGtAyCyByByEtAtA0AtDtC0A0D2Q&cr=1284146606&ir=
SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = http://www.searchqu.com/web?src=ieb&appid=102&systemid=406&sr=0&q={searchTerms}
SearchScopes: HKLM-x32 - DefaultScope {9CB96984-43C3-4D44-90EF-01466EFCF7BB} URL = https://uk.search.yahoo.com/yhs/search?type=avastbcl&hspart=avast&hsimp=yhs-001&p={searchTerms}
SearchScopes: HKLM-x32 - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = http://www.searchqu.com/web?src=ieb&appid=102&systemid=406&sr=0&q={searchTerms}
SearchScopes: HKLM-x32 - {9CB96984-43C3-4D44-90EF-01466EFCF7BB} URL = https://uk.search.yahoo.com/yhs/search?type=avastbcl&hspart=avast&hsimp=yhs-001&p={searchTerms}
SearchScopes: HKCU - {052A16CA-6204-4ed0-8539-5BE565013782} URL = http://www.google.com/cse?cx=partner-pub-3794288947762788%3A4067623346&ie=UTF-8&q={searchTerms}&sa=Search&siteurl=www.google.com%2Fcse%2Fhome%3Fcx%3Dpartner-pub-3794288947762788%3A4067623346
SearchScopes: HKCU - {31090377-0740-419E-BEFC-A56E50500D5B} URL = http://speedial.com/results.php?f=4&q={searchTerms}&a=spd_dsites03_14_22_ff&cd=2XzuyEtN2Y1L1Qzu0FyEyC0DtDyEyDyE0E0BtCyCyC0AzztDtN0D0Tzu0SzzzztCtN1L2XzutBtFtBtDtFtCzytFyCtN1L1CzutCyEtBzytDyD1V1PtN1L1G1B1V1N2Y1L1Qzu2StAyBtB0CtD0A0B0BtG0F0EzzzytGyC0AyDyEtG0E0DyC0BtGyDyB0EzytBtCyEzyzz0EtD0F2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyBtCtB0EtCtBtA0CtG0EtByC0AtG0FyE0D0CtGyC0EyDzytGtAyCyByByEtAtA0AtDtC0A0D2Q&cr=1284146606&ir=
SearchScopes: HKCU - {8A3E890E-6699-41a8-9881-C9A7602F224D} URL = http://www.bing.com/search?q={searchTerms}&form=SPLBR2&pc=SPLH
SearchScopes: HKCU - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = http://www.searchqu.com/web?src=ieb&appid=102&systemid=406&sr=0&q={searchTerms}
SearchScopes: HKCU - {9CB96984-43C3-4D44-90EF-01466EFCF7BB} URL = https://uk.search.yahoo.com/yhs/search?type=avastbcl&hspart=avast&hsimp=yhs-001&p={searchTerms}
SearchScopes: HKCU - {D44708E3-CE47-41df-AD29-C92D27CA8D62} URL = http://search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=STDVM
SearchScopes: HKCU - {E6A9209E-38E4-4B7D-8EEF-4A916EABF55E} URL = http://websearch.ask.com/redirect?client=ie&tb=ORJ&o=&src=kw&q={searchTerms}&locale=&apn_ptnrs=&apn_dtid=OSJ000&apn_uid=610AC3DA-8FAA-496F-8C44-6C57346BB00D&apn_sauid=D3A1E6AE-9C52-4214-BA7C-866C31815E47
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO-x32: No Name -> {0347C33E-8762-4905-BF09-768834316C61} -> No File
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: HP Smart BHO Class -> {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} -> C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.)
Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
DPF: HKLM-x32 {0D41B8C5-2599-4893-8183-00195EC8D5F9} http://support.asus.com/select/asusTek_sys_ctrl3.cab
DPF: HKLM-x32 {1E54D648-B804-468d-BC78-4AFFED8E262F} http://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab
DPF: HKLM-x32 {5D6F45B3-9043-443D-A792-115447494D24} http://messenger.zone.msn.com/MessengerGamesContent/GameContent/de/uno1/GAME_UNO1.cab
DPF: HKLM-x32 {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset.com/special/eos/OnlineScanner.cab
DPF: HKLM-x32 {C3F79A2B-B9B4-4A66-B012-3EE46475B072} http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\system32\urlmon.dll (Microsoft Corporation)
Handler-x32: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - No File
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt

FireFox:
========
FF ProfilePath: C:\Users\Crosshair\AppData\Roaming\Mozilla\Firefox\Profiles\coktg8jx.default
FF SearchEngineOrder.1: Yahoo! (Avast)
FF Homepage: https://uk.yahoo.com?fr=hp-avast&type=avastbcl
FF Keyword.URL: https://uk.search.yahoo.com/yhs/search
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll ()
FF Plugin: @microsoft.com/GENUINE -> C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @canon.com/MycameraPlugin -> C:\Program Files (x86)\Canon\MyCamera Download Plugin\NPCIG.dll (CANON INC.)
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @java.com/DTPlugin,version=10.65.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.65.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @nsroblox.roblox.com/launcher -> C:\Program Files (x86)\Roblox\Versions\version-2c1f992c1a264ecc\\NPRobloxProxy.dll ( ROBLOX Corporation)
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Crosshair\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF user.js: detected! => C:\Users\Crosshair\AppData\Roaming\Mozilla\Firefox\Profiles\s3rvbfvw.default-1362845289504\user.js
FF SearchPlugin: C:\Users\Crosshair\AppData\Roaming\Mozilla\Firefox\Profiles\coktg8jx.default\searchplugins\yahoo-avast.xml
FF SearchPlugin: C:\Users\Crosshair\AppData\Roaming\Mozilla\Firefox\Profiles\b6y1hik8.default-1362049682416\searchplugins\Speedial.xml
FF SearchPlugin: C:\Users\Crosshair\AppData\Roaming\Mozilla\Firefox\Profiles\b6y1hik8.default-1362049682416\searchplugins\yahoo-avast.xml
FF SearchPlugin: C:\Users\Crosshair\AppData\Roaming\Mozilla\Firefox\Profiles\wqg02ip2.default-1362845268766\searchplugins\Speedial.xml
FF SearchPlugin: C:\Users\Crosshair\AppData\Roaming\Mozilla\Firefox\Profiles\wqg02ip2.default-1362845268766\searchplugins\yahoo-avast.xml
FF SearchPlugin: C:\Users\Crosshair\AppData\Roaming\Mozilla\Firefox\Profiles\s3rvbfvw.default-1362845289504\searchplugins\Speedial.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazon-en-GB.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\chambers-en-GB.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-en-GB.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-en-GB.xml
FF Extension: Garmin Communicator - C:\Users\Crosshair\AppData\Roaming\Mozilla\Firefox\Profiles\coktg8jx.default\Extensions\{195A3098-0BD5-4e90-AE22-BA1C540AFD1E} [2013-11-20]
FF Extension: Bitdefender QuickScan - C:\Users\Crosshair\AppData\Roaming\Mozilla\Firefox\Profiles\coktg8jx.default\Extensions\{e001c731-5e37-4538-a5cb-8168736a2360} [2014-10-06]
FF HKLM-x32\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2012-05-06]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-10-07]
FF HKCU\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3

Chrome:
=======
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\pdf.dll ()
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation)
CHR Plugin: (NPCIG.dll) - C:\Program Files (x86)\Canon\MyCamera Download Plugin\NPCIG.dll (CANON INC.)
CHR Plugin: (Google Earth Plugin) - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll No File
CHR Plugin: (Java(TM) Platform SE 7 U7) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
CHR Plugin: (Silverlight Plug-In) - C:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll No File
CHR Plugin: (NVIDIA 3D Vision) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
CHR Plugin: (NVIDIA 3D VISION) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
CHR Plugin: (iTunes Application Detector) - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
CHR Plugin: (Unity Player) - C:\Users\Crosshair\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_202.dll No File
CHR Plugin: (Java Deployment Toolkit 7.0.70.11) - C:\Windows\SysWOW64\npdeployJava1.dll No File
CHR Plugin: (Windows Activation Technologies) - C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
CHR Profile: C:\Users\Crosshair\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Crosshair\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-09-03]
CHR Extension: (Google Wallet) - C:\Users\Crosshair\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-09-03]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-10-07]
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
CHR HKCU\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.00.13\atkexComSvc.exe [918144 2010-11-03] ()
R2 ASDR; C:\Windows\SysWOW64\ASDR.exe [61440 2009-07-27] () [File not signed]
R2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.14\aaHMSvc.exe [915584 2010-12-02] ()
R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.11\AsSysCtrlService.exe [586880 2010-10-21] ()
R2 ATKFUSService; C:\Windows\system32\ATKFUSService.exe [63488 2009-12-01] (ASUSTeK COMPUTER INC.) [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-10-07] (AVAST Software)
R2 CDMA Device Service; C:\Program Files (x86)\Samsung\USB Drivers\26_VIA_driver2\amd64\VIAService.exe [159232 2011-08-02] () [File not signed]
R2 Garmin Core Update Service; C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe [438616 2014-07-23] (Garmin Ltd or its subsidiaries)
R2 HPSLPSVC; C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL [1039360 2010-10-22] (Hewlett-Packard Co.) [File not signed]
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
R2 LightScribeService; C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [73728 2009-06-17] (Hewlett-Packard Company) [File not signed]
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [File not signed]
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1494304 2013-12-10] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15129376 2013-12-10] (NVIDIA Corporation)
S3 OverwolfUpdaterService; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [96184 2013-12-09] (Overwolf)
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [File not signed]
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2012-01-27] ()
R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)
R2 WSWNDA3100; C:\Program Files (x86)\NETGEAR\WNDA3100v2\WifiSvc.exe [272864 2010-08-19] ()
S2 clr_optimization_v4.0.30319_64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R0 AiChargerPlus; C:\Windows\System32\DRIVERS\AiChargerPlus.sys [14464 2010-11-08] (ASUSTek Computer Inc.)
S3 ampa; C:\Windows\system32\ampa.sys [15288 2011-12-26] () [File not signed]
S3 ampa; C:\Windows\SysWOW64\ampa.sys [12728 2011-12-26] () [File not signed]
R0 asahci64; C:\Windows\System32\DRIVERS\asahci64.sys [36448 2011-03-23] (Asmedia Technology)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [13440 2010-08-24] ()
R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2010-08-03] ()
R3 asusgsb; C:\Windows\System32\drivers\asusgsb.sys [17792 2009-02-17] (ASUSTeK Computer Inc.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-10-07] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-10-07] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-10-07] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-10-07] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1041168 2014-10-07] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427360 2014-10-07] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [92008 2014-10-07] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [224896 2014-10-07] ()
R3 atkdisplf; C:\Windows\System32\drivers\ATKDispLowFilter.sys [39424 2009-02-17] (ASUSTeK Computer Inc.)
R1 EIO64; C:\Windows\System32\DRIVERS\EIO64.sys [16384 2012-07-19] (ASUSTeK Computer Inc.)
R4 IOMap; C:\Windows\system32\drivers\IOMap64.sys [23680 2010-02-22] (ASUSTeK Computer Inc.)
S3 JabraDFU; C:\Windows\System32\Drivers\JabraMobileCsrDfuX64.sys [38768 2014-05-05] (GN Netcom A/S)
S3 LGDDCDevice; C:\Windows\SysWOW64\LGI2CDriver.sys [16384 2010-08-04] (LG Soft India) [File not signed]
S3 LGII2CDevice; C:\Windows\SysWOW64\LGPII2CDriver.sys [19968 2011-02-11] () [File not signed]
S3 MHIKEY10; C:\Windows\System32\Drivers\MHIKEY10x64.sys [60288 2010-09-15] (Generic USB smartcard reader)
S3 NPF; C:\Windows\System32\DRIVERS\npf.sys [47632 2010-02-03] (CACE Technologies, Inc.)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-12-05] (NVIDIA Corporation)
S3 ss_bserd; C:\Windows\System32\DRIVERS\ss_bserd.sys [128000 2010-12-21] (MCCI Corporation)
S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2012-12-13] (Apple, Inc.) [File not signed]
S3 WG111T; C:\Windows\System32\DRIVERS\WG111Tvx.sys [1037312 2007-06-01] (Atheros Communications, Inc.)
R1 {8ce1c375-1e13-43f7-a4fd-6530f47c4fde}Gw64; C:\Windows\System32\drivers\{8ce1c375-1e13-43f7-a4fd-6530f47c4fde}Gw64.sys [61120 2014-05-22] (StdLib)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-10-10 14:36 - 2014-10-10 14:37 - 00034723 _____ () C:\Users\Crosshair\Desktop\FRST.txt
2014-10-10 14:35 - 2014-10-10 14:36 - 00000000 ____D () C:\FRST
2014-10-10 14:31 - 2014-10-10 14:31 - 02109952 _____ (Farbar) C:\Users\Crosshair\Desktop\FRST64.exe
2014-10-10 14:29 - 2014-10-10 14:29 - 00000207 _____ () C:\Windows\tweaking.com-regbackup-FORMULAV-Microsoft-Windows-7-Home-Premium-(64-bit).dat
2014-10-10 14:28 - 2014-10-10 14:28 - 00000000 ____D () C:\RegBackup
2014-10-10 14:27 - 2014-10-10 14:27 - 00002235 _____ () C:\Users\Public\Desktop\Tweaking.com - Registry Backup.lnk
2014-10-10 14:27 - 2014-10-10 14:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tweaking.com
2014-10-10 14:27 - 2014-10-10 14:27 - 00000000 ____D () C:\Program Files (x86)\Tweaking.com
2014-10-10 14:26 - 2014-10-10 14:26 - 04215184 _____ () C:\Users\Crosshair\Downloads\tweaking.com_registry_backup_setup.exe
2014-10-10 10:45 - 2009-06-10 22:00 - 00000824 _____ () C:\Windows\system32\Drivers\etc\hosts.20141010-104532.backup
2014-10-09 22:39 - 2014-10-09 22:43 - 00000737 _____ () C:\Windows\wininit.ini
2014-10-09 20:45 - 2014-10-10 10:32 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
2014-10-09 20:45 - 2014-10-09 20:49 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-10-09 20:45 - 2014-10-09 20:45 - 00001391 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
2014-10-09 20:45 - 2014-10-09 20:45 - 00001379 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2014-10-09 20:45 - 2014-10-09 20:45 - 00000000 ____D () C:\Windows\System32\Tasks\Safer-Networking
2014-10-09 20:45 - 2014-10-09 20:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
2014-10-09 20:45 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe
2014-10-09 20:41 - 2014-10-09 20:43 - 46525608 _____ (Safer-Networking Ltd. ) C:\Users\Crosshair\Desktop\spybot-2-4.exe
2014-10-09 20:40 - 2014-10-09 20:40 - 16409960 _____ (Safer Networking Limited ) C:\Users\Crosshair\Downloads\spybotsd162(1).exe
2014-10-09 20:40 - 2014-10-09 20:40 - 00367776 _____ () C:\Users\Crosshair\Downloads\SoftonicDownloader_for_spybot-search-destroy.exe
2014-10-07 16:38 - 2014-10-07 16:38 - 00001399 _____ () C:\Users\Public\Desktop\PVZ Garden Warfare.lnk
2014-10-07 16:38 - 2014-10-07 16:38 - 00000000 ____D () C:\Users\Crosshair\Documents\PVZ Garden Warfare
2014-10-07 16:38 - 2014-10-07 16:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PVZ Garden Warfare
2014-10-07 16:37 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll
2014-10-07 16:37 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll
2014-10-07 16:37 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll
2014-10-07 16:37 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll
2014-10-07 16:37 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll
2014-10-07 16:37 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll
2014-10-07 16:37 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll
2014-10-07 16:37 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll
2014-10-07 16:37 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll
2014-10-07 16:37 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll
2014-10-07 16:37 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll
2014-10-07 16:37 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll
2014-10-07 16:37 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll
2014-10-07 16:36 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll
2014-10-07 16:36 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll
2014-10-07 16:36 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll
2014-10-07 16:36 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll
2014-10-07 16:36 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll
2014-10-07 16:36 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll
2014-10-07 16:36 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll
2014-10-07 16:36 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll
2014-10-07 15:51 - 2014-10-07 15:53 - 00000000 ____D () C:\Program Files (x86)\Origin Games
2014-10-07 15:49 - 2014-10-08 17:56 - 00000000 ____D () C:\Users\Crosshair\AppData\Roaming\Origin
2014-10-07 15:49 - 2014-10-07 15:51 - 00000000 ____D () C:\Users\Crosshair\AppData\Local\Origin
2014-10-07 15:47 - 2014-10-10 13:52 - 00000000 ____D () C:\ProgramData\Origin
2014-10-07 15:47 - 2014-10-10 12:48 - 00000000 ____D () C:\Program Files (x86)\Origin
2014-10-07 15:47 - 2014-10-07 16:38 - 00000000 ____D () C:\ProgramData\Electronic Arts
2014-10-07 15:47 - 2014-10-07 15:47 - 00000979 _____ () C:\Users\Public\Desktop\Origin.lnk
2014-10-07 15:47 - 2014-10-07 15:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
2014-10-07 15:45 - 2014-10-07 15:45 - 17088592 _____ (Electronic Arts, Inc.) C:\Users\Crosshair\Downloads\OriginThinSetup.exe
2014-10-07 08:27 - 2014-10-07 08:27 - 00003160 _____ () C:\Windows\System32\Tasks\{D9426EBF-BAF1-4F2B-B7C8-64D6B1AD399E}
2014-10-07 08:24 - 2014-10-07 08:25 - 01898640 _____ (Irfan Skiljan) C:\Users\Crosshair\Downloads\iview438_setup.exe
2014-10-07 07:55 - 2014-10-07 07:55 - 00000000 ____D () C:\Users\Crosshair\AppData\Roaming\AVAST Software
2014-10-07 07:49 - 2014-10-07 07:49 - 00427360 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2014-10-07 07:49 - 2014-10-07 07:49 - 00001926 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-10-07 07:49 - 2014-10-07 07:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast
2014-10-07 07:49 - 2014-10-07 07:48 - 01041168 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2014-10-07 07:49 - 2014-10-07 07:48 - 00224896 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-10-07 07:49 - 2014-10-07 07:48 - 00092008 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2014-10-07 07:49 - 2014-10-07 07:48 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-10-07 07:48 - 2014-10-07 07:48 - 00307344 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-10-07 07:48 - 2014-10-07 07:48 - 00093568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2014-10-07 07:48 - 2014-10-07 07:48 - 00079184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-10-07 07:48 - 2014-10-07 07:48 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-10-07 07:48 - 2014-10-07 07:48 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-10-06 16:27 - 2014-10-06 21:46 - 00206731 _____ () C:\Users\Crosshair\AppData\Local\census.cache
2014-10-06 16:27 - 2014-10-06 21:46 - 00186538 _____ () C:\Users\Crosshair\AppData\Local\ars.cache
2014-10-06 16:22 - 2014-10-06 16:22 - 00000010 _____ () C:\Users\Crosshair\AppData\Local\sponge.last.runtime.cache
2014-10-06 16:14 - 2014-10-06 16:14 - 00000036 _____ () C:\Users\Crosshair\AppData\Local\housecall.guid.cache
2014-10-06 14:41 - 2014-10-06 14:41 - 00010323 _____ () C:\Users\Crosshair\Documents\results060414.txt
2014-10-06 14:40 - 2014-10-06 14:40 - 00000000 ____D () C:\Users\Crosshair\Documents\ESET Online scanner results
2014-10-06 10:19 - 2014-10-06 10:19 - 00000000 ____D () C:\Program Files (x86)\ESET
2014-10-06 10:16 - 2014-10-06 10:16 - 02347384 _____ (ESET) C:\Users\Crosshair\Downloads\esetsmartinstaller_enu.exe
2014-10-06 10:12 - 2014-10-06 10:13 - 00000000 ____D () C:\Users\Crosshair\AppData\Roaming\QuickScan
2014-10-06 10:01 - 2014-10-10 11:08 - 00000000 ____D () C:\Windows\pss
2014-10-03 16:31 - 2014-10-03 16:32 - 00000000 ____D () C:\Users\Crosshair\Desktop\Hereward Harmony
2014-10-01 21:57 - 2014-10-01 22:14 - 00000000 ____D () C:\Users\Crosshair\Documents\NetObjects Fusion 2013
2014-10-01 21:56 - 2014-10-01 21:56 - 00001384 _____ () C:\Users\Public\Desktop\NetObjects Fusion 2013.lnk
2014-10-01 21:43 - 2014-10-01 21:56 - 00000000 ____D () C:\Users\Public\Documents\NetObjects Fusion 2013
2014-09-30 17:35 - 2014-09-30 17:35 - 00000000 ____D () C:\ProgramData\boost_interprocess
2014-09-28 16:21 - 2014-09-28 16:21 - 01196320 _____ () C:\Users\Crosshair\Downloads\TF2 Mod Installer 1.7.10.exe
2014-09-28 15:00 - 2014-09-28 15:00 - 01171744 _____ () C:\Users\Crosshair\Downloads\The Dalek Mod Installer 1.7.10.exe
2014-09-28 14:47 - 2014-09-28 14:47 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-09-28 14:34 - 2014-09-28 14:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2014-09-28 14:32 - 2014-09-28 14:34 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-09-28 14:32 - 2014-09-28 14:34 - 00000000 ____D () C:\Program Files\iTunes
2014-09-28 14:32 - 2014-09-28 14:34 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-09-28 14:32 - 2014-09-28 14:32 - 00000000 ____D () C:\Program Files\iPod
2014-09-24 18:04 - 2014-09-24 18:04 - 00065536 _____ () C:\Users\Crosshair\Downloads\image(1).jpeg
2014-09-24 17:50 - 2014-09-24 17:51 - 00065536 _____ () C:\Users\Crosshair\Downloads\image.jpeg
2014-09-21 19:05 - 2014-09-21 19:05 - 01183008 _____ () C:\Users\Crosshair\Downloads\Real Train Mod Installer 1.7.10.exe
2014-09-21 17:30 - 2014-09-21 17:30 - 00002785 _____ () C:\Users\Crosshair\Desktop\__MACOSX.rar
2014-09-16 18:27 - 2014-09-16 18:27 - 01177888 _____ () C:\Users\Crosshair\Downloads\Archimedes Ships Mod Installer 1.7.10.exe
2014-09-16 17:07 - 2014-09-16 17:07 - 01178912 _____ () C:\Users\Crosshair\Downloads\Railcraft Mod Installer 1.7.10.exe
2014-09-16 16:30 - 2014-09-16 16:31 - 52107479 _____ () C:\Users\Crosshair\Downloads\VC Stuff (MAP INSIDE).zip
2014-09-16 16:28 - 2014-09-16 16:28 - 01177888 _____ () C:\Users\Crosshair\Downloads\TooManyItems Mod Installer 1.8.exe
2014-09-16 16:27 - 2014-09-16 16:27 - 19012155 _____ () C:\Users\Crosshair\Downloads\FunLand 3.1.zip
2014-09-16 16:24 - 2014-09-16 16:24 - 01097504 _____ (Skydaz.com) C:\Users\Crosshair\Downloads\Map and Texture Installer(2).exe
2014-09-16 16:21 - 2013-11-15 23:58 - 00000082 _____ () C:\Users\Crosshair\Desktop\pack.mcmeta
2014-09-16 16:21 - 2013-11-12 22:19 - 00000000 ____D () C:\Users\Crosshair\Desktop\assets
2014-09-16 16:20 - 2014-09-16 16:21 - 04958784 _____ () C:\Users\Crosshair\Downloads\jolicraft.zip
2014-09-15 19:54 - 2014-09-15 19:54 - 31228339 _____ () C:\Users\Crosshair\Downloads\Eronev Mansion Adventure Complete V1.2.zip
2014-09-15 19:03 - 2013-06-09 11:45 - 00000000 ____D () C:\Users\Crosshair\Downloads\Vertoak V11 Stuff (MAP INSIDE)
2014-09-15 19:03 - 2013-06-09 11:45 - 00000000 ____D () C:\Users\Crosshair\Downloads\__MACOSX
2014-09-15 18:57 - 2014-09-15 19:01 - 65186284 _____ () C:\Users\Crosshair\Downloads\Vertoak V11 Stuff (MAP INSIDE)(1).zip
2014-09-15 18:50 - 2013-06-09 11:45 - 00000000 ____D () C:\Users\Crosshair\Desktop\__MACOSX
2014-09-15 18:46 - 2014-09-15 18:47 - 65186284 _____ () C:\Users\Crosshair\Downloads\Vertoak V11 Stuff (MAP INSIDE).zip
2014-09-15 18:45 - 2014-09-15 18:45 - 01097504 _____ (Skydaz.com) C:\Users\Crosshair\Downloads\Map and Texture Installer(1).exe
2014-09-15 18:00 - 2014-09-15 18:00 - 01097504 _____ (Skydaz.com) C:\Users\Crosshair\Downloads\Map and Texture Installer.exe
2014-09-15 18:00 - 2014-09-15 18:00 - 00196608 _____ (ICSharpCode.net) C:\Users\Crosshair\Downloads\ICSharpCode.SharpZipLib.dll

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-10-10 14:11 - 2011-08-28 12:14 - 00000904 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-10-10 13:46 - 2012-07-04 08:47 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-10-10 13:38 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache
2014-10-10 12:57 - 2011-08-28 01:07 - 01123823 _____ () C:\Windows\WindowsUpdate.log
2014-10-10 12:51 - 2011-09-04 22:09 - 00000000 ____D () C:\Users\Crosshair\AppData\Local\LogMeIn Hamachi
2014-10-10 12:47 - 2011-08-28 12:14 - 00000900 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-10-10 12:46 - 2009-07-14 05:45 - 00029136 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-10-10 12:46 - 2009-07-14 05:45 - 00029136 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-10-10 12:39 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-10-10 12:39 - 2009-07-14 05:51 - 00204775 _____ () C:\Windows\setupact.log
2014-10-10 12:38 - 2011-08-28 02:24 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-10-10 12:36 - 2014-05-01 03:00 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-10-10 12:36 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2014-10-10 12:02 - 2011-10-21 07:30 - 00000000 ____D () C:\Users\Crosshair\AppData\Roaming\TS3Client
2014-10-10 08:30 - 2011-08-28 12:14 - 00000000 ____D () C:\Program Files\Google
2014-10-10 08:30 - 2011-08-28 12:14 - 00000000 ____D () C:\Program Files (x86)\Google
2014-10-10 08:30 - 2010-11-21 04:47 - 01173230 _____ () C:\Windows\PFRO.log
2014-10-09 22:55 - 2011-08-28 12:14 - 00000000 ____D () C:\Users\Crosshair\AppData\Local\Google
2014-10-09 22:55 - 2011-08-28 12:14 - 00000000 ____D () C:\ProgramData\Google
2014-10-09 22:45 - 2012-02-04 13:13 - 00000000 ____D () C:\Users\Crosshair\AppData\Roaming\SoftGrid Client
2014-10-09 20:33 - 2013-01-23 16:12 - 00000000 ____D () C:\Users\Crosshair\Documents\Lawrence
2014-10-08 02:32 - 2011-10-03 23:48 - 00000000 ____D () C:\Users\Crosshair\AppData\Roaming\Xfire
2014-10-07 16:37 - 2013-03-11 22:04 - 00000000 ____D () C:\ProgramData\Package Cache
2014-10-07 16:37 - 2009-07-14 06:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2014-10-07 16:36 - 2011-08-28 13:21 - 00598859 _____ () C:\Windows\DirectX.log
2014-10-07 15:42 - 2014-08-12 08:55 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-10-07 07:48 - 2011-09-04 16:29 - 00000000 ____D () C:\ProgramData\AVAST Software
2014-10-06 13:36 - 2014-06-21 20:18 - 00000000 ____D () C:\ProgramData\COuupSccannEr
2014-10-05 16:18 - 2012-10-09 09:05 - 00000000 ____D () C:\Program Files (x86)\LFS
2014-10-05 16:07 - 2012-10-09 09:05 - 00000935 _____ () C:\Users\Crosshair\Desktop\LFS.lnk
2014-10-05 14:05 - 2014-04-29 18:15 - 00000000 ____D () C:\Users\Crosshair\AppData\Roaming\.minecraft
2014-10-03 16:51 - 2011-08-28 01:47 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-10-03 16:24 - 2009-07-14 06:13 - 00783400 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-10-01 21:56 - 2011-09-30 11:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NetObjects
2014-10-01 21:49 - 2011-09-30 11:13 - 00000000 ____D () C:\Program Files (x86)\NetObjects
2014-09-30 21:05 - 2013-11-25 19:58 - 00000000 ____D () C:\Users\Crosshair\Documents\My Digital Editions
2014-09-30 18:07 - 2009-07-14 03:34 - 00000551 _____ () C:\Windows\win.ini
2014-09-30 17:31 - 2014-03-16 12:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Roblox
2014-09-30 16:58 - 2012-04-26 19:48 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-09-28 14:34 - 2013-01-05 19:11 - 00001783 _____ () C:\Users\Public\Desktop\iTunes.lnk
2014-09-27 01:05 - 2011-10-03 23:48 - 00000000 ____D () C:\ProgramData\Xfire
2014-09-24 17:46 - 2014-07-16 17:47 - 03675824 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe
2014-09-24 17:46 - 2012-07-04 08:47 - 00003768 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-09-24 17:46 - 2012-06-20 23:35 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-09-24 17:46 - 2011-08-28 12:14 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-09-21 17:33 - 2012-05-06 18:39 - 00000000 ____D () C:\Users\Crosshair\AppData\Roaming\HpUpdate
2014-09-21 17:33 - 2012-03-03 19:58 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader X.lnk
2014-09-15 18:16 - 2013-08-14 00:42 - 00000000 ____D () C:\Windows\system32\MRT
2014-09-15 18:16 - 2011-08-30 22:16 - 101694776 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-09-15 09:06 - 2010-11-21 04:27 - 00278152 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-09-13 16:25 - 2013-12-26 20:44 - 00000000 ____D () C:\Users\Crosshair\Documents\Flight Simulator X Files
2014-09-13 12:25 - 2012-05-06 18:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2014-09-13 12:25 - 2012-05-06 18:37 - 00000000 ____D () C:\Program Files (x86)\HP

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-10-07 21:34

==================== End Of Log ============================


















[B]Additional scan result of Farbar Recovery Scan Tool (x64) Version: 08-10-2014 01
Ran by Crosshair at 2014-10-10 14:38:58
Running from C:\Users\Crosshair\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Spybot - Search and Destroy (Enabled - Up to date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

64 Bit HP CIO Components Installer (Version: 7.2.8 - Hewlett-Packard) Hidden
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 14.0.0.110 - Adobe Systems Incorporated)
Adobe AIR (x32 Version: 14.0.0.110 - Adobe Systems Incorporated) Hidden
Adobe Digital Editions 2.0 (HKLM-x32\...\Adobe Digital Editions 2.0) (Version: 2.0.1 - Adobe Systems Incorporated)
Adobe Flash Player 15 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 15.0.0.167 - Adobe Systems Incorporated)
Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 15.0.0.152 - Adobe Systems Incorporated)
Adobe Illustrator CS (HKLM-x32\...\{91A4AD99-69CE-4745-97B7-0E0DFBECFDE5}) (Version: 11 - Adobe Systems, Inc.)
Adobe Reader X (10.1.12) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AA1000000001}) (Version: 10.1.12 - Adobe Systems Incorporated)
Adobe SVG Viewer 3.0 (HKLM-x32\...\Adobe SVG Viewer) (Version: 3.0 - Adobe Systems, Inc.)
AI Suite II (HKLM-x32\...\{34D3688E-A737-44C5-9E2A-FF73618728E1}) (Version: 1.01.30 - ASUSTeK Computer Inc.)
ANT Drivers Installer x64 (Version: 2.3.4 - Garmin Ltd or its subsidiaries) Hidden
AOMEI Partition Assistant Standard Edition 5.2 (HKLM-x32\...\{02F850ED-FD0E-4ED1-BE0B-54981f5BD3D4}_is1) (Version: - Aomei Technology Co., Ltd.)
Apple Application Support (HKLM-x32\...\{78002155-F025-4070-85B3-7C0453561701}) (Version: 3.0.6 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{B678797F-DF38-4556-8A31-8B818E261868}) (Version: 8.0.0.23 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Ask Toolbar Updater (HKCU\...\{79A765E1-C399-405B-85AF-466F52E918B0}) (Version: 1.2.1.23037 - Ask.com) <==== ATTENTION
Asmedia ASM104x USB 3.0 Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.10.0.0 - Asmedia Technology)
Asmedia ASM106x SATA Host Controller Driver (HKLM-x32\...\{61942EF5-2CD8-47D4-869C-2E9A8BB085F1}) (Version: 1.2.2.000 - Asmedia Technology)
ASUS Gamer OSD (HKLM-x32\...\{7F88C9E5-12BD-404F-AC6A-108BAAC9B708}) (Version: 3.07.0419 - ASUSTeK COMPUTER INC.)
ASUS nVidia Driver (x32 Version: 1.00.0000 - ASUSTek) Hidden
ASUS Smart Doctor (HKLM-x32\...\InstallShield_{809D7E6D-915D-4EAD-821F-E13D93F37161}) (Version: 5.82 - ASUSTek COMPUTER INC.)
ASUS Smart Doctor (x32 Version: 5.82 - ASUSTek COMPUTER INC.) Hidden
ATI Catalyst Install Manager (HKLM\...\{AB7F4312-8037-4EBF-9D0F-5513CDFD534C}) (Version: 3.0.812.0 - ATI Technologies, Inc.)
avast! Free Antivirus (HKLM-x32\...\Avast) (Version: 9.0.2021 - AVAST Software)
BBC iPlayer Desktop (HKLM-x32\...\BBCiPlayerDesktop.61DB7A798358575D6A969CCD73DDBBD723A6DA9D.1) (Version: 3.2.15 - British Broadcasting Corp.)
BBC iPlayer Desktop (x32 Version: 3.2.15 - British Broadcasting Corp.) Hidden
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Browser Configuration Utility (HKLM-x32\...\{D793423B-FF18-4A54-B9C9-75B3396BAAC4}) (Version: 1.0.10.0 - DeviceVM Inc.) <==== ATTENTION
BufferChm (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden
C510 (x32 Version: 140.0.344.000 - Hewlett-Packard) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) (HKLM-x32\...\InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}) (Version: 1.7 - Activision)
Call of Duty(R) 4 - Modern Warfare(TM) (x32 Version: 1.00.0000 - Activision) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch (x32 Version: - ) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch (x32 Version: 1.6 - Activision) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (x32 Version: - ) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (x32 Version: 1.7 - Activision) Hidden
CANON iMAGE GATEWAY MyCamera Download Plugin (HKLM-x32\...\MyCamera Download Plugin) (Version: 3.1.1.2 - Canon Inc.)
CANON iMAGE GATEWAY Task for ZoomBrowser EX (HKLM-x32\...\CANON iMAGE GATEWAY Task) (Version: 1.9.0.9 - Canon Inc.)
Canon MOV Decoder (HKLM-x32\...\Canon MOV Decoder) (Version: 1.8.0.7 - Canon Inc.)
Canon MOV Encoder (HKLM-x32\...\Canon MOV Encoder) (Version: 1.6.0.1 - Canon Inc.)
Canon MovieEdit Task for ZoomBrowser EX (HKLM-x32\...\MovieEditTask) (Version: 3.7.0.4 - Canon Inc.)
Canon Utilities Digital Photo Professional 3.10 (HKLM-x32\...\DPP) (Version: 3.10.2.0 - Canon Inc.)
Canon Utilities EOS Sample Music (HKLM-x32\...\EOS Sample Music) (Version: 1.0.0.204 - Canon Inc.)
Canon Utilities EOS Utility (HKLM-x32\...\EOS Utility) (Version: 2.10.2.0 - Canon Inc.)
Canon Utilities EOS Video Snapshot Task for ZoomBrowser EX (HKLM-x32\...\EOS Video Snapshot Task) (Version: 1.0.0.10 - Canon Inc.)
Canon Utilities Movie Uploader for YouTube (HKLM-x32\...\MovieUploaderForYouTube) (Version: 1.2.0.7 - Canon Inc.)
Canon Utilities PhotoStitch (HKLM-x32\...\PhotoStitch) (Version: 3.1.22.46 - Canon Inc.)
Canon Utilities Picture Style Editor (HKLM-x32\...\Picture Style Editor) (Version: 1.9.0.0 - Canon Inc.)
Canon Utilities ZoomBrowser EX (HKLM-x32\...\ZoomBrowser EX) (Version: 6.7.0.24 - Canon Inc.)
Canon ZoomBrowser EX Memory Card Utility (HKLM-x32\...\ZoomBrowser EX Memory Card Utility) (Version: 1.5.0.9 - Canon Inc.)
CoffeeCup Free FTP (HKLM-x32\...\CoffeeCup Free FTP) (Version: - )
COuupSccannEr (HKLM-x32\...\{80E8B0A0-117D-1402-7CDE-688156237115}) (Version: - CouupScannera)
CutePDF Writer 3.0 (HKLM\...\CutePDF Writer Installation) (Version: 3.0 - CutePDF.com)
DesignSpark PCB 6.0 (x32 Version: 6.0 - RS Components) Hidden
DesignSpark PCB Version 6.0 (HKLM-x32\...\InstallShield_{D50600AA-D25A-463B-98BF-E09585325711}) (Version: 6.0 - RS Components)
Destinations (x32 Version: 140.0.167.000 - Hewlett-Packard) Hidden
DeviceDiscovery (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden
DiskAid 5.43 (HKLM-x32\...\DiskAid_is1) (Version: 5.43 - DigiDNA)
Dropbox (HKCU\...\Dropbox) (Version: 2.6.24 - Dropbox, Inc.)
Dual Package (HKLM-x32\...\{37365259-9D37-4FBE-9204-08B4034623B6}) (Version: 2.8 - LG Soft India Pvt Ltd)
EAGLE 6.5.0 (HKLM-x32\...\EAGLE 6.5.0) (Version: 6.5.0 - CadSoft Computer GmbH)
Elevated Installer (x32 Version: 3.2.16.0 - Garmin Ltd or its subsidiaries) Hidden
ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version: - )
Fast And Safe (HKLM-x32\...\{5F189DF5-2D05-472B-9091-84D9848AE48B}{64af91bf}) (Version: - GTgroup) <==== ATTENTION
FastTrak 800 Thousand Clipart (HKLM-x32\...\InstallShield_{A76C2D84-F90E-4018-8626-767894850F92}) (Version: 3.20.0000 - FastTrak)
FastTrak 800 Thousand Clipart (x32 Version: 3.20.0000 - FastTrak) Hidden
Garmin Express (HKLM-x32\...\{817c6bb8-ea2d-4e12-abbc-e33c3de43f64}) (Version: 3.2.16.0 - Garmin Ltd or its subsidiaries)
Garmin Express (x32 Version: 3.2.16.0 - Garmin Ltd or its subsidiaries) Hidden
Garmin Express Tray (x32 Version: 3.2.16.0 - Garmin Ltd or its subsidiaries) Hidden
GeForce Experience NvStream Client Components (Version: 1.6.28 - NVIDIA Corporation) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 35.0.1916.153 - Google Inc.)
Google Earth (HKLM-x32\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.24.7 - Google Inc.) Hidden
GPBaseService2 (x32 Version: 140.0.211.000 - Hewlett-Packard) Hidden
Half-Life 2 (HKLM-x32\...\Steam App 220) (Version: - Valve)
Half-Life 2: Deathmatch (HKLM-x32\...\Steam App 320) (Version: - Valve)
Half-Life 2: Episode One (HKLM-x32\...\Steam App 380) (Version: - Valve)
Half-Life 2: Episode Two (HKLM-x32\...\Steam App 420) (Version: - Valve)
Half-Life 2: Lost Coast (HKLM-x32\...\Steam App 340) (Version: - Valve)
Half-Life(R) 2 (HKLM-x32\...\{D45EC259-4A19-4656-B588-C2C360DD18EA}) (Version: 1.0.0.0 - Valve)
High-Definition Video Playback (x32 Version: 7.1.13900.47.0 - Nero AG) Hidden
HP Customer Participation Program 14.0 (HKLM\...\HPExtendedCapabilities) (Version: 14.0 - HP)
HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP)
HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.2024 - HP Photo Creations Powered by RocketLife)
HP Photosmart eStn C510 All-In-One Driver Software 14.0 Rel. 7 (HKLM\...\{EEEA9020-FCB0-4E35-82B9-D0994EF267B0}) (Version: 14.0 - HP)
HP Smart Web Printing 4.60 (HKLM\...\HP Smart Web Printing) (Version: 4.60 - HP)
HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
HPAppStudio (x32 Version: 140.0.95.000 - Hewlett-Packard) Hidden
HPDiagnosticAlert (x32 Version: 1.00.0000 - Microsoft) Hidden
HPPhotoGadget (x32 Version: 140.0.524.000 - Hewlett-Packard) Hidden
HPProductAssistant (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden
HPSSupply (x32 Version: 140.0.211.000 - Hewlett-Packard) Hidden
Intel(R) Network Connections 15.6.25.0 (HKLM\...\PROSetDX) (Version: 15.6.25.0 - Intel)
Intel(R) Network Connections 15.6.25.0 (Version: 15.6.25.0 - Intel) Hidden
IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.38 - Irfan Skiljan)
iTunes (HKLM\...\{F46AA0F1-E284-4878-A462-5F11B9166C0E}) (Version: 11.4.0.18 - Apple Inc.)
Java 7 Update 65 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217065FF}) (Version: 7.0.650 - Oracle)
Java Auto Updater (x32 Version: 2.1.65.20 - Oracle, Inc.) Hidden
KiCad 2013.07.07 (HKLM-x32\...\KiCad) (Version: 2013.07.07 - )
Kobo (HKLM-x32\...\Kobo) (Version: 3.9.0 - Rakuten Kobo Inc.)
LEGO Island 2 (HKLM-x32\...\{85967580-EBC2-11D4-AEA3-0050046A88ED}) (Version: - )
LibreOffice 3.4 (HKLM-x32\...\{D64833F8-860D-4216-8EDC-DD08AD68C0B5}) (Version: 3.4.402 - LibreOffice)
LightScribe System Software (HKLM-x32\...\{82EF29B1-9B60-4142-A155-0599216DD053}) (Version: 1.18.6.1 - LightScribe)
LightScribe Template Labeler (HKLM-x32\...\{3DD8DC4E-B908-4CC6-9F42-ACEF950D8797}) (Version: 1.18.26.7 - LightScribe)
Logitech Gaming Software 5.10 (HKLM\...\{1444D2EE-C7AD-44A8-844F-2634B49353D1}) (Version: 5.10.127 - Logitech)
LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.1.0.210 - LogMeIn, Inc.)
LogMeIn Hamachi (x32 Version: 2.1.0.210 - LogMeIn, Inc.) Hidden
MarketResearch (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft Flight Simulator X (HKLM-x32\...\InstallShield_{9527A496-5DF9-412A-ADC7-168BA5379CA6}) (Version: 10.0.61355.0 - Microsoft Game Studios)
Microsoft Flight Simulator X (x32 Version: 10.0.61355.0 - Microsoft Game Studios) Hidden
Microsoft Flight Simulator X Service Pack 1 (HKLM-x32\...\SP1_9527A496-5DF9-412A-ADC7-168BA5379CA6) (Version: 10.0.61355.0 - Microsoft Game Studios)
Microsoft Office Click-to-Run 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Click-to-Run 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Home and Student 2010 - English (HKLM-x32\...\{90140011-0061-0409-0000-0000000FF1CE}) (Version: 14.0.6114.5002 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (x32 Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (x32 Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden
Minecraft (HKLM-x32\...\Minecraft) (Version: ${VERSION} - )
Minecraft Packages (HKCU\...\Minecraft Packages) (Version: - ) <==== ATTENTION
Mozilla Firefox 32.0.3 (x86 en-GB) (HKLM-x32\...\Mozilla Firefox 32.0.3 (x86 en-GB)) (Version: 32.0.3 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)
Nero 10 Movie ThemePack 1 (HKLM-x32\...\{43FBAB46-5969-4200-9958-1FF81FEE506F}) (Version: 10.2.10000.11.0 - Nero AG)
Nero 10 Movie ThemePack Basic (x32 Version: 10.2.10000.0.0 - Nero AG) Hidden
Nero BurnRights 10 (HKLM-x32\...\{943CFD7D-5336-47AF-9418-E02473A5A517}) (Version: 4.2.10500.1.102 - Nero AG)
Nero BurnRights 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden
Nero Control Center 10 (x32 Version: 10.2.11900.1.9 - Nero AG) Hidden
Nero ControlCenter 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden
Nero Core Components 10 (x32 Version: 2.0.18400.9.0 - Nero AG) Hidden
Nero CoverDesigner 10 (HKLM-x32\...\{FCF00A6E-FB58-477A-ABE9-232907105521}) (Version: 5.2.11400.11.100 - Nero AG)
Nero CoverDesigner 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden
Nero DiscSpeed 10 (HKLM-x32\...\{34490F4E-48D0-492E-8249-B48BECF0537C}) (Version: 6.2.10500.2.100 - Nero AG)
Nero DiscSpeed 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden
Nero Express 10 (HKLM-x32\...\{70550193-1C22-445C-8FA4-564E155DB1A7}) (Version: 10.2.11900.20.100 - Nero AG)
Nero Express 10 Help (CHM) (x32 Version: 10.5.10300 - Nero AG) Hidden
Nero InfoTool 10 (HKLM-x32\...\{F412B4AF-388C-4FF5-9B2F-33DB1C536953}) (Version: 7.2.10400.5.100 - Nero AG)
Nero InfoTool 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden
Nero MediaHub 10 (HKLM-x32\...\{1F7FB68F-52F6-46A3-B42F-38CE46295AE5}) (Version: 1.2.13200.33.100 - Nero AG)
Nero MediaHub 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden
Nero Multimedia Suite 10 Essentials (HKLM-x32\...\{ADEF1F0B-635E-4041-B50F-A510C1B4D2C5}) (Version: 10.5.10400 - Nero AG)
Nero RescueAgent 10 (HKLM-x32\...\{E337E787-CF61-4B7B-B84F-509202A54023}) (Version: 3.2.10800.9.100 - Nero AG)
Nero RescueAgent 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden
Nero StartSmart 10 (HKLM-x32\...\{F61D489E-6C44-49AC-AD02-7DA8ACA73A65}) (Version: 10.2.11600.14.100 - Nero AG)
Nero StartSmart 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden
Nero Update (HKLM-x32\...\{65BB0407-4CC8-4DC7-952E-3EEFDF05602A}) (Version: 1.0.0018 - Nero AG)
NETGEAR WG111T 108Mbps Wireless USB2.0 Adapter (HKLM-x32\...\{51123D42-6B9C-4B93-900C-29F9EC5963C9}) (Version: 1.0.0 - NETGEAR)
NETGEAR WNDA3100v2 wireless USB 2.0 adapter (HKLM-x32\...\{3C7839E7-21F4-49E0-B4D5-AC8ED818CCB0}) (Version: 1.03.000 - NETGEAR)
NetObjects Fusion 11.0 (HKLM-x32\...\{84CF3C61-A711-4D95-9496-9B578F3090E3}) (Version: 11.0 - )
NetObjects Fusion 12.0 (HKLM-x32\...\{BB906006-CCB4-48A1-8348-53938CF28781}) (Version: 12.0 - NetObjects)
NetObjects Fusion 12.0 (x32 Version: 12.00.0000.5024 - NetObjects) Hidden
NetObjects Fusion 2013 (HKLM-x32\...\{AC444987-0D7F-46BC-A52E-6A3AAB250D21}) (Version: 13.0 - NetObjects)
NetObjects Fusion 2013 (x32 Version: 13.00.0000.5529 - NetObjects) Hidden
Network64 (Version: 140.0.215.000 - Hewlett-Packard) Hidden
Network64 (Version: 140.0.221.000 - Hewlett-Packard) Hidden
No More Room in Hell (HKLM-x32\...\Steam App 224260) (Version: - No More Room in Hell Team)
NVIDIA 3D Vision Controller Driver (x32 Version: 280.19 - NVIDIA Corporation) Hidden
NVIDIA 3D Vision Controller Driver 334.89 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 334.89 - NVIDIA Corporation)
NVIDIA 3D Vision Driver 334.89 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 334.89 - NVIDIA Corporation)
NVIDIA Control Panel 334.89 (Version: 334.89 - NVIDIA Corporation) Hidden
NVIDIA GeForce Experience 1.8.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 1.8.1 - NVIDIA Corporation)
NVIDIA Graphics Driver 334.89 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 334.89 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation)
NVIDIA Install Application (Version: 2.1002.147.1067 - NVIDIA Corporation) Hidden
NVIDIA Island Demo (HKLM-x32\...\{D422FDA2-EE96-4556-8F56-6713F92F4D1C}) (Version: 1.00 - )
NVIDIA LED Visualizer 1.0 (Version: 1.0 - NVIDIA Corporation) Hidden
NVIDIA Network Service (Version: 1.0 - NVIDIA Corporation) Hidden
NVIDIA PhysX (x32 Version: 9.13.1220 - NVIDIA Corporation) Hidden
NVIDIA PhysX System Software 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation)
NVIDIA ShadowPlay 10.11.15 (Version: 10.11.15 - NVIDIA Corporation) Hidden
NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.3489 - NVIDIA Corporation) Hidden
NVIDIA Update 10.11.15 (Version: 10.11.15 - NVIDIA Corporation) Hidden
NVIDIA Update Core (Version: 10.11.15 - NVIDIA Corporation) Hidden
NVIDIA Virtual Audio 1.2.19 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver) (Version: 1.2.19 - NVIDIA Corporation)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
OpenOffice.org 3.3 (HKLM-x32\...\{82AF3E91-57E1-4754-84D0-40A46E2479AB}) (Version: 3.3.9567 - OpenOffice.org)
Origin (HKLM-x32\...\Origin) (Version: 9.4.22.2815 - Electronic Arts, Inc.)
Overwolf (HKLM-x32\...\{FE8E927E-8099-4C6B-A337-1CAB00E213C7}) (Version: 0.50.310 - Overwolf)
PaintBallGame Online (HKLM-x32\...\PaintBallGame) (Version: - )
PS_AIO_07_C510_SW_Min (x32 Version: 140.0.344.000 - Hewlett-Packard) Hidden
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.)
PVZ Garden Warfare (HKLM-x32\...\{A5AC7D7B-C1D5-4AF9-8829-993DA335BE1B}) (Version: 1.0.3.0 - Electronic Arts)
QuickTime 7 (HKLM-x32\...\{111EE7DF-FC45-40C7-98A7-753AC46B12FB}) (Version: 7.75.80.95 - Apple Inc.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6363 - Realtek Semiconductor Corp.)
RescuePRO 3.5 (HKLM-x32\...\{81B109ED-6ECA-49FF-9238-8E31FA5DB1A9}_is1) (Version: - LC Technology International, Inc.)
rFactor (remove only) (HKLM-x32\...\rFactor) (Version: - )
ROBLOX Player (HKLM-x32\...\{373B1718-8CC5-4567-8EE2-9033AD08A680}) (Version: - ROBLOX Corporation)
ROBLOX Studio 2013 (HKLM-x32\...\{2922D6F1-2865-4EFA-97A9-94EEAB3AFA14}) (Version: - ROBLOX Corporation)
Samsung Kies (HKLM-x32\...\InstallShield_{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.0.2.11071_128 - Samsung Electronics Co., Ltd.)
Samsung Kies (x32 Version: 2.0.2.11071_128 - Samsung Electronics Co., Ltd.) Hidden
SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.4.4.0 - SAMSUNG Electronics Co., Ltd.)
Scan (x32 Version: 140.0.80.000 - Hewlett-Packard) Hidden
Scratch (HKLM-x32\...\Scratch) (Version: 1.4.0.0 - MIT Media Lab Lifelong Kindergarten Group)
SeaTools for Windows (HKLM-x32\...\{98613C99-1399-416C-A07C-1EE1C585D872}) (Version: 1.2.0.5 - Seagate Technology)
SHIELD Streaming (Version: 1.6.85 - NVIDIA Corporation) Hidden
Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 14.0 - HP)
Skype™ 6.11 (HKLM-x32\...\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}) (Version: 6.11.102 - Skype Technologies S.A.)
SmartWebPrinting (x32 Version: 140.0.186.000 - Hewlett-Packard) Hidden
SolutionCenter (x32 Version: 140.0.214.000 - Hewlett-Packard) Hidden
Source SDK Base 2007 (HKLM-x32\...\Steam App 218) (Version: - Valve)
Speccy (HKLM\...\Speccy) (Version: 1.17 - Piriform)
Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.4.40 - Safer-Networking Ltd.)
Status (x32 Version: 140.0.256.000 - Hewlett-Packard) Hidden
Steam(TM) (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve)
System Requirements Lab (HKLM-x32\...\SystemRequirementsLab) (Version: - )
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.14 - TeamSpeak Systems GmbH)
The Stanley Parable Demo (HKLM-x32\...\Steam App 247750) (Version: - Galactic Cafe)
TheSkyX First Light Edition version 10.2.0 Build 6408 (HKLM-x32\...\TheSkyX First Light for Windows_is1) (Version: 10.2.0 Build 6408 - )
Tom Clancy's Splinter Cell (HKLM-x32\...\{A174402A-2EE6-4B86-A930-7BC85A9933BD}) (Version: 1.00.000 - )
Toolbox (x32 Version: 140.0.428.000 - Hewlett-Packard) Hidden
TrayApp (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden
Tweaking.com - Registry Backup (HKLM-x32\...\Tweaking.com - Registry Backup) (Version: 1.10.0 - Tweaking.com)
Unigine Heaven Benchmark v2.1 (HKLM-x32\...\{38468127-9E6F-4FC9-B5F7-42D4AD437D96}) (Version: 2.1 - Unigine Corp.)
Unity Web Player (HKCU\...\UnityWebPlayer) (Version: - Unity Technologies ApS)
Utility (x32 Version: 1.00.0002 - ASUSTek) Hidden
Ventrilo Client for Windows x64 (HKLM\...\{EEB3F6BB-318D-4CE5-989F-8191FCBFB578}) (Version: 3.0.8.0 - Flagship Industries, Inc.)
Voobly (HKLM-x32\...\Voobly_is1) (Version: Voobly - Voobly)
WebReg (x32 Version: 140.0.212.017 - Hewlett-Packard) Hidden
Windows Driver Package - Dynastream Innovations, Inc. ANT LibUSB Drivers (04/11/2012 1.2.40.201) (HKLM\...\F9D2A789F9CFF8CEC36B544F53877C80F1F73C46) (Version: 04/11/2012 1.2.40.201 - Dynastream Innovations, Inc.)
Windows Driver Package - Silicon Labs Software (DSI_SiUSBXp_3_1) USB (02/06/2007 3.1) (HKLM\...\D1506E0025B5A3F9EB8270FE81C1EEDD9388B8A2) (Version: 02/06/2007 3.1 - Silicon Labs Software)
WinRAR 4.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 4.01.0 - win.rar GmbH)
World of Tanks (HKLM-x32\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C812EU}_is1) (Version: - Wargaming.net)
World of Warplanes (HKLM-x32\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C813EU}_is1) (Version: - Wargaming.net)
XBMC (HKCU\...\XBMC) (Version: - Team XBMC)
Xfire (remove only) (HKLM-x32\...\Xfire) (Version: - )
Xirrus Wi-Fi Inspector (HKLM-x32\...\{BBB21AB1-2C45-435D-A05A-B563072E7B9B}) (Version: 1.2.1.4 - Xirrus)
XviD MPEG-4 Video Codec (HKLM-x32\...\xvid) (Version: - XviD Development Team)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-888456847-2528441040-574326226-1000_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Crosshair\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-888456847-2528441040-574326226-1000_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Crosshair\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-888456847-2528441040-574326226-1000_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Crosshair\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-888456847-2528441040-574326226-1000_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Crosshair\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-888456847-2528441040-574326226-1000_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Crosshair\AppData\Roaming\Dropbox\bin\DropboxExt64.22.dll (Dropbox, Inc.)

==================== Restore Points =========================

10-10-2014 10:17:51 Windows Update
10-10-2014 11:14:20 Windows Update

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 03:34 - 2014-10-10 10:45 - 00450713 ____R C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 www.032439.com
127.0.0.1 032439.com
127.0.0.1 www.0scan.com
127.0.0.1 0scan.com
127.0.0.1 1000gratisproben.com
127.0.0.1 www.1000gratisproben.com
127.0.0.1 1001namen.com
127.0.0.1 www.1001namen.com
127.0.0.1 100888290cs.com
127.0.0.1 www.100888290cs.com
127.0.0.1 www.100sexlinks.com
127.0.0.1 100sexlinks.com
127.0.0.1 10sek.com
127.0.0.1 www.10sek.com
127.0.0.1 www.1-2005-search.com
127.0.0.1 1-2005-search.com
127.0.0.1 123fporn.info
127.0.0.1 www.123fporn.info
127.0.0.1 123haustiereundmehr.com
127.0.0.1 www.123haustiereundmehr.com
127.0.0.1 123moviedownload.com

There are 1000 more lines.


==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {1D4831BB-1E06-4C1D-8348-6E4E2526BE1D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-08-28] (Google Inc.)
Task: {2E923A5E-EAC5-4FD3-BC55-BD1987861CFC} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-08-28] (Google Inc.)
Task: {4EEB031D-4AE6-4908-A381-D192E5EE20F1} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-10-07] (AVAST Software)
Task: {662FA728-3DEC-4740-9647-4C172E5E7BA8} - System32\Tasks\ASUS\ASUS AI Suite II Execute => C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe [2010-11-26] (ASUSTeK Computer Inc.)
Task: {69DEFB27-532C-41D6-9953-2C2AFED24BD1} - System32\Tasks\ASUS\RunDAOD => C:\Windows\DAODx.exe [2009-03-30] ()
Task: {6CC62B27-6DE9-40EA-8B8F-D5547BEAFF18} - System32\Tasks\ASUS\ASUS DigiVRM Help => C:\Program Files (x86)\ASUS\AI Suite II\DIGI+ VRM\VRMHelp.exe [2011-04-13] (ASUSTeK Computer Inc.)
Task: {72D1F181-0F6F-4B4C-AF42-10F43318CF0F} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search &amp; Destroy 2\SDImmunize.exe
Task: {7757A798-1F36-4912-9B24-4082B8354C40} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-09-24] (Adobe Systems Incorporated)
Task: {82DA7EE3-D3BD-49EF-86A1-4DA934022101} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search &amp; Destroy 2\SDScan.exe
Task: {C1662AFD-CCF6-4269-A0AE-287B36FD4825} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {E46BA22B-840E-4668-A762-94A7B881C886} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express Self Updater\ExpressSelfUpdater.exe [2014-07-23] ()
Task: {FFCEC788-21E1-43B8-A5FE-3A4D42863DDC} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search &amp; Destroy 2\SDUpdate.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) =============

2012-11-20 13:44 - 2012-10-04 20:49 - 00087152 _____ () C:\Windows\System32\cpwmon64.dll
2010-11-03 10:30 - 2010-11-03 10:30 - 00918144 ____R () C:\Program Files (x86)\ASUS\AXSP\1.00.13\atkexComSvc.exe
2009-07-27 11:13 - 2009-07-27 11:13 - 00061440 _____ () C:\Windows\SysWOW64\ASDR.exe
2010-12-02 03:15 - 2010-12-02 03:15 - 00915584 ____R () C:\Program Files (x86)\ASUS\AAHM\1.00.14\aaHMSvc.exe
2012-07-19 12:22 - 2010-10-21 10:52 - 00586880 ____R () C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.11\AsSysCtrlService.exe
2011-10-04 10:00 - 2011-08-02 10:47 - 00159232 _____ () C:\Program Files (x86)\Samsung\USB Drivers\26_VIA_driver2\amd64\VIAService.exe
2012-01-27 08:36 - 2012-01-27 08:54 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe
2011-10-13 21:06 - 2010-08-19 15:25 - 00272864 _____ () C:\Program Files (x86)\NETGEAR\WNDA3100v2\WifiSvc.exe
2012-04-03 00:15 - 2014-02-08 18:42 - 00117024 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2011-11-01 01:33 - 2011-05-28 23:05 - 00164864 _____ () C:\Program Files\WinRAR\rarext.dll
2011-08-28 05:18 - 2010-04-06 15:33 - 00477184 _____ () C:\Program Files\ASUS\GamerOSD\ATKFastUserSwitching.exe
2009-03-30 07:32 - 2009-03-30 07:32 - 00032768 ____R () C:\Windows\DAODx.exe
2012-02-12 00:28 - 2011-05-20 13:26 - 00062976 _____ () C:\Program Files (x86)\LG Soft India Pvt Ltd\Dual Package\bin\MouseHook.dll
2012-02-12 00:28 - 2011-04-02 00:17 - 00003584 _____ () C:\Program Files (x86)\LG Soft India Pvt Ltd\Dual Package\bin\EngRes.dll
2012-02-12 00:28 - 2011-04-20 18:10 - 00024576 _____ () C:\Program Files (x86)\LG Soft India Pvt Ltd\Dual Package\bin\TestDDCCI.exe
2011-10-13 21:06 - 2010-08-27 09:32 - 04577760 _____ () C:\Program Files (x86)\NETGEAR\WNDA3100v2\WNDA3100v2.exe
2014-10-07 07:48 - 2014-10-07 07:48 - 00301152 _____ () C:\Program Files\AVAST Software\Avast\aswProperty.dll
2014-10-09 20:17 - 2014-10-09 20:17 - 02859008 _____ () C:\Program Files\AVAST Software\Avast\defs\14100901\algo.dll
2014-02-06 01:52 - 2014-02-06 01:52 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2014-02-06 01:52 - 2014-02-06 01:52 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2012-07-19 12:22 - 2014-10-10 12:39 - 00036864 _____ () C:\Program Files (x86)\ASUS\AXSP\1.00.13\PEbiosinterface32.dll
2012-07-19 12:22 - 2010-06-29 03:58 - 00104448 ____R () C:\Program Files (x86)\ASUS\AXSP\1.00.13\ATKEX.dll
2014-10-09 20:45 - 2014-05-13 12:04 - 00109400 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl
2014-10-09 20:45 - 2014-05-13 12:04 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl
2014-10-09 20:45 - 2014-05-13 12:04 - 00167768 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl
2014-10-09 20:45 - 2012-08-23 10:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll
2014-10-09 20:45 - 2012-04-03 17:06 - 00565640 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll
2011-10-13 21:06 - 2010-07-29 20:41 - 00323584 _____ () C:\Program Files (x86)\NETGEAR\WNDA3100v2\WifiLib.dll
2009-06-17 12:40 - 2009-06-17 12:40 - 02121728 _____ () C:\Program Files (x86)\Common Files\LightScribe\QtCore4.dll
2009-06-17 12:40 - 2009-06-17 12:40 - 07745536 _____ () C:\Program Files (x86)\Common Files\LightScribe\QtGui4.dll
2009-06-17 12:40 - 2009-06-17 12:40 - 00135168 _____ () C:\Program Files (x86)\Common Files\LightScribe\plugins\imageformats\qjpeg4.dll
2009-06-27 10:11 - 2009-06-27 10:11 - 00503202 _____ () C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\sqlite3.dll
2011-08-28 05:18 - 2009-04-29 20:46 - 01077248 _____ () C:\Program Files (x86)\ASUS\GamerOSD\ImageTransform.dll
2011-08-28 05:18 - 2009-02-17 18:22 - 00184320 _____ () C:\Program Files (x86)\ASUS\GamerOSD\AudioOnVistaDLL.dll
2012-02-12 00:28 - 2011-03-23 14:35 - 00059904 _____ () C:\Program Files (x86)\LG Soft India Pvt Ltd\Dual Package\bin\Proxy32dll.dll
2011-10-13 21:06 - 2010-07-08 11:24 - 00258048 _____ () C:\Program Files (x86)\NETGEAR\WNDA3100v2\WifiSvcLib.dll
2014-10-07 07:48 - 2014-10-07 07:48 - 19329904 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2012-07-19 12:26 - 2011-03-04 09:33 - 00053248 ____N () C:\Program Files (x86)\ASUS\AI Suite II\TurboV EVO\HookKey32.dll
2012-07-19 12:26 - 2009-05-21 10:14 - 00253952 _____ () C:\Program Files (x86)\ASUS\AI Suite II\TurboV EVO\pngio.dll
2012-07-19 12:23 - 2011-02-24 10:19 - 00143360 _____ () C:\Program Files (x86)\ASUS\AI Suite II\AssistFunc.dll
2012-07-19 12:23 - 2010-06-21 15:21 - 00208896 _____ () C:\Program Files (x86)\ASUS\AI Suite II\ImageHelper.dll
2012-07-19 12:23 - 2009-08-12 20:15 - 00253952 _____ () C:\Program Files (x86)\ASUS\AI Suite II\pngio.dll
2012-07-19 12:23 - 2011-02-09 09:02 - 00873472 _____ () C:\Program Files (x86)\ASUS\AI Suite II\AI Charger+\AIChargerPlus.dll
2012-07-19 12:24 - 2011-03-09 14:55 - 01036800 _____ () C:\Program Files (x86)\ASUS\AI Suite II\ASUS Update\Update.dll
2012-07-19 12:23 - 2011-03-23 15:05 - 00964608 _____ () C:\Program Files (x86)\ASUS\AI Suite II\BarGadget\BarGadget.dll
2012-07-19 12:25 - 2011-03-11 19:53 - 01257472 _____ () C:\Program Files (x86)\ASUS\AI Suite II\MyLogo\MyLogo.dll
2012-07-19 12:25 - 2011-01-06 10:38 - 01027072 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Probe_II\ProbeII.dll
2012-07-19 12:23 - 2011-04-28 18:01 - 00881664 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Sensor\Sensor.dll
2012-07-19 12:23 - 2011-04-07 17:33 - 01607168 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Sensor Graph\SensorGraph.dll
2012-07-19 12:23 - 2011-01-07 16:39 - 01246208 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Settings\Settings.dll
2012-07-19 12:23 - 2010-08-06 18:11 - 00850944 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Splitter\Splitter.dll
2012-07-19 12:23 - 2010-08-06 18:13 - 00886272 _____ () C:\Program Files (x86)\ASUS\AI Suite II\TabGadget\TabGadget.dll
2012-07-19 12:22 - 2010-08-23 03:17 - 00662016 ____R () C:\Program Files (x86)\ASUS\AAHM\1.00.14\aaHMLib.dll
2012-07-19 12:23 - 2010-06-21 15:21 - 00208896 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\ImageHelper.dll
2014-09-28 14:47 - 2014-09-28 14:47 - 03715184 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\ProgramData\TEMP:373E1720

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service"

==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)


========================= Accounts: ==========================

Administrator (S-1-5-21-888456847-2528441040-574326226-500 - Administrator - Disabled)
Crosshair (S-1-5-21-888456847-2528441040-574326226-1000 - Administrator - Enabled) => C:\Users\Crosshair
Guest (S-1-5-21-888456847-2528441040-574326226-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-888456847-2528441040-574326226-1003 - Limited - Enabled)

==================== Faulty Device Manager Devices =============

Name: Photosmart eStn C510 series
Description: Photosmart eStn C510 series
Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318}
Manufacturer: HP
Service:
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: Teredo Tunneling Pseudo-Interface
Description: Microsoft Teredo Tunneling Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (10/10/2014 02:32:45 PM) (Source: Windows Search Service) (EventID: 7010) (User: )
Description: The index cannot be initialized.


Details:
The system cannot find the file specified. (HRESULT : 0x80070002) (0x80070002)

Error: (10/10/2014 02:32:45 PM) (Source: Windows Search Service) (EventID: 3058) (User: )
Description: The application cannot be initialized.

Context: Windows Application


Details:
The system cannot find the file specified. (HRESULT : 0x80070002) (0x80070002)

Error: (10/10/2014 02:32:45 PM) (Source: Windows Search Service) (EventID: 3028) (User: )
Description: The gatherer object cannot be initialized.

Context: Windows Application, SystemIndex Catalog


Details:
The system cannot find the file specified. (HRESULT : 0x80070002) (0x80070002)

Error: (10/10/2014 02:32:45 PM) (Source: Windows Search Service) (EventID: 3029) (User: )
Description: The plug-in in <Search.TripoliIndexer> cannot be initialized.

Context: Windows Application, SystemIndex Catalog


Details:
The system cannot find the file specified. (HRESULT : 0x80070002) (0x80070002)

Error: (10/10/2014 02:32:17 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error: (10/10/2014 02:32:16 PM) (Source: Windows Search Service) (EventID: 7010) (User: )
Description: The index cannot be initialized.


Details:
The system cannot find the file specified. (HRESULT : 0x80070002) (0x80070002)

Error: (10/10/2014 02:32:16 PM) (Source: Windows Search Service) (EventID: 3058) (User: )
Description: The application cannot be initialized.

Context: Windows Application


Details:
The system cannot find the file specified. (HRESULT : 0x80070002) (0x80070002)

Error: (10/10/2014 02:32:16 PM) (Source: Windows Search Service) (EventID: 3028) (User: )
Description: The gatherer object cannot be initialized.

Context: Windows Application, SystemIndex Catalog


Details:
The system cannot find the file specified. (HRESULT : 0x80070002) (0x80070002)

Error: (10/10/2014 02:32:16 PM) (Source: Windows Search Service) (EventID: 3029) (User: )
Description: The plug-in in <Search.TripoliIndexer> cannot be initialized.

Context: Windows Application, SystemIndex Catalog


Details:
The system cannot find the file specified. (HRESULT : 0x80070002) (0x80070002)

Error: (10/10/2014 02:32:16 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.


System errors:
=============
Error: (10/10/2014 02:32:45 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Windows Search service terminated unexpectedly. It has done this 8 time(s).

Error: (10/10/2014 02:32:45 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The Windows Search service terminated with the following error:
%%2

Error: (10/10/2014 02:32:16 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Windows Search service terminated unexpectedly. It has done this 7 time(s).

Error: (10/10/2014 02:32:16 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The Windows Search service terminated with the following error:
%%2

Error: (10/10/2014 01:34:33 PM) (Source: Ntfs) (EventID: 55) (User: )
Description: The file system structure on the disk is corrupt and unusable.
Please run the chkdsk utility on the volume \Device\HarddiskVolume2.

Error: (10/10/2014 01:09:05 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: The Windows Search service terminated unexpectedly. It has done this 6 time(s).

Error: (10/10/2014 01:09:05 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The Windows Search service terminated with the following error:
%%2

Error: (10/10/2014 00:57:54 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Installation Failure: Windows failed to install the following update with error 0x80070002: Security Update for Windows 7 for x64-based Systems (KB2978668).

Error: (10/10/2014 00:50:15 PM) (Source: Ntfs) (EventID: 55) (User: )
Description: The file system structure on the disk is corrupt and unusable.
Please run the chkdsk utility on the volume \Device\HarddiskVolume2.

Error: (10/10/2014 00:49:05 PM) (Source: Ntfs) (EventID: 55) (User: )
Description: The file system structure on the disk is corrupt and unusable.
Please run the chkdsk utility on the volume \Device\HarddiskVolume2.


Microsoft Office Sessions:
=========================
Error: (10/10/2014 02:32:45 PM) (Source: Windows Search Service) (EventID: 7010) (User: )
Description:
Details:
The system cannot find the file specified. (HRESULT : 0x80070002) (0x80070002)

Error: (10/10/2014 02:32:45 PM) (Source: Windows Search Service) (EventID: 3058) (User: )
Description: Context: Windows Application


Details:
The system cannot find the file specified. (HRESULT : 0x80070002) (0x80070002)

Error: (10/10/2014 02:32:45 PM) (Source: Windows Search Service) (EventID: 3028) (User: )
Description: Context: Windows Application, SystemIndex Catalog


Details:
The system cannot find the file specified. (HRESULT : 0x80070002) (0x80070002)

Error: (10/10/2014 02:32:45 PM) (Source: Windows Search Service) (EventID: 3029) (User: )
Description: Context: Windows Application, SystemIndex Catalog


Details:
The system cannot find the file specified. (HRESULT : 0x80070002) (0x80070002)
Search.TripoliIndexer

Error: (10/10/2014 02:32:17 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Users\Crosshair\Downloads\SoftonicDownloader_for_spybot-search-destroy.exe

Error: (10/10/2014 02:32:16 PM) (Source: Windows Search Service) (EventID: 7010) (User: )
Description:
Details:
The system cannot find the file specified. (HRESULT : 0x80070002) (0x80070002)

Error: (10/10/2014 02:32:16 PM) (Source: Windows Search Service) (EventID: 3058) (User: )
Description: Context: Windows Application


Details:
The system cannot find the file specified. (HRESULT : 0x80070002) (0x80070002)

Error: (10/10/2014 02:32:16 PM) (Source: Windows Search Service) (EventID: 3028) (User: )
Description: Context: Windows Application, SystemIndex Catalog


Details:
The system cannot find the file specified. (HRESULT : 0x80070002) (0x80070002)

Error: (10/10/2014 02:32:16 PM) (Source: Windows Search Service) (EventID: 3029) (User: )
Description: Context: Windows Application, SystemIndex Catalog


Details:
The system cannot find the file specified. (HRESULT : 0x80070002) (0x80070002)
Search.TripoliIndexer

Error: (10/10/2014 02:32:16 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Users\Crosshair\Downloads\esetsmartinstaller_enu.exe


CodeIntegrity Errors:
===================================
Date: 2014-10-06 18:09:09.689
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\MaxtorExtHD\Siemens Scaleo\copy of C Drive\Program Files\Spybot2 - Search & Destroy 2\pcrelib.dll because the set of per-page image hashes could not be found on the system.

Date: 2013-04-19 18:52:20.351
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume6\be1e7cebc18b69dcd36cefa6f196bb\mrt.exe because the set of per-page image hashes could not be found on the system.

Date: 2013-04-19 18:52:19.587
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume6\be1e7cebc18b69dcd36cefa6f196bb\mrt.exe because the set of per-page image hashes could not be found on the system.

Date: 2013-04-19 18:52:17.902
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume6\be1e7cebc18b69dcd36cefa6f196bb\mrt.exe because the set of per-page image hashes could not be found on the system.


==================== Memory info ===========================

Processor: AMD Phenom(tm) II X4 955 Processor
Percentage of memory in use: 51%
Total physical RAM: 4056.29 MB
Available physical RAM: 1963.18 MB
Total Pagefile: 8110.76 MB
Available Pagefile: 5650.29 MB
Total Virtual: 8192 MB
Available Virtual: 8191.82 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:400.49 GB) (Free:19.2 GB) NTFS
Drive f: () (Fixed) (Total:530.93 GB) (Free:492.28 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: A6392684)
Partition 1: (Active) - (Size=99 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=400.5 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=530.9 GB) - (Type=OF Extended)
Attempted reading MBR returned 0 bytes.
Could not read MBR for disk 1.

==================== End Of Log ============================

















aswMBR version 1.0.1.2041 Copyright(c) 2014 AVAST Software
Run date: 2014-10-10 14:41:58
-----------------------------
14:41:58.213 OS Version: Windows x64 6.1.7601 Service Pack 1
14:41:58.213 Number of processors: 4 586 0x403
14:41:58.213 ComputerName: FORMULAV UserName:
14:41:59.508 Initialize success
14:41:59.508 VM: initialized successfully
14:41:59.539 VM: Amd CPU supported virtualized
14:42:20.124 VM: disk I/O ahcix64.sys
14:42:25.194 AVAST engine defs: 14100901
14:43:16.206 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Scsi\ahcix641Port0Path0Target0Lun0
14:43:16.222 Disk 0 Vendor: Seagate JC4B____ Size: 953869MB BusType: 3
14:43:16.222 Disk 1 \Device\Harddisk1\DR1 -> \Device\Scsi\ahcix641Port0Path0Target1Lun0
14:43:16.237 Disk 1 Vendor: Seagate JC4B____ Size: 953869MB BusType: 3
14:43:16.378 Disk 0 MBR read successfully
14:43:16.393 Disk 0 MBR scan
14:43:16.393 Disk 0 Windows 7 default MBR code
14:43:16.409 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 99 MB offset 2048
14:43:16.425 Disk 0 default boot code
14:43:16.456 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 410097 MB offset 206848
14:43:16.456 Disk 0 Partition - 00 0F Extended LBA 543667 MB offset 840087045
14:43:16.503 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 543667 MB offset 840087108
14:43:16.565 Disk 0 scanning C:\Windows\system32\drivers
14:43:30.995 Service scanning
14:43:57.640 Modules scanning
14:43:57.640 Disk 0 trace - called modules:
14:43:57.640 ntoskrnl.exe CLASSPNP.SYS disk.sys SCSIPORT.SYS hal.dll ahcix64.sys
14:43:57.655 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8005229060]
14:43:57.655 3 CLASSPNP.SYS[fffff8800180143f] -> nt!IofCallDriver -> \Device\Scsi\ahcix641Port0Path0Target0Lun0[0xfffffa80037c5050]
14:43:58.420 AVAST engine scan C:\Windows
14:44:01.914 AVAST engine scan C:\Windows\system32
14:47:16.353 AVAST engine scan C:\Windows\system32\drivers
14:47:33.107 AVAST engine scan C:\Users\Crosshair
14:50:39.980 Disk 0 MBR has been saved successfully to "C:\Users\Crosshair\Desktop\MBR.dat"
14:50:39.996 The log file has been saved successfully to "C:\Users\Crosshair\Desktop\aswMBR.txt"

Juliet
2014-10-11, 14:28
Hi and welcome

uninstall Browser Configuration Utility, and Ask Toolbar Updater from your computer by using the Add/Remove Program feature in the Window's Control Panel.

There are malicious extensions placed in your browsers we need to remove.

reset web browsers
Open Internet Explorer, click on the “gear icon” in the upper right part of your browser, then click again on Internet Options.
In the “Internet Options” dialog box, click on the “Advanced” tab, then click on the “Reset” button.
In the “Reset Internet Explorer settings” section, select the “Delete personal settings” check box, then click on “Reset” button.
When Internet Explorer has completed its task, click on the “Close” button in the confirmation dialogue box. You will now need to close your browser,


If you’re having problems with Firefox, resetting it can help. The reset feature fixes many issues by restoring Firefox to its factory default state while saving your essential information like bookmarks, passwords, web form auto-fill information, browsing history and open tabs.

In the upper-right corner of the Firefox window, click the Firefox menu button (3 thin lines), then click on the “Help” (light blue question mark) button.
From the Help menu, choose Troubleshooting Information.
If you’re unable to access the Help menu, type about:support in your address bar to bring up the Troubleshooting information page.
Click the “Reset Firefox” button in the upper-right corner of the “Troubleshooting Information” page.
To continue, click on the “Reset Firefox” button in the new confirmation window that opens.
Firefox will close itself and will revert to its default settings. When it’s done, a window will list the information that was imported. Click on the “Finish“.

Note: Your old Firefox profile will be placed on your desktop in a folder named “Old Firefox Data“. If the reset didn’t fix your problem you can restore some of the information not saved by copying files to the new profile that was created. If you don’t need this folder any longer, you should delete it as it contains sensitive information.




lets set Chome back to factory defaults


Click the Chrome menu http://i24.photobucket.com/albums/c30/ken545/Clipboard01_zps2e55f676.jpgon the browser toolbar.
Select Settings.
Scroll down to Show advanced settings...
Down on the bottom you will see an option for RESET BROWSER SETTINGS
Click on it and it will set Chome back to defaults




Click on Chrome’s main menu button, represented by three horizontal lines ( Chrome's main menu button) .When the drop-down menu appears, select the option labeled Settings.
Chrome’s Settings should now be displayed in a new tab or window, depending on your configuration. Next, scroll to the bottom of the page and click on the Show advanced settings link
Chrome’s advanced Settings should now be displayed. Scroll down until the Reset browser settings section is visible, as shown in the example below. Next, click on the Reset browser settings button.
A confirmation dialog should now be displayed, detailing the components that will be restored to their default state should you continue on with the reset process. To complete the restoration process, click on the Reset button.


~~~~~~~~~~~~~~~~~~~~~

Open notepad. Please copy the contents of the quote box below. To do this highlight the contents of the box and right click on it and select copy.
Paste this into the open notepad. save it to the Desktop as fixlist.txt
NOTE. It's important that both files, FRST/FRST64 and fixlist.txt are in the same location or the fix will not work.
It needs to be saved Next to the "Farbar Recovery Scan Tool" (If asked to overwrite existing one please allow)



start
CloseProcesses:
HKLM-x32\...\Run: [] => [X]
HKU\S-1-5-21-888456847-2528441040-574326226-1000\...\Run: [Voobly] => [X]
AppInit_DLLs: C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll => C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll File Not Found
AppInit_DLLs: C:\ProgramData\Fast And Safe\FastAndSafe_x64.dll => C:\ProgramData\Fast And Safe\FastAndSafe_x64.dll File Not Found
AppInit_DLLs-x32: c:\progra~2\searchprotect\searchprotect\bin\spvc32loader.dll => "c:\progra~2\searchprotect\searchprotect\bin\spvc32loader.dll" File Not Found
AppInit_DLLs-x32: c:\progra~3\fastan~1\fastan~1.dll => "c:\progra~3\fastan~1\fastan~1.dll" File Not Found
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://speedial.com/?f=1&a=spd_dsite...1284146606&ir=
URLSearchHook: HKCU - SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch64.dll (DeviceVM, Inc.)
URLSearchHook: HKCU - SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch.dll (DeviceVM, Inc.)
SearchScopes: HKLM - DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = http://www.searchqu.com/web?src=ieb&appid=102&systemid=406&sr=0&q={searchTerms}
SearchScopes: HKLM - {31090377-0740-419E-BEFC-A56E50500D5B} URL = http://speedial.com/results.php?f=4&q={searchTerms}&a=spd_dsites03_14_22_ff&cd=2XzuyEtN2Y1L1Qzu0FyEyC0DtDyEyDyE0E0BtCyCyC0AzztDtN0D0Tzu0SzzzztCtN1L2XzutBtFtBtDtFtCzytFyCtN1L1CzutCyEtBzytDyD1V1PtN1L1G1B1V1N2Y1L1Qzu2StAyBtB0CtD0A0B0BtG0F0EzzzytGyC0AyDyEtG0E0DyC0BtGyDyB0EzytBtCyEzyzz0EtD0F2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyBtCtB0EtCtBtA0CtG0EtByC0AtG0FyE0D0CtGyC0EyDzytGtAyCyByByEtAtA0AtDtC0A0D2Q&cr=1284146606&ir=
SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = http://www.searchqu.com/web?src=ieb&appid=102&systemid=406&sr=0&q={searchTerms}
SearchScopes: HKLM-x32 - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = http://www.searchqu.com/web?src=ieb&appid=102&systemid=406&sr=0&q={searchTerms}
SearchScopes: HKCU - {31090377-0740-419E-BEFC-A56E50500D5B} URL = http://speedial.com/results.php?f=4&q={searchTerms}&a=spd_dsites03_14_22_ff&cd=2XzuyEtN2Y1L1Qzu0FyEyC0DtDyEyDyE0E0BtCyCyC0AzztDtN0D0Tzu0SzzzztCtN1L2XzutBtFtBtDtFtCzytFyCtN1L1CzutCyEtBzytDyD1V1PtN1L1G1B1V1N2Y1L1Qzu2StAyBtB0CtD0A0B0BtG0F0EzzzytGyC0AyDyEtG0E0DyC0BtGyDyB0EzytBtCyEzyzz0EtD0F2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyBtCtB0EtCtBtA0CtG0EtByC0AtG0FyE0D0CtGyC0EyDzytGtAyCyByByEtAtA0AtDtC0A0D2Q&cr=1284146606&ir=
SearchScopes: HKCU - {8A3E890E-6699-41a8-9881-C9A7602F224D} URL = http://www.bing.com/search?q={searchTerms}&form=SPLBR2&pc=SPLH
SearchScopes: HKCU - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = http://www.searchqu.com/web?src=ieb&appid=102&systemid=406&sr=0&q={searchTerms}
SearchScopes: HKCU - {E6A9209E-38E4-4B7D-8EEF-4A916EABF55E} URL = http://websearch.ask.com/redirect?client=ie&tb=ORJ&o=&src=kw&q={searchTerms}&locale=&apn_ptnrs=&apn_dtid=OSJ000&apn_uid=610AC3DA-8FAA-496F-8C44-6C57346BB00D&apn_sauid=D3A1E6AE-9C52-4214-BA7C-866C31815E47
BHO-x32: No Name -> {0347C33E-8762-4905-BF09-768834316C61} -> No File
Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Handler-x32: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - No File
FF user.js: detected! => C:\Users\Crosshair\AppData\Roaming\Mozilla\Firefox\Profiles\s3rvbfvw.default-1362845289504\user.js
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
CHR HKCU\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
AlternateDataStreams: C:\ProgramData\TEMP:373E1720
EmptyTemp:
Hosts:
End


Open FRST/FRST64 and press the Fix button just once and wait.
If for some reason the tool needs a restart, please make sure you let the system restart normally. After that let the tool complete its run.
When finished FRST will generate a log on the Desktop (Fixlog.txt). Please post it to your reply.

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~`

-AdwCleaner-by Xplode

Click on this link to download : ADWCleaner (http://www.bleepingcomputer.com/download/adwcleaner/)
Click on ONE of the Two Blue Download Now buttons That have a blue arrow beside them and save it to your desktop.

Do not click on any links in the top Advertisment.




Close all open programs and internet browsers.
Double click on AdwCleaner.exe to run the tool.
Click on Scan.
After the scan is complete click on "Clean"
Confirm each time with Ok.
Your computer will be rebooted automatically. A text file will open after the restart.
Please post the content of that logfile with your next answer.
You can find the logfile at C:\AdwCleaner[S1].txt as well.
NOTE: If you see AVG Secure Search being targeted for deletion, Here's Why (http://www.im-infected.com/hijacker/isearch-avg-comsearch-hijacker.html) and Here (http://nojesusnopeas.blogspot.com/2012/08/sorry-but-avg-secure-search-is-malware.html). You can always Reinstall (http://www.avg.com/us-en/secure-search) it.

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~



Please download Junkware Removal Tool (http://www.bleepingcomputer.com/download/junkware-removal-tool/) to your desktop.

Shut down your protection software now to avoid potential conflicts.
Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
The tool will open and start scanning your system.
Please be patient as this can take a while to complete depending on your system's specifications.
On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
Post the contents of JRT.txt into your next message.


~~~~~
please post
Fixlog.txt
C:\AdwCleaner.txt
JRT.txt

sufferinginsilence
2014-10-12, 02:05
Thank you Juliet for your reply.

The requested logs and results are as follows:







Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 08-10-2014 01
Ran by Crosshair at 2014-10-12 00:12:43 Run:2
Running from C:\Users\Crosshair\Desktop
Loaded Profile: Crosshair (Available profiles: Crosshair)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
start
CloseProcesses:
HKLM-x32\...\Run: [] => [X]
HKU\S-1-5-21-888456847-2528441040-574326226-1000\...\Run: [Voobly] => [X]
AppInit_DLLs: C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll => C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll File Not Found
AppInit_DLLs: C:\ProgramData\Fast And Safe\FastAndSafe_x64.dll => C:\ProgramData\Fast And Safe\FastAndSafe_x64.dll File Not Found
AppInit_DLLs-x32: c:\progra~2\searchprotect\searchprotect\bin\spvc32loader.dll => "c:\progra~2\searchprotect\searchprotect\bin\spvc32loader.dll" File Not Found
AppInit_DLLs-x32: c:\progra~3\fastan~1\fastan~1.dll => "c:\progra~3\fastan~1\fastan~1.dll" File Not Found
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://speedial.com/?f=1&a=spd_dsite...1284146606&ir=
URLSearchHook: HKCU - SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch64.dll (DeviceVM, Inc.)
URLSearchHook: HKCU - SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch.dll (DeviceVM, Inc.)
SearchScopes: HKLM - DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = http://www.searchqu.com/web?src=ieb&appid=102&systemid=406&sr=0&q={searchTerms}
SearchScopes: HKLM - {31090377-0740-419E-BEFC-A56E50500D5B} URL = http://speedial.com/results.php?f=4&q={searchTerms}&a=spd_dsites03_14_22_ff&cd=2XzuyEtN2Y1L1Qzu0FyEyC0DtDyEyDyE0E0BtCyCyC0AzztDtN0D0Tzu0SzzzztCtN1L2XzutBtFtBtDtFtCzytFyCtN1L1CzutCyEtBzytDyD1V1PtN1L1G1B1V1N2Y1L1Qzu2StAyBtB0CtD0A0B0BtG0F0EzzzytGyC0AyDyEtG0E0DyC0BtGyDyB0EzytBtCyEzyzz0EtD0F2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyBtCtB0EtCtBtA0CtG0EtByC0AtG0FyE0D0CtGyC0EyDzytGtAyCyByByEtAtA0AtDtC0A0D2Q&cr=1284146606&ir=
SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = http://www.searchqu.com/web?src=ieb&appid=102&systemid=406&sr=0&q={searchTerms}
SearchScopes: HKLM-x32 - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = http://www.searchqu.com/web?src=ieb&appid=102&systemid=406&sr=0&q={searchTerms}
SearchScopes: HKCU - {31090377-0740-419E-BEFC-A56E50500D5B} URL = http://speedial.com/results.php?f=4&q={searchTerms}&a=spd_dsites03_14_22_ff&cd=2XzuyEtN2Y1L1Qzu0FyEyC0DtDyEyDyE0E0BtCyCyC0AzztDtN0D0Tzu0SzzzztCtN1L2XzutBtFtBtDtFtCzytFyCtN1L1CzutCyEtBzytDyD1V1PtN1L1G1B1V1N2Y1L1Qzu2StAyBtB0CtD0A0B0BtG0F0EzzzytGyC0AyDyEtG0E0DyC0BtGyDyB0EzytBtCyEzyzz0EtD0F2QtN1M1F1B2Z1V1N2Y1L1Qzu2SyBtCtB0EtCtBtA0CtG0EtByC0AtG0FyE0D0CtGyC0EyDzytGtAyCyByByEtAtA0AtDtC0A0D2Q&cr=1284146606&ir=
SearchScopes: HKCU - {8A3E890E-6699-41a8-9881-C9A7602F224D} URL = http://www.bing.com/search?q={searchTerms}&form=SPLBR2&pc=SPLH
SearchScopes: HKCU - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = http://www.searchqu.com/web?src=ieb&appid=102&systemid=406&sr=0&q={searchTerms}
SearchScopes: HKCU - {E6A9209E-38E4-4B7D-8EEF-4A916EABF55E} URL = http://websearch.ask.com/redirect?client=ie&tb=ORJ&o=&src=kw&q={searchTerms}&locale=&apn_ptnrs=&apn_dtid=OSJ000&apn_uid=610AC3DA-8FAA-496F-8C44-6C57346BB00D&apn_sauid=D3A1E6AE-9C52-4214-BA7C-866C31815E47
BHO-x32: No Name -> {0347C33E-8762-4905-BF09-768834316C61} -> No File
Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Handler-x32: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - No File
FF user.js: detected! => C:\Users\Crosshair\AppData\Roaming\Mozilla\Firefox\Profiles\s3rvbfvw.default-1362845289504\user.js
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
CHR HKCU\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
AlternateDataStreams: C:\ProgramData\TEMP:373E1720
EmptyTemp:
Hosts:
End
*****************

Processes closed successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => Value not found.
HKU\S-1-5-21-888456847-2528441040-574326226-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Voobly => Value not found.
"C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll" => Value Data not found.
"C:\ProgramData\Fast And Safe\FastAndSafe_x64.dll" => Value Data not found.
"c:\progra~2\searchprotect\searchprotect\bin\spvc32loader.dll" => Value Data not found.
"c:\progra~3\fastan~1\fastan~1.dll" => Value Data not found.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\\{BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} => Value not found.
HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\\{BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} => Value not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{31090377-0740-419E-BEFC-A56E50500D5B}" => Key not found.
"HKCR\CLSID\{31090377-0740-419E-BEFC-A56E50500D5B}" => Key not found.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}" => Key not found.
"HKCR\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}" => Key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}" => Key not found.
"HKCR\Wow6432Node\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}" => Key not found.
"HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{31090377-0740-419E-BEFC-A56E50500D5B}" => Key not found.
"HKCR\CLSID\{31090377-0740-419E-BEFC-A56E50500D5B}" => Key not found.
"HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{8A3E890E-6699-41a8-9881-C9A7602F224D}" => Key not found.
"HKCR\CLSID\{8A3E890E-6699-41a8-9881-C9A7602F224D}" => Key not found.
"HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}" => Key not found.
"HKCR\CLSID\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}" => Key not found.
"HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{E6A9209E-38E4-4B7D-8EEF-4A916EABF55E}" => Key not found.
"HKCR\CLSID\{E6A9209E-38E4-4B7D-8EEF-4A916EABF55E}" => Key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}" => Key not found.
"HKCR\Wow6432Node\CLSID\{0347C33E-8762-4905-BF09-768834316C61}" => Key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} => Value not found.
"HKCR\CLSID\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}" => Key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} => Value not found.
"HKCR\CLSID\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}" => Key not found.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => Value not found.
"HKCR\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F}" => Key not found.
"HKCR\Wow6432Node\PROTOCOLS\Handler\gopher" => Key not found.
"HKCR\Wow6432Node\CLSID\{79eac9e4-baf9-11ce-8c82-00aa004ba90b}" => Key not found.
C:\Users\Crosshair\AppData\Roaming\Mozilla\Firefox\Profiles\s3rvbfvw.default-1362845289504\user.js not found.
"HKLM\SOFTWARE\Policies\Google" => Key not found.
"HKCU\SOFTWARE\Policies\Google" => Key not found.
"C:\ProgramData\TEMP" => ":373E1720" ADS not found.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
EmptyTemp: => Removed 11.4 GB temporary data.


The system needed a reboot.

==== End of Fixlog ====












# AdwCleaner v3.311 - Report created 12/10/2014 at 00:40:37
# Updated 30/09/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Crosshair - FORMULAV
# Running from : C:\Users\Crosshair\Downloads\adwcleaner_3.311.exe
# Option : Clean

***** [ Services ] *****

Service Deleted : {8ce1c375-1e13-43f7-a4fd-6530f47c4fde}Gw64

***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\374311380
Folder Deleted : C:\ProgramData\Ask
Folder Deleted : C:\ProgramData\Fast And Safe
Folder Deleted : C:\ProgramData\Premium
Folder Deleted : C:\ProgramData\Trymedia
Folder Deleted : C:\ProgramData\COuupSccannEr
Folder Deleted : C:\Program Files (x86)\Rock Turner
Folder Deleted : C:\Users\Crosshair\AppData\Local\Ilivid Player
Folder Deleted : C:\Users\Crosshair\AppData\Local\PackageAware
Folder Deleted : C:\Users\Crosshair\AppData\LocalLow\Bandoo
Folder Deleted : C:\Users\Crosshair\AppData\LocalLow\searchquband
Folder Deleted : C:\Users\Crosshair\AppData\Roaming\1H1Q
Folder Deleted : C:\Users\Crosshair\AppData\Roaming\Mozilla\Firefox\Profiles\b6y1hik8.default-1362049682416\Extensions\staged\{fa95f577-07cb-4470-ac90-e843f5f83c52}
Folder Deleted : C:\Users\Crosshair\AppData\Roaming\Mozilla\Firefox\Profiles\s3rvbfvw.default-1362845289504\Extensions\staged\{fa95f577-07cb-4470-ac90-e843f5f83c52}
Folder Deleted : C:\Users\Crosshair\AppData\Roaming\Mozilla\Firefox\Profiles\wqg02ip2.default-1362845268766\Extensions\staged\{fa95f577-07cb-4470-ac90-e843f5f83c52}
File Deleted : C:\END
File Deleted : C:\Users\Public\Desktop\iLivid.lnk
File Deleted : C:\Windows\System32\drivers\{8ce1c375-1e13-43f7-a4fd-6530f47c4fde}Gw64.sys
File Deleted : C:\Users\Crosshair\AppData\Roaming\Mozilla\Firefox\Profiles\b6y1hik8.default-1362049682416\searchplugins\Speedial.xml
File Deleted : C:\Users\Crosshair\AppData\Roaming\Mozilla\Firefox\Profiles\s3rvbfvw.default-1362845289504\searchplugins\Speedial.xml
File Deleted : C:\Users\Crosshair\AppData\Roaming\Mozilla\Firefox\Profiles\wqg02ip2.default-1362845268766\searchplugins\Speedial.xml

***** [ Scheduled Tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKCU\Software\Google\Chrome\Extensions\bakijjialdiiboeaknfpmflphhmljfkd
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\bakijjialdiiboeaknfpmflphhmljfkd
Key Deleted : [x64] HKLM\SOFTWARE\Google\Chrome\Extensions\bakijjialdiiboeaknfpmflphhmljfkd
Key Deleted : HKLM\SOFTWARE\Classes\AppID\secman.DLL
Key Deleted : HKLM\SOFTWARE\Classes\Applications\ilividsetupv1.exe
Key Deleted : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager
Key Deleted : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager.1
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetupV1_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetupV1_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\Searchqu Toolbar uninstall_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\Searchqu Toolbar uninstall_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SearchquMediaBar_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SearchquMediaBar_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\sweetim_rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\sweetim_rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\sweetpacksupdatemanager_rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SweetPacksUpdateManager_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASMANCS
Key Deleted : HKCU\Software\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{5F189DF5-2D05-472B-9091-84D9848AE48B}{64af91bf}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{6087829B-114F-42A1-A72B-B4AEDCEA4E5B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EEE6C367-6118-11DC-9C72-001320C79847}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9CB96984-43C3-4D44-90EF-01466EFCF7BB}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{01222E21-6BD0-4EB3-94F1-967EB09CCED5}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{33DDFC61-F531-4982-8C32-4212B7835D44}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{6087829B-114F-42A1-A72B-B4AEDCEA4E5B}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{A9005ED5-4A1D-4606-A4DF-1A25E7D7B417}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Key Deleted : HKCU\Software\APN PIP
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\InstallCore
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Deleted : HKCU\Software\AppDataLow\Software\searchqutoolbar
Key Deleted : HKLM\SOFTWARE\{1146AC44-2F03-4431-B4FD-889BC837521F}
Key Deleted : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Key Deleted : HKLM\SOFTWARE\{5F189DF5-2D05-472B-9091-84D9848AE48B}
Key Deleted : HKLM\SOFTWARE\{6791A2F3-FC80-475C-A002-C014AF797E9C}
Key Deleted : HKLM\SOFTWARE\{77D46E27-0E41-4478-87A6-AABE6FBCF252}
Key Deleted : HKLM\SOFTWARE\Bandoo
Key Deleted : HKLM\SOFTWARE\PIP
Key Deleted : HKLM\SOFTWARE\Trymedia Systems
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{80E8B0A0-117D-1402-7CDE-688156237115}

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17207


-\\ Mozilla Firefox v32.0.3 (x86 en-GB)

[ File : C:\Users\Crosshair\AppData\Roaming\Mozilla\Firefox\Profiles\b6y1hik8.default-1362049682416\prefs.js ]


[ File : C:\Users\Crosshair\AppData\Roaming\Mozilla\Firefox\Profiles\s3rvbfvw.default-1362845289504\prefs.js ]


[ File : C:\Users\Crosshair\AppData\Roaming\Mozilla\Firefox\Profiles\ucawxkfn.default-1413067707206\prefs.js ]


[ File : C:\Users\Crosshair\AppData\Roaming\Mozilla\Firefox\Profiles\wqg02ip2.default-1362845268766\prefs.js ]


-\\ Google Chrome v35.0.1916.153

[ File : C:\Users\Crosshair\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Deleted [Search Provider] : hxxp://uk.ask.com/web?q={searchTerms}
Deleted [Search Provider] : hxxp://search.conduit.com/Results.aspx?gd=&ctid=CT3318522&octid=EB_ORIGINAL_CTID&ISID=M9CEDC441-6124-4BA6-A24F-37BDCB2086F0&SearchSource=58&CUI=&UM=5&UP=SP47E87057-7354-4193-9AE6-9C82FF79D1C3&q={searchTerms}&SSPV=
Deleted [Extension] : bakijjialdiiboeaknfpmflphhmljfkd

*************************

AdwCleaner[R0].txt - [8569 octets] - [12/10/2014 00:31:47]
AdwCleaner[S0].txt - [8386 octets] - [12/10/2014 00:40:37]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [8446 octets] ##########













~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.3.2 (10.09.2014:1)
OS: Windows 7 Home Premium x64
Ran by Crosshair on 12/10/2014 at 0:50:47.86
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values

Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-21-888456847-2528441040-574326226-1000\Software\Microsoft\Internet Explorer\Main\\Start Page
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL



~~~ Registry Keys



~~~ Files

Successfully deleted: [File] "C:\Windows\wininit.ini"



~~~ Folders

Successfully deleted: [Folder] C:\ProgramData\Coupon Printer
Successfully deleted: [Folder] C:\ProgramData\InstallConverter bundle uninstaller
Successfully deleted: [Folder] "C:\Program Files (x86)\myfree codec"
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{02382D00-7CCF-4260-9AAC-589C47607177}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{0297C552-3C0E-4989-96F0-9F54D19E4E7F}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{033766D8-32EA-4ACE-80D9-1C57815F1A3A}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{037DA7C9-8C5D-49C9-AB11-1ADECEAD3FE5}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{03887686-076D-473E-9A7E-80599C855FC1}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{0404CD71-6CFD-4C6D-A90D-7C53BF935C43}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{040AC766-D2DE-4A9C-B8DF-925390DCF885}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{04CE3F13-96E8-4F13-B85D-31BC4EEB13E0}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{05829F85-4714-4D13-942F-EE00F1A8FB57}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{05E9D26B-51F8-4B56-8EA7-5C9DF44848FA}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{05FDB9EB-963A-49D0-8286-926BBE9FEAFA}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{06537ADF-B55F-4C6E-A120-38B06397E130}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{06DC5E08-1B30-46D4-8A4B-AD4156DBD73C}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{07A71FD3-F876-41EE-80D5-BD5C18EF752A}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{083AB5BD-7F11-4BAA-AB05-A9A5039761B4}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{0899C47A-7934-4532-9B16-3F857FFFCF92}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{08A27EA4-AF0D-4AF6-941E-C4C59BDC4A48}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{08A696C8-584D-4614-BBB5-F495336A9EED}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{08DBCE74-D954-44C9-A0DD-B6CC87E754BB}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{08E3843C-635E-4A2B-B0D8-994E65BEFC45}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{091606EC-B57C-46A0-A7BF-1DFFD863B836}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{095D37CB-A175-4AED-84BB-A6FE2F30FD52}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{0A27312B-6495-4E42-91F0-A15D74C343C4}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{0B7A1C3C-8726-407A-8F6E-55EACAB0E680}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{0C3DA7D2-D105-420B-B54F-B992251423F6}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{0C5A9BBB-5D44-44AB-B0F2-F9BAA03DDB45}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{0C9EC86B-65A7-455B-8F10-629A9BA421E9}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{0CFBBA4E-F300-45C5-A74F-2130F13F7907}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{0D8FBA7E-5853-4335-9AF5-50CEFA36A832}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{0DBF1BC8-A2C2-482C-A995-D245A92CF4BD}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{0DC4B879-47DE-4732-A41F-6EA6AA9A7D10}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{0DD23473-51F3-4EC2-8226-8BC06E770035}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{0DF16E42-2FB6-4D2F-B313-9D2EFC90A23E}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{0E2CF329-A8E2-4011-AC5C-5C29E075649C}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{0E623231-3A42-4695-9848-509B7D026667}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{0E63E607-602B-4E99-9310-71ED79D6452F}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{0E8B24AE-881C-4999-B787-EAEC9BB10BC4}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{0E8EBDE1-A7B0-45E3-B787-B240B35E70BE}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{0EA0918C-4FC9-47A4-A299-B714FC3AC7A0}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{0EB132ED-0962-4A1F-845F-5D3D96C807F5}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{0F28706D-89E7-4E78-80E3-29DA44DE903D}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{0F9CF8B7-9179-4F33-B5E3-FF78E7303F22}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{101F43ED-CF01-431F-9700-46C702D93C1C}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{1020C457-1A99-431C-8B91-CFEFF3BE8DD8}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{102EB459-74CB-411D-95BE-ED55EBE3AC8E}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{103D5557-938E-4608-817E-F8C650F1367D}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{10418EC4-759C-4475-83B1-636406C6D23C}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{10FF6156-7D10-4A5E-832E-E946B1D4051F}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{1157D927-6C37-42B9-95CF-6DEE6631AF8D}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{118712C5-2801-4302-99C3-BFCAEB903FA2}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{1286BDC1-2D64-4131-888D-8DD4F7B2331E}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{1336780D-338A-4234-B380-9688F27F855E}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{1378BFE9-CCB5-4A28-95C5-AFE7B5266755}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{1385FFBF-E9D2-4E91-BE66-C5CEB4B475EC}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{13B0BEE6-1AB6-43D4-BB27-3A21FDFF11FA}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{14B4F220-419E-4E41-8565-7840CEFAFB48}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{154D7114-7591-420F-A652-640667A01F19}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{155972DD-D408-4B6D-8B44-96012F63BEE9}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{156A5B80-BB1A-4985-99FC-F22BCC71D8D2}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{16369150-5E51-4FCF-A81D-3147BB19EED7}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{16399BF3-F542-46EB-B1A4-98B9EDAB085B}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{16468E4B-42AE-40E1-9440-EF0539300FF4}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{1690FDFD-DAC1-4049-B69F-7E92A4F9A15D}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{16A4401C-18AF-4CA4-B715-D6F09FF8E490}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{16BC6FB0-1F98-4A83-9044-1810832FAC3E}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{16E55AD6-92E1-4770-9030-71B813DDF254}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{16FD0049-F086-4DA6-A610-2343DA2B9282}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{17163146-25BC-4564-876E-F4EF58E03063}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{177CA1C3-3B8B-4213-BFBD-FF2FA781AA47}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{178AF122-8712-455F-A9E5-EAEA04C1AB3D}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{1866D9BE-06FC-4A75-8C24-EA2238E2B591}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{186CC7BF-77DD-49C6-A566-12783815DAD8}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{18751E3D-C1B5-4FD4-88C1-CBD41D1E74A2}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{1883836C-4B6C-4010-AA44-F6A3809F1CA6}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{18CDB722-E1F2-455F-96D7-C589ECAC81B9}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{19250374-C409-47DF-AC1D-CEE0A75B1D87}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{19299175-491A-4A7F-9840-EEB26D2239ED}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{1976B005-ED03-449C-9405-D63024258010}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{19772229-37A7-48E8-9B1E-997BFFEDF277}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{19935687-BB1D-4E42-B7EF-F27A6F63C3E7}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{1A024BB7-6970-4652-9C23-1C25288CFADA}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{1A23F9B8-C8FC-47D2-884C-295C01F8E278}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{1A274FB9-4FC7-44CD-AD74-32E79526B737}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{1A70C966-867E-41DA-8047-CF039EFC7F9A}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{1AD604F0-F608-48E1-8F2C-F37A28292F2F}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{1ADC6C46-AACA-4555-92D8-D63CD1FDE96D}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{1C354836-45B9-469D-BD67-0C25ABBFE2C5}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{1C968067-3AE8-44F0-A518-93800FFE6709}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{1D4C1DC4-6824-4315-93EF-EBCDC72FE3B2}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{1E178EDE-FB7F-4A93-A69F-FF1021BF643E}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{1E2FA6DB-DAD8-46D7-8EB9-57D14D7A2E97}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{1FFB21C9-7E3C-4500-A04B-0563E29EA662}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{201617B3-0DDE-47D6-8441-89C6A492C45B}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{20EA743B-3664-405B-9841-087B49CB500D}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{219237C0-8EFE-4291-8BE5-13AF603B001F}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{21CD9DFE-BF7A-426E-84B7-31BE60DEE73C}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{224C6036-8655-4C3D-AA4A-EDA2743BDF7A}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{226E804E-37CA-43AE-BA47-1D37502EE622}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{232ADBE3-6650-4FE6-A6C1-894EB6873B7A}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{2376765D-0A74-4FDE-A48B-824959E61E37}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{23A8E5D6-B9C0-4201-9779-3054A737D9FF}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{23E9903D-7C57-4005-AF54-F2DE491897B6}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{241924A6-F2F9-449A-8455-A3A37C21D923}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{246647D7-0E6A-42E0-9B32-129D7FCEE74A}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{247C8038-6EC6-4BAD-B449-36D513961433}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{258F2431-C139-44A0-A584-22C8A7186A3A}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{25D8FB31-B9D3-4F29-9296-3D0289C89D19}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{25F72CA7-94A2-4EF0-81A8-BAB265A5496E}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{2732F70B-98BF-421A-8758-FF7F04524B21}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{27B29995-3863-401C-A585-A0FF4F0323E5}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{28245DFE-52EF-483F-B1A3-376831AC8842}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{2832AA61-40F6-42F6-A471-05EAB0B79761}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{288604DE-7371-4D2C-B8AD-42FF65425EFE}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{29543127-7EBA-4B12-9EB1-81E52621F8EB}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{296A886A-2785-4316-ACFA-38A5C5332A9E}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{2ABC7C47-5C6E-43B0-BC7F-43B74DADF140}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{2B452EE1-DBA7-4C5E-A0BA-78BC3BE93765}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{2C464E1F-B8A6-4A0F-9480-3EBCBC22E802}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{2C970C7C-08A6-4FC3-8F9B-368E9A0B4907}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{2CE1404F-5665-4518-B5A6-39CA9A4D2574}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{2D73C5C3-B022-4A77-874D-EAEB5D6298EF}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{2D91FCA6-F9A7-4342-9EE8-9E3F923FFD9E}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{2DB6E5DB-072E-49C0-AA6B-E88205B1C0A6}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{2DC9155E-8C47-4093-B918-3F30749DEB2C}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{2EA46154-60CD-494D-82D6-003E16535A20}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{2EBA1576-8921-45B3-96D6-D7E78FE4F499}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{300F82C3-E0F7-4C0C-8C7B-429FFFEBF8CF}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{306FEC56-0A8A-426E-89C6-1072510F5DB9}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{308D0FDD-68E2-4160-8CEA-BD3CEB991CB6}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{3127FC1C-486D-4247-9CC7-F9C6EAFE66BE}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{315CC436-DE37-41C3-BB35-8FF26EA7CBC3}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{317199BC-F1EB-470A-9D3B-92C372F73CC4}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{31E048F8-103A-4B4D-9BA7-3827B6B8CEAC}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{32187AA7-165B-4554-9B27-5CF837D1FAF1}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{32428347-95FF-4495-8CBC-773F03CE5872}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{32F781EA-FFF3-4603-849F-7B87284EB5CD}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{33306A36-D23F-4EF5-B411-8F0F7319E8DF}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{33456C26-4C6F-497C-8C3E-B5391FA065EF}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{34207980-6EA2-4221-8F42-47152FE4AB9B}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{34899459-EDAF-49AF-8B4B-7AEDD58D37E2}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{34F73B99-BFBA-479E-80F1-AC2BBAAE7AC2}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{355CB4FF-2AFE-4E9C-A525-89E4C8A46018}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{35D33889-2154-447E-8EB4-B9DDF443DE7E}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{35EEB30B-2994-4035-9CE0-89C4A967985C}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{364A75B9-7512-4518-822C-4B458BFABA4F}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{36B0C418-5B3B-4B5D-83A0-C3729FF363E2}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{36BA30EB-31D9-4796-A9B6-B6AE3ADBE947}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{373DE6D9-13B3-4E6B-90E8-3454569EE861}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{375C8CDF-B8F7-447A-993C-0B4931705013}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{3944E24E-A573-4F62-ACAA-16D2CE2DD529}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{396312FF-D78F-489F-830E-FC96C842908E}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{39927F79-5F8A-49E2-A8F4-88DB1F10DA31}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{39EB54E6-565A-477C-AE8A-0CBE6752F2BD}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{3A49BBFE-CDF7-44E7-82CF-0D5F437B08DF}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{3A6BFB76-4C10-4D5D-AE4A-99E50F602260}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{3AAA2DC6-C07E-42DD-8F3D-10F8ABF8AB96}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{3B1ACB65-A61E-436D-A624-C4EC80F9392A}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{3BE8280E-5033-4B61-B303-832C3E1BF1F0}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{3C4B156B-0B8F-4C0F-B1D8-B67B5678A1DA}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{3D0338E0-1C95-4285-AE06-46CD05871A5D}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{3D97F733-C3B8-4719-B58E-565CCD88206A}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{3E14B661-D032-427C-BF63-B4B071417F17}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{3E1F43DC-5856-4E8D-9F89-9742959F88A4}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{3E7ADFE9-56E2-437B-B249-CA069D682AD2}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{3E8EEEFA-C52C-4732-894C-318CCC841180}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{402AACD0-C65F-487D-A323-11A12EF8D325}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{402D35E6-8363-427F-A311-BCF6E2712934}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{40D5E30A-8A2C-4244-92BA-3F81214855D4}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{423A80DE-9511-45C8-8892-3D8D9EC9781F}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{4296D16A-AC2A-4237-9438-B89F4BDDC4AE}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{433C72AA-BDAF-44EB-B8A1-414630E52870}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{43CEB779-BAC3-464D-A319-6B0E63688E0B}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{43D5D4DC-3FC5-49CB-9A30-FEC980815A10}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{44021FEA-7143-4485-9B71-D0F6BEC95674}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{44A79F7C-A050-4475-BF52-A9F8947CEFD1}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{452D7A61-621D-4972-AA26-C40A7678EB7C}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{4581B753-A247-45DA-A781-F50F0CB13D7D}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{45E04B47-EEDC-4FB5-BAB6-20C5957DA7AC}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{47A192DD-D1DD-4D27-8C4F-9299E9DFC8A5}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{47E0B888-64B1-4F0F-985E-6C74494C585C}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{48C07B0F-2BF8-4E91-9A00-6BAB13DD80CC}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{48CC1C34-342B-44F0-BEE2-B6BB38FE9427}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{48FF6386-8BF9-4C30-B0FB-48A0841495D3}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{49AF2B2A-C0FB-4998-A998-0C32BC8CC79C}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{49E08B03-A9C0-4298-86CA-CCA798BB973E}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{49E186D0-FD00-4CA8-AF3E-8BEA342B9076}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{49FF13C2-D17E-48E6-AED8-F66E5B5DE7DC}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{4B433E68-6C6A-4F89-AC79-24B10E07BA1D}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{4B7433C4-D161-4837-B751-51DFB039BBA0}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{4BDC4666-1EF9-457E-BD9C-3160D18A33BF}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{4BE85122-BD16-4310-88CA-CA4B93D27497}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{4BEC6985-309D-40E8-A569-75ADD5AD748F}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{4C45CB7C-C4BE-4FD5-A4A2-9932861A817C}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{4C8FAE80-B25C-447B-9CBF-8A7671C0FA2D}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{4CF17DE0-6D90-449B-8381-4D71993CB2B2}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{4D09D6E4-C9CC-4461-B348-7CF0E167BF22}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{4DB2F2A2-C401-4C67-823E-A4DE2C97C930}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{4DBD39AF-A131-4C97-8D6B-24798DBDC321}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{4DCC720A-31AE-4AE6-8F24-17DF9F85CD51}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{4E76FCB6-3FE1-42CD-9FB9-9681F00C7742}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{4F2C8FCB-C2DF-4E31-9721-3AC49F90AB5D}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{4F89068F-6089-4F1D-A773-72B1D3716F82}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{4F912313-B75C-49FA-AB68-F8A39BEB1E54}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{50634710-8128-4341-AE99-87FE5EECE6A5}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{50B77596-908E-4F0D-92CC-FF9B3E9EB2A8}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{513EC713-FB2E-4F93-83DB-8493EC985C2A}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{51E7A252-37CB-4026-BCA4-A6D8DA0682CB}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{529C36B0-A933-48F0-8A36-F1A99B5E7FE2}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{52CD9DA1-8EE4-4C4B-A6E1-BC2070254BD1}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{52E251B6-7266-4207-93B7-2E6763C48248}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{535418C3-FBC8-4A47-B1F8-9AAA5AC826C2}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{544DB8A3-7655-42DD-963E-B5EC954972D0}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{545BA083-2A0F-4037-BBB4-83279A654C91}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{551C8BD8-243B-4620-9211-6B9F0C015A3A}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{55D82D19-9423-4A66-B587-F9AA555AA13E}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{5620FC06-FB91-4D24-AD89-826C16466FCB}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{56B572DA-09A7-4C15-B88F-6C4F450FABD0}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{573DD3C2-D677-49C0-A94D-893BED41C856}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{5746D36A-34F7-4708-97CD-011DDDAC9540}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{5790A2B4-AE61-4501-8823-78955355D072}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{57C735CC-615D-4F01-A47C-3D9F9D224C56}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{5952C7A0-4309-45E4-9860-76B5F8557D3E}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{5989C3BB-8A7D-46F6-806A-EEA73381C51F}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{59D5B17A-ABC5-4AFA-B75A-62E2A1E50851}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{5B590050-F857-4D74-B182-AC84C3813633}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{5BC616D0-2066-4E98-86B0-04D946304A08}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{5CB0A94E-ADF1-4A3D-9BBA-216E84169ECE}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{5CCAB238-9030-48E3-BDBD-4EF2AA0A686B}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{5CE8A5A0-769F-4679-9987-14D3AEE77B5D}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{5EB49685-569B-44EA-B676-16527379CF3E}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{5F73FAD3-2C5F-467C-913E-CE031A11A204}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{5F849402-EC04-41E4-A6C2-0B7F0EC78162}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{5FBBD997-860F-47DB-8744-781AF9040883}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{60173234-821E-49B7-814F-0FBD743CE1E6}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{614833CB-74F1-4088-9767-4F8DB1D6CA60}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{6160632E-4121-4272-BEC4-A0D5DC881F9A}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{6209BADA-FA76-4104-9AB0-B004BD29D346}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{633EC427-C3DF-4101-8BC4-A001C8C4F268}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{638B8FC4-99F0-42DB-AA77-01C4E5AFD4E1}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{64595AAC-6457-4CBC-A0FA-3A8B3AEA1A3F}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{6486466B-35D3-405B-92B0-8A9A0C23BBA5}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{64DFE586-CAF4-43BB-819D-8079F6387608}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{65E4E170-A180-4D3F-89D5-E48D1613CA3C}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{66519A9B-B883-4624-B8CB-E0AC4F091ED5}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{6695AD9C-BB2B-4D17-8EAF-A6E809A0F7DC}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{66CEFF8A-810B-4B6B-AB0C-EA92D5BB78B2}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{67442B9E-AEDA-474F-854D-4BC22CB930B5}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{6783598C-65E9-47FB-BC41-92BA142AFEAA}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{67C00D1D-01C4-4498-A335-49E163CD9122}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{67D3A907-16CA-4DD2-A68A-098D391CA9A8}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{67E5DBF2-EB77-4C99-B6D0-FF151327E1DE}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{687667AB-2F7E-4E7F-BD23-DCFCCE6BB2F8}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{688CC3C8-D528-4EAE-9A11-2E7D2D3F903C}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{69518CA6-E7A1-4504-A339-E9427C0A1AF4}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{6957B239-A211-4BDC-9D6C-20445A76A06D}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{696E09F5-354C-4C44-B84D-A8B74B407969}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{69C2EF94-80A6-43BB-A223-1AA6D06AAD54}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{6A3C3759-9010-43F7-9534-8AB79EE4A5E8}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{6AA5CBD1-B99D-464B-A992-F795E9A8A931}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{6AADC732-E528-48E8-B3B7-6F13108EDB62}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{6BE0F858-16EC-40F1-9076-82373BE242B1}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{6CDCF59B-15BE-4400-A1E4-9D3C13481695}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{6CE110B5-424B-443E-8D70-3EAC2949F835}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{6DC8A39B-E747-4875-8EF0-7E9F190292A3}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{6E447E45-DF83-482C-AE60-8B1EE8C0B77E}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{6E6833C0-1739-4C69-8BC7-1F4F898B6778}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{6EF1F09A-59D3-4B13-98F3-B74767D19146}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{6FD08909-6F47-441D-B4B1-C298CA81DB3E}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{7001DDAB-02B8-42FF-AC2D-86C56547B1C9}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{712F8E8C-89BE-4067-9FD3-D4E29652FE35}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{7144DBF4-01D8-47E9-B743-B25ADB8D5C8B}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{716FCE86-5C71-4092-84EF-BF500D0EF6AD}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{7210E4C4-53C4-437C-BD07-2E35C5B4A06E}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{72EAA7B0-CD72-4DCD-8009-8BCF020DBACB}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{7364705B-E1B2-4C73-8B8F-B9FD47390AAC}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{741CD00E-1765-4B87-A510-62F0F340A3F1}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{74360D5E-D570-4CF8-BC3B-0929D54AD8D3}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{74651772-1846-44FE-A649-6E1DC6620911}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{75126B15-7C2F-4C2C-A338-BEBC091577DA}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{75416652-655C-45D5-A24B-3638465106FE}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{755EBE7E-C3DC-4026-B8E2-3691CC9FD2E1}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{75768FA3-E23F-4ED4-A3C0-9A3C44567102}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{7586E4A9-F75B-4163-BD59-06421424F153}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{75B086F3-1C27-4964-8B26-401B5903D3B5}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{75B6DD43-E762-419A-A27E-262B5722A279}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{761C239F-56B3-4C85-8DF7-59C1941C82B7}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{76A01698-C009-4635-A882-8CF51F12229D}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{76E18D74-E297-40C2-AD8D-1B147C389A61}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{77360731-D0A9-41E7-BD6A-3386DFB17D6A}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{7757C004-CC85-46CE-80DC-80D197DF7188}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{776A7E94-72F6-4E87-BBA8-52A057A461A4}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{779447D4-B192-42AB-BFFA-4F7F4005B27C}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{780A27E7-DEB6-497C-B9B9-19870D66C247}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{7841826F-4B47-4D7F-8094-22B7562F5A5A}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{78A9B42E-43D4-4168-A92A-326180D8F5B2}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{78E1B702-6517-422F-B7E5-ACC9BC8F4F38}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{78F63793-B2AB-44E6-B52E-BB102FCC618A}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{78F74628-613B-4150-8607-AE12828F8468}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{790E520E-2AE5-48A2-BCC1-EC400EBEF656}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{793BD0C4-0BEA-4B9E-AF6C-52F319D6C7AF}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{7949355F-2712-40B1-A9CE-3DD28E06A5D0}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{7998C5FB-0982-45CD-AE42-D0BE99557756}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{79E3E7FE-0976-44A9-8A26-730116D9458B}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{7A4C9D39-A13F-4174-B537-BBDAA6E49844}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{7AB6BF11-FEE1-4B47-82D7-5CA0DF55D58C}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{7ACA21BA-5FDD-47FF-87F8-05D165763019}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{7B4D7F71-BDCC-4099-94F1-BFABDDE2C5B4}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{7BFA01DA-4DDA-455C-AB14-60F381A56977}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{7C27FF7C-E016-474B-B3F5-259197748431}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{7C6990F1-87CE-4883-901D-1E2042974CBD}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{7DBD4C9F-76FC-4B72-ADEE-4CB2576B547A}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{7E2E1411-5E07-4E5A-80B8-9BA07F7EDC4F}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{7EA37912-670B-495B-A70F-FEEFD66FBC70}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{7F3C3930-EB0A-4801-A336-BDBFC5922D7C}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{7F9CEEDE-1C2F-45F1-A351-AFF55262C222}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{7FB60229-1A9D-4CFC-9265-1B1CD43ABE76}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{7FCF7878-405B-4A7D-91AB-A4A092B95549}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{80CA834A-1273-4D35-BA95-D6974B1F8136}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{823DD8AB-C846-4EB3-86C3-1F1E1F58723E}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{82F410E0-1122-4345-AAEC-985A92ED6369}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{83FA19EF-3289-4D91-BF18-692BA151BE8C}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{8423994A-21C2-45D8-810F-686C99BB514B}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{843C1F9A-9BDC-4A5D-866A-0C0AD6468FCD}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{8543539F-47D4-4CDE-AFF3-C6A64B21144C}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{861F3C5B-66FF-4AAA-B25F-638F73C8A0B5}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{8638E86B-7B9C-438D-8C6D-568CD202191C}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{863D78E3-4723-42E5-8362-F2A096787945}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{86F85701-BDAA-42A6-A30F-50C196B67DB3}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{871C8E3A-BB04-4D34-98E6-28C21B3F9123}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{87AD8D8A-ED57-4FF9-ADA4-5759B6B74017}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{87C46823-6369-4DB7-AE5B-F3E49EFD2A12}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{87E5F8A1-D293-4D72-A490-94081718C9E4}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{885B92A8-80AB-41D4-B234-E87048BE45DF}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{88AF55B9-902D-4D33-AC55-3A89DBC4E574}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{89BCA55F-91FC-441C-A438-1F4BE1776F62}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{89DC2FA2-6E25-4532-BA0E-A02B295E6ED5}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{8AAB19E9-F3B0-4AB2-BB38-78C737575FC8}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{8AC5AC4C-DB5E-40D3-B7FF-41300C6C2188}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{8AFA29BC-53C2-403D-9218-C540392F961A}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{8CDFE323-FA4A-4F4A-8B41-8F776060940D}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{8E0DB593-2E8D-4BA8-8E21-FDD6D4204B5E}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{8F87623B-AE15-4D72-BD7F-CBEA05B79BC4}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{8FE472DE-2EC7-4F83-8093-B8F62E26AEAD}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{907C734C-528D-4E81-8275-902CDC77E125}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{9350BEEB-4749-4ABD-9643-977850D0FC04}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{93DB655D-B714-405C-96C2-BA16572B43D3}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{9420789A-E834-4192-A9F9-398ADD4B06BF}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{94322F7C-AB80-412B-805A-956EE688A069}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{94E7D956-21AE-495B-BAFA-E8CC4B9890CB}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{95095EE8-A37A-4BE5-820D-2DA6C2E64185}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{96182949-162A-46E6-808A-378B4318C4FE}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{9673EBF2-4F86-40C5-91C7-C6FF8B24C3A5}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{968742E8-5830-44E8-856B-E847EC1A41AA}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{96B04D43-891D-434C-B58B-3B35B6F396FD}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{96D87973-9EA6-4FE6-BB00-3CAD4202A21A}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{9758974D-FEBB-4D57-89CA-39C0ECFCBCF1}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{97A55138-2639-49CF-8F9E-00C808DEC455}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{97AC26B6-B2D5-4ECC-BB36-67D701A8344D}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{988255CE-F58B-45B7-A7D6-69DE497C76CD}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{9909AD74-44F2-4F96-BD25-505EDD209815}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{9994E001-D25D-485A-8FA5-669701747606}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{99E3AA8A-803E-4286-82DF-4ED66B60955F}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{99F2DFCB-3D70-4F51-869E-A17AF2E1763D}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{9A5F2901-208C-48D9-942F-1594BCD8862D}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{9A971330-7510-4E00-986D-679D7A662816}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{9B531DC4-6BDA-4A7E-A026-49F06430768E}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{9BD18B07-D30A-4159-BBC4-365F6FB07945}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{9CB62BA6-A056-4B00-B4B1-86FD6A6EC341}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{9CBADB93-10D9-4E5A-B429-D0B3CEA638B0}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{9D56F427-A05F-487D-AD66-57AF19E9BE87}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{9D80377F-657A-46F8-8C60-5CD0ACC7C80B}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{9EA4DA3C-405C-4D7C-B48F-91B28AEDE27B}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{9F43AEE2-BD78-4300-B790-2435F4B2503E}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{9F78F959-072F-4237-BFEB-0267C5D7E30D}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{9F8B3B1E-DBBF-4356-8F9A-B5FEC02D7916}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{A0224368-EF7A-438C-B8E5-CCFA5DDE0CD0}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{A0D01287-9FA4-435A-A783-4D4CC12F1010}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{A3388710-5F12-46B2-9568-3344D277EECA}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{A393A711-6E12-47BE-9829-9EE5C6AEC965}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{A4C41B0D-BED6-4D98-B890-5F3EE03FBF28}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{A4F6C2E0-F591-482A-BCD8-3C8D0BEC2579}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{A52358AA-741C-41F7-BAA7-5F42B380274C}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{A5915B23-C483-456E-BAF0-298D4A1DB56D}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{A594ED02-BFDE-4527-80D3-6FDB73ADE37D}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{A5FA74F4-43D1-4271-99DF-94985FF8D916}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{A64368FD-EF55-410F-8DFE-5DFF69580CAA}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{A754458C-A739-4C64-A1FA-A6805DDAC67F}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{A76DA097-93F0-4A57-8CC5-E79F213CC548}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{A7EB83E8-DF28-4D6C-BD28-77AE4496DB0E}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{A7FBEEC9-49CE-43E0-BE98-C4720DB61CC9}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{A863A7F5-EE5B-4AE2-BCBB-A38D83C900D3}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{A8AD25CB-D5AC-4811-ACA8-680FD62D5CF2}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{A8D44173-396D-4605-94C6-E7EDCC98166C}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{A9BA8131-4794-497A-A6A8-5A3A821DA49F}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{A9DFE057-631E-482F-B0A8-987168C07C6C}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{AA13F919-B97D-4586-8600-B78E8ED3EC41}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{AA2E5850-B883-435A-899E-147E7B09C5AF}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{AA38428F-A638-48EF-8879-FA063AF695DF}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{AA5F0DD0-D3E3-47D8-8D49-C16C821CF82D}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{AA798669-256B-4829-897B-36DD1EBC0305}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{ABB80372-5CBD-4654-9344-4862F7B3F7DC}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{ABED51B9-1C98-4469-9FFF-8F4A0C63D34C}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{AC043259-AE3D-4F41-B4B8-0E8CBC5E869B}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{AC36C7C5-A14A-44B7-A305-A6C2C7D3433C}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{AC3FF3E9-CA4A-4221-8838-C4829405C905}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{AC67CB0C-3893-401D-81EA-FD43A9787A58}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{ACBE6DBE-1E9A-42CE-AD15-B0754C443CAC}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{ACE1D7CD-EC6C-47B4-AA57-A234786651A6}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{AE3136F9-EBAD-449E-9828-CBC8BE7FBB09}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{AE920377-D735-462D-BE9B-0854E5426BDE}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{AEE8DEE3-DB16-45C1-A311-F73CF575C763}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{AF1EA2CD-2BD5-4E2D-AFA9-3FD707A09A29}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{AFAE86B0-691F-4DF8-A0A3-0633630DC1EC}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{B06DAEC4-158C-4755-9FA1-513B7C820E99}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{B0D1D7E2-0480-459F-8FCF-84466C0417BA}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{B1F36A3E-9C9C-4580-A819-371DB3A15AA0}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{B24334BE-D9A3-47FD-9C55-52FB9F79AD33}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{B3005DF0-CDB9-4550-8FAA-AB84C3137EDD}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{B3926D5B-5AA9-40BE-837D-98A9116314E5}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{B3EE3A9A-AD64-45BF-8C5D-ED0336ABC948}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{B48312B3-1B6F-4FD7-8EA5-D5C8014566C9}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{B4BDCBAE-4820-4B0E-8484-E6E984119676}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{B509D03B-AB6B-42A0-80CF-571B0224AB22}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{B51EA949-054A-41A0-8FD6-8C13D8C468CD}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{B52CA5C2-D102-4D7A-8C4E-221C056F0D02}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{B545BE88-AB7E-4EC9-8094-10DABDE0A6B4}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{B5E698A0-DDEB-4BBB-9176-A49935EC7873}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{B6288CBB-41BB-4CC5-BD5E-162604FF98CD}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{B68BDB26-4B14-4B01-9D89-23D4579DC2E9}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{B6B11F54-0000-4D4D-A219-DD201017B22F}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{B6B6037B-E9DC-4F77-98BB-EBC42590FD3C}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{B6FE42FB-1B74-4413-A135-96994A24E7C0}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{B7AE2756-5636-4840-BDF3-82B9A1603428}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{B80E4C79-2684-4266-B391-17E714BF229D}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{B81FC3F3-1210-468E-B6FF-9FC71EBCC86A}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{B8447FC3-963E-474C-91F2-E91199365724}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{B8C1C68D-059B-4ECB-AE2C-E064CB6807E3}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{B8E406A2-5CEF-4771-93FD-3F850B6FF153}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{B938BC63-DE50-467D-A100-7F58CDBC0772}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{B9D7787E-F556-423B-80A0-A61C8242F417}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{BB61AD79-4D88-454C-BA56-43305EDFFE01}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{BB8313E3-9AF0-4AE2-ADD1-49709840622B}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{BBE053DB-48E9-41E5-A3B0-F4781B331C77}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{BC52C9B2-CBE1-4429-8CAD-75E02550345E}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{BC67F5FC-9D64-4DDA-93A6-950CA261EC35}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{BCB4C17A-D906-46DD-B0DA-71D55A50017B}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{BD2F9409-E525-4625-9CE4-0B0376C54BD9}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{BD9E53FC-ACD2-4E10-A3E9-5F0469C7346C}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{BDC1DCD4-3AF1-488C-B397-DAAC42D5088B}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{BECEF3C5-2214-4336-8B28-468E486C7894}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{BEE56C14-3DC7-41DD-AF64-51659D78F96B}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{C03C89DC-2541-4492-9DF3-58DDC0EEF657}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{C0768470-4A74-46F3-A99A-AACF86399164}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{C0836EB4-3889-4351-89F2-7D5BFBF0121C}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{C10CCF76-94D7-4E25-98D5-9B3E31FA0CFD}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{C10E4110-4E00-4CAD-9638-D388FE329D70}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{C14A524E-5AB5-479C-B94C-878EE6816BB7}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{C162234A-0F86-4C19-A84B-C2E4B2D46439}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{C1C33B8C-F7D4-43C4-AC2A-1B547D623029}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{C1F702FD-8886-415C-B725-83B75C13D95F}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{C24ADB81-DC25-4E8C-9773-BF3EC3DEE1C3}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{C263C55F-51C7-4560-BFA3-F4910C9724E7}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{C270F113-3C49-4C03-AC0A-DFC26B67835E}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{C29925D1-58D6-4613-865F-CE8B0E86561F}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{C39DB8AC-656F-4B63-BD76-8662550785EF}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{C40EF036-DAAB-4E4A-BE52-A060C4069DC2}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{C46D3B8F-4975-42F7-9098-212B9F50F07D}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{C52A089C-C0F0-4953-9A76-444F30C3A6B2}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{C54C17C6-38FF-4270-B8F4-D779D26BC6FE}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{C58EAA3F-29D7-47A4-99C0-FE416AA787EF}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{C5C7A039-084C-4220-B9E2-32953B7C742B}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{C60DB95B-A966-4B2B-9D89-9EF1B41541F3}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{C6C64126-3C81-4661-B29B-2D6A60571CDB}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{C736AE18-0D0F-4C26-A387-1D82E8004B07}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{C78DE31C-E61C-48FA-A15B-638F09D44202}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{C8508247-ECF8-42A0-AE9D-FB032C53D38D}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{C87B72E6-5815-48F0-B05B-A35C0146B0EA}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{C9442888-42B1-47DD-B976-BD4E5E35ED90}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{C9B5FB99-39C9-4A5A-99E9-E07D4ACC1146}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{CA6507CB-E207-4CD6-96FD-DA0260A0E052}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{CAEB2D5D-90BC-481B-BEF6-77A9F541DAC8}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{CB0BCBF9-76E8-450A-A0F5-E6A1DD6E9EFE}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{CB3D8A39-7A30-4C7F-BFCA-E8C386AE090C}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{CBAE4D44-0F6D-4D49-B1FF-F72C4F906EFC}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{CC93D155-8A9E-4A87-91B9-847D02DD59CB}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{CD36D014-953A-4B90-B9E1-CCBB831ACE94}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{CD78A197-2352-4CAA-8EE0-74F597E71090}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{CDB1E519-85D9-4BA3-A7E4-3B6E43A502F0}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{CEC6C34B-3083-43B9-906E-00284B09A4B0}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{CF20AD39-9332-41CA-A561-768CFFF73C6A}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{CF6AAE1C-2397-4CA2-B64B-B05C94CCA4BC}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{CFDC487C-F4BB-4DC4-B400-5BAB26663597}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{CFF1B855-C4F6-4F7F-8B40-72D2C797DF54}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{D0C27ADC-4705-419F-8315-AEE6BA136BD7}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{D12526DC-B444-4D58-BE4C-107A70649446}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{D1BDCE71-A830-469C-8C4F-2770EEA2ED97}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{D256502A-0AFC-4F18-B96B-040F08914906}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{D283115C-BE46-47AA-A80D-C3D5796731A1}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{D2C5AFEA-9C2B-48A5-8A10-3F1E9C5A5A19}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{D2E54D4E-0B38-4ACC-A418-3AF8F16C7BFC}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{D35D6597-62CD-4167-82B4-5024FB6F9446}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{D3ABF2F7-FBD7-45BB-BC43-6BDF063751BF}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{D3B2E0E6-CD81-488E-9558-EAE35F91A094}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{D3D0DF5A-CD7C-4ADB-AA45-FB181F57C0B2}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{D3DA93C0-9337-4851-AE1F-F1B133275EF6}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{D40C1EBF-F6A0-45BA-B506-7CEB2D207390}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{D40DF225-49BD-4BB0-82F7-1D2D9851C5F4}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{D42A6CC3-2507-440C-A910-05F2900A815C}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{D4BEC4CB-50D5-4CFD-B23A-C004842D6A45}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{D52C25BA-9A3C-4ABC-88A3-5942FB36305B}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{D54423F0-ADCB-4D91-8530-066C4904ABE1}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{D5A7A068-AB5C-4408-9B83-CB01EE4C0AAE}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{D5E1AF68-81EC-4F8E-A69A-83728400A3AC}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{D6156F5D-2CC8-4ECF-A01F-35132ACD9211}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{D6BB409F-9DAF-4970-9A84-A35698369411}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{D7019638-3DF5-4CB2-83C4-FF65250A7B15}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{D7199EC2-6FAE-4FBE-AEC3-2093CBD12B5D}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{D7278A97-F204-4552-8723-A737FFCFF157}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{D72AA701-8ABA-4E2E-9C10-63E56EC1F9C3}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{D72DEB6A-FD3F-4502-9F6B-8E8E16D679D8}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{D74BEABB-136C-4EEF-BAAD-52EE8CA5375A}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{D75405D3-A677-4031-8F5D-C30726C28446}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{D778C4B1-D57B-4EBB-8AA1-B3B73ECD37AF}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{D7E7DB21-FB0A-488E-A921-0E659AF13067}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{D833EF9F-C8F0-4A52-93A8-4143CAC18D61}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{D8453CD6-5EB5-4627-87BC-4C8DFED477A2}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{D84B5010-A53E-4802-B03F-A01B2D485B71}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{D87A4C8B-E8DD-4788-87D4-0BE1758B8010}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{D8A87102-3FF7-48FD-A3B6-33EE42506DB2}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{D8F04F67-B28D-4655-B8BC-1F7F17F5E546}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{D931B65A-E2B5-4DE0-B6E6-677D9FEDB1F8}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{D93D968A-579B-44BF-8606-A8CB7E197C99}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{DA885612-45C7-42F1-9184-83E99CCE380D}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{DA8F48B2-9EF5-49CD-AB5E-11038DE439B7}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{DAB5A0FB-5CBA-4E5C-B3A1-FC79EFAB76A7}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{DAC90BD3-94AD-4E15-B8A1-B67E56022584}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{DACB94C6-69F3-44D3-B87E-B67C1F9F8AEB}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{DB0D25CE-F70B-446D-B9C4-E253624127A0}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{DB27BD32-D6C8-48D5-8F30-5C7447FDEBA7}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{DB765B70-5EB4-40B1-9C0B-4AF0475EC1E6}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{DB89C79E-B23A-4DE6-8F13-E9F7C4654669}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{DBCCC50E-049F-4E6C-9EE6-F2D422BB26A3}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{DCB874D1-9B21-4FFA-98DE-353552884D43}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{DD7132AF-D066-45F3-894B-9D950EB0C862}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{DDA78067-D81F-4F05-9BC4-69F48A1B6AEB}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{DE93E6D3-0C06-4B0A-B39C-5CD4C740DEC5}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{DEE159AB-EB97-4980-B43B-F42B45F7B521}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{DEE3878F-392A-4AB6-AAB5-9AD6E1216846}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{DF50909C-70A9-4234-A9A1-60D036970435}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{E031D9C8-35FF-496D-B3D1-41FFDDFD7803}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{E09A75B1-50ED-40EB-AB45-31E054BE05A2}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{E1303D51-9317-4EB1-8B08-EDDD87B3726C}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{E1462F35-2C22-41D2-AB72-6B5C8504695F}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{E25FA395-0634-46B0-8FD7-EAC8F95C1343}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{E28703A5-6BCE-4F5A-A673-AA2004DDBBEC}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{E31890B7-8C70-494E-9A62-3B7C04C03AB0}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{E4394A96-7E63-4F0F-9A42-3AF33BEBCFC3}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{E44D24E3-2B21-4F93-B8DA-640E76CB9FBD}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{E4D75012-F420-44F4-BA0B-DB9A4907F5BA}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{E58CAF68-2736-4703-BA3C-83A6A019C10B}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{E59086B3-239A-4E56-94CC-6CF4B249200C}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{E5E1ACAF-616A-4323-8E10-92D0630A03B5}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{E613EB81-20B5-4B5D-8F55-A2D99D3C09A8}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{E6695F4C-F033-4939-AFFD-961F1C144194}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{E6D7A1C2-C164-480F-AA3B-8A97930FDAB7}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{E770D6EC-B10B-4A7B-917C-508E957D0958}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{E7E3208A-DAE4-490C-A6A9-DDB4A404B71E}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{E826344E-020C-4F0C-93E6-90D0F69EDD0F}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{E83AD08B-EB60-4990-8500-960B629CFFD2}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{E8B5E7EF-D979-4B97-8FD4-211156583584}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{E938CCCA-C310-4FD5-AAF1-FC1DFBB821AA}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{E9C870D2-BD55-489E-8CB2-6556FECDD225}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{EA252713-CD6F-42C9-B9A1-1C94B895E534}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{EAC05C0A-5E44-428B-AA66-392D61DDF8DF}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{EB63FA50-97E5-42F2-BC11-73C215EB0BED}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{EC291E00-4D82-4E8C-B8E6-F7C6DD7C7ED8}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{ECF1081E-7BE3-4FF3-899A-A44221AA134A}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{EE21728E-7F3B-4DC8-BA2D-9E5D1275CB93}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{EE9AA8C4-4E85-4AFA-B2CE-DF37776ACE26}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{EF27D83B-DD9B-4331-BCF9-AC151708CC9B}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{EF92CF82-24E2-47C0-A2B6-93B06F593220}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{EFC37DD1-FAC7-490E-90CD-AECC47A0373A}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{F077917D-B68C-4100-B357-AA3D0D63A572}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{F206DA84-6060-4FC4-8CBA-D8AFD4159027}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{F24F0EC0-2378-4A6C-B5DD-889B0A850CF3}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{F2C7468B-E307-42D3-89D2-65FD80A50EB7}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{F2D3ADE6-3FBD-42A9-A55A-0FC8B0452386}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{F34CB690-1E8B-415C-8099-8FA9919FA7F0}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{F4894F95-FB95-429F-B373-70C602271177}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{F4913A1B-94FB-466F-B2DD-E9338E721EF9}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{F55C7ABF-B479-4D7A-951C-06ACEBA4AA66}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{F58277A6-1B89-4970-BB15-FA9D2B2C309E}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{F5A0DA0B-11BE-415A-8381-022236B27B13}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{F5EC1C7C-C448-4664-864D-D685F6746CD3}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{F63B88BD-39F8-404C-BC51-5D1C1D3D2166}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{F6472D0A-9FB1-48E2-8694-82702396FB21}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{F65494EA-F85D-4E9D-9B85-ABAE1CB4F235}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{F659DD1D-B40C-4518-A99A-DCD9DE9A082B}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{F6A400EE-396F-4F47-A9C1-C7A70EE96535}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{F799082B-34F1-44ED-A284-F23E865CDF27}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{F8FA5FC3-215A-4E06-814A-744B1E01D9B1}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{F93F5BBA-1971-4411-94F7-DD9877368EA2}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{F9B3C1CC-8455-4A22-94B4-FF7CEB719C5C}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{F9B46428-41E0-4AE9-96E6-BAD5E6F9B08F}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{F9D88D3C-ED6F-4EA5-9F95-A59DE77F7355}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{F9EAAE1B-F960-471D-B188-EE780BF70A26}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{F9EC0C6F-FA9A-4AD9-8918-F98C275DA1FE}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{FAC6C5FA-3228-4B33-8F18-9D32F78D54D6}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{FB29DD2A-6141-4516-B63A-66A3DC4CFD56}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{FB4E3DF3-3ECB-4132-9EC6-57B802730172}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{FB641295-3B2B-4532-8487-61CC0E290787}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{FC837875-8AD0-4188-8DB2-09D7B7CB39C2}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{FC9A0B8D-B74E-48B7-ADD1-CD66FB351CA4}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{FD2E96A4-A337-48AA-98C3-7746B6489E97}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{FD6FAC49-EB43-4658-B489-7738C0B61434}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{FD9EEA73-75E9-4563-8D05-76D219AEC8D0}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{FDE0D246-86CC-4469-92CE-FD6EB10E0BAB}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{FDE5E1EA-644C-42D6-849A-9E2B8A513276}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{FE343AD5-C1B1-474F-B13E-93AAFB9A36C7}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{FE53E2BA-B921-43B1-B44C-8C7230AF39ED}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{FF66CCAE-0179-4DB2-BC82-CE1F78F1E41A}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{FF7A11CE-B361-4013-B511-699F62C0DB93}
Successfully deleted: [Empty Folder] C:\Users\Crosshair\appdata\local\{FFBD0FBD-A73C-4D5B-8DE6-195CBF196D53}



~~~ FireFox

Successfully deleted: [Folder] C:\Users\Crosshair\AppData\Roaming\mozilla\firefox\profiles\b6y1hik8.default-1362049682416\extensions\staged
Successfully deleted: [Folder] C:\Users\Crosshair\AppData\Roaming\mozilla\firefox\profiles\wqg02ip2.default-1362845268766\extensions\staged
Successfully deleted: [Folder] C:\Users\Crosshair\AppData\Roaming\mozilla\firefox\profiles\s3rvbfvw.default-1362845289504\extensions\staged



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 12/10/2014 at 0:55:58.48
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

sufferinginsilence
2014-10-12, 02:18
I think I need to add that whilst I attempted to uninstall Ask Toolbar Updater, the following popup message appeared on screen.

"An error occured while trying to uninstall Ask Toolbar Updater. It may have already been uninstalled.
Would you like to remove Ask Toolbar Updater from Programs and FDeatures list?

[Yes] [No]"


I clicked on yes.
I hope this was the right thing to do.

Juliet
2014-10-12, 11:36
I hope this was the right thing to do.
Yes, that was fine.

Download Malwarebytes' Anti-Malware (http://www.malwarebytes.org/mbam-download.php) to your desktop.


Windows XP : Double click on the icon to run it.
Windows Vista, Windows 7 & 8 : Right click and select "Run as Administrator"




http://i1269.photobucket.com/albums/jj590/OCD-WTT/MBAMDashboard_zpsddef9b5f.gif (http://s1269.photobucket.com/user/OCD-WTT/media/MBAMDashboard_zpsddef9b5f.gif.html)



On the Dashboard click on Update Now
Go to the Setting Tab
Under Setting go to Detection and Protection
Under PUP and PUM make sure both are set to show Treat Dections as Malware
Go to Advanced setting and make sure Automatically Quarantine Detected Items is checked
Then on the Dashboard click on Scan
Make sure to select THREAT SCAN
Then click on Scan
When the scan is finished and the log pops up...select Copy to Clipboard
Please paste the log back into this thread for review
Exit Malwarebytes



How is the computer now?

sufferinginsilence
2014-10-12, 13:23
Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 12/10/2014
Scan Time: 11:47:37
Logfile:
Administrator: Yes

Version: 2.00.2.1012
Malware Database: v2014.10.12.03
Rootkit Database: v2014.10.11.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled

OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Crosshair

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 346024
Time Elapsed: 15 min, 19 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 0
(No malicious items detected)

Registry Values: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Folders: 2
PUP.Optional.Installmate, C:\ProgramData\InstallMate\{16782E9C-E344-47BD-A045-B9BA79870632}, , [a52e0d06cbb182b4bc44da327c87748c],
PUP.Optional.Installmate, C:\ProgramData\InstallMate\{16782E9C-E344-47BD-A045-B9BA79870632}\B9776E2B12467FF2, , [a52e0d06cbb182b4bc44da327c87748c],

Files: 8
PUP.Optional.Softonic, C:\Users\Crosshair\Downloads\SoftonicDownloader_for_spybot-search-destroy.exe, , [5f74dd36acd0e3537d86615aec1504fc],
PUP.Optional.Installmate, C:\ProgramData\InstallMate\{16782E9C-E344-47BD-A045-B9BA79870632}\20120710144810.log, , [a52e0d06cbb182b4bc44da327c87748c],
PUP.Optional.Installmate, C:\ProgramData\InstallMate\{16782E9C-E344-47BD-A045-B9BA79870632}\Setup.dat, , [a52e0d06cbb182b4bc44da327c87748c],
PUP.Optional.Installmate, C:\ProgramData\InstallMate\{16782E9C-E344-47BD-A045-B9BA79870632}\Setup.exe, , [a52e0d06cbb182b4bc44da327c87748c],
PUP.Optional.Installmate, C:\ProgramData\InstallMate\{16782E9C-E344-47BD-A045-B9BA79870632}\Setup.ico, , [a52e0d06cbb182b4bc44da327c87748c],
PUP.Optional.Installmate, C:\ProgramData\InstallMate\{16782E9C-E344-47BD-A045-B9BA79870632}\TsuDll.dll, , [a52e0d06cbb182b4bc44da327c87748c],
PUP.Optional.Installmate, C:\ProgramData\InstallMate\{16782E9C-E344-47BD-A045-B9BA79870632}\_Setup.dll, , [a52e0d06cbb182b4bc44da327c87748c],
PUP.Optional.Installmate, C:\ProgramData\InstallMate\{16782E9C-E344-47BD-A045-B9BA79870632}\_Setupx.dll, , [a52e0d06cbb182b4bc44da327c87748c],

Physical Sectors: 0
(No malicious items detected)


(end)

Juliet
2014-10-12, 15:55
Did you allow it to quarantine what it found?


How's the computer now?


What we can do now is run an online scan with Eset, for the time being it is our most trusted scanner.
Most reliable and thorough.
The settings I suggest will show us items located in quarantine folders so don't be alarmed with this, also, in case of a false positive I ask that you not allow it to delete what it does find.
This scanner can take quite a bit of time to run, depending of course how full your computer is.


Go here (http://www.eset.com/us/online-scanner/) to run an online scannner from ESET. Windows Vista/Windows 7/Windows 8 users will need to right click on their Internet Explorer shortcut, and select Run as Administrator

Note:
For browsers other than Internet Explorer, you will be prompted to download and install esetsmartinstaller_enu.exe. Click on the link and save the file to a convenient location. Double click on it to install and a new window will open. Follow the prompts.
Turn off the real time scanner of any existing antivirus program while performing the online scan. Here's how (http://www.techsupportforum.com/forums/f50/how-to-disable-your-security-applications-490111.html).
Click the blue Run ESET Online Scanner button
Tick the box next to YES, I accept the Terms of Use.
Click Start
When asked, allow the program to install the "OnlineScanner.cab" activex control by clicking the Install button
Once the activex control is installed, on the next screen click on Enable detection of potentially unwanted applications
Click on Advanced Settings
Make sure that the option Remove found threats is unticked.
Ensure these options are ticked

Scan archives
Scan for potentially unsafe applications
Enable Anti-Stealth technology


Click Start
Wait for the scan to finish
When the scan is done, if it shows a screen that says "Threats found!", then click "List of found threats", and then click "Export to text file..."
Save that text file on your desktop. Copy and paste the contents of that log as a reply to this topic.
Close the ESET online scan.

sufferinginsilence
2014-10-13, 01:31
ESET SCAN RESULTS

C:\AdwCleaner\Quarantine\C\Windows\System32\drivers\{8ce1c375-1e13-43f7-a4fd-6530f47c4fde}Gw64.sys.vir a variant of Win64/BrowseFox.J potentially unwanted application
C:\MaxtorExtHD\Siemens Scaleo\copy of C Drive\Documents and Settings\Brian.old\Application Data\Sun\Java\Deployment\cache\6.0\12\3f6d7f0c-41f1ebcb multiple threats
C:\MaxtorExtHD\Siemens Scaleo\copy of C Drive\Documents and Settings\Brian.old\Application Data\Sun\Java\Deployment\cache\6.0\17\14287991-5af0df3f multiple threats
C:\MaxtorExtHD\Siemens Scaleo\copy of C Drive\Documents and Settings\Brian.old\Application Data\Sun\Java\Deployment\cache\6.0\25\372af719-1e113e30 multiple threats
C:\MaxtorExtHD\Siemens Scaleo\copy of C Drive\WINDOWSold\Downloaded Installations\{610AA503-16B3-4D15-87DF-8E6B91402299}\PC MightyMax v9.msi a variant of Win32/Adware.PCMightyMax.A application
C:\Users\Crosshair\Downloads\spsetup117.exe Win32/Bundled.Toolbar.Google.E potentially unsafe application
F:\Games\LFS\lfs_s2z_keyfilegen.exe a variant of Win32/Keygen.BQ potentially unsafe application
F:\Games\LFS\download\lfs_s2z_keyfilegen.exe a variant of Win32/Keygen.BQ potentially unsafe application
F:\Program Files\Cute PDF\CuteWriter.exe a variant of Win32/Bundled.Toolbar.Ask.D potentially unsafe application
F:\Program Files\Cute PDF\CuteWriter.zip a variant of Win32/Bundled.Toolbar.Ask.D potentially unsafe application

sufferinginsilence
2014-10-13, 03:06
I deleted the last four items:

F:\Games\LFS\lfs_s2z_keyfilegen.exe a variant of Win32/Keygen.BQ potentially unsafe application
F:\Games\LFS\download\lfs_s2z_keyfilegen.exe a variant of Win32/Keygen.BQ potentially unsafe application
F:\Program Files\Cute PDF\CuteWriter.exe a variant of Win32/Bundled.Toolbar.Ask.D potentially unsafe application
F:\Program Files\Cute PDF\CuteWriter.zip a variant of Win32/Bundled.Toolbar.Ask.D potentially unsafe application

Is this OK?

Juliet
2014-10-13, 03:28
I deleted the last four items:

F:\Games\LFS\lfs_s2z_keyfilegen.exe a variant of Win32/Keygen.BQ potentially unsafe application
F:\Games\LFS\download\lfs_s2z_keyfilegen.exe a variant of Win32/Keygen.BQ potentially unsafe application
F:\Program Files\Cute PDF\CuteWriter.exe a variant of Win32/Bundled.Toolbar.Ask.D potentially unsafe application
F:\Program Files\Cute PDF\CuteWriter.zip a variant of Win32/Bundled.Toolbar.Ask.D potentially unsafe application

Is this OK?
Be fine

Torrents and cracks always come bundled with things behind the scenes that can render a computer useless.

Open notepad. Please copy the contents of the quote box below. To do this highlight the contents of the box and right click on it and select copy.
Paste this into the open notepad. save it to the Desktop as fixlist.txt
NOTE. It's important that both files, FRST/FRST64 and fixlist.txt are in the same location or the fix will not work.
It needs to be saved Next to the "Farbar Recovery Scan Tool" (If asked to overwrite existing one please allow)



start
CloseProcesses:
C:\MaxtorExtHD\Siemens Scaleo\copy of C Drive\Documents and Settings\Brian.old\Application Data\Sun\Java\Deployment\cache\6.0\12\3f6d7f0c-41f1ebcb
C:\MaxtorExtHD\Siemens Scaleo\copy of C Drive\Documents and Settings\Brian.old\Application Data\Sun\Java\Deployment\cache\6.0\17\14287991-5af0df3f
C:\MaxtorExtHD\Siemens Scaleo\copy of C Drive\Documents and Settings\Brian.old\Application Data\Sun\Java\Deployment\cache\6.0\25\372af719-1e113e30
C:\MaxtorExtHD\Siemens Scaleo\copy of C Drive\WINDOWSold\Downloaded Installations\{610AA503-16B3-4D15-87DF-8E6B91402299}\PC MightyMax v9.msi
C:\Users\Crosshair\Downloads\spsetup117.exe
EmptyTemp:
End


Open FRST/FRST64 and press the Fix button just once and wait.
If for some reason the tool needs a restart, please make sure you let the system restart normally. After that let the tool complete its run.
When finished FRST will generate a log on the Desktop (Fixlog.txt). Please post it to your reply.


How's the computer now?

sufferinginsilence
2014-10-13, 10:57
After my last reply, Windows closed down and automatically downloaded the update. When it rebooted the update installation failled.



Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 12-10-2014 02
Ran by Crosshair at 2014-10-13 09:37:46 Run:3
Running from C:\Users\Crosshair\Desktop
Loaded Profile: Crosshair (Available profiles: Crosshair)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
start
CloseProcesses:
C:\MaxtorExtHD\Siemens Scaleo\copy of C Drive\Documents and Settings\Brian.old\Application Data\Sun\Java\Deployment\cache\6.0\12\3f6d7f0c-41f1ebcb
C:\MaxtorExtHD\Siemens Scaleo\copy of C Drive\Documents and Settings\Brian.old\Application Data\Sun\Java\Deployment\cache\6.0\17\14287991-5af0df3f
C:\MaxtorExtHD\Siemens Scaleo\copy of C Drive\Documents and Settings\Brian.old\Application Data\Sun\Java\Deployment\cache\6.0\25\372af719-1e113e30
C:\MaxtorExtHD\Siemens Scaleo\copy of C Drive\WINDOWSold\Downloaded Installations\{610AA503-16B3-4D15-87DF-8E6B91402299}\PC MightyMax v9.msi
C:\Users\Crosshair\Downloads\spsetup117.exe
EmptyTemp:
End
*****************

Processes closed successfully.
C:\MaxtorExtHD\Siemens Scaleo\copy of C Drive\Documents and Settings\Brian.old\Application Data\Sun\Java\Deployment\cache\6.0\12\3f6d7f0c-41f1ebcb => Moved successfully.
C:\MaxtorExtHD\Siemens Scaleo\copy of C Drive\Documents and Settings\Brian.old\Application Data\Sun\Java\Deployment\cache\6.0\17\14287991-5af0df3f => Moved successfully.
C:\MaxtorExtHD\Siemens Scaleo\copy of C Drive\Documents and Settings\Brian.old\Application Data\Sun\Java\Deployment\cache\6.0\25\372af719-1e113e30 => Moved successfully.
C:\MaxtorExtHD\Siemens Scaleo\copy of C Drive\WINDOWSold\Downloaded Installations\{610AA503-16B3-4D15-87DF-8E6B91402299}\PC MightyMax v9.msi => Moved successfully.
C:\Users\Crosshair\Downloads\spsetup117.exe => Moved successfully.
EmptyTemp: => Removed 60.1 MB temporary data.


The system needed a reboot.

==== End of Fixlog ====



Computer seems to reboot quicker than before.

Juliet
2014-10-13, 12:08
After my last reply, Windows closed down and automatically downloaded the update. When it rebooted the update installation failled.
Which update?, windows update?


Computer seems to reboot quicker than before.
Good deal. I need to know what issues remain.

sufferinginsilence
2014-10-13, 12:39
Yes, the windows update. It failled.

Juliet
2014-10-13, 12:50
Please run this security check for my review.

Download Security Check by screen317 from here (http://screen317.spywareinfoforum.org/SecurityCheck.exe).

Save it to your Desktop.
Double click SecurityCheck.exe and follow the onscreen instructions inside of the black box.
A Notepad document should open automatically called checkup.txt; please post the contents of that document.


Need to find which update failed.

Click on the Windows Orb, go to all programs, then click on Windows Update
On the left hand side click on View Update History
Look to the right side, it should list all that were successful and those that failed
Right click on View details, then click on copy details then paste here the log.

sufferinginsilence
2014-10-13, 13:08
Results of screen317's Security Check version 0.99.88
Windows 7 Service Pack 1 x64 (UAC is disabled!)
Internet Explorer 11
``````````````Antivirus/Firewall Check:``````````````
Windows Firewall Enabled!
avast! Antivirus
Antivirus up to date!
`````````Anti-malware/Other Utilities Check:`````````
Spybot - Search & Destroy
Java 7 Update 65
Java version out of Date!
Adobe Flash Player 15.0.0.152
Adobe Reader 10.1.12 Adobe Reader out of Date!
Mozilla Firefox (32.0.3)
Google Chrome 35.0.1916.114
Google Chrome 35.0.1916.153
````````Process Check: objlist.exe by Laurent````````
`````````````````System Health check`````````````````
Total Fragmentation on Drive C:
````````````````````End of Log``````````````````````









Security Update for Windows 7 for x64-based Systems (KB2978742)

Installation date: ‎13/‎10/‎2014 02:28

Installation status: Failed

Error details: Code 80070002

Update type: Important

A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system.

More information:
http://support.microsoft.com/kb/2978742

Help and Support:
http://support.microsoft.com





Security Update for Microsoft .NET Framework 3.5.1 on Windows 7 and Windows Server 2008 R2 SP1 for x64-based Systems (KB2894844)

Installation date: ‎13/‎10/‎2014 02:27

Installation status: Failed

Error details: Code 80070002

Update type: Important

A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system.

More information:
http://support.microsoft.com/kb/2894844

Help and Support:
http://support.microsoft.com





Update for Windows 7 for x64-based Systems (KB2985461)

Installation date: ‎13/‎10/‎2014 02:27

Installation status: Failed

Error details: Code 80070002

Update type: Recommended

Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer.

More information:
http://support.microsoft.com/kb/2985461

Help and Support:
http://support.microsoft.com





Security Update for Microsoft .NET Framework 4.5, 4.5.1 and 4.5.2 on Windows 7, Vista, Server 2008, Server 2008 R2 x64 (KB2972216)

Installation date: ‎13/‎10/‎2014 02:26

Installation status: Failed

Error details: Code 643

Update type: Important

A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system.

More information:
http://support.microsoft.com/kb/2972216

Help and Support:
http://support.microsoft.com





Security Update for Microsoft .NET Framework 3.5.1 on Windows 7 and Windows Server 2008 R2 SP1 for x64-based Systems (KB2937610)

Installation date: ‎13/‎10/‎2014 02:25

Installation status: Failed

Error details: Code 80070002

Update type: Important

A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system.

More information:
http://support.microsoft.com/kb/2937610

Help and Support:
http://support.microsoft.com





Cumulative Security Update for Internet Explorer 11 for Windows 7 for x64-based Systems (KB2977629)

Installation date: ‎13/‎10/‎2014 02:19

Installation status: Failed

Error details: Code 80070002

Update type: Important

A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system.

More information:
http://support.microsoft.com/kb/2977629

Help and Support:
http://support.microsoft.com





Security Update for Microsoft .NET Framework 3.5.1 on Windows 7 and Windows Server 2008 R2 SP1 for x64-based Systems (KB2972211)

Installation date: ‎13/‎10/‎2014 02:18

Installation status: Failed

Error details: Code 80070002

Update type: Important

A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system.

More information:
http://support.microsoft.com/kb/2972211

Help and Support:
http://support.microsoft.com





Update for Windows 7 for x64-based Systems (KB2978092)

Installation date: ‎13/‎10/‎2014 02:18

Installation status: Failed

Error details: Code 80070002

Update type: Recommended

Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer.

More information:
http://support.microsoft.com/kb/2978092

Help and Support:
http://support.microsoft.com





Security Update for Windows 7 for x64-based Systems (KB2918614)

Installation date: ‎13/‎10/‎2014 02:17

Installation status: Failed

Error details: Code 80070002

Update type: Important

A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system.

More information:
http://support.microsoft.com/kb/2918614

Help and Support:
http://support.microsoft.com






Security Update for Microsoft .NET Framework 4.5 and 4.5.1 on Windows 7, Vista, Server 2008, Server 2008 R2 x64 (KB2894854)

Installation date: ‎13/‎10/‎2014 02:17

Installation status: Failed

Error details: Code 643

Update type: Important

A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system.

More information:
http://support.microsoft.com/kb/2894854

Help and Support:
http://support.microsoft.com





Update for Windows 7 for x64-based Systems (KB3001554)

Installation date: ‎13/‎10/‎2014 02:15

Installation status: Failed

Error details: Code 80070002

Update type: Recommended

Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer.

More information:
http://support.microsoft.com/kb/3001554

Help and Support:
http://support.microsoft.com





Security Update for Windows 7 for x64-based Systems (KB2976897)

Installation date: ‎13/‎10/‎2014 02:15

Installation status: Failed

Error details: Code 80070002

Update type: Important

A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system.

More information:
http://support.microsoft.com/kb/2976897

Help and Support:
http://support.microsoft.com





Update for Windows 7 for x64-based Systems (KB2998527)

Installation date: ‎13/‎10/‎2014 02:15

Installation status: Failed

Error details: Code 80070002

Update type: Recommended

Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer.

More information:
http://support.microsoft.com/kb/2998527

Help and Support:
http://support.microsoft.com





Update for Windows 7 for x64-based Systems (KB2980245)

Installation date: ‎13/‎10/‎2014 02:14

Installation status: Failed

Error details: Code 80070002

Update type: Recommended

Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer.

More information:
http://support.microsoft.com/kb/2980245

Help and Support:
http://support.microsoft.com





Security Update for Microsoft .NET Framework 3.5.1 on Windows 7 and Windows Server 2008 R2 SP1 for x64-based Systems (KB2973112)

Installation date: ‎13/‎10/‎2014 02:14

Installation status: Failed

Error details: Code 80070002

Update type: Important

A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system.

More information:
http://support.microsoft.com/kb/2973112

Help and Support:
http://support.microsoft.com





Cumulative Security Update for Internet Explorer 11 for Windows 7 for x64-based Systems (KB2976627)

Installation date: ‎13/‎10/‎2014 02:14

Installation status: Failed

Error details: Code 80070002

Update type: Important

A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system.

More information:
http://support.microsoft.com/kb/2976627

Help and Support:
http://support.microsoft.com





Security Update for Windows 7 for x64-based Systems (KB2982378)

Installation date: ‎13/‎10/‎2014 02:13

Installation status: Failed

Error details: Code 80070002

Update type: Important

A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system.

More information:
http://support.microsoft.com/kb/2982378

Help and Support:
http://support.microsoft.com






Update for Windows 7 for x64-based Systems (KB2977728)

Installation date: ‎13/‎10/‎2014 02:13

Installation status: Failed

Error details: Code 80070002

Update type: Recommended

Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer.

More information:
http://support.microsoft.com/kb/2977728

Help and Support:
http://support.microsoft.com





Update for Windows 7 for x64-based Systems (KB2952664)

Installation date: ‎13/‎10/‎2014 02:13

Installation status: Failed

Error details: Code 80070002

Update type: Recommended

Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer.

More information:
http://support.microsoft.com/kb/2952664

Help and Support:
http://support.microsoft.com





Security Update for Windows 7 for x64-based Systems (KB2978668)

Installation date: ‎13/‎10/‎2014 02:12

Installation status: Failed

Error details: Code 80070002

Update type: Important

A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system.

More information:
http://support.microsoft.com/kb/2978668

Help and Support:
http://support.microsoft.com





Security Update for Microsoft .NET Framework 3.5.1 on Windows 7 and Windows Server 2008 R2 SP1 for x64-based Systems (KB2943357)

Installation date: ‎13/‎10/‎2014 02:12

Installation status: Failed

Error details: Code 80070643

Update type: Important

A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system.

More information:
http://support.microsoft.com/kb/2943357

Help and Support:
http://support.microsoft.com

Juliet
2014-10-13, 14:13
You can remove these programs using add/remove

Java Programs you see
Adobe

Update Adobe reader

Recently there have been vulnerabilities detected in older versions of Adobe Reader. It is strongly suggested that you update to the current version.

You can download it from http://www.adobe.com/products/acrobat/readstep2.html
UNCHECK the McAfee security scan, it's not needed.

After installing the latest Adobe Reader, uninstall all previous versions.
If you already have Adobe Photoshop® Album Starter Edition installed or do not wish to have it installed UNcheck the box which says Also Download Adobe Photoshop® Album Starter Edition.

If you don't like Adobe Reader (53 MB), you can download Foxit PDF Reader(7 MB) from here (http://www.foxitsoftware.com/pdf/reader/addons.php). It's a much smaller file to download and uses a lot less resources than Adobe Reader.

Note: When installing FoxitReader, be careful not to install anything to do with AskBar.


~~~~~~~~~~~~~~~~~~

Install Java:

Please go here to install Java (http://www.java.com/en/)

click on the Free Java Download Button
click on Agree and start Free download
click on Run
click on run again
click on install
when install is complete click on close


~~~~~~~~~~~~~~~~~~~~

Please download Farbar Service Scanner (http://www.bleepingcomputer.com/download/farbar-service-scanner/) and run it on the computer.

Make sure the following options are checked:
Internet Services
Windows Firewall
System Restore
Security Center
Windows Update
Press "Scan".
It will create a log (FSS.txt) in the same directory the tool is run.
Please copy and paste the log to your reply.

sufferinginsilence
2014-10-13, 15:48
Farbar Service Scanner Version: 21-07-2014
Ran by Crosshair (administrator) on 13-10-2014 at 14:46:41
Running from "C:\Users\Crosshair\Desktop"
Microsoft Windows 7 Home Premium Service Pack 1 (X64)
Boot Mode: Normal
****************************************************************

Internet Services:
============

Connection Status:
==============
Localhost is accessible.
LAN connected.
Google IP is accessible.
Google.com is accessible.
Yahoo.com is accessible.


Windows Firewall:
=============

Firewall Disabled Policy:
==================


System Restore:
============

System Restore Disabled Policy:
========================


Action Center:
============


Windows Update:
============

Windows Autoupdate Disabled Policy:
============================


Other Services:
==============


File Check:
========
C:\Windows\System32\nsisvc.dll => File is digitally signed
C:\Windows\System32\drivers\nsiproxy.sys => File is digitally signed
C:\Windows\System32\dhcpcore.dll => File is digitally signed
C:\Windows\System32\drivers\afd.sys => File is digitally signed
C:\Windows\System32\drivers\tdx.sys => File is digitally signed
C:\Windows\System32\Drivers\tcpip.sys => File is digitally signed
C:\Windows\System32\dnsrslvr.dll => File is digitally signed
C:\Windows\System32\mpssvc.dll => File is digitally signed
C:\Windows\System32\bfe.dll => File is digitally signed
C:\Windows\System32\drivers\mpsdrv.sys => File is digitally signed
C:\Windows\System32\SDRSVC.dll => File is digitally signed
C:\Windows\System32\vssvc.exe => File is digitally signed
C:\Windows\System32\wscsvc.dll => File is digitally signed
C:\Windows\System32\wbem\WMIsvc.dll => File is digitally signed
C:\Windows\System32\wuaueng.dll => File is digitally signed
C:\Windows\System32\qmgr.dll => File is digitally signed
C:\Windows\System32\es.dll => File is digitally signed
C:\Windows\System32\cryptsvc.dll => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed


**** End of log ****

Juliet
2014-10-13, 23:29
Also please download Windows Repair (all in one) from here (http://www.tweaking.com/content/page/windows_repair_all_in_one.html)

http://www.bleepstatic.com/download/screenshots/w/windows-repair-all-in-one-portable/step-4-tab.jpg
Install the program then go to step 4 and create a new system restore point and new registry backup.

Go to Step 2 and allow it to run CheckDisk by clicking on Do It button:
http://i1.ifrm.com/228/109/upload/p22001645.gif



NEXT
On the the Start Repairs tab => Click the Start
http://www.bleepstatic.com/download/screenshots/w/windows-repair-all-in-one-portable/start-repairs-tab.jpg


Please ensure that ONLY items seen in the image below are ticked as indicated (they're all checked by default):
http://i1.ifrm.com/228/109/upload/p22001647.gif

Click on box next to the Restart System when Finished. Then click on Start.

sufferinginsilence
2014-10-14, 00:36
I can only see the 2.9.2 version. It is slightly different, can I use it?

Juliet
2014-10-14, 01:16
yes, that appears to be an updated version.

Juliet
2014-10-14, 01:46
Also we need to check for hidden items that might be on the machine


Please download RogueKiller and save it to your desktop.

You can check here (http://support.microsoft.com/kb/827218) if you're not sure if your computer is 32-bit or 64-bit

Download RogueKiller (http://www.sur-la-toile.com/RogueKiller/RogueKiller.exe) to your desktop.


Quit all running programs.
For Windows XP, double-click to start.
For Vista,Windows 7/8, Right-click on the program and select Run as Administrator to start and when prompted allow it to run.
Read and accept the EULA (End User Licene Agreement)
Click Scan to scan the system.
When the scan completes Close the program > Don't Fix anything!
Don't run any other options, they're not all bad!!
Post back the report which should be located on your desktop.



~~~~~~~~~~~~

Download the latest version of TDSSKiller from here (http://media.kaspersky.com/utilities/VirusUtilities/EN/tdsskiller.exe) and save it to your Desktop.




Doubleclick on TDSSKiller.exe to run the application
https://dl.dropbox.com/u/73555776/tdss%20start.JPG

Then click on Change parameters.

https://dl.dropbox.com/u/73555776/tdss%20Change%20param.JPG

Check the boxes beside Verify Driver Digital Signature, Detect TDLFS file system and Use KSN to scan objects , then click OK.

Click the Start Scan button.


If a suspicious object is detected, the default action will be Skip, click on Continue.

https://dl.dropbox.com/u/73555776/tdss%20threat.JPG

If malicious objects are found, they will show in the Scan results and offer three (3) options.
Ensure Cure is selected, then click Continue => Reboot now to finish the cleaning process.

Get the report by selecting Reports

https://dl.dropbox.com/u/73555776/tdss%20report.JPG

Note: If Cure is not available, please choose Skip instead, do not choose Delete unless instructed.


Please copy and paste its contents on your next reply.



A report will be created in your root directory, (usually C:\ folder) in the form of "TDSSKiller.[Version]_[Date]_[Time]_log.txt". Please copy and paste the contents of that file here.


~~~~~

Please post these 2 logs when done.

sufferinginsilence
2014-10-14, 09:53
When I scanned using RogueKiller my PC crashed to a blue screen.

DRIVER_IRQ_NOT_LESS_OR_EQUAL

*** STOP: 0X000000D1.......

*** ahcix64.sys - Address FFFFF880010FE7B6 base at FFFFF880010C8000........

Juliet
2014-10-14, 12:36
ahcix64.sys points to a AMD graphic card driver from what I can find.

Did you have any USB devices attached?

By chance do you need driver updates?, Have you checked the manufacturer web site?

Can you run the TDSSKiller scan?

sufferinginsilence
2014-10-14, 20:48
Also before I scanned using RogueKiller, the prescan Killed a process called DAODx.exe found in C:\Windows

Is this important?

sufferinginsilence
2014-10-14, 20:52
I forgot to add that I updated the driver for the GPU but still get the killed DAODx.exe process (Detection = Suspicious Path) during the prescan and a BSOD crash when I scan.

Juliet
2014-10-14, 21:42
If you have a ASUS Motherboard , this should be OK --> DAODx.exe

Try to continue with the TDSS scan.

sufferinginsilence
2014-10-15, 00:09
22:43:33.0164 0x16a0 TDSS rootkit removing tool 3.0.0.40 Jul 10 2014 12:37:58
22:44:10.0848 0x16a0 ============================================================
22:44:10.0848 0x16a0 Current date / time: 2014/10/14 22:44:10.0848
22:44:10.0848 0x16a0 SystemInfo:
22:44:10.0849 0x16a0
22:44:10.0849 0x16a0 OS Version: 6.1.7601 ServicePack: 1.0
22:44:10.0849 0x16a0 Product type: Workstation
22:44:10.0849 0x16a0 ComputerName: FORMULAV
22:44:10.0849 0x16a0 UserName: Crosshair
22:44:10.0849 0x16a0 Windows directory: C:\Windows
22:44:10.0849 0x16a0 System windows directory: C:\Windows
22:44:10.0849 0x16a0 Running under WOW64
22:44:10.0849 0x16a0 Processor architecture: Intel x64
22:44:10.0849 0x16a0 Number of processors: 4
22:44:10.0849 0x16a0 Page size: 0x1000
22:44:10.0849 0x16a0 Boot type: Normal boot
22:44:10.0849 0x16a0 ============================================================
22:44:11.0281 0x16a0 KLMD registered as C:\Windows\system32\drivers\73703277.sys
22:44:12.0303 0x16a0 System UUID: {9D178903-AC18-46A1-5ACD-C2DCDCF6364C}
22:44:13.0333 0x16a0 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000048
22:44:13.0334 0x16a0 Drive \Device\Harddisk1\DR1 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000048
22:44:13.0339 0x16a0 Drive \Device\Harddisk2\DR2 - Size: 0xF0000000 ( 3.75 Gb ), SectorSize: 0x200, Cylinders: 0x1E9, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
22:44:13.0341 0x16a0 ============================================================
22:44:13.0341 0x16a0 \Device\Harddisk0\DR0:
22:44:13.0341 0x16a0 MBR partitions:
22:44:13.0341 0x16a0 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x31800
22:44:13.0341 0x16a0 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x320F8E05
22:44:13.0382 0x16a0 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x3212B644, BlocksNum 0x425D9B7D
22:44:13.0382 0x16a0 \Device\Harddisk2\DR2:
22:44:13.0383 0x16a0 MBR partitions:
22:44:13.0383 0x16a0 \Device\Harddisk2\DR2\Partition1: MBR, Type 0xC, StartLBA 0x20, BlocksNum 0x77FFDF
22:44:13.0383 0x16a0 ============================================================
22:44:13.0448 0x16a0 C: <-> \Device\Harddisk0\DR0\Partition2
22:44:13.0495 0x16a0 F: <-> \Device\Harddisk0\DR0\Partition3
22:44:13.0495 0x16a0 ============================================================
22:44:13.0495 0x16a0 Initialize success
22:44:13.0495 0x16a0 ============================================================
22:45:17.0235 0x0c60 ============================================================
22:45:17.0235 0x0c60 Scan started
22:45:17.0235 0x0c60 Mode: Manual; SigCheck; TDLFS;
22:45:17.0235 0x0c60 ============================================================
22:45:17.0235 0x0c60 KSN ping started
22:45:19.0980 0x0c60 KSN ping finished: true
22:45:21.0322 0x0c60 ================ Scan system memory ========================
22:45:21.0322 0x0c60 System memory - ok
22:45:21.0322 0x0c60 ================ Scan services =============================
22:45:21.0649 0x0c60 [ A87D604AEA360176311474C87A63BB88, B1507868C382CD5D2DBC0D62114FCFBF7A780904A2E3CA7C7C1DD0844ADA9A8F ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys
22:45:21.0868 0x0c60 1394ohci - ok
22:45:21.0915 0x0c60 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2, FDAAB7E23012B4D31537C5BDEF245BB0A12FA060A072C250E21C68E18B22E002 ] ACPI C:\Windows\system32\drivers\ACPI.sys
22:45:21.0946 0x0c60 ACPI - ok
22:45:21.0961 0x0c60 [ 99F8E788246D495CE3794D7E7821D2CA, F91615463270AD2601F882CAED43B88E7EDA115B9FD03FC56320E48119F15F76 ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys
22:45:22.0071 0x0c60 AcpiPmi - ok
22:45:22.0102 0x0c60 [ 2F6B34B83843F0C5118B63AC634F5BF4, 43E3F5FBFB5D33981AC503DEE476868EC029815D459E7C36C4ABC2D2F75B5735 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys
22:45:22.0133 0x0c60 adp94xx - ok
22:45:22.0164 0x0c60 [ 597F78224EE9224EA1A13D6350CED962, DA7FD99BE5E3B7B98605BF5C13BF3F1A286C0DE1240617570B46FE4605E59BDC ] adpahci C:\Windows\system32\drivers\adpahci.sys
22:45:22.0180 0x0c60 adpahci - ok
22:45:22.0195 0x0c60 [ E109549C90F62FB570B9540C4B148E54, E804563735153EA00A00641814244BC8A347B578E7D63A16F43FB17566EE5559 ] adpu320 C:\Windows\system32\drivers\adpu320.sys
22:45:22.0211 0x0c60 adpu320 - ok
22:45:22.0258 0x0c60 [ 4B78B431F225FD8624C5655CB1DE7B61, 198A5AF2125C7C41F531A652D200C083A55A97DC541E3C0B5B253C7329949156 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll
22:45:22.0429 0x0c60 AeLookupSvc - ok
22:45:22.0539 0x0c60 [ FA886682CFC5D36718D3E436AACF10B9, F80AB4F91AA6B5C7ECCB000D8E1BC2CF776DC3D69B3D9EBC2558C19035A6B3AB ] AFD C:\Windows\system32\drivers\afd.sys
22:45:22.0741 0x0c60 AFD - ok
22:45:22.0788 0x0c60 [ 608C14DBA7299D8CB6ED035A68A15799, 45360F89640BF1127C82A32393BD76205E4FA067889C40C491602F370C09282A ] agp440 C:\Windows\system32\drivers\agp440.sys
22:45:22.0819 0x0c60 agp440 - ok
22:45:22.0897 0x0c60 [ D9B3581490F2EB32402BEA5ABBDADF18, 1DED23649D7858A8AEE6A0CA5E2FBE89C69C8F1A704F256246B09262A95D8E2A ] ahcix64 C:\Windows\system32\drivers\ahcix64.sys
22:45:22.0913 0x0c60 ahcix64 - ok
22:45:22.0975 0x0c60 [ DA9D11E8EA60680A2685719F5429E283, 998DF038BE76ECC01FBBE59DBB1126FAB7DD4C9BC9D1E645D6947C5AAB5E785C ] ahcix64s C:\Windows\system32\DRIVERS\ahcix64s.sys
22:45:22.0991 0x0c60 ahcix64s - ok
22:45:23.0053 0x0c60 [ 8B6625D53C18774F0102F690E285B5E8, C088C5A6584E95B52CB28D5D31A70A684C01C85248DF1AC39F14EDFE0DB54432 ] AiChargerPlus C:\Windows\system32\DRIVERS\AiChargerPlus.sys
22:45:23.0053 0x0c60 AiChargerPlus - ok
22:45:23.0085 0x0c60 [ 3290D6946B5E30E70414990574883DDB, 0E9294E1991572256B3CDA6B031DB9F39CA601385515EE59F1F601725B889663 ] ALG C:\Windows\System32\alg.exe
22:45:23.0131 0x0c60 ALG - ok
22:45:23.0241 0x0c60 [ 5812713A477A3AD7363C7438CA2EE038, A7316299470D2E57A11499C752A711BF4A71EB11C9CBA731ED0945FF6A966721 ] aliide C:\Windows\system32\drivers\aliide.sys
22:45:23.0272 0x0c60 aliide - ok
22:45:23.0334 0x0c60 [ 1FF8B4431C353CE385C875F194924C0C, 3EA3A7F426B0FFC2461EDF4FDB4B58ACC9D0730EDA5B728D1EA1346EA0A02720 ] amdide C:\Windows\system32\drivers\amdide.sys
22:45:23.0350 0x0c60 amdide - ok
22:45:23.0381 0x0c60 [ 7024F087CFF1833A806193EF9D22CDA9, E7F27E488C38338388103D3B7EEDD61D05E14FB140992AEE6F492FFC821BF529 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys
22:45:23.0397 0x0c60 AmdK8 - ok
22:45:23.0412 0x0c60 [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys
22:45:23.0443 0x0c60 AmdPPM - ok
22:45:23.0475 0x0c60 [ D4121AE6D0C0E7E13AA221AA57EF2D49, 626F43C099BD197BE56648C367B711143C2BCCE96496BBDEF19F391D52FA01D0 ] amdsata C:\Windows\system32\drivers\amdsata.sys
22:45:23.0490 0x0c60 amdsata - ok
22:45:23.0490 0x0c60 [ F67F933E79241ED32FF46A4F29B5120B, D6EF539058F159CC4DD14CA9B1FD924998FEAC9D325C823C7A2DD21FEF1DC1A8 ] amdsbs C:\Windows\system32\drivers\amdsbs.sys
22:45:23.0506 0x0c60 amdsbs - ok
22:45:23.0521 0x0c60 [ 540DAF1CEA6094886D72126FD7C33048, 296578572A93F5B74E1AD443E000B79DC99D1CBD25082E02704800F886A3065F ] amdxata C:\Windows\system32\drivers\amdxata.sys
22:45:23.0521 0x0c60 amdxata - ok
22:45:23.0584 0x0c60 [ E3C6DAE5493E9B07EE98711D04D863FF, D11722E50D8EBFBDB344F155BBCB6C552289F0BA882F48711B9178AF77E17C5B ] ampa C:\Windows\system32\ampa.sys
22:45:23.0615 0x0c60 ampa - detected UnsignedFile.Multi.Generic ( 1 )
22:45:26.0485 0x0c60 Detect skipped due to KSN trusted
22:45:26.0485 0x0c60 ampa - ok
22:45:26.0517 0x0c60 [ 89A69C3F2F319B43379399547526D952, 8ABDB4B8E106F96EBBA0D4D04C4F432296516E107E7BA5644ED2E50CF9BB491A ] AppID C:\Windows\system32\drivers\appid.sys
22:45:26.0657 0x0c60 AppID - ok
22:45:26.0688 0x0c60 [ 0BC381A15355A3982216F7172F545DE1, C33AF13CB218F7BF52E967452573DF2ADD20A95C6BF99229794FEF07C4BBE725 ] AppIDSvc C:\Windows\System32\appidsvc.dll
22:45:26.0719 0x0c60 AppIDSvc - ok
22:45:26.0813 0x0c60 [ 9D2A2369AB4B08A4905FE72DB104498F, D6FA1705018BABABFA2362E05691A0D6408D14DE7B76129B16D0A1DAD6378E58 ] Appinfo C:\Windows\System32\appinfo.dll
22:45:26.0844 0x0c60 Appinfo - ok
22:45:27.0063 0x0c60 [ 608D6A90E989C6522F170E5526A64BF4, 36EDD07DF6BD2D20121F63CF720C289FCCF7C53574D37F99C2F9ED68298D655B ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
22:45:27.0078 0x0c60 Apple Mobile Device - ok
22:45:27.0109 0x0c60 [ C484F8CEB1717C540242531DB7845C4E, C507CE26716EB923B864ED85E8FA0B24591E2784A2F4F0E78AEED7E9953311F6 ] arc C:\Windows\system32\drivers\arc.sys
22:45:27.0109 0x0c60 arc - ok
22:45:27.0125 0x0c60 [ 019AF6924AEFE7839F61C830227FE79C, 5926B9DDFC9198043CDD6EA0B384C83B001EC225A8125628C4A45A3E6C42C72A ] arcsas C:\Windows\system32\drivers\arcsas.sys
22:45:27.0141 0x0c60 arcsas - ok
22:45:27.0187 0x0c60 [ D7989234601A2DE9A1801F4ED9533B6E, 59FEDA2BC940B9B45597B99F11F58EF0F09242840220BF305D75A5E94DF3E4B8 ] asahci64 C:\Windows\system32\DRIVERS\asahci64.sys
22:45:27.0203 0x0c60 asahci64 - ok
22:45:27.0328 0x0c60 [ FB03A917C1294D3E6D671F24722E1BA3, C4E2C236E5086F0A7D5E20E426EA7A86B4A38797610188C79151201AD27C0DF4 ] asComSvc C:\Program Files (x86)\ASUS\AXSP\1.00.13\atkexComSvc.exe
22:45:27.0343 0x0c60 asComSvc - ok
22:45:27.0468 0x0c60 [ 4B720CC508B4FB999A7BF0E6D84F73E1, 948A7EE58E74244B94F08B122C915FB3CFC3467BEB9ACB360AA8373143B3C485 ] ASDR C:\Windows\SysWOW64\ASDR.exe
22:45:27.0484 0x0c60 ASDR - detected UnsignedFile.Multi.Generic ( 1 )
22:45:30.0354 0x0c60 Detect skipped due to KSN trusted
22:45:30.0354 0x0c60 ASDR - ok
22:45:30.0463 0x0c60 [ A63173897EA1A73A75D0E65036DE5B15, 07A83172B525DFC895056612F542420F4DF3C6192624C5B3141C726501163912 ] asHmComSvc C:\Program Files (x86)\ASUS\AAHM\1.00.14\aaHMSvc.exe
22:45:30.0495 0x0c60 asHmComSvc - ok
22:45:30.0541 0x0c60 [ FEF9DD9EA587F8886ADE43C1BEFBDAFE, DDE6F28B3F7F2ABBEE59D4864435108791631E9CB4CDFB1F178E5AA9859956D8 ] AsIO C:\Windows\syswow64\drivers\AsIO.sys
22:45:30.0573 0x0c60 AsIO - ok
22:45:30.0619 0x0c60 [ 954950D11ADA98AC1B7EE3C770E4622C, D6D4700D7359AB84FB362305FBF2389B4EF51B4190EC2E0D4C7FEF80A06A0D0B ] asmthub3 C:\Windows\system32\DRIVERS\asmthub3.sys
22:45:30.0729 0x0c60 asmthub3 - ok
22:45:30.0775 0x0c60 [ 01DBB05DB1DB95803E3C9F2B49AFE79C, 286310787F7EB7B237CB0082567BDA2F57D8F88C37015F6637FF6A6775CAA5AE ] asmtxhci C:\Windows\system32\DRIVERS\asmtxhci.sys
22:45:30.0869 0x0c60 asmtxhci - ok
22:45:31.0087 0x0c60 [ 9A262EDD17F8473B91B333D6B031A901, 05DFBD3A7D83FDE1D062EA719ACA9EC48CB7FD42D17DDD88B82E5D25469ADD23 ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
22:45:31.0134 0x0c60 aspnet_state - ok
22:45:31.0243 0x0c60 [ 5C31DFB196CB3A488A041881634D86D2, 419ABEED7FB7CEBBA264802D2F727D18F999CEDA566A0830C38A69AC1680F3EA ] AsSysCtrlService C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.11\AsSysCtrlService.exe
22:45:31.0290 0x0c60 AsSysCtrlService - ok
22:45:31.0337 0x0c60 [ 1392B92179B07B672720763D9B1028A5, B4D47EA790920A4531E3DF5A4B4B0721B7FEA6B49A35679F0652F1E590422602 ] AsUpIO C:\Windows\syswow64\drivers\AsUpIO.sys
22:45:31.0353 0x0c60 AsUpIO - ok
22:45:31.0415 0x0c60 [ A4398A8914C32F18EC2AB562CBA3CAAF, 7FD1E8399C46E9A9663CCB330160933235E28D2EE61ED8C084B59BD54C18A0F4 ] asusgsb C:\Windows\system32\drivers\asusgsb.sys
22:45:31.0493 0x0c60 asusgsb - ok
22:45:31.0618 0x0c60 [ D95E64416A4A3ED6986E0F474DA934BD, DBB4A0DED0DABE1F8FF0DB8C0E9EC4EC906A85A45DC0AEC013A8744F9BF5D40E ] aswHwid C:\Windows\system32\drivers\aswHwid.sys
22:45:31.0649 0x0c60 aswHwid - ok
22:45:31.0743 0x0c60 [ FF1E537A3632CBB9A0BF72B9FD0878D5, B26E6A1F6E6FA5280A12861EFAD44D8F49353F47B21843EBA73E149CF613DCBC ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys
22:45:31.0774 0x0c60 aswMonFlt - ok
22:45:31.0805 0x0c60 [ A5757DE5F9C83AB40667A53D5126EA40, 58B72B1B126CF641188703CE82E26BEB0C41AD7587CFFCCCE9E3C64CC7AACC90 ] aswRdr C:\Windows\system32\drivers\aswRdr2.sys
22:45:31.0836 0x0c60 aswRdr - ok
22:45:31.0930 0x0c60 [ 645D97385F3F284FB5604F9B970F4D24, 15A9D7F0F4C1062210E4E744A9069B8645177D19F35B8740D74022639DC05F2E ] aswRvrt C:\Windows\system32\drivers\aswRvrt.sys
22:45:31.0961 0x0c60 aswRvrt - ok
22:45:32.0023 0x0c60 [ B8FDEDE963B82CFD23B3A53A3084666D, 3537E5B684FB6F0AA589A5FA7CD111E1744DF384AB1A266D4114100F104ED11B ] aswSnx C:\Windows\system32\drivers\aswSnx.sys
22:45:32.0070 0x0c60 aswSnx - ok
22:45:32.0117 0x0c60 [ 0DEDC041DF594AEC2C3BD00417CFAF60, 0D3A8924503986546EE256D185225C0B080FDB6B0C8B0BED7516B07A7334371B ] aswSP C:\Windows\system32\drivers\aswSP.sys
22:45:32.0164 0x0c60 aswSP - ok
22:45:32.0257 0x0c60 [ 48DED912CDE54FC0923B9858512366E1, 9B216B934408A7CB3CE2B41240B7EF01EAA3BC066211B784064FF8AC97A29B4E ] aswStm C:\Windows\system32\drivers\aswStm.sys
22:45:32.0289 0x0c60 aswStm - ok
22:45:32.0304 0x0c60 [ 471A311745848B80339436688A8286E6, E51C57236CEC19AC38E85D115DB97875517D837811188AD2E53FA49055B53890 ] aswVmm C:\Windows\system32\drivers\aswVmm.sys
22:45:32.0320 0x0c60 aswVmm - ok
22:45:32.0351 0x0c60 [ 769765CE2CC62867468CEA93969B2242, 0D8F19D49869DF93A3876B4C2E249D12E83F9CE11DAE8917D368E292043D4D26 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys
22:45:32.0413 0x0c60 AsyncMac - ok
22:45:32.0445 0x0c60 [ 02062C0B390B7729EDC9E69C680A6F3C, 0261683C6DC2706DCE491A1CDC954AC9C9E649376EC30760BB4E225E18DC5273 ] atapi C:\Windows\system32\drivers\atapi.sys
22:45:32.0460 0x0c60 atapi - ok
22:45:32.0491 0x0c60 [ FB4187C282CB467E5E606913A1FA79A3, B7C076F86E34D8DA965C78585AB3C1BE74AE2A10B9051938DA9672A4EDD62960 ] atkdisplf C:\Windows\system32\drivers\ATKDispLowFilter.sys
22:45:32.0523 0x0c60 atkdisplf - ok
22:45:32.0523 0x0c60 [ 86D873FD396FA6708A99A1BDF104D120, F71D0A67B5029DD721D916BD2E90B0A4CA7A5B56CA0896DD040A291E080E5B3A ] ATKFUSService C:\Windows\system32\ATKFUSService.exe
22:45:32.0554 0x0c60 ATKFUSService - detected UnsignedFile.Multi.Generic ( 1 )
22:45:35.0409 0x0c60 Detect skipped due to KSN trusted
22:45:35.0409 0x0c60 ATKFUSService - ok
22:45:35.0533 0x0c60 [ F23FEF6D569FCE88671949894A8BECF1, FCE7B156ED663471CF9A736915F00302E93B50FC647563D235313A37FCE8F0F6 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
22:45:35.0596 0x0c60 AudioEndpointBuilder - ok
22:45:35.0611 0x0c60 [ F23FEF6D569FCE88671949894A8BECF1, FCE7B156ED663471CF9A736915F00302E93B50FC647563D235313A37FCE8F0F6 ] AudioSrv C:\Windows\System32\Audiosrv.dll
22:45:35.0658 0x0c60 AudioSrv - ok
22:45:35.0861 0x0c60 [ 73F5C13B431915BAE35254B4E95DFB71, 393A045859382C44133C004598B1512048046BCC129FED2247A77FDBFCDB6DFF ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
22:45:35.0892 0x0c60 avast! Antivirus - ok
22:45:35.0908 0x0c60 [ A6BF31A71B409DFA8CAC83159E1E2AFF, CBB83F73FFD3C3FB4F96605067739F8F7A4A40B2B05417FA49E575E95628753F ] AxInstSV C:\Windows\System32\AxInstSV.dll
22:45:36.0017 0x0c60 AxInstSV - ok
22:45:36.0126 0x0c60 [ 3E5B191307609F7514148C6832BB0842, DE011CB7AA4A2405FAF21575182E0793A1D83DFFC44E9A7864D59F3D51D8D580 ] b06bdrv C:\Windows\system32\drivers\bxvbda.sys
22:45:36.0220 0x0c60 b06bdrv - ok
22:45:36.0282 0x0c60 [ B5ACE6968304A3900EEB1EBFD9622DF2, 1DAA118D8CA3F97B34DF3D3CDA1C78EAB2ED225699FEABE89D331AE0CB7679FA ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys
22:45:36.0345 0x0c60 b57nd60a - ok
22:45:36.0454 0x0c60 [ E49110A58A32E9450356686A95DD7763, 0C16196F48184907B92167AD6C4DA3A6039711AB99CB0D2D1BD37F935696303B ] BCMH43XX C:\Windows\system32\DRIVERS\bcmwlhigh664.sys
22:45:36.0485 0x0c60 BCMH43XX - ok
22:45:36.0501 0x0c60 [ FDE360167101B4E45A96F939F388AEB0, 8D1457E866BBD645C4B9710DFBFF93405CC1193BF9AE42326F2382500B713B82 ] BDESVC C:\Windows\System32\bdesvc.dll
22:45:36.0610 0x0c60 BDESVC - ok
22:45:36.0610 0x0c60 [ 16A47CE2DECC9B099349A5F840654746, 77C008AEDB07FAC66413841D65C952DDB56FE7DCA5E9EF9C8F4130336B838024 ] Beep C:\Windows\system32\drivers\Beep.sys
22:45:36.0719 0x0c60 Beep - ok
22:45:36.0766 0x0c60 [ 82974D6A2FD19445CC5171FC378668A4, 075D25F47C0D2277E40AF8615571DAA5EB16B1824563632A9A7EC62505C29A4A ] BFE C:\Windows\System32\bfe.dll
22:45:36.0797 0x0c60 BFE - ok
22:45:36.0891 0x0c60 [ 1EA7969E3271CBC59E1730697DC74682, D511A34D63A6E0E6E7D1879068E2CD3D87ABEAF4936B2EA8CDDAD9F79D60FA04 ] BITS C:\Windows\System32\qmgr.dll
22:45:37.0062 0x0c60 BITS - ok
22:45:37.0093 0x0c60 [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys
22:45:37.0171 0x0c60 blbdrive - ok
22:45:37.0265 0x0c60 [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD, 17BFFC5DF609CE3B2F0CAB4BD6C118608C66A3AD86116A47E90B2BB7D8954122 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
22:45:37.0296 0x0c60 Bonjour Service - ok
22:45:37.0343 0x0c60 [ 6C02A83164F5CC0A262F4199F0871CF5, AD4632A6A203CB40970D848315D8ADB9C898349E20D8DF4107C2AE2703A2CF28 ] bowser C:\Windows\system32\DRIVERS\bowser.sys
22:45:37.0421 0x0c60 bowser - ok
22:45:37.0452 0x0c60 [ F09EEE9EDC320B5E1501F749FDE686C8, 66691114C42E12F4CC6DC4078D4D2FA4029759ACDAF1B59D17383487180E84E3 ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys
22:45:37.0515 0x0c60 BrFiltLo - ok
22:45:37.0546 0x0c60 [ B114D3098E9BDB8BEA8B053685831BE6, 0ED23C1897F35FA00B9C2848DE4ED200E18688AA7825674888054BBC3A3EB92C ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys
22:45:37.0608 0x0c60 BrFiltUp - ok
22:45:37.0671 0x0c60 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694, 40011138869F5496A3E78D38C9900B466B6F3877526AC22952DCD528173F4645 ] Browser C:\Windows\System32\browser.dll
22:45:37.0686 0x0c60 Browser - ok
22:45:37.0702 0x0c60 [ 43BEA8D483BF1870F018E2D02E06A5BD, 4E6F5A5FD8C796A110B0DC9FF29E31EA78C04518FC1C840EF61BABD58AB10272 ] Brserid C:\Windows\System32\Drivers\Brserid.sys
22:45:37.0827 0x0c60 Brserid - ok
22:45:37.0858 0x0c60 [ A6ECA2151B08A09CACECA35C07F05B42, E2875BB7768ABAF38C3377007AA0A3C281503474D1831E396FB6599721586B0C ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys
22:45:37.0920 0x0c60 BrSerWdm - ok
22:45:37.0967 0x0c60 [ B79968002C277E869CF38BD22CD61524, 50631836502237AF4893ECDCEA43B9031C3DE97433F594D46AF7C3C77F331983 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys
22:45:37.0998 0x0c60 BrUsbMdm - ok
22:45:37.0998 0x0c60 [ A87528880231C54E75EA7A44943B38BF, 4C8BBB29FDA76A96840AA47A8613C15D4466F9273A13941C19507008629709C9 ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys
22:45:38.0014 0x0c60 BrUsbSer - ok
22:45:38.0076 0x0c60 [ CF98190A94F62E405C8CB255018B2315, E1B2540023C4FE9FD588E4B6AE6347DFA565EB3898F21E5360882BF3E8B5E781 ] BthEnum C:\Windows\system32\DRIVERS\BthEnum.sys
22:45:38.0107 0x0c60 BthEnum - ok
22:45:38.0123 0x0c60 [ 9DA669F11D1F894AB4EB69BF546A42E8, B498B8B6CEF957B73179D1ADAF084BBB57BB3735D810F9BE2C7B1D58A4FD25A4 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys
22:45:38.0154 0x0c60 BTHMODEM - ok
22:45:38.0185 0x0c60 [ 02DD601B708DD0667E1331FA8518E9FF, 7DE6CC4DBB621CD03B01D9CE6CF66EAFE31D39030A391562CD0E278E1D70ADE1 ] BthPan C:\Windows\system32\DRIVERS\bthpan.sys
22:45:38.0248 0x0c60 BthPan - ok
22:45:38.0310 0x0c60 [ 738D0E9272F59EB7A1449C3EC118E6C4, FE3D32C2A5E4DC21376A0F89C0B2EE024ECF1A3FB99213CC9BBC986ADF7AF080 ] BTHPORT C:\Windows\system32\Drivers\BTHport.sys
22:45:38.0341 0x0c60 BTHPORT - ok
22:45:38.0419 0x0c60 [ 95F9C2976059462CBBF227F7AAB10DE9, 2797AE919FF7606B070FB039CECDB0707CD2131DCAC09C5DF14F443D881C9F34 ] bthserv C:\Windows\system32\bthserv.dll
22:45:38.0513 0x0c60 bthserv - ok
22:45:38.0591 0x0c60 [ F188B7394D81010767B6DF3178519A37, 576304E92FD94908F093A6AB5F4D328F25829BE32EC3CA0D29EBFDF5DE83539B ] BTHUSB C:\Windows\system32\Drivers\BTHUSB.sys
22:45:38.0638 0x0c60 BTHUSB - ok
22:45:38.0669 0x0c60 [ B8BD2BB284668C84865658C77574381A, 6C55BA288B626DF172FDFEA0BD7027FAEBA1F44EF20AB55160D7C7DC6E717D65 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys
22:45:38.0763 0x0c60 cdfs - ok
22:45:38.0903 0x0c60 [ D6696435EEFD7BBDB4226C60A5B343DC, FFD2A3C554AD30EFD2C68250D2F0C032C0560F3243814CB3602FA76B2CF59523 ] CDMA Device Service C:\Program Files (x86)\Samsung\USB Drivers\26_VIA_driver2\amd64\VIAService.exe
22:45:38.0934 0x0c60 CDMA Device Service - detected UnsignedFile.Multi.Generic ( 1 )
22:45:41.0789 0x0c60 Detect skipped due to KSN trusted
22:45:41.0789 0x0c60 CDMA Device Service - ok
22:45:41.0836 0x0c60 [ F036CE71586E93D94DAB220D7BDF4416, BD07AAD9E20CEAF9FC84E4977C55EA2C45604A2C682AC70B9B9A2199B6713D5B ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys
22:45:41.0898 0x0c60 cdrom - ok
22:45:41.0961 0x0c60 [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] CertPropSvc C:\Windows\System32\certprop.dll
22:45:42.0070 0x0c60 CertPropSvc - ok
22:45:42.0085 0x0c60 [ D7CD5C4E1B71FA62050515314CFB52CF, 513B5A849899F379F0BC6AB3A8A05C3493C2393C95F036612B96EC6E252E1C64 ] circlass C:\Windows\system32\drivers\circlass.sys
22:45:42.0101 0x0c60 circlass - ok
22:45:42.0132 0x0c60 [ FE1EC06F2253F691FE36217C592A0206, B9F122DB5E665ECDF29A5CB8BB6B531236F31A54A95769D6C5C1924C87FE70CE ] CLFS C:\Windows\system32\CLFS.sys
22:45:42.0148 0x0c60 CLFS - ok
22:45:42.0241 0x0c60 [ D88040F816FDA31C3B466F0FA0918F29, 39D3630E623DA25B8444B6D3AAAB16B98E7E289C5619E19A85D47B74C71449F3 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
22:45:42.0273 0x0c60 clr_optimization_v2.0.50727_32 - ok
22:45:42.0335 0x0c60 [ D1CEEA2B47CB998321C579651CE3E4F8, 654013B8FD229A50017B08DEC6CA19C7DDA8CE0771260E057A92625201D539B1 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
22:45:42.0366 0x0c60 clr_optimization_v2.0.50727_64 - ok
22:45:42.0507 0x0c60 [ E87213F37A13E2B54391E40934F071D0, 7EB221127EFB5BF158FB03D18EFDA2C55FB6CE3D1A1FE69C01D70DBED02C87E5 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
22:45:42.0553 0x0c60 clr_optimization_v4.0.30319_32 - ok
22:45:42.0631 0x0c60 clr_optimization_v4.0.30319_64 - ok
22:45:42.0647 0x0c60 [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] CmBatt C:\Windows\system32\drivers\CmBatt.sys
22:45:42.0725 0x0c60 CmBatt - ok
22:45:42.0772 0x0c60 [ E19D3F095812725D88F9001985B94EDD, 46243C5CCC4981CAC6FA6452FFCEC33329BF172448F1852D52592C9342E0E18B ] cmdide C:\Windows\system32\drivers\cmdide.sys
22:45:42.0803 0x0c60 cmdide - ok
22:45:42.0865 0x0c60 [ EBF28856F69CF094A902F884CF989706, AD6C9F0BC20AA49EEE5478DA0F856F0EA2B414B63208C5FFB03C9D7F5B59765F ] CNG C:\Windows\system32\Drivers\cng.sys
22:45:42.0897 0x0c60 CNG - ok
22:45:42.0912 0x0c60 [ 102DE219C3F61415F964C88E9085AD14, CD74CB703381F1382C32CF892FF2F908F4C9412E1BC77234F8FEA5D4666E1BF1 ] Compbatt C:\Windows\system32\drivers\compbatt.sys
22:45:42.0912 0x0c60 Compbatt - ok
22:45:42.0943 0x0c60 [ 03EDB043586CCEBA243D689BDDA370A8, 0E4523AA332E242D5C2C61C5717DBA5AB6E42DADB5A7E512505FC2B6CC224959 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys
22:45:43.0006 0x0c60 CompositeBus - ok
22:45:43.0006 0x0c60 COMSysApp - ok
22:45:43.0084 0x0c60 [ 1C827878A998C18847245FE1F34EE597, 41EF7443D8B2733AA35CAC64B4F5F74FAC8BB0DA7D3936B69EC38E2DC3972E60 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys
22:45:43.0115 0x0c60 crcdisk - ok
22:45:43.0177 0x0c60 [ 6B400F211BEE880A37A1ED0368776BF4, 2F27C6FA96A1C8CBDA467846DA57E63949A7EA37DB094B13397DDD30114295BD ] CryptSvc C:\Windows\system32\cryptsvc.dll
22:45:43.0209 0x0c60 CryptSvc - ok
22:45:43.0333 0x0c60 [ FD557A50A65E44041CD2FCEF4BEB04DB, 746D5958F7198895D35A23566D3736D993D57726BF59D91421D8091C48926A26 ] cvhsvc C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
22:45:43.0365 0x0c60 cvhsvc - ok
22:45:43.0427 0x0c60 [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] DcomLaunch C:\Windows\system32\rpcss.dll
22:45:43.0505 0x0c60 DcomLaunch - ok
22:45:43.0614 0x0c60 [ 3CEC7631A84943677AA8FA8EE5B6B43D, 32061DAC9ED6C1EBA3B367B18D0E965AEEC2DF635DCF794EC39D086D32503AC5 ] defragsvc C:\Windows\System32\defragsvc.dll
22:45:43.0661 0x0c60 defragsvc - ok
22:45:43.0677 0x0c60 [ 9BB2EF44EAA163B29C4A4587887A0FE4, 03667BC3EA5003F4236929C10F23D8F108AFCB29DB5559E751FB26DFB318636F ] DfsC C:\Windows\system32\Drivers\dfsc.sys
22:45:43.0723 0x0c60 DfsC - ok
22:45:43.0755 0x0c60 [ 43D808F5D9E1A18E5EEB5EBC83969E4E, C10D1155D71EABE4ED44C656A8F13078A8A4E850C4A8FBB92D52D173430972B8 ] Dhcp C:\Windows\system32\dhcpcore.dll
22:45:43.0770 0x0c60 Dhcp - ok
22:45:43.0786 0x0c60 [ 13096B05847EC78F0977F2C0F79E9AB3, 1E44981B684F3E56F5D2439BB7FA78BD1BC876BB2265AE089AEC68F241B05B26 ] discache C:\Windows\system32\drivers\discache.sys
22:45:43.0801 0x0c60 discache - ok
22:45:43.0817 0x0c60 [ 9819EEE8B5EA3784EC4AF3B137A5244C, 571BC886E87C888DA96282E381A746D273B58B9074E84D4CA91275E26056D427 ] Disk C:\Windows\system32\drivers\disk.sys
22:45:43.0833 0x0c60 Disk - ok
22:45:43.0879 0x0c60 [ 16835866AAA693C7D7FCEBA8FFF706E4, 15891558F7C1F2BB57A98769601D447ED0D952354A8BB347312D034DC03E0242 ] Dnscache C:\Windows\System32\dnsrslvr.dll
22:45:43.0942 0x0c60 Dnscache - ok
22:45:43.0973 0x0c60 [ B1FB3DDCA0FDF408750D5843591AFBC6, AB6AD9C5E7BA2E3646D0115B67C4800D1CB43B4B12716397657C7ADEEE807304 ] dot3svc C:\Windows\System32\dot3svc.dll
22:45:44.0035 0x0c60 dot3svc - ok
22:45:44.0067 0x0c60 [ B26F4F737E8F9DF4F31AF6CF31D05820, 394BBBED4EC7FAD4110F62A43BFE0801D4AC56FFAC6C741C69407B26402311C7 ] DPS C:\Windows\system32\dps.dll
22:45:44.0129 0x0c60 DPS - ok
22:45:44.0191 0x0c60 [ 9B19F34400D24DF84C858A421C205754, 967AF267B4124BADA8F507CEBF25F2192D146A4D63BE71B45BFC03C5DA7F21A7 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys
22:45:44.0238 0x0c60 drmkaud - ok
22:45:44.0332 0x0c60 [ 88612F1CE3BF42256913BF6E61C70D52, 7CF190F83FA8F15C33008EB381D3E345CEF37CBC046227DED26B36799EF4D9A7 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys
22:45:44.0379 0x0c60 DXGKrnl - ok
22:45:44.0457 0x0c60 [ 82352EDFD6A50FB687A9FAA4D73EF13D, 44E6A97BCDE4EFD37731BD91DB66F6CA49783D8723923FFB0850436B4F7A2DCD ] e1qexpress C:\Windows\system32\DRIVERS\e1q62x64.sys
22:45:44.0472 0x0c60 e1qexpress - ok
22:45:44.0535 0x0c60 [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] EapHost C:\Windows\System32\eapsvc.dll
22:45:44.0613 0x0c60 EapHost - ok
22:45:44.0753 0x0c60 [ DC5D737F51BE844D8C82C695EB17372F, 6D4022D9A46EDE89CEF0FAEADCC94C903234DFC460C0180D24FF9E38E8853017 ] ebdrv C:\Windows\system32\drivers\evbda.sys
22:45:44.0878 0x0c60 ebdrv - ok
22:45:44.0909 0x0c60 [ 204F3F58212B3E422C90BD9691A2DF28, D748A8CEE4D59B4248C9B1ACA5155D0FF6635A29564B4391B7FAC6261F93FE99 ] EFS C:\Windows\System32\lsass.exe
22:45:44.0971 0x0c60 EFS - ok
22:45:45.0096 0x0c60 [ C4002B6B41975F057D98C439030CEA07, 3D2484FBB832EFB90504DD406ED1CF3065139B1FE1646471811F3A5679EF75F1 ] ehRecvr C:\Windows\ehome\ehRecvr.exe
22:45:45.0205 0x0c60 ehRecvr - ok
22:45:45.0221 0x0c60 [ 4705E8EF9934482C5BB488CE28AFC681, 359E9EC5693CE0BE89082E1D5D8F5C5439A5B985010FF0CB45C11E3CFE30637D ] ehSched C:\Windows\ehome\ehsched.exe
22:45:45.0268 0x0c60 ehSched - ok
22:45:45.0346 0x0c60 [ 343ADA10D948DB29251F2D9C809AF204, CF69704755EC2643DFD245AE1D4E15D77F306AEB1A576FFA159453DE1A7345CB ] EIO64 C:\Windows\system32\DRIVERS\EIO64.sys
22:45:45.0424 0x0c60 EIO64 - ok
22:45:45.0486 0x0c60 [ 0E5DA5369A0FCAEA12456DD852545184, 9A64AC5396F978C3B92794EDCE84DCA938E4662868250F8C18FA7C2C172233F8 ] elxstor C:\Windows\system32\drivers\elxstor.sys
22:45:45.0549 0x0c60 elxstor - ok
22:45:45.0564 0x0c60 [ 34A3C54752046E79A126E15C51DB409B, 7D5B5E150C7C73666F99CBAFF759029716C86F16B927E0078D77F8A696616D75 ] ErrDev C:\Windows\system32\drivers\errdev.sys
22:45:45.0595 0x0c60 ErrDev - ok
22:45:45.0627 0x0c60 [ 4166F82BE4D24938977DD1746BE9B8A0, 24121751B7306225AD1C808442D7B030DEF377E9316AA0A3C5C7460E87317881 ] EventSystem C:\Windows\system32\es.dll
22:45:45.0705 0x0c60 EventSystem - ok
22:45:45.0751 0x0c60 [ A510C654EC00C1E9BDD91EEB3A59823B, 76CD277730F7B08D375770CD373D786160F34D1481AF0536BA1A5D2727E255F5 ] exfat C:\Windows\system32\drivers\exfat.sys
22:45:45.0845 0x0c60 exfat - ok
22:45:45.0892 0x0c60 [ 0ADC83218B66A6DB380C330836F3E36D, 798D6F83B5DBCC1656595E0A96CF12087FCCBE19D1982890D0CE5F629B328B29 ] fastfat C:\Windows\system32\drivers\fastfat.sys
22:45:45.0939 0x0c60 fastfat - ok
22:45:46.0001 0x0c60 [ DBEFD454F8318A0EF691FDD2EAAB44EB, 7F52AE222FF28503B6FC4A5852BD0CAEAF187BE69AF4B577D3DE474C24366099 ] Fax C:\Windows\system32\fxssvc.exe
22:45:46.0110 0x0c60 Fax - ok
22:45:46.0141 0x0c60 [ D765D19CD8EF61F650C384F62FAC00AB, 9F0A483A043D3BA873232AD3BA5F7BF9173832550A27AF3E8BD433905BD2A0EE ] fdc C:\Windows\system32\drivers\fdc.sys
22:45:46.0204 0x0c60 fdc - ok
22:45:46.0219 0x0c60 [ 0438CAB2E03F4FB61455A7956026FE86, 6D4DDC2973DB25CE0C7646BC85EFBCC004EBE35EA683F62162AE317C6F1D8DFE ] fdPHost C:\Windows\system32\fdPHost.dll
22:45:46.0329 0x0c60 fdPHost - ok
22:45:46.0344 0x0c60 [ 802496CB59A30349F9A6DD22D6947644, 52D59D3D628D5661F83F090F33F744F6916E0CC1F76E5A33983E06EB66AE19F8 ] FDResPub C:\Windows\system32\fdrespub.dll
22:45:46.0375 0x0c60 FDResPub - ok
22:45:46.0391 0x0c60 [ 655661BE46B5F5F3FD454E2C3095B930, 549C8E2A2A37757E560D55FFA6BFDD838205F17E40561E67F0124C934272CD1A ] FileInfo C:\Windows\system32\drivers\fileinfo.sys
22:45:46.0407 0x0c60 FileInfo - ok
22:45:46.0407 0x0c60 [ 5F671AB5BC87EEA04EC38A6CD5962A47, 6B61D3363FF3F9C439BD51102C284972EAE96ACC0683B9DC7E12D25D0ADC51B6 ] Filetrace C:\Windows\system32\drivers\filetrace.sys
22:45:46.0453 0x0c60 Filetrace - ok
22:45:46.0547 0x0c60 [ C172A0F53008EAEB8EA33FE10E177AF5, 9175A95B323696D1B35C9EFEB7790DD64E6EE0B7021E6C18E2F81009B169D77B ] flpydisk C:\Windows\system32\drivers\flpydisk.sys
22:45:46.0594 0x0c60 flpydisk - ok
22:45:46.0656 0x0c60 [ DA6B67270FD9DB3697B20FCE94950741, F621A4462C9F2904063578C427FAF22D7D66AE9967605C11C798099817CE5331 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys
22:45:46.0687 0x0c60 FltMgr - ok
22:45:46.0843 0x0c60 [ C4C183E6551084039EC862DA1C945E3D, 0874A2ACDD24D64965AA9A76E9C818E216880AE4C9A2E07ED932EE404585CEE6 ] FontCache C:\Windows\system32\FntCache.dll
22:45:46.0921 0x0c60 FontCache - ok
22:45:46.0999 0x0c60 [ A8B7F3818AB65695E3A0BB3279F6DCE6, 89FCF10F599767E67A1E011753E34DA44EAA311F105DBF69549009ED932A60F0 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
22:45:47.0031 0x0c60 FontCache3.0.0.0 - ok
22:45:47.0046 0x0c60 [ D43703496149971890703B4B1B723EAC, F06397B2EDCA61629249D2EF1CBB7827A8BEAB8488246BD85EF6AE1363C0DA6E ] FsDepends C:\Windows\system32\drivers\FsDepends.sys
22:45:47.0062 0x0c60 FsDepends - ok
22:45:47.0109 0x0c60 [ 6BD9295CC032DD3077C671FCCF579A7B, 83622FBB0CB923798E7E584BF53CAAF75B8C016E3FF7F0FA35880FF34D1DFE33 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys
22:45:47.0140 0x0c60 Fs_Rec - ok
22:45:47.0218 0x0c60 [ 8F6322049018354F45F05A2FD2D4E5E0, 73BF0FB4EBD7887E992DDEBB79E906958D6678F8D1107E8C368F5A0514D80359 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys
22:45:47.0249 0x0c60 fvevol - ok
22:45:47.0265 0x0c60 [ 8C778D335C9D272CFD3298AB02ABE3B6, 85F0B13926B0F693FA9E70AA58DE47100E4B6F893772EBE4300C37D9A36E6005 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys
22:45:47.0265 0x0c60 gagp30kx - ok
22:45:47.0499 0x0c60 [ 9A0C359ACBB8D5A305A0235001B44DC9, 308351F614E7C1995C4C90CE7E38BFCD7ADF49E994844FDE46FAC50660D2AE06 ] Garmin Core Update Service C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe
22:45:47.0514 0x0c60 Garmin Core Update Service - ok
22:45:47.0639 0x0c60 [ 8E98D21EE06192492A5671A6144D092F, B8F656B34D361EA5AFB47F3A67AB2221580DADA59C8CD0CB83181E4AD8B562B4 ] GEARAspiWDM C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
22:45:47.0670 0x0c60 GEARAspiWDM - ok
22:45:47.0733 0x0c60 [ A27A06D8359BC5202F2F8E3240DE205F, C2BB64106D6894E6CF45121FE3ECCDE2A00CAE9268CF5ECA11F436C10DBFC6F0 ] GfExperienceService C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
22:45:47.0795 0x0c60 GfExperienceService - ok
22:45:47.0857 0x0c60 [ 277BBC7E1AA1EE957F573A10ECA7EF3A, 2EE60B924E583E847CC24E78B401EF95C69DB777A5B74E1EC963E18D47B94D24 ] gpsvc C:\Windows\System32\gpsvc.dll
22:45:47.0982 0x0c60 gpsvc - ok
22:45:48.0123 0x0c60 [ 51508F0C2476177E50C31B0BBFBF1BDB, 3F62A05181D54711180C8727AC66D624AFA7FC816A4ACC4DC0CFCF2D2DBE7F87 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
22:45:48.0154 0x0c60 gupdate - ok
22:45:48.0185 0x0c60 [ 51508F0C2476177E50C31B0BBFBF1BDB, 3F62A05181D54711180C8727AC66D624AFA7FC816A4ACC4DC0CFCF2D2DBE7F87 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
22:45:48.0185 0x0c60 gupdatem - ok
22:45:48.0201 0x0c60 [ 1E6438D4EA6E1174A3B3B1EDC4DE660B, F9995CFEC7BBFE10B06EEE04CA6B49658275C43096E57747BFF9C2C31A0F9011 ] hamachi C:\Windows\system32\DRIVERS\hamachi.sys
22:45:48.0201 0x0c60 hamachi - ok
22:45:48.0216 0x0c60 [ F2523EF6460FC42405B12248338AB2F0, B2F3DE8DE1F512D871BC2BC2E8D0E33AB03335BFBC07627C5F88B65024928E19 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys
22:45:48.0341 0x0c60 hcw85cir - ok
22:45:48.0419 0x0c60 [ 975761C778E33CD22498059B91E7373A, 8304E15FBE6876BE57263A03621365DA8C88005EAC532A770303C06799D915D9 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
22:45:48.0481 0x0c60 HdAudAddService - ok
22:45:48.0528 0x0c60 [ 97BFED39B6B79EB12CDDBFEED51F56BB, 3CF981D668FB2381E52AF2E51E296C6CFB47B0D62249645278479D0111A47955 ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys
22:45:48.0559 0x0c60 HDAudBus - ok
22:45:48.0591 0x0c60 [ 78E86380454A7B10A5EB255DC44A355F, 11F3ED7ACFFA3024B9BD504F81AC39F5B4CED5A8A425E8BADF7132EFEDB9BD64 ] HidBatt C:\Windows\system32\drivers\HidBatt.sys
22:45:48.0606 0x0c60 HidBatt - ok
22:45:48.0637 0x0c60 [ 7FD2A313F7AFE5C4DAB14798C48DD104, 94CBFD4506CBDE4162CEB3367BAB042D19ACA6785954DC0B554D4164B9FCD0D4 ] HidBth C:\Windows\system32\drivers\hidbth.sys
22:45:48.0669 0x0c60 HidBth - ok
22:45:48.0684 0x0c60 [ 0A77D29F311B88CFAE3B13F9C1A73825, 8615DC6CEFB591505CE16E054A71A4F371B827DDFD5E980777AB4233DCFDA01D ] HidIr C:\Windows\system32\drivers\hidir.sys
22:45:48.0715 0x0c60 HidIr - ok
22:45:48.0747 0x0c60 [ BD9EB3958F213F96B97B1D897DEE006D, 4D01CBF898B528B3A4E5A683DF2177300AFABD7D4CB51F1A7891B1B545499631 ] hidserv C:\Windows\system32\hidserv.dll
22:45:48.0762 0x0c60 hidserv - ok
22:45:48.0825 0x0c60 [ 9592090A7E2B61CD582B612B6DF70536, FD11D5E02C32D658B28FCC35688AB66CCB5D3A0A0D74C82AE0F0B6C67B568A0F ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys
22:45:48.0840 0x0c60 HidUsb - ok
22:45:48.0871 0x0c60 [ 387E72E739E15E3D37907A86D9FF98E2, 9935BE2E58788E79328293AF2F202CB0F6042441B176F75ACC5AEA93C8E05531 ] hkmsvc C:\Windows\system32\kmsvc.dll
22:45:48.0965 0x0c60 hkmsvc - ok
22:45:48.0996 0x0c60 [ EFDFB3DD38A4376F93E7985173813ABD, 70402FA73A5A2A8BB557AAC8F531E373077D28DE5F40A1F3F14B940BE01CD2E1 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
22:45:49.0012 0x0c60 HomeGroupListener - ok
22:45:49.0043 0x0c60 [ 908ACB1F594274965A53926B10C81E89, 7D34A742AC486294D82676F8465A3EF26C8AC3317C32B63F62031CB007CFC208 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
22:45:49.0121 0x0c60 HomeGroupProvider - ok
22:45:49.0293 0x0c60 [ 5DA42D24712E00728CEA2342A65009B2, 73EC5250DCFD556525B24B3CA66C64AC7747E77652A2AD6119936A59A9E8562A ] hpqcxs08 C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll
22:45:49.0339 0x0c60 hpqcxs08 - ok
22:45:49.0355 0x0c60 [ D86A39BF100069444D026D22D9A6E555, 7B24D48D5BA67704C88697FADB64364E0E64D26259408E3C219820C5404C5EEC ] hpqddsvc C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll
22:45:49.0371 0x0c60 hpqddsvc - ok
22:45:49.0371 0x0c60 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC, E9E6A1665740CFBC2DD321010007EF42ABA2102AEB9772EE8AA3354664B1E205 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys
22:45:49.0386 0x0c60 HpSAMD - ok
22:45:49.0480 0x0c60 [ F37882F128EFACEFE353E0BAE2766909, 2F9D21613500F092DFC0DB879180B549EE615D9B07408A5CC1A7F84663B2F47A ] HPSLPSVC C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL
22:45:49.0527 0x0c60 HPSLPSVC - detected UnsignedFile.Multi.Generic ( 1 )
22:45:59.0651 0x0c60 HPSLPSVC ( UnsignedFile.Multi.Generic ) - warning
22:46:19.0744 0x0c60 [ 0EA7DE1ACB728DD5A369FD742D6EEE28, 21C489412EB33A12B22290EB701C19BA57006E8702E76F730954F0784DDE9779 ] HTTP C:\Windows\system32\drivers\HTTP.sys
22:46:19.0806 0x0c60 HTTP - ok
22:46:19.0822 0x0c60 [ A5462BD6884960C9DC85ED49D34FF392, 53E65841AF5B06A2844D0BB6FC4DD3923A323FFA0E4BFC89B3B5CAFB592A3D53 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys
22:46:19.0822 0x0c60 hwpolicy - ok
22:46:19.0853 0x0c60 [ FA55C73D4AFFA7EE23AC4BE53B4592D3, 65CDDC62B89A60E942C5642C9D8B539EFB69DA8069B4A2E54978154B314531CD ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys
22:46:19.0869 0x0c60 i8042prt - ok
22:46:19.0931 0x0c60 [ AAAF44DB3BD0B9D1FB6969B23ECC8366, 805AA4A9464002D1AB3832E4106B2AAA1331F4281367E75956062AAE99699385 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys
22:46:19.0962 0x0c60 iaStorV - ok
22:46:20.0087 0x0c60 [ 1CF03C69B49ACB70C722DF92755C0C8C, C227850C133F29BB9DED91A26A22AE077FD69629CEF35B67D305F016C4BDAA81 ] IDriverT C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
22:46:20.0103 0x0c60 IDriverT - detected UnsignedFile.Multi.Generic ( 1 )
22:46:30.0118 0x0c60 IDriverT ( UnsignedFile.Multi.Generic ) - warning
22:46:30.0118 0x0c60 Force sending object to P2P due to detect: IDriverT
22:46:35.0453 0x0c60 Object send P2P result: true
22:46:38.0355 0x0c60 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD, 2B9512324DBA4A97F6AC34E8067EE08E3B6874CD60F6CB4209AFC22A34D2BE99 ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
22:46:38.0386 0x0c60 idsvc - ok
22:46:38.0417 0x0c60 IEEtwCollectorService - ok
22:46:38.0464 0x0c60 [ 5C18831C61933628F5BB0EA2675B9D21, 5CD9DE2F8C0256623A417B5C55BF55BB2562BD7AB2C3C83BB3D9886C2FBDA4E4 ] iirsp C:\Windows\system32\drivers\iirsp.sys
22:46:38.0495 0x0c60 iirsp - ok
22:46:38.0651 0x0c60 [ 344789398EC3EE5A4E00C52B31847946, 3DA5F08E4B46F4E63456AA588D49E39A6A09A97D0509880C00F327623DB6122D ] IKEEXT C:\Windows\System32\ikeext.dll
22:46:38.0682 0x0c60 IKEEXT - ok
22:46:38.0948 0x0c60 [ 26407A11D7E222AFB7CE32700ABBD9D1, A327A91EFD71B838ABF77FC75ACA6349E654B5A66C5E45B56B9E0A2BDCE397C7 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
22:46:39.0150 0x0c60 IntcAzAudAddService - ok
22:46:39.0197 0x0c60 [ F00F20E70C6EC3AA366910083A0518AA, E2F3E9FFD82C802C8BAC309893A3664ACF16A279959C0FDECCA64C3D3C60FD22 ] intelide C:\Windows\system32\drivers\intelide.sys
22:46:39.0197 0x0c60 intelide - ok
22:46:39.0275 0x0c60 [ ADA036632C664CAA754079041CF1F8C1, F2386CC09AC6DE4C54189154F7D91C1DB7AA120B13FAE8BA5B579ACF99FCC610 ] intelppm C:\Windows\system32\drivers\intelppm.sys
22:46:39.0338 0x0c60 intelppm - ok
22:46:39.0447 0x0c60 [ 068EC06F3B6DD7B81B365D8FD2CE27E6, EDAD8F5B3F929C7C6200F38B862B2A03F310ADB55A04007DB6FF5F4F698547A4 ] Intel® PROSet Monitoring Service C:\Windows\system32\IProsetMonitor.exe
22:46:39.0462 0x0c60 Intel® PROSet Monitoring Service - ok
22:46:39.0525 0x0c60 [ A01C412699B6F21645B2885C2BAE4454, EA85BBE63D6F66F7EFEE7007E770AF820D57F914C7F179C5FEE3EF2845F19C41 ] IOMap C:\Windows\system32\drivers\IOMap64.sys
22:46:39.0525 0x0c60 IOMap - ok
22:46:39.0572 0x0c60 [ 098A91C54546A3B878DAD6A7E90A455B, 044CCE2A0DF56EBE1EFD99B4F6F0A5B9EE12498CA358CF4B2E3A1CFD872823AA ] IPBusEnum C:\Windows\system32\ipbusenum.dll
22:46:39.0665 0x0c60 IPBusEnum - ok
22:46:39.0681 0x0c60 [ C9F0E1BD74365A8771590E9008D22AB6, 728BC5A6AAE499FDC50EB01577AF16D83C2A9F3B09936DD2A89C01E074BA8E51 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys
22:46:39.0743 0x0c60 IpFilterDriver - ok
22:46:39.0837 0x0c60 [ 08C2957BB30058E663720C5606885653, E13EDF6701512E2A9977A531454932CA5023087CB50E1D2F416B8BCDD92B67BE ] iphlpsvc C:\Windows\System32\iphlpsvc.dll
22:46:39.0930 0x0c60 iphlpsvc - ok
22:46:39.0962 0x0c60 [ 0FC1AEA580957AA8817B8F305D18CA3A, 7161E4DE91AAFC3FA8BF24FAE4636390C2627DB931505247C0D52C75A31473D9 ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys
22:46:39.0977 0x0c60 IPMIDRV - ok
22:46:39.0993 0x0c60 [ AF9B39A7E7B6CAA203B3862582E9F2D0, 67128BE7EADBE6BD0205B050F96E268948E8660C4BAB259FB0BE03935153D04E ] IPNAT C:\Windows\system32\drivers\ipnat.sys
22:46:40.0008 0x0c60 IPNAT - ok
22:46:40.0133 0x0c60 [ 635F7587F7576AA14871B850EB95BFB8, 75CB8F4D511964BB9104E93EF31D2DDF1227DACE1EDB9DE25AE9719835B6C34B ] iPod Service C:\Program Files\iPod\bin\iPodService.exe
22:46:40.0164 0x0c60 iPod Service - ok
22:46:40.0305 0x0c60 [ 3ABF5E7213EB28966D55D58B515D5CE9, A352BCC5B6B9A28805B15CAFB235676F1FAFF0D2394F88C03089EB157D6188AE ] IRENUM C:\Windows\system32\drivers\irenum.sys
22:46:40.0445 0x0c60 IRENUM - ok
22:46:40.0523 0x0c60 [ 2F7B28DC3E1183E5EB418DF55C204F38, D40410A760965925D6F10959B2043F7BD4F68EAFCF5E743AF11AD860BD136548 ] isapnp C:\Windows\system32\drivers\isapnp.sys
22:46:40.0554 0x0c60 isapnp - ok
22:46:40.0695 0x0c60 [ 96BB922A0981BC7432C8CF52B5410FE6, 236C05509B1040059B15021CBBDBDAF3B9C0F00910142BE5887B2C7561BAAFBA ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys
22:46:40.0742 0x0c60 iScsiPrt - ok
22:46:40.0788 0x0c60 [ 8BAECD09CF6DABB25C0C1BD262E0F7F7, B16A0BB2882B65FA8339BADB847EBF4800DD0166FEBEB21A8BC79DA8F9058157 ] JabraDFU C:\Windows\system32\Drivers\JabraMobileCsrDfuX64.sys
22:46:40.0820 0x0c60 JabraDFU - ok
22:46:40.0835 0x0c60 [ BC02336F1CBA7DCC7D1213BB588A68A5, 450C5BAD54CCE2AFCDFF1B6E7F8E1A8446D9D3255DF9D36C29A8F848048AAD93 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys
22:46:40.0851 0x0c60 kbdclass - ok
22:46:40.0866 0x0c60 [ 0705EFF5B42A9DB58548EEC3B26BB484, 86C6824ED7ED6FA8F306DB6319A0FD688AA91295AE571262F9D8E96A32225E99 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys
22:46:40.0882 0x0c60 kbdhid - ok
22:46:40.0898 0x0c60 [ 204F3F58212B3E422C90BD9691A2DF28, D748A8CEE4D59B4248C9B1ACA5155D0FF6635A29564B4391B7FAC6261F93FE99 ] KeyIso C:\Windows\system32\lsass.exe
22:46:40.0913 0x0c60 KeyIso - ok
22:46:40.0960 0x0c60 [ 353009DEDF918B2A51414F330CF72DEC, BF157D6E329F26E02FA16271B751B421396040DBB1D7BF9B2E0A21BC569672E2 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys
22:46:40.0991 0x0c60 KSecDD - ok
22:46:41.0007 0x0c60 [ 1C2D8E18AA8FD50CD04C15CC27F7F5AB, 4BA3B0F9F01BD47D66091D3AD86B69A523981D61DFB4D677F2CD39405B2DA989 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys
22:46:41.0022 0x0c60 KSecPkg - ok
22:46:41.0054 0x0c60 [ 6869281E78CB31A43E969F06B57347C4, 866A23E69B32A78D378D6CB3B3DA3695FFDFF0FEC3C9F68C8C3F988DF417044B ] ksthunk C:\Windows\system32\drivers\ksthunk.sys
22:46:41.0147 0x0c60 ksthunk - ok
22:46:41.0194 0x0c60 [ 6AB66E16AA859232F64DEB66887A8C9C, 5F2B579BEA8098A2994B0DECECDAE7B396E7B5DC5F09645737B9F28BEEA77FFF ] KtmRm C:\Windows\system32\msdtckrm.dll
22:46:41.0225 0x0c60 KtmRm - ok
22:46:41.0303 0x0c60 [ D9F42719019740BAA6D1C6D536CBDAA6, 8757599D0AE5302C4CE50861BEBA3A8DD14D7B0DBD916FD5404133688CDFCC40 ] LanmanServer C:\Windows\system32\srvsvc.dll
22:46:41.0366 0x0c60 LanmanServer - ok
22:46:41.0412 0x0c60 [ 851A1382EED3E3A7476DB004F4EE3E1A, B1C67F47DD594D092E6E258F01DF5E7150227CE3131A908A244DEE9F8A1FABF9 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
22:46:41.0475 0x0c60 LanmanWorkstation - ok
22:46:41.0537 0x0c60 LGDDCDevice - ok
22:46:41.0537 0x0c60 LGII2CDevice - ok
22:46:41.0600 0x0c60 [ 83D8BE94E1CBCBE2EA8372DB1A95A159, 28D18C7B93EFB6C83023D39A54489DDE98DE578AFCC06DD0712D00DE7CD48968 ] LightScribeService C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
22:46:41.0615 0x0c60 LightScribeService - detected UnsignedFile.Multi.Generic ( 1 )
22:46:44.0501 0x0c60 Detect skipped due to KSN trusted
22:46:44.0501 0x0c60 LightScribeService - ok
22:46:44.0532 0x0c60 [ 1538831CF8AD2979A04C423779465827, E1729B0CC4CEEE494A0B8817A8E98FF232E3A32FB023566EF0BC71A090262C0C ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys
22:46:44.0595 0x0c60 lltdio - ok
22:46:44.0626 0x0c60 [ C1185803384AB3FEED115F79F109427F, 0414FE73532DCAB17E906438A14711E928CECCD5F579255410C62984DD652700 ] lltdsvc C:\Windows\System32\lltdsvc.dll
22:46:44.0657 0x0c60 lltdsvc - ok
22:46:44.0657 0x0c60 [ F993A32249B66C9D622EA5592A8B76B8, EE64672A990C6145DC5601E2B8CDBE089272A72732F59AF9865DCBA8B1717E70 ] lmhosts C:\Windows\System32\lmhsvc.dll
22:46:44.0704 0x0c60 lmhosts - ok
22:46:44.0751 0x0c60 [ 1A93E54EB0ECE102495A51266DCDB6A6, DB6AA86AA36C3A7988BE96E87B5D3251BE7617C54EE8F894D9DC2E267FE3255B ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys
22:46:44.0766 0x0c60 LSI_FC - ok
22:46:44.0766 0x0c60 [ 1047184A9FDC8BDBFF857175875EE810, F2251EDB7736A26D388A0C5CC2FE5FB9C5E109CBB1E3800993554CB21D81AE4B ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys
22:46:44.0782 0x0c60 LSI_SAS - ok
22:46:44.0782 0x0c60 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93, 88D5740A4E9CC3FA80FA18035DAB441BDC5A039622D666BFDAA525CC9686BD06 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys
22:46:44.0798 0x0c60 LSI_SAS2 - ok
22:46:44.0813 0x0c60 [ 0504EACAFF0D3C8AED161C4B0D369D4A, 4D272237C189646F5C80822FD3CBA7C2728E482E2DAAF7A09C8AEF811C89C54D ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys
22:46:44.0829 0x0c60 LSI_SCSI - ok
22:46:44.0844 0x0c60 [ 43D0F98E1D56CCDDB0D5254CFF7B356E, 5BA498183B5C4996C694CB0A9A6B66CE6C7A460F6C91BEB9F305486FCC3B7B22 ] luafv C:\Windows\system32\drivers\luafv.sys
22:46:44.0876 0x0c60 luafv - ok
22:46:44.0907 0x0c60 [ 4CB64D7458ABD8396BCD389A69C8FC80, 99B363E6A3C3920002F9FA98E2AAE42C24F072CA03CD5DD9DC8881EC495F3C93 ] lvpepf64 C:\Windows\system32\DRIVERS\lv302a64.sys
22:46:44.0907 0x0c60 lvpepf64 - ok
22:46:44.0938 0x0c60 [ 0034F69D0007D3F77F6B96FA51228E85, 2A8B4ABF4AFE5E5F272678053399E3664D32F6CE2AEE34C8944C4E79973712A3 ] LVUSBS64 C:\Windows\system32\drivers\LVUSBS64.sys
22:46:44.0938 0x0c60 LVUSBS64 - ok
22:46:44.0985 0x0c60 [ 0BE09CD858ABF9DF6ED259D57A1A1663, 2FD28889B93C8E801F74C1D0769673A461671E0189D0A22C94509E3F0EEB7428 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll
22:46:45.0032 0x0c60 Mcx2Svc - ok
22:46:45.0047 0x0c60 [ A55805F747C6EDB6A9080D7C633BD0F4, 2DA0E83BF3C8ADEF6F551B6CC1C0A3F6149CDBE6EC60413BA1767C4DE425A728 ] megasas C:\Windows\system32\drivers\megasas.sys
22:46:45.0063 0x0c60 megasas - ok
22:46:45.0078 0x0c60 [ BAF74CE0072480C3B6B7C13B2A94D6B3, 85CBB4949C090A904464F79713A3418338753D20D7FB811E68F287FDAC1DD834 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys
22:46:45.0110 0x0c60 MegaSR - ok
22:46:45.0141 0x0c60 [ BA7E071E855D4C502916164A31B05D4D, 11B250AA98EAAB4A15A8796CABAFCFC20B8E049513BF66FFAA0F6C2BEED958A5 ] MHIKEY10 C:\Windows\system32\Drivers\MHIKEY10x64.sys
22:46:45.0188 0x0c60 MHIKEY10 - ok
22:46:45.0219 0x0c60 [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] MMCSS C:\Windows\system32\mmcss.dll
22:46:45.0266 0x0c60 MMCSS - ok
22:46:45.0297 0x0c60 [ 800BA92F7010378B09F9ED9270F07137, 94F9AF9E1BE80AE6AC39A2A74EF9FAB115DCAACC011D07DFA8D6A1DDC8A93342 ] Modem C:\Windows\system32\drivers\modem.sys
22:46:45.0375 0x0c60 Modem - ok
22:46:45.0406 0x0c60 [ B03D591DC7DA45ECE20B3B467E6AADAA, 701FB0CAD8138C58507BE28845D3E24CE269A040737C29885944A0D851238732 ] monitor C:\Windows\system32\DRIVERS\monitor.sys
22:46:45.0500 0x0c60 monitor - ok
22:46:45.0531 0x0c60 [ 7D27EA49F3C1F687D357E77A470AEA99, 7FE7CAF95959F127C6D932C01D539C06D80273C49A09761F6E8331C05B1A7EE7 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys
22:46:45.0578 0x0c60 mouclass - ok
22:46:45.0593 0x0c60 [ D3BF052C40B0C4166D9FD86A4288C1E6, 5E65264354CD94E844BF1838CA1B8E49080EFA34605A32CF2F6A47A2B97FC183 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys
22:46:45.0624 0x0c60 mouhid - ok
22:46:45.0656 0x0c60 [ 32E7A3D591D671A6DF2DB515A5CBE0FA, 47CED0B9067AE8BF5EEF60B17ADEE5906BEDCC56E4CB460B7BFBC12BB9A69E63 ] mountmgr C:\Windows\system32\drivers\mountmgr.sys
22:46:45.0702 0x0c60 mountmgr - ok
22:46:45.0843 0x0c60 [ 707E98CC15C2224C078C9E71FF1889BC, 958416FE081436FDBF7F2BEBBB2795C54CC4F3F349D6DF463296A7BBA3404F13 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
22:46:45.0874 0x0c60 MozillaMaintenance - ok
22:46:45.0890 0x0c60 [ A44B420D30BD56E145D6A2BC8768EC58, B1E4DCA5A1008FA7A0492DC091FB2B820406AE13FD3D44F124E89B1037AF09B8 ] mpio C:\Windows\system32\drivers\mpio.sys
22:46:45.0905 0x0c60 mpio - ok
22:46:45.0936 0x0c60 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F, 5A3FA2F110029CB4CC4384998EDB59203FDD65EC45E01B897FB684F8956EAD20 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys
22:46:45.0968 0x0c60 mpsdrv - ok
22:46:46.0014 0x0c60 [ 54FFC9C8898113ACE189D4AA7199D2C1, 65F585C87F3F710FD5793FDFA96B740AD8D4317B0C120F4435CCF777300EA4F2 ] MpsSvc C:\Windows\system32\mpssvc.dll
22:46:46.0061 0x0c60 MpsSvc - ok
22:46:46.0092 0x0c60 [ 1A4F75E63C9FB84B85DFFC6B63FD5404, 01AFA6DBB4CDE55FE4EA05BBE8F753A4266F8D072EA1EE01DB79F5126780C21F ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys
22:46:46.0139 0x0c60 MRxDAV - ok
22:46:46.0202 0x0c60 [ A5D9106A73DC88564C825D317CAC68AC, 0457B2AEA4E05A91D0E43F317894A614434D8CEBE35020785387F307E231FBE4 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys
22:46:46.0280 0x0c60 mrxsmb - ok
22:46:46.0311 0x0c60 [ D711B3C1D5F42C0C2415687BE09FC163, 9B3013AC60BD2D0FF52086658BA5FF486ADE15954A552D7DD590580E8BAE3EFF ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys
22:46:46.0326 0x0c60 mrxsmb10 - ok
22:46:46.0342 0x0c60 [ 9423E9D355C8D303E76B8CFBD8A5C30C, 220B33F120C2DD937FE4D5664F4B581DC0ACF78D62EB56B7720888F67B9644CC ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys
22:46:46.0389 0x0c60 mrxsmb20 - ok
22:46:46.0498 0x0c60 [ C25F0BAFA182CBCA2DD3C851C2E75796, 643E158A0948DF331807AEAA391F23960362E46C0A0CF6D22A99020EAE7B10F8 ] msahci C:\Windows\system32\drivers\msahci.sys
22:46:46.0498 0x0c60 msahci - ok
22:46:46.0545 0x0c60 [ DB801A638D011B9633829EB6F663C900, B34FD33A215ACCF2905F4B7D061686CDB1CB9C652147AF56AE14686C1F6E3C74 ] msdsm C:\Windows\system32\drivers\msdsm.sys
22:46:46.0560 0x0c60 msdsm - ok
22:46:46.0607 0x0c60 [ DE0ECE52236CFA3ED2DBFC03F28253A8, 2FBBEC4CACB5161F68D7C2935852A5888945CA0F107CF8A1C01F4528CE407DE3 ] MSDTC C:\Windows\System32\msdtc.exe
22:46:46.0638 0x0c60 MSDTC - ok
22:46:46.0701 0x0c60 [ AA3FB40E17CE1388FA1BEDAB50EA8F96, 69F93E15536644C8FD679A20190CFE577F4985D3B1B4A4AA250A168615AE1E99 ] Msfs C:\Windows\system32\drivers\Msfs.sys
22:46:46.0779 0x0c60 Msfs - ok
22:46:46.0794 0x0c60 [ F9D215A46A8B9753F61767FA72A20326, 6F76642B45E0A7EF6BCAB8B37D55CCE2EAA310ED07B76D43FCB88987C2174141 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys
22:46:46.0826 0x0c60 mshidkmdf - ok
22:46:46.0841 0x0c60 [ D916874BBD4F8B07BFB7FA9B3CCAE29D, B229DA150713DEDBC4F05386C9D9DC3BC095A74F44F3081E88311AB73BC992A1 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys
22:46:46.0857 0x0c60 msisadrv - ok
22:46:46.0904 0x0c60 [ 808E98FF49B155C522E6400953177B08, F873F5BFF0984C5165DF67E92874D3F6EB8D86F9B5AD17013A0091CA33A1A3D5 ] MSiSCSI C:\Windows\system32\iscsiexe.dll
22:46:46.0982 0x0c60 MSiSCSI - ok
22:46:46.0982 0x0c60 msiserver - ok
22:46:47.0013 0x0c60 [ 49CCF2C4FEA34FFAD8B1B59D49439366, E5752EA57C7BDAD5F53E3BC441A415E909AC602CAE56234684FB8789A20396C7 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys
22:46:47.0091 0x0c60 MSKSSRV - ok
22:46:47.0122 0x0c60 [ BDD71ACE35A232104DDD349EE70E1AB3, 27464A66868513BE6A01B75D7FC5B0D6B71842E4E20CE3F76B15C071A0618BBB ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys
22:46:47.0216 0x0c60 MSPCLOCK - ok
22:46:47.0247 0x0c60 [ 4ED981241DB27C3383D72092B618A1D0, E12F121E641249DB3491141851B59E1496F4413EDF58E863388F1C229838DFCC ] MSPQM C:\Windows\system32\drivers\MSPQM.sys
22:46:47.0294 0x0c60 MSPQM - ok
22:46:47.0340 0x0c60 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D, 64E3BC613EC4872B1B344CBF71EE15BE195592E3244C1EE099C6F8B95A40F133 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys
22:46:47.0356 0x0c60 MsRPC - ok
22:46:47.0372 0x0c60 [ 0EED230E37515A0EAEE3C2E1BC97B288, B1D8F8A75006B6E99214CA36D27A8594EF8D952F315BEB201E9BAC9DE3E64D42 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys
22:46:47.0372 0x0c60 mssmbios - ok
22:46:47.0387 0x0c60 [ 2E66F9ECB30B4221A318C92AC2250779, DF175E1AB6962303E57F26DAE5C5C1E40B8640333F3E352A64F6A5F1301586CD ] MSTEE C:\Windows\system32\drivers\MSTEE.sys
22:46:47.0434 0x0c60 MSTEE - ok
22:46:47.0465 0x0c60 [ 7EA404308934E675BFFDE8EDF0757BCD, 306CD02D89CFCFE576242360ED5F9EEEDCAFC43CD43B7D2977AE960F9AEC3232 ] MTConfig C:\Windows\system32\drivers\MTConfig.sys
22:46:47.0481 0x0c60 MTConfig - ok
22:46:47.0496 0x0c60 [ F9A18612FD3526FE473C1BDA678D61C8, 32F7975B5BAA447917F832D9E3499B4B6D3E90D73F478375D0B70B36C524693A ] Mup C:\Windows\system32\Drivers\mup.sys
22:46:47.0496 0x0c60 Mup - ok
22:46:47.0528 0x0c60 [ 582AC6D9873E31DFA28A4547270862DD, BD540499F74E8F59A020D935D18E36A3A97C1A6EC59C8208436469A31B16B260 ] napagent C:\Windows\system32\qagentRT.dll
22:46:47.0590 0x0c60 napagent - ok
22:46:47.0668 0x0c60 [ 1EA3749C4114DB3E3161156FFFFA6B33, 54C2E77BCE1037711A11313AC25B8706109098C10A31AA03AEB7A185E97800D7 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys
22:46:47.0715 0x0c60 NativeWifiP - ok
22:46:47.0855 0x0c60 [ 9D1CCE440552500DED3A62F9D779CDB4, C6B3B1C891A8BA3F91CC1EC21919C4F80F4C9CAF88971AB6CA11F09820601EBD ] NAUpdate C:\Program Files (x86)\Nero\Update\NASvc.exe
22:46:47.0871 0x0c60 NAUpdate - ok
22:46:47.0964 0x0c60 [ 760E38053BF56E501D562B70AD796B88, F856E81A975D44F8684A6F2466549CEEDFAEB3950191698555A93A1206E0A42D ] NDIS C:\Windows\system32\drivers\ndis.sys
22:46:48.0011 0x0c60 NDIS - ok
22:46:48.0027 0x0c60 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC, D7E5446E83909AE25506BB98FBDD878A529C87963E3C1125C4ABAB25823572BC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys
22:46:48.0074 0x0c60 NdisCap - ok
22:46:48.0120 0x0c60 [ 30639C932D9FEF22B31268FE25A1B6E5, 32873D95339600F6EEFA51847D12C563FF01F320DC59055B242FA2887C99F9D6 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys
22:46:48.0198 0x0c60 NdisTapi - ok
22:46:48.0245 0x0c60 [ 136185F9FB2CC61E573E676AA5402356, BA3AD0A33416DA913B4242C6BE8C3E5812AD2B20BA6C11DD3094F2E8EB56E683 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys
22:46:48.0292 0x0c60 Ndisuio - ok
22:46:48.0339 0x0c60 [ 53F7305169863F0A2BDDC49E116C2E11, 881E9346D3C02405B7850ADC37E720990712EC9C666A0CE96E252A487FD2CE77 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys
22:46:48.0386 0x0c60 NdisWan - ok
22:46:48.0401 0x0c60 [ 015C0D8E0E0421B4CFD48CFFE2825879, 4242E2D42CCFC859B2C0275C5331798BC0BDA68E51CF4650B6E64B1332071023 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys
22:46:48.0432 0x0c60 NDProxy - ok
22:46:48.0479 0x0c60 [ 2334DC48997BA203B794DF3EE70521DB, 832F4EC1586C9669F2D54AB3B212943E43B87A33B24DCC8CDAD6A0264291EE2F ] Net Driver HPZ12 C:\Windows\system32\HPZinw12.dll
22:46:48.0479 0x0c60 Net Driver HPZ12 - detected UnsignedFile.Multi.Generic ( 1 )
22:46:58.0494 0x0c60 Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning
22:47:18.0587 0x0c60 [ EE00C544C025958AF50C7B199F3C8595, D774DB020D9C46D1AA0B2DB9FA2C36C4A9C38D904CC6929695321D32ACA0D4D1 ] Netaapl C:\Windows\system32\DRIVERS\netaapl64.sys
22:47:18.0634 0x0c60 Netaapl - ok
22:47:18.0665 0x0c60 [ 86743D9F5D2B1048062B14B1D84501C4, DBF6D6A60AB774FCB0F464FF2D285A7521D0A24006687B243AB46B17D8032062 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys
22:47:18.0743 0x0c60 NetBIOS - ok
22:47:18.0774 0x0c60 [ 09594D1089C523423B32A4229263F068, 7426A9B8BA27D3225928DDEFBD399650ABB90798212F56B7D12158AC22CCCE37 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys
22:47:18.0884 0x0c60 NetBT - ok
22:47:18.0915 0x0c60 [ 204F3F58212B3E422C90BD9691A2DF28, D748A8CEE4D59B4248C9B1ACA5155D0FF6635A29564B4391B7FAC6261F93FE99 ] Netlogon C:\Windows\system32\lsass.exe
22:47:18.0930 0x0c60 Netlogon - ok
22:47:19.0008 0x0c60 [ 847D3AE376C0817161A14A82C8922A9E, 37AE692B3481323134125EF58F2C3CBC20177371AF2F5874F53DD32A827CB936 ] Netman C:\Windows\System32\netman.dll
22:47:19.0149 0x0c60 Netman - ok
22:47:19.0211 0x0c60 [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
22:47:19.0258 0x0c60 NetMsmqActivator - ok
22:47:19.0274 0x0c60 [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
22:47:19.0320 0x0c60 NetPipeActivator - ok
22:47:19.0336 0x0c60 [ 5F28111C648F1E24F7DBC87CDEB091B8, 2E8645285921EDB98BB2173E11E57459C888D52E80D85791D169C869DE8813B9 ] netprofm C:\Windows\System32\netprofm.dll
22:47:19.0398 0x0c60 netprofm - ok
22:47:19.0430 0x0c60 [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
22:47:19.0445 0x0c60 NetTcpActivator - ok
22:47:19.0445 0x0c60 [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
22:47:19.0461 0x0c60 NetTcpPortSharing - ok
22:47:19.0476 0x0c60 [ 77889813BE4D166CDAB78DDBA990DA92, 2EF531AE502B943632EEC66A309A8BFCDD36120A5E1473F4AAF3C2393AD0E6A3 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys
22:47:19.0492 0x0c60 nfrd960 - ok
22:47:19.0508 0x0c60 [ 8AD77806D336673F270DB31645267293, E23F324913554A23CD043DD27D4305AF62F48C0561A0FC7B7811E55B74B1BE79 ] NlaSvc C:\Windows\System32\nlasvc.dll
22:47:19.0539 0x0c60 NlaSvc - ok
22:47:19.0632 0x0c60 [ C31FA031335EFF434B2D94278E74BCCE, F5DFD40C16E4013CBAD0E4FB8EF2B4419702B9C215218F69C4A2DD7C4C4C1E2B ] NPF C:\Windows\system32\DRIVERS\npf.sys
22:47:19.0664 0x0c60 NPF - ok
22:47:19.0695 0x0c60 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7, D8957EF7060A69DBB3CD6B2C45B1E4143592AB8D018471E17AC04668157DC67F ] Npfs C:\Windows\system32\drivers\Npfs.sys
22:47:19.0757 0x0c60 Npfs - ok
22:47:19.0773 0x0c60 [ D54BFDF3E0C953F823B3D0BFE4732528, 497A1DCC5646EC22119273216DF10D5442D16F83E4363770F507518CF6EAA53A ] nsi C:\Windows\system32\nsisvc.dll
22:47:19.0804 0x0c60 nsi - ok
22:47:19.0820 0x0c60 [ E7F5AE18AF4168178A642A9247C63001, 133023B7E4BA8049C4CAED3282BDD25571D1CC25FAC3B820C7F981D292689D76 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys
22:47:19.0835 0x0c60 nsiproxy - ok
22:47:19.0976 0x0c60 [ 1A29A59A4C5BA6F8C85062A613B7E2B2, CC137F499A12C724D4166C2D85E9F447413419A0683DAC6F1A802B7F210C77F1 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys
22:47:20.0054 0x0c60 Ntfs - ok
22:47:20.0085 0x0c60 [ 9899284589F75FA8724FF3D16AED75C1, 181188599FD5D4DE33B97010D9E0CAEABAB9A3EF50712FE7F9AA0735CD0666D6 ] Null C:\Windows\system32\drivers\Null.sys
22:47:20.0163 0x0c60 Null - ok
22:47:20.0225 0x0c60 [ C87B11EB78428853F9E8495C47E53C10, FAE479DB0812967B3FF968773BA998591B4F50BE4329B8349BCA7E6EAB1B0474 ] NVHDA C:\Windows\system32\drivers\nvhda64v.sys
22:47:20.0256 0x0c60 NVHDA - ok
22:47:20.0771 0x0c60 [ A6975E0E4BE34667933846DE2F28AEFC, DFCF194C457A80C8222821001626D089FB1D97A37CA4D50D92144CE324911A78 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys
22:47:21.0208 0x0c60 nvlddmkm - ok
22:47:21.0411 0x0c60 [ 507E699BD36530491BA0F95251B22F06, BDE6EB91FADBCB8CE16C31EF43A97DC6CC5D0F4EBAEA7903810556D0D70F54BC ] NvNetworkService C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
22:47:21.0473 0x0c60 NvNetworkService - ok
22:47:21.0520 0x0c60 [ 0A92CB65770442ED0DC44834632F66AD, 581327F07A68DBD5CC749214BE5F1211FC2CE41C7A4F0656B680AFB51A35ACE7 ] nvraid C:\Windows\system32\drivers\nvraid.sys
22:47:21.0551 0x0c60 nvraid - ok
22:47:21.0567 0x0c60 [ DAB0E87525C10052BF65F06152F37E4A, AD9BFF0D5FD3FFB95C758B478E1F6A9FE45E7B37AEC71EB5070D292FEAAEDF37 ] nvstor C:\Windows\system32\drivers\nvstor.sys
22:47:21.0582 0x0c60 nvstor - ok
22:47:21.0660 0x0c60 [ 7E4C1879248629A2C9CC9ADF52CBB9B7, 856FF60FD111C3C80B137BC62B7EF92D3B95FBA462A29F97D65457A5A507506E ] NvStreamKms C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys
22:47:21.0692 0x0c60 NvStreamKms - ok
22:47:22.0222 0x0c60 [ C3EB27E4BC00283CA166A9FC42B90FC7, FED7F68D1C6EB442292E40DCFAEE7339AE21D5EF726A9DC9BCB6AB5C5873B3E0 ] NvStreamSvc C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
22:47:22.0628 0x0c60 NvStreamSvc - ok
22:47:22.0784 0x0c60 [ 9AEDEFFFE581D775E70C1C228CCD495E, F31C6DED1292A9392B83F9F557070543984AAB73718785B1C189752B34D4805B ] nvsvc C:\Windows\system32\nvvsvc.exe
22:47:22.0830 0x0c60 nvsvc - ok
22:47:22.0862 0x0c60 [ 1AF619620613869C07F9C147BC37520F, 0AD4E100354E201D5E72BA236C1464F5083A7E3B58C4AC6BA712489D258955F5 ] nvvad_WaveExtensible C:\Windows\system32\drivers\nvvad64v.sys
22:47:22.0862 0x0c60 nvvad_WaveExtensible - ok
22:47:22.0893 0x0c60 [ 270D7CD42D6E3979F6DD0146650F0E05, 752489E54C9004EDCBE1F1F208FFD864DA5C83E59A2DDE6B3E0D63ECA996F76F ] nv_agp C:\Windows\system32\drivers\nv_agp.sys
22:47:22.0940 0x0c60 nv_agp - ok
22:47:22.0971 0x0c60 [ 3589478E4B22CE21B41FA1BFC0B8B8A0, AD2469FC753FE552CB809FF405A9AB23E7561292FE89117E3B3B62057EFF0203 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys
22:47:23.0018 0x0c60 ohci1394 - ok
22:47:23.0080 0x0c60 [ 9D10F99A6712E28F8ACD5641E3A7EA6B, 70964A0ED9011EA94044E15FA77EDD9CF535CC79ED8E03A3721FF007E69595CC ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
22:47:23.0127 0x0c60 ose - ok
22:47:23.0361 0x0c60 [ 61BFFB5F57AD12F83AB64B7181829B34, 1DD0DD35E4158F95765EE6639F217DF03A0A19E624E020DBA609268C08A13846 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
22:47:23.0501 0x0c60 osppsvc - ok
22:47:23.0704 0x0c60 [ 2B7D360154E5324F9BA181AF0DBFB2AA, DD53FEDAEC6CB8243142561A946B7A372C320A2C69F8896D33DB504B78707D35 ] OverwolfUpdaterService C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe
22:47:23.0735 0x0c60 OverwolfUpdaterService - ok
22:47:23.0782 0x0c60 [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] p2pimsvc C:\Windows\system32\pnrpsvc.dll
22:47:23.0876 0x0c60 p2pimsvc - ok
22:47:23.0969 0x0c60 [ 927463ECB02179F88E4B9A17568C63C3, FEFD3447692C277D59EEC7BF218552C8BB6B8C98C26E973675549628408B94CE ] p2psvc C:\Windows\system32\p2psvc.dll
22:47:24.0063 0x0c60 p2psvc - ok
22:47:24.0094 0x0c60 [ 0086431C29C35BE1DBC43F52CC273887, 0D116D49EF9ABB57DA005764F25E692622210627FC2048F06A989B12FA8D0A80 ] Parport C:\Windows\system32\drivers\parport.sys
22:47:24.0125 0x0c60 Parport - ok
22:47:24.0141 0x0c60 [ E9766131EEADE40A27DC27D2D68FBA9C, 63C295EC96DBD25F1A8B908295CCB86B54F2A77A02AAA11E5D9160C2C1A492B6 ] partmgr C:\Windows\system32\drivers\partmgr.sys
22:47:24.0188 0x0c60 partmgr - ok
22:47:24.0203 0x0c60 [ 3AEAA8B561E63452C655DC0584922257, 04C072969B58657602EB0C21CEDF24FCEE14E61B90A0F758F93925EF2C9FC32D ] PcaSvc C:\Windows\System32\pcasvc.dll
22:47:24.0234 0x0c60 PcaSvc - ok
22:47:24.0266 0x0c60 [ 94575C0571D1462A0F70BDE6BD6EE6B3, 7139BAC653EA94A3DD3821CAB35FC5E22F4CCA5ACC2BAABDAA27E4C3C8B27FC9 ] pci C:\Windows\system32\drivers\pci.sys
22:47:24.0297 0x0c60 pci - ok
22:47:24.0328 0x0c60 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA, F2A7CC645B96946CC65BF60E14E70DC09C848D27C7943CE5DEA0C01A6B863480 ] pciide C:\Windows\system32\drivers\pciide.sys
22:47:24.0359 0x0c60 pciide - ok
22:47:24.0390 0x0c60 [ B2E81D4E87CE48589F98CB8C05B01F2F, 6763BEE7270A4873B3E131BFB92313E2750FCBD0AD73C23D1C4F98F7DF73DE14 ] pcmcia C:\Windows\system32\drivers\pcmcia.sys
22:47:24.0406 0x0c60 pcmcia - ok
22:47:24.0453 0x0c60 [ D6B9C2E1A11A3A4B26A182FFEF18F603, BBA5FE08B1DDD6243118E11358FD61B10E850F090F061711C3CB207CE5FBBD36 ] pcw C:\Windows\system32\drivers\pcw.sys
22:47:24.0484 0x0c60 pcw - ok
22:47:24.0531 0x0c60 [ 68769C3356B3BE5D1C732C97B9A80D6E, FB2D61145980A2899D1B7729184C54070315B0E63C9A22400A76CCD39E00029C ] PEAUTH C:\Windows\system32\drivers\peauth.sys
22:47:24.0609 0x0c60 PEAUTH - ok
22:47:24.0734 0x0c60 [ E495E408C93141E8FC72DC0C6046DDFA, 489B957DADA0DC128A09468F1AD082DCC657E86053208EA06A12937BE86FB919 ] PerfHost C:\Windows\SysWow64\perfhost.exe
22:47:24.0827 0x0c60 PerfHost - ok
22:47:24.0936 0x0c60 [ 37EA62238E17AE88E4713D9246CA1C1C, 3D0D62472C00526702F4FF699A06A9C944DF7618EBF59A44CBBC0EE6154BE64B ] PID_PEPI C:\Windows\system32\DRIVERS\LV302V64.SYS
22:47:24.0999 0x0c60 PID_PEPI - ok
22:47:25.0077 0x0c60 [ C7CF6A6E137463219E1259E3F0F0DD6C, 08D7244F52AA17DD669AA6F77C291DAC88E7B2D1887DE422509C1F83EC85F3DD ] pla C:\Windows\system32\pla.dll
22:47:25.0170 0x0c60 pla - ok
22:47:25.0248 0x0c60 [ 25FBDEF06C4D92815B353F6E792C8129, 57D9764AE6BCE33B242C399CDFC10DD405975BD6411CA8C75FBCD06EEB8442A9 ] PlugPlay C:\Windows\system32\umpnpmgr.dll
22:47:25.0280 0x0c60 PlugPlay - ok
22:47:25.0373 0x0c60 [ AC78DF349F0E4CFB8B667C0CFFF83CCE, 7E635AA2E7350FCA0C954E697F1480A6204920AEFBCF06B90FFA02398DA82822 ] Pml Driver HPZ12 C:\Windows\system32\HPZipm12.dll
22:47:25.0373 0x0c60 Pml Driver HPZ12 - detected UnsignedFile.Multi.Generic ( 1 )
22:47:28.0306 0x0c60 Detect skipped due to KSN trusted
22:47:28.0306 0x0c60 Pml Driver HPZ12 - ok
22:47:28.0322 0x0c60 PnkBstrA - ok
22:47:28.0337 0x0c60 [ 7195581CEC9BB7D12ABE54036ACC2E38, 9C4E5D6EA984148F2663DC529083408B2248DFF6DAAC85D9195F80A722782315 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll
22:47:28.0384 0x0c60 PNRPAutoReg - ok
22:47:28.0431 0x0c60 [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] PNRPsvc C:\Windows\system32\pnrpsvc.dll
22:47:28.0478 0x0c60 PNRPsvc - ok
22:47:28.0540 0x0c60 [ 4F15D75ADF6156BF56ECED6D4A55C389, 2ADA3EA69A5D7EC2A4D2DD89178DB94EAFDDF95F07B0070D654D9F7A5C12A044 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll
22:47:28.0602 0x0c60 PolicyAgent - ok
22:47:28.0649 0x0c60 [ 6BA9D927DDED70BD1A9CADED45F8B184, 66203CE70A5EDE053929A940F38924C6792239CCCE10DD2C1D90D5B4D6748B55 ] Power C:\Windows\system32\umpo.dll
22:47:28.0696 0x0c60 Power - ok
22:47:28.0774 0x0c60 [ F92A2C41117A11A00BE01CA01A7FCDE9, 38ADC6052696D110CA5F393BC586791920663F5DA66934C2A824DDA9CD89C763 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys
22:47:28.0868 0x0c60 PptpMiniport - ok
22:47:28.0883 0x0c60 [ 0D922E23C041EFB1C3FAC2A6F943C9BF, 855418A6A58DCAFB181A1A68613B3E203AFB0A9B3D9D26D0C521F9F613B4EAD5 ] Processor C:\Windows\system32\drivers\processr.sys
22:47:28.0961 0x0c60 Processor - ok
22:47:29.0024 0x0c60 [ 53E83F1F6CF9D62F32801CF66D8352A8, 1225FED810BE8E0729EEAE5B340035CCBB9BACD3EF247834400F9B72D05ACE48 ] ProfSvc C:\Windows\system32\profsvc.dll
22:47:29.0070 0x0c60 ProfSvc - ok
22:47:29.0086 0x0c60 [ 204F3F58212B3E422C90BD9691A2DF28, D748A8CEE4D59B4248C9B1ACA5155D0FF6635A29564B4391B7FAC6261F93FE99 ] ProtectedStorage C:\Windows\system32\lsass.exe
22:47:29.0102 0x0c60 ProtectedStorage - ok
22:47:29.0164 0x0c60 [ 0557CF5A2556BD58E26384169D72438D, F6F83A616B1F1C6C0DF6D2EC2513E6C23FD4FAA6D36518B8676C619AB74957B4 ] Psched C:\Windows\system32\DRIVERS\pacer.sys
22:47:29.0273 0x0c60 Psched - ok
22:47:29.0382 0x0c60 [ A53A15A11EBFD21077463EE2C7AFEEF0, 6002B012A75045DEA62640A864A8721EADE2F8B65BEB5F5BA76D8CD819774489 ] ql2300 C:\Windows\system32\drivers\ql2300.sys
22:47:29.0476 0x0c60 ql2300 - ok
22:47:29.0492 0x0c60 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8, FB6ABAB741CED66A79E31A45111649F2FA3E26CEE77209B5296F789F6F7D08DE ] ql40xx C:\Windows\system32\drivers\ql40xx.sys
22:47:29.0492 0x0c60 ql40xx - ok
22:47:29.0538 0x0c60 [ 906191634E99AEA92C4816150BDA3732, A0305436384104C3B559F9C73902DA19B96B518413379E397C5CDAB0B2B9418F ] QWAVE C:\Windows\system32\qwave.dll
22:47:29.0554 0x0c60 QWAVE - ok
22:47:29.0570 0x0c60 [ 76707BB36430888D9CE9D705398ADB6C, 35C1D1D05F98AC29A33D3781F497A0B40A3CB9CDF25FE1F28F574E40DDF70535 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys
22:47:29.0585 0x0c60 QWAVEdrv - ok
22:47:29.0616 0x0c60 [ 5A0DA8AD5762FA2D91678A8A01311704, 8A64EB5DBAB7048A9E42A21CEB62CCD5B007A80C199892D7F8C69B48E8A255EF ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys
22:47:29.0710 0x0c60 RasAcd - ok
22:47:29.0788 0x0c60 [ 7ECFF9B22276B73F43A99A15A6094E90, 62C70DA127F48F796F8897BBFA23AB6EB080CC923F0F091DFA384A93F5C90CA1 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys
22:47:29.0897 0x0c60 RasAgileVpn - ok
22:47:29.0913 0x0c60 [ 8F26510C5383B8DBE976DE1CD00FC8C7, 60E618C010E8A723960636415573FA17EA0BBEF79647196B3BC0B8DEE680E090 ] RasAuto C:\Windows\System32\rasauto.dll
22:47:29.0944 0x0c60 RasAuto - ok
22:47:29.0960 0x0c60 [ 471815800AE33E6F1C32FB1B97C490CA, 27307265F743DE3A3A3EC1B2C472A3D85FDD0AEC458E0B1177593141EE072698 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys
22:47:30.0006 0x0c60 Rasl2tp - ok
22:47:30.0084 0x0c60 [ EE867A0870FC9E4972BA9EAAD35651E2, 1B848D81705081FD2E18AC762DA7F51455657DAF860BF363DC15925A148BCADA ] RasMan C:\Windows\System32\rasmans.dll
22:47:30.0225 0x0c60 RasMan - ok
22:47:30.0240 0x0c60 [ 855C9B1CD4756C5E9A2AA58A15F58C25, A514F8A9C304D54BDA8DC60F5A64259B057EC83A1CAAF6D2B58CFD55E9561F72 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys
22:47:30.0287 0x0c60 RasPppoe - ok
22:47:30.0318 0x0c60 [ E8B1E447B008D07FF47D016C2B0EEECB, FEC789F82B912F3E14E49524D40FEAA4373B221156F14045E645D7C37859258C ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys
22:47:30.0381 0x0c60 RasSstp - ok
22:47:30.0428 0x0c60 [ 77F665941019A1594D887A74F301FA2F, 1FDC6F6853400190C086042933F157814D915C54F26793CAD36CD2607D8810DA ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys
22:47:30.0552 0x0c60 rdbss - ok
22:47:30.0568 0x0c60 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D, 1DF3501BBFFB56C3ECC39DBCC4287D3302216C2208CE22428B8C4967E5DE9D17 ] rdpbus C:\Windows\system32\drivers\rdpbus.sys
22:47:30.0599 0x0c60 rdpbus - ok
22:47:30.0662 0x0c60 [ CEA6CC257FC9B7715F1C2B4849286D24, A78144D18352EA802C39D9D42921CF97A3E0211766B2169B6755C6FC2D77A804 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys
22:47:30.0677 0x0c60 RDPCDD - ok
22:47:30.0708 0x0c60 [ BB5971A4F00659529A5C44831AF22365, 9AAA5C0D448E821FD85589505D99DF7749715A046BBD211F139E4E652ADDE41F ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys
22:47:30.0786 0x0c60 RDPENCDD - ok
22:47:30.0802 0x0c60 [ 216F3FA57533D98E1F74DED70113177A, 60C126A1409D1E9C39F1C9E95F70115BF4AF07780AB499F6E10A612540F173F4 ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys
22:47:30.0864 0x0c60 RDPREFMP - ok
22:47:30.0896 0x0c60 [ E61608AA35E98999AF9AAEEEA6114B0A, F754CDE89DC96786D2A3C4D19EE2AEF1008E634E4DE3C0CBF927436DE90C04A6 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys
22:47:30.0927 0x0c60 RDPWD - ok
22:47:30.0942 0x0c60 [ 34ED295FA0121C241BFEF24764FC4520, AAEE5F00CAA763A5BA51CF56BD7262C03409CD72BD5601490E3EC3FFF929BB5F ] rdyboost C:\Windows\system32\drivers\rdyboost.sys
22:47:30.0958 0x0c60 rdyboost - ok
22:47:31.0005 0x0c60 [ 254FB7A22D74E5511C73A3F6D802F192, 3D0FB5840364200DE394F8CC28DA0E334C2B5FA8FF28A41656EE72287F3D3836 ] RemoteAccess C:\Windows\System32\mprdim.dll
22:47:31.0098 0x0c60 RemoteAccess - ok
22:47:31.0130 0x0c60 [ E4D94F24081440B5FC5AA556C7C62702, 147CAA03568DC480F9506E30B84891AB7E433B5EBC05F34FF10F72B00E1C6B22 ] RemoteRegistry C:\Windows\system32\regsvc.dll
22:47:31.0270 0x0c60 RemoteRegistry - ok
22:47:31.0348 0x0c60 [ 3DD798846E2C28102B922C56E71B7932, 30B111615D74CB2213997A5C08DD9C8613ADE441D9423CC1C49A753D13CE524D ] RFCOMM C:\Windows\system32\DRIVERS\rfcomm.sys
22:47:31.0426 0x0c60 RFCOMM - ok
22:47:31.0457 0x0c60 [ E4DC58CF7B3EA515AE917FF0D402A7BB, 665B5CD9FE905B0EE3F59A7B1A94760F5393EBEE729877D8584349754C2867E8 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll
22:47:31.0504 0x0c60 RpcEptMapper - ok
22:47:31.0551 0x0c60 [ D5BA242D4CF8E384DB90E6A8ED850B8C, CB4CB2608B5E31B55FB1A2CF4051E6D08A0C2A5FB231B2116F95938D7577334E ] RpcLocator C:\Windows\system32\locator.exe
22:47:31.0551 0x0c60 RpcLocator - ok
22:47:31.0582 0x0c60 [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] RpcSs C:\Windows\system32\rpcss.dll
22:47:31.0613 0x0c60 RpcSs - ok
22:47:31.0629 0x0c60 [ DDC86E4F8E7456261E637E3552E804FF, D250C69CCC75F2D88E7E624FCC51300E75637333317D53908CCA7E0F117173DD ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys
22:47:31.0644 0x0c60 rspndr - ok
22:47:31.0676 0x0c60 [ 204F3F58212B3E422C90BD9691A2DF28, D748A8CEE4D59B4248C9B1ACA5155D0FF6635A29564B4391B7FAC6261F93FE99 ] SamSs C:\Windows\system32\lsass.exe
22:47:31.0722 0x0c60 SamSs - ok
22:47:31.0754 0x0c60 [ AC03AF3329579FFFB455AA2DAABBE22B, 7AD3B62ADFEC166F9E256F9FF8BAA0568B2ED7308142BF8F5269E6EAA5E0A656 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys
22:47:31.0785 0x0c60 sbp2port - ok
22:47:31.0832 0x0c60 [ 9B7395789E3791A3B6D000FE6F8B131E, E5F067F3F212BF5481668BE1779CBEF053F511F8967589BE2E865ACB9A620024 ] SCardSvr C:\Windows\System32\SCardSvr.dll
22:47:31.0863 0x0c60 SCardSvr - ok
22:47:31.0878 0x0c60 [ 253F38D0D7074C02FF8DEB9836C97D2B, CB5CAFCB8628BB22877F74ACF1DED0BBAED8F4573A74DA7FE94BBBA584889116 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys
22:47:31.0925 0x0c60 scfilter - ok
22:47:32.0019 0x0c60 [ 262F6592C3299C005FD6BEC90FC4463A, 54095E37F0B6CC677A3E9BDD40F4647C713273D197DB341063AA7F342A60C4A7 ] Schedule C:\Windows\system32\schedsvc.dll
22:47:32.0112 0x0c60 Schedule - ok
22:47:32.0144 0x0c60 [ 6011CDF54BB6F4C69F38FACCDAD73D7E, 4EE85F5E87A65E55EFCB5940A09993C54C5528ADA6194F3AED314F1AC2795A73 ] SCMNdisP C:\Windows\system32\DRIVERS\scmndisp.sys
22:47:32.0159 0x0c60 SCMNdisP - ok
22:47:32.0190 0x0c60 [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] SCPolicySvc C:\Windows\System32\certprop.dll
22:47:32.0222 0x0c60 SCPolicySvc - ok
22:47:32.0237 0x0c60 [ 6EA4234DC55346E0709560FE7C2C1972, 64011E044C16E2F92689E5F7E4666A075E27BBFA61F3264E5D51CE1656C1D5B8 ] SDRSVC C:\Windows\System32\SDRSVC.dll
22:47:32.0315 0x0c60 SDRSVC - ok
22:47:32.0580 0x0c60 [ D777F1417D9BB9F66CD9D9C3B61F730F, 0CBD830EB9D2B0F1946131F20907793B2D68A3BCEEC3EA5416972149F73DC815 ] SDScannerService C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
22:47:32.0643 0x0c60 SDScannerService - ok
22:47:32.0799 0x0c60 [ 68D6C7F99BC73B88954D844FCCBEB2A0, F746861B103C8BE8EA234B9FCFBBDD2412C79FB65F2F1E0F5E6EBC0B34905FF1 ] SDUpdateService C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
22:47:32.0830 0x0c60 SDUpdateService - ok
22:47:32.0877 0x0c60 [ 9B9B368A8FF5CAF91D7A333CF62CD2CC, A4AE7FFBBAF983BFDE15B521ED162CBC4E6FC85BCDB200C75D45878B3FFDFA68 ] SDWSCService C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
22:47:32.0892 0x0c60 SDWSCService - ok
22:47:32.0924 0x0c60 [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv C:\Windows\system32\drivers\secdrv.sys
22:47:32.0986 0x0c60 secdrv - ok
22:47:33.0017 0x0c60 [ BC617A4E1B4FA8DF523A061739A0BD87, 10C4057F6B321EB5237FF619747B74F5401BC17D15A8C7060829E8204A2297F9 ] seclogon C:\Windows\system32\seclogon.dll
22:47:33.0064 0x0c60 seclogon - ok
22:47:33.0111 0x0c60 [ C32AB8FA018EF34C0F113BD501436D21, E0EB8E80B51E45CA7EB061E705DA0BC07878759418A8519AE6E12326FE79E7C7 ] SENS C:\Windows\System32\sens.dll
22:47:33.0267 0x0c60 SENS - ok
22:47:33.0298 0x0c60 [ 0336CFFAFAAB87A11541F1CF1594B2B2, 8B8A6A33E78A12FB05E29B2E2775850626574AFD2EF88748D65E690A07B10B8D ] SensrSvc C:\Windows\system32\sensrsvc.dll
22:47:33.0314 0x0c60 SensrSvc - ok
22:47:33.0345 0x0c60 [ CB624C0035412AF0DEBEC78C41F5CA1B, A4D937F11E06CAE914347CA1362F4C98EC5EE0C0C80321E360EA1ABD6726F8D4 ] Serenum C:\Windows\system32\drivers\serenum.sys
22:47:33.0360 0x0c60 Serenum - ok
22:47:33.0392 0x0c60 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6, 8F9776FB84C5D11068EAF1FF1D1A46466C655D64D256A8B1E31DC0C23B5DD22D ] Serial C:\Windows\system32\drivers\serial.sys
22:47:33.0423 0x0c60 Serial - ok
22:47:33.0438 0x0c60 [ 1C545A7D0691CC4A027396535691C3E3, 065C30BE598FF4DC55C37E0BBE0CEDF10A370AE2BF5404B42EBBB867A3FFED6D ] sermouse C:\Windows\system32\drivers\sermouse.sys
22:47:33.0454 0x0c60 sermouse - ok
22:47:33.0470 0x0c60 [ 0B6231BF38174A1628C4AC812CC75804, E569BF1F7F5689E2E917FA6516DB53388A5B8B1C6699DEE030147E853218811D ] SessionEnv C:\Windows\system32\sessenv.dll
22:47:33.0516 0x0c60 SessionEnv - ok
22:47:33.0548 0x0c60 [ A554811BCD09279536440C964AE35BBF, DA8F893722F803E189D7D4D6C6232ED34505B63A64ED3A0132A5BB7A2BABDE55 ] sffdisk C:\Windows\system32\drivers\sffdisk.sys
22:47:33.0579 0x0c60 sffdisk - ok
22:47:33.0610 0x0c60 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF, B81EF5D26AEB572CAB590F7AD7CA8C89F296420089EF5E6148E972F2DBCA1042 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys
22:47:33.0657 0x0c60 sffp_mmc - ok
22:47:33.0704 0x0c60 [ DD85B78243A19B59F0637DCF284DA63C, 6730D4F2BAE7E24615746ACC41B42D01DB6068D6504982008ADA1890DE900197 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys
22:47:33.0735 0x0c60 sffp_sd - ok
22:47:33.0766 0x0c60 [ A9D601643A1647211A1EE2EC4E433FF4, 7AC60B4AB48D4BBF1F9681C12EC2A75C72E6E12D30FABC564A24394310E9A5F9 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys
22:47:33.0828 0x0c60 sfloppy - ok
22:47:33.0938 0x0c60 [ 2046AA7491DE7EFA4D70E615D9BC9D09, A8763D059AD68D5842C407FA9644E0B129BEF0F63CD87E62B80B05441EDC3489 ] Sftfs C:\Windows\system32\DRIVERS\Sftfslh.sys
22:47:33.0984 0x0c60 Sftfs - ok
22:47:34.0094 0x0c60 [ 77C5A741A7452812F278EF2C18478862, 0B763679EB7EFB8ED9DCE7B429706E939BB65BA6BCF1BAE0E0426D4E87074B8C ] sftlist C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
22:47:34.0172 0x0c60 sftlist - ok
22:47:34.0218 0x0c60 [ 0E0446BC4D51BE4263ACB7E33491191C, 2AD039FB440560658C4E06F67CC192EF71577EF3FF789A43C08430CE5EAE5A70 ] Sftplay C:\Windows\system32\DRIVERS\Sftplaylh.sys
22:47:34.0265 0x0c60 Sftplay - ok
22:47:34.0265 0x0c60 [ C5FB982CD266E604ED3142102C26D62C, A6BC0D72E98F924274ECAD49C85F0775D1CD45B97CD43F53DF3992B560835FC5 ] Sftredir C:\Windows\system32\DRIVERS\Sftredirlh.sys
22:47:34.0281 0x0c60 Sftredir - ok
22:47:34.0296 0x0c60 [ 2575511AF67AA1FA068CCC4918E2C2A3, 3152FF5AC2CF6FE966DA59B1B33E22F9BD9B6BB4310441870528364BA9501A4D ] Sftvol C:\Windows\system32\DRIVERS\Sftvollh.sys
22:47:34.0312 0x0c60 Sftvol - ok
22:47:34.0328 0x0c60 [ 39B1D0A636A400304565D4521FAD6D77, 1F01DB35B5A477AA7A77585C9304E6B5F3E67807531305BCA93A7F494CED8F59 ] sftvsa C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
22:47:34.0343 0x0c60 sftvsa - ok
22:47:34.0437 0x0c60 [ B95F6501A2F8B2E78C697FEC401970CE, 758B73A32902299A313348CE7EC189B20EB4CB398D0180E4EE24B84DAD55F291 ] SharedAccess C:\Windows\System32\ipnathlp.dll
22:47:34.0515 0x0c60 SharedAccess - ok
22:47:34.0562 0x0c60 [ AAF932B4011D14052955D4B212A4DA8D, 2A3BFD0FA9569288E91AE3E72CA1EC39E1450D01E6473CE51157E0F138257923 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
22:47:34.0640 0x0c60 ShellHWDetection - ok
22:47:34.0733 0x0c60 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1, 89CA9F516E42A6B905474D738CDA2C121020A07DBD4E66CFE569DD77D79D7820 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys
22:47:34.0764 0x0c60 SiSRaid2 - ok
22:47:34.0905 0x0c60 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4, 87B85C66DF7EB6FDB8A2341D05FAA5261FF68A90CCFC63F0E4A03824F1E33E5E ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys
22:47:34.0936 0x0c60 SiSRaid4 - ok
22:47:34.0998 0x0c60 [ 50D9949020E02B847CD48F1243FCB895, 5BDAD5E44DE5B412645142810C5FCE4B2D9685F928FF4A6B836A9DCE7725BD78 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe
22:47:35.0014 0x0c60 SkypeUpdate - ok
22:47:35.0045 0x0c60 [ 548260A7B8654E024DC30BF8A7C5BAA4, 4A7E58331D7765A12F53DC2371739DC9A463940B13E16157CE10DB80E958D740 ] Smb C:\Windows\system32\DRIVERS\smb.sys
22:47:35.0092 0x0c60 Smb - ok
22:47:35.0108 0x0c60 [ 6313F223E817CC09AA41811DAA7F541D, D787061043BEEDB9386B048CB9E680E6A88A1CBAE9BD4A8C0209155BFB76C630 ] SNMPTRAP C:\Windows\System32\snmptrap.exe
22:47:35.0123 0x0c60 SNMPTRAP - ok
22:47:35.0123 0x0c60 [ B9E31E5CACDFE584F34F730A677803F9, 21A5130BD00089C609522A372018A719F8E37103D2DD22C59EACB393BE35A063 ] spldr C:\Windows\system32\drivers\spldr.sys
22:47:35.0139 0x0c60 spldr - ok
22:47:35.0217 0x0c60 [ 85DAA09A98C9286D4EA2BA8D0E644377, F9C324E2EF81193FE831C7EECC44A100CA06F82FA731BF555D9EA4D91DA13329 ] Spooler C:\Windows\System32\spoolsv.exe
22:47:35.0279 0x0c60 Spooler - ok
22:47:35.0420 0x0c60 [ E17E0188BB90FAE42D83E98707EFA59C, FC075F7B39E86CC8EF6DA4E339FE946917E319C347AC70FB0C50AAF36F97E27F ] sppsvc C:\Windows\system32\sppsvc.exe
22:47:35.0591 0x0c60 sppsvc - ok
22:47:35.0591 0x0c60 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45, 36D48B23B8243BE5229707375FCD11C2DCAC96983199345365F065A0CBF33314 ] sppuinotify C:\Windows\system32\sppuinotify.dll
22:47:35.0654 0x0c60 sppuinotify - ok
22:47:35.0700 0x0c60 [ 441FBA48BFF01FDB9D5969EBC1838F0B, 306128F1AD489F87161A089D1BDC1542A4CB742D91A0C12A7CD1863FDB8932C0 ] srv C:\Windows\system32\DRIVERS\srv.sys
22:47:35.0794 0x0c60 srv - ok
22:47:35.0810 0x0c60 [ B4ADEBBF5E3677CCE9651E0F01F7CC28, 726DB2283113AB2A9681E8E9F61132303D6D86E9CD034C40EE4A8C9DB29E87F7 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys
22:47:35.0872 0x0c60 srv2 - ok
22:47:35.0934 0x0c60 [ 27E461F0BE5BFF5FC737328F749538C3, AFA4704ED8FFC1A0BAB40DFB81D3AE3F3D933A3C9BF54DDAF39FF9AF3646D9E6 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys
22:47:36.0028 0x0c60 srvnet - ok
22:47:36.0106 0x0c60 [ 51B52FBD583CDE8AA9BA62B8B4298F33, 2E2403F8AA39E79D1281CA006B51B43139C32A5FDD64BD34DAA4B935338BD740 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll
22:47:36.0215 0x0c60 SSDPSRV - ok
22:47:36.0231 0x0c60 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB, D21CDBC4C2AA0DB5B4455D5108B0CAF4282A2E664B9035708F212CC094569D9D ] SstpSvc C:\Windows\system32\sstpsvc.dll
22:47:36.0324 0x0c60 SstpSvc - ok
22:47:36.0387 0x0c60 [ EF806D212D34B0E173BAEB3564D53E37, 6EF229A7B7AFF0268CDF47B77F961BD44335C3B35499BB00CBA494A22B2BA39E ] ss_bbus C:\Windows\system32\DRIVERS\ss_bbus.sys
22:47:36.0418 0x0c60 ss_bbus - ok
22:47:36.0496 0x0c60 [ 08B1B34ABEBEB6AC2DEA06900C56411E, 928EF9B9F194DB07049BA2D7127756B021C2729F562E54F7FECD0F2B2FF5A209 ] ss_bmdfl C:\Windows\system32\DRIVERS\ss_bmdfl.sys
22:47:36.0512 0x0c60 ss_bmdfl - ok
22:47:36.0543 0x0c60 [ 71A9DA6BEAA4CB54DFB827FB78600A5D, 6393CA17CF6A6F30447FF599B2D27CAB44BA1A709D986AC5E14463303094BE5F ] ss_bmdm C:\Windows\system32\DRIVERS\ss_bmdm.sys
22:47:36.0558 0x0c60 ss_bmdm - ok
22:47:36.0605 0x0c60 [ 677CDC98F8363ACCAAE783FDE1599C2A, 2ED5125A93AF824CA4D394A36F79996F9EBC84305F565F6024ECDD490A4A1FE2 ] ss_bserd C:\Windows\system32\DRIVERS\ss_bserd.sys
22:47:36.0621 0x0c60 ss_bserd - ok
22:47:36.0730 0x0c60 [ AD5CE4DBBBAFB82B728BA0548876C5B6, 09022AE357FFBD9F3DF7807BF57704AA8E71767E043E92DA06DB5FE828B3F26F ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
22:47:36.0761 0x0c60 Stereo Service - ok
22:47:36.0792 0x0c60 [ F3817967ED533D08327DC73BC4D5542A, 1B204454408A690C0A86447F3E4AA9E7C58A9CFB567C94C17C21920BA648B4D5 ] stexstor C:\Windows\system32\drivers\stexstor.sys
22:47:36.0808 0x0c60 stexstor - ok
22:47:36.0870 0x0c60 [ DECACB6921DED1A38642642685D77DAC, 1633711CE973F818EBCCCA28538772431167C33ECDD44D1E846A9436598B52DC ] StillCam C:\Windows\system32\DRIVERS\serscan.sys
22:47:36.0917 0x0c60 StillCam - ok
22:47:37.0026 0x0c60 [ 8DD52E8E6128F4B2DA92CE27402871C1, 1101C38BE8FC383B5F2F9FA402F9652B23B88A764DE2B584DFE62B88B11DEF92 ] stisvc C:\Windows\System32\wiaservc.dll
22:47:37.0104 0x0c60 stisvc - ok
22:47:37.0136 0x0c60 [ D01EC09B6711A5F8E7E6564A4D0FBC90, 3CB922291DBADC92B46B9E28CCB6810CD8CCDA3E74518EC9522B58B998E1F969 ] swenum C:\Windows\system32\DRIVERS\swenum.sys
22:47:37.0151 0x0c60 swenum - ok
22:47:37.0167 0x0c60 [ E08E46FDD841B7184194011CA1955A0B, 9C3725BB1F08F92744C980A22ED5C874007D3B5863C7E1F140F50061052AC418 ] swprv C:\Windows\System32\swprv.dll
22:47:37.0214 0x0c60 swprv - ok
22:47:37.0260 0x0c60 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D, 3C13217548BE61F2BDB8BD41F77345CDDA1F97BF0AE17241C335B9807EB3DBB8 ] SysMain C:\Windows\system32\sysmain.dll
22:47:37.0385 0x0c60 SysMain - ok
22:47:37.0416 0x0c60 [ E3C61FD7B7C2557E1F1B0B4CEC713585, 01F0E116606D185BF93B540868075BFB1A398197F6AABD994983DBFF56B3A8A0 ] TabletInputService C:\Windows\System32\TabSvc.dll
22:47:37.0448 0x0c60 TabletInputService - ok
22:47:37.0494 0x0c60 [ 40F0849F65D13EE87B9A9AE3C1DD6823, E251A7EF3D0FD2973AF33A62FC457A7E8D5E8694208F811F52455F7C2426121F ] TapiSrv C:\Windows\System32\tapisrv.dll
22:47:37.0572 0x0c60 TapiSrv - ok
22:47:37.0588 0x0c60 [ 1BE03AC720F4D302EA01D40F588162F6, AB644862BF1D2E824FD846180DEC4E2C0FAFCC517451486DE5A92E5E78A952E4 ] TBS C:\Windows\System32\tbssvc.dll
22:47:37.0619 0x0c60 TBS - ok
22:47:37.0728 0x0c60 [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E, F05C0C4CA3DD234AD5D60CF1EF763C9A1D9EC3C157E180C2D75CC07E6B02A611 ] Tcpip C:\Windows\system32\drivers\tcpip.sys
22:47:37.0806 0x0c60 Tcpip - ok
22:47:37.0994 0x0c60 [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E, F05C0C4CA3DD234AD5D60CF1EF763C9A1D9EC3C157E180C2D75CC07E6B02A611 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys
22:47:38.0040 0x0c60 TCPIP6 - ok
22:47:38.0118 0x0c60 [ 1B16D0BD9841794A6E0CDE0CEF744ABC, 7EB8BA97339199EEE7F2B09DA2DA6279DA64A510D4598D42CF86415D67CD674C ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys
22:47:38.0181 0x0c60 tcpipreg - ok
22:47:38.0196 0x0c60 [ 3371D21011695B16333A3934340C4E7C, 7416F9BBFC1BA9D875EA7D1C7A0D912FC6977B49A865D67E3F9C4E18A965082D ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys
22:47:38.0212 0x0c60 TDPIPE - ok
22:47:38.0259 0x0c60 [ 51C5ECEB1CDEE2468A1748BE550CFBC8, 4E8F83877330B421F7B5D8393D34BC44C6450E69209DAA95B29CB298166A5DF9 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys
22:47:38.0290 0x0c60 TDTCP - ok
22:47:38.0306 0x0c60 [ DDAD5A7AB24D8B65F8D724F5C20FD806, B71F2967A4EE7395E4416C1526CB85368AEA988BDD1F2C9719C48B08FAFA9661 ] tdx C:\Windows\system32\DRIVERS\tdx.sys
22:47:38.0337 0x0c60 tdx - ok
22:47:38.0337 0x0c60 [ 561E7E1F06895D78DE991E01DD0FB6E5, 83BFA50A528762EC52A011302AC3874636FB7E26628CD7ACFBF2BDC9FAA8110D ] TermDD C:\Windows\system32\DRIVERS\termdd.sys
22:47:38.0352 0x0c60 TermDD - ok
22:47:38.0368 0x0c60 [ 2E648163254233755035B46DD7B89123, 6FA0D07CE18A3A69D82EE49D875F141E39406E92C34EAC76AC4EB052E6EBCBCD ] TermService C:\Windows\System32\termsrv.dll
22:47:38.0415 0x0c60 TermService - ok
22:47:38.0430 0x0c60 [ F0344071948D1A1FA732231785A0664C, DB9886C2C858FAF45AEA15F8E42860343F73EB8685C53EC2E8CCC10586CB0832 ] Themes C:\Windows\system32\themeservice.dll
22:47:38.0446 0x0c60 Themes - ok
22:47:38.0477 0x0c60 [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] THREADORDER C:\Windows\system32\mmcss.dll
22:47:38.0508 0x0c60 THREADORDER - ok
22:47:38.0508 0x0c60 [ 7E7AFD841694F6AC397E99D75CEAD49D, DE87F203FD8E6BDCCFCA1860A85F283301A365846FB703D9BB86278D8AC96B07 ] TrkWks C:\Windows\System32\trkwks.dll
22:47:38.0555 0x0c60 TrkWks - ok
22:47:38.0633 0x0c60 [ A1965DFC0CD91E7CFC42925F8F597274, 7478D7DACD94F0C3D4F0CDAC9CD71CB03CB45C503DE6B1207A51F989844CB1F3 ] TrueSight C:\Windows\System32\drivers\TrueSight.sys
22:47:38.0664 0x0c60 TrueSight - ok
22:47:38.0758 0x0c60 [ 773212B2AAA24C1E31F10246B15B276C, F2EF85F5ABA307976D9C649D710B408952089458DDE97D4DEF321DF14E46A046 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
22:47:38.0820 0x0c60 TrustedInstaller - ok
22:47:38.0867 0x0c60 [ 4CE278FC9671BA81A138D70823FCAA09, CBE501436696E32A3701B9F377B823AC36647B6626595F76CC63E2396AD7D300 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys
22:47:38.0930 0x0c60 tssecsrv - ok
22:47:38.0976 0x0c60 [ D11C783E3EF9A3C52C0EBE83CC5000E9, A136C355D4C8945729163D15801364A614E23217B15F9313C85BA45BB71A74EB ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys
22:47:39.0070 0x0c60 TsUsbFlt - ok
22:47:39.0070 0x0c60 [ 9CC2CCAE8A84820EAECB886D477CBCB8, 50D8AA2D7477A6618A0C31BB4D1C4887B457865FB1105E2E7B984EEFA337B804 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys
22:47:39.0101 0x0c60 TsUsbGD - ok
22:47:39.0148 0x0c60 [ 3566A8DAAFA27AF944F5D705EAA64894, AE9D8B648DA08AF667B9456C3FE315489859C157510A258559F18238F2CC92B8 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys
22:47:39.0210 0x0c60 tunnel - ok
22:47:39.0257 0x0c60 [ B4DD609BD7E282BFC683CEC7EAAAAD67, EF131DB6F6411CAD36A989A421AF93F89DD61601AC524D2FF11C10FF6E3E9123 ] uagp35 C:\Windows\system32\drivers\uagp35.sys
22:47:39.0273 0x0c60 uagp35 - ok
22:47:39.0304 0x0c60 [ FF4232A1A64012BAA1FD97C7B67DF593, D8591B4EB056899C7B604E4DD852D82D4D9809F508ABCED4A03E1BE6D5D456E3 ] udfs C:\Windows\system32\DRIVERS\udfs.sys
22:47:39.0366 0x0c60 udfs - ok
22:47:39.0398 0x0c60 [ 3CBDEC8D06B9968ABA702EBA076364A1, B8DAB8AA804FC23021BFEBD7AE4D40FBE648D6C6BA21CC008E26D1C084972F9B ] UI0Detect C:\Windows\system32\UI0Detect.exe
22:47:39.0429 0x0c60 UI0Detect - ok
22:47:39.0460 0x0c60 [ 4BFE1BC28391222894CBF1E7D0E42320, 5918B1ED2030600DF77BDACF1C808DF6EADDD8BF3E7003AF1D72050D8B102B3A ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys
22:47:39.0476 0x0c60 uliagpkx - ok
22:47:39.0491 0x0c60 [ DC54A574663A895C8763AF0FA1FF7561, 09A3F3597E91CBEB2F38E96E75134312B60CAE5574B2AD4606C2D3E992AEDDFE ] umbus C:\Windows\system32\DRIVERS\umbus.sys
22:47:39.0522 0x0c60 umbus - ok
22:47:39.0554 0x0c60 [ B2E8E8CB557B156DA5493BBDDCC1474D, F547509A08C0679ACB843E20C9C0CF51BED1B06530BBC529DFB0944504564A43 ] UmPass C:\Windows\system32\drivers\umpass.sys
22:47:39.0569 0x0c60 UmPass - ok
22:47:39.0585 0x0c60 [ D47EC6A8E81633DD18D2436B19BAF6DE, 0FB461E2D5E0B75BB5958F6362F4880BFA4C36AD930542609BCAF574941AA7AE ] upnphost C:\Windows\System32\upnphost.dll
22:47:39.0647 0x0c60 upnphost - ok
22:47:39.0694 0x0c60 [ C9E9D59C0099A9FF51697E9306A44240, 78D9A7A5E5742962B6978F475BF06CB32262F1D214699D3D40538476A58012A1 ] USBAAPL64 C:\Windows\system32\Drivers\usbaapl64.sys
22:47:39.0710 0x0c60 USBAAPL64 - detected UnsignedFile.Multi.Generic ( 1 )
22:47:49.0725 0x0c60 USBAAPL64 ( UnsignedFile.Multi.Generic ) - warning
22:47:49.0725 0x0c60 Force sending object to P2P due to detect: USBAAPL64
22:48:03.0952 0x0c60 Object send P2P result: true
22:48:06.0854 0x0c60 [ B0435098C81D04CAFFF80DDB746CD3A2, A17B207740382E38729571F0B0BC98FF874E856A7C7CE9EB930328A2AD88F52A ] usbaudio C:\Windows\system32\drivers\usbaudio.sys
22:48:06.0916 0x0c60 usbaudio - ok
22:48:06.0978 0x0c60 [ DCA68B0943D6FA415F0C56C92158A83A, BEE5A5B33B22D1DF50B884D46D89FC3B8286EB16E38AD5A20F0A49E5C6766C57 ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys
22:48:07.0025 0x0c60 usbccgp - ok
22:48:07.0103 0x0c60 [ 80B0F7D5CCF86CEB5D402EAAF61FEC31, 140C62116A425DEAD25FE8D82DE283BC92C482A9F643658D512F9F67061F28AD ] usbcir C:\Windows\system32\drivers\usbcir.sys
22:48:07.0181 0x0c60 usbcir - ok
22:48:07.0212 0x0c60 [ 18A85013A3E0F7E1755365D287443965, 811C5EDF38C765BCF71BCE25CB6626FF6988C3699F5EF1846240EA0052F34C33 ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys
22:48:07.0275 0x0c60 usbehci - ok
22:48:07.0353 0x0c60 [ 573D192E268F0C5B486B7E96F661E538, 0F32BD82CA7B5D4DE234EFC6527EF4C854BD15B3057FE4A0151C70115493FFDC ] usbfilter C:\Windows\system32\DRIVERS\usbfilter.sys
22:48:07.0353 0x0c60 usbfilter - ok
22:48:07.0400 0x0c60 [ 8D1196CFBB223621F2C67D45710F25BA, B5D7AFE51833B24FC9576F3AED3D8A2B290E5846060E73F9FFFAC1890A8B6003 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys
22:48:07.0431 0x0c60 usbhub - ok
22:48:07.0478 0x0c60 [ 765A92D428A8DB88B960DA5A8D6089DC, 56DE8A2ED58E53B202C399CA7BACB1551136303C2EE0AB426BDBBF880E3C542C ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys
22:48:07.0509 0x0c60 usbohci - ok
22:48:07.0540 0x0c60 [ 73188F58FB384E75C4063D29413CEE3D, B485463933306036B1D490722CB1674DC85670753D79FA0EF7EBCA7BBAAD9F7C ] usbprint C:\Windows\system32\drivers\usbprint.sys
22:48:07.0618 0x0c60 usbprint - ok
22:48:07.0680 0x0c60 [ FED648B01349A3C8395A5169DB5FB7D6, DC4D7594C24ADD076927B9347F1B50B91CF03A4ABDB284248D5711D9C19DEB96 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS
22:48:07.0712 0x0c60 USBSTOR - ok
22:48:07.0743 0x0c60 [ DD253AFC3BC6CBA412342DE60C3647F3, 146F8613F1057AC054DC3593E84BC52899DA27EA33B0E72ACFB78C3699ADCDE7 ] usbuhci C:\Windows\system32\drivers\usbuhci.sys
22:48:07.0758 0x0c60 usbuhci - ok
22:48:07.0790 0x0c60 [ EDBB23CBCF2CDF727D64FF9B51A6070E, 7202484C8E1BFB2AFD64D8C81668F3EDE0E3BF5EB27572877A0A7B337AE5AE42 ] UxSms C:\Windows\System32\uxsms.dll
22:48:07.0821 0x0c60 UxSms - ok
22:48:07.0852 0x0c60 [ 204F3F58212B3E422C90BD9691A2DF28, D748A8CEE4D59B4248C9B1ACA5155D0FF6635A29564B4391B7FAC6261F93FE99 ] VaultSvc C:\Windows\system32\lsass.exe
22:48:07.0868 0x0c60 VaultSvc - ok
22:48:07.0914 0x0c60 [ C5C876CCFC083FF3B128F933823E87BD, 6FE0FBB6C3207E09300E0789E2168F76668D87C317FE9F263E733827ADCFBE0D ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys
22:48:07.0946 0x0c60 vdrvroot - ok
22:48:07.0977 0x0c60 [ 8D6B481601D01A456E75C3210F1830BE, A2CEF483F4231367138EEF7E67FD5BE5364FC0780C44CA1368E36CE4AA3D0633 ] vds C:\Windows\System32\vds.exe
22:48:08.0055 0x0c60 vds - ok
22:48:08.0086 0x0c60 [ DA4DA3F5E02943C2DC8C6ED875DE68DD, EDE604536DB78C512D68C92B26DA77C8811AC109D1F0A473673F0A82D15A2838 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys
22:48:08.0117 0x0c60 vga - ok
22:48:08.0133 0x0c60 [ 53E92A310193CB3C03BEA963DE7D9CFC, 45898604375B42EB1246C17A22D91C2440F11C746FF6459AD38027C1BC2E3125 ] VgaSave C:\Windows\System32\drivers\vga.sys
22:48:08.0195 0x0c60 VgaSave - ok
22:48:08.0226 0x0c60 [ 2CE2DF28C83AEAF30084E1B1EB253CBB, D1946816A1CB89F825CBEA58F94A4C9D0CE7249355CD3915563F54054EE564BF ] vhdmp C:\Windows\system32\drivers\vhdmp.sys
22:48:08.0258 0x0c60 vhdmp - ok
22:48:08.0273 0x0c60 [ E5689D93FFE4E5D66C0178761240DD54, 6D35CED80681B12AAF63BFA0DA1C386E71D3838839B68A686990AA8031949D27 ] viaide C:\Windows\system32\drivers\viaide.sys
22:48:08.0273 0x0c60 viaide - ok
22:48:08.0304 0x0c60 [ D2AAFD421940F640B407AEFAAEBD91B0, 31EF342A60AF04F4108759A71F8FB7B8C8819216CF3D16A95B2BA0E33A8A9161 ] volmgr C:\Windows\system32\drivers\volmgr.sys
22:48:08.0304 0x0c60 volmgr - ok
22:48:08.0336 0x0c60 [ A255814907C89BE58B79EF2F189B843B, 463DB771851352185B6AC323BD93B9084D47291E53C1F7B628B65D6918B2E28F ] volmgrx C:\Windows\system32\drivers\volmgrx.sys
22:48:08.0351 0x0c60 volmgrx - ok
22:48:08.0367 0x0c60 [ 0D08D2F3B3FF84E433346669B5E0F639, 3D6716CEC95B8861A7CC5778E91F310528DC6BEE0E57A3C8757FC675154EBDEC ] volsnap C:\Windows\system32\drivers\volsnap.sys
22:48:08.0382 0x0c60 volsnap - ok
22:48:08.0414 0x0c60 [ 5E2016EA6EBACA03C04FEAC5F330D997, 53106EB877459FE55A459111F7AB0EE320BB3B4C954D3DB6FA1642396001F2AC ] vsmraid C:\Windows\system32\drivers\vsmraid.sys
22:48:08.0429 0x0c60 vsmraid - ok
22:48:08.0476 0x0c60 [ B60BA0BC31B0CB414593E169F6F21CC2, 47B801E623254CF0202B3591CB5C019CABFB52F123C7D47E29D19B32F1F2B915 ] VSS C:\Windows\system32\vssvc.exe
22:48:08.0554 0x0c60 VSS - ok
22:48:08.0585 0x0c60 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1, 3254523C85C70EBA2DBAC05DB2DBA89EDF8E9195F390F7C21F96458FB6B2E3D7 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys
22:48:08.0616 0x0c60 vwifibus - ok
22:48:08.0679 0x0c60 [ 6A3D66263414FF0D6FA754C646612F3F, 30F6BA594B0D3B94113064015A16D97811CD989DF1715CCE21CEAB9894C1B4FB ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys
22:48:08.0710 0x0c60 vwififlt - ok
22:48:08.0726 0x0c60 [ 6A638FC4BFDDC4D9B186C28C91BD1A01, 5521F1DC515586777EC4837E0AEAA3E613CC178AF1074031C4D0D0C695A93168 ] vwifimp C:\Windows\system32\DRIVERS\vwifimp.sys
22:48:08.0788 0x0c60 vwifimp - ok
22:48:08.0835 0x0c60 [ 1C9D80CC3849B3788048078C26486E1A, 34A89F31E53F6B6C209B286F580CC2257AE6D057E4E20741F241C9C167947962 ] W32Time C:\Windows\system32\w32time.dll
22:48:08.0866 0x0c60 W32Time - ok
22:48:08.0897 0x0c60 [ 4E9440F4F152A7B944CB1663D3935A3E, 8FE04EBD3BC612EE943A21A3E56F37E5C9B578CDACA6044048181DAD81816D53 ] WacomPen C:\Windows\system32\drivers\wacompen.sys
22:48:08.0928 0x0c60 WacomPen - ok
22:48:08.0975 0x0c60 [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys
22:48:09.0022 0x0c60 WANARP - ok
22:48:09.0022 0x0c60 [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys
22:48:09.0053 0x0c60 Wanarpv6 - ok
22:48:09.0162 0x0c60 [ 3CEC96DE223E49EAAE3651FCF8FAEA6C, 4150DAB33E8D61076F1D4767BCAFC9B4ECCCCBD58FD4FB3CFE5B8D27DCDCAB61 ] WatAdminSvc C:\Windows\system32\Wat\WatAdminSvc.exe
22:48:09.0225 0x0c60 WatAdminSvc - ok
22:48:09.0287 0x0c60 [ 78F4E7F5C56CB9716238EB57DA4B6A75, 46A4E78CE5F2A4B26F4E9C3FF04A99D9B727A82AC2E390A82A1611C3F6E0C9AF ] wbengine C:\Windows\system32\wbengine.exe
22:48:09.0381 0x0c60 wbengine - ok
22:48:09.0396 0x0c60 [ 3AA101E8EDAB2DB4131333F4325C76A3, 4F7BD3DA5E58B18BFF106CFF7B45E75FD13EE556D433C695BA23EC80827E49DE ] WbioSrvc C:\Windows\System32\wbiosrvc.dll
22:48:09.0428 0x0c60 WbioSrvc - ok
22:48:09.0474 0x0c60 [ 7368A2AFD46E5A4481D1DE9D14848EDD, 8039C478FC2D9F095F5883A4FA47F9E6EDF57CC88A4AA74F07C88445F90DED57 ] wcncsvc C:\Windows\System32\wcncsvc.dll
22:48:09.0490 0x0c60 wcncsvc - ok
22:48:09.0506 0x0c60 [ 20F7441334B18CEE52027661DF4A6129, 7B8E0247234B740FED2BE9B833E9CE8DD7453340123AB43F6B495A7E6A27B0DD ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
22:48:09.0599 0x0c60 WcsPlugInService - ok
22:48:09.0615 0x0c60 [ 72889E16FF12BA0F235467D6091B17DC, F2FD0BBD075E33608D93F350D216F97442AB89ABD540513C2D568C78096E12A8 ] Wd C:\Windows\system32\drivers\wd.sys
22:48:09.0630 0x0c60 Wd - ok
22:48:09.0677 0x0c60 [ E2C933EDBC389386EBE6D2BA953F43D8, AF1DEADD5F1267CCEBD226E8EEB971D1946EA6A5A9645A36F5D111F758AF2F07 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys
22:48:09.0708 0x0c60 Wdf01000 - ok
22:48:09.0755 0x0c60 [ BF1FC3F79B863C914687A737C2F3D681, B2DF47AC4931ACFB243775767B77065CC0D98778FC0243C793A3E219EB961209 ] WdiServiceHost C:\Windows\system32\wdi.dll
22:48:09.0864 0x0c60 WdiServiceHost - ok
22:48:09.0880 0x0c60 [ BF1FC3F79B863C914687A737C2F3D681, B2DF47AC4931ACFB243775767B77065CC0D98778FC0243C793A3E219EB961209 ] WdiSystemHost C:\Windows\system32\wdi.dll
22:48:09.0896 0x0c60 WdiSystemHost - ok
22:48:10.0020 0x0c60 [ 0EB0E5D22B1760F2DBCE632F2DD7A54D, B8A4CC62F88768947FB0A161CF9564DB28FD9C1C037B5475DF192982DE035C22 ] WebClient C:\Windows\System32\webclnt.dll
22:48:10.0114 0x0c60 WebClient - ok
22:48:10.0161 0x0c60 [ C749025A679C5103E575E3B48E092C43, B71171D07EE7AB085A24BF3A1072FF2CE7EA021AAE695F6A90640E6EE8EB55C1 ] Wecsvc C:\Windows\system32\wecsvc.dll
22:48:10.0223 0x0c60 Wecsvc - ok
22:48:10.0286 0x0c60 [ 7E591867422DC788B9E5BD337A669A08, 484E6BCCDF7ADCE9A1AACAD1BC7C7D7694B9E40FA90D94B14D80C607784F6C75 ] wercplsupport C:\Windows\System32\wercplsupport.dll
22:48:10.0379 0x0c60 wercplsupport - ok
22:48:10.0410 0x0c60 [ 6D137963730144698CBD10F202E9F251, A9F522A125158D94F540544CCD4DBF47B9DCE2EA878C33675AFE40F80E8F4979 ] WerSvc C:\Windows\System32\WerSvc.dll
22:48:10.0473 0x0c60 WerSvc - ok
22:48:10.0488 0x0c60 [ 611B23304BF067451A9FDEE01FBDD725, 0AF2734B978165FC6FD22B64862132CCE32528A21C698A49D176129446E099C8 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys
22:48:10.0520 0x0c60 WfpLwf - ok
22:48:10.0629 0x0c60 [ F90B32B6034A377CAA6BFD73C0BA5C71, CDEF926F62A707C2CB0EF389CAA3932CB84BFDF16E33CACA386CF1B666304F63 ] WG111T C:\Windows\system32\DRIVERS\WG111Tvx.sys
22:48:10.0707 0x0c60 WG111T - ok
22:48:10.0722 0x0c60 [ 05ECAEC3E4529A7153B3136CEB49F0EC, 9995CB2CEC70A633EA33CBB0DEAD2BB28CB67132B41E9444BDAB9E75744C9A50 ] WIMMount C:\Windows\system32\drivers\wimmount.sys
22:48:10.0738 0x0c60 WIMMount - ok
22:48:10.0754 0x0c60 WinDefend - ok
22:48:10.0769 0x0c60 WinHttpAutoProxySvc - ok
22:48:10.0894 0x0c60 [ 19B07E7E8915D701225DA41CB3877306, D6555E8D276DBB11358246E0FE215F76F1FB358791C76B88D82C2A66A42DA19F ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll
22:48:11.0003 0x0c60 Winmgmt - ok
22:48:11.0144 0x0c60 [ BCB1310604AA415C4508708975B3931E, 9D943F086D454345153A0DD426B4432532A44FD87950386B186E1CAD2AC70565 ] WinRM C:\Windows\system32\WsmSvc.dll
22:48:11.0253 0x0c60 WinRM - ok
22:48:11.0315 0x0c60 [ FE88B288356E7B47B74B13372ADD906D, A16B166F6BB32EF9D2A142F27B9EC54CBC7B3AC915799783CF4C40E525BC9E03 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys
22:48:11.0362 0x0c60 WinUsb - ok
22:48:11.0409 0x0c60 [ 4FADA86E62F18A1B2F42BA18AE24E6AA, CE1683386886BF34862681A46199EA7E7FB4232A186047DA7FBD8EC240AF6726 ] Wlansvc C:\Windows\System32\wlansvc.dll
22:48:11.0456 0x0c60 Wlansvc - ok
22:48:11.0487 0x0c60 [ 680A7846370000D20D7E74917D5B7936, 55B77B358039672845D361CA4205F3482D1F30A4654B610FD785A1337EFDC316 ] WmBEnum C:\Windows\system32\drivers\WmBEnum.sys
22:48:11.0487 0x0c60 WmBEnum - ok
22:48:11.0518 0x0c60 [ 14C35BA8189C6F65D839163AA285E954, 8981AA488320C75E26E1ABDF884B721A4065F5D28F54782598B03F21B8CDC020 ] WmFilter C:\Windows\system32\drivers\WmFilter.sys
22:48:11.0518 0x0c60 WmFilter - ok
22:48:11.0534 0x0c60 [ AC4331AF118A720F13C9C5CABBFE27BD, 2C5F453996B00078F3E8E731F6B3DD4529831BDA2146EAFC66727C9460E85112 ] WmHidLo C:\Windows\system32\drivers\WmHidLo.sys
22:48:11.0549 0x0c60 WmHidLo - ok
22:48:11.0565 0x0c60 [ F6FF8944478594D0E414D3F048F0D778, 6F75E0AE6127B33A92A88E59D4B048FD4C15F997807BE7BF0EFE76F95235B1D9 ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys
22:48:11.0580 0x0c60 WmiAcpi - ok
22:48:11.0643 0x0c60 [ 38B84C94C5A8AF291ADFEA478AE54F93, 1AC267AC73670BEA5F3785C9AD9DB146F8E993A862C843742B21FDB90D102B2A ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe
22:48:11.0705 0x0c60 wmiApSrv - ok
22:48:11.0752 0x0c60 WMPNetworkSvc - ok
22:48:11.0768 0x0c60 [ 8488DD91A3EE54A8E29F02AD7BB8201E, D428ED991D9E4A8765C240B21884A262854278698D60862117AC5949713231F9 ] WmVirHid C:\Windows\system32\drivers\WmVirHid.sys
22:48:11.0783 0x0c60 WmVirHid - ok
22:48:11.0783 0x0c60 [ 14802B3A30AA849C97CB968CCC813BF3, 330AD828ABD040ECDBF58F7162978CD61BFC093CAD404FD2BCAC74E3F2EC542A ] WmXlCore C:\Windows\system32\drivers\WmXlCore.sys
22:48:11.0799 0x0c60 WmXlCore - ok
22:48:11.0814 0x0c60 [ 96C6E7100D724C69FCF9E7BF590D1DCA, 2E63C9B0893B4FC03B7A71BAEA6202D3D3DB1B52F3643467829B5A573FD7655B ] WPCSvc C:\Windows\System32\wpcsvc.dll
22:48:11.0830 0x0c60 WPCSvc - ok
22:48:11.0846 0x0c60 [ 93221146D4EBBF314C29B23CD6CC391D, C0750858A65BF51E210CD244C825C121D67E025CD2D2455139991AAC289A90FE ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll
22:48:11.0861 0x0c60 WPDBusEnum - ok
22:48:11.0861 0x0c60 [ 6BCC1D7D2FD2453957C5479A32364E52, E48554D31FBDCF8F985C1C72524CAA9106F5B7CC2B79064F8F5E2562D517F090 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys
22:48:11.0908 0x0c60 ws2ifsl - ok
22:48:11.0924 0x0c60 [ E8B1FE6669397D1772D8196DF0E57A9E, 39FE0819360719F756BD31A1884A0508A1E2371ACC723E25E005CBEC0A7B02FA ] wscsvc C:\Windows\system32\wscsvc.dll
22:48:11.0970 0x0c60 wscsvc - ok
22:48:12.0048 0x0c60 [ 8D918B1DB190A4D9B1753A66FA8C96E8, DB7D2714DC04D2D6999A207D7399A5647C8653E5A1AD80856A65C5B6065AEDFE ] WSDPrintDevice C:\Windows\system32\DRIVERS\WSDPrint.sys
22:48:12.0080 0x0c60 WSDPrintDevice - ok
22:48:12.0095 0x0c60 WSearch - ok
22:48:12.0158 0x0c60 [ A2C4DC335656FB7A5A3AC076282534CB, E8126BDB45A4EFC59BE3227945941A7838EEDC2DE77E5D5E037D5667A649A2BD ] WSWNDA3100 C:\Program Files (x86)\NETGEAR\WNDA3100v2\WifiSvc.exe
22:48:12.0204 0x0c60 WSWNDA3100 - ok
22:48:12.0345 0x0c60 [ 61FF576450CCC80564B850BC3FB6713A, B2843BC9E2F62D27DCF6787D063378926748CE75002BADA1873DCB5039883705 ] wuauserv C:\Windows\system32\wuaueng.dll
22:48:12.0423 0x0c60 wuauserv - ok
22:48:12.0548 0x0c60 [ AB886378EEB55C6C75B4F2D14B6C869F, D6C4602EB8F291DADEDF3CD211013D4AC752DDE7E799C2D8D74AA4F5477CAED6 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys
22:48:12.0610 0x0c60 WudfPf - ok
22:48:12.0641 0x0c60 [ DDA4CAF29D8C0A297F886BFE561E6659, 94E5DD649B5D86FA1A7C7D30FCF9644D0EE048D312E626111458ADF66BFBE978 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys
22:48:12.0672 0x0c60 WUDFRd - ok
22:48:12.0735 0x0c60 [ B20F051B03A966392364C83F009F7D17, 88ECEB55AE91F58F592B96EBC10B572747D5A2F9B7629E8F371761E4F7408A65 ] wudfsvc C:\Windows\System32\WUDFSvc.dll
22:48:12.0750 0x0c60 wudfsvc - ok
22:48:12.0797 0x0c60 [ 04F82965C09CBDF646B487E145060301, 2CD8533EDBE24C3E42EB7550E20F8A2EB9E5E345B165DEF543163A6BC1FDD18B ] WwanSvc C:\Windows\System32\wwansvc.dll
22:48:12.0860 0x0c60 WwanSvc - ok
22:48:12.0969 0x0c60 ================ Scan global ===============================
22:48:13.0000 0x0c60 [ BA0CD8C393E8C9F83354106093832C7B, 18D8A4780A2BAA6CEF7FBBBDA0EF6BF2DADF146E1E578A618DD5859E8ADBF1A8 ] C:\Windows\system32\basesrv.dll
22:48:13.0078 0x0c60 [ 88EDD0B34EED542745931E581AD21A32, DC2B93E1CEF5B0BCEE08D72669BB0F3AD0E8E6E75BDC08858407ED92F6FFA031 ] C:\Windows\system32\winsrv.dll
22:48:13.0094 0x0c60 [ 88EDD0B34EED542745931E581AD21A32, DC2B93E1CEF5B0BCEE08D72669BB0F3AD0E8E6E75BDC08858407ED92F6FFA031 ] C:\Windows\system32\winsrv.dll
22:48:13.0156 0x0c60 [ D6160F9D869BA3AF0B787F971DB56368, 0033E6212DD8683E4EE611B290931FDB227B4795F0B17C309DC686C696790529 ] C:\Windows\system32\sxssrv.dll
22:48:13.0203 0x0c60 [ 24ACB7E5BE595468E3B9AA488B9B4FCB, 63541E3432FCE953F266AE553E7A394978D6EE3DB52388D885F668CF42C5E7E2 ] C:\Windows\system32\services.exe
22:48:13.0218 0x0c60 [ Global ] - ok
22:48:13.0218 0x0c60 ================ Scan MBR ==================================
22:48:13.0234 0x0c60 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
22:48:13.0624 0x0c60 \Device\Harddisk0\DR0 - ok
22:48:13.0640 0x0c60 ================ Scan VBR ==================================
22:48:13.0640 0x0c60 [ 1CFDA61795CDDF6B1A1CAE60477E5D1C ] \Device\Harddisk0\DR0\Partition1
22:48:13.0687 0x0c60 \Device\Harddisk0\DR0\Partition1 - ok
22:48:13.0687 0x0c60 [ 7F21342BEAD06ECC2E8D3369FC8EACA6 ] \Device\Harddisk0\DR0\Partition2
22:48:13.0718 0x0c60 \Device\Harddisk0\DR0\Partition2 - ok
22:48:13.0733 0x0c60 [ E6984378B627F7A065B4C856A8E385AD ] \Device\Harddisk0\DR0\Partition3
22:48:13.0827 0x0c60 \Device\Harddisk0\DR0\Partition3 - ok
22:48:13.0827 0x0c60 ================ Scan generic autorun ======================
22:48:14.0217 0x0c60 [ 529E978921A6C519FC78233DF33F5069, 05B176155108BD4686047BF42A8490C15059702C654D90C7DB381A42F9C0160E ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
22:48:14.0576 0x0c60 RtHDVCpl - ok
22:48:14.0669 0x0c60 [ 0104F4CA73154C23FFB449501F6D2D53, 0610AC01C06CC15D67F11C0EE00097A4D0A56B9EED16489FD3306EC2E1E6F301 ] C:\Program Files\Logitech\Gaming Software\LWEMon.exe
22:48:14.0685 0x0c60 Start WingMan Profiler - ok
22:48:14.0685 0x0c60 Nvtmru - ok
22:48:14.0732 0x0c60 [ DD81D91FF3B0763C392422865C9AC12E, F5691B8F200E3196E6808E932630E862F8F26F31CD949981373F23C9D87DB8B9 ] C:\Windows\system32\rundll32.exe
22:48:14.0810 0x0c60 ShadowPlay - ok
22:48:15.0028 0x0c60 [ 4F011F572DAC7057DF9D6E9064AA77E8, CC05441572740A9996525C3B9382191022E4F918C45C09EC0DE4C11215F81008 ] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
22:48:15.0091 0x0c60 NvBackend - ok
22:48:15.0325 0x0c60 [ BB29C1CD9CB7857226EA807523D96059, B43E50DB54B84DA3DB3B0DD733C40EDA6D7380CA6E4EB33D9C779DC9B042A04C ] C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
22:48:15.0543 0x0c60 KiesTrayAgent - ok
22:48:15.0668 0x0c60 [ FE248A991DC14D2E5FACF7729BF88B23, 727C7260AC106BC32226B55205D3552368990DFEAFC860149110C09E1F76CBE2 ] C:\Program Files (x86)\ASUS\GamerOSD\GamerOSD.exe
22:48:15.0715 0x0c60 ASUSGamerOSD - detected UnsignedFile.Multi.Generic ( 1 )
22:48:18.0647 0x0c60 Detect skipped due to KSN trusted
22:48:18.0647 0x0c60 ASUSGamerOSD - ok
22:48:18.0757 0x0c60 [ 872B3D5F6F9F9BDFD6A83EE8AA5824B4, 9B1CDB39C17D3D04920BD62E8EDDEA0ECF1F07BAB7F4D3764C2183A702393581 ] C:\Program Files (x86)\Common Files\InstallShield\UpdateService\issch.exe
22:48:18.0757 0x0c60 ISUSScheduler - detected UnsignedFile.Multi.Generic ( 1 )
22:48:21.0611 0x0c60 Detect skipped due to KSN trusted
22:48:21.0611 0x0c60 ISUSScheduler - ok
22:48:21.0721 0x0c60 [ 6BA433E1E4C815CFB819DD99447F847A, FB0C53ACE0A28AC59D2E2DA47ED780BABABFA0BB61585C12E82F8F973D3A9EC5 ] C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe
22:48:21.0752 0x0c60 ASUS AiChargerPlus Execute - ok
22:48:21.0877 0x0c60 [ 77756F6645C441C1FC659007CE520F08, 2F024CA2B7BCF3EFA95C517519165C2A54F1FA48077BB8A295BC7E73CA37D834 ] C:\Program Files (x86)\rFactor\Hamachi\hamachi-2-ui.exe
22:48:21.0939 0x0c60 LogMeIn Hamachi Ui - ok
22:48:22.0064 0x0c60 [ 545676F48851A5C65A38CAE5B5518C95, F7CD893B8198AA22347CB96A61C258217FA0A1B1CC1733784B5FD84A7B208264 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
22:48:22.0079 0x0c60 APSDaemon - ok
22:48:22.0079 0x0c60 AirServer - ok
22:48:22.0220 0x0c60 [ 08E7173D1B74095335052459200CB1EA, 5B6EB8A65B5F451BF6115EB7CD1355E5870E6D764F22D767D13216BF17C5668F ] C:\Program Files (x86)\QuickTime\QTTask.exe
22:48:22.0267 0x0c60 QuickTime Task - detected UnsignedFile.Multi.Generic ( 1 )
22:48:25.0106 0x0c60 Detect skipped due to KSN trusted
22:48:25.0106 0x0c60 QuickTime Task - ok
22:48:25.0199 0x0c60 [ 34D296AFC913E302953C70463EF09A48, BC413307CBC56C039EE8A05B51A56E14EF59678FBB33815AEB320078056C8CE7 ] C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe
22:48:25.0231 0x0c60 HP Software Update - ok
22:48:25.0309 0x0c60 [ D88B2D487439305A2EC308A6796C3044, 79DF0A41ECB08D5BEB3393B2BA15E6C88AD626803E1734EFBA0DBE4ECF7274D7 ] C:\Program Files (x86)\iTunes\iTunesHelper.exe
22:48:25.0324 0x0c60 iTunesHelper - ok
22:48:25.0621 0x0c60 [ 26B558B2D31C7425B455B00E562EAD93, B64D128A2F1FC42BA4376F8EB08D70F4B705745CB983D0631DB45851BF34BBDF ] C:\Program Files\AVAST Software\Avast\AvastUI.exe
22:48:25.0761 0x0c60 AvastUI.exe - ok
22:48:26.0026 0x0c60 [ 7EE68A122ED08E4AAD8DA551E34D2515, B3C9AB270AF595D3DBAFBF4A312B96CBF00C16F0A03CCC86BE56825CD1EB7143 ] C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
22:48:26.0213 0x0c60 SDTray - ok
22:48:26.0276 0x0c60 [ 308F2EE28005510DE616409148CF077B, A2126CB185B0053086BDD6F0A16A503F6CA629AC677E4B7AE6D43C770061D087 ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
22:48:26.0323 0x0c60 SunJavaUpdateSched - ok
22:48:26.0463 0x0c60 [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
22:48:26.0588 0x0c60 Sidebar - ok
22:48:26.0635 0x0c60 [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe
22:48:26.0713 0x0c60 mctadmin - ok
22:48:26.0806 0x0c60 [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
22:48:26.0853 0x0c60 Sidebar - ok
22:48:26.0853 0x0c60 [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe
22:48:26.0869 0x0c60 mctadmin - ok
22:48:26.0915 0x0c60 [ 81061E94950A18093E0FFD0841896F22, D52086120CDA01AC17745B25D9445371372EB51A389086BE6E203EC57386A8E1 ] C:\PROGRA~2\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe
22:48:26.0915 0x0c60 ISUSPM Startup - detected UnsignedFile.Multi.Generic ( 1 )
22:48:29.0677 0x0c60 Detect skipped due to KSN trusted
22:48:29.0677 0x0c60 ISUSPM Startup - ok
22:48:29.0817 0x0c60 [ E3BF29CED96790CDAAFA981FFDDF53A3, 76CB27EF7B27E5636EDA9D95229519B2A2870729A0BB694F1FD11CD602BAC4DC ] C:\Program Files\Windows Sidebar\sidebar.exe
22:48:29.0911 0x0c60 Sidebar - ok
22:48:30.0035 0x0c60 [ AEA1A710A52E3990FC1FD38ABAAFA77D, A7EB15929856874CA2CB24937AC34904F338971AD94AD84E738A8509D39B18AC ] C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe
22:48:30.0082 0x0c60 GarminExpressTrayApp - ok
22:48:30.0379 0x0c60 [ FE157C8114B6D6FEBEEB5884D4933CF8, BA94B3E09524E062618DBDC2889AD2721B6D1D074380410275480476CAB38770 ] C:\Program Files (x86)\Valve\Steam\\Steam.exe
22:48:30.0441 0x0c60 Steam - ok
22:48:30.0441 0x0c60 msnmsgr - ok
22:48:30.0628 0x0c60 LogMeIn Cubby - ok
22:48:30.0784 0x0c60 [ CCF2234A35077CA217A61C9CACC48198, C1FB60E22DB42073A7803B2715A779D42D86F762D226312E8D3BC78FBB5D1E1D ] C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
22:48:30.0862 0x0c60 LightScribe Control Panel - detected UnsignedFile.Multi.Generic ( 1 )
22:48:33.0608 0x0c60 Detect skipped due to KSN trusted
22:48:33.0608 0x0c60 LightScribe Control Panel - ok
22:48:33.0733 0x0c60 [ B5C4A53E0079A30A82A15980813A41E4, 57CF7DCFF5831877D0A71538125B7F593A58B893C5DCA876242B776CC9790DB0 ] C:\Program Files (x86)\Samsung\Kies\KiesHelper.exe
22:48:33.0779 0x0c60 KiesHelper - ok
22:48:34.0388 0x0c60 [ 4084E12C0EB927FB788EB9A42BAA1B6C, A033BF6081771DF6B946D85621BFD1D0096879BFD57FD5B987C6E6397FAC78A1 ] C:\Program Files (x86)\Origin\Origin.exe
22:48:34.0481 0x0c60 EADM - ok
22:48:34.0684 0x0c60 [ B1949628130F192DA27FDBAEA516BB6E, 13E5A2EBF0FDAB29CEA1E7FAEB3141233198D9A28353BDBB6FDB03602BE32AC6 ] C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe
22:48:34.0871 0x0c60 Spybot-S&D Cleaning - ok
22:48:34.0887 0x0c60 Waiting for KSN requests completion. In queue: 6
22:48:35.0901 0x0c60 Waiting for KSN requests completion. In queue: 6
22:48:36.0915 0x0c60 Waiting for KSN requests completion. In queue: 3
22:48:37.0960 0x0c60 AV detected via SS2: avast! Antivirus, C:\Program Files\AVAST Software\Avast\VisthAux.exe ( 9.0.2021.515 ), 0x41000 ( enabled : updated )
22:48:37.0991 0x0c60 Win FW state via NFP2: enabled
22:48:40.0784 0x0c60 ============================================================
22:48:40.0784 0x0c60 Scan finished
22:48:40.0784 0x0c60 ============================================================
22:48:40.0799 0x1bec Detected object count: 4
22:48:40.0799 0x1bec Actual detected object count: 4
23:00:27.0887 0x1bec HPSLPSVC ( UnsignedFile.Multi.Generic ) - skipped by user
23:00:27.0887 0x1bec HPSLPSVC ( UnsignedFile.Multi.Generic ) - User select action: Skip
23:00:27.0887 0x1bec IDriverT ( UnsignedFile.Multi.Generic ) - skipped by user
23:00:27.0887 0x1bec IDriverT ( UnsignedFile.Multi.Generic ) - User select action: Skip
23:00:27.0903 0x1bec Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user
23:00:27.0903 0x1bec Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip
23:00:27.0903 0x1bec USBAAPL64 ( UnsignedFile.Multi.Generic ) - skipped by user
23:00:27.0903 0x1bec USBAAPL64 ( UnsignedFile.Multi.Generic ) - User select action: Skip

Juliet
2014-10-15, 01:12
OK
TDSSKiller came back clean.

I am not finding any more malware on your computer.

Other then windows updates failing, what other issues are you having?

sufferinginsilence
2014-10-15, 11:28
Only the windows updates are failing.

It downloads them and when it tries to configure windows is fails.

Everything else seems to be ok.

Juliet
2014-10-15, 12:55
Before I ask that you register and post for help at another forum that helps with Windows issues, one more suggestion.

System Update Readiness Tool
http://windows.microsoft.com/en-us/windows7/what-is-the-system-update-readiness-tool

read and follow through with this and report back.

sufferinginsilence
2014-10-15, 14:05
I ran the System Update Readiness Tool and carried out the update.

After a long wait it came back with a message that it had successfully installed the update.

sufferinginsilence
2014-10-15, 14:09
to be precise it installed the following:


Hotfix for Windows (KB947821)

Installation date: ‎15/‎10/‎2014 12:45

Installation status: Successful

Update type: Important

Fix for KB947821

More information:
http://support.microsoft.com/?kbid=947821

Help and Support:
http://support.microsoft.com

Juliet
2014-10-15, 15:22
OK, maybe we're headed in the right direction.

This morning Microsoft released quite a few Windows updates. If you have yours on automatic download good but, wait to install.
Let it sit there for a short time before you allow it to install.

Or, go to the web site and check manually.

Let me know how this turns out.

sufferinginsilence
2014-10-16, 20:42
OK, I have managed to install some of the updates but not all. There are some that fail.

Juliet
2014-10-16, 21:04
I have a feeling they will.

Have you rebooted since the updates?

Give it another day and let's see if some of the others show up to be installed.

sufferinginsilence
2014-10-16, 21:05
I have rebooted many times.

I have been installing a few updates at a time instead of all at once.

Juliet
2014-10-16, 21:19
I have rebooted many times.

I have been installing a few updates at a time instead of all at once.

Thats good actually. I have a feeling they will all install soon.
This happened to me on my personal computer. I had to use the readiness tool and was surprised that even days after I was still downloading and installing updates.
And I think this is whats going to apply here as well.

Let's leave this topic open for a couple of days and see if all do indeed download and install as expected.

Juliet
2014-10-22, 00:30
Things good now?

We need to remove tools and quarantine folders.


Download Delfix from here (http://general-changelog-team.fr/fr/downloads/finish/20-outils-de-xplode/9-delfix)
Ensure Remove disinfection tools is ticked
Also tick:
Create registry backup
Click Run
Purge system restore
http://www.hdrcgb.org.uk/g2g/delfix.jpg

Any other tools and files found can simply be deleted or uninstall via Add/Remove Programs in the Control Panel etc.

~~~~~~~~~~~~~~~~


Answers to common security questions - Best Practices (http://www.bleepingcomputer.com/forums/t/407147/answers-to-common-security-questions-best-practices/) by quietman7, MVP
How Malware Spreads - How did I get infected? (http://www.bleepingcomputer.com/forums/t/287710/how-malware-spreads-how-did-i-get-infected/) by quietman7, MVP
Simple and easy ways to keep your computer safe and secure on the Internet (http://www.bleepingcomputer.com/tutorials/keep-your-computer-safe-online/) by Lawrence Abrams, MVP
How to Prevent Malware (http://users.telenet.be/bluepatchy/miekiemoes/prevention.html) by miekiemoes, MVP
How to backup and restore your data using Cobian Backup (http://www.bleepingcomputer.com/tutorials/backup-and-restore-data-with-cobian-backup/) by YourHighness
Slow Computer/browser? It May Not Be Malware (http://www.bleepingcomputer.com/forums/t/87058/slow-computerbrowser-check-here-first;-it-may-not-be-malware/) by quietman7, MVP


The following programmes come highly recommended in the security community.

http://3-ps.googleusercontent.com/x/forums.whatthetech.com/i.imgur.com/xKsUqI5A.png.pagespeed.ic.vn1Hlvqi8h.jpgAdBlock (https://adblockplus.org/en/firefox) is a browser add-on that blocks annoying banners, pop-ups and video ads.
http://i.imgur.com/E8I37RF.pngCryptoPrevent (https://www.foolishit.com/) places policy restrictions on loading points for ransomware (eg.CryptoPrevent), preventing your files from being encrypted.
http://i.imgur.com/EG85Vjt.png Malwarebytes Anti-Exploit (https://www.malwarebytes.org/antiexploit/) (MBAE) is designed to prevent zero-day malware from exploiting vulnerable software.
http://3-ps.googleusercontent.com/x/forums.whatthetech.com/i.imgur.com/x6YRrgUC.png.pagespeed.ic.HjgFxjvw2Z.jpgMalwarebytes Anti-Malware Premium (https://www.malwarebytes.org/) (MBAM) works in real-time along side your Anti-Virus to prevent malware execution.
http://1-ps.googleusercontent.com/x/forums.whatthetech.com/i.imgur.com/xjv4nhMJ.png.pagespeed.ic.A5YbWn1eDO.png NoScript (http://noscript.net/) is a Firefox add-on that blocks the actions of malicious scripts by using whitelisting and other technology.
http://i.imgur.com/3O8r9Uq.png (http://www.sandboxie.com/) Sandboxie (http://www.sandboxie.com/) isolates programmes of your choice, preventing files from being written to your HDD unless approved by you.
http://1-ps.googleusercontent.com/x/forums.whatthetech.com/i.imgur.com/DgW1XL2.png.pagespeed.ce.v1OlJl_ZAS.png Secuina PSI (http://secunia.com/vulnerability_scanning/personal/) will scan your computer for vulnerable software that is outdated, and automatically find the latest update for you.
http://3-ps.googleusercontent.com/x/forums.whatthetech.com/i.imgur.com/xj1OLIec.png.pagespeed.ic.k6hhwopU0q.jpg SpywareBlaster (https://www.brightfort.com/spywareblaster.html) is a form of passive protection, designed to block the actions of malicious websites and tracking cookies.
http://3-ps.googleusercontent.com/x/forums.whatthetech.com/i.imgur.com/xJEP5iWI.png.pagespeed.ic.4tmM1lM7DQ.pngWeb of Trust (https://www.mywot.com/) (WOT) is a browser add-on designed to alert you before interacting with a potentially malicious website.

sufferinginsilence
2014-10-22, 15:47
# DelFix v10.8 - Logfile created 22/10/2014 at 14:33:40
# Updated 29/07/2014 by Xplode
# Username : Crosshair - FORMULAV
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)

~ Removing disinfection tools ...

Deleted : C:\FRST
Deleted : C:\AdwCleaner
Deleted : C:\Users\Crosshair\Desktop\FRST-OlderVersion
Deleted : C:\TDSSKiller.3.0.0.40_14.10.2014_22.43.33_log.txt
Deleted : C:\Users\Crosshair\Desktop\Addition.txt
Deleted : C:\Users\Crosshair\Desktop\AdwCleaner[S0].txt
Deleted : C:\Users\Crosshair\Desktop\aswMBR.exe
Deleted : C:\Users\Crosshair\Desktop\aswMBR.txt
Deleted : C:\Users\Crosshair\Desktop\esetsmartinstaller_enu(1).exe
Deleted : C:\Users\Crosshair\Desktop\Fixlog.txt
Deleted : C:\Users\Crosshair\Desktop\FRST.txt
Deleted : C:\Users\Crosshair\Desktop\FRST64.exe
Deleted : C:\Users\Crosshair\Desktop\FSS.exe
Deleted : C:\Users\Crosshair\Desktop\FSS.txt
Deleted : C:\Users\Crosshair\Desktop\JRT.txt
Deleted : C:\Users\Crosshair\Desktop\MBR.dat
Deleted : C:\Users\Crosshair\Desktop\RogueKiller.exe
Deleted : C:\Users\Crosshair\Desktop\SecurityCheck.exe
Deleted : C:\Users\Crosshair\Desktop\tdsskiller.exe
Deleted : C:\Users\Crosshair\Downloads\adwcleaner_3.311.exe
Deleted : C:\Users\Crosshair\Downloads\esetsmartinstaller_enu.exe
Deleted : C:\Users\Crosshair\Downloads\JRT.exe
Deleted : HKLM\SOFTWARE\AdwCleaner
Deleted : HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_ASWMBR

~ Creating registry backup ... OK

~ Cleaning system restore ...

Deleted : RP #486 [Windows Update | 10/18/2014 16:03:31]
Deleted : RP #487 [Windows Update | 10/18/2014 17:01:16]
Deleted : RP #488 [Windows Update | 10/18/2014 21:52:42]
Deleted : RP #489 [Windows Update | 10/18/2014 22:08:32]
Deleted : RP #490 [Windows Update | 10/18/2014 23:15:24]
Deleted : RP #491 [Windows Update | 10/18/2014 23:18:19]
Deleted : RP #492 [Windows Update | 10/19/2014 01:56:40]
Deleted : RP #493 [Windows Update | 10/19/2014 02:31:48]
Deleted : RP #494 [Windows Update | 10/19/2014 04:59:12]
Deleted : RP #495 [Installed Java 7 Update 71 | 10/19/2014 10:23:00]
Deleted : RP #496 [Removed Java 7 Update 71 | 10/19/2014 14:06:14]
Deleted : RP #497 [Installed Java 7 Update 60 | 10/19/2014 14:13:36]
Deleted : RP #498 [Windows Update | 10/20/2014 02:00:12]
Deleted : RP #499 [Windows Update | 10/21/2014 00:12:23]

New restore point created !

########## - EOF - ##########


Thank you for your help in cleaning up my windows. It certainly seems to be quicker and more responsive now.

I tried updating the windows but there are 10 important updates that won't install. :-(

Juliet
2014-10-22, 19:25
Thank you for your help in cleaning up my windows. It certainly seems to be quicker and more responsive now.

Good deal.


I tried updating the windows but there are 10 important updates that won't install. :-(

What I'm going to ask at this time is you go here
http://forums.whatthetech.com/index.php?showforum=119
Join and Become a member there like you did here. Use the same name to keep logs and answers straight.
Start a new topic and explain all windows updates will not download and install. There might be several questions involved but is probably whats needed.

You can supply them with a link to the new topic from here and this will show them what we have done and at this time that you are malware free. This is a windows help forum that works with and try's to help resolve issues with internal windows errors.
They are better educated with these issues then I am not to mention they are a great group of people.

Juliet
2014-10-26, 12:19
Glad we could help. :)http://i204.photobucket.com/albums/bb106/Juliet702/sparkle.gif

Since this issue appears resolved ... this Topic is closed.