Sorry for the delay. I thought I had already posted this days ago.
I think I found the problem; when I tried to post both outputs in the same post, an error message said the post was
"too long". So, now, I'm posting them in individual posts.
Since that, too, did not work, I'm posting the FRST.txt in 2 separate posts. The Additional will be located in a third post.
- r
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-07-2014
Ran by Wheelsup Club (administrator) on WHEELSUPCLUB-PC on 12-07-2014 10:19:38
Running from C:\Users\Wheelsup Club\Downloads
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: English (United States)
Internet Explorer Version 11
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version:
http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/
Download link for 64-Bit Version:
http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST:
http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(The Eraser Project) C:\Program Files\Eraser\Eraser.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(IntelliQuest Communications, Inc.) C:\Program Files (x86)\Corel\WordPerfect Office 2000\Register\Remind32.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
(SlimWare Utilities, Inc.) C:\Program Files (x86)\DriverUpdate\DriverUpdate.exe
(UMAX) C:\VstaScan\VsAccess.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler.exe
() C:\Program Files (x86)\Gateway\Hotkey Utility\HotkeyUtility.exe
(Corel Corporation Limited) C:\Program Files (x86)\Corel\WordPerfect Office 2000\programs\alarm.exe
(IOI) C:\Program Files (x86)\Gateway Photo Frame\ButtonMonitor.exe
(Nullsoft, Inc.) C:\Program Files (x86)\Winamp\winampa.exe
(Corel Corporation Limited) C:\Program Files (x86)\Corel\WordPerfect Office 2000\programs\dad9.exe
(Cisco Systems, Inc.) C:\Program Files (x86)\Common Files\Pure Networks Shared\Platform\nmctxth.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler64.exe
(Napster) C:\Program Files (x86)\Napster\napster.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
(Comodo Security Solutions, Inc.) C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Acer Incorporated) C:\Program Files (x86)\Gateway\Registration\GregHSRW.exe
() C:\Program Files (x86)\Linksys\Linksys Updater\bin\LinksysUpdater.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\MSSQL\Binn\sqlservr.exe
(Sun Microsystems, Inc.) C:\Windows\SysWOW64\java.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(TorchMedia Inc.) C:\Users\Wheelsup Club\AppData\Local\Torch\Update\TorchCrashHandler.exe
(Acer Group) C:\Program Files\Gateway\Gateway Updater\UpdaterService.exe
(VMware, Inc.) C:\Windows\SysWOW64\vmnat.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Cisco Systems, Inc.) C:\Program Files (x86)\Common Files\Pure Networks Shared\Platform\nmsrvc.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(VMware, Inc.) C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe
(VMware, Inc.) C:\Windows\SysWOW64\vmnetdhcp.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE
(Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\BrYNSvc.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(Microsoft Corporation) C:\Program Files (x86)\Windows Live\Mail\wlmail.exe
(Microsoft Corporation) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
(Microsoft Corporation) C:\Windows\splwow64.exe
(Corel Corporation Limited) C:\Program Files (x86)\Corel\WordPerfect Office 2000\programs\wpwin9.exe
(Microsoft Corporation) C:\Windows\splwow64.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [OOTag] => C:\Program Files (x86)\Gateway\OOBEOffer\ootag.exe [13856 2010-02-23] (Microsoft)
HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1271072 2014-03-11] (Microsoft Corporation)
HKLM\...\Run: [Eraser] => C:\Program Files\Eraser\Eraser.exe [980920 2012-05-22] (The Eraser Project)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [9955872 2013-03-20] (Realtek Semiconductor)
HKLM-x32\...\Run: [Hotkey Utility] => C:\Program Files (x86)\Gateway\Hotkey Utility\HotkeyUtility.exe [609312 2010-05-05] ()
HKLM-x32\...\Run: [OOTag] => C:\Program Files (x86)\Gateway\OOBEOffer\OOTag.exe [13856 2010-02-23] (Microsoft)
HKLM-x32\...\Run: [Gateway Photo Frame] => C:\Program Files (x86)\Gateway Photo Frame\ButtonMonitor.exe [124416 2009-07-20] (IOI)
HKLM-x32\...\Run: [WinampAgent] => C:\Program Files (x86)\Winamp\winampa.exe [84576 2013-07-23] (Nullsoft, Inc.)
HKLM-x32\...\Run: [nmctxth] => C:\Program Files (x86)\Common Files\Pure Networks Shared\Platform\nmctxth.exe [642856 2008-12-12] (Cisco Systems, Inc.)
HKLM-x32\...\Run: [NapsterShell] => C:\Program Files (x86)\Napster\napster.exe [323216 2007-01-12] (Napster)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [43848 2014-02-12] (Apple Inc.)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [641704 2012-07-04] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [AMD AVT] => C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe [20992 2012-03-19] ()
HKLM-x32\...\Run: [Aimersoft Helper Compact.exe] => C:\Program Files (x86)\Common Files\Aimersoft\Aimersoft Helper Compact\ASHelper.exe [1667072 2012-02-28] (AimerSoft)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Nikon Message Center 2] => C:\Program Files (x86)\Nikon\Nikon Message Center 2\NkMC2.exe [571392 2011-10-30] (Nikon Corporation)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4086432 2014-07-09] (AVAST Software)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-01-17] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-05-26] (Apple Inc.)
HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101584 2014-04-25] (Safer-Networking Ltd.)
HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [2621440 2010-06-10] (Brother Industries, Ltd.)
Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
HKU\S-1-5-21-2354175475-3584804694-207632515-1000\...\Run: [Update Service] => C:\Program Files (x86)\Common Files\Teknum Systems\update.exe [19456 2012-12-12] (Teknum Systems AS)
HKU\S-1-5-21-2354175475-3584804694-207632515-1000\...\RunOnce: [Uninstall C:\Users\Wheelsup Club\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64] - C:\windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Wheelsup Club\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64"
HKU\S-1-5-21-2354175475-3584804694-207632515-1000\...\RunOnce: [Uninstall C:\Users\Wheelsup Club\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811] - C:\windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Wheelsup Club\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811"
HKU\S-1-5-21-2354175475-3584804694-207632515-1000\...\RunOnce: [Uninstall C:\Users\Wheelsup Club\AppData\Local\Microsoft\SkyDrive\17.0.4024.1220\amd64] - C:\windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Wheelsup Club\AppData\Local\Microsoft\SkyDrive\17.0.4024.1220\amd64"
HKU\S-1-5-21-2354175475-3584804694-207632515-1000\...\RunOnce: [Uninstall C:\Users\Wheelsup Club\AppData\Local\Microsoft\SkyDrive\17.0.4024.1220] - C:\windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Wheelsup Club\AppData\Local\Microsoft\SkyDrive\17.0.4024.1220"
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Corel Registration.lnk
ShortcutTarget: Corel Registration.lnk -> C:\Program Files (x86)\Corel\WordPerfect Office 2000\Register\Remind32.exe (IntelliQuest Communications, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Service Manager.lnk
ShortcutTarget: Service Manager.lnk -> C:\Program Files (x86)\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe (Microsoft Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\VistaAccess.lnk
ShortcutTarget: VistaAccess.lnk -> C:\VstaScan\VsAccess.exe (UMAX)
Startup: C:\Users\Wheelsup Club\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CorelCENTRAL Alarms.LNK
ShortcutTarget: CorelCENTRAL Alarms.LNK -> C:\Program Files (x86)\Corel\WordPerfect Office 2000\programs\alarm.exe (Corel Corporation Limited)
Startup: C:\Users\Wheelsup Club\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Desktop Application Director 9.LNK
ShortcutTarget: Desktop Application Director 9.LNK -> C:\Program Files (x86)\Corel\WordPerfect Office 2000\programs\dad9.exe (Corel Corporation Limited)
ShellIconOverlayIdentifiers: SkyDrive1 -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File
ShellIconOverlayIdentifiers: SkyDrive2 -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File
ShellIconOverlayIdentifiers: SkyDrive3 -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File
ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers-x32: SkyDrive1 -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File
ShellIconOverlayIdentifiers-x32: SkyDrive2 -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File
ShellIconOverlayIdentifiers-x32: SkyDrive3 -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File
BootExecute: autocheck autochk * sdnclean64.exe
==================== Internet (Whitelisted) ====================
ProxyServer: localhost:8080
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.bing.com
HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages =
URLSearchHook: HKCU - Default Value = {CFBFAE00-17A6-11D0-99CB-00C04FD64497}
URLSearchHook: HKCU - (No Name) - {BE89472C-B803-4D1D-9A9A-0A63660E0FE3} - C:\Program Files (x86)\Copernic Agent\CopernicAgentExt.dll (Copernic Technologies Inc.)
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM-x32 - DefaultScope value is missing.
SearchScopes: HKLM-x32 - {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACGW
SearchScopes: HKCU - DefaultScope {A37D5975-EF6F-4E7C-B890-85D1469D832F} URL = http://search.yahoo.com/search?fr=mcafee&type=A010US739&p={SearchTerms}
SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
SearchScopes: HKCU - {A37D5975-EF6F-4E7C-B890-85D1469D832F} URL = http://search.yahoo.com/search?fr=mcafee&type=A010US739&p={SearchTerms}
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Skype add-on for Internet Explorer - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
BHO: No Name - {c8d5d964-2be8-4c5b-8cf5-6e975aa88504} - No File
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
BHO-x32: No Name - {c8d5d964-2be8-4c5b-8cf5-6e975aa88504} - No File
BHO-x32: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
Toolbar: HKLM - No Name - {97ab88ef-346b-4179-a0b1-7445896547a5} - No File
Toolbar: HKLM - FireShot - {6E6E744E-4D20-4ce3-9A7A-26DFFFE22F68} - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\r2ykzn6f.default\extensions\{0b457cAA-602d-484a-8fe7-c1d894a011ba}\library\fsaddin64-0.98.28.dll No File
Toolbar: HKLM - No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
Toolbar: HKLM-x32 - FireShot - {6E6E744E-4D20-4ce3-9A7A-26DFFFE22F68} - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\r2ykzn6f.default\extensions\{0b457cAA-602d-484a-8fe7-c1d894a011ba}\library\fsaddin-0.98.28.dll No File
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
DPF: HKLM-x32 {17492023-C23A-453E-A040-C7C580BBF700}
http://download.microsoft.com/downl...-4117-8430-A67417AA88CD/LegitCheckControl.cab
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000}
http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
DPF: HKLM-x32 {E06E2E99-0AA1-11D4-ABA6-0060082AA75C}
Handler: copernicagent - {A979B6BD-E40B-4A07-ABDD-A62C64A4EBF6} - No File
Handler: copernicagentcache - {AAC34CFD-274D-4A9D-B0DC-C74C05A67E1D} - No File
Handler: pure-go - {4746C79A-2042-4332-8650-48966E44ABA8} - C:\Program Files (x86)\Common Files\Pure Networks Shared\Platform\amd64\puresp4.dll (Cisco Systems, Inc.)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
Handler-x32: copernicagent - {A979B6BD-E40B-4A07-ABDD-A62C64A4EBF6} - C:\Program Files (x86)\Copernic Agent\CopernicAgentExt.dll (Copernic Technologies Inc.)
Handler-x32: copernicagentcache - {AAC34CFD-274D-4A9D-B0DC-C74C05A67E1D} - C:\Program Files (x86)\Copernic Agent\CopernicAgentExt.dll (Copernic Technologies Inc.)
Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll No File
Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.dll No File
Handler-x32: pure-go - {4746C79A-2042-4332-8650-48966E44ABA8} - C:\Program Files (x86)\Common Files\Pure Networks Shared\Platform\puresp4.dll (Cisco Systems, Inc.)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 64.71.255.204 64.71.255.198
FireFox:
========
FF ProfilePath: C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463
FF NewTab: about:blank
FF Homepage: about:home
FF Plugin: @adobe.com/FlashPlayer - C:\windows\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll ()
FF Plugin: @java.com/DTPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/VirtualEarth3D,version=4.0 - C:\Program Files (x86)\Virtual Earth 3D\ ()
FF Plugin-x32: @adobe.com/FlashPlayer - C:\windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @java.com/DTPlugin - C:\Program Files (x86)\Java\jre6\bin\dtplugin\npDeployJava1.dll (Sun Microsystems, Inc.)
FF Plugin-x32: @java.com/JavaPlugin - C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/VirtualEarth3D,version=4.0 - C:\Program Files (x86)\Virtual Earth 3D\ ()
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @nullsoft.com/winampDetector;version=1 - C:\Program Files (x86)\Winamp Detect\npwachk.dll (Nullsoft, Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.0 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.1 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin-x32: TorchVLC - C:\Users\Wheelsup Club\AppData\Local\Torch\Plugins\Video\VLC\npvlc.dll (VideoLAN)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\np-mswmp.dll (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.)
FF SearchPlugin: C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\searchplugins\best-buy-canada.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\McSiteAdvisor.xml
FF Extension: Ant Video Downloader - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\anttoolbar@ant.com [2014-05-13]
FF Extension: Flash Video Downloader - Full HD Download - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\artur.dubovoy@gmail.com [2014-05-10]
FF Extension: GoogleSharing - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\googlesharing@extension.thoughtcrime.org [2014-01-18]
FF Extension: NetVideoHunter - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\netvideohunter@netvideohunter.com [2014-02-17]
FF Extension: Print pages to PDF - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\printPages2Pdf@reinhold.ripper [2013-11-23]
FF Extension: DownloadHelper - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2014-03-25]
FF Extension: Flash and Video Download - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\{bee6eb20-01e0-ebd1-da83-080329fb9a3a} [2014-06-26]
FF Extension: Anonymouse.org - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\arpit3@techraga.in.xpi [2014-06-21]
FF Extension: InvisibleHand - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\canitbecheaper@trafficbroker.co.uk.xpi [2013-11-25]
FF Extension: Hover Hand - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\chikit@gmail.com.xpi [2013-12-09]
FF Extension: anonymoX - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\client@anonymox.net.xpi [2013-11-09]
FF Extension: 1-Click Dailymotion Video Downloader - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\DailymotionVideoDownloader@PeterOlayev.com.xpi [2013-11-18]
FF Extension: Download Panel Tweaker - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\downloadPanelTweaker@infocatcher.xpi [2014-01-12]
FF Extension: Elite Proxy Switcher - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\eliteproxyswitcher@my-proxy.com.xpi [2013-11-08]
FF Extension: Hide My Ass Proxy Extension - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\extension@hidemyass.com.xpi [2013-11-04]
FF Extension: Video Downloader professional - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\ffext_basicvideoext@startpage24.xpi [2013-11-18]
FF Extension: HMA! IP Checker - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\ipinfo@hidemyass.com.xpi [2013-11-08]
FF Extension: Self-Destructing Cookies - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\jid0-9XfBwUWnvPx4wWsfBWMCm4Jj69E@jetpack.xpi [2014-01-02]
FF Extension: Hover Hound - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\jid0-PEBvWWKP6g5gzvk2gsdrh097hv0@jetpack.xpi [2013-11-25]
FF Extension: Google/Yandex search link fix - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\jid0-XWJxt5VvCXkKzQK99PhZqAn7Xbg@jetpack.xpi [2014-01-02]
FF Extension: Simple Highlighter - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\jid0-zHLx0tke81ABqPwp3FhItvPegMs@jetpack.xpi [2013-12-16]
FF Extension: One Click Proxy - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\jid0-zXo3XFGyiDalgkeEO4UYJTUwo2I@jetpack.xpi [2014-06-21]
FF Extension: Pin/Unpin Tab - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\jid1-j1RdUbjJ4pH8Yw@jetpack.xpi [2014-02-20]
FF Extension: NO Google Analytics - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\jid1-JcGokIiQyjoBAQ@jetpack.xpi [2014-01-18]
FF Extension: Strict Pop-up Blocker - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\jid1-P34HaABBBpOerQ@jetpack.xpi [2014-07-08]
FF Extension: Youtube Downloader - Media Downloader - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\paulsaintuzb@gmail.com.xpi [2014-02-17]
FF Extension: Reload Plus - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\reloadplus@blackwind.xpi [2014-01-02]
FF Extension: S3.Download Statusbar - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\s3download@statusbar.xpi [2014-02-17]
FF Extension: Save as PDF - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\save-as-pdf-ff@pdfcrowd.com.xpi [2013-11-08]
FF Extension: Savedeo video downloader - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\savedeo-video-downloader@fczbkk.com.xpi [2014-02-17]
FF Extension: SkipScreen - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\SkipScreen@SkipScreen.xpi [2014-02-17]
FF Extension: Google Translator for Firefox - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\translator@zoli.bod.xpi [2014-06-21]
FF Extension: Top Video Downloader - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\tvd@link64.xpi [2014-02-17]
FF Extension: Youtube and more - Easy Video Downloader - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\vdpure@link64.xpi [2013-11-04]
FF Extension: Video DL - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\video-dl-firefox@jetpack.xpi [2014-02-17]
FF Extension: Video Resumer - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\videoresumer@jetpack.xpi [2013-11-04]
FF Extension: Video WithOut Flash - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\vwof@drev.com.xpi [2013-11-18]
FF Extension: Keep Tube Downloader - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\webmaster@keep-tube.com.xpi [2014-01-12]
FF Extension: 1-Click YouTube Video Downloader - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\YoutubeDownloader@PeterOlayev.com.xpi [2013-11-04]
FF Extension: Video Myxa - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\{0C07EECD-53B6-4748-BB2B-4395BF51DD8B}.xpi [2014-02-17]
FF Extension: URL Link - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\{139a120b-c2ea-41d2-bf70-542d9f063dfd}.xpi [2014-01-02]
FF Extension: TweakTube - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\{15e67a59-bd3d-49ae-90dd-b3d3fd14c2ed}.xpi [2013-11-18]
FF Extension: FlashGot - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\{19503e42-ca3c-4c27-b1e2-9cdb2170ee34}.xpi [2014-01-20]
FF Extension: PDF Download - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\{37E4D8EA-8BDA-4831-8EA1-89053939A250}.xpi [2013-11-23]
FF Extension: Stylish - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\{46551EC9-40F0-4e47-8E18-8E5CF550CFB8}.xpi [2014-01-02]
FF Extension: Image Search Options - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\{4a313247-8330-4a81-948e-b79936516f78}.xpi [2014-01-13]
FF Extension: Download Status Bar - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\{6c28e999-e900-4635-a39d-b1ec90ba0c0f}.xpi [2014-01-23]
FF Extension: Context Highlight - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\{8051A235-3BDB-4450-9C02-8CD8C6F9E2CB}.xpi [2013-11-19]
FF Extension: Easy Youtube Video Downloader Express - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\{b9acf540-acba-11e1-8ccb-001fd0e08bd4}.xpi [2013-11-18]
FF Extension: Download YouTube Videos as MP4 - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\{b9bfaf1c-a63f-47cd-8b9a-29526ced9060}.xpi [2014-02-17]
FF Extension: Fast Video Download - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\{c50ca3c4-5656-43c2-a061-13e717f73fc8}.xpi [2014-01-12]
FF Extension: Download Statusbar - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\{D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}.xpi [2013-11-08]
FF Extension: Web2PDF converter - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\{e8f509f0-b677-11de-8a39-0800200c9a66}.xpi [2013-12-05]
FF Extension: Sothink Web Video Downloader for Firefox - C:\Users\Wheelsup Club\AppData\Roaming\Mozilla\Firefox\Profiles\ra2bxp65.default-1383529527463\Extensions\{FCAB6FDD-5585-425b-95C1-5ED856F3FD08}.xpi [2014-02-17]
FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0045-ABCDEFFEDCBA} [2014-05-09]
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2014-05-09]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-11-03]
Chrome:
=======
CHR Extension: (Google Docs) - C:\Users\Wheelsup Club\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-11-24]
CHR Extension: (Google Drive) - C:\Users\Wheelsup Club\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-11-24]
CHR Extension: (YouTube) - C:\Users\Wheelsup Club\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-11-24]
CHR Extension: (McAfee Security Scan+) - C:\Users\Wheelsup Club\AppData\Local\Google\Chrome\User Data\Default\Extensions\bopakagnckmlgajfccecajhnimjiiedh [2014-04-01]
CHR Extension: (Google Search) - C:\Users\Wheelsup Club\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-11-24]
CHR Extension: (SiteAdvisor) - C:\Users\Wheelsup Club\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2013-11-24]
CHR Extension: (avast! Online Security) - C:\Users\Wheelsup Club\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-04-01]
CHR Extension: (Freemake Video Converter) - C:\Users\Wheelsup Club\AppData\Local\Google\Chrome\User Data\Default\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj [2013-11-24]
CHR Extension: (Video Player) - C:\Users\Wheelsup Club\AppData\Local\Google\Chrome\User Data\Default\Extensions\lhielbkepifcmmmfopeicnjfpbeodbmk [2014-04-01]
CHR Extension: (Google Wallet) - C:\Users\Wheelsup Club\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-11-24]
CHR Extension: (Gmail) - C:\Users\Wheelsup Club\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-11-24]
CHR HKLM-x32\...\Chrome\Extension: [ggkfikfcbnpfoicfjammigpnakpogebh] - "C:\Program Files (x86)\FVD Suite\addons\chrome\fvdext.crx" [2013-11-24]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-07-09]
CHR HKLM-x32\...\Chrome\Extension: [jbolfgndggfhhpbnkgnpjkfhinclbigj] - C:\Program Files (x86)\Freemake\Freemake Video Converter\BrowserPlugin\Chrome\Freemake.Plugin.Chrome.crx [2013-03-11]
CHR HKLM-x32\...\Chrome\Extension: [lhielbkepifcmmmfopeicnjfpbeodbmk] - C:\Program Files (x86)\VideoPlayerV3\VideoPlayerV3beta752\ch\VideoPlayerV3beta752.crx [2013-03-11]
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Services (Whitelisted) =================
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [361984 2012-07-04] (Advanced Micro Devices, Inc.) [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-07-09] (AVAST Software)
R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [245760 2010-01-25] (Brother Industries, Ltd.) [File not signed]
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390720 2014-04-11] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1764992 2014-04-11] (Microsoft Corporation)
S2 CLKMSVC10_9EC60124; C:\Program Files (x86)\CyberLink\PowerDVD9\NavFilter\kmsvc.exe [240112 2011-02-11] (CyberLink)
R2 DragonUpdater; C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe [2139328 2014-05-27] (Comodo Security Solutions, Inc.)
S2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [108032 2014-05-27] (Freemake) [File not signed]
S3 GSService; C:\windows\SysWOW64\GSService.exe [448736 2013-03-13] ()
R2 LinksysUpdater; C:\Program Files (x86)\Linksys\Linksys Updater\bin\LinksysUpdater.exe [204800 2008-11-13] () [File not signed]
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2014-03-11] (Microsoft Corporation)
R2 MSSQLSERVER; C:\Program Files (x86)\Microsoft SQL Server\MSSQL\Binn\sqlservr.exe [7520337 2002-12-17] (Microsoft Corporation) [File not signed]
S3 MSSQLServerADHelper; C:\Program Files (x86)\Microsoft SQL Server\80\Tools\Binn\sqladhlp.exe [66112 2002-12-17] (Microsoft Corporation) [File not signed]
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [347872 2014-03-11] (Microsoft Corporation)
R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738200 2014-04-25] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2081752 2014-04-25] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)
S3 SQLSERVERAGENT; C:\Program Files (x86)\Microsoft SQL Server\MSSQL\Binn\sqlagent.EXE [311872 2002-12-17] (Microsoft Corporation) [File not signed]
R2 TorchCrashHandler; C:\Users\Wheelsup Club\AppData\Local\Torch\Update\TorchCrashHandler.exe [1216520 2014-06-30] (TorchMedia Inc.)
R2 VMAuthdService; C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe [79872 2012-01-18] (VMware, Inc.) [File not signed]
S2 Util SaltarSmart; "C:\Program Files (x86)\SaltarSmart\bin\utilSaltarSmart.exe" [X]
==================== Drivers (Whitelisted) ====================
R3 anvsnddrv; C:\Windows\System32\drivers\anvsnddrv.sys [33872 2012-05-17] (AnvSoft Inc.)
R2 AODDriver4.1; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [53888 2012-03-05] (Advanced Micro Devices)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-13] (Microsoft Corporation)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-07-09] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-07-09] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-07-09] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-07-09] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1041168 2014-07-09] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427360 2014-07-09] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [92008 2014-07-09] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [224896 2014-07-09] ()
R3 AVer7231_x64; C:\Windows\System32\DRIVERS\AVer7231_x64.sys [1799808 2010-06-10] (AVerMedia TECHNOLOGIES, Inc.)
R3 bbcap; C:\Windows\System32\DRIVERS\bbcap.sys [4608 2013-03-22] (Windows (R) Codename Longhorn DDK provider)
S3 debutfilter; C:\Windows\System32\DRIVERS\debutfilterx64.sys [33488 2013-03-23] ()
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [268512 2014-01-25] (Microsoft Corporation)
R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [133928 2014-03-11] (Microsoft Corporation)
R2 npf; C:\Windows\System32\drivers\npf.sys [35344 2010-07-15] (CACE Technologies, Inc.)
R3 rtl819xpn64; C:\Windows\System32\DRIVERS\rtl819xp.sys [622624 2010-02-01] (Realtek Semiconductor Corporation )
S3 SndTAudio; C:\Windows\System32\drivers\SndTAudio.sys [34528 2013-03-13] (Windows (R) Win 7 DDK provider)
S3 SWDUMon; C:\Windows\System32\DRIVERS\SWDUMon.sys [16152 2014-07-12] ()
S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [52736 2012-07-09] (Apple, Inc.) [File not signed]
S3 WsAudio_Device(1); C:\Windows\System32\drivers\VirtualAudio1.sys [31080 2013-01-25] (Wondershare)
S3 WsAudio_Device(2); C:\Windows\System32\drivers\VirtualAudio2.sys [31080 2013-01-25] (Wondershare)
S3 WsAudio_Device(3); C:\Windows\System32\drivers\VirtualAudio3.sys [31080 2013-01-25] (Wondershare)
S3 WsAudio_Device(4); C:\Windows\System32\drivers\VirtualAudio4.sys [31080 2013-01-25] (Wondershare)
S3 WsAudio_Device(5); C:\Windows\System32\drivers\VirtualAudio5.sys [31080 2013-01-25] (Wondershare)
R2 {B154377D-700F-42cc-9474-23858FBDF4BD}; C:\Program Files (x86)\CyberLink\PowerDVD9\000.fcl [146928 2010-02-08] (CyberLink Corp.)
S1 azvohwlg; \??\C:\windows\system32\drivers\azvohwlg.sys [X]
S1 caglpito; \??\C:\windows\system32\drivers\caglpito.sys [X]
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S1 cglcnxna; \??\C:\windows\system32\drivers\cglcnxna.sys [X]
S1 cgxzeais; \??\C:\windows\system32\drivers\cgxzeais.sys [X]
S1 dkxomdff; \??\C:\windows\system32\drivers\dkxomdff.sys [X]
S1 dlrcmacc; \??\C:\windows\system32\drivers\dlrcmacc.sys [X]
S1 dnonjzhp; \??\C:\windows\system32\drivers\dnonjzhp.sys [X]
S1 docrwtro; \??\C:\windows\system32\drivers\docrwtro.sys [X]
S1 ekrvryyb; \??\C:\windows\system32\drivers\ekrvryyb.sys [X]
S1 eolbguvz; \??\C:\windows\system32\drivers\eolbguvz.sys [X]
S1 fwtxrcwi; \??\C:\windows\system32\drivers\fwtxrcwi.sys [X]
S1 iaqybpyk; \??\C:\windows\system32\drivers\iaqybpyk.sys [X]
S1 ivnnnudl; \??\C:\windows\system32\drivers\ivnnnudl.sys [X]
S1 jiwrmxaw; \??\C:\windows\system32\drivers\jiwrmxaw.sys [X]
S1 lasmepzv; \??\C:\windows\system32\drivers\lasmepzv.sys [X]
S1 meusbmhl; \??\C:\windows\system32\drivers\meusbmhl.sys [X]
S1 nffxbovz; \??\C:\windows\system32\drivers\nffxbovz.sys [X]
S1 nnptydlz; \??\C:\windows\system32\drivers\nnptydlz.sys [X]
S1 oladlbpd; \??\C:\windows\system32\drivers\oladlbpd.sys [X]
S1 oquqdghi; \??\C:\windows\system32\drivers\oquqdghi.sys [X]
S1 oyixxbuu; \??\C:\windows\system32\drivers\oyixxbuu.sys [X]
S1 pfvkeyok; \??\C:\windows\system32\drivers\pfvkeyok.sys [X]
S1 qocjlccd; \??\C:\windows\system32\drivers\qocjlccd.sys [X]
S1 quuthscw; \??\C:\windows\system32\drivers\quuthscw.sys [X]
S1 sefciruf; \??\C:\windows\system32\drivers\sefciruf.sys [X]
S1 sosmzeaj; \??\C:\windows\system32\drivers\sosmzeaj.sys [X]
S1 sxxihgwu; \??\C:\windows\system32\drivers\sxxihgwu.sys [X]
S1 tdilglsd; \??\C:\windows\system32\drivers\tdilglsd.sys [X]
S1 tyzqtmjl; \??\C:\windows\system32\drivers\tyzqtmjl.sys [X]
S1 uoizcgqf; \??\C:\windows\system32\drivers\uoizcgqf.sys [X]
S1 xuhsefvm; \??\C:\windows\system32\drivers\xuhsefvm.sys [X]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-07-12 10:19 - 2014-07-12 10:19 - 00000000 ____D () C:\Users\Wheelsup Club\Downloads\FRST-OlderVersion
2014-07-12 10:16 - 2014-07-12 10:16 - 00207893 _____ () C:\Users\Wheelsup Club\Documents\QPW0234.TMP
2014-07-11 14:58 - 2014-07-11 14:58 - 00854390 _____ () C:\Users\Wheelsup Club\Downloads\SecurityCheck.exe
2014-07-11 10:41 - 2014-07-11 10:41 - 00207872 _____ () C:\Users\Wheelsup Club\Documents\QPW0233.TMP
2014-07-10 17:08 - 2014-07-10 17:08 - 01228453 _____ () C:\Users\Wheelsup Club\Downloads\Online on Rogers Anyplace TV The Night Shift Online on Rogers Anyplace TV[via torchbrowser.com].mp4
2014-07-10 17:08 - 2014-07-10 17:08 - 00084170 _____ () C:\Users\Wheelsup Club\Downloads\Online on Rogers Anyplace TV The Night Shift Online on Rogers Anyplace TV[via torchbrowser.aac
2014-07-10 16:49 - 2014-07-10 16:49 - 03188194 _____ () C:\Users\Wheelsup Club\Downloads\▶ The Night Shift Video - Blood Brothers - Episode 7 - GlobalTV.com[via torchbrowser.com] (1).mp4
2014-07-10 16:49 - 2014-07-10 16:49 - 00361237 _____ () C:\Users\Wheelsup Club\Downloads\▶ The Night Shift Video - Blood Brothers - Episode 7 - GlobalTV.com[via torchbrowser (1).aac
2014-07-10 16:41 - 2014-07-10 16:41 - 03188194 _____ () C:\Users\Wheelsup Club\Downloads\▶ The Night Shift Video - Blood Brothers - Episode 7 - GlobalTV.com[via torchbrowser.com].mp4
2014-07-10 16:41 - 2014-07-10 16:41 - 00361237 _____ () C:\Users\Wheelsup Club\Downloads\▶ The Night Shift Video - Blood Brothers - Episode 7 - GlobalTV.com[via torchbrowser.aac
2014-07-10 16:02 - 2014-07-10 17:12 - 00004608 _____ () C:\Users\Wheelsup Club\Documents\Lawfirm Rejections.qpw
2014-07-10 09:37 - 2014-07-10 09:38 - 00054163 _____ () C:\Users\Wheelsup Club\Downloads\Addition.txt
2014-07-10 09:35 - 2014-07-12 10:19 - 00042965 _____ () C:\Users\Wheelsup Club\Downloads\FRST.txt
2014-07-10 09:35 - 2014-07-12 10:19 - 00000000 ____D () C:\FRST
2014-07-10 09:34 - 2014-07-12 10:19 - 02084864 _____ (Farbar) C:\Users\Wheelsup Club\Downloads\FRST64.exe
2014-07-10 09:05 - 2014-07-10 09:05 - 00207872 _____ () C:\Users\Wheelsup Club\Documents\QPW0232.TMP
2014-07-09 22:25 - 2014-07-09 22:25 - 00043152 _____ (AVAST Software) C:\windows\avastSS.scr
2014-07-09 16:59 - 2014-07-09 16:59 - 00000000 _____ () C:\windows\SysWOW64\sho3A62.tmp
2014-07-09 16:53 - 2014-07-09 16:53 - 08780754 _____ () C:\Users\Wheelsup Club\Downloads\-Oh Babe What Would You Say- by Hurricane Smith {lyrics} - YouTube[via torchbrowser.com].mp4
2014-07-09 16:53 - 2014-07-09 16:53 - 02479064 _____ () C:\Users\Wheelsup Club\Downloads\-Oh Babe What Would You Say- by Hurricane Smith {lyrics} - YouTube[via torchbrowser.aac
2014-07-09 16:51 - 2014-07-09 16:51 - 01792216 _____ () C:\Users\Wheelsup Club\Downloads\Leaked Star Wars Episode VII Filmset Footage! - YouTube[via torchbrowser.aac
2014-07-09 16:50 - 2014-07-09 16:51 - 16246050 _____ () C:\Users\Wheelsup Club\Downloads\Leaked Star Wars Episode VII Filmset Footage! - YouTube[via torchbrowser.com].mp4
2014-07-09 16:47 - 2014-07-12 09:08 - 00000000 ____D () C:\ProgramData\TorchCrashHandler
2014-07-09 16:46 - 2014-07-09 16:47 - 00001426 _____ () C:\Users\Wheelsup Club\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Torch.lnk
2014-07-09 16:46 - 2014-07-09 16:47 - 00001401 _____ () C:\Users\Wheelsup Club\Desktop\Torch.lnk
2014-07-09 16:46 - 2014-07-09 16:46 - 00000000 ____D () C:\Users\Wheelsup Club\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Torch
2014-07-09 16:44 - 2014-07-09 16:47 - 00000000 ____D () C:\Users\Wheelsup Club\AppData\Local\Torch
2014-07-09 16:43 - 2014-07-09 16:44 - 01661136 _____ (Torch Media, Inc) C:\Users\Wheelsup Club\Downloads\TorchSetupk-r410-n-bc.exe
2014-07-09 16:40 - 2014-07-09 16:40 - 00000000 ____D () C:\Users\Wheelsup Club\AppData\Local\FVD High-Speed Downloader
2014-07-09 16:40 - 2014-07-09 16:40 - 00000000 _____ () C:\Users\Wheelsup Club\Desktop\360p - Oh Babe What Would You Say by Hurricane Smith lyrics.webm
2014-07-09 08:55 - 2014-07-09 08:56 - 00207872 _____ () C:\Users\Wheelsup Club\Documents\QPW0231.TMP
2014-07-09 08:55 - 2014-07-09 08:55 - 00207872 _____ () C:\Users\Wheelsup Club\Documents\QPW0230.TMP
2014-07-09 08:06 - 2014-06-29 22:09 - 00519168 _____ (Microsoft Corporation) C:\windows\system32\aepdu.dll
2014-07-09 08:06 - 2014-06-29 22:04 - 00424448 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
2014-07-09 08:06 - 2014-06-17 22:18 - 00692736 _____ (Microsoft Corporation) C:\windows\system32\osk.exe
2014-07-09 08:06 - 2014-06-17 21:51 - 00646144 _____ (Microsoft Corporation) C:\windows\SysWOW64\osk.exe
2014-07-09 08:06 - 2014-06-17 21:10 - 03157504 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2014-07-09 08:06 - 2014-06-06 06:10 - 00624128 _____ (Microsoft Corporation) C:\windows\system32\qedit.dll
2014-07-09 08:06 - 2014-06-06 05:44 - 00509440 _____ (Microsoft Corporation) C:\windows\SysWOW64\qedit.dll
2014-07-09 08:06 - 2014-05-30 04:08 - 00728064 _____ (Microsoft Corporation) C:\windows\system32\kerberos.dll
2014-07-09 08:06 - 2014-05-30 04:08 - 00340992 _____ (Microsoft Corporation) C:\windows\system32\schannel.dll
2014-07-09 08:06 - 2014-05-30 04:08 - 00314880 _____ (Microsoft Corporation) C:\windows\system32\msv1_0.dll
2014-07-09 08:06 - 2014-05-30 04:08 - 00307200 _____ (Microsoft Corporation) C:\windows\system32\ncrypt.dll
2014-07-09 08:06 - 2014-05-30 04:08 - 00210944 _____ (Microsoft Corporation) C:\windows\system32\wdigest.dll
2014-07-09 08:06 - 2014-05-30 04:08 - 00086528 _____ (Microsoft Corporation) C:\windows\system32\TSpkg.dll
2014-07-09 08:06 - 2014-05-30 04:08 - 00022016 _____ (Microsoft Corporation) C:\windows\system32\credssp.dll
2014-07-09 08:06 - 2014-05-30 03:52 - 00550912 _____ (Microsoft Corporation) C:\windows\SysWOW64\kerberos.dll
2014-07-09 08:06 - 2014-05-30 03:52 - 00259584 _____ (Microsoft Corporation) C:\windows\SysWOW64\msv1_0.dll
2014-07-09 08:06 - 2014-05-30 03:52 - 00247808 _____ (Microsoft Corporation) C:\windows\SysWOW64\schannel.dll
2014-07-09 08:06 - 2014-05-30 03:52 - 00220160 _____ (Microsoft Corporation) C:\windows\SysWOW64\ncrypt.dll
2014-07-09 08:06 - 2014-05-30 03:52 - 00172032 _____ (Microsoft Corporation) C:\windows\SysWOW64\wdigest.dll
2014-07-09 08:06 - 2014-05-30 03:52 - 00065536 _____ (Microsoft Corporation) C:\windows\SysWOW64\TSpkg.dll
2014-07-09 08:06 - 2014-05-30 03:52 - 00017408 _____ (Microsoft Corporation) C:\windows\SysWOW64\credssp.dll
2014-07-09 08:06 - 2014-05-30 02:45 - 00497152 _____ (Microsoft Corporation) C:\windows\system32\Drivers\afd.sys
2014-07-09 08:05 - 2014-06-20 16:14 - 00266424 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2014-07-09 08:05 - 2014-06-20 15:39 - 00240824 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2014-07-09 08:05 - 2014-06-18 21:39 - 23464448 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2014-07-09 08:05 - 2014-06-18 21:06 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2014-07-09 08:05 - 2014-06-18 21:06 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2014-07-09 08:05 - 2014-06-18 20:48 - 02768384 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2014-07-09 08:05 - 2014-06-18 20:42 - 00548352 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2014-07-09 08:05 - 2014-06-18 20:42 - 00066048 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2014-07-09 08:05 - 2014-06-18 20:41 - 00083968 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2014-07-09 08:05 - 2014-06-18 20:41 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2014-07-09 08:05 - 2014-06-18 20:32 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2014-07-09 08:05 - 2014-06-18 20:31 - 00033792 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2014-07-09 08:05 - 2014-06-18 20:26 - 00598016 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2014-07-09 08:05 - 2014-06-18 20:24 - 00139264 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2014-07-09 08:05 - 2014-06-18 20:24 - 00111616 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2014-07-09 08:05 - 2014-06-18 20:23 - 00752640 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2014-07-09 08:05 - 2014-06-18 20:16 - 17276416 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2014-07-09 08:05 - 2014-06-18 20:14 - 00940032 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2014-07-09 08:05 - 2014-06-18 20:09 - 00452608 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2014-07-09 08:05 - 2014-06-18 19:59 - 00038400 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2014-07-09 08:05 - 2014-06-18 19:56 - 02724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2014-07-09 08:05 - 2014-06-18 19:53 - 00195584 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2014-07-09 08:05 - 2014-06-18 19:51 - 05721088 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2014-07-09 08:05 - 2014-06-18 19:50 - 00085504 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2014-07-09 08:05 - 2014-06-18 19:48 - 00292864 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2014-07-09 08:05 - 2014-06-18 19:39 - 00608768 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2014-07-09 08:05 - 2014-06-18 19:38 - 00455168 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2014-07-09 08:05 - 2014-06-18 19:37 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2014-07-09 08:05 - 2014-06-18 19:36 - 00051200 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieetwproxystub.dll
2014-07-09 08:05 - 2014-06-18 19:35 - 00062464 _____ (Microsoft Corporation) C:\windows\SysWOW64\MshtmlDac.dll
2014-07-09 08:05 - 2014-06-18 19:33 - 00631808 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2014-07-09 08:05 - 2014-06-18 19:32 - 02179072 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2014-07-09 08:05 - 2014-06-18 19:28 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2014-07-09 08:05 - 2014-06-18 19:28 - 00032768 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2014-07-09 08:05 - 2014-06-18 19:27 - 02040832 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2014-07-09 08:05 - 2014-06-18 19:27 - 01249280 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2014-07-09 08:05 - 2014-06-18 19:25 - 00442368 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2014-07-09 08:05 - 2014-06-18 19:23 - 00112128 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2014-07-09 08:05 - 2014-06-18 19:22 - 00592896 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2014-07-09 08:05 - 2014-06-18 19:12 - 00367616 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2014-07-09 08:05 - 2014-06-18 19:06 - 00032256 _____ (Microsoft Corporation) C:\windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-07-09 08:05 - 2014-06-18 19:01 - 00164864 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2014-07-09 08:05 - 2014-06-18 18:59 - 00069632 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2014-07-09 08:05 - 2014-06-18 18:58 - 02266112 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2014-07-09 08:05 - 2014-06-18 18:58 - 00239616 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2014-07-09 08:05 - 2014-06-18 18:52 - 04254720 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2014-07-09 08:05 - 2014-06-18 18:51 - 13527040 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2014-07-09 08:05 - 2014-06-18 18:49 - 00526336 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2014-07-09 08:05 - 2014-06-18 18:46 - 01068032 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2014-07-09 08:05 - 2014-06-18 18:45 - 01964544 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2014-07-09 08:05 - 2014-06-18 18:35 - 11742208 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2014-07-09 08:05 - 2014-06-18 18:34 - 01393664 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2014-07-09 08:05 - 2014-06-18 18:15 - 00846336 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2014-07-09 08:05 - 2014-06-18 18:13 - 01791488 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2014-07-09 08:05 - 2014-06-18 18:09 - 01139200 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2014-07-09 08:05 - 2014-06-18 18:07 - 00704512 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2014-07-09 08:04 - 2014-06-05 10:45 - 01460736 _____ (Microsoft Corporation) C:\windows\system32\lsasrv.dll
2014-07-09 08:04 - 2014-06-05 10:26 - 00022016 _____ (Microsoft Corporation) C:\windows\SysWOW64\secur32.dll
2014-07-09 08:04 - 2014-06-05 10:25 - 00096768 _____ (Microsoft Corporation) C:\windows\SysWOW64\sspicli.dll
2014-07-08 11:57 - 2014-07-08 11:57 - 00207872 _____ () C:\Users\Wheelsup Club\Documents\QPW0229.TMP
2014-07-06 14:13 - 2014-07-07 22:59 - 00000000 ____D () C:\Users\Wheelsup Club\.texlive2014
2014-07-06 14:04 - 2014-07-07 22:54 - 00000000 ____D () C:\Users\Wheelsup Club\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeX Live 2014
2014-07-06 11:03 - 2014-07-06 11:03 - 00000000 ____D () C:\texlive
2014-07-06 11:00 - 2014-07-06 11:00 - 00000000 ____D () C:\Users\Wheelsup Club\Downloads\TeX Live
2014-07-06 11:00 - 2014-07-06 11:00 - 00000000 ____D () C:\Users\Wheelsup Club\Downloads\install-tl
2014-07-06 10:59 - 2014-07-06 03:24 - 00000000 ____D () C:\Users\Wheelsup Club\Downloads\install-tl-20140706
2014-07-06 10:58 - 2014-07-06 10:58 - 16770908 _____ () C:\Users\Wheelsup Club\Downloads\install-tl.zip
2014-07-06 10:57 - 2014-07-06 10:57 - 00011378 _____ () C:\Users\Wheelsup Club\Downloads\install-tl-windows.exe
2014-07-05 09:29 - 2014-07-05 09:29 - 00207872 _____ () C:\Users\Wheelsup Club\Documents\QPW0228.TMP
2014-07-04 09:00 - 2014-07-04 09:00 - 00207872 _____ () C:\Users\Wheelsup Club\Documents\QPW0227.TMP
2014-07-03 09:39 - 2014-07-03 09:39 - 00207872 _____ () C:\Users\Wheelsup Club\Documents\QPW0226.TMP
2014-07-02 12:57 - 2014-07-02 12:57 - 00207872 _____ () C:\Users\Wheelsup Club\Documents\QPW0225.TMP
2014-07-01 08:55 - 2014-07-01 08:55 - 00207872 _____ () C:\Users\Wheelsup Club\Documents\QPW0224.TMP
2014-06-30 08:51 - 2014-06-30 08:51 - 00207872 _____ () C:\Users\Wheelsup Club\Documents\QPW0223.TMP
2014-06-29 11:56 - 2014-06-29 11:56 - 00207872 _____ () C:\Users\Wheelsup Club\Documents\QPW0222.TMP
2014-06-28 14:14 - 2014-06-28 14:15 - 00000000 ____D () C:\Users\Wheelsup Club\AppData\Local\FreeFileViewer
2014-06-28 14:13 - 2014-04-26 01:21 - 00000806 _____ () C:\Users\Wheelsup Club\Documents\INSTALL
2014-06-28 14:09 - 2014-06-28 14:11 - 00000000 ____D () C:\Users\Wheelsup Club\Downloads\mailman-2.1.18rc3
2014-06-28 14:08 - 2014-06-28 14:09 - 09043438 _____ () C:\Users\Wheelsup Club\Downloads\mailman-2.1.18rc3(1).tgz
2014-06-28 14:08 - 2014-04-25 05:21 - 29204480 _____ () C:\Users\Wheelsup Club\Downloads\mailman-2.1.18rc3.tgz
2014-06-28 10:34 - 2014-06-28 10:34 - 00207563 _____ () C:\Users\Wheelsup Club\Documents\QPW0221.TMP
2014-06-27 09:28 - 2014-06-27 09:28 - 00207557 _____ () C:\Users\Wheelsup Club\Documents\QPW0220.TMP
2014-06-26 09:01 - 2014-06-26 09:01 - 00207534 _____ () C:\Users\Wheelsup Club\Documents\QPW0219.TMP
2014-06-25 08:29 - 2014-06-25 08:29 - 00207513 _____ () C:\Users\Wheelsup Club\Documents\QPW0218.TMP
2014-06-24 09:31 - 2014-06-24 09:31 - 00207488 _____ () C:\Users\Wheelsup Club\Documents\QPW0217.TMP
2014-06-23 11:36 - 2014-06-23 11:36 - 00207444 _____ () C:\Users\Wheelsup Club\Documents\QPW0216.TMP
2014-06-22 09:02 - 2014-06-22 09:02 - 00207425 _____ () C:\Users\Wheelsup Club\Documents\QPW0215.TMP
2014-06-21 22:12 - 2014-06-21 22:14 - 00000000 ____D () C:\Users\Wheelsup Club\Downloads\3.8a-2-terms_of_reference_summary_form-en.pdf_
2014-06-21 21:30 - 2014-06-21 21:30 - 00097457 _____ () C:\Users\Wheelsup Club\Downloads\3.8a-2-terms_of_reference_summary_form-en.pdf_.zip
2014-06-21 21:19 - 2014-06-21 21:19 - 00000000 ____D () C:\Users\Wheelsup Club\Downloads\3.8a-3-ea_summary_form-en.pdf_
2014-06-21 21:18 - 2014-06-21 21:18 - 00097587 _____ () C:\Users\Wheelsup Club\Downloads\3.8a-3-ea_summary_form-en.pdf_.zip
2014-06-21 10:27 - 2014-06-21 10:27 - 00001205 _____ () C:\Users\Wheelsup Club\Desktop\Format Factory.lnk
2014-06-21 10:27 - 2014-06-21 10:27 - 00000000 ____D () C:\Users\Wheelsup Club\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory
2014-06-21 08:27 - 2014-06-21 08:27 - 00207400 _____ () C:\Users\Wheelsup Club\Documents\QPW0214.TMP
2014-06-20 08:20 - 2014-06-20 08:20 - 00207375 _____ () C:\Users\Wheelsup Club\Documents\QPW0213.TMP
2014-06-19 09:56 - 2014-06-19 09:57 - 08496376 _____ (DonationCoder.com ) C:\Users\Wheelsup Club\Downloads\ScreenshotCaptorSetup(3).exe
2014-06-19 09:04 - 2014-06-19 09:04 - 00207375 _____ () C:\Users\Wheelsup Club\Documents\QPW0212.TMP
2014-06-18 13:57 - 2014-06-18 13:58 - 00000000 ____D () C:\Users\Wheelsup Club\Documents\Police
2014-06-18 10:14 - 2014-06-18 10:14 - 00207360 _____ () C:\Users\Wheelsup Club\Documents\QPW0211.TMP
2014-06-17 15:41 - 2014-06-17 15:41 - 00002147 _____ () C:\Users\Public\Desktop\Brother Creative Center.lnk
2014-06-17 15:41 - 2014-06-17 15:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother
2014-06-17 15:39 - 2014-06-17 15:39 - 00000000 ____D () C:\Brother
2014-06-17 15:38 - 2014-06-17 15:39 - 00000000 ____D () C:\Program Files (x86)\Browny02
2014-06-17 15:38 - 2010-08-02 20:57 - 00217088 ____N (brother) C:\windows\SysWOW64\NSSearch.dll
2014-06-17 15:38 - 2010-03-15 19:56 - 00002560 ____N (Brother Industries Ltd.) C:\windows\SysWOW64\BrDctF2S.dll
2014-06-17 15:38 - 2010-03-15 19:45 - 00073728 ____N (Brother Industries Ltd.) C:\windows\SysWOW64\BrDctF2.dll
2014-06-17 15:38 - 2007-12-13 22:16 - 00005120 ____N (Brother Industries Ltd.) C:\windows\SysWOW64\BrDctF2L.dll
2014-06-17 15:35 - 2014-06-17 15:35 - 00000000 ____D () C:\Users\Wheelsup Club\AppData\Roaming\InstallShield
2014-06-17 15:15 - 2014-06-17 15:15 - 00924173 _____ () C:\Users\Wheelsup Club\Downloads\BrMain480.exe
2014-06-17 13:44 - 2014-06-17 13:44 - 00000000 ____D () C:\Users\Wheelsup Club\Downloads\install
2014-06-17 13:43 - 2014-06-17 13:44 - 37455595 _____ (A.I.SOFT,INC.) C:\Users\Wheelsup Club\Downloads\HL-2240-inst-C1-useu(2).EXE
2014-06-17 09:56 - 2014-06-17 09:56 - 00207360 _____ () C:\Users\Wheelsup Club\Documents\QPW0210.TMP
2014-06-15 15:45 - 2014-06-16 08:14 - 00000000 ____D () C:\Users\Wheelsup Club\AppData\Local\Adobe
2014-06-15 09:59 - 2014-06-15 09:59 - 00207360 _____ () C:\Users\Wheelsup Club\Documents\QPW0209.TMP
2014-06-14 09:22 - 2014-06-14 09:22 - 00207360 _____ () C:\Users\Wheelsup Club\Documents\QPW0208.TMP
2014-06-13 16:24 - 2014-06-13 16:24 - 00000000 ____D () C:\Users\Wheelsup Club\AppData\Local\FreemakeVideoConverter
2014-06-13 09:33 - 2014-06-13 09:33 - 00207360 _____ () C:\Users\Wheelsup Club\Documents\QPW0207.TMP
...cont.