Fsrt pt 1
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 25-05-2014 02
Ran by Barry Chapman (administrator) on BARRYSNEW on 27-05-2014 18:17:21
Running from C:\Users\Barry Chapman\Desktop
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: English(US)
Internet Explorer Version 11
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\AdminService.exe
() C:\Program Files (x86)\Backblaze\bzserv.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleCrashHandler64.exe
(McAfee, Inc.) C:\Windows\System32\mfevtps.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
(VMware, Inc.) C:\Windows\SysWOW64\vmnat.exe
(Atheros) C:\Program Files (x86)\Dell Wireless\Ath_WlanAgent.exe
(McAfee, Inc.) C:\Program Files\mcafee\msc\McAPExe.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\AMCore\mcshield.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfefire.exe
(VMware, Inc.) C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe
(VMware, Inc.) C:\Windows\SysWOW64\vmnetdhcp.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
(Dell Products, LP.) C:\Program Files (x86)\Dell Digital Delivery\DeliveryService.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(SoftThinks SAS) C:\Program Files (x86)\Dell Backup and Recovery\SftService.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McUICnt.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Microsoft Corporation) C:\Windows\System32\msiexec.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
(Pervasive Software Inc.) C:\Program Files (x86)\Pervasive Software\PSQL\bin\w3dbsmgr.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
() C:\Program Files (x86)\Backblaze\bzbui.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McUICnt.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Microsoft Corporation) C:\Windows\ehome\ehrecvr.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7194840 2013-07-26] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321688 2013-07-29] (Realtek Semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [286056 2013-07-29] (Intel Corporation)
HKLM\...\Run: [CANON DR2580C SVC] => C:\Windows\system32\DR25SVC.dll [152576 2012-12-17] (Canon Electronics)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101584 2014-04-25] (Safer-Networking Ltd.)
HKLM-x32\...\Run: [mcpltui_exe] => C:\Program Files\Common Files\McAfee\Platform\mcuicnt.exe [645168 2013-09-11] (McAfee, Inc.)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer: [NoFolderOptions] 0
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKU\.DEFAULT\...\Policies\Explorer: [NoFolderOptions] 0
HKU\.DEFAULT\...\Policies\Explorer: [NoControlPanel] 0
HKU\S-1-5-21-670280924-550259233-2201882432-1000\...\Run: [updateMgr] => C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AdobeUpdateManager.exe [313472 2006-03-30] (Adobe Systems Incorporated)
HKU\S-1-5-21-670280924-550259233-2201882432-1000\...\Run: [Backblaze] => C:\Program Files (x86)\Backblaze\bzbui.exe [492136 2014-05-13] ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Acrobat Speed Launcher.lnk
ShortcutTarget: Adobe Acrobat Speed Launcher.lnk -> C:\Windows\Installer\{AC76BA86-1033-F400-BA7E-100000000002}\SC_Acrobat.exe ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Start Pervasive PSQL Workgroup Engine.lnk
ShortcutTarget: Start Pervasive PSQL Workgroup Engine.lnk -> C:\Windows\Installer\{0A3238D7-AB32-1030-B717-F3E3F18B4A8C}\WGE.14A03FCD_EA43_4130_A5C0_F02D38895A13.exe ()
Startup: C:\Users\Barry Chapman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ERUNT AutoBackup.lnk
ShortcutTarget: ERUNT AutoBackup.lnk -> C:\Program Files (x86)\ERUNT\AUTOBACK.EXE ()
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - DefaultScope {D81273E4-7658-47B6-8075-3D404C64D87C} URL = http://www.bing.com/search?q={searchTerms}&form=IE11TR&src=IE11TR&pc=DCJB
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM - {D81273E4-7658-47B6-8075-3D404C64D87C} URL = http://www.bing.com/search?q={searchTerms}&form=IE11TR&src=IE11TR&pc=DCJB
SearchScopes: HKLM-x32 - {D81273E4-7658-47B6-8075-3D404C64D87C} URL = http://www.bing.com/search?q={searchTerms}&form=IE11TR&src=IE11TR&pc=DCJB
SearchScopes: HKCU - DefaultScope {D81273E4-7658-47B6-8075-3D404C64D87C} URL =
SearchScopes: HKCU - {D81273E4-7658-47B6-8075-3D404C64D87C} URL =
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\IEPlugIn.dll (Qualcomm®Atheros®)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files (x86)\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
Handler: ipp\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - No File
Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: http\oledb - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: https\oledb - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: ipp\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - C:\Program Files\mcafee\msc\McSnIePl64.dll (McAfee, Inc.)
Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - C:\Program Files (x86)\McAfee\msc\McSnIePl.dll (McAfee, Inc.)
Tcpip\Parameters: [DhcpNameServer] 8.8.8.8 8.8.4.4 205.152.144.23 205.152.132.23
FireFox:
========
FF ProfilePath: C:\Users\Barry Chapman\AppData\Roaming\Mozilla\Firefox\Profiles\76t9nm76.default
FF NetworkProxy: "type", 1);user_pref("network.proxy.http", "127.0.0.1");user_pref("network.proxy.http_port", 8118);user_pref("network.proxy.ssl", "127.0.0.1");user_pref("network.cookie.cookieBehavior", 1
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll ()
FF Plugin: @java.com/DTPlugin,version=10.55.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @mcafee.com/MSC,version=10 - c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL ()
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll ()
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 - C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @mcafee.com/MSC,version=10 - c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL ()
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
FF Extension: McAfee Anti-Spam Thunderbird Extension - C:\Program Files\McAfee\MSK [2014-03-21]
Chrome:
=======
CHR HomePage: hxxp://www.google.com/
CHR StartupUrls: "hxxp://www.google.com/"
CHR Extension: (Google Docs) - C:\Users\Barry Chapman\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-05-02]
CHR Extension: (Google Drive) - C:\Users\Barry Chapman\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-05-02]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Barry Chapman\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-05-20]
CHR Extension: (YouTube) - C:\Users\Barry Chapman\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-05-02]
CHR Extension: (Google Search) - C:\Users\Barry Chapman\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-05-02]
CHR Extension: (Google Wallet) - C:\Users\Barry Chapman\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-05-02]
CHR Extension: (Gmail) - C:\Users\Barry Chapman\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-05-02]
==================== Services (Whitelisted) =================
R2 AtherosSvc; C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\adminservice.exe [312448 2013-07-02] (Windows (R) Win 7 DDK provider)
R2 bzserv; C:\Program Files (x86)\Backblaze\bzserv.exe [234600 2014-05-13] ()
R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [14696 2013-07-29] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; c:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-25] (Intel Corporation)
R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [178528 2014-04-25] (McAfee, Inc.)
S3 McAWFwk; C:\Program Files\Common Files\mcafee\ActWiz\McAWFwk.exe [334760 2012-12-21] (McAfee, Inc.)
R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 McNaiAnn; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
S3 McODS; C:\Program Files\mcafee\VirusScan\mcods.exe [602944 2013-08-02] (McAfee, Inc.)
R2 McOobeSv2; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 mcpltsvc; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 McProxy; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 mfecore; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [1041192 2014-03-18] (McAfee, Inc.)
R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [219752 2014-04-03] (McAfee, Inc.)
R2 mfevtp; C:\Windows\system32\mfevtps.exe [189912 2014-04-03] (McAfee, Inc.)
R2 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [246488 2013-06-19] (Realtek Semiconductor)
R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738200 2014-04-25] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2081752 2014-04-25] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)
R2 SftService; C:\Program Files (x86)\Dell Backup and Recovery\sftservice.exe [1915920 2014-04-04] (SoftThinks SAS)
R2 ZAtheros Wlan Agent; C:\Program Files (x86)\Dell Wireless\Ath_WlanAgent.exe [81536 2013-06-20] (Atheros)
==================== Drivers (Whitelisted) ====================
R3 BTATH_LWFLT; C:\Windows\System32\DRIVERS\btath_lwflt.sys [77464 2013-07-02] (Qualcomm Atheros)
R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [70592 2014-04-03] (McAfee, Inc.)
S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [197704 2013-09-23] (McAfee, Inc.)
R0 iaStorF; C:\Windows\System32\drivers\iaStorF.sys [28008 2013-07-24] (Intel Corporation)
R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [99288 2013-09-04] (Intel Corporation)
R3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [177544 2014-04-03] (McAfee, Inc.)
R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [311856 2014-04-03] (McAfee, Inc.)
R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [522360 2014-04-03] (McAfee, Inc.)
R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [784760 2014-04-03] (McAfee, Inc.)
R3 mfencbdc; C:\Windows\System32\DRIVERS\mfencbdc.sys [441264 2014-03-18] (McAfee, Inc.)
S3 mfencrk; C:\Windows\System32\DRIVERS\mfencrk.sys [96592 2014-03-18] (McAfee, Inc.)
R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [346760 2014-04-03] (McAfee, Inc.)
R1 SDHookDriver; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDHookDrv64.sys [64160 2014-04-25] ()
R3 usbscan; C:\Windows\SysWOW64\DRIVERS\usbscan.sys [14000 2002-05-13] (Microsoft Corporation)
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-05-27 18:17 - 2014-05-27 18:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee
2014-05-27 18:13 - 2014-05-27 18:13 - 00132680 _____ () C:\Users\Administrator\AppData\Local\GDIPFONTCACHEV1.DAT
2014-05-27 18:13 - 2014-05-27 18:13 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\WinRAR
2014-05-27 18:13 - 2014-05-27 18:13 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\Intel Corporation
2014-05-27 18:12 - 2014-05-27 18:12 - 00001460 _____ () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-05-27 18:12 - 2014-05-27 18:12 - 00000000 ___RD () C:\Users\Administrator\Virtual Machines
2014-05-27 18:12 - 2014-05-27 18:12 - 00000000 ___RD () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-05-27 18:12 - 2014-05-27 18:12 - 00000000 ___RD () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-05-27 18:12 - 2014-05-27 18:12 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\Adobe
2014-05-27 18:12 - 2014-05-27 18:12 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Google
2014-05-27 18:11 - 2014-05-27 18:12 - 00000000 ____D () C:\Users\Administrator
2014-05-27 18:11 - 2014-05-27 18:11 - 00000020 ___SH () C:\Users\Administrator\ntuser.ini
2014-05-27 18:11 - 2014-05-20 18:19 - 00000000 ___RD () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-05-27 18:11 - 2014-05-20 18:19 - 00000000 ___RD () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-05-27 18:11 - 2014-05-16 08:32 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\Macromedia
2014-05-27 18:11 - 2014-05-05 03:06 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Microsoft Help
2014-05-27 16:22 - 2014-05-27 18:17 - 00020399 _____ () C:\Users\Barry Chapman\Desktop\FRST.txt
2014-05-27 16:22 - 2014-05-27 18:17 - 00000000 ____D () C:\FRST
2014-05-27 16:22 - 2014-05-27 17:32 - 00038057 _____ () C:\Users\Barry Chapman\Desktop\Addition.txt
2014-05-27 16:21 - 2014-05-27 16:21 - 02066944 _____ (Farbar) C:\Users\Barry Chapman\Desktop\FRST64.exe
2014-05-27 13:59 - 2014-05-27 15:40 - 00000008 _____ () C:\LTLASTFN.DAT
2014-05-27 13:29 - 2014-05-27 13:29 - 00043987 _____ () C:\ComboFix.txt
2014-05-27 12:58 - 2011-06-26 02:45 - 00256000 _____ () C:\Windows\PEV.exe
2014-05-27 12:58 - 2010-11-07 13:20 - 00208896 _____ () C:\Windows\MBR.exe
2014-05-27 12:58 - 2009-04-20 00:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2014-05-27 12:58 - 2000-08-30 20:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2014-05-27 12:58 - 2000-08-30 20:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2014-05-27 12:58 - 2000-08-30 20:00 - 00098816 _____ () C:\Windows\sed.exe
2014-05-27 12:58 - 2000-08-30 20:00 - 00080412 _____ () C:\Windows\grep.exe
2014-05-27 12:58 - 2000-08-30 20:00 - 00068096 _____ () C:\Windows\zip.exe
2014-05-27 12:51 - 2014-05-27 12:51 - 00001540 _____ () C:\Users\Barry Chapman\Desktop\ComboFix.exe - Shortcut.lnk
2014-05-27 12:50 - 2014-05-27 13:29 - 00000000 ____D () C:\Qoobox
2014-05-27 12:46 - 2014-05-27 12:47 - 05203612 ____R () C:\Users\Barry Chapman\Downloads\ComboFix.exe
2014-05-27 11:30 - 2014-05-27 11:30 - 00000000 ___RD () C:\Users\Barry Chapman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices
2014-05-27 11:23 - 2014-05-27 11:23 - 00000000 ____D () C:\_OTL
2014-05-27 10:03 - 2014-05-27 10:03 - 00056788 _____ () C:\Users\Barry Chapman\Downloads\Extras.Txt
2014-05-27 10:02 - 2014-05-27 15:57 - 00198204 _____ () C:\Users\Barry Chapman\Downloads\OTL.Txt
2014-05-27 09:54 - 2014-05-27 09:54 - 00602112 _____ (OldTimer Tools) C:\Users\Barry Chapman\Downloads\OTL.exe
2014-05-27 09:25 - 2014-05-27 09:13 - 01440846 _____ () C:\Program Files (x86)\mbam-chameleon-1.62.1.1000.zip
2014-05-27 09:18 - 2014-05-27 09:18 - 00000000 ____D () C:\Malwarebytes' Anti-Malware
2014-05-27 09:01 - 2014-05-27 09:01 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Barry Chapman\Downloads\mbam-setup-2.0.2.1012 (1).exe
2014-05-27 08:58 - 2014-05-27 08:58 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Barry Chapman\Downloads\mbam-setup-2.0.2.1012.exe
2014-05-26 10:19 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll
2014-05-26 10:17 - 2014-05-26 10:17 - 01327971 _____ () C:\Users\Barry Chapman\Downloads\AdwCleaner.exe
2014-05-25 11:49 - 2014-05-25 11:49 - 00004447 _____ () C:\Users\Barry Chapman\Desktop\attach.zip
2014-05-25 11:38 - 2014-05-25 11:38 - 00002135 _____ () C:\Users\Barry Chapman\Desktop\aswMBR.txt
2014-05-25 11:38 - 2014-05-25 11:38 - 00000512 _____ () C:\Users\Barry Chapman\Desktop\MBR.dat
2014-05-25 10:52 - 2014-05-25 10:52 - 00004315 _____ () C:\Users\Barry Chapman\Desktop\attach.rar
2014-05-25 10:46 - 2014-05-25 10:46 - 00042419 _____ () C:\Users\Barry Chapman\Desktop\dds.txt
2014-05-25 10:46 - 2014-05-25 10:46 - 00020635 _____ () C:\Users\Barry Chapman\Desktop\attach.txt
2014-05-25 10:43 - 2014-05-25 10:43 - 04745728 _____ (AVAST Software) C:\Users\Barry Chapman\Downloads\aswMBR.exe
2014-05-25 10:38 - 2014-05-27 13:27 - 00000000 ____D () C:\Windows\ERDNT
2014-05-25 10:38 - 2014-05-25 10:38 - 00688992 ____R (Swearware) C:\Users\Barry Chapman\Downloads\dds (1).scr
2014-05-25 10:36 - 2014-05-25 10:37 - 00000000 ____D () C:\Program Files (x86)\ERUNT
2014-05-25 10:36 - 2014-05-25 10:36 - 00791393 _____ (Lars Hederer ) C:\Users\Barry Chapman\Downloads\erunt-setup (2).exe
2014-05-25 10:36 - 2014-05-25 10:36 - 00000960 _____ () C:\Users\Barry Chapman\Desktop\ERUNT.lnk
2014-05-25 10:36 - 2014-05-25 10:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ERUNT
2014-05-24 12:00 - 2014-05-24 12:00 - 00688992 _____ (Swearware) C:\Users\Barry Chapman\Downloads\dds.scr
2014-05-24 11:59 - 2014-05-24 11:59 - 00791393 _____ (Lars Hederer ) C:\Users\Barry Chapman\Downloads\erunt-setup (1).exe
2014-05-24 11:57 - 2014-05-24 11:57 - 00791393 _____ (Lars Hederer ) C:\Users\Barry Chapman\Downloads\erunt-setup.exe
2014-05-23 08:25 - 2014-05-23 08:25 - 00000000 ____D () C:\New folder
2014-05-23 07:48 - 2014-05-23 07:48 - 624028561 _____ () C:\Windows\MEMORY.DMP
2014-05-23 07:48 - 2014-05-23 07:48 - 00280128 _____ () C:\Windows\Minidump\052314-21138-01.dmp
2014-05-23 07:48 - 2014-05-23 07:48 - 00000000 ____D () C:\Windows\Minidump
2014-05-23 07:43 - 2014-05-23 07:43 - 00162208 _____ () C:\Users\Barry Chapman\Downloads\Antivirus_Free_Edition (1).exe
2014-05-23 07:41 - 2014-05-23 07:41 - 00000000 ____D () C:\Users\Barry Chapman\AppData\Roaming\QuickScan
2014-05-23 07:40 - 2014-05-23 07:43 - 10447328 _____ () C:\Users\Barry Chapman\Downloads\Antivirus_Free_Edition_x64.exe
2014-05-23 07:39 - 2014-05-23 07:39 - 00162208 _____ () C:\Users\Barry Chapman\Downloads\Antivirus_Free_Edition.exe
2014-05-22 15:37 - 2014-05-22 15:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picasa 3
2014-05-22 15:35 - 2014-05-22 15:35 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-05-22 15:35 - 2014-05-22 15:35 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-05-22 15:35 - 2014-05-22 15:35 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-05-22 15:35 - 2014-05-22 15:35 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-05-22 15:35 - 2014-05-22 15:35 - 00000000 ____D () C:\Program Files (x86)\Java
2014-05-22 13:22 - 2014-05-22 13:23 - 00051706 _____ () C:\Windows\SysWOW64\bddel.dat
2014-05-22 10:47 - 2014-05-22 10:47 - 00000000 ____D () C:\Program Files (x86)\Spybot
2014-05-22 08:13 - 2014-05-22 09:31 - 00017970 _____ () C:\Users\Barry Chapman\Desktop\Nmc_2014-05-22_08-13-17.log
2014-05-22 08:08 - 2014-05-22 08:11 - 00003374 _____ () C:\Users\Barry Chapman\Desktop\Nmc_2014-05-22_08-08-46.log
2014-05-22 07:57 - 2014-05-22 08:06 - 332119856 _____ (Norman Shark AS) C:\Users\Barry Chapman\Downloads\Norman_Malware_Cleaner (1).exe
2014-05-21 11:27 - 2014-05-21 11:27 - 00000000 ____D () C:\Users\Barry Chapman\AppData\Roaming\TuneUp Software
2014-05-21 11:16 - 2014-05-23 07:03 - 00000000 ____D () C:\ProgramData\MFAData
2014-05-21 11:16 - 2014-05-21 11:16 - 00000000 ____D () C:\Users\Barry Chapman\AppData\Local\MFAData
2014-05-21 11:15 - 2014-05-21 11:15 - 04485528 _____ (AVG Technologies) C:\Users\Barry Chapman\Downloads\avg_free_stb_all_2014_4577_cnet.exe
2014-05-21 09:31 - 2014-05-21 10:04 - 00014960 _____ () C:\Users\Barry Chapman\Desktop\Nmc_2014-05-21_09-31-37.log
2014-05-21 09:01 - 2014-05-21 09:08 - 331917560 _____ (Norman Shark AS) C:\Users\Barry Chapman\Downloads\Norman_Malware_Cleaner.exe
2014-05-20 14:54 - 2014-05-20 15:49 - 00025110 _____ () C:\Users\Barry Chapman\Desktop\Nmc_2014-05-20_14-54-17.log
2014-05-20 14:53 - 2014-05-20 14:53 - 00000000 ____D () C:\Users\Barry Chapman\AppData\Local\Norman Malware Cleaner
2014-05-20 12:44 - 2014-05-20 13:35 - 00000000 ____D () C:\ProgramData\HitmanPro
2014-05-20 12:34 - 2014-05-20 12:34 - 00000914 _____ () C:\Users\Barry Chapman\Desktop\JRT.txt
2014-05-20 10:29 - 2014-05-20 10:30 - 04957528 _____ (SurfRight B.V.) C:\Users\Barry Chapman\Downloads\Unconfirmed 912715.crdownload
2014-05-19 16:42 - 2014-05-26 10:25 - 00000000 ____D () C:\AdwCleaner
2014-05-19 10:55 - 2014-05-19 10:55 - 00000000 ____D () C:\ProgramData\regid.1986-12.com.adobe
2014-05-19 10:20 - 2014-05-19 10:20 - 00000000 ____D () C:\Adobe XI Pro
2014-05-19 08:08 - 2014-05-20 18:24 - 00000000 ____D () C:\Program Files\SUPERAntiSpyware
2014-05-19 07:54 - 2014-05-19 07:54 - 00000000 ____D () C:\Users\Barry Chapman\Documents\ProcAlyzer Dumps
2014-05-16 10:51 - 2014-05-27 09:22 - 00000000 ____D () C:\Users\Barry Chapman\AppData\Local\CrashDumps
2014-05-16 09:39 - 2014-05-16 09:39 - 00000000 ____D () C:\Users\Barry Chapman\AppData\Roaming\SUPERAntiSpyware.com
2014-05-16 09:39 - 2014-05-16 09:39 - 00000000 ____D () C:\ProgramData\SUPERAntiSpyware.com
2014-05-16 08:33 - 2014-05-20 17:34 - 00000000 ____D () C:\Program Files (x86)\Adobe Download Assistant
2014-05-16 08:33 - 2014-05-16 08:33 - 00000000 ____D () C:\Users\Barry Chapman\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
2014-05-16 08:32 - 2014-05-16 08:32 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Macromedia
2014-05-16 08:32 - 2014-05-16 08:32 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Macromedia
2014-05-15 15:02 - 2014-05-15 15:02 - 00560968 _____ (Safer-Networking Ltd. ) C:\Users\Barry Chapman\Downloads\spybot2-license (1).exe
2014-05-15 14:27 - 2014-05-15 14:27 - 00000000 ____D () C:\Windows\System32\Tasks\Safer-Networking
2014-05-15 13:05 - 2014-05-15 13:06 - 00560968 _____ (Safer-Networking Ltd. ) C:\Users\Barry Chapman\Downloads\spybot2-license.exe
2014-05-15 12:49 - 2009-06-10 17:00 - 00000824 _____ () C:\Windows\system32\Drivers\etc\hosts.20140515-124903.backup
2014-05-15 11:40 - 2014-05-22 10:49 - 00001446 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
2014-05-15 11:40 - 2014-05-22 10:49 - 00001434 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2014-05-15 11:40 - 2014-05-22 10:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
2014-05-15 11:40 - 2014-05-15 11:40 - 00000656 _____ () C:\Windows\Tasks\Check for updates (Spybot - Search & Destroy).job
2014-05-15 11:40 - 2014-05-15 11:40 - 00000628 _____ () C:\Windows\Tasks\Refresh immunization (Spybot - Search & Destroy).job
2014-05-15 11:40 - 2014-05-15 11:40 - 00000458 _____ () C:\Windows\Tasks\Scan the system (Spybot - Search & Destroy).job
2014-05-15 11:40 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe
2014-05-15 11:21 - 2014-05-22 10:51 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-05-15 11:21 - 2014-05-22 10:49 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
2014-05-15 11:20 - 2014-05-15 10:56 - 46392680 _____ (Safer-Networking Ltd. ) C:\Users\Barry Chapman\Downloads\spybot-2.3 (1).exe
2014-05-15 03:25 - 2014-05-20 17:52 - 00000000 ___RD () C:\Users\Barry Chapman\Virtual Machines
2014-05-15 03:06 - 2014-05-06 00:40 - 23544320 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-05-15 03:06 - 2014-05-06 00:17 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-05-15 03:06 - 2014-05-05 23:25 - 17382912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-05-15 03:06 - 2014-05-05 23:07 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-05-15 03:06 - 2014-05-05 23:00 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-05-15 03:06 - 2014-05-05 22:10 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-05-14 16:16 - 2014-05-14 16:16 - 00000000 ____D () C:\Users\Barry Chapman\AppData\Local\PDF24
2014-05-14 15:56 - 2014-05-26 10:24 - 00000000 ____D () C:\Program Files (x86)\MSR
2014-05-14 15:56 - 2014-05-14 15:56 - 00004592 _____ () C:\Windows\System32\Tasks\IdleCrawler Runner
2014-05-14 15:54 - 2014-05-20 17:52 - 00000000 ____D () C:\Users\Barry Chapman\AppData\Roaming\wi_upd
2014-05-14 15:53 - 2014-05-14 15:54 - 02271768 _____ () C:\Users\Barry Chapman\Downloads\Adobe.Acrobat.XI.Pro.v11.0.2.Multilingual.Cracked.exe
2014-05-14 15:26 - 2014-05-14 15:27 - 18873344 _____ () C:\Users\Barry Chapman\Downloads\AcrobatUpd714_all_incr.msp
2014-05-14 15:22 - 2014-05-14 15:23 - 14385152 _____ () C:\Users\Barry Chapman\Downloads\AcrobatUpd713_all_incr.msp
2014-05-14 15:21 - 2014-05-14 15:22 - 03972608 _____ () C:\Users\Barry Chapman\Downloads\AcrobatUpd712_all_incr (1).msp
2014-05-14 15:20 - 2014-05-14 15:20 - 06504448 _____ () C:\Users\Barry Chapman\Downloads\AcroUpd711_all_incr.msp
2014-05-14 14:34 - 2014-05-14 15:08 - 00001520 _____ () C:\Users\Public\Documents\AcStd7_1_0.ini
2014-05-14 11:56 - 2014-05-27 18:11 - 00000000 ____D () C:\Users\Barry Chapman\Documents\Outlook Files
2014-05-14 10:26 - 2014-05-20 17:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2014-05-14 10:25 - 2014-05-14 10:25 - 00000000 ____D () C:\Windows\PCHEALTH
2014-05-14 10:22 - 2014-05-14 10:22 - 00000000 ____D () C:\Program Files\Microsoft Office
2014-05-14 10:22 - 2014-05-14 10:22 - 00000000 ____D () C:\Program Files (x86)\Microsoft Analysis Services
2014-05-14 10:20 - 2014-05-14 10:26 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2014-05-14 10:20 - 2014-05-14 10:20 - 00000000 ___RD () C:\MSOCache
2014-05-14 08:30 - 2014-05-20 16:20 - 00000000 ____D () C:\Program Files (x86)\Secunia
2014-05-14 08:30 - 2014-05-14 08:30 - 00000000 ____D () C:\Users\Barry Chapman\AppData\Local\Secunia PSI
2014-05-14 08:28 - 2014-05-14 08:29 - 05329480 _____ (Secunia) C:\Users\Barry Chapman\Downloads\PSISetup.exe
2014-05-14 05:44 - 2014-05-09 02:14 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-05-14 05:44 - 2014-05-09 02:11 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-05-14 05:44 - 2014-04-11 22:22 - 00155072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-05-14 05:44 - 2014-04-11 22:22 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2014-05-14 05:44 - 2014-04-11 22:19 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-05-14 05:44 - 2014-04-11 22:19 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2014-05-14 05:44 - 2014-04-11 22:19 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2014-05-14 05:44 - 2014-04-11 22:19 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2014-05-14 05:44 - 2014-04-11 22:19 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2014-05-14 05:44 - 2014-04-11 22:12 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-05-14 05:44 - 2014-04-11 22:10 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-05-14 05:44 - 2014-03-24 22:43 - 14175744 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-05-14 05:44 - 2014-03-24 22:09 - 12874240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2014-05-14 05:44 - 2014-03-04 05:47 - 05550016 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2014-05-14 05:44 - 2014-03-04 05:44 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-05-14 05:44 - 2014-03-04 05:44 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll
2014-05-14 05:44 - 2014-03-04 05:44 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2014-05-14 05:44 - 2014-03-04 05:44 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-05-14 05:44 - 2014-03-04 05:44 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-05-14 05:44 - 2014-03-04 05:44 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-05-14 05:44 - 2014-03-04 05:44 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-05-14 05:44 - 2014-03-04 05:44 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll
2014-05-14 05:44 - 2014-03-04 05:43 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2014-05-14 05:44 - 2014-03-04 05:43 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll
2014-05-14 05:44 - 2014-03-04 05:43 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll
2014-05-14 05:44 - 2014-03-04 05:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll
2014-05-14 05:44 - 2014-03-04 05:43 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll
2014-05-14 05:44 - 2014-03-04 05:43 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll
2014-05-14 05:44 - 2014-03-04 05:43 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-05-14 05:44 - 2014-03-04 05:20 - 03969984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2014-05-14 05:44 - 2014-03-04 05:20 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2014-05-14 05:44 - 2014-03-04 05:17 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-05-14 05:44 - 2014-03-04 05:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll
2014-05-14 05:44 - 2014-03-04 05:17 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2014-05-14 05:44 - 2014-03-04 05:17 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-05-14 05:44 - 2014-03-04 05:17 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2014-05-14 05:44 - 2014-03-04 05:17 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2014-05-14 05:44 - 2014-03-04 05:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll
2014-05-14 05:44 - 2014-03-04 05:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll
2014-05-14 05:44 - 2014-03-04 05:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll
2014-05-14 05:44 - 2014-03-04 05:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll
2014-05-14 05:44 - 2014-03-04 05:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll
2014-05-14 05:44 - 2014-03-04 05:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll
2014-05-14 05:44 - 2014-03-04 05:17 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2014-05-14 05:44 - 2014-03-04 05:16 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2014-05-13 12:17 - 2014-05-20 17:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Backblaze
2014-05-13 12:16 - 2014-05-20 17:44 - 00000000 ____D () C:\Program Files (x86)\Backblaze
2014-05-13 12:16 - 2014-05-13 12:16 - 05033216 _____ () C:\Users\Barry Chapman\Downloads\install_backblaze.exe
2014-05-13 12:16 - 2014-05-13 12:16 - 00000000 ____D () C:\ProgramData\Backblaze
2014-05-13 12:02 - 2014-05-13 12:04 - 00000000 ____D () C:\Users\Barry Chapman\AppData\Local\VMware
2014-05-13 11:38 - 2014-05-13 11:38 - 34209792 _____ () C:\Users\Barry Chapman\Desktop\CHAPMA11_20140505-2014-05-13.QDF-backup
2014-05-13 11:18 - 2014-05-20 17:55 - 00000000 ____D () C:\Windows\pss
2014-05-13 11:00 - 2014-05-20 17:52 - 00000000 ____D () C:\Users\Barry Chapman\AppData\Roaming\VMware
2014-05-13 10:04 - 2014-05-13 10:04 - 00000000 _____ () C:\Users\Barry Chapman\AppData\Local\{89B78C50-3F1E-4624-B5B6-B21F413891C7}
2014-05-13 08:53 - 2014-05-13 11:13 - 00007605 _____ () C:\Users\Barry Chapman\AppData\Local\resmon.resmoncfg
2014-05-12 20:43 - 2014-05-12 20:58 - 00000000 ____D () C:\Users\Barry Chapman\.asdm
2014-05-12 20:43 - 2014-05-12 20:43 - 00000000 ____D () C:\Program Files (x86)\Cisco Systems
2014-05-12 16:26 - 2014-05-12 16:26 - 00010295 _____ () C:\Users\Barry Chapman\Documents\141046 commitment.wpd
2014-05-12 16:21 - 2014-05-12 16:21 - 00002380 _____ () C:\Users\Barry Chapman\Documents\141046 DATA FILE.wpd
2014-05-12 13:51 - 2014-05-13 11:07 - 00000000 ____D () C:\Program Files\My Lockbox
2014-05-12 13:50 - 2014-05-12 13:50 - 04090994 _____ () C:\Users\Barry Chapman\Downloads\mylockbox_setup.zip
2014-05-12 07:16 - 2014-05-13 12:17 - 00000000 ____D () C:\.bzvol
2014-05-09 11:38 - 2014-05-09 11:38 - 00000000 ____D () C:\Users\Barry Chapman\Documents\CCWin
2014-05-09 07:41 - 2013-03-01 02:27 - 00063568 _____ (VMware, Inc.) C:\Windows\system32\Drivers\vmx86.sys
2014-05-09 07:40 - 2013-03-01 02:27 - 00943184 _____ (VMware, Inc.) C:\Windows\system32\vnetlib64.dll
2014-05-09 07:40 - 2013-03-01 02:27 - 00354896 _____ (VMware, Inc.) C:\Windows\SysWOW64\vmnetdhcp.exe
2014-05-09 07:40 - 2013-03-01 02:26 - 00434256 _____ (VMware, Inc.) C:\Windows\SysWOW64\vmnat.exe
2014-05-09 07:40 - 2013-03-01 02:26 - 00030800 _____ (VMware, Inc.) C:\Windows\system32\Drivers\vmnetuserif.sys
2014-05-09 07:39 - 2014-05-27 13:24 - 00000000 ____D () C:\ProgramData\VMware
2014-05-09 07:39 - 2014-05-20 17:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VMware
2014-05-09 07:39 - 2014-05-09 07:39 - 00002187 _____ () C:\Users\Public\Desktop\VMware Player.lnk
2014-05-09 07:39 - 2014-05-09 07:39 - 00000000 ____D () C:\Program Files (x86)\VMware
2014-05-09 07:39 - 2013-03-01 02:26 - 00033360 _____ (VMware, Inc.) C:\Windows\system32\Drivers\VMkbd.sys
2014-05-09 07:39 - 2011-08-29 22:11 - 00039024 _____ (VMware, Inc.) C:\Windows\system32\Drivers\hcmon.sys
2014-05-09 07:38 - 2014-05-09 07:38 - 00000000 ____D () C:\Program Files\Common Files\VMware
2014-05-09 07:33 - 2014-05-09 07:35 - 114794792 _____ (VMware, Inc.) C:\Users\Barry Chapman\Downloads\VMware-player-4.0.6-1035888.exe
2014-05-07 09:42 - 2006-05-16 21:40 - 00753936 ____N (EMC Corporation) C:\Windows\SysWOW64\PIXANNOT.DLL
2014-05-07 09:42 - 2006-05-16 21:40 - 00463120 ____N (EMC Corporation) C:\Windows\SysWOW64\PIXJP2K.DLL
2014-05-07 09:42 - 2006-05-16 21:40 - 00209168 ____N (EMC Corporation) C:\Windows\SysWOW64\PIXNOTEN.DLL
2014-05-07 09:42 - 2006-05-16 21:40 - 00119056 ____N (EMC Corporation) C:\Windows\SysWOW64\PIXJBGN.DLL
2014-05-07 09:42 - 2006-05-16 21:40 - 00102672 ____N (EMC Corporation) C:\Windows\SysWOW64\PIXTIFFN.DLL
2014-05-07 09:42 - 2006-05-16 21:40 - 00094480 ____N (EMC Corporation) C:\Windows\SysWOW64\PIXAPS.DLL
2014-05-07 09:42 - 2006-05-16 21:40 - 00074000 ____N (EMC Corporation) C:\Windows\SysWOW64\PIXNAMEN.DLL
2014-05-07 09:42 - 2006-05-16 21:40 - 00069904 ____N (EMC Corporation) C:\Windows\SysWOW64\PIXDLGN.DLL
2014-05-07 09:42 - 2006-05-16 21:40 - 00057616 ____N (EMC Corporation) C:\Windows\SysWOW64\PIXLZWN.DLL
2014-05-07 09:42 - 2006-05-16 21:40 - 00049424 ____N (EMC Corporation) C:\Windows\SysWOW64\PIXTHK32.DLL
2014-05-07 09:42 - 2006-05-16 21:40 - 00045328 ____N (EMC Corporation) C:\Windows\SysWOW64\PIXSLN.DLL
2014-05-07 09:42 - 2006-05-16 21:40 - 00045328 ____N (EMC Corporation) C:\Windows\SysWOW64\PIXRAMN.DLL
2014-05-07 09:42 - 2006-05-16 21:40 - 00045328 ____N (EMC Corporation) C:\Windows\SysWOW64\PIXPANN.DLL
2014-05-07 09:42 - 2006-05-16 21:40 - 00045328 ____N (EMC Corporation) C:\Windows\SysWOW64\PIXMPN.DLL
2014-05-07 09:42 - 2006-05-16 21:40 - 00045328 ____N (EMC Corporation) C:\Windows\SysWOW64\PIXMDLGN.DLL
2014-05-07 09:42 - 2006-05-16 21:23 - 00006416 ____N (EMC Corporation) C:\Windows\SysWOW64\PIXTHK16.DLL
2014-05-07 09:42 - 2006-05-16 21:22 - 00231552 ____N (EMC Corporation) C:\Windows\SysWOW64\PIXDFLT.DLL
2014-05-07 09:42 - 2006-05-16 21:22 - 00023152 ____N (EMC Corporation) C:\Windows\SysWOW64\PIXPERM.DLL
2014-05-07 09:42 - 2006-05-16 21:22 - 00016048 ____N (EMC Corporation) C:\Windows\SysWOW64\PIXLOC.DLL
2014-05-07 09:42 - 2006-05-16 21:19 - 00327680 ____N (The University of New South Wales) C:\Windows\SysWOW64\PIXJP2KI.DLL
2014-05-07 09:42 - 2006-05-16 21:19 - 00051959 ____N () C:\Windows\SysWOW64\PIXNAME.HLP
2014-05-07 09:42 - 2005-02-10 18:17 - 00011968 ____N (Pixel Translations Incorporated) C:\Windows\SysWOW64\PIXMDLLC.CPL
2014-05-07 09:29 - 2014-05-07 09:29 - 00000000 ____D () C:\ProgramData\Canon Electronics
2014-05-07 09:25 - 2014-05-20 17:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CapturePerfect 3.1
2014-05-07 09:20 - 2014-05-07 09:22 - 79468544 _____ () C:\Users\Barry Chapman\Downloads\CP_Upgrade_V3137 (1).exe
2014-05-06 15:56 - 2014-05-06 15:59 - 00000000 ____D () C:\Users\Barry Chapman\Documents\My Documents from old
2014-05-06 14:42 - 2014-05-06 14:42 - 00119964 _____ () C:\Users\Barry Chapman\Downloads\GSCCCA Online Statement.htm
2014-05-06 13:18 - 2014-05-18 03:05 - 00000000 ____D () C:\Windows\system32\MRT
2014-05-06 13:18 - 2014-05-15 03:03 - 93223848 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-05-06 13:12 - 2012-12-17 08:56 - 00152576 _____ (Canon Electronics) C:\Windows\system32\DR25SVC.dll
2014-05-06 13:12 - 2009-05-13 16:08 - 00491792 _____ (Captiva Software Corp.) C:\Windows\SysWOW64\qd1.dll
2014-05-06 13:09 - 2014-05-06 13:09 - 14393344 _____ () C:\Users\Barry Chapman\Downloads\2580DRIT_V18SP1 (1).exe
2014-05-06 10:10 - 2014-05-06 10:10 - 00000000 ____D () C:\Users\Barry Chapman\AppData\Roaming\Oracle
2014-05-06 10:09 - 2014-05-06 10:09 - 00000000 ____D () C:\ProgramData\Sun
2014-05-06 10:09 - 2014-05-06 10:09 - 00000000 ____D () C:\ProgramData\Oracle
2014-05-06 10:07 - 2014-05-06 10:07 - 00921512 _____ (Oracle Corporation) C:\Users\Barry Chapman\Downloads\chromeinstall-7u55.exe
2014-05-06 10:05 - 2014-05-06 10:04 - 00313256 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2014-05-06 10:04 - 2014-05-20 17:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-05-06 10:04 - 2014-05-06 10:04 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2014-05-06 10:04 - 2014-05-06 10:04 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2014-05-06 10:04 - 2014-05-06 10:04 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2014-05-06 10:04 - 2014-05-06 10:04 - 00000000 ____D () C:\Program Files\Java
2014-05-06 10:03 - 2014-05-06 10:04 - 30818216 _____ (Oracle Corporation) C:\Users\Barry Chapman\Downloads\jre-7u55-windows-x64.exe
2014-05-06 09:31 - 2006-05-16 21:40 - 00233744 _____ (EMC Corporation) C:\Windows\SysWOW64\PIXMDLN.DLL
2014-05-06 09:27 - 2014-05-06 09:27 - 28808192 _____ () C:\Users\Barry Chapman\Downloads\CP_Upgrade_Ver_3097 (1).exe
2014-05-06 09:09 - 2009-05-13 16:16 - 00200704 _____ (EMC Corporation) C:\Windows\SysWOW64\twpix32.dll
2014-05-06 09:09 - 2009-05-13 16:05 - 00021008 _____ (Microsoft Corporation) C:\Windows\system\Ctl3d.dll
2014-05-06 09:09 - 2003-12-18 18:09 - 00231552 _____ (Pixel Translations Incorporated) C:\Windows\system\Pixdflt.dll
2014-05-06 09:09 - 2003-12-18 18:09 - 00023152 _____ (Pixel Translations Incorporated) C:\Windows\system\Pixperm.dll
2014-05-06 09:09 - 2003-12-18 18:09 - 00016064 _____ (Pixel Translations Incorporated) C:\Windows\system\Pixloc.dll
2014-05-06 09:09 - 2002-11-06 11:21 - 00063248 _____ () C:\Windows\SysWOW64\picn1120.ssm
2014-05-06 09:09 - 1998-04-13 13:13 - 00098304 _____ (Cornerstone Imaging, Inc.) C:\Windows\SysWOW64\Wiaext32.dll
2014-05-06 09:06 - 2014-05-06 09:06 - 00000000 _____ () C:\Users\Barry Chapman\Sti_Trace.log
2014-05-06 09:05 - 2014-05-20 17:26 - 00000000 ____D () C:\Users\Barry Chapman\Desktop\CapturePerfect 3.0
2014-05-06 08:51 - 2014-05-06 08:51 - 00249856 _____ () C:\Users\Barry Chapman\Downloads\RepairReg.exe
2014-05-06 08:51 - 2014-05-06 08:51 - 00000000 ____D () C:\DR Scanner
2014-05-06 08:45 - 2014-05-06 08:47 - 79468544 _____ () C:\Users\Barry Chapman\Downloads\CP_Upgrade_V3137.exe
2014-05-06 08:43 - 2014-05-06 08:43 - 00000000 ____D () C:\DR2580C
2014-05-06 08:42 - 2014-05-06 08:42 - 14393344 _____ () C:\Users\Barry Chapman\Downloads\2580DRIT_V18SP1.exe
2014-05-06 08:37 - 2008-11-11 19:00 - 00096768 _____ (Canon Electronics Inc.) C:\Windows\system32\DR25CPL.dll
2014-05-06 08:37 - 2007-04-24 07:53 - 00083456 _____ (Canon Electronics Inc.) C:\Windows\system32\CeiUSB64.dll
2014-05-06 08:35 - 2014-05-06 08:35 - 00000000 ____D () C:\Users\Barry Chapman\Downloads\d1041mux
2014-05-06 08:34 - 2014-05-06 08:35 - 13259652 _____ () C:\Users\Barry Chapman\Downloads\d1041mux.zip
2014-05-06 07:52 - 2014-05-20 18:19 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-05-06 07:31 - 2014-05-06 07:31 - 00003228 _____ () C:\Windows\System32\Tasks\{E819857F-629F-4F7B-9FE3-F8B1467A5C1B}
2014-05-06 07:29 - 2014-05-07 09:22 - 00000000 ____D () C:\CapturePerfect Upgrade
2014-05-06 03:03 - 2014-05-06 03:03 - 00288324 _____ () C:\Windows\msxml4-KB973688-enu.LOG
2014-05-06 03:02 - 2014-05-06 03:03 - 00292408 _____ () C:\Windows\msxml4-KB954430-enu.LOG
2014-05-06 03:02 - 2014-05-06 03:02 - 00000000 ____D () C:\Program Files (x86)\MSXML 4.0
2014-05-05 17:52 - 2014-05-05 19:26 - 28808192 _____ () C:\Users\Barry Chapman\Downloads\CP_Upgrade_Ver_3097.exe
2014-05-05 17:44 - 2014-05-20 17:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon DR-2580C
2014-05-05 17:43 - 2014-05-06 09:06 - 00005432 _____ () C:\Windows\pixcache.ini
2014-05-05 17:43 - 2014-05-05 17:43 - 00003050 _____ () C:\Windows\System32\Tasks\{BEA2EFCD-E2FA-474A-BB2F-ADE6F46BED5D}
2014-05-05 16:56 - 2014-05-05 16:56 - 00000000 ____D () C:\Users\Barry Chapman\AppData\Roaming\AdobeUM
2014-05-05 16:54 - 2014-05-14 15:27 - 00002501 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat 7.0 Standard.lnk
2014-05-05 16:54 - 2014-05-14 14:44 - 00002459 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Distiller 7.0.lnk
2014-05-05 16:54 - 2014-05-05 16:54 - 00002039 _____ () C:\Users\Public\Desktop\Adobe Acrobat 7.0 Standard.lnk
2014-05-05 16:53 - 2014-05-20 18:03 - 00000000 ____D () C:\Windows\SysWOW64\spool
2014-05-05 16:53 - 2014-05-19 10:44 - 00000000 ____D () C:\Users\Public\Documents\Adobe PDF
2014-05-05 16:24 - 2014-05-20 17:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2014-05-05 16:24 - 2014-05-20 17:51 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-05-05 16:24 - 2014-05-20 17:45 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-05-05 16:23 - 2014-05-05 16:24 - 13084896 _____ (Microsoft Corporation) C:\Users\Barry Chapman\Downloads\Silverlight_x64 (1).exe
2014-05-05 16:23 - 2014-05-05 16:23 - 13084896 _____ (Microsoft Corporation) C:\Users\Barry Chapman\Downloads\Silverlight_x64.exe
2014-05-05 16:15 - 2014-05-20 17:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Mouse and Keyboard Center
2014-05-05 16:15 - 2014-05-20 17:51 - 00000000 ____D () C:\Program Files\Microsoft Mouse and Keyboard Center
2014-05-05 16:15 - 2014-05-05 16:15 - 00003118 _____ () C:\Windows\System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe
2014-05-05 16:15 - 2014-05-05 16:15 - 00003092 _____ () C:\Windows\System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe
2014-05-05 16:15 - 2014-05-05 16:15 - 00003090 _____ () C:\Windows\System32\Tasks\Microsoft_Hardware_Launch_itype_exe
2014-05-05 16:15 - 2014-05-05 16:15 - 00003062 _____ () C:\Windows\System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe
2014-05-05 16:15 - 2014-05-05 16:15 - 00003060 _____ () C:\Windows\System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe
2014-05-05 16:15 - 2014-05-05 16:15 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_point64_01011.Wdf
2014-05-05 16:12 - 2014-05-05 16:12 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_dc3d_01011.Wdf
2014-05-05 15:52 - 2014-05-05 15:53 - 19495200 _____ () C:\Users\Barry Chapman\Downloads\upd-ps-x64-5.8.0.17508.exe
2014-05-05 15:50 - 2014-05-05 15:53 - 00000000 ____D () C:\HP Universal Print Driver
2014-05-05 15:49 - 2014-05-05 15:49 - 18409760 _____ () C:\Users\Barry Chapman\Downloads\upd-pcl6-x64-5.8.0.17508.exe
2014-05-05 14:53 - 2014-05-20 17:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Landtech XML
2014-05-05 14:53 - 2014-05-05 14:53 - 00001534 _____ () C:\Users\Barry Chapman\Desktop\Landtech XML.lnk
2014-05-05 14:52 - 2014-05-05 14:52 - 00204800 _____ (Landtech Data Corporation) C:\Windows\SysWOW64\ltwpvsw.DLL
2014-05-05 14:52 - 2014-05-05 14:52 - 00065536 _____ (Landtech Data Corp.) C:\Windows\SysWOW64\LTWNode.exe
2014-05-05 14:52 - 2014-05-05 14:52 - 00004726 _____ () C:\Windows\BOOTSTRAP.LOG
2014-05-05 14:52 - 2014-05-05 14:52 - 00000000 ____D () C:\Users\Barry Chapman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Landtech XML
2014-05-05 14:44 - 2014-05-05 14:44 - 00000519 _____ () C:\Windows\ODBCINST.INI
2014-05-05 14:44 - 2014-05-05 14:44 - 00000000 ____D () C:\ProgramData\Pervasive Software
2014-05-05 14:44 - 2014-05-05 14:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pervasive
2014-05-05 14:44 - 2014-05-05 14:44 - 00000000 ____D () C:\Program Files (x86)\Pervasive Software
2014-05-05 14:18 - 2014-05-05 14:18 - 00000000 ____D () C:\Wages
2014-05-05 14:15 - 2014-05-05 14:17 - 88823072 _____ () C:\Users\Barry Chapman\Downloads\PSQL-Workgroup-10.30.022.000-win.x86.exe
2014-05-05 14:07 - 2001-06-01 14:17 - 00169600 _____ (Wintertree Software Inc.) C:\Windows\SysWOW64\WSpell.ocx
2014-05-05 12:36 - 2014-05-20 17:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WP-64
2014-05-05 12:34 - 2014-05-05 12:34 - 32856361 _____ (wpdos.org ) C:\Users\Barry Chapman\Downloads\WP64DOSBox-Setup.exe
2014-05-05 12:22 - 2014-05-14 13:26 - 00000000 ____D () C:\Users\Barry Chapman\AppData\Roaming\Help
2014-05-05 12:22 - 2014-05-09 09:28 - 00000000 ____D () C:\Users\Barry Chapman\AppData\Local\Help
2014-05-05 11:45 - 2014-05-21 16:21 - 00037861 _____ () C:\Users\Barry Chapman\AppData\Roaming\Comma Separated Values (Windows).ADR
2014-05-05 11:40 - 2014-05-05 11:40 - 00321535 _____ () C:\Users\Barry Chapman\Downloads\contacts.csv
2014-05-05 11:26 - 2014-05-05 11:26 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-05-05 11:25 - 2014-05-05 11:25 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Barry Chapman\Downloads\mbam-setup-2.0.1.1004 (1).exe
2014-05-05 11:24 - 2014-05-05 11:25 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Barry Chapman\Downloads\mbam-setup-2.0.1.1004.exe
2014-05-05 11:16 - 2014-05-05 11:17 - 01069064 _____ (Medlin Accounting Software ) C:\Users\Barry Chapman\Downloads\_05-01-2014_medlin_PR_4-6.exe
2014-05-05 10:49 - 2014-05-25 12:10 - 00000000 ____D () C:\MWACCT
2014-05-05 10:49 - 2014-05-20 17:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Medlin Accounting
2014-05-05 10:49 - 2014-05-05 11:17 - 00000580 _____ () C:\Users\Public\Desktop\Medlin Accounting.lnk
2014-05-05 10:49 - 1998-05-11 20:01 - 01355776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvbvm50.dll
2014-05-05 10:40 - 2014-05-05 10:40 - 00000000 ____D () C:\Users\Barry Chapman\AppData\Local\QuickenWindow
2014-05-05 10:36 - 2014-05-05 10:36 - 00000000 ____D () C:\Users\Barry Chapman\AppData\Local\IsolatedStorage
2014-05-05 10:28 - 2014-05-05 10:28 - 00000000 ____D () C:\Users\Barry Chapman\Documents\Quicken
2014-05-05 10:24 - 2014-05-20 17:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Quicken 2014
2014-05-05 10:24 - 2014-05-20 17:46 - 00000000 ____D () C:\Program Files (x86)\Quicken
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 25-05-2014 02
Ran by Barry Chapman (administrator) on BARRYSNEW on 27-05-2014 18:17:21
Running from C:\Users\Barry Chapman\Desktop
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: English(US)
Internet Explorer Version 11
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\AdminService.exe
() C:\Program Files (x86)\Backblaze\bzserv.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleCrashHandler64.exe
(McAfee, Inc.) C:\Windows\System32\mfevtps.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
(VMware, Inc.) C:\Windows\SysWOW64\vmnat.exe
(Atheros) C:\Program Files (x86)\Dell Wireless\Ath_WlanAgent.exe
(McAfee, Inc.) C:\Program Files\mcafee\msc\McAPExe.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\AMCore\mcshield.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfefire.exe
(VMware, Inc.) C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe
(VMware, Inc.) C:\Windows\SysWOW64\vmnetdhcp.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
(Dell Products, LP.) C:\Program Files (x86)\Dell Digital Delivery\DeliveryService.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(SoftThinks SAS) C:\Program Files (x86)\Dell Backup and Recovery\SftService.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McUICnt.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Microsoft Corporation) C:\Windows\System32\msiexec.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
(Pervasive Software Inc.) C:\Program Files (x86)\Pervasive Software\PSQL\bin\w3dbsmgr.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
() C:\Program Files (x86)\Backblaze\bzbui.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McUICnt.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Microsoft Corporation) C:\Windows\ehome\ehrecvr.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7194840 2013-07-26] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321688 2013-07-29] (Realtek Semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [286056 2013-07-29] (Intel Corporation)
HKLM\...\Run: [CANON DR2580C SVC] => C:\Windows\system32\DR25SVC.dll [152576 2012-12-17] (Canon Electronics)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101584 2014-04-25] (Safer-Networking Ltd.)
HKLM-x32\...\Run: [mcpltui_exe] => C:\Program Files\Common Files\McAfee\Platform\mcuicnt.exe [645168 2013-09-11] (McAfee, Inc.)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer: [NoFolderOptions] 0
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKU\.DEFAULT\...\Policies\Explorer: [NoFolderOptions] 0
HKU\.DEFAULT\...\Policies\Explorer: [NoControlPanel] 0
HKU\S-1-5-21-670280924-550259233-2201882432-1000\...\Run: [updateMgr] => C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AdobeUpdateManager.exe [313472 2006-03-30] (Adobe Systems Incorporated)
HKU\S-1-5-21-670280924-550259233-2201882432-1000\...\Run: [Backblaze] => C:\Program Files (x86)\Backblaze\bzbui.exe [492136 2014-05-13] ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Acrobat Speed Launcher.lnk
ShortcutTarget: Adobe Acrobat Speed Launcher.lnk -> C:\Windows\Installer\{AC76BA86-1033-F400-BA7E-100000000002}\SC_Acrobat.exe ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Start Pervasive PSQL Workgroup Engine.lnk
ShortcutTarget: Start Pervasive PSQL Workgroup Engine.lnk -> C:\Windows\Installer\{0A3238D7-AB32-1030-B717-F3E3F18B4A8C}\WGE.14A03FCD_EA43_4130_A5C0_F02D38895A13.exe ()
Startup: C:\Users\Barry Chapman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ERUNT AutoBackup.lnk
ShortcutTarget: ERUNT AutoBackup.lnk -> C:\Program Files (x86)\ERUNT\AUTOBACK.EXE ()
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - DefaultScope {D81273E4-7658-47B6-8075-3D404C64D87C} URL = http://www.bing.com/search?q={searchTerms}&form=IE11TR&src=IE11TR&pc=DCJB
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM - {D81273E4-7658-47B6-8075-3D404C64D87C} URL = http://www.bing.com/search?q={searchTerms}&form=IE11TR&src=IE11TR&pc=DCJB
SearchScopes: HKLM-x32 - {D81273E4-7658-47B6-8075-3D404C64D87C} URL = http://www.bing.com/search?q={searchTerms}&form=IE11TR&src=IE11TR&pc=DCJB
SearchScopes: HKCU - DefaultScope {D81273E4-7658-47B6-8075-3D404C64D87C} URL =
SearchScopes: HKCU - {D81273E4-7658-47B6-8075-3D404C64D87C} URL =
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\IEPlugIn.dll (Qualcomm®Atheros®)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files (x86)\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
Handler: ipp\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - No File
Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: http\oledb - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: https\oledb - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: ipp\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - C:\Program Files\mcafee\msc\McSnIePl64.dll (McAfee, Inc.)
Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - C:\Program Files (x86)\McAfee\msc\McSnIePl.dll (McAfee, Inc.)
Tcpip\Parameters: [DhcpNameServer] 8.8.8.8 8.8.4.4 205.152.144.23 205.152.132.23
FireFox:
========
FF ProfilePath: C:\Users\Barry Chapman\AppData\Roaming\Mozilla\Firefox\Profiles\76t9nm76.default
FF NetworkProxy: "type", 1);user_pref("network.proxy.http", "127.0.0.1");user_pref("network.proxy.http_port", 8118);user_pref("network.proxy.ssl", "127.0.0.1");user_pref("network.cookie.cookieBehavior", 1
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll ()
FF Plugin: @java.com/DTPlugin,version=10.55.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @mcafee.com/MSC,version=10 - c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL ()
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll ()
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 - C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @mcafee.com/MSC,version=10 - c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL ()
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
FF Extension: McAfee Anti-Spam Thunderbird Extension - C:\Program Files\McAfee\MSK [2014-03-21]
Chrome:
=======
CHR HomePage: hxxp://www.google.com/
CHR StartupUrls: "hxxp://www.google.com/"
CHR Extension: (Google Docs) - C:\Users\Barry Chapman\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-05-02]
CHR Extension: (Google Drive) - C:\Users\Barry Chapman\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-05-02]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Barry Chapman\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-05-20]
CHR Extension: (YouTube) - C:\Users\Barry Chapman\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-05-02]
CHR Extension: (Google Search) - C:\Users\Barry Chapman\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-05-02]
CHR Extension: (Google Wallet) - C:\Users\Barry Chapman\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-05-02]
CHR Extension: (Gmail) - C:\Users\Barry Chapman\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-05-02]
==================== Services (Whitelisted) =================
R2 AtherosSvc; C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\adminservice.exe [312448 2013-07-02] (Windows (R) Win 7 DDK provider)
R2 bzserv; C:\Program Files (x86)\Backblaze\bzserv.exe [234600 2014-05-13] ()
R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [14696 2013-07-29] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; c:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-25] (Intel Corporation)
R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [178528 2014-04-25] (McAfee, Inc.)
S3 McAWFwk; C:\Program Files\Common Files\mcafee\ActWiz\McAWFwk.exe [334760 2012-12-21] (McAfee, Inc.)
R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 McNaiAnn; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
S3 McODS; C:\Program Files\mcafee\VirusScan\mcods.exe [602944 2013-08-02] (McAfee, Inc.)
R2 McOobeSv2; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 mcpltsvc; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 McProxy; C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 mfecore; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [1041192 2014-03-18] (McAfee, Inc.)
R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [219752 2014-04-03] (McAfee, Inc.)
R2 mfevtp; C:\Windows\system32\mfevtps.exe [189912 2014-04-03] (McAfee, Inc.)
R2 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [246488 2013-06-19] (Realtek Semiconductor)
R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738200 2014-04-25] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2081752 2014-04-25] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)
R2 SftService; C:\Program Files (x86)\Dell Backup and Recovery\sftservice.exe [1915920 2014-04-04] (SoftThinks SAS)
R2 ZAtheros Wlan Agent; C:\Program Files (x86)\Dell Wireless\Ath_WlanAgent.exe [81536 2013-06-20] (Atheros)
==================== Drivers (Whitelisted) ====================
R3 BTATH_LWFLT; C:\Windows\System32\DRIVERS\btath_lwflt.sys [77464 2013-07-02] (Qualcomm Atheros)
R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [70592 2014-04-03] (McAfee, Inc.)
S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [197704 2013-09-23] (McAfee, Inc.)
R0 iaStorF; C:\Windows\System32\drivers\iaStorF.sys [28008 2013-07-24] (Intel Corporation)
R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [99288 2013-09-04] (Intel Corporation)
R3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [177544 2014-04-03] (McAfee, Inc.)
R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [311856 2014-04-03] (McAfee, Inc.)
R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [522360 2014-04-03] (McAfee, Inc.)
R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [784760 2014-04-03] (McAfee, Inc.)
R3 mfencbdc; C:\Windows\System32\DRIVERS\mfencbdc.sys [441264 2014-03-18] (McAfee, Inc.)
S3 mfencrk; C:\Windows\System32\DRIVERS\mfencrk.sys [96592 2014-03-18] (McAfee, Inc.)
R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [346760 2014-04-03] (McAfee, Inc.)
R1 SDHookDriver; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDHookDrv64.sys [64160 2014-04-25] ()
R3 usbscan; C:\Windows\SysWOW64\DRIVERS\usbscan.sys [14000 2002-05-13] (Microsoft Corporation)
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-05-27 18:17 - 2014-05-27 18:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee
2014-05-27 18:13 - 2014-05-27 18:13 - 00132680 _____ () C:\Users\Administrator\AppData\Local\GDIPFONTCACHEV1.DAT
2014-05-27 18:13 - 2014-05-27 18:13 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\WinRAR
2014-05-27 18:13 - 2014-05-27 18:13 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\Intel Corporation
2014-05-27 18:12 - 2014-05-27 18:12 - 00001460 _____ () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-05-27 18:12 - 2014-05-27 18:12 - 00000000 ___RD () C:\Users\Administrator\Virtual Machines
2014-05-27 18:12 - 2014-05-27 18:12 - 00000000 ___RD () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-05-27 18:12 - 2014-05-27 18:12 - 00000000 ___RD () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-05-27 18:12 - 2014-05-27 18:12 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\Adobe
2014-05-27 18:12 - 2014-05-27 18:12 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Google
2014-05-27 18:11 - 2014-05-27 18:12 - 00000000 ____D () C:\Users\Administrator
2014-05-27 18:11 - 2014-05-27 18:11 - 00000020 ___SH () C:\Users\Administrator\ntuser.ini
2014-05-27 18:11 - 2014-05-20 18:19 - 00000000 ___RD () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-05-27 18:11 - 2014-05-20 18:19 - 00000000 ___RD () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-05-27 18:11 - 2014-05-16 08:32 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\Macromedia
2014-05-27 18:11 - 2014-05-05 03:06 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Microsoft Help
2014-05-27 16:22 - 2014-05-27 18:17 - 00020399 _____ () C:\Users\Barry Chapman\Desktop\FRST.txt
2014-05-27 16:22 - 2014-05-27 18:17 - 00000000 ____D () C:\FRST
2014-05-27 16:22 - 2014-05-27 17:32 - 00038057 _____ () C:\Users\Barry Chapman\Desktop\Addition.txt
2014-05-27 16:21 - 2014-05-27 16:21 - 02066944 _____ (Farbar) C:\Users\Barry Chapman\Desktop\FRST64.exe
2014-05-27 13:59 - 2014-05-27 15:40 - 00000008 _____ () C:\LTLASTFN.DAT
2014-05-27 13:29 - 2014-05-27 13:29 - 00043987 _____ () C:\ComboFix.txt
2014-05-27 12:58 - 2011-06-26 02:45 - 00256000 _____ () C:\Windows\PEV.exe
2014-05-27 12:58 - 2010-11-07 13:20 - 00208896 _____ () C:\Windows\MBR.exe
2014-05-27 12:58 - 2009-04-20 00:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2014-05-27 12:58 - 2000-08-30 20:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2014-05-27 12:58 - 2000-08-30 20:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2014-05-27 12:58 - 2000-08-30 20:00 - 00098816 _____ () C:\Windows\sed.exe
2014-05-27 12:58 - 2000-08-30 20:00 - 00080412 _____ () C:\Windows\grep.exe
2014-05-27 12:58 - 2000-08-30 20:00 - 00068096 _____ () C:\Windows\zip.exe
2014-05-27 12:51 - 2014-05-27 12:51 - 00001540 _____ () C:\Users\Barry Chapman\Desktop\ComboFix.exe - Shortcut.lnk
2014-05-27 12:50 - 2014-05-27 13:29 - 00000000 ____D () C:\Qoobox
2014-05-27 12:46 - 2014-05-27 12:47 - 05203612 ____R () C:\Users\Barry Chapman\Downloads\ComboFix.exe
2014-05-27 11:30 - 2014-05-27 11:30 - 00000000 ___RD () C:\Users\Barry Chapman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices
2014-05-27 11:23 - 2014-05-27 11:23 - 00000000 ____D () C:\_OTL
2014-05-27 10:03 - 2014-05-27 10:03 - 00056788 _____ () C:\Users\Barry Chapman\Downloads\Extras.Txt
2014-05-27 10:02 - 2014-05-27 15:57 - 00198204 _____ () C:\Users\Barry Chapman\Downloads\OTL.Txt
2014-05-27 09:54 - 2014-05-27 09:54 - 00602112 _____ (OldTimer Tools) C:\Users\Barry Chapman\Downloads\OTL.exe
2014-05-27 09:25 - 2014-05-27 09:13 - 01440846 _____ () C:\Program Files (x86)\mbam-chameleon-1.62.1.1000.zip
2014-05-27 09:18 - 2014-05-27 09:18 - 00000000 ____D () C:\Malwarebytes' Anti-Malware
2014-05-27 09:01 - 2014-05-27 09:01 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Barry Chapman\Downloads\mbam-setup-2.0.2.1012 (1).exe
2014-05-27 08:58 - 2014-05-27 08:58 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Barry Chapman\Downloads\mbam-setup-2.0.2.1012.exe
2014-05-26 10:19 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll
2014-05-26 10:17 - 2014-05-26 10:17 - 01327971 _____ () C:\Users\Barry Chapman\Downloads\AdwCleaner.exe
2014-05-25 11:49 - 2014-05-25 11:49 - 00004447 _____ () C:\Users\Barry Chapman\Desktop\attach.zip
2014-05-25 11:38 - 2014-05-25 11:38 - 00002135 _____ () C:\Users\Barry Chapman\Desktop\aswMBR.txt
2014-05-25 11:38 - 2014-05-25 11:38 - 00000512 _____ () C:\Users\Barry Chapman\Desktop\MBR.dat
2014-05-25 10:52 - 2014-05-25 10:52 - 00004315 _____ () C:\Users\Barry Chapman\Desktop\attach.rar
2014-05-25 10:46 - 2014-05-25 10:46 - 00042419 _____ () C:\Users\Barry Chapman\Desktop\dds.txt
2014-05-25 10:46 - 2014-05-25 10:46 - 00020635 _____ () C:\Users\Barry Chapman\Desktop\attach.txt
2014-05-25 10:43 - 2014-05-25 10:43 - 04745728 _____ (AVAST Software) C:\Users\Barry Chapman\Downloads\aswMBR.exe
2014-05-25 10:38 - 2014-05-27 13:27 - 00000000 ____D () C:\Windows\ERDNT
2014-05-25 10:38 - 2014-05-25 10:38 - 00688992 ____R (Swearware) C:\Users\Barry Chapman\Downloads\dds (1).scr
2014-05-25 10:36 - 2014-05-25 10:37 - 00000000 ____D () C:\Program Files (x86)\ERUNT
2014-05-25 10:36 - 2014-05-25 10:36 - 00791393 _____ (Lars Hederer ) C:\Users\Barry Chapman\Downloads\erunt-setup (2).exe
2014-05-25 10:36 - 2014-05-25 10:36 - 00000960 _____ () C:\Users\Barry Chapman\Desktop\ERUNT.lnk
2014-05-25 10:36 - 2014-05-25 10:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ERUNT
2014-05-24 12:00 - 2014-05-24 12:00 - 00688992 _____ (Swearware) C:\Users\Barry Chapman\Downloads\dds.scr
2014-05-24 11:59 - 2014-05-24 11:59 - 00791393 _____ (Lars Hederer ) C:\Users\Barry Chapman\Downloads\erunt-setup (1).exe
2014-05-24 11:57 - 2014-05-24 11:57 - 00791393 _____ (Lars Hederer ) C:\Users\Barry Chapman\Downloads\erunt-setup.exe
2014-05-23 08:25 - 2014-05-23 08:25 - 00000000 ____D () C:\New folder
2014-05-23 07:48 - 2014-05-23 07:48 - 624028561 _____ () C:\Windows\MEMORY.DMP
2014-05-23 07:48 - 2014-05-23 07:48 - 00280128 _____ () C:\Windows\Minidump\052314-21138-01.dmp
2014-05-23 07:48 - 2014-05-23 07:48 - 00000000 ____D () C:\Windows\Minidump
2014-05-23 07:43 - 2014-05-23 07:43 - 00162208 _____ () C:\Users\Barry Chapman\Downloads\Antivirus_Free_Edition (1).exe
2014-05-23 07:41 - 2014-05-23 07:41 - 00000000 ____D () C:\Users\Barry Chapman\AppData\Roaming\QuickScan
2014-05-23 07:40 - 2014-05-23 07:43 - 10447328 _____ () C:\Users\Barry Chapman\Downloads\Antivirus_Free_Edition_x64.exe
2014-05-23 07:39 - 2014-05-23 07:39 - 00162208 _____ () C:\Users\Barry Chapman\Downloads\Antivirus_Free_Edition.exe
2014-05-22 15:37 - 2014-05-22 15:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picasa 3
2014-05-22 15:35 - 2014-05-22 15:35 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-05-22 15:35 - 2014-05-22 15:35 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-05-22 15:35 - 2014-05-22 15:35 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-05-22 15:35 - 2014-05-22 15:35 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-05-22 15:35 - 2014-05-22 15:35 - 00000000 ____D () C:\Program Files (x86)\Java
2014-05-22 13:22 - 2014-05-22 13:23 - 00051706 _____ () C:\Windows\SysWOW64\bddel.dat
2014-05-22 10:47 - 2014-05-22 10:47 - 00000000 ____D () C:\Program Files (x86)\Spybot
2014-05-22 08:13 - 2014-05-22 09:31 - 00017970 _____ () C:\Users\Barry Chapman\Desktop\Nmc_2014-05-22_08-13-17.log
2014-05-22 08:08 - 2014-05-22 08:11 - 00003374 _____ () C:\Users\Barry Chapman\Desktop\Nmc_2014-05-22_08-08-46.log
2014-05-22 07:57 - 2014-05-22 08:06 - 332119856 _____ (Norman Shark AS) C:\Users\Barry Chapman\Downloads\Norman_Malware_Cleaner (1).exe
2014-05-21 11:27 - 2014-05-21 11:27 - 00000000 ____D () C:\Users\Barry Chapman\AppData\Roaming\TuneUp Software
2014-05-21 11:16 - 2014-05-23 07:03 - 00000000 ____D () C:\ProgramData\MFAData
2014-05-21 11:16 - 2014-05-21 11:16 - 00000000 ____D () C:\Users\Barry Chapman\AppData\Local\MFAData
2014-05-21 11:15 - 2014-05-21 11:15 - 04485528 _____ (AVG Technologies) C:\Users\Barry Chapman\Downloads\avg_free_stb_all_2014_4577_cnet.exe
2014-05-21 09:31 - 2014-05-21 10:04 - 00014960 _____ () C:\Users\Barry Chapman\Desktop\Nmc_2014-05-21_09-31-37.log
2014-05-21 09:01 - 2014-05-21 09:08 - 331917560 _____ (Norman Shark AS) C:\Users\Barry Chapman\Downloads\Norman_Malware_Cleaner.exe
2014-05-20 14:54 - 2014-05-20 15:49 - 00025110 _____ () C:\Users\Barry Chapman\Desktop\Nmc_2014-05-20_14-54-17.log
2014-05-20 14:53 - 2014-05-20 14:53 - 00000000 ____D () C:\Users\Barry Chapman\AppData\Local\Norman Malware Cleaner
2014-05-20 12:44 - 2014-05-20 13:35 - 00000000 ____D () C:\ProgramData\HitmanPro
2014-05-20 12:34 - 2014-05-20 12:34 - 00000914 _____ () C:\Users\Barry Chapman\Desktop\JRT.txt
2014-05-20 10:29 - 2014-05-20 10:30 - 04957528 _____ (SurfRight B.V.) C:\Users\Barry Chapman\Downloads\Unconfirmed 912715.crdownload
2014-05-19 16:42 - 2014-05-26 10:25 - 00000000 ____D () C:\AdwCleaner
2014-05-19 10:55 - 2014-05-19 10:55 - 00000000 ____D () C:\ProgramData\regid.1986-12.com.adobe
2014-05-19 10:20 - 2014-05-19 10:20 - 00000000 ____D () C:\Adobe XI Pro
2014-05-19 08:08 - 2014-05-20 18:24 - 00000000 ____D () C:\Program Files\SUPERAntiSpyware
2014-05-19 07:54 - 2014-05-19 07:54 - 00000000 ____D () C:\Users\Barry Chapman\Documents\ProcAlyzer Dumps
2014-05-16 10:51 - 2014-05-27 09:22 - 00000000 ____D () C:\Users\Barry Chapman\AppData\Local\CrashDumps
2014-05-16 09:39 - 2014-05-16 09:39 - 00000000 ____D () C:\Users\Barry Chapman\AppData\Roaming\SUPERAntiSpyware.com
2014-05-16 09:39 - 2014-05-16 09:39 - 00000000 ____D () C:\ProgramData\SUPERAntiSpyware.com
2014-05-16 08:33 - 2014-05-20 17:34 - 00000000 ____D () C:\Program Files (x86)\Adobe Download Assistant
2014-05-16 08:33 - 2014-05-16 08:33 - 00000000 ____D () C:\Users\Barry Chapman\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
2014-05-16 08:32 - 2014-05-16 08:32 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Macromedia
2014-05-16 08:32 - 2014-05-16 08:32 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Macromedia
2014-05-15 15:02 - 2014-05-15 15:02 - 00560968 _____ (Safer-Networking Ltd. ) C:\Users\Barry Chapman\Downloads\spybot2-license (1).exe
2014-05-15 14:27 - 2014-05-15 14:27 - 00000000 ____D () C:\Windows\System32\Tasks\Safer-Networking
2014-05-15 13:05 - 2014-05-15 13:06 - 00560968 _____ (Safer-Networking Ltd. ) C:\Users\Barry Chapman\Downloads\spybot2-license.exe
2014-05-15 12:49 - 2009-06-10 17:00 - 00000824 _____ () C:\Windows\system32\Drivers\etc\hosts.20140515-124903.backup
2014-05-15 11:40 - 2014-05-22 10:49 - 00001446 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
2014-05-15 11:40 - 2014-05-22 10:49 - 00001434 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2014-05-15 11:40 - 2014-05-22 10:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
2014-05-15 11:40 - 2014-05-15 11:40 - 00000656 _____ () C:\Windows\Tasks\Check for updates (Spybot - Search & Destroy).job
2014-05-15 11:40 - 2014-05-15 11:40 - 00000628 _____ () C:\Windows\Tasks\Refresh immunization (Spybot - Search & Destroy).job
2014-05-15 11:40 - 2014-05-15 11:40 - 00000458 _____ () C:\Windows\Tasks\Scan the system (Spybot - Search & Destroy).job
2014-05-15 11:40 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe
2014-05-15 11:21 - 2014-05-22 10:51 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-05-15 11:21 - 2014-05-22 10:49 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
2014-05-15 11:20 - 2014-05-15 10:56 - 46392680 _____ (Safer-Networking Ltd. ) C:\Users\Barry Chapman\Downloads\spybot-2.3 (1).exe
2014-05-15 03:25 - 2014-05-20 17:52 - 00000000 ___RD () C:\Users\Barry Chapman\Virtual Machines
2014-05-15 03:06 - 2014-05-06 00:40 - 23544320 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-05-15 03:06 - 2014-05-06 00:17 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-05-15 03:06 - 2014-05-05 23:25 - 17382912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-05-15 03:06 - 2014-05-05 23:07 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-05-15 03:06 - 2014-05-05 23:00 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-05-15 03:06 - 2014-05-05 22:10 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-05-14 16:16 - 2014-05-14 16:16 - 00000000 ____D () C:\Users\Barry Chapman\AppData\Local\PDF24
2014-05-14 15:56 - 2014-05-26 10:24 - 00000000 ____D () C:\Program Files (x86)\MSR
2014-05-14 15:56 - 2014-05-14 15:56 - 00004592 _____ () C:\Windows\System32\Tasks\IdleCrawler Runner
2014-05-14 15:54 - 2014-05-20 17:52 - 00000000 ____D () C:\Users\Barry Chapman\AppData\Roaming\wi_upd
2014-05-14 15:53 - 2014-05-14 15:54 - 02271768 _____ () C:\Users\Barry Chapman\Downloads\Adobe.Acrobat.XI.Pro.v11.0.2.Multilingual.Cracked.exe
2014-05-14 15:26 - 2014-05-14 15:27 - 18873344 _____ () C:\Users\Barry Chapman\Downloads\AcrobatUpd714_all_incr.msp
2014-05-14 15:22 - 2014-05-14 15:23 - 14385152 _____ () C:\Users\Barry Chapman\Downloads\AcrobatUpd713_all_incr.msp
2014-05-14 15:21 - 2014-05-14 15:22 - 03972608 _____ () C:\Users\Barry Chapman\Downloads\AcrobatUpd712_all_incr (1).msp
2014-05-14 15:20 - 2014-05-14 15:20 - 06504448 _____ () C:\Users\Barry Chapman\Downloads\AcroUpd711_all_incr.msp
2014-05-14 14:34 - 2014-05-14 15:08 - 00001520 _____ () C:\Users\Public\Documents\AcStd7_1_0.ini
2014-05-14 11:56 - 2014-05-27 18:11 - 00000000 ____D () C:\Users\Barry Chapman\Documents\Outlook Files
2014-05-14 10:26 - 2014-05-20 17:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2014-05-14 10:25 - 2014-05-14 10:25 - 00000000 ____D () C:\Windows\PCHEALTH
2014-05-14 10:22 - 2014-05-14 10:22 - 00000000 ____D () C:\Program Files\Microsoft Office
2014-05-14 10:22 - 2014-05-14 10:22 - 00000000 ____D () C:\Program Files (x86)\Microsoft Analysis Services
2014-05-14 10:20 - 2014-05-14 10:26 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2014-05-14 10:20 - 2014-05-14 10:20 - 00000000 ___RD () C:\MSOCache
2014-05-14 08:30 - 2014-05-20 16:20 - 00000000 ____D () C:\Program Files (x86)\Secunia
2014-05-14 08:30 - 2014-05-14 08:30 - 00000000 ____D () C:\Users\Barry Chapman\AppData\Local\Secunia PSI
2014-05-14 08:28 - 2014-05-14 08:29 - 05329480 _____ (Secunia) C:\Users\Barry Chapman\Downloads\PSISetup.exe
2014-05-14 05:44 - 2014-05-09 02:14 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-05-14 05:44 - 2014-05-09 02:11 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-05-14 05:44 - 2014-04-11 22:22 - 00155072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-05-14 05:44 - 2014-04-11 22:22 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2014-05-14 05:44 - 2014-04-11 22:19 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-05-14 05:44 - 2014-04-11 22:19 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2014-05-14 05:44 - 2014-04-11 22:19 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2014-05-14 05:44 - 2014-04-11 22:19 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2014-05-14 05:44 - 2014-04-11 22:19 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2014-05-14 05:44 - 2014-04-11 22:12 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-05-14 05:44 - 2014-04-11 22:10 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-05-14 05:44 - 2014-03-24 22:43 - 14175744 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-05-14 05:44 - 2014-03-24 22:09 - 12874240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2014-05-14 05:44 - 2014-03-04 05:47 - 05550016 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2014-05-14 05:44 - 2014-03-04 05:44 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-05-14 05:44 - 2014-03-04 05:44 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll
2014-05-14 05:44 - 2014-03-04 05:44 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2014-05-14 05:44 - 2014-03-04 05:44 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-05-14 05:44 - 2014-03-04 05:44 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-05-14 05:44 - 2014-03-04 05:44 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-05-14 05:44 - 2014-03-04 05:44 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-05-14 05:44 - 2014-03-04 05:44 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll
2014-05-14 05:44 - 2014-03-04 05:43 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2014-05-14 05:44 - 2014-03-04 05:43 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll
2014-05-14 05:44 - 2014-03-04 05:43 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll
2014-05-14 05:44 - 2014-03-04 05:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll
2014-05-14 05:44 - 2014-03-04 05:43 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll
2014-05-14 05:44 - 2014-03-04 05:43 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll
2014-05-14 05:44 - 2014-03-04 05:43 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-05-14 05:44 - 2014-03-04 05:20 - 03969984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2014-05-14 05:44 - 2014-03-04 05:20 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2014-05-14 05:44 - 2014-03-04 05:17 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-05-14 05:44 - 2014-03-04 05:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll
2014-05-14 05:44 - 2014-03-04 05:17 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2014-05-14 05:44 - 2014-03-04 05:17 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-05-14 05:44 - 2014-03-04 05:17 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2014-05-14 05:44 - 2014-03-04 05:17 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2014-05-14 05:44 - 2014-03-04 05:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll
2014-05-14 05:44 - 2014-03-04 05:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll
2014-05-14 05:44 - 2014-03-04 05:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll
2014-05-14 05:44 - 2014-03-04 05:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll
2014-05-14 05:44 - 2014-03-04 05:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll
2014-05-14 05:44 - 2014-03-04 05:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll
2014-05-14 05:44 - 2014-03-04 05:17 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2014-05-14 05:44 - 2014-03-04 05:16 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2014-05-13 12:17 - 2014-05-20 17:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Backblaze
2014-05-13 12:16 - 2014-05-20 17:44 - 00000000 ____D () C:\Program Files (x86)\Backblaze
2014-05-13 12:16 - 2014-05-13 12:16 - 05033216 _____ () C:\Users\Barry Chapman\Downloads\install_backblaze.exe
2014-05-13 12:16 - 2014-05-13 12:16 - 00000000 ____D () C:\ProgramData\Backblaze
2014-05-13 12:02 - 2014-05-13 12:04 - 00000000 ____D () C:\Users\Barry Chapman\AppData\Local\VMware
2014-05-13 11:38 - 2014-05-13 11:38 - 34209792 _____ () C:\Users\Barry Chapman\Desktop\CHAPMA11_20140505-2014-05-13.QDF-backup
2014-05-13 11:18 - 2014-05-20 17:55 - 00000000 ____D () C:\Windows\pss
2014-05-13 11:00 - 2014-05-20 17:52 - 00000000 ____D () C:\Users\Barry Chapman\AppData\Roaming\VMware
2014-05-13 10:04 - 2014-05-13 10:04 - 00000000 _____ () C:\Users\Barry Chapman\AppData\Local\{89B78C50-3F1E-4624-B5B6-B21F413891C7}
2014-05-13 08:53 - 2014-05-13 11:13 - 00007605 _____ () C:\Users\Barry Chapman\AppData\Local\resmon.resmoncfg
2014-05-12 20:43 - 2014-05-12 20:58 - 00000000 ____D () C:\Users\Barry Chapman\.asdm
2014-05-12 20:43 - 2014-05-12 20:43 - 00000000 ____D () C:\Program Files (x86)\Cisco Systems
2014-05-12 16:26 - 2014-05-12 16:26 - 00010295 _____ () C:\Users\Barry Chapman\Documents\141046 commitment.wpd
2014-05-12 16:21 - 2014-05-12 16:21 - 00002380 _____ () C:\Users\Barry Chapman\Documents\141046 DATA FILE.wpd
2014-05-12 13:51 - 2014-05-13 11:07 - 00000000 ____D () C:\Program Files\My Lockbox
2014-05-12 13:50 - 2014-05-12 13:50 - 04090994 _____ () C:\Users\Barry Chapman\Downloads\mylockbox_setup.zip
2014-05-12 07:16 - 2014-05-13 12:17 - 00000000 ____D () C:\.bzvol
2014-05-09 11:38 - 2014-05-09 11:38 - 00000000 ____D () C:\Users\Barry Chapman\Documents\CCWin
2014-05-09 07:41 - 2013-03-01 02:27 - 00063568 _____ (VMware, Inc.) C:\Windows\system32\Drivers\vmx86.sys
2014-05-09 07:40 - 2013-03-01 02:27 - 00943184 _____ (VMware, Inc.) C:\Windows\system32\vnetlib64.dll
2014-05-09 07:40 - 2013-03-01 02:27 - 00354896 _____ (VMware, Inc.) C:\Windows\SysWOW64\vmnetdhcp.exe
2014-05-09 07:40 - 2013-03-01 02:26 - 00434256 _____ (VMware, Inc.) C:\Windows\SysWOW64\vmnat.exe
2014-05-09 07:40 - 2013-03-01 02:26 - 00030800 _____ (VMware, Inc.) C:\Windows\system32\Drivers\vmnetuserif.sys
2014-05-09 07:39 - 2014-05-27 13:24 - 00000000 ____D () C:\ProgramData\VMware
2014-05-09 07:39 - 2014-05-20 17:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VMware
2014-05-09 07:39 - 2014-05-09 07:39 - 00002187 _____ () C:\Users\Public\Desktop\VMware Player.lnk
2014-05-09 07:39 - 2014-05-09 07:39 - 00000000 ____D () C:\Program Files (x86)\VMware
2014-05-09 07:39 - 2013-03-01 02:26 - 00033360 _____ (VMware, Inc.) C:\Windows\system32\Drivers\VMkbd.sys
2014-05-09 07:39 - 2011-08-29 22:11 - 00039024 _____ (VMware, Inc.) C:\Windows\system32\Drivers\hcmon.sys
2014-05-09 07:38 - 2014-05-09 07:38 - 00000000 ____D () C:\Program Files\Common Files\VMware
2014-05-09 07:33 - 2014-05-09 07:35 - 114794792 _____ (VMware, Inc.) C:\Users\Barry Chapman\Downloads\VMware-player-4.0.6-1035888.exe
2014-05-07 09:42 - 2006-05-16 21:40 - 00753936 ____N (EMC Corporation) C:\Windows\SysWOW64\PIXANNOT.DLL
2014-05-07 09:42 - 2006-05-16 21:40 - 00463120 ____N (EMC Corporation) C:\Windows\SysWOW64\PIXJP2K.DLL
2014-05-07 09:42 - 2006-05-16 21:40 - 00209168 ____N (EMC Corporation) C:\Windows\SysWOW64\PIXNOTEN.DLL
2014-05-07 09:42 - 2006-05-16 21:40 - 00119056 ____N (EMC Corporation) C:\Windows\SysWOW64\PIXJBGN.DLL
2014-05-07 09:42 - 2006-05-16 21:40 - 00102672 ____N (EMC Corporation) C:\Windows\SysWOW64\PIXTIFFN.DLL
2014-05-07 09:42 - 2006-05-16 21:40 - 00094480 ____N (EMC Corporation) C:\Windows\SysWOW64\PIXAPS.DLL
2014-05-07 09:42 - 2006-05-16 21:40 - 00074000 ____N (EMC Corporation) C:\Windows\SysWOW64\PIXNAMEN.DLL
2014-05-07 09:42 - 2006-05-16 21:40 - 00069904 ____N (EMC Corporation) C:\Windows\SysWOW64\PIXDLGN.DLL
2014-05-07 09:42 - 2006-05-16 21:40 - 00057616 ____N (EMC Corporation) C:\Windows\SysWOW64\PIXLZWN.DLL
2014-05-07 09:42 - 2006-05-16 21:40 - 00049424 ____N (EMC Corporation) C:\Windows\SysWOW64\PIXTHK32.DLL
2014-05-07 09:42 - 2006-05-16 21:40 - 00045328 ____N (EMC Corporation) C:\Windows\SysWOW64\PIXSLN.DLL
2014-05-07 09:42 - 2006-05-16 21:40 - 00045328 ____N (EMC Corporation) C:\Windows\SysWOW64\PIXRAMN.DLL
2014-05-07 09:42 - 2006-05-16 21:40 - 00045328 ____N (EMC Corporation) C:\Windows\SysWOW64\PIXPANN.DLL
2014-05-07 09:42 - 2006-05-16 21:40 - 00045328 ____N (EMC Corporation) C:\Windows\SysWOW64\PIXMPN.DLL
2014-05-07 09:42 - 2006-05-16 21:40 - 00045328 ____N (EMC Corporation) C:\Windows\SysWOW64\PIXMDLGN.DLL
2014-05-07 09:42 - 2006-05-16 21:23 - 00006416 ____N (EMC Corporation) C:\Windows\SysWOW64\PIXTHK16.DLL
2014-05-07 09:42 - 2006-05-16 21:22 - 00231552 ____N (EMC Corporation) C:\Windows\SysWOW64\PIXDFLT.DLL
2014-05-07 09:42 - 2006-05-16 21:22 - 00023152 ____N (EMC Corporation) C:\Windows\SysWOW64\PIXPERM.DLL
2014-05-07 09:42 - 2006-05-16 21:22 - 00016048 ____N (EMC Corporation) C:\Windows\SysWOW64\PIXLOC.DLL
2014-05-07 09:42 - 2006-05-16 21:19 - 00327680 ____N (The University of New South Wales) C:\Windows\SysWOW64\PIXJP2KI.DLL
2014-05-07 09:42 - 2006-05-16 21:19 - 00051959 ____N () C:\Windows\SysWOW64\PIXNAME.HLP
2014-05-07 09:42 - 2005-02-10 18:17 - 00011968 ____N (Pixel Translations Incorporated) C:\Windows\SysWOW64\PIXMDLLC.CPL
2014-05-07 09:29 - 2014-05-07 09:29 - 00000000 ____D () C:\ProgramData\Canon Electronics
2014-05-07 09:25 - 2014-05-20 17:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CapturePerfect 3.1
2014-05-07 09:20 - 2014-05-07 09:22 - 79468544 _____ () C:\Users\Barry Chapman\Downloads\CP_Upgrade_V3137 (1).exe
2014-05-06 15:56 - 2014-05-06 15:59 - 00000000 ____D () C:\Users\Barry Chapman\Documents\My Documents from old
2014-05-06 14:42 - 2014-05-06 14:42 - 00119964 _____ () C:\Users\Barry Chapman\Downloads\GSCCCA Online Statement.htm
2014-05-06 13:18 - 2014-05-18 03:05 - 00000000 ____D () C:\Windows\system32\MRT
2014-05-06 13:18 - 2014-05-15 03:03 - 93223848 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-05-06 13:12 - 2012-12-17 08:56 - 00152576 _____ (Canon Electronics) C:\Windows\system32\DR25SVC.dll
2014-05-06 13:12 - 2009-05-13 16:08 - 00491792 _____ (Captiva Software Corp.) C:\Windows\SysWOW64\qd1.dll
2014-05-06 13:09 - 2014-05-06 13:09 - 14393344 _____ () C:\Users\Barry Chapman\Downloads\2580DRIT_V18SP1 (1).exe
2014-05-06 10:10 - 2014-05-06 10:10 - 00000000 ____D () C:\Users\Barry Chapman\AppData\Roaming\Oracle
2014-05-06 10:09 - 2014-05-06 10:09 - 00000000 ____D () C:\ProgramData\Sun
2014-05-06 10:09 - 2014-05-06 10:09 - 00000000 ____D () C:\ProgramData\Oracle
2014-05-06 10:07 - 2014-05-06 10:07 - 00921512 _____ (Oracle Corporation) C:\Users\Barry Chapman\Downloads\chromeinstall-7u55.exe
2014-05-06 10:05 - 2014-05-06 10:04 - 00313256 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2014-05-06 10:04 - 2014-05-20 17:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-05-06 10:04 - 2014-05-06 10:04 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2014-05-06 10:04 - 2014-05-06 10:04 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2014-05-06 10:04 - 2014-05-06 10:04 - 00108968 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2014-05-06 10:04 - 2014-05-06 10:04 - 00000000 ____D () C:\Program Files\Java
2014-05-06 10:03 - 2014-05-06 10:04 - 30818216 _____ (Oracle Corporation) C:\Users\Barry Chapman\Downloads\jre-7u55-windows-x64.exe
2014-05-06 09:31 - 2006-05-16 21:40 - 00233744 _____ (EMC Corporation) C:\Windows\SysWOW64\PIXMDLN.DLL
2014-05-06 09:27 - 2014-05-06 09:27 - 28808192 _____ () C:\Users\Barry Chapman\Downloads\CP_Upgrade_Ver_3097 (1).exe
2014-05-06 09:09 - 2009-05-13 16:16 - 00200704 _____ (EMC Corporation) C:\Windows\SysWOW64\twpix32.dll
2014-05-06 09:09 - 2009-05-13 16:05 - 00021008 _____ (Microsoft Corporation) C:\Windows\system\Ctl3d.dll
2014-05-06 09:09 - 2003-12-18 18:09 - 00231552 _____ (Pixel Translations Incorporated) C:\Windows\system\Pixdflt.dll
2014-05-06 09:09 - 2003-12-18 18:09 - 00023152 _____ (Pixel Translations Incorporated) C:\Windows\system\Pixperm.dll
2014-05-06 09:09 - 2003-12-18 18:09 - 00016064 _____ (Pixel Translations Incorporated) C:\Windows\system\Pixloc.dll
2014-05-06 09:09 - 2002-11-06 11:21 - 00063248 _____ () C:\Windows\SysWOW64\picn1120.ssm
2014-05-06 09:09 - 1998-04-13 13:13 - 00098304 _____ (Cornerstone Imaging, Inc.) C:\Windows\SysWOW64\Wiaext32.dll
2014-05-06 09:06 - 2014-05-06 09:06 - 00000000 _____ () C:\Users\Barry Chapman\Sti_Trace.log
2014-05-06 09:05 - 2014-05-20 17:26 - 00000000 ____D () C:\Users\Barry Chapman\Desktop\CapturePerfect 3.0
2014-05-06 08:51 - 2014-05-06 08:51 - 00249856 _____ () C:\Users\Barry Chapman\Downloads\RepairReg.exe
2014-05-06 08:51 - 2014-05-06 08:51 - 00000000 ____D () C:\DR Scanner
2014-05-06 08:45 - 2014-05-06 08:47 - 79468544 _____ () C:\Users\Barry Chapman\Downloads\CP_Upgrade_V3137.exe
2014-05-06 08:43 - 2014-05-06 08:43 - 00000000 ____D () C:\DR2580C
2014-05-06 08:42 - 2014-05-06 08:42 - 14393344 _____ () C:\Users\Barry Chapman\Downloads\2580DRIT_V18SP1.exe
2014-05-06 08:37 - 2008-11-11 19:00 - 00096768 _____ (Canon Electronics Inc.) C:\Windows\system32\DR25CPL.dll
2014-05-06 08:37 - 2007-04-24 07:53 - 00083456 _____ (Canon Electronics Inc.) C:\Windows\system32\CeiUSB64.dll
2014-05-06 08:35 - 2014-05-06 08:35 - 00000000 ____D () C:\Users\Barry Chapman\Downloads\d1041mux
2014-05-06 08:34 - 2014-05-06 08:35 - 13259652 _____ () C:\Users\Barry Chapman\Downloads\d1041mux.zip
2014-05-06 07:52 - 2014-05-20 18:19 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-05-06 07:31 - 2014-05-06 07:31 - 00003228 _____ () C:\Windows\System32\Tasks\{E819857F-629F-4F7B-9FE3-F8B1467A5C1B}
2014-05-06 07:29 - 2014-05-07 09:22 - 00000000 ____D () C:\CapturePerfect Upgrade
2014-05-06 03:03 - 2014-05-06 03:03 - 00288324 _____ () C:\Windows\msxml4-KB973688-enu.LOG
2014-05-06 03:02 - 2014-05-06 03:03 - 00292408 _____ () C:\Windows\msxml4-KB954430-enu.LOG
2014-05-06 03:02 - 2014-05-06 03:02 - 00000000 ____D () C:\Program Files (x86)\MSXML 4.0
2014-05-05 17:52 - 2014-05-05 19:26 - 28808192 _____ () C:\Users\Barry Chapman\Downloads\CP_Upgrade_Ver_3097.exe
2014-05-05 17:44 - 2014-05-20 17:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon DR-2580C
2014-05-05 17:43 - 2014-05-06 09:06 - 00005432 _____ () C:\Windows\pixcache.ini
2014-05-05 17:43 - 2014-05-05 17:43 - 00003050 _____ () C:\Windows\System32\Tasks\{BEA2EFCD-E2FA-474A-BB2F-ADE6F46BED5D}
2014-05-05 16:56 - 2014-05-05 16:56 - 00000000 ____D () C:\Users\Barry Chapman\AppData\Roaming\AdobeUM
2014-05-05 16:54 - 2014-05-14 15:27 - 00002501 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat 7.0 Standard.lnk
2014-05-05 16:54 - 2014-05-14 14:44 - 00002459 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Distiller 7.0.lnk
2014-05-05 16:54 - 2014-05-05 16:54 - 00002039 _____ () C:\Users\Public\Desktop\Adobe Acrobat 7.0 Standard.lnk
2014-05-05 16:53 - 2014-05-20 18:03 - 00000000 ____D () C:\Windows\SysWOW64\spool
2014-05-05 16:53 - 2014-05-19 10:44 - 00000000 ____D () C:\Users\Public\Documents\Adobe PDF
2014-05-05 16:24 - 2014-05-20 17:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2014-05-05 16:24 - 2014-05-20 17:51 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-05-05 16:24 - 2014-05-20 17:45 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-05-05 16:23 - 2014-05-05 16:24 - 13084896 _____ (Microsoft Corporation) C:\Users\Barry Chapman\Downloads\Silverlight_x64 (1).exe
2014-05-05 16:23 - 2014-05-05 16:23 - 13084896 _____ (Microsoft Corporation) C:\Users\Barry Chapman\Downloads\Silverlight_x64.exe
2014-05-05 16:15 - 2014-05-20 17:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Mouse and Keyboard Center
2014-05-05 16:15 - 2014-05-20 17:51 - 00000000 ____D () C:\Program Files\Microsoft Mouse and Keyboard Center
2014-05-05 16:15 - 2014-05-05 16:15 - 00003118 _____ () C:\Windows\System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe
2014-05-05 16:15 - 2014-05-05 16:15 - 00003092 _____ () C:\Windows\System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe
2014-05-05 16:15 - 2014-05-05 16:15 - 00003090 _____ () C:\Windows\System32\Tasks\Microsoft_Hardware_Launch_itype_exe
2014-05-05 16:15 - 2014-05-05 16:15 - 00003062 _____ () C:\Windows\System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe
2014-05-05 16:15 - 2014-05-05 16:15 - 00003060 _____ () C:\Windows\System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe
2014-05-05 16:15 - 2014-05-05 16:15 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_point64_01011.Wdf
2014-05-05 16:12 - 2014-05-05 16:12 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_dc3d_01011.Wdf
2014-05-05 15:52 - 2014-05-05 15:53 - 19495200 _____ () C:\Users\Barry Chapman\Downloads\upd-ps-x64-5.8.0.17508.exe
2014-05-05 15:50 - 2014-05-05 15:53 - 00000000 ____D () C:\HP Universal Print Driver
2014-05-05 15:49 - 2014-05-05 15:49 - 18409760 _____ () C:\Users\Barry Chapman\Downloads\upd-pcl6-x64-5.8.0.17508.exe
2014-05-05 14:53 - 2014-05-20 17:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Landtech XML
2014-05-05 14:53 - 2014-05-05 14:53 - 00001534 _____ () C:\Users\Barry Chapman\Desktop\Landtech XML.lnk
2014-05-05 14:52 - 2014-05-05 14:52 - 00204800 _____ (Landtech Data Corporation) C:\Windows\SysWOW64\ltwpvsw.DLL
2014-05-05 14:52 - 2014-05-05 14:52 - 00065536 _____ (Landtech Data Corp.) C:\Windows\SysWOW64\LTWNode.exe
2014-05-05 14:52 - 2014-05-05 14:52 - 00004726 _____ () C:\Windows\BOOTSTRAP.LOG
2014-05-05 14:52 - 2014-05-05 14:52 - 00000000 ____D () C:\Users\Barry Chapman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Landtech XML
2014-05-05 14:44 - 2014-05-05 14:44 - 00000519 _____ () C:\Windows\ODBCINST.INI
2014-05-05 14:44 - 2014-05-05 14:44 - 00000000 ____D () C:\ProgramData\Pervasive Software
2014-05-05 14:44 - 2014-05-05 14:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pervasive
2014-05-05 14:44 - 2014-05-05 14:44 - 00000000 ____D () C:\Program Files (x86)\Pervasive Software
2014-05-05 14:18 - 2014-05-05 14:18 - 00000000 ____D () C:\Wages
2014-05-05 14:15 - 2014-05-05 14:17 - 88823072 _____ () C:\Users\Barry Chapman\Downloads\PSQL-Workgroup-10.30.022.000-win.x86.exe
2014-05-05 14:07 - 2001-06-01 14:17 - 00169600 _____ (Wintertree Software Inc.) C:\Windows\SysWOW64\WSpell.ocx
2014-05-05 12:36 - 2014-05-20 17:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WP-64
2014-05-05 12:34 - 2014-05-05 12:34 - 32856361 _____ (wpdos.org ) C:\Users\Barry Chapman\Downloads\WP64DOSBox-Setup.exe
2014-05-05 12:22 - 2014-05-14 13:26 - 00000000 ____D () C:\Users\Barry Chapman\AppData\Roaming\Help
2014-05-05 12:22 - 2014-05-09 09:28 - 00000000 ____D () C:\Users\Barry Chapman\AppData\Local\Help
2014-05-05 11:45 - 2014-05-21 16:21 - 00037861 _____ () C:\Users\Barry Chapman\AppData\Roaming\Comma Separated Values (Windows).ADR
2014-05-05 11:40 - 2014-05-05 11:40 - 00321535 _____ () C:\Users\Barry Chapman\Downloads\contacts.csv
2014-05-05 11:26 - 2014-05-05 11:26 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-05-05 11:25 - 2014-05-05 11:25 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Barry Chapman\Downloads\mbam-setup-2.0.1.1004 (1).exe
2014-05-05 11:24 - 2014-05-05 11:25 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Barry Chapman\Downloads\mbam-setup-2.0.1.1004.exe
2014-05-05 11:16 - 2014-05-05 11:17 - 01069064 _____ (Medlin Accounting Software ) C:\Users\Barry Chapman\Downloads\_05-01-2014_medlin_PR_4-6.exe
2014-05-05 10:49 - 2014-05-25 12:10 - 00000000 ____D () C:\MWACCT
2014-05-05 10:49 - 2014-05-20 17:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Medlin Accounting
2014-05-05 10:49 - 2014-05-05 11:17 - 00000580 _____ () C:\Users\Public\Desktop\Medlin Accounting.lnk
2014-05-05 10:49 - 1998-05-11 20:01 - 01355776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvbvm50.dll
2014-05-05 10:40 - 2014-05-05 10:40 - 00000000 ____D () C:\Users\Barry Chapman\AppData\Local\QuickenWindow
2014-05-05 10:36 - 2014-05-05 10:36 - 00000000 ____D () C:\Users\Barry Chapman\AppData\Local\IsolatedStorage
2014-05-05 10:28 - 2014-05-05 10:28 - 00000000 ____D () C:\Users\Barry Chapman\Documents\Quicken
2014-05-05 10:24 - 2014-05-20 17:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Quicken 2014
2014-05-05 10:24 - 2014-05-20 17:46 - 00000000 ____D () C:\Program Files (x86)\Quicken