========== FireFox ==========
FF - prefs.js..browser.search.countryCode: "US"
FF - prefs.js..browser.search.region: "US"
FF - prefs.js..browser.startup.homepage: "chrome://fvd.speeddial/content/fvd_about_blank.html"
FF - prefs.js..extensions.enabledAddons: pavel.sherbakov%40gmail.com:6.7.7
FF - prefs.js..extensions.enabledAddons: fvdmedia%40gmail.com:5.6.4
FF - prefs.js..extensions.enabledAddons: %7B37fa1426-b82d-11db-8314-0800200c9a66%7D:3.5.6
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:37.0
FF - user.js - File not found
FF:
64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_305.dll File not found
FF:
64bit: - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=11.31.2: C:\Program Files\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF:
64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=11.31.2: C:\Program Files\Java\jre1.8.0_31\bin\plugin2\npjp2.dll (Oracle Corporation)
FF:
64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF:
64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll ()
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf: C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll (Foxit Corporation)
FF - HKLM\Software\MozillaPlugins\@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf: C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll (Foxit Corporation)
FF - HKLM\Software\MozillaPlugins\@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp: C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll (Foxit Corporation)
FF - HKLM\Software\MozillaPlugins\@foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf: C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll (Foxit Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=11.31.2: C:\Program Files (x86)\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=11.31.2: C:\Program Files (x86)\Java\jre1.8.0_31\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/Lync,version=15.0: C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@Nero.com/KM: C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL (Nero AG)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.1.5: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{F003DA68-8256-4b37-A6C4-350FA04494DF}: C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 37.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 37.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
[2015/03/27 03:24:46 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Scott\AppData\Roaming\mozilla\Extensions
[2015/03/27 03:53:23 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Scott\AppData\Roaming\mozilla\Firefox\Profiles\17spqh79.default\extensions
[2015/03/27 03:25:34 | 000,000,000 | ---D | M] ("EverSync - Sync bookmarks, backup your favorites.") -- C:\Users\Scott\AppData\Roaming\mozilla\Firefox\Profiles\17spqh79.default\extensions\
[email protected]
[2015/03/27 03:25:34 | 000,000,000 | ---D | M] ("Speed Dial [FVD] - New Tab Page, Sync...") -- C:\Users\Scott\AppData\Roaming\mozilla\Firefox\Profiles\17spqh79.default\extensions\
[email protected]
[2015/03/27 03:53:23 | 000,231,310 | ---- | M] () (No name found) -- C:\Users\Scott\AppData\Roaming\mozilla\firefox\profiles\17spqh79.default\extensions\{37fa1426-b82d-11db-8314-0800200c9a66}.xpi
[2015/03/27 03:51:48 | 000,970,602 | ---- | M] () (No name found) -- C:\Users\Scott\AppData\Roaming\mozilla\firefox\profiles\17spqh79.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
[2015/03/27 03:24:34 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
[2015/03/27 03:24:34 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
O1 HOSTS File: ([2013/08/22 09:25:41 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:
64bit: - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll (Oracle Corporation)
O2:
64bit: - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll (Oracle Corporation)
O4 - HKLM..\Run: [AdobeCS6ServiceManager] C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe (Adobe Systems Incorporated)
O4 - HKCU..\Run: [AdobeBridge] File not found
O4 - HKCU..\Run: [BitTorrent] C:\Users\Scott\AppData\Roaming\BitTorrent\BitTorrent.exe (BitTorrent Inc.)
O4 - HKCU..\Run: [TorrentRatioKeeper] C:\Users\Scott\AppData\Roaming\TORREN~1\TORREN~1.EXE /s File not found
O4 - HKCU..\Run: [uTorrent] C:\Users\Scott\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableCursorSuppression = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SoftwareSASGeneration = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SynchronousMachineGroupPolicy = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SynchronousUserGroupPolicy = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLinkedConnections = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: =
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoInternetOpenWith = 1
O10:
64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O13
64bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 71.10.216.1 71.10.216.2 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{9C129844-70BA-4AE5-B77A-A10E80A8513D}: DhcpNameServer = 71.10.216.1 71.10.216.2 192.168.1.1
O18:
64bit: - Protocol\Handler\WSAMVCUchrome - No CLSID value found
O18 - Protocol\Handler\ms-help - No CLSID value found
O18 - Protocol\Handler\WSAMVCUchrome - No CLSID value found
O20:
64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:
64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O21:
64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2015/02/11 04:04:41 | 000,000,000 | ---D | M] - C:\Autodesk -- [ NTFS ]
O33 - MountPoints2\{522bc16e-90b8-11e4-8266-00f1310000fc}\Shell - "" = AutoRun
O33 - MountPoints2\{522bc16e-90b8-11e4-8266-00f1310000fc}\Shell\AutoRun\command - "" = "I:\LaunchU3.exe" -a
O33 - MountPoints2\{c737fe90-b402-11e4-827f-005056c00008}\Shell - "" = AutoRun
O33 - MountPoints2\{c737fe90-b402-11e4-827f-005056c00008}\Shell\AutoRun\command - "" = "E:\setup.exe"
O33 - MountPoints2\D\Shell - "" = AutoRun
O33 - MountPoints2\D\Shell\AutoRun\command - "" = "D:\Setup.exe"
O34 - HKLM BootExecute: (autocheck autochk *)
O34 - HKLM BootExecute: (sdnclean64.exe)
O35:
64bit: - HKLM\..comfile [open] -- "%1" %*
O35:
64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:
64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:
64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
========== Files/Folders - Created Within 30 Days ==========
[2015/03/28 00:51:32 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2015/03/28 00:51:00 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Scott\Desktop\OTL.exe
[2015/03/27 03:24:43 | 000,000,000 | ---D | C] -- C:\Users\Scott\AppData\Roaming\Mozilla
[2015/03/27 03:24:43 | 000,000,000 | ---D | C] -- C:\Users\Scott\AppData\Local\Mozilla
[2015/03/27 03:24:36 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Maintenance Service
[2015/03/27 03:24:33 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[2015/03/26 03:48:05 | 000,012,872 | ---- | C] (SurfRight B.V.) -- C:\Windows\SysNative\bootdelete.exe
[2015/03/26 03:33:05 | 003,677,488 | ---- | C] (Logitech Inc.) -- C:\Users\Scott\Desktop\SetPoint6.65.62_smart.exe
[2015/03/26 02:56:27 | 000,000,000 | ---D | C] -- C:\Users\Scott\Desktop\Tools (update regularly)
[2015/03/26 00:32:34 | 000,000,000 | ---D | C] -- C:\Users\Scott\Desktop\IObit Driver Booster v2.2.0.160
[2015/03/24 03:35:53 | 000,000,000 | ---D | C] -- C:\Users\Scott\AppData\Roaming\BitTorrent
[2015/03/24 02:47:50 | 000,000,000 | ---D | C] -- C:\ProgramData\IDM
[2015/03/24 02:47:49 | 000,000,000 | ---D | C] -- C:\Users\Scott\AppData\Roaming\DMCache
[2015/03/23 05:13:14 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HitmanPro
[2015/03/23 05:13:14 | 000,000,000 | ---D | C] -- C:\Program Files\HitmanPro
[2015/03/23 05:12:48 | 000,000,000 | ---D | C] -- C:\ProgramData\HitmanPro
[2015/03/23 03:53:33 | 000,000,000 | ---D | C] -- C:\ProgramData\boost_interprocess
[2015/03/23 03:52:36 | 000,000,000 | ---D | C] -- C:\Users\Scott\AppData\Local\qBittorrent
[2015/03/23 03:46:45 | 000,136,408 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\MBAMSwissArmy.sys
[2015/03/23 03:44:58 | 000,000,000 | ---D | C] -- C:\Users\Scott\AppData\Roaming\Geek Uninstaller
[2015/03/23 03:18:03 | 000,000,000 | ---D | C] -- C:\Users\Scott\Doctor Web
[2015/03/23 01:48:13 | 000,000,000 | ---D | C] -- C:\Users\Scott\.swt
[2015/03/23 01:47:35 | 000,000,000 | ---D | C] -- C:\Users\Scott\Documents\Vuze Downloads
[2015/03/22 00:16:19 | 000,000,000 | ---D | C] -- C:\Users\Scott\AppData\Roaming\ahd_video_converter
[2015/03/21 03:43:19 | 000,000,000 | ---D | C] -- C:\ProgramData\vsosdk
[2015/03/21 02:33:58 | 000,000,000 | ---D | C] -- C:\Users\Scott\AppData\Local\Frameworkx.com
[2015/03/20 03:44:21 | 000,000,000 | ---D | C] -- C:\Users\Scott\AppData\Local\Android
[2015/03/20 03:29:06 | 000,000,000 | ---D | C] -- C:\Users\Scott\AppData\Roaming\JetBrains
[2015/03/20 03:23:21 | 000,000,000 | ---D | C] -- C:\Program Files\Android
[2015/03/20 02:34:14 | 000,000,000 | ---D | C] -- C:\ProgramData\ShellIcons
[2015/03/18 04:28:36 | 000,000,000 | ---D | C] -- C:\Users\Scott\AppData\Roaming\cb07cc9234eb500809acfcb6316bcdd60a8900f8
[2015/03/18 02:32:42 | 000,000,000 | ---D | C] -- C:\Users\Scott\Documents\Apowersoft
[2015/03/18 02:32:34 | 000,000,000 | ---D | C] -- C:\Users\Scott\AppData\Roaming\Apowersoft
[2015/03/18 02:32:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apowersoft
[2015/03/18 02:32:29 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Apowersoft
[2015/03/18 01:55:09 | 000,000,000 | ---D | C] -- C:\Users\Scott\AppData\Roaming\Torrent Ratio Keeper
[2015/03/18 01:55:09 | 000,000,000 | ---D | C] -- C:\Users\Scott\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Torrent Ratio Keeper
[2015/03/15 05:42:50 | 000,000,000 | ---D | C] -- C:\Users\Scott\Documents\VSO Downloader
[2015/03/15 05:41:25 | 000,000,000 | ---D | C] -- C:\Program Files\WinPcap
[2015/03/15 05:38:57 | 000,000,000 | ---D | C] -- C:\Users\Scott\Documents\ConvertXtoDVD
[2015/03/14 06:00:06 | 000,000,000 | ---D | C] -- C:\Users\Scott\Documents\DVD Converter Ultimate
[2015/03/14 05:57:36 | 000,082,816 | ---- | C] (VSO Software) -- C:\Users\Scott\AppData\Roaming\pcouffin.sys
[2015/03/14 05:57:35 | 000,000,000 | ---D | C] -- C:\Users\Scott\AppData\Roaming\Vso
[2015/03/14 05:57:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VSO
[2015/03/14 05:57:17 | 000,000,000 | ---D | C] -- C:\ProgramData\VSO
[2015/03/14 05:57:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\VSO
[2015/03/14 01:51:44 | 000,127,760 | ---- | C] (Power Software Ltd) -- C:\Windows\SysNative\drivers\scdemu.sys
[2015/03/14 01:51:44 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerISO
[2015/03/14 01:45:16 | 000,000,000 | ---D | C] -- C:\Program Files\VIA
[2015/03/14 01:45:16 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\SRSLabs
[2015/03/14 01:45:08 | 027,646,720 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioVnA64.dll
[2015/03/14 01:45:08 | 007,163,744 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\EEP64H.dll
[2015/03/14 01:45:08 | 007,163,744 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\EEP64A.dll
[2015/03/14 01:45:08 | 003,300,528 | ---- | C] (VIA Technologies, Inc.) -- C:\Windows\SysNative\VIAPropPageExt.dll
[2015/03/14 01:45:08 | 002,103,040 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\WavesGUILib64.dll
[2015/03/14 01:45:08 | 002,000,640 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\SysNative\VMAPO264.DLL
[2015/03/14 01:45:08 | 001,986,048 | ---- | C] (VIA Technologies, Inc.) -- C:\Windows\SysNative\ViaMicArrayAPO.dll
[2015/03/14 01:45:08 | 001,728,768 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\SysWow64\VMAPO232.DLL
[2015/03/14 01:45:08 | 001,161,336 | ---- | C] (VIA Technologies, Inc.) -- C:\Windows\SysNative\ViaKaraokeApo.dll
[2015/03/14 01:45:08 | 001,013,504 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPOShell64.dll
[2015/03/14 01:45:08 | 000,879,616 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\SysNative\VMAPO64.DLL
[2015/03/14 01:45:08 | 000,876,544 | ---- | C] (VIA Technologies, Inc.) -- C:\Windows\SysNative\VIASysFx.dll
[2015/03/14 01:45:08 | 000,739,328 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\SysWow64\VMAPO32.DLL
[2015/03/14 01:45:08 | 000,689,672 | ---- | C] (VIA Technologies, Inc.) -- C:\Windows\SysNative\drivers\viahduaa.sys
[2015/03/14 01:45:08 | 000,663,296 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPO30.dll
[2015/03/14 01:45:08 | 000,619,520 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\SysNative\VMTHX64.DLL
[2015/03/14 01:45:08 | 000,554,496 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\SysWow64\VMTHX32.DLL
[2015/03/14 01:45:08 | 000,433,504 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\EED64H.dll
[2015/03/14 01:45:08 | 000,433,504 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\EED64A.dll
[2015/03/14 01:45:08 | 000,388,096 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\SysNative\VMWRP64.DLL
[2015/03/14 01:45:08 | 000,248,952 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\Windows\SysNative\Dts2APO.dll
[2015/03/14 01:45:08 | 000,137,056 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\EEL64H.dll
[2015/03/14 01:45:08 | 000,137,056 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\EEL64A.dll
[2015/03/14 01:45:08 | 000,123,512 | ---- | C] (VIA Technologies,Inc.) -- C:\Windows\SysNative\ViaKaraokePropPageExt.dll
[2015/03/14 01:45:08 | 000,120,160 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\EEA64H.dll
[2015/03/14 01:45:08 | 000,120,160 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\EEA64A.dll
[2015/03/14 01:45:08 | 000,095,352 | ---- | C] (VIA Technologies,Inc.) -- C:\Windows\SysNative\ViaMicArrayPropPageExt.dll
[2015/03/14 01:45:08 | 000,092,280 | ---- | C] (VIA Technologies, Inc.) -- C:\Windows\SysNative\Dts2PropPageExt.dll
[2015/03/14 01:45:08 | 000,086,016 | ---- | C] (QSound Labs, Inc.) -- C:\Windows\SysNative\nQPropPageExt.dll
[2015/03/14 01:45:08 | 000,083,968 | ---- | C] (QSound Labs, Inc.) -- C:\Windows\SysNative\nQAPO.dll
[2015/03/14 01:45:08 | 000,075,104 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\EEG64H.dll
[2015/03/14 01:45:08 | 000,075,104 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\EEG64A.dll
[2015/03/14 01:45:08 | 000,070,776 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\Windows\SysNative\VtSrdAPO.dll
[2015/03/14 01:45:08 | 000,057,856 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\SysNative\VMPPLD64.DLL
[2015/03/14 01:45:08 | 000,055,416 | ---- | C] (TODO: <Company name>) -- C:\Windows\SysNative\PropPageExt.dll
[2015/03/14 01:45:08 | 000,053,760 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\SysNative\VMPPCN64.DLL
[2015/03/14 01:45:08 | 000,030,728 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\SysNative\drivers\VMfilt64.sys
[2015/03/14 01:45:08 | 000,027,768 | ---- | C] (VIA Technologies, Inc.) -- C:\Windows\SysNative\ViakaraokeSrv.exe
[2015/03/14 01:44:55 | 000,011,944 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Windows\SysNative\drivers\amdide64.sys
[2015/03/14 01:44:21 | 000,876,760 | ---- | C] (Realtek ) -- C:\Windows\SysNative\drivers\Rt630x64.sys
[2015/03/14 01:44:21 | 000,073,800 | ---- | C] (Realtek Semiconductor Corporation) -- C:\Windows\SysNative\RtNicProp64.dll
[2015/03/13 04:33:13 | 000,142,848 | ---- | C] (Windows (R) Win 7 DDK provider) -- C:\Windows\SysNative\drivers\amdacpksl.sys
[2015/03/12 04:50:18 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Baidu
[2015/03/12 02:38:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\FreeTime
[2015/03/12 02:34:01 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\GreenTree Applications
[2015/03/10 20:33:20 | 000,933,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\calc.exe
[2015/03/10 20:33:19 | 000,816,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\calc.exe
[2015/03/10 20:33:16 | 000,264,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\WdFilter.sys
[2015/03/10 20:33:16 | 000,044,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\WdBoot.sys
[2015/03/10 20:33:15 | 000,114,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\WdNisDrv.sys
[2015/03/10 20:33:12 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winshfhc.dll
[2015/03/10 20:33:12 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\winshfhc.dll
[2015/03/10 20:33:09 | 000,723,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SHCore.dll
[2015/03/10 20:33:09 | 000,560,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SHCore.dll
[2015/03/10 20:33:01 | 003,097,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msftedit.dll
[2015/03/10 20:33:01 | 002,484,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msftedit.dll
[2015/03/10 20:33:01 | 000,347,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\photowiz.dll
[2015/03/10 20:33:01 | 000,290,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\photowiz.dll
[2015/03/10 20:33:00 | 000,358,912 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysNative\atmfd.dll
[2015/03/10 20:33:00 | 000,301,056 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\atmfd.dll
[2015/03/10 20:33:00 | 000,044,032 | ---- | C] (Adobe Systems) -- C:\Windows\SysNative\atmlib.dll
[2015/03/10 20:33:00 | 000,035,840 | ---- | C] (Adobe Systems) -- C:\Windows\SysWow64\atmlib.dll
[2015/03/10 20:32:59 | 001,091,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\localspl.dll
[2015/03/10 20:32:59 | 000,864,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\win32spl.dll
[2015/03/10 20:32:58 | 004,298,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_47.dll
[2015/03/10 20:32:58 | 002,257,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dwmcore.dll
[2015/03/10 20:32:58 | 001,943,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dwmcore.dll
[2015/03/10 20:32:58 | 001,488,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfc42u.dll
[2015/03/10 20:32:58 | 001,230,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc42u.dll
[2015/03/10 20:32:58 | 001,204,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc42.dll
[2015/03/10 20:32:57 | 003,551,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_47.dll
[2015/03/10 20:32:57 | 001,464,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfc42.dll
[2015/03/10 20:32:57 | 000,035,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\atlthunk.dll
[2015/03/10 20:32:56 | 000,971,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WSShared.dll
[2015/03/10 20:32:56 | 000,811,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WSShared.dll
[2015/03/10 20:32:56 | 000,274,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Windows.ApplicationModel.Store.TestingFramework.dll
[2015/03/10 20:32:56 | 000,210,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Windows.ApplicationModel.Store.TestingFramework.dll
[2015/03/10 20:32:54 | 002,773,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\authui.dll
[2015/03/10 20:32:54 | 002,459,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\authui.dll
[2015/03/10 20:32:54 | 000,075,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\StorageContextHandler.dll
[2015/03/10 20:32:54 | 000,060,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\StorageContextHandler.dll
[2015/03/10 20:32:11 | 007,472,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntoskrnl.exe
[2015/03/10 20:32:10 | 001,733,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntdll.dll
[2015/03/10 20:32:05 | 003,547,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcorets.dll
[2015/03/10 20:32:05 | 000,346,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\eappcfg.dll
[2015/03/10 20:32:05 | 000,339,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\eapphost.dll
[2015/03/10 20:32:05 | 000,331,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\eapp3hst.dll
[2015/03/10 20:32:05 | 000,278,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\eappcfg.dll
[2015/03/10 20:32:05 | 000,266,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\eapphost.dll
[2015/03/10 20:32:05 | 000,250,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\eapp3hst.dll
[2015/03/10 20:32:05 | 000,203,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ubpm.dll
[2015/03/10 20:32:05 | 000,131,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpudd.dll
[2015/03/10 20:32:05 | 000,102,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\eappgnui.dll
[2015/03/10 20:32:05 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\eappgnui.dll
[2015/03/10 20:31:57 | 006,035,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2015/03/10 20:31:53 | 002,865,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\actxprxy.dll
[2015/03/10 20:31:53 | 002,125,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2015/03/10 20:31:53 | 002,052,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2015/03/10 20:31:53 | 000,816,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
[2015/03/10 20:31:53 | 000,814,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9diag.dll
[2015/03/10 20:31:53 | 000,801,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2015/03/10 20:31:53 | 000,800,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll
[2015/03/10 20:31:53 | 000,710,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
[2015/03/10 20:31:53 | 000,664,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2015/03/10 20:31:53 | 000,584,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
[2015/03/10 20:31:53 | 000,316,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll
[2015/03/10 20:31:53 | 000,145,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iepeers.dll
[2015/03/10 20:31:53 | 000,128,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iepeers.dll
[2015/03/10 20:31:53 | 000,092,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2015/03/10 20:31:53 | 000,088,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MshtmlDac.dll
[2015/03/10 20:31:53 | 000,076,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2015/03/10 20:31:53 | 000,064,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MshtmlDac.dll
[2015/03/10 20:31:41 | 001,763,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsCodecs.dll
[2015/03/10 20:31:41 | 000,046,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\LockScreenContentServer.exe
[2015/03/10 20:31:34 | 002,501,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\explorer.exe
[2015/03/10 20:31:34 | 002,207,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\explorer.exe
[2015/03/10 20:31:34 | 001,384,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msctf.dll
[2015/03/10 20:31:34 | 001,090,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MrmCoreR.dll
[2015/03/10 20:31:34 | 000,791,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MrmCoreR.dll
[2015/03/10 20:31:34 | 000,402,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMPhoto.dll
[2015/03/10 20:31:34 | 000,357,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMPhoto.dll
[2015/03/09 00:58:38 | 000,000,000 | ---D | C] -- C:\Users\Scott\AppData\Local\Aiseesoft Studio
[2015/03/08 01:58:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Spybot - Search & Destroy
[2015/03/08 01:55:06 | 000,000,000 | ---D | C] -- C:\Users\Scott\AppData\Roaming\se_tmp
[2015/03/08 01:46:27 | 000,000,000 | ---D | C] -- C:\Users\Scott\AppData\Roaming\HMYGSetting
[2015/03/08 01:45:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Wondershare
[2015/03/08 01:45:22 | 000,000,000 | ---D | C] -- C:\Users\Scott\AppData\Roaming\Wondershare
[2015/03/07 04:21:51 | 000,000,000 | ---D | C] -- C:\Users\Scott\AppData\Local\4Videosoft Studio
[2015/03/07 04:19:47 | 000,000,000 | ---D | C] -- C:\Users\Scott\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
[2015/03/07 04:19:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
[2015/03/07 04:19:13 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR
[2015/03/07 02:16:16 | 000,000,000 | ---D | C] -- C:\Users\Scott\AppData\Roaming\Corel
[2015/03/07 02:15:48 | 000,000,000 | ---D | C] -- C:\Users\Scott\AppData\Roaming\Ulead Systems
[2015/03/07 02:15:47 | 000,000,000 | ---D | C] -- C:\Users\Scott\Documents\Corel PaintShop Pro
[2015/03/07 02:15:47 | 000,000,000 | ---D | C] -- C:\Users\Scott\AppData\Local\Corel PaintShop Pro
[2015/03/07 02:14:37 | 000,000,000 | ---D | C] -- C:\Program Files\Corel
[2015/03/07 02:14:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Corel
[2015/03/07 02:13:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Corel PaintShop Pro X7
[2015/03/07 02:13:33 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Corel
[2015/03/06 04:10:00 | 000,000,000 | ---D | C] -- C:\Users\Scott\AppData\Roaming\Auslogics
[2015/03/06 04:09:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Auslogics
[2015/03/06 04:09:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auslogics
[2015/03/06 04:09:49 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Auslogics
[2015/03/05 04:07:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
[2015/03/05 04:07:39 | 000,107,736 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbamchameleon.sys
[2015/03/05 04:07:39 | 000,064,216 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mwac.sys
[2015/03/05 04:07:39 | 000,025,816 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
[2015/03/05 04:07:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes Anti-Malware
[2015/03/02 03:04:04 | 000,000,000 | ---D | C] -- C:\Users\Scott\AppData\Roaming\Digiarty
[2015/03/02 01:55:59 | 000,000,000 | ---D | C] -- C:\Users\Scott\AppData\Local\DiskBoss Ultimate
[2015/03/02 01:51:30 | 000,000,000 | ---D | C] -- C:\Users\Scott\AppData\Roaming\Hard Disk Sentinel
[2015/03/02 01:50:43 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Hard Disk Sentinel
[2015/03/01 01:54:05 | 000,000,000 | ---D | C] -- C:\Users\Scott\AppData\Roaming\Xilisoft
[2015/03/01 01:42:38 | 000,000,000 | ---D | C] -- C:\Users\Scott\AppData\Roaming\WinAVI
[2015/03/01 01:42:38 | 000,000,000 | ---D | C] -- C:\Users\Scott\AppData\Local\WinAVI
[2015/03/01 01:42:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinAVI All-in-One Converter
[2015/03/01 01:42:25 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\WinAVI
[2015/03/01 01:24:52 | 000,033,872 | ---- | C] (AnvSoft Inc.) -- C:\Windows\SysNative\drivers\anvsnddrv.sys
[2015/03/01 01:21:14 | 000,000,000 | ---D | C] -- C:\Users\Scott\AppData\Local\Aimersoft
[2015/03/01 01:21:13 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Aimersoft
[2015/03/01 01:20:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Aimersoft Video Converter Ultimate
[2015/03/01 01:20:56 | 000,000,000 | ---D | C] -- C:\ProgramData\Aimersoft
[2015/02/28 02:19:26 | 000,000,000 | ---D | C] -- C:\ProgramData\launcher
[2015/02/28 02:19:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Paragon Hard Disk Manager™ 15 Premium
[2015/02/28 02:18:47 | 000,000,000 | ---D | C] -- C:\Program Files\Paragon Software
[2015/02/28 01:19:03 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes Anti-Exploit
[2015/02/26 03:09:58 | 000,000,000 | ---D | C] -- C:\Users\Scott\Documents\Registry Tweaks Win 8.1
[2014/07/10 02:16:28 | 002,174,976 | ---- | C] (Advanced Micro Devices Inc.) -- C:\Program Files (x86)\Common Files\atimpenc.dll
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]