4. otl log part 1
OTL logfile created on: 5/25/2015 12:57:52 PM - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Frank\Downloads
64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17801)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
4.00 Gb Total Physical Memory | 2.07 Gb Available Physical Memory | 51.87% Memory free
10.00 Gb Paging File | 8.29 Gb Available in Paging File | 82.90% Paging File free
Paging file location(s): c:\pagefile.sys 6142 6142 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 1862.67 Gb Total Space | 1723.55 Gb Free Space | 92.53% Space Free | Partition Type: NTFS
Drive I: | 1863.01 Gb Total Space | 1092.39 Gb Free Space | 58.64% Space Free | Partition Type: NTFS
Drive J: | 29.71 Gb Total Space | 25.71 Gb Free Space | 86.54% Space Free | Partition Type: FAT32
Computer Name: FRANK-PC | User Name: Frank | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - C:\Users\Frank\Downloads\OTL.exe (OldTimer Tools)
PRC - C:\Program Files (x86)\Siber Systems\AI RoboForm\robotaskbaricon.exe (Siber Systems)
PRC - C:\Program Files\AVAST Software\Avast\avastui.exe (Avast Software s.r.o.)
PRC - C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Avast Software s.r.o.)
PRC - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation)
PRC - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation)
PRC - C:\Program Files (x86)\Google\Chrome Remote Desktop\42.0.2311.39\remoting_host.exe (Google Inc.)
PRC - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
PRC - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation)
PRC - C:\Program Files (x86)\MMTaskbar\MultiMon.exe ()
PRC - C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe (Nuance Communications, Inc.)
PRC - C:\Program Files (x86)\Nuance\PaperPort\PDFProFiltSrvPP.exe (Nuance Communications, Inc.)
PRC - C:\Program Files (x86)\Nuance\PDF Viewer Plus\PdfPro7Hook.exe (Nuance Communications, Inc.)
PRC - C:\Program Files (x86)\Nuance\PDFCreate\PdfCreate7Hook.exe (Nuance Communications, Inc.)
========== Modules (No Company Name) ==========
MOD - C:\Program Files\AVAST Software\Avast\libcef.dll ()
MOD - C:\Program Files\AVAST Software\Avast\log.dll ()
MOD - C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll ()
MOD - C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll ()
MOD - C:\Program Files (x86)\MMTaskbar\MultiMon.exe ()
========== Services (SafeList) ==========
SRV:
64bit: - (avast! Antivirus) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Avast Software s.r.o.)
SRV:
64bit: - (GfExperienceService) -- C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (NVIDIA Corporation)
SRV:
64bit: - (NvStreamSvc) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation)
SRV:
64bit: - (IEEtwCollectorService) -- C:\Windows\SysNative\IEEtwCollector.exe (Microsoft Corporation)
SRV:
64bit: - (WinDefend) -- C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV:
64bit: - (Samsung Network Fax Server) -- C:\Windows\SysNative\spool\drivers\x64\3\NetFaxServer64.exe (Samsung Electronics Co., Ltd.)
SRV:
64bit: - (AppMgmt) -- C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)
SRV - (MozillaMaintenance) -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe (Mozilla Foundation)
SRV - (NvNetworkService) -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation)
SRV - (MBAMService) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe (Malwarebytes Corporation)
SRV - (chromoting) -- C:\Program Files (x86)\Google\Chrome Remote Desktop\42.0.2311.39\remoting_host.exe (Google Inc.)
SRV - (AdobeARMservice) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated)
SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
SRV - (Stereo Service) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation)
SRV - (clr_optimization_v4.0.30319_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation)
SRV - (Samsung Network Fax Server) -- C:\Windows\system32\spool\drivers\x64\3\NetFaxServer64.exe (Samsung Electronics Co., Ltd.)
SRV - (PDFProFiltSrvPP) -- C:\Program Files (x86)\Nuance\PaperPort\PDFProFiltSrvPP.exe (Nuance Communications, Inc.)
========== Driver Services (SafeList) ==========
DRV:
64bit: - (aswSP) -- C:\Windows\SysNative\drivers\aswSP.sys (Avast Software s.r.o.)
DRV:
64bit: - (aswVmm) -- C:\Windows\SysNative\drivers\aswVmm.sys ()
DRV:
64bit: - (aswStm) -- C:\Windows\SysNative\drivers\aswStm.sys (Avast Software s.r.o.)
DRV:
64bit: - (aswRdr) -- C:\Windows\SysNative\drivers\aswRdr2.sys (Avast Software s.r.o.)
DRV:
64bit: - (aswMonFlt) -- C:\Windows\SysNative\drivers\aswMonFlt.sys (Avast Software s.r.o.)
DRV:
64bit: - (aswRvrt) -- C:\Windows\SysNative\drivers\aswRvrt.sys ()
DRV:
64bit: - (aswHwid) -- C:\Windows\SysNative\drivers\aswHwid.sys ()
DRV:
64bit: - (aswSnx) -- C:\Windows\SysNative\drivers\aswSnx.sys (Avast Software s.r.o.)
DRV:
64bit: - (NvStreamKms) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys (NVIDIA Corporation)
DRV:
64bit: - (MBAMWebAccessControl) -- C:\Windows\SysNative\drivers\mwac.sys (Malwarebytes Corporation)
DRV:
64bit: - (MBAMProtector) -- C:\Windows\SysNative\drivers\mbam.sys (Malwarebytes Corporation)
DRV:
64bit: - (Fs_Rec) -- C:\Windows\SysNative\drivers\fs_rec.sys (Microsoft Corporation)
DRV:
64bit: - (TsUsbFlt) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys (Microsoft Corporation)
DRV:
64bit: - (TsUsbGD) -- C:\Windows\SysNative\drivers\TsUsbGD.sys (Microsoft Corporation)
DRV:
64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices)
DRV:
64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices)
DRV:
64bit: - (terminpt) -- C:\Windows\SysNative\drivers\terminpt.sys (Microsoft Corporation)
DRV:
64bit: - (RdpVideoMiniport) -- C:\Windows\SysNative\drivers\rdpvideominiport.sys (Microsoft Corporation)
DRV:
64bit: - (NVHDA) -- C:\Windows\SysNative\drivers\nvhda64v.sys (NVIDIA Corporation)
DRV:
64bit: - (nvvad_WaveExtensible) -- C:\Windows\SysNative\drivers\nvvad64v.sys (NVIDIA Corporation)
DRV:
64bit: - (SSPORT) -- C:\Windows\SysNative\drivers\SSPORT.SYS (Samsung Electronics)
DRV:
64bit: - (dc3d) -- C:\Windows\SysNative\drivers\dc3d.sys (Microsoft Corporation)
DRV:
64bit: - (Point64) -- C:\Windows\SysNative\drivers\point64.sys (Microsoft Corporation)
DRV:
64bit: - (NuidFltr) -- C:\Windows\SysNative\drivers\nuidfltr.sys (Microsoft Corporation)
DRV:
64bit: - (dmvsc) -- C:\Windows\SysNative\drivers\dmvsc.sys (Microsoft Corporation)
DRV:
64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company)
DRV:
64bit: - (asmtxhci) -- C:\Windows\SysNative\drivers\asmtxhci.sys (ASMedia Technology Inc)
DRV:
64bit: - (asmthub3) -- C:\Windows\SysNative\drivers\asmthub3.sys (ASMedia Technology Inc)
DRV:
64bit: - (AtiPcie) -- C:\Windows\SysNative\drivers\AtiPcie.sys (Advanced Micro Devices Inc.)
DRV:
64bit: - (RTL8167) -- C:\Windows\SysNative\drivers\Rt64win7.sys (Realtek )
DRV:
64bit: - (BS_I2cIo) -- C:\Windows\SysNative\drivers\BS_I2c64.sys (BIOSTAR Group)
DRV:
64bit: - (BIOS) -- C:\Windows\SysNative\drivers\BIOS64.sys (BIOSTAR Group)
DRV:
64bit: - (usbfilter) -- C:\Windows\SysNative\drivers\usbfilter.sys (Advanced Micro Devices)
DRV:
64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.)
DRV:
64bit: - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation)
DRV:
64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology)
DRV:
64bit: - (smserial) -- C:\Windows\SysNative\drivers\SmSerl64.sys (Motorola Inc.)
DRV:
64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation)
DRV:
64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation)
DRV:
64bit: - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation)
DRV:
64bit: - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.)
DRV - (BIOS) -- C:\Windows\SysWOW64\drivers\BIOS64.sys (BIOSTAR Group)
DRV - (WIMMount) -- C:\Windows\SysWOW64\drivers\wimmount.sys (Microsoft Corporation)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:
64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:
64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Old Start Page =
http://www.google.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = Preserve
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://google.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache =
http://www.msn.com/?ocid=iehp
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = en-US
IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.search.countryCode: "US"
FF - prefs.js..browser.search.region: "US"
FF - prefs.js..browser.startup.homepage: "https://www.google.com/?gws_rd=ssl"
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:38.0.1
FF - prefs.js..browser.search.defaultenginename: "Yahoo!"
FF - prefs.js..browser.search.selectedEngine: "Yahoo!"
FF - user.js - File not found
FF:
64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKLM\Software\MozillaPlugins\ZEON/PDF,version=2.0: C:\Program Files (x86)\Nuance\PDF Viewer Plus\bin\nppdf.dll (Zeon Corporation)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{22119944-ED35-4ab1-910B-E619EA06A115}: C:\Program Files (x86)\Siber Systems\AI RoboForm\Firefox [2015/05/16 02:07:35 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 38.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 38.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
[2015/05/15 10:54:08 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Frank\AppData\Roaming\Mozilla\Extensions
[2015/05/25 12:11:57 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\md0yaxo0.default\extensions
[2015/05/15 10:53:54 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
[2015/05/15 10:53:54 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
File not found (No name found) -- C:\USERS\FRANK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MD0YAXO0.DEFAULT\EXTENSIONS\
[email protected]
========== Chrome ==========
CHR - Extension: No name found = C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\
CHR - Extension: No name found = C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\
CHR - Extension: No name found = C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\
CHR - Extension: No name found = C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0\
CHR - Extension: No name found = C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.30_0\
CHR - Extension: No name found = C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\deceagebecbceejblnlcjooeohmmeldh\1.0.0.4_0\
CHR - Extension: No name found = C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\
CHR - Extension: No name found = C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbchcmhmhahfdphkhkmpfmihenigjmpp\42.0.2311.37_0\
CHR - Extension: No name found = C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik\2.2015.506.11355_0\
CHR - Extension: No name found = C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg\0.3.0.5_0\
CHR - Extension: No name found = C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\
CHR - Extension: No name found = C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8.1_0\
O1 HOSTS File: ([2015/05/15 10:26:46 | 000,000,864 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 validation.sls.microsoft.com
O2 - BHO: (PlusIEEventHelper Class) - {551A852F-39A6-44A7-9C13-AFBEC9185A9D} - C:\Program Files (x86)\Nuance\PDF Viewer Plus\bin\PlusIEContextMenu.dll (Zeon Corporation)
O2 - BHO: (Reg Error: Value error.) - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
O2 - BHO: (ZeonIEEventHelper Class) - {DA986D7D-CCAF-47B2-84FE-BFA1549BEBF9} - C:\Program Files (x86)\Nuance\PDFCreate\bin\ZeonIEFavClient.dll (Zeon Corporation)
O3 - HKLM\..\Toolbar: (&RoboForm) - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.)
O3 - HKLM\..\Toolbar: (DocuCom PDF) - {E3286BF1-E654-42FF-B4A6-5E111731DF6B} - C:\Program Files (x86)\Nuance\PDFCreate\bin\ZeonIEFavClient.dll (Zeon Corporation)
O4 - HKLM..\Run: [AvastUI.exe] C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o.)
O4 - HKLM..\Run: [BiosNotice] C:\Program Files (x86)\BIOSTAR\BiosNotice\BiosNotice.exe ()
O4 - HKLM..\Run: [IndexSearch] C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe (Nuance Communications, Inc.)
O4 - HKLM..\Run: [ISUSPM] C:\ProgramData\FLEXnet\Connect\11\isuspm.exe (Flexera Software, Inc.)
O4 - HKLM..\Run: [PaperPort PTD] C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe (Nuance Communications, Inc.)
O4 - HKLM..\Run: [PDF7 Registry Controller] C:\Program Files (x86)\Nuance\PDFCreate\RegistryController.exe (Nuance Communications, Inc.)
O4 - HKLM..\Run: [PDFCreHook] C:\Program Files (x86)\Nuance\PDFCreate\PdfCreate7Hook.exe (Nuance Communications, Inc.)
O4 - HKLM..\Run: [PDFProHook] C:\Program Files (x86)\Nuance\PDF Viewer Plus\PdfPro7Hook.exe (Nuance Communications, Inc.)
O4 - HKLM..\Run: [PPort14reminder] C:\Program Files (x86)\Nuance\PaperPort\Ereg\Ereg.exe (Nuance Communications, Inc.)
O4 - HKCU..\Run: [RoboForm] C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe (Siber Systems)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O9 - Extra Button: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComFillForms.html ()
O9 - Extra 'Tools' menuitem : Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComFillForms.html ()
O9 - Extra Button: Save - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComSavePass.html ()
O9 - Extra 'Tools' menuitem : Save Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComSavePass.html ()
O9 - Extra Button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html ()
O9 - Extra 'Tools' menuitem : RoboForm Toolbar - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html ()
O13
64bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000}
https://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{07B10CF2-F241-4F9F-849C-EB1569533E72}: DhcpNameServer = 192.168.1.1
O18:
64bit: - Protocol\Handler\grooveLocalGWS - No CLSID value found
O18:
64bit: - Protocol\Handler\msdaipp - No CLSID value found
O18:
64bit: - Protocol\Handler\msdaipp\0x00000001 - No CLSID value found
O18:
64bit: - Protocol\Handler\msdaipp\oledb - No CLSID value found
O18:
64bit: - Protocol\Handler\ms-help - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O20:
64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:
64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O21:
64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:
64bit: - HKLM\..comfile [open] -- "%1" %*
O35:
64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:
64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:
64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
========== Files/Folders - Created Within 30 Days ==========
[2015/05/25 12:28:13 | 000,136,408 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\MBAMSwissArmy.sys
[2015/05/25 12:27:34 | 000,107,736 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbamchameleon.sys
[2015/05/25 12:27:34 | 000,063,704 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mwac.sys
[2015/05/25 12:27:34 | 000,025,816 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
[2015/05/25 12:27:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes Anti-Malware
[2015/05/25 12:27:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2015/05/25 12:26:52 | 000,000,000 | ---D | C] -- C:\Users\Frank\AppData\Local\Programs
[2015/05/25 12:21:17 | 000,000,000 | ---D | C] -- C:\RegBackup
[2015/05/25 12:06:01 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2015/05/25 11:45:29 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\Macromed
[2015/05/25 11:45:28 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\Macromed
[2015/05/25 09:45:14 | 000,000,000 | ---D | C] -- C:\Users\Frank\AppData\Local\Diagnostics
[2015/05/24 02:02:29 | 000,000,000 | ---D | C] -- C:\Users\Frank\Documents\C2 disclosures
[2015/05/24 02:01:28 | 000,000,000 | ---D | C] -- C:\Users\Frank\Documents\Appraisals
[2015/05/24 02:01:28 | 000,000,000 | ---D | C] -- C:\Users\Frank\Documents\amort calc
[2015/05/24 02:01:17 | 003,881,888 | ---- | C] (Philipp Winterberg) -- C:\Users\Frank\Documents\InstallRarZilla.exe
[2015/05/24 02:01:02 | 000,000,000 | ---D | C] -- C:\Users\Frank\Documents\Web Pages
[2015/05/24 02:00:47 | 000,000,000 | R--D | C] -- C:\Users\Frank\Documents\Scanned Documents
[2015/05/24 02:00:47 | 000,000,000 | ---D | C] -- C:\Users\Frank\Documents\Taxes
[2015/05/24 02:00:46 | 000,000,000 | ---D | C] -- C:\Users\Frank\Documents\Samples
[2015/05/24 02:00:46 | 000,000,000 | ---D | C] -- C:\Users\Frank\Documents\Samples (PaperPort 14)
[2015/05/24 02:00:19 | 000,000,000 | ---D | C] -- C:\Users\Frank\Documents\Receipts
[2015/05/24 02:00:16 | 000,000,000 | ---D | C] -- C:\Users\Frank\Documents\Rebates
[2015/05/24 02:00:16 | 000,000,000 | ---D | C] -- C:\Users\Frank\Documents\Real Estate
[2015/05/24 02:00:14 | 000,000,000 | ---D | C] -- C:\Users\Frank\Documents\Reading Library
[2015/05/24 02:00:14 | 000,000,000 | ---D | C] -- C:\Users\Frank\Documents\Presentations
[2015/05/24 02:00:14 | 000,000,000 | ---D | C] -- C:\Users\Frank\Documents\Photographs
[2015/05/24 02:00:14 | 000,000,000 | ---D | C] -- C:\Users\Frank\Documents\PDF Favorites
[2015/05/24 01:57:59 | 000,000,000 | R--D | C] -- C:\Users\Frank\Documents\Notes
[2015/05/24 01:57:59 | 000,000,000 | ---D | C] -- C:\Users\Frank\Documents\Old files
[2015/05/24 01:57:58 | 000,000,000 | ---D | C] -- C:\Users\Frank\Documents\My RoboForm Data
[2015/05/24 01:57:58 | 000,000,000 | ---D | C] -- C:\Users\Frank\Documents\My Data Sources
[2015/05/24 01:57:01 | 000,000,000 | ---D | C] -- C:\Users\Frank\Documents\Mortgage Stuff 120807
[2015/05/24 01:46:07 | 000,000,000 | ---D | C] -- C:\Users\Frank\Documents\Mortage Pending
[2015/05/24 01:46:05 | 000,000,000 | ---D | C] -- C:\Users\Frank\Documents\Modem_Motorola_6.10.05_Xpx86
[2015/05/24 01:46:05 | 000,000,000 | ---D | C] -- C:\Users\Frank\Documents\Miscellaneous Business Cards
[2015/05/24 01:46:03 | 000,000,000 | ---D | C] -- C:\Users\Frank\Documents\House Stuff 2011
[2015/05/24 01:45:30 | 000,000,000 | ---D | C] -- C:\Users\Frank\Documents\House stuff
[2015/05/24 01:44:56 | 000,000,000 | ---D | C] -- C:\Users\Frank\Documents\House Papers
[2015/05/24 01:44:55 | 000,000,000 | ---D | C] -- C:\Users\Frank\Documents\Health Insurance
[2015/05/24 01:44:33 | 000,000,000 | ---D | C] -- C:\Users\Frank\Documents\Health Clients
[2015/05/24 01:44:33 | 000,000,000 | ---D | C] -- C:\Users\Frank\Documents\Faxes
[2015/05/24 01:44:33 | 000,000,000 | ---D | C] -- C:\Users\Frank\Documents\Fax
[2015/05/24 01:44:31 | 000,000,000 | ---D | C] -- C:\Users\Frank\Documents\DVDVideoSoft
[2015/05/24 01:44:27 | 000,000,000 | ---D | C] -- C:\Users\Frank\Documents\Downloads
[2015/05/24 01:44:27 | 000,000,000 | ---D | C] -- C:\Users\Frank\Documents\cache
[2015/05/24 01:44:27 | 000,000,000 | ---D | C] -- C:\Users\Frank\Documents\C2 Financial
[2015/05/24 00:54:08 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ddf0a677-4448-4dbc-9e46-351f2751f2b9
[2015/05/23 00:33:49 | 000,000,000 | ---D | C] -- C:\WINPOINT
[2015/05/22 21:48:30 | 000,000,000 | ---D | C] -- C:\Users\Frank\AppData\Roaming\Macromedia
[2015/05/20 11:14:49 | 000,000,000 | ---D | C] -- C:\Windows\pss
[2015/05/19 17:42:45 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MMTaskbar
[2015/05/19 09:59:15 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\Wat
[2015/05/19 09:59:15 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\Wat
[2015/05/19 09:47:59 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\MRT
[2015/05/19 09:47:05 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MSXML 4.0
[2015/05/19 09:45:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Mouse and Keyboard Center
[2015/05/19 09:45:29 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Mouse and Keyboard Center
[2015/05/16 21:30:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Google
[2015/05/16 21:15:46 | 000,000,000 | ---D | C] -- C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps
[2015/05/16 21:11:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
[2015/05/16 21:10:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Google
[2015/05/16 21:10:47 | 000,000,000 | ---D | C] -- C:\Users\Frank\AppData\Local\Google
[2015/05/16 21:10:29 | 000,000,000 | ---D | C] -- C:\Users\Frank\AppData\Local\Deployment
[2015/05/16 14:08:41 | 000,000,000 | ---D | C] -- C:\Users\Frank\AppData\Local\Samsung
[2015/05/16 14:08:39 | 000,474,624 | ---- | C] (Samsung Software Center) -- C:\Windows\prinst.exe
[2015/05/16 14:08:36 | 000,420,032 | ---- | C] (Samsung Electronics Co., Ltd.) -- C:\Windows\SysNative\NetFaxPort64.dll
[2015/05/16 14:08:35 | 000,465,920 | ---- | C] (Samsung Software Center) -- C:\Windows\InstallSupport.exe
[2015/05/16 14:08:22 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Scan Process Machine
[2015/05/16 14:08:03 | 000,000,000 | R--D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Printers
[2015/05/16 14:08:03 | 000,000,000 | ---D | C] -- C:\Users\Frank\AppData\Roaming\Samsung
[2015/05/16 14:08:03 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Common Desktop Agent
[2015/05/16 14:08:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Common Desktop Agent
[2015/05/16 14:07:38 | 000,000,000 | ---D | C] -- C:\ProgramData\Samsung
[2015/05/16 14:07:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SamsungPrinterLiveUpdateInstaller
[2015/05/16 14:07:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SamsungPrinterLiveUpdate
[2015/05/16 14:07:18 | 000,686,384 | ---- | C] (Samsung Electronics) -- C:\Windows\SysNative\eed_sl.exe
[2015/05/16 14:07:16 | 000,158,040 | ---- | C] (SS) -- C:\Windows\SysNative\ssa7mci.exe
[2015/05/16 14:07:16 | 000,089,600 | ---- | C] (SS) -- C:\Windows\SysNative\ssa7mci.dll
[2015/05/16 14:07:02 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Samsung
[2015/05/16 12:36:32 | 000,000,000 | ---D | C] -- C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Insurance Calculator
[2015/05/16 10:10:51 | 000,000,000 | ---D | C] -- C:\WINPOINT_BAK0
[2015/05/16 09:27:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Insurance Calculator
[2015/05/16 09:27:35 | 000,000,000 | ---D | C] -- C:\DSI
[2015/05/16 08:51:01 | 000,000,000 | R--D | C] -- C:\Users\Frank\Desktop\Worth Keping
[2015/05/16 08:49:28 | 000,340,768 | ---- | C] (Sheridan Software Systems, Inc.) -- C:\Windows\SysWow64\SSA3D30.OCX
[2015/05/16 08:49:28 | 000,249,856 | ---- | C] (Inner Media, Inc.) -- C:\Windows\SysWow64\dzactx.dll
[2015/05/16 08:49:28 | 000,229,376 | ---- | C] (Inner Media, Inc.) -- C:\Windows\SysWow64\duzactx.dll
[2015/05/16 08:49:24 | 000,000,000 | ---D | C] -- C:\Windows\dsinstmp
[2015/05/16 02:25:08 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Adobe
[2015/05/16 02:25:08 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Adobe
[2015/05/16 02:24:56 | 000,000,000 | ---D | C] -- C:\ProgramData\Adobe
[2015/05/16 02:24:30 | 000,000,000 | ---D | C] -- C:\Users\Frank\AppData\Local\Adobe
[2015/05/16 02:07:37 | 000,000,000 | ---D | C] -- C:\ProgramData\RoboForm
[2015/05/16 02:07:37 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AI RoboForm
[2015/05/16 01:37:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Siber Systems
[2015/05/16 00:57:49 | 000,000,000 | ---D | C] -- C:\Users\Frank\AppData\Roaming\AVAST Software
[2015/05/16 00:56:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
[2015/05/16 00:56:39 | 000,137,288 | ---- | C] (Avast Software s.r.o.) -- C:\Windows\SysNative\drivers\aswStm.sys
[2015/05/16 00:56:38 | 000,442,264 | ---- | C] (Avast Software s.r.o.) -- C:\Windows\SysNative\drivers\aswSP.sys
[2015/05/16 00:56:36 | 000,089,944 | ---- | C] (Avast Software s.r.o.) -- C:\Windows\SysNative\drivers\aswMonFlt.sys
[2015/05/16 00:56:35 | 000,093,528 | ---- | C] (Avast Software s.r.o.) -- C:\Windows\SysNative\drivers\aswRdr2.sys
[2015/05/16 00:56:34 | 001,047,320 | ---- | C] (Avast Software s.r.o.) -- C:\Windows\SysNative\drivers\aswSnx.sys
[2015/05/16 00:56:33 | 000,364,472 | ---- | C] (Avast Software s.r.o.) -- C:\Windows\SysNative\aswBoot.exe
[2015/05/16 00:56:30 | 000,043,112 | ---- | C] (Avast Software s.r.o.) -- C:\Windows\avastSS.scr
[2015/05/16 00:55:29 | 000,000,000 | ---D | C] -- C:\Program Files\AVAST Software
[2015/05/15 18:04:23 | 000,000,000 | ---D | C] -- C:\Users\Frank\AppData\Local\OfficeDrop
[2015/05/15 18:04:19 | 000,000,000 | ---D | C] -- C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Nuance PaperPort 14
[2015/05/15 18:04:03 | 000,000,000 | ---D | C] -- C:\Program Files\Nuance
[2015/05/15 18:02:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Zeon
[2015/05/15 18:00:19 | 000,000,000 | ---D | C] -- C:\ProgramData\TEMP
[2015/05/15 17:59:58 | 000,000,000 | ---D | C] -- C:\Users\Frank\AppData\Roaming\Zeon
[2015/05/15 17:59:58 | 000,000,000 | ---D | C] -- C:\Users\Frank\AppData\Roaming\Nuance
[2015/05/15 17:59:52 | 000,000,000 | ---D | C] -- C:\ProgramData\ScanSoft
[2015/05/15 17:59:52 | 000,000,000 | ---D | C] -- C:\Users\Frank\AppData\Roaming\.oit
[2015/05/15 17:59:48 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nuance PaperPort 14
[2015/05/15 17:59:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\ScanSoft Shared
[2015/05/15 17:59:41 | 000,000,000 | ---D | C] -- C:\Windows\PIXTRAN
[2015/05/15 17:59:41 | 000,000,000 | ---D | C] -- C:\ProgramData\Macrovision
[2015/05/15 17:59:41 | 000,000,000 | ---D | C] -- C:\ProgramData\FLEXnet
[2015/05/15 17:59:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Nuance
[2015/05/15 17:59:40 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Nuance
[2015/05/15 17:17:31 | 000,000,000 | ---D | C] -- C:\ProgramData\AVAST Software
[2015/05/15 16:22:37 | 000,000,000 | ---D | C] -- C:\Users\Frank\AppData\Roaming\Calyx Software
[2015/05/15 16:22:16 | 001,064,960 | ---- | C] (Amyuni Technologies
http://www.amyuni.com) -- C:\Windows\SysWow64\cdintf300.dll
[2015/05/15 16:22:16 | 001,064,960 | ---- | C] (Amyuni Technologies
http://www.amyuni.com) -- C:\Windows\SysWow64\acXMLParser.dll
[2015/05/15 16:21:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Calyx Software
[2015/05/15 16:21:47 | 000,000,000 | ---D | C] -- C:\PNTTEMPL
[2015/05/15 16:21:47 | 000,000,000 | ---D | C] -- C:\PNTDATA
[2015/05/15 13:21:26 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution
[2015/05/15 13:19:09 | 000,000,000 | ---D | C] -- C:\Windows\CSC
[2015/05/15 13:18:42 | 000,000,000 | -HSD | C] -- C:\System Volume Information
[2015/05/15 13:17:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
[2015/05/15 13:15:51 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Works
[2015/05/15 13:15:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Visual Studio
[2015/05/15 13:15:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\DESIGNER
[2015/05/15 13:15:34 | 000,000,000 | ---D | C] -- C:\Windows\PCHEALTH
[2015/05/15 13:06:33 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Office
[2015/05/15 13:06:30 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Visual Studio 8
[2015/05/15 13:06:01 | 000,000,000 | ---D | C] -- C:\Users\Frank\AppData\Local\Microsoft Help
[2015/05/15 13:06:00 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft Help
[2015/05/15 12:52:32 | 000,000,000 | ---D | C] -- C:\Users\Frank\Documents\My PaperPort Documents
[2015/05/15 12:19:22 | 000,000,000 | ---D | C] -- C:\Users\Frank\AppData\Local\Apps
[2015/05/15 10:54:04 | 000,000,000 | ---D | C] -- C:\Users\Frank\AppData\Roaming\Mozilla
[2015/05/15 10:54:04 | 000,000,000 | ---D | C] -- C:\Users\Frank\AppData\Local\Mozilla
[2015/05/15 10:53:57 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Maintenance Service
[2015/05/15 10:53:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Mozilla
[2015/05/15 10:53:53 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[2015/05/15 10:53:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Office
[2015/05/15 10:49:53 | 000,000,000 | RH-D | C] -- C:\MSOCache
[2015/05/15 10:46:41 | 000,000,000 | ---D | C] -- C:\Users\Frank\AppData\Local\NVIDIA Corporation
[2015/05/15 10:45:38 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\RTCOM
[2015/05/15 10:45:38 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek
[2015/05/15 10:45:36 | 000,000,000 | ---D | C] -- C:\Users\Frank\AppData\Local\NVIDIA
[2015/05/15 10:45:26 | 002,601,816 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\WavesGUILib.dll
[2015/05/15 10:45:26 | 002,197,264 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioEQ.dll
[2015/05/15 10:45:26 | 000,518,896 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSTSX64.dll
[2015/05/15 10:45:26 | 000,372,936 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEP64A.dll
[2015/05/15 10:45:26 | 000,338,336 | ---- | C] (Fortemedia Corporation) -- C:\Windows\SysNative\FMAPO64.dll
[2015/05/15 10:45:26 | 000,318,808 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPO20.dll
[2015/05/15 10:45:26 | 000,307,920 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DHT64.dll
[2015/05/15 10:45:26 | 000,307,920 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DAA64.dll
[2015/05/15 10:45:26 | 000,211,184 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSTSH64.dll
[2015/05/15 10:45:26 | 000,201,928 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEED64A.dll
[2015/05/15 10:45:26 | 000,198,896 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSHP64.dll
[2015/05/15 10:45:26 | 000,155,888 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSWOW64.dll
[2015/05/15 10:45:26 | 000,099,016 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEL64A.dll
[2015/05/15 10:45:26 | 000,076,488 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEG64A.dll
[2015/05/15 10:45:24 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\Temp
[2015/05/15 10:42:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
[2015/05/15 10:42:33 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA
[2015/05/15 10:42:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\NVIDIA Corporation
[2015/05/15 10:41:58 | 000,072,904 | ---- | C] (Khronos Group) -- C:\Windows\SysNative\OpenCL.dll
[2015/05/15 10:41:58 | 000,059,592 | ---- | C] (Khronos Group) -- C:\Windows\SysWow64\OpenCL.dll
[2015/05/15 10:41:54 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA Corporation
[2015/05/15 10:41:39 | 000,406,632 | ---- | C] (Realtek ) -- C:\Windows\SysNative\drivers\Rt64win7.sys
[2015/05/15 10:41:36 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Realtek
[2015/05/15 10:40:31 | 000,000,000 | ---D | C] -- C:\Program Files\NVIDIA Corporation
[2015/05/15 10:40:15 | 000,000,000 | ---D | C] -- C:\NVIDIA
[2015/05/15 10:39:06 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Asmedia Technology
[2015/05/15 10:36:57 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ASM104xUSB3
[2015/05/15 10:36:15 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\DRVSTORE
[2015/05/15 10:36:15 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AMD
[2015/05/15 10:35:50 | 000,000,000 | ---D | C] -- C:\Program Files\ATI
[2015/05/15 10:35:45 | 000,000,000 | -HSD | C] -- C:\Users\Frank\AppData\Local\EmieUserList
[2015/05/15 10:35:45 | 000,000,000 | -HSD | C] -- C:\Users\Frank\AppData\Local\EmieSiteList
[2015/05/15 10:35:45 | 000,000,000 | -HSD | C] -- C:\Users\Frank\AppData\Local\EmieBrowserModeList
[2015/05/15 10:35:10 | 000,000,000 | ---D | C] -- C:\Program Files\ATI Technologies
[2015/05/15 10:33:17 | 000,015,408 | ---- | C] (BIOSTAR Group) -- C:\Windows\SysNative\drivers\BS_I2c64.sys
[2015/05/15 10:33:16 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\InstallShield Installation Information
[2015/05/15 10:33:16 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\BIOSTAR
[2015/05/15 10:33:14 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\InstallShield
[2015/05/15 10:32:54 | 000,014,136 | R--- | C] (BIOSTAR Group) -- C:\Windows\SysWow64\drivers\BIOS64.sys
[2015/05/15 10:26:13 | 000,000,000 | ---D | C] -- C:\Users\Frank\AppData\Local\http___www.julien-manici
[2015/05/15 10:25:06 | 000,000,000 | ---D | C] -- C:\Users\Frank\AppData\Roaming\Adobe
[2015/05/15 10:25:05 | 000,000,000 | R--D | C] -- C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
[2015/05/15 10:25:05 | 000,000,000 | R--D | C] -- C:\Users\Frank\Searches
[2015/05/15 10:25:05 | 000,000,000 | R--D | C] -- C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
[2015/05/15 10:25:05 | 000,000,000 | -H-D | C] -- C:\Users\Frank\Application Data\Microsoft\Internet Explorer\Quick Launch\User Pinned
[2015/05/15 10:24:57 | 000,000,000 | ---D | C] -- C:\Users\Frank\AppData\Roaming\Identities
[2015/05/15 10:24:56 | 000,000,000 | R--D | C] -- C:\Users\Frank\Contacts
[2015/05/15 10:24:54 | 000,000,000 | ---D | C] -- C:\Users\Frank\AppData\Local\VirtualStore
[2015/05/15 10:24:50 | 000,000,000 | -HSD | C] -- C:\Users\Frank\AppData\Local\Temporary Internet Files
[2015/05/15 10:24:50 | 000,000,000 | -HSD | C] -- C:\Users\Frank\Templates
[2015/05/15 10:24:50 | 000,000,000 | -HSD | C] -- C:\Users\Frank\Start Menu
[2015/05/15 10:24:50 | 000,000,000 | -HSD | C] -- C:\Users\Frank\SendTo
[2015/05/15 10:24:50 | 000,000,000 | -HSD | C] -- C:\Users\Frank\Recent
[2015/05/15 10:24:50 | 000,000,000 | -HSD | C] -- C:\Users\Frank\PrintHood
[2015/05/15 10:24:50 | 000,000,000 | -HSD | C] -- C:\Users\Frank\NetHood
[2015/05/15 10:24:50 | 000,000,000 | -HSD | C] -- C:\Users\Frank\Documents\My Videos
[2015/05/15 10:24:50 | 000,000,000 | -HSD | C] -- C:\Users\Frank\Documents\My Pictures
[2015/05/15 10:24:50 | 000,000,000 | -HSD | C] -- C:\Users\Frank\Documents\My Music
[2015/05/15 10:24:50 | 000,000,000 | -HSD | C] -- C:\Users\Frank\My Documents
[2015/05/15 10:24:50 | 000,000,000 | -HSD | C] -- C:\Users\Frank\Local Settings
[2015/05/15 10:24:50 | 000,000,000 | -HSD | C] -- C:\Users\Frank\AppData\Local\History
[2015/05/15 10:24:50 | 000,000,000 | -HSD | C] -- C:\Users\Frank\Cookies
[2015/05/15 10:24:50 | 000,000,000 | -HSD | C] -- C:\Users\Frank\Application Data
[2015/05/15 10:24:50 | 000,000,000 | -HSD | C] -- C:\Users\Frank\AppData\Local\Application Data
[2015/05/15 10:24:49 | 000,000,000 | --SD | C] -- C:\Users\Frank\AppData\Roaming\Microsoft
[2015/05/15 10:24:49 | 000,000,000 | R--D | C] -- C:\Users\Frank\Videos
[2015/05/15 10:24:49 | 000,000,000 | R--D | C] -- C:\Users\Frank\Saved Games
[2015/05/15 10:24:49 | 000,000,000 | R--D | C] -- C:\Users\Frank\Pictures
[2015/05/15 10:24:49 | 000,000,000 | R--D | C] -- C:\Users\Frank\Music
[2015/05/15 10:24:49 | 000,000,000 | R--D | C] -- C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
[2015/05/15 10:24:49 | 000,000,000 | R--D | C] -- C:\Users\Frank\Links
[2015/05/15 10:24:49 | 000,000,000 | R--D | C] -- C:\Users\Frank\Favorites
[2015/05/15 10:24:49 | 000,000,000 | R--D | C] -- C:\Users\Frank\Downloads
[2015/05/15 10:24:49 | 000,000,000 | R--D | C] -- C:\Users\Frank\Documents
[2015/05/15 10:24:49 | 000,000,000 | R--D | C] -- C:\Users\Frank\Desktop
[2015/05/15 10:24:49 | 000,000,000 | R--D | C] -- C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
[2015/05/15 10:24:49 | 000,000,000 | -H-D | C] -- C:\Users\Frank\AppData
[2015/05/15 10:24:49 | 000,000,000 | ---D | C] -- C:\Users\Frank\AppData\Local\Temp
[2015/05/15 10:24:49 | 000,000,000 | ---D | C] -- C:\Users\Frank\AppData\Local\Microsoft
[2015/05/15 10:24:49 | 000,000,000 | ---D | C] -- C:\Users\Frank\AppData\Roaming\Media Center Programs
[2015/05/15 10:23:59 | 000,000,000 | -HSD | C] -- C:\Recovery
========== Files - Modified Within 30 Days ==========
[2015/05/25 12:58:16 | 000,781,298 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2015/05/25 12:58:16 | 000,661,656 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2015/05/25 12:58:16 | 000,121,524 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2015/05/25 12:52:21 | 000,000,894 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2015/05/25 12:52:18 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2015/05/25 12:52:16 | 3220,676,608 | -HS- | M] () -- C:\hiberfil.sys
[2015/05/25 12:28:45 | 000,021,088 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2015/05/25 12:28:45 | 000,021,088 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2015/05/25 12:28:16 | 000,136,408 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\MBAMSwissArmy.sys
[2015/05/25 12:21:23 | 000,000,207 | ---- | M] () -- C:\Windows\tweaking.com-regbackup-FRANK-PC-Windows-7-Professional-(64-bit).dat
[2015/05/25 12:21:00 | 000,000,898 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2015/05/25 11:43:40 | 000,000,000 | ---- | M] () -- C:\Users\Frank\Documents\Nuance Image Printer Writer Port
[2015/05/23 23:50:39 | 000,003,584 | ---- | M] () -- C:\Users\Frank\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2015/05/21 21:25:52 | 000,040,372 | ---- | M] () -- C:\Users\Frank\Documents\Capture test.JPG
[2015/05/19 17:42:46 | 000,001,032 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\MultiMon Taskbar.lnk
[2015/05/19 10:05:51 | 000,413,728 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2015/05/19 09:52:34 | 000,773,536 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2015/05/19 09:45:48 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_point64_01011.Wdf
[2015/05/19 09:45:40 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_NuidFltr_01011.Wdf
[2015/05/19 09:44:21 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_dc3d_01011.Wdf
[2015/05/19 09:41:21 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_dc3d_01009.Wdf
[2015/05/18 18:30:29 | 000,000,347 | ---- | M] () -- C:\Users\Frank\Documents\My Documents.lnk
[2015/05/18 15:47:50 | 000,094,005 | ---- | M] () -- C:\Users\Frank\Documents\motherboard biostar specs.pdf
[2015/05/16 21:27:03 | 000,002,279 | ---- | M] () -- C:\Users\Frank\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2015/05/16 12:36:32 | 000,000,033 | ---- | M] () -- C:\Windows\dsi.ini
[2015/05/16 08:36:28 | 000,400,591 | ---- | M] () -- C:\Users\Frank\Documents\New Leaf submission checklist.pdf
[2015/05/16 00:56:33 | 000,442,264 | ---- | M] (Avast Software s.r.o.) -- C:\Windows\SysNative\drivers\aswSP.sys
[2015/05/16 00:56:33 | 000,364,472 | ---- | M] (Avast Software s.r.o.) -- C:\Windows\SysNative\aswBoot.exe
[2015/05/16 00:56:33 | 000,272,248 | ---- | M] () -- C:\Windows\SysNative\drivers\aswVmm.sys
[2015/05/16 00:56:33 | 000,137,288 | ---- | M] (Avast Software s.r.o.) -- C:\Windows\SysNative\drivers\aswStm.sys
[2015/05/16 00:56:33 | 000,093,528 | ---- | M] (Avast Software s.r.o.) -- C:\Windows\SysNative\drivers\aswRdr2.sys
[2015/05/16 00:56:33 | 000,089,944 | ---- | M] (Avast Software s.r.o.) -- C:\Windows\SysNative\drivers\aswMonFlt.sys
[2015/05/16 00:56:33 | 000,065,736 | ---- | M] () -- C:\Windows\SysNative\drivers\aswRvrt.sys
[2015/05/16 00:56:33 | 000,029,168 | ---- | M] () -- C:\Windows\SysNative\drivers\aswHwid.sys
[2015/05/16 00:56:30 | 000,043,112 | ---- | M] (Avast Software s.r.o.) -- C:\Windows\avastSS.scr
[2015/05/16 00:56:29 | 001,047,320 | ---- | M] (Avast Software s.r.o.) -- C:\Windows\SysNative\drivers\aswSnx.sys
[2015/05/15 21:47:03 | 003,462,799 | -H-- | M] () -- C:\Users\Frank\Documents\PP11Thumbs.ptn
[2015/05/15 21:47:03 | 000,011,640 | -H-- | M] () -- C:\Users\Frank\Documents\.ppinfocache
[2015/05/15 21:47:03 | 000,009,801 | -H-- | M] () -- C:\Users\Frank\Documents\maxdesk.ini2
[2015/05/15 21:47:03 | 000,003,248 | -H-- | M] () -- C:\Users\Frank\Documents\PP11Thumbs.ptn2
[2015/05/15 17:59:48 | 000,002,072 | ---- | M] () -- C:\Users\Public\Desktop\PaperPort.lnk
[2015/05/15 16:23:25 | 000,000,720 | ---- | M] () -- C:\Windows\winpoint.ini
[2015/05/15 16:22:38 | 000,000,058 | ---- | M] () -- C:\Windows\mchguid.ini
[2015/05/15 16:22:38 | 000,000,058 | ---- | M] () -- C:\ProgramData\mchguid.ini
[2015/05/15 16:21:55 | 000,001,590 | ---- | M] () -- C:\Users\Public\Desktop\Point.lnk
[2015/05/15 15:23:29 | 000,001,133 | ---- | M] () -- C:\Users\Frank\Application Data\Microsoft\Internet Explorer\Quick Launch\Microsoft Office Outlook.lnk
[2015/05/15 13:21:36 | 000,041,450 | ---- | M] () -- C:\Windows\SysWow64\license.rtf
[2015/05/15 13:21:36 | 000,041,450 | ---- | M] () -- C:\Windows\SysNative\license.rtf
[2015/05/15 13:20:02 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2015/05/15 13:17:10 | 000,002,693 | ---- | M] () -- C:\Users\Frank\Desktop\Microsoft Office Word 2007.lnk
[2015/05/15 10:53:58 | 000,000,376 | ---- | M] () -- C:\Windows\ODBC.INI
[2015/05/15 10:44:38 | 000,000,169 | ---- | M] () -- C:\Windows\setup.iss
[2015/05/15 10:35:43 | 000,001,407 | ---- | M] () -- C:\Users\Frank\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2015/05/12 11:07:31 | 003,856,197 | ---- | M] () -- C:\Users\Frank\Documents\telephone manual att 2 line.pdf
[2015/05/11 16:50:25 | 000,332,900 | ---- | M] () -- C:\Users\Frank\Documents\US Bank basic guidelines.pdf