Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 10-09-2014
Ran by costco at 2014-09-11 19:46:50 Run:1
Running from C:\Users\costco\Desktop\New folder
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
HKLM-x32\...\Run: [ApnTBMon] => C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [1942424 2014-08-22] (APN)
HKLM-x32\...\Run: [VNT] => C:\Program Files (x86)\VNT\vntldr.exe [196504 2014-08-22] (APN LLC.)
HKU\S-1-5-21-1108024918-407089468-1039188272-1000\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-1108024918-407089468-1039188272-1000\...\MountPoints2: I - I:\MotoCastSetup.exe -a
HKU\S-1-5-21-1108024918-407089468-1039188272-1000\...\MountPoints2: J - J:\MotoCastSetup.exe -a
HKU\S-1-5-21-1108024918-407089468-1039188272-1000\...\MountPoints2: {18323cc9-0904-11e2-8f28-00269ec4ce0d} - I:\MotoCastSetup.exe -a
HKU\S-1-5-21-1108024918-407089468-1039188272-1000\...\MountPoints2: {4e2612a0-0014-11e2-9a3a-00269ec4ce0d} - G:\MotoCastSetup.exe -a
HKU\S-1-5-21-1108024918-407089468-1039188272-1000\...\MountPoints2: {6d1b54c7-2a38-11e4-8e9d-00269ec4ce0d} - I:\VZW_Software_upgrade_assistant.exe
HKU\S-1-5-21-1108024918-407089468-1039188272-1000\...\MountPoints2: {b798c1bf-8756-11e1-a4d2-761a046d4720} - K:\MotoCastSetup.exe -a
HKU\S-1-5-21-1108024918-407089468-1039188272-1000\...\MountPoints2: {c11777aa-b1a9-11e0-9e79-00269ec4ce0d} - K:\setup.exe -a
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM - {110B811C-F247-4508-8464-FCB9D304D55B} URL = hxxp://www.ask.com/web?q={searchterms}&l=dis&o=ushpl
SearchScopes: HKLM-x32 - DefaultScope {EEE6C360-6118-11DC-9C72-001320C79847} URL =
SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 - {110B811C-F247-4508-8464-FCB9D304D55B} URL = hxxp://www.ask.com/web?q={searchterms}&l=dis&o=ushpl
SearchScopes: HKCU - DefaultScope {EEE6C360-6118-11DC-9C72-001320C79847} URL =
SearchScopes: HKCU - {110B811C-F247-4508-8464-FCB9D304D55B} URL =
SearchScopes: HKCU - {4E5B6106-488C-4F3B-9C40-0BAC8A90D739} URL = hxxp://websearch.ask.com/redirect?client=ie&tb=ORJ&o=&src=kw&q={searchTerms}&locale=&apn_ptnrs=&apn_dtid=OSJ000&apn_uid=0231AA4A-2D58-40A1-B26A-ADCF0DB4C0CC&apn_sauid=8BC68A7C-CF1A-43B3-A12E-3CCABF234032
SearchScopes: HKCU - {8AD3E2D0-8BE3-4F18-9082-6D06769385BA} URL =
BHO: Ask Toolbar for Epson -> {45504E32-5637-006A-76A7-7A786E7484D7} -> C:\Program Files (x86)\AskPartnerNetwork\Toolbar\EPN2V7\Passport_x64.dll (APN LLC.)
BHO-x32: No Name -> {02478D38-C3F9-4efb-9B51-7695ECA05670} -> No File
BHO-x32: Ask Toolbar for Epson -> {45504E32-5637-006A-76A7-7A786E7484D7} -> C:\Program Files (x86)\AskPartnerNetwork\Toolbar\EPN2V7\Passport.dll (APN LLC.)
Toolbar: HKCU - No Name - {604BC32A-9680-40D1-9AC6-E06B23A1BA4C} - No File
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll No File
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin HKCU: @facebook.com/FBPlugin,version=1.0.3 -> C:\Users\costco\AppData\Roaming\Facebook\npfbplugin_1_0_3.dll No File
R2 APNMCP; C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe [166296 2014-08-22] (APN LLC.)
C:\Program Files (x86)\AskPartnerNetwork
C:\Program Files (x86)\VNT
Task: {45C21B64-00C0-4C2B-BEC9-90FC17E6C456} - \DealPly No Task File <==== ATTENTION
AlternateDataStreams: C:\Users\costco\Desktop\FRST64.exe:BDU
*****************
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ApnTBMon => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\VNT => value deleted successfully.
HKU\S-1-5-21-1108024918-407089468-1039188272-1000\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeBridge => value deleted successfully.
"HKU\S-1-5-21-1108024918-407089468-1039188272-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\S-1-5-21-1108024918-407089468-1039188272-1000" => Key not found.
"HKU\S-1-5-21-1108024918-407089468-1039188272-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\S-1-5-21-1108024918-407089468-1039188272-1000" => Key not found.
"HKU\S-1-5-21-1108024918-407089468-1039188272-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{18323cc9-0904-11e2-8f28-00269ec4ce0d}" => Key deleted successfully.
"HKCR\CLSID\{18323cc9-0904-11e2-8f28-00269ec4ce0d}" => Key not found.
"HKU\S-1-5-21-1108024918-407089468-1039188272-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{4e2612a0-0014-11e2-9a3a-00269ec4ce0d}" => Key deleted successfully.
"HKCR\CLSID\{4e2612a0-0014-11e2-9a3a-00269ec4ce0d}" => Key not found.
"HKU\S-1-5-21-1108024918-407089468-1039188272-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{6d1b54c7-2a38-11e4-8e9d-00269ec4ce0d}" => Key deleted successfully.
"HKCR\CLSID\{6d1b54c7-2a38-11e4-8e9d-00269ec4ce0d}" => Key not found.
"HKU\S-1-5-21-1108024918-407089468-1039188272-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{b798c1bf-8756-11e1-a4d2-761a046d4720}" => Key deleted successfully.
"HKCR\CLSID\{b798c1bf-8756-11e1-a4d2-761a046d4720}" => Key not found.
"HKU\S-1-5-21-1108024918-407089468-1039188272-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c11777aa-b1a9-11e0-9e79-00269ec4ce0d}" => Key deleted successfully.
"HKCR\CLSID\{c11777aa-b1a9-11e0-9e79-00269ec4ce0d}" => Key not found.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key deleted successfully.
"HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key not found.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{110B811C-F247-4508-8464-FCB9D304D55B}" => Key deleted successfully.
"HKCR\CLSID\{110B811C-F247-4508-8464-FCB9D304D55B}" => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{110B811C-F247-4508-8464-FCB9D304D55B}" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{110B811C-F247-4508-8464-FCB9D304D55B}" => Key not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
"HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{110B811C-F247-4508-8464-FCB9D304D55B}" => Key deleted successfully.
"HKCR\CLSID\{110B811C-F247-4508-8464-FCB9D304D55B}" => Key not found.
"HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{4E5B6106-488C-4F3B-9C40-0BAC8A90D739}" => Key deleted successfully.
"HKCR\CLSID\{4E5B6106-488C-4F3B-9C40-0BAC8A90D739}" => Key not found.
"HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{8AD3E2D0-8BE3-4F18-9082-6D06769385BA}" => Key deleted successfully.
"HKCR\CLSID\{8AD3E2D0-8BE3-4F18-9082-6D06769385BA}" => Key not found.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{45504E32-5637-006A-76A7-7A786E7484D7}" => Key deleted successfully.
"HKCR\CLSID\{45504E32-5637-006A-76A7-7A786E7484D7}" => Key deleted successfully.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{02478D38-C3F9-4efb-9B51-7695ECA05670}" => Key not found.
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{45504E32-5637-006A-76A7-7A786E7484D7}" => Key deleted successfully.
"HKCR\Wow6432Node\CLSID\{45504E32-5637-006A-76A7-7A786E7484D7}" => Key deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{604BC32A-9680-40D1-9AC6-E06B23A1BA4C} => value deleted successfully.
"HKCR\CLSID\{604BC32A-9680-40D1-9AC6-E06B23A1BA4C}" => Key not found.
"HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE" => Key deleted successfully.
"HKLM\Software\MozillaPlugins\adobe.com/AdobeAAMDetect" => Key deleted successfully.
"HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE" => Key deleted successfully.
"HKCU\Software\MozillaPlugins\@facebook.com/FBPlugin,version=1.0.3" => Key deleted successfully.
C:\Users\costco\AppData\Roaming\Facebook\npfbplugin_1_0_3.dll not found.
APNMCP => Service stopped successfully.
APNMCP => Service deleted successfully.
C:\Program Files (x86)\AskPartnerNetwork => Moved successfully.
C:\Program Files (x86)\VNT => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{45C21B64-00C0-4C2B-BEC9-90FC17E6C456}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{45C21B64-00C0-4C2B-BEC9-90FC17E6C456}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DealPly" => Key deleted successfully.
"C:\Users\costco\Desktop\FRST64.exe" => ":BDU" ADS not found.
==== End of Fixlog ====
AdwCleaner Logfile:
Code:
# AdwCleaner v3.309 - Report created 11/09/2014 at 20:03:44
# Updated 02/09/2014 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : costco - COSTCO-PC
# Running from : C:\Users\costco\Downloads\AdwCleaner.exe
# Option : Clean
***** [ Services ] *****
[#] Service Deleted : APNMCP
***** [ Files / Folders ] *****
Folder Deleted : C:\ProgramData\apn
Folder Deleted : C:\ProgramData\Ask
Folder Deleted : C:\ProgramData\AskPartnerNetwork
Folder Deleted : C:\ProgramData\Babylon
Folder Deleted : C:\Users\costco\AppData\Local\AskPartnerNetwork
Folder Deleted : C:\Users\costco\AppData\Local\VNT
Folder Deleted : C:\Users\costco\AppData\Roaming\Babylon
Folder Deleted : C:\Users\costco\AppData\Roaming\DownLite
Folder Deleted : C:\Users\Guest\AppData\Roaming\iWin
File Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eBay.lnk
***** [ Scheduled Tasks ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\HPSF_Tasks_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\HPSF_Tasks_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASMANCS
Key Deleted : HKLM\SOFTWARE\d68c8bbd3fbf48
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{44CBC005-6243-4502-8A02-3A096A282664}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{761F6A83-F007-49E4-8EAC-CDB6808EF06F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{76C45B18-A29E-43EA-AAF8-AF55C2E1AE17}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{7CD74AFF-3433-4E34-92E2-D98DFDB30754}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{80703783-E415-4EE3-AB60-D36981C5A6F1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{96EF404C-24C7-43D0-9096-4CCC8BB7CCAC}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{97720195-206A-42AE-8E65-260B9BA5589F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{986F7A5A-9676-47E1-8642-F41F8C3FCF82}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{B18788A4-92BD-440E-A4D1-380C36531119}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{D8278076-BC68-4484-9233-6E7F1628B56C}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F297534D-7B06-459D-BC19-2DD8EF69297B}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{80703783-E415-4EE3-AB60-D36981C5A6F1}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9945959C-AAD8-4312-8B57-2DE11927E770}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6978F29A-3493-40B2-8CDC-9C13A02F85A4}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D7949A66-D936-4028-9552-14F7DC50F38D}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6978F29A-3493-40B2-8CDC-9C13A02F85A4}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D7949A66-D936-4028-9552-14F7DC50F38D}
Key Deleted : HKCU\Software\AskPartnerNetwork
Key Deleted : HKCU\Software\Cr_Installer
Key Deleted : HKCU\Software\YahooPartnerToolbar
Key Deleted : HKLM\SOFTWARE\AskPartnerNetwork
Key Deleted : HKLM\SOFTWARE\Babylon
Key Deleted : [x64] HKLM\SOFTWARE\AskPartnerNetwork
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08121C32A9C319F4CB0C11FF059552A4
***** [ Browsers ] *****
-\\ Internet Explorer v11.0.9600.17239
-\\ Mozilla Firefox v
-\\ Google Chrome v37.0.2062.120
[ File : C:\Users\costco\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Deleted [Search Provider] : hxxp://www.foxnews.com/search-results/search?q={searchTerms}&submit=Search
Deleted [Search Provider] : hxxp://movies.netflix.com/WiSearch?raw_query=atlas+shrugged+part+2&ac_category_type=none&ac_rel_posn=-1&ac_abs_posn=-1&v1={searchTerms}&search_submit=
Deleted [Search Provider] : hxxp://www2.delta-search.com/?q={searchTerms}&affID=122171&tt=gc_&babsrc=SP_ss&mntrId=F0BB761A046D4720
Deleted [Search Provider] : hxxp://start.sweetpacks.com/?src=6&q={searchTerms}&st=12&crg=3.5000006.10042&barid={E02F3415-B90E-11E2-8175-761A046D4720}
Deleted [Extension] : dhdepfaagokllfmhfbcfmocaeigmoebo
Deleted [Extension] : fbmimoidopbghbcmdmpkjaffffmcbmbg
Deleted [Extension] : hphibigbodkkohoglgfkddblldpfohjl
Deleted [Extension] : kdcnnmifdmlmjffdgeieikcokcogpbej
Deleted [Extension] : kincjchfokkeneeofpeefomkikfkiedl
Deleted [Extension] : kkkeikdkpjenmoiicggnnodbkebafgpc
Deleted [Extension] : pgmfkblbflahhponhjmkcnpjinenhlnc
*************************
AdwCleaner[R0].txt - [5220 octets] - [11/09/2014 20:01:59]
AdwCleaner[S0].txt - [5095 octets] - [11/09/2014 20:03:44]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [5155 octets] ##########
--- --- ---
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows 7 Home Premium x64
Ran by costco on Thu 09/11/2014 at 20:15:16.62
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-1108024918-407089468-1039188272-1000\Software\sweetim
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\msntask_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\msntask_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\msntask_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Tracing\msntask_RASMANCS
~~~ Files
~~~ Folders
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{00713F4C-D6AB-40F3-B5AF-035F7CC68011}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{029FA6CB-66F8-47A0-A98C-A13B16F28241}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{04304C05-53CC-4997-A3BE-769D52CCD2A6}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{04A5FA4D-423D-45EA-853C-E75206583603}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{065EF68A-9AAA-4B8E-846C-35BCF4C38A4D}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{07E86601-978B-494A-A8E5-A25107B903CD}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{07EAEB3E-EB7A-4F82-90BB-37B42EFF570D}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{09537EE2-8AA4-4838-B0AC-38075B7250A6}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{0BA94C02-2ED4-4A31-9FAE-AC85485C8EEF}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{0D1A4EF8-E23B-4D8B-9607-5612589E3146}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{0EF2A31F-505A-4B26-9EAA-04D147F1F495}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{0F0354F3-EFDB-4A17-819F-4CC9086768CB}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{1044FADB-1F0D-42C1-977F-B9ED9F449EC2}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{11D34CF5-D4CA-421D-862D-E4B5005D5839}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{147D6F53-5625-461D-A559-A83222B69719}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{1758C8ED-CCC6-4863-98F3-85BFA576457F}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{1C7E8419-5241-4375-81E2-BA2B4C245134}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{1DD33A09-3048-4D53-AC0E-C0EB4DC89C58}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{1E8F4755-7D16-4E37-AF1D-04D42EAEFAA2}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{1FBF1227-C952-4B99-AA2B-7C4B280AB294}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{2040CB5D-9B0F-499C-AA16-B0F5F8DCC51D}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{204FF0EE-777A-4DCC-81AB-030F67EB1F08}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{211557C0-EBF7-4FD8-8C57-66E9198F4DE1}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{21B4998D-8B25-41A4-B6BB-D053521CC3B2}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{21F4A8C3-9D72-41AC-9155-4AD68B3F3F58}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{2228991C-EE36-4E89-8877-8F9A0A985D1F}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{223CD21E-8EC9-4FC8-A0B2-C56E707D3FEA}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{23AB4317-30AB-4260-94C1-32575997F617}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{2597A2C9-9ABE-4A1B-B85B-9AA1E9A43DDB}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{26FF275F-CDC8-4A72-B40A-A14D5F052578}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{2769932B-8626-4BCE-902D-838FFC41A6D7}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{2A90A64A-A0EC-4E2F-ACE5-331FEB2796A5}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{2BCCFCAD-7ECA-4A12-A092-37AC60FCAD46}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{2CE804E4-4AFC-4EA7-95C3-DA33657C2471}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{2D008717-3F51-48FD-8880-446C09F0CC23}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{2DB4514A-12BF-4691-B127-9C90B188F0D0}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{2EC58AD0-D31D-4E83-9C3E-C2F3B5AABC35}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{2F131C65-204D-466F-80B5-D867354E0BD3}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{2F7C87A7-FE21-4FD4-B891-9AA28028FB5F}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{2FC39D86-7C6A-4C2D-9678-BE38A7939C81}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{2FF2DA31-6C80-48BE-8CBB-A16BE12D7B4E}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{301C6059-A08F-4599-AED3-A6F384B44942}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{30BEE242-9914-4E23-8ACC-F6BC337DA6AE}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{353E9C5A-60D3-4D48-A6B7-CAFF79A14076}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{35524D72-77DF-47F0-93B7-2AC2C0FE7437}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{367BAABD-F432-4A84-82A5-1753E8FE991F}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{375C6F6F-C78E-4745-8A0A-9D3A5BCFA04F}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{3A2AE2AC-8359-435D-B03A-002CDDC2B042}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{4112F732-6C93-4B74-938D-CD77498E3E57}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{43F007F6-BA09-408D-B03A-1FEBB2779CC1}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{44D4A867-EC0D-4D6E-B914-4701FAA957AF}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{4701E6E5-C2DA-4F5C-BA8E-3A0627A2F36B}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{4792DCC9-6EA1-4155-9A34-2BC43E9234E2}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{480CDD70-F56B-4414-9898-F8AADBF1E00F}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{4A9798A9-BE87-4145-8563-2B80B05043A0}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{4A9F5848-C5DF-48F1-8821-1B3E5040C459}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{4B4A6F9A-521B-4CB3-AF55-92B3F0A357A4}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{4E771B94-087B-4D2F-860C-6FB30BA84D09}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{4F013523-A2B3-47E1-98C4-40391D1D52AB}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{4F0386B2-3E9E-4643-A725-FB90890EB5B3}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{500EB332-D952-45A7-AEB0-319C8DAD9714}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{5235031A-A4B0-4D11-899B-45D998EECE3E}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{52C343EB-D278-42D5-8CED-79BE3C675338}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{57F69E93-6768-4E51-99D7-536CD72795D2}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{587E6F06-305E-46B1-A174-232BB0573BE0}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{5B892183-938D-49E9-B239-72E134AABE99}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{5F1A1260-F973-4C47-80D3-E5D8F3443733}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{6001BC5B-32E9-4327-8F16-E8A71138D55B}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{602E0767-6D03-4719-942E-866012D7CE4C}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{6119B18E-FDEC-4A87-AD1A-17E117BDCE3D}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{61222B6D-973E-4FC6-A128-B01C34686D77}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{61F02EFC-3C58-4DAD-9691-FB584CC3BA75}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{630246C0-4F9C-4F06-BE61-331EC5EE63EF}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{6302D541-1844-437A-8027-DE58C91AEAEE}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{64EEA8FC-012F-429B-BA02-9F4A8CE110AC}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{6603960E-9E6F-4A8F-8BA5-DE68BD877366}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{67EE2EC6-E5E3-4430-A733-B3E657EF131B}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{69339909-823D-4EAE-9EC9-34EEE544B760}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{69F1B5A0-68A3-4380-9761-70CA9D0A5C82}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{6A420780-5422-49DC-9FA4-58C85AF53881}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{6A9DA243-55DB-4491-8D1D-6B4F232DD44A}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{6AFEB9C4-D0A8-4463-8509-04759ADC36B5}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{6C795F78-D14B-4F5A-96CF-46A51D83F726}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{6CF9D3B9-DF10-48D6-AE3F-B841F7D1839E}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{6D98F50D-7865-4F4A-BB8D-F11CD1D88DF9}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{6E169C1E-6720-4C57-BC98-CD2396AFA40F}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{6F31A3F8-C763-496E-BF52-913835B0217A}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{6F3F213E-EA86-4E37-A3F8-ADD67C9016F4}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{71DD6A28-405D-46D2-928B-E1506EB5D131}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{7210D09D-E3F1-4301-8ADA-ED98AC9D3064}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{74D752DD-22BE-4CE3-A75D-7DA728061D40}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{7532EAAC-0356-4152-8944-8916DAD73D31}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{7939C626-4332-4A4E-9452-11E26EA4C532}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{7B1F1FA2-56DE-4AA2-9A14-46D2FA078DDF}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{7C135A0E-C3EE-42D5-9FBD-CB6B28AF6FCA}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{7C30B54B-9AA4-4037-9E19-94F63E12112C}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{7DA18CB4-0FCD-4B60-A8BC-FB21B9BC320B}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{7DA1F32B-4A13-44E7-BCEF-C6F7EDB0C743}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{7E4F6584-173E-4B3D-9A66-59F2BC2D5629}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{7F4DA773-B64F-4C1E-934D-D2B51921BAAA}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{7FFDAD20-B1F3-4A67-922C-5EDA4D91E84D}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{811A3689-4954-4FF3-8C4A-B67F4A0169D2}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{825050D1-5EFC-457E-A5C8-B8EA35585C59}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{82625959-6C7C-40FE-AE8F-83CB356D4BA0}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{870207C3-2389-462B-AB82-FF06E95F6FB0}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{88D42858-517D-42D1-944A-FA90ED2E5020}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{89499842-2D6D-4A33-88D1-2F0244E122C2}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{89F92312-5C1C-45C6-9454-3DFB76DD19E3}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{8ADAE308-2C99-4262-9181-0879C5271E9E}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{8B67AD6F-3777-484F-8703-66228F0A94C6}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{8E19921C-2F9B-4CBE-B338-0375BEA18D87}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{8E1A40D4-EDBF-4997-8D5B-793D10054F4C}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{8E40269E-E0EB-4236-9880-925F264F8510}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{91F27036-CCCF-40C7-972B-D7F0FABA7381}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{9274A2E6-22C9-4E2A-9565-8F6505B28E45}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{939D000F-E2B4-4912-B051-FEB69C261F12}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{93CACAF8-A3E7-4F8F-A66F-62396F1A032E}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{98117C3C-226F-49FC-AE19-F0B41BE93CBD}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{99699869-0E2F-47D6-A49E-D632E0CE12D7}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{9AD67856-6301-4E13-AE2E-B3CB13CEE1C3}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{9CB40287-B81B-4522-922C-0678A6D1553D}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{9CDE7884-C1EC-450A-B4AA-899F63AD0290}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{9D1BC40C-C2E3-4CDA-AAA7-8DBCA9E830F5}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{9D6CA68F-ADF3-4995-96D9-E6BB41D3C1DB}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{9DEFD763-CD95-483E-8F73-06F375C0AE54}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{9E2450AB-F13C-41B0-A6E9-4D8747080CFC}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{9E7301A6-8929-4E60-8FDD-A86CD8BBB271}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{A0381B0A-6B17-4D05-8315-4E4BE8AD9820}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{A164C15F-3215-4E8E-90C0-952F0C40AE2F}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{A31DB3AB-5D6F-4196-9345-B10E2A833958}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{A382544A-57CD-4B4B-BA9C-F10DEE194328}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{A55096BC-C491-4CA7-ACF0-9EE0049329F7}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{A598585F-B188-4CF6-85FA-B2F60806C4D6}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{A634C998-7444-452D-B609-7F6A197DC0B1}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{A63A7026-4C65-4986-87A1-371B3DC6E043}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{A98F2DFB-F76C-42AE-8B7A-4FAB74705A58}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{AA09C0D7-3878-4DE4-8577-7E9AECF02EA8}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{AA89FCB6-513F-4E22-BA60-6DBD2AADD6B7}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{AAE3ABD5-1B45-4E4B-ABDF-C872180D56B5}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{AC35F8DE-799D-4248-9DFF-27B73BCFE375}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{ACD6038F-D961-426F-8118-694A11D4196D}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{ADEBC745-1022-472A-9A0C-A942CBC47A7B}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{AFAD0B69-3B15-4325-A691-C33582E194C6}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{AFADF614-739E-4914-8350-012A5C6B1776}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{B1EC923F-8258-458B-8FA5-80889BAA2AFA}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{B22D41A9-3F01-43F0-8D74-DAEEBBACEDFB}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{B2F8071B-EA42-4E6F-B87A-72A11CA55770}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{B367FECA-FB0A-4321-8296-AA3D6F76C5B5}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{B38C24D9-ADE9-47A8-A161-DEE0C4018A50}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{B3FF0559-6FE4-4682-A425-A1D17C6C9E69}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{B40312BB-249C-41E5-ABB0-2F3A94E659EB}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{B67D13DB-EA4B-44B7-8E21-3619B1F5FBAB}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{B696130F-5392-4F7D-80B0-8B8F091A813A}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{B6EBE97E-5F7B-482B-9AED-071B44786CD7}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{B750F85E-8493-4B9D-B4DB-A0E458FB9934}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{B79C3B87-5167-4A34-8E3B-3565A13BE380}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{B8284165-6B02-4A1C-BDFA-F0EB35E8B07E}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{B8E70BB1-B9F9-4F1F-A43F-7F4C346783CF}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{C0304BA3-8DF8-4354-8B15-826DF92AA3DE}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{C2FB3931-F496-44FA-8984-06108A36FA3E}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{C4499D0E-B0F5-40CF-A67F-CDF95D5141F2}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{C5AF54E6-4440-4423-AAB5-A459CDBEBE73}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{C77CD54C-678A-465A-ADBB-0C9A521E6221}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{C9DBF2C7-4237-43DC-A433-61E9A4842FAA}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{CA61F6D7-8EE5-40F5-B895-602E93E05DA6}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{CADB4446-1745-47F6-AA7F-95A0DD716D2E}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{CBE4ED34-19AF-477B-9A8D-7A92D55F8EAF}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{CDD2E28B-78C1-4E36-AD0E-C3584E1D6370}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{CDFC0250-A365-41BC-9D9E-65B055D76502}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{D10A4C85-0415-4D07-9090-71F64C4C72CE}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{D322CB5F-0062-4B0D-A990-3F18380F49E0}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{D4BF0037-CA02-4062-A4EC-0E9796D8CB74}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{D54268FE-4D51-4FFB-A973-42CB5DCD769A}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{D6AEA981-06C3-476C-8B44-F03E8638136D}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{D85E97DF-C5A5-4028-BCC1-B084555C207B}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{D8DA0EB5-AE86-4117-B464-8AD9B72E94C8}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{D8E5A0B4-1BDD-491B-8679-FFD820B9926A}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{D9613545-97D2-410E-8372-954EE4BFDFAC}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{D9BDEFF5-5F92-4F0B-9E61-0BCDDB2FB4EF}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{DA628155-5006-4AF4-92BE-9A3DF3635347}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{DB552A77-BB74-4C12-A22E-CC7D04619124}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{DB58996E-2597-443F-8C56-3D62F5059A75}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{DDE084F1-3941-49C9-A80D-AB5CFC9D01D3}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{E17694A3-7D21-4FA5-A409-B9091A284535}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{E3272F1A-BDE1-4560-8715-449B1FF03A21}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{E4597A6F-6AF7-478D-B634-8AEC4493BBFB}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{E4FE7200-9B94-4883-A5FA-055095275F7B}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{E6EC4360-07FD-4964-84C2-7970DF327CF9}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{E74CAF52-D9DC-4F32-8309-9C59369AFEA6}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{E7A28DE4-3496-4678-BFA0-C07D2539650C}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{E879854E-F1DA-4C95-89E2-14671ADA7EDF}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{E919A655-7E09-46BA-8507-B5ECD9E300C0}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{E96F9AE8-800E-4748-BA94-F41E07B3CAA6}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{E97A3F13-3AEC-4BEF-81F1-93962866BA99}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{EAC20CBD-C77F-433F-A101-EFDE02D4FEA9}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{EB6B2B6A-4E75-4DD0-971C-6F7531FA06B6}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{EE921905-376F-4C20-9CA5-2018DE66A3F7}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{F0112BD7-E241-4A8E-8194-D8E3FCB74B2F}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{F1C1ED88-8C83-4F0D-B1C5-FA5C5F7FF304}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{F4D25557-E6F3-4ABE-9E0D-8E87CF95CF99}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{F5E1D584-EF7D-40CC-85ED-34F2DEDC5E07}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{F7403555-3B7E-404C-85FC-458F9E3D95FE}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{FB6D8D1A-1416-4C92-B4D9-796AAA8FF70F}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{FB81988C-A0C7-4E32-9E89-AB595DF51545}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{FE4749D2-90AF-46D6-B1CE-3D9A1C6DCE7F}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{FF23CE8F-5E3E-4EFB-AE92-762442F6448A}
Successfully deleted: [Empty Folder] C:\Users\costco\appdata\local\{FF34FC88-2C89-47C0-82F5-BAE2F234B986}
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Thu 09/11/2014 at 20:30:24.75
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
FRST Logfile:
Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 10-09-2014
Ran by costco (administrator) on COSTCO-PC on 11-09-2014 20:45:18
Running from C:\Users\costco\Desktop\New folder
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: English (United States)
Internet Explorer Version 11
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Bitdefender) C:\Program Files\Bitdefender\Antivirus Free Edition\gzserv.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(IDT, Inc.) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\stacsv64.exe
(Hewlett-Packard) C:\Windows\System32\hpservice.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Andrea Electronics Corporation) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\AESTSr64.exe
(SEIKO EPSON CORPORATION) C:\Program Files\EPSON\EpsonCustomerParticipation\EPCP.exe
(SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_WT50RP.EXE
(Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
() C:\Program Files (x86)\Motorola\MotoHelper\MotoHelperService.exe
(Protexis Inc.) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
() C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Bitdefender) C:\Program Files\Bitdefender\Antivirus Free Edition\gziface.exe
() C:\Program Files (x86)\Motorola\MotoHelper\MotoHelperAgent.exe
() C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe
(Sun Microsystems, Inc.) C:\Program Files\Java\jre6\bin\jusched.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Microsoft Corporation) C:\Program Files\Microsoft IntelliPoint\ipoint.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_YATIHSA.EXE
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\Digital Imaging\bin\HpqSRmon.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
(SEIKO EPSON CORPORATION) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
(SEIKO EPSON CORPORATION) C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXRCV.exe
(SEIKO EPSON CORPORATION) C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXSTM.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
(CyberLink) C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe
() C:\Program Files (x86)\Hewlett-Packard\Shared\HpqToaster.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SmartMenu] => C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe [610872 2009-08-25] ()
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Java\jre6\bin\jusched.exe [171520 2009-10-31] (Sun Microsystems, Inc.)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [487424 2011-02-10] (IDT, Inc.)
HKLM\...\Run: [IntelliPoint] => c:\Program Files\Microsoft IntelliPoint\ipoint.exe [2417032 2011-08-01] (Microsoft Corporation)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [98304 2009-08-05] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [HPCam_Menu] => c:\Program Files (x86)\Hewlett-Packard\Media\Webcam\MUITransfer\MUIStartMenu.exe [222504 2009-05-20] (CyberLink Corp.)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [hpqSRMon] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [150528 2008-07-22] (Hewlett-Packard)
HKLM-x32\...\Run: [WirelessAssistant] => C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [500792 2010-03-23] (Hewlett-Packard Company)
HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [979328 2010-10-12] (SEIKO EPSON CORPORATION)
HKLM-x32\...\Run: [FUFAXRCV] => C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXRCV.exe [495616 2011-03-09] (SEIKO EPSON CORPORATION)
HKLM-x32\...\Run: [FUFAXSTM] => C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXSTM.exe [856064 2011-03-09] (SEIKO EPSON CORPORATION)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-05-07] (Oracle Corporation)
HKLM\...\RunOnce: [NCPluginUpdater] => C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe [21720 2014-01-28] (Hewlett-Packard)
Winlogon\Notify\ScCertProp: wlnotify.dll [X]
HKU\S-1-5-21-1108024918-407089468-1039188272-1000\...\Run: [LightScribe Control Panel] => C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2363392 2009-08-20] (Hewlett-Packard Company)
HKU\S-1-5-21-1108024918-407089468-1039188272-1000\...\Run: [ISUSPM] => "C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler
HKU\S-1-5-21-1108024918-407089468-1039188272-1000\...\Run: [GoogleDriveSync] => C:\Program Files (x86)\Google\Drive\googledrivesync.exe [22734160 2014-08-08] (Google)
HKU\S-1-5-21-1108024918-407089468-1039188272-1000\...\Run: [EPLTarget\P0000000000000000] => C:\Windows\system32\spool\DRIVERS\x64\3\E_YATIHSA.EXE [241280 2012-07-12] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-1108024918-407089468-1039188272-1000\...\Run: [GoogleChromeAutoLaunch_3E1C9BA5F42107A445E470F7A3073863] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [852808 2014-09-03] (Google Inc.)
HKU\S-1-5-21-1108024918-407089468-1039188272-1000\...\MountPoints2: I - I:\MotoCastSetup.exe -a
HKU\S-1-5-21-1108024918-407089468-1039188272-1000\...\MountPoints2: J - J:\MotoCastSetup.exe -a
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.msn.com/HPNOT/1
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Microsoft Live Search Toolbar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> c:\Program Files (x86)\MSN\Toolbar\3.0.0566.0\msneshellx.dll (Microsoft Corp.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
Toolbar: HKLM - No Name - {45504E32-5637-006A-76A7-7A786E7484D7} - No File
Toolbar: HKLM-x32 - Microsoft Live Search Toolbar - {1E61ED7C-7CB8-49d6-B9E9-AB4C880C8414} - c:\Program Files (x86)\MSN\Toolbar\3.0.0566.0\msneshellx.dll (Microsoft Corp.)
Toolbar: HKLM-x32 - No Name - {45504E32-5637-006A-76A7-7A786E7484D7} - No File
DPF: HKLM {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
DPF: HKLM-x32 {C345E174-3E87-4F41-A01C-B066A90A49B4} hxxp://trial.trymicrosoftoffice.com/trialoaa/buymsoffice_assets/framework/microsoft/wrc32.ocx
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{266E4A35-7AC5-425D-AAA6-F37179191079}: [NameServer] 64.202.97.1,64.202.97.2
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @java.com/DTPlugin,version=10.60.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.60.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\NPOFF12.DLL (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin6.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin7.dll (Apple Inc.)
Chrome:
=======
CHR HomePage: Profile 3 ->
CHR DefaultSearchKeyword: Profile 3 -> C528BA6B7887BA5C576535481767DFCC5139FE0360B4ED6364CB8B80D972BB11
CHR DefaultSearchURL: Profile 3 -> F493952BB281CD9DE679E82F38883C11B2579483A48F01ED3A4C9F4F6E7D49DE
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\pdf.dll ()
CHR Plugin: (Norton Confidential) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2012.5.0.140_0\npcoplgn.dll No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll No File
CHR Plugin: (Microsoft® Windows Media Player Firefox Plugin) - C:\Program Files (x86)\Mozilla Firefox\plugins\np-mswmp.dll No File
CHR Plugin: (2007 Microsoft Office system) - C:\Program Files (x86)\Mozilla Firefox\plugins\NPOFF12.DLL (Microsoft Corporation)
CHR Plugin: (QuickTime Plug-in 7.7.1) - C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.1) - C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin2.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.1) - C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin3.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.1) - C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin4.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.1) - C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin5.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.1) - C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin6.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.1) - C:\Program Files (x86)\Mozilla Firefox\plugins\npqtplugin7.dll (Apple Inc.)
CHR Plugin: (AdobeAAMDetect) - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll No File
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll No File
CHR Plugin: (Java(TM) Platform SE 7 U21) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
CHR Plugin: (Windows Live™ Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (iTunes Application Detector) - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll No File
CHR Plugin: (Facebook Plugin) - C:\Users\costco\AppData\Roaming\Facebook\npfbplugin_1_0_3.dll No File
CHR Plugin: (Shockwave for Director) - C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
CHR Profile: C:\Users\costco\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Spellchecker.lu Mini) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmcmejmpjaeofdedldgfnpidfmnngdib [2013-05-10]
CHR Extension: (IBA Opt-out (by Google)) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbiekjoijknlhijdjbaadobpkdhmoebb [2013-05-10]
CHR Extension: (Spell Checker for Chrome) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfpdnkkdgghlpdgldicfgnnnkhdfhocg [2013-05-10]
CHR Extension: (Spell and Grammar checker by Ginger) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdfieneakcjfaiglcfcgkidlkmlijjnh [2013-05-10]
CHR Extension: (Norton Identity Protection) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk [2013-05-10]
CHR Extension: (Better Gmail) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Default\Extensions\obhfdckfkimahlnggnnjajpmdofakcni [2013-05-10]
CHR Profile: C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 1
CHR Extension: (Ask Toolbar for Epson) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aaaaiflphlncanefaljjekiddjdpcioj [2013-11-30]
CHR Extension: (Google Docs) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2013-02-26]
CHR Extension: (Google Drive) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-02-26]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-05-22]
CHR Extension: (YouTube) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-02-26]
CHR Extension: (Google Search) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-02-26]
CHR Extension: (Do Not Disturb!) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ilnddakjdkpofoablibghfikpeknhbia [2014-07-04]
CHR Extension: (Google Wallet) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-25]
CHR Extension: (Gmail) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-02-26]
CHR Profile: C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 2
CHR Extension: (Google Docs) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aohghmighlieiainnegkcijnfilokake [2013-03-21]
CHR Extension: (Google Drive) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-03-21]
CHR Extension: (YouTube) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-03-21]
CHR Extension: (Google Search) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-03-21]
CHR Extension: (Updater By SweetPacks) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfd [2013-05-09]
CHR Extension: (Gmail) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-03-21]
CHR Profile: C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 3
CHR Extension: (Ask Toolbar for Epson) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\aaaaiflphlncanefaljjekiddjdpcioj [2013-11-30]
CHR Extension: (Google Docs) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\aohghmighlieiainnegkcijnfilokake [2013-05-12]
CHR Extension: (Google Drive) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-05-12]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-05-22]
CHR Extension: (YouTube) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-05-12]
CHR Extension: (Spellchecker.lu Mini) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\cmcmejmpjaeofdedldgfnpidfmnngdib [2013-05-12]
CHR Extension: (Google Search) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-05-12]
CHR Extension: (IBA Opt-out (by Google)) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\gbiekjoijknlhijdjbaadobpkdhmoebb [2013-05-12]
CHR Extension: (Spell Checker for Chrome) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\jfpdnkkdgghlpdgldicfgnnnkhdfhocg [2013-05-12]
CHR Extension: (Spell checker and Grammar checker by Ginger) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\kdfieneakcjfaiglcfcgkidlkmlijjnh [2013-05-12]
CHR Extension: (Google Wallet) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-28]
CHR Extension: (Better Gmail) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\obhfdckfkimahlnggnnjajpmdofakcni [2013-05-12]
CHR Extension: (Gmail) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-05-12]
CHR Profile: C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 4
CHR Extension: (Ask Toolbar for Epson) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\aaaaiflphlncanefaljjekiddjdpcioj [2013-12-14]
CHR Extension: (Google Docs) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\aohghmighlieiainnegkcijnfilokake [2013-08-06]
CHR Extension: (Google Drive) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-08-06]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-07-11]
CHR Extension: (YouTube) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-08-06]
CHR Extension: (Google Search) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-08-06]
CHR Extension: (Babbel-Knopf für Google Chrome™) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\jbdoppplimagabiddoakkgppnpfglein [2014-07-11]
CHR Extension: (Google Wallet) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-26]
CHR Extension: (Gmail) - C:\Users\costco\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-08-06]
CHR HKLM\...\Chrome\Extension: [aaaaiflphlncanefaljjekiddjdpcioj] - C:\ProgramData\AskPartnerNetwork\Toolbar\EPN2V7\CRX\ToolbarCR.crx []
CHR HKCU\...\Chrome\Extension: [apdfllckaahabafndbhieahigkjlhalf] - C:\Users\costco\AppData\Local\Google\Drive\apdfllckaahabafndbhieahigkjlhalf_live.crx [2013-07-28]
CHR HKLM-x32\...\Chrome\Extension: [aaaaiflphlncanefaljjekiddjdpcioj] - C:\ProgramData\AskPartnerNetwork\Toolbar\EPN2V7\CRX\ToolbarCR.crx [2013-07-28]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AESTFilters; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\AESTSr64.exe [89600 2011-02-10] (Andrea Electronics Corporation)
R2 gzserv; C:\Program Files\Bitdefender\Antivirus Free Edition\gzserv.exe [69368 2013-10-23] (Bitdefender)
R2 HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [92160 2013-11-04] (Hewlett-Packard Company) [File not signed]
R2 HPSLPSVC; C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL [1037824 2009-09-20] (Hewlett-Packard Co.) [File not signed]
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [73728 2004-10-22] (Macrovision Corporation) [File not signed]
R2 LightScribeService; C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [73728 2009-08-20] (Hewlett-Packard Company) [File not signed]
R2 MotoHelper; C:\Program Files (x86)\Motorola\MotoHelper\MotoHelperService.exe [223088 2011-03-25] ()
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2008-12-03] (Hewlett-Packard) [File not signed]
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2008-12-03] (Hewlett-Packard) [File not signed]
S4 QBCFMonitorService; C:\Program Files (x86)\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe [20480 2009-09-16] (Intuit) [File not signed]
S3 QBFCService; C:\Program Files (x86)\Common Files\Intuit\QuickBooks\FCS\Intuit.QuickBooks.FCS.exe [65536 2006-11-09] (Intuit Inc.) [File not signed]
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [247152 2009-07-06] ()
R2 STacSV; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_70dacb64382a61a7\STacSV64.exe [247808 2011-02-10] (IDT, Inc.)
S2 RoxLiveShare9; "C:\Program Files (x86)\Common Files\Roxio Shared\9.0\SharedCOM\RoxLiveShare9.exe" [X]
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R0 avc3; C:\Windows\System32\DRIVERS\avc3.sys [718840 2013-04-17] (BitDefender)
U5 avchv; C:\Windows\System32\Drivers\avchv.sys [261056 2014-09-08] (BitDefender)
R3 avckf; C:\Windows\System32\DRIVERS\avckf.sys [593144 2013-04-17] (BitDefender)
R1 bdfwfpf; C:\Program Files\Bitdefender\Antivirus Free Edition\bdfwfpf.sys [121928 2013-07-02] (Bitdefender SRL)
R1 gzflt; C:\Windows\System32\DRIVERS\gzflt.sys [148696 2013-04-22] (BitDefender LLC)
S3 RimUsb; C:\Windows\System32\Drivers\RimUsb_AMD64.sys [27520 2007-05-14] (Research In Motion Limited)
S3 RimVSerPort; C:\Windows\System32\DRIVERS\RimSerial_AMD64.sys [31744 2009-01-09] (Research in Motion Ltd)
S3 S3XXx64; C:\Windows\System32\DRIVERS\S3XXx64.sys [73984 2013-06-05] (Identive)
R0 trufos; C:\Windows\System32\DRIVERS\trufos.sys [382536 2013-05-28] (BitDefender S.R.L.)
S3 BTCFilterService; system32\DRIVERS\motfilt.sys [X]
U4 eabfiltr; No ImagePath
S3 motmodem; system32\DRIVERS\motmodem.sys [X]
S3 Motousbnet; system32\DRIVERS\Motousbnet.sys [X]
S3 motusbdevice; system32\DRIVERS\motusbdevice.sys [X]
S3 RtsUIR; system32\DRIVERS\Rts516xIR.sys [X]
S3 USBCCID; system32\DRIVERS\RtsUCcid.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-09-11 20:15 - 2014-09-11 20:15 - 00000000 ____D () C:\Windows\ERUNT
2014-09-11 20:14 - 2014-09-11 20:14 - 01016261 _____ (Thisisu) C:\Users\costco\Downloads\JRT.exe
2014-09-11 20:03 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll
2014-09-11 20:01 - 2014-09-11 20:04 - 00000000 ____D () C:\AdwCleaner
2014-09-11 20:01 - 2014-09-11 20:01 - 01370467 _____ () C:\Users\costco\Downloads\AdwCleaner.exe
2014-09-11 19:54 - 2014-08-19 14:05 - 00374968 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-09-11 19:54 - 2014-08-19 13:39 - 00327872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-09-11 19:54 - 2014-08-18 19:01 - 23591424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-09-11 19:54 - 2014-08-18 18:29 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-09-11 19:54 - 2014-08-18 18:29 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-09-11 19:54 - 2014-08-18 18:26 - 17455104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-09-11 19:54 - 2014-08-18 18:20 - 02793984 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-09-11 19:54 - 2014-08-18 18:19 - 05833728 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-09-11 19:54 - 2014-08-18 18:15 - 00547328 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-09-11 19:54 - 2014-08-18 18:15 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-09-11 19:54 - 2014-08-18 18:14 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-09-11 19:54 - 2014-08-18 18:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-09-11 19:54 - 2014-08-18 18:08 - 04232704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-09-11 19:54 - 2014-08-18 18:08 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-09-11 19:54 - 2014-08-18 18:08 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-09-11 19:54 - 2014-08-18 18:05 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-09-11 19:54 - 2014-08-18 18:03 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-09-11 19:54 - 2014-08-18 18:03 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-09-11 19:54 - 2014-08-18 18:03 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-09-11 19:54 - 2014-08-18 17:57 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-09-11 19:54 - 2014-08-18 17:56 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-09-11 19:54 - 2014-08-18 17:51 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-09-11 19:54 - 2014-08-18 17:46 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-09-11 19:54 - 2014-08-18 17:45 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-09-11 19:54 - 2014-08-18 17:45 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-09-11 19:54 - 2014-08-18 17:44 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-09-11 19:54 - 2014-08-18 17:44 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-09-11 19:54 - 2014-08-18 17:42 - 02185728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-09-11 19:54 - 2014-08-18 17:40 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-09-11 19:54 - 2014-08-18 17:39 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-09-11 19:54 - 2014-08-18 17:39 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-09-11 19:54 - 2014-08-18 17:39 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-09-11 19:54 - 2014-08-18 17:38 - 00289280 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-09-11 19:54 - 2014-08-18 17:37 - 00440320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-09-11 19:54 - 2014-08-18 17:36 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-09-11 19:54 - 2014-08-18 17:35 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-09-11 19:54 - 2014-08-18 17:27 - 00365056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-09-11 19:54 - 2014-08-18 17:25 - 00727040 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-09-11 19:54 - 2014-08-18 17:25 - 00707072 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-09-11 19:54 - 2014-08-18 17:23 - 02104832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-09-11 19:54 - 2014-08-18 17:23 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-09-11 19:54 - 2014-08-18 17:22 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-09-11 19:54 - 2014-08-18 17:19 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-09-11 19:54 - 2014-08-18 17:17 - 00243200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-09-11 19:54 - 2014-08-18 17:17 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-09-11 19:54 - 2014-08-18 17:16 - 13588480 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-09-11 19:54 - 2014-08-18 17:15 - 11769856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-09-11 19:54 - 2014-08-18 17:15 - 02310656 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-09-11 19:54 - 2014-08-18 17:09 - 00603136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-09-11 19:54 - 2014-08-18 17:08 - 02014208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-09-11 19:54 - 2014-08-18 17:07 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-09-11 19:54 - 2014-08-18 16:55 - 01447424 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-09-11 19:54 - 2014-08-18 16:46 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-09-11 19:54 - 2014-08-18 16:38 - 01190400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-09-11 19:54 - 2014-08-18 16:38 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-09-11 19:54 - 2014-08-18 16:36 - 00678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-09-11 19:48 - 2014-09-11 19:48 - 00000000 __SHD () C:\Users\costco\AppData\Local\EmieUserList
2014-09-11 19:48 - 2014-09-11 19:48 - 00000000 __SHD () C:\Users\costco\AppData\Local\EmieSiteList
2014-09-11 19:42 - 2014-09-11 20:45 - 00000000 ____D () C:\Users\costco\Desktop\New folder
2014-09-11 19:36 - 2014-06-26 22:08 - 02777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2014-09-11 19:36 - 2014-06-26 21:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2014-09-10 07:29 - 2014-08-01 07:53 - 01031168 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2014-09-10 07:29 - 2014-08-01 07:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2014-09-10 07:29 - 2014-07-06 22:06 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-09-10 07:29 - 2014-07-06 22:06 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-09-10 07:29 - 2014-07-06 21:40 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-09-10 07:29 - 2014-07-06 21:40 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-09-10 07:29 - 2014-07-06 21:39 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-09-10 07:29 - 2014-06-23 23:29 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2014-09-10 07:29 - 2014-06-23 22:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2014-09-08 19:58 - 2014-09-08 19:58 - 00261056 _____ (BitDefender) C:\Windows\system32\Drivers\avchv.sys
2014-09-07 19:43 - 2014-09-11 20:45 - 00000000 ____D () C:\FRST
2014-09-06 18:52 - 2014-09-07 19:40 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-09-06 18:52 - 2014-09-06 18:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-09-06 18:52 - 2014-09-06 18:52 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-09-06 18:52 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-09-06 18:52 - 2014-05-12 07:26 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-08-30 11:24 - 2014-08-30 11:24 - 00000000 ____D () C:\Users\costco\Desktop\Greenlee
2014-08-30 11:16 - 2014-09-07 12:45 - 00000000 ____D () C:\Users\costco\Desktop\Fellows
2014-08-27 17:56 - 2014-08-22 22:07 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-08-27 17:56 - 2014-08-22 21:45 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2014-08-27 17:56 - 2014-08-22 20:59 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-08-23 12:07 - 2014-08-23 12:12 - 00002900 _____ () C:\Windows\system32\lic2.xml28115
2014-08-21 19:15 - 2014-05-14 12:23 - 02477536 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2014-08-21 19:15 - 2014-05-14 12:23 - 00058336 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2014-08-21 19:15 - 2014-05-14 12:23 - 00044512 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2014-08-21 19:15 - 2014-05-14 12:21 - 02620928 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2014-08-21 19:14 - 2014-05-14 12:23 - 00700384 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2014-08-21 19:14 - 2014-05-14 12:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2014-08-21 19:14 - 2014-05-14 12:23 - 00038880 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2014-08-21 19:14 - 2014-05-14 12:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2014-08-21 19:14 - 2014-05-14 12:20 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2014-08-21 19:14 - 2014-05-14 12:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2014-08-21 19:14 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2014-08-21 19:14 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2014-08-21 19:14 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2014-08-21 19:14 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2014-08-18 16:21 - 2014-03-09 17:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\infocardapi.dll
2014-08-18 16:20 - 2014-06-30 18:24 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll
2014-08-18 16:20 - 2014-06-30 18:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardres.dll
2014-08-18 16:20 - 2014-06-06 02:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2014-08-18 16:20 - 2014-06-06 02:12 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2014-08-18 16:20 - 2014-03-09 17:48 - 01389208 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe
2014-08-18 16:20 - 2014-03-09 17:48 - 00171160 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll
2014-08-18 16:20 - 2014-03-09 17:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardagt.exe
2014-08-18 16:17 - 2014-08-18 17:02 - 00002900 _____ () C:\Windows\system32\lic2.xml7385
2014-08-17 12:24 - 2014-07-15 23:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-08-17 12:24 - 2014-07-15 22:46 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2014-08-17 12:24 - 2014-06-03 06:02 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2014-08-17 12:24 - 2014-06-03 06:02 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2014-08-17 12:24 - 2014-06-03 06:02 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2014-08-17 12:24 - 2014-06-03 06:02 - 00112064 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2014-08-17 12:24 - 2014-06-03 05:29 - 02363392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2014-08-17 12:24 - 2014-06-03 05:29 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2014-08-17 12:24 - 2014-06-03 05:29 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2014-08-17 12:23 - 2014-06-24 22:05 - 14175744 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-08-17 12:23 - 2014-06-24 21:41 - 12874240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2014-08-17 12:23 - 2014-06-15 22:10 - 00985536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2014-08-17 12:22 - 2014-07-13 22:02 - 01216000 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2014-08-17 12:22 - 2014-07-13 21:40 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-09-11 20:45 - 2014-09-11 19:42 - 00000000 ____D () C:\Users\costco\Desktop\New folder
2014-09-11 20:45 - 2014-09-07 19:43 - 00000000 ____D () C:\FRST
2014-09-11 20:43 - 2009-07-14 00:51 - 00601402 _____ () C:\Windows\setupact.log
2014-09-11 20:40 - 2013-05-09 21:14 - 00000898 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-09-11 20:35 - 2012-04-15 20:04 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-09-11 20:15 - 2014-09-11 20:15 - 00000000 ____D () C:\Windows\ERUNT
2014-09-11 20:14 - 2014-09-11 20:14 - 01016261 _____ (Thisisu) C:\Users\costco\Downloads\JRT.exe
2014-09-11 20:12 - 2009-07-14 00:45 - 00023248 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-09-11 20:12 - 2009-07-14 00:45 - 00023248 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-09-11 20:08 - 2013-07-28 14:59 - 00000000 ___RD () C:\Users\costco\Google Drive
2014-09-11 20:07 - 2013-05-09 21:14 - 00000894 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-09-11 20:07 - 2012-11-24 20:53 - 00065536 _____ () C:\Windows\system32\Ikeext.etl
2014-09-11 20:06 - 2012-10-23 18:42 - 00000336 _____ () C:\Windows\Tasks\HPCeeScheduleForcostco.job
2014-09-11 20:06 - 2009-07-14 01:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-09-11 20:05 - 2009-12-24 04:19 - 01061030 _____ () C:\Windows\PFRO.log
2014-09-11 20:04 - 2014-09-11 20:01 - 00000000 ____D () C:\AdwCleaner
2014-09-11 20:04 - 2009-12-24 04:17 - 01815512 _____ () C:\Windows\WindowsUpdate.log
2014-09-11 20:01 - 2014-09-11 20:01 - 01370467 _____ () C:\Users\costco\Downloads\AdwCleaner.exe
2014-09-11 20:00 - 2009-10-31 00:36 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-09-11 19:55 - 2011-10-02 11:37 - 00000000 ____D () C:\Users\costco\AppData\Roaming\Skype
2014-09-11 19:52 - 2010-03-09 17:28 - 00792312 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-09-11 19:52 - 2009-07-14 01:13 - 00792312 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-09-11 19:48 - 2014-09-11 19:48 - 00000000 __SHD () C:\Users\costco\AppData\Local\EmieUserList
2014-09-11 19:48 - 2014-09-11 19:48 - 00000000 __SHD () C:\Users\costco\AppData\Local\EmieSiteList
2014-09-11 19:37 - 2013-08-16 00:12 - 00000000 ____D () C:\Windows\system32\MRT
2014-09-11 19:37 - 2010-04-28 16:33 - 101694776 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-09-11 19:35 - 2012-10-23 18:42 - 00003192 _____ () C:\Windows\System32\Tasks\HPCeeScheduleForcostco
2014-09-11 19:35 - 2009-07-13 23:20 - 00000000 ____D () C:\Windows\tracing
2014-09-10 20:02 - 2013-06-04 17:48 - 00000000 ____D () C:\Users\costco\AppData\Local\CrashDumps
2014-09-10 13:35 - 2012-04-15 20:04 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-09-10 13:35 - 2012-04-15 20:04 - 00003768 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-09-10 13:35 - 2011-06-06 16:40 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-09-10 12:11 - 2009-07-14 01:32 - 00000000 ____D () C:\Windows\system32\FxsTmp
2014-09-08 19:58 - 2014-09-08 19:58 - 00261056 _____ (BitDefender) C:\Windows\system32\Drivers\avchv.sys
2014-09-07 19:40 - 2014-09-06 18:52 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-09-07 19:32 - 2014-04-20 11:09 - 00000000 ____D () C:\Users\costco\Desktop\Aaron Phillips
2014-09-07 13:38 - 2014-06-19 20:01 - 00000000 ____D () C:\Users\costco\Desktop\Vasilenko
2014-09-07 12:45 - 2014-08-30 11:16 - 00000000 ____D () C:\Users\costco\Desktop\Fellows
2014-09-06 18:52 - 2014-09-06 18:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-09-06 18:52 - 2014-09-06 18:52 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-09-06 18:52 - 2014-03-14 16:25 - 00001062 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-09-06 18:52 - 2014-03-14 16:25 - 00000000 ____D () C:\Users\costco\AppData\Roaming\Malwarebytes
2014-09-06 18:52 - 2014-03-14 16:25 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-09-05 17:26 - 2013-12-01 17:08 - 00000000 ____D () C:\Users\costco\Desktop\Silva
2014-08-30 11:40 - 2013-04-11 15:38 - 00000000 ____D () C:\Users\costco\Desktop\Lisa Bartolomei
2014-08-30 11:24 - 2014-08-30 11:24 - 00000000 ____D () C:\Users\costco\Desktop\Greenlee
2014-08-30 11:24 - 2014-01-27 12:15 - 00000000 ____D () C:\Users\costco\Desktop\Dave Galahger
2014-08-28 13:39 - 2009-07-13 23:20 - 00000000 ____D () C:\Windows\rescache
2014-08-28 13:02 - 2009-07-14 00:45 - 05096648 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-08-24 15:04 - 2014-03-14 14:07 - 00000000 ____D () C:\Users\costco\Desktop\Karam
2014-08-23 12:12 - 2014-08-23 12:07 - 00002900 _____ () C:\Windows\system32\lic2.xml28115
2014-08-22 22:07 - 2014-08-27 17:56 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-08-22 21:45 - 2014-08-27 17:56 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2014-08-22 20:59 - 2014-08-27 17:56 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-08-19 14:08 - 2013-07-28 14:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2014-08-19 14:05 - 2014-09-11 19:54 - 00374968 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-08-19 13:39 - 2014-09-11 19:54 - 00327872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-08-18 19:01 - 2014-09-11 19:54 - 23591424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-08-18 18:29 - 2014-09-11 19:54 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-08-18 18:29 - 2014-09-11 19:54 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-08-18 18:26 - 2014-09-11 19:54 - 17455104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-08-18 18:20 - 2014-09-11 19:54 - 02793984 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-08-18 18:19 - 2014-09-11 19:54 - 05833728 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-08-18 18:15 - 2014-09-11 19:54 - 00547328 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-08-18 18:15 - 2014-09-11 19:54 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-08-18 18:14 - 2014-09-11 19:54 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-08-18 18:14 - 2014-09-11 19:54 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-08-18 18:08 - 2014-09-11 19:54 - 04232704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-08-18 18:08 - 2014-09-11 19:54 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-08-18 18:08 - 2014-09-11 19:54 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-08-18 18:05 - 2014-09-11 19:54 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-08-18 18:03 - 2014-09-11 19:54 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-08-18 18:03 - 2014-09-11 19:54 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-08-18 18:03 - 2014-09-11 19:54 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-08-18 17:57 - 2014-09-11 19:54 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-08-18 17:56 - 2014-09-11 19:54 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-08-18 17:51 - 2014-09-11 19:54 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-08-18 17:46 - 2014-09-11 19:54 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-08-18 17:45 - 2014-09-11 19:54 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-08-18 17:45 - 2014-09-11 19:54 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-08-18 17:44 - 2014-09-11 19:54 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-08-18 17:44 - 2014-09-11 19:54 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-08-18 17:42 - 2014-09-11 19:54 - 02185728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-08-18 17:40 - 2014-09-11 19:54 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-08-18 17:39 - 2014-09-11 19:54 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-08-18 17:39 - 2014-09-11 19:54 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-08-18 17:39 - 2014-09-11 19:54 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-08-18 17:38 - 2014-09-11 19:54 - 00289280 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-08-18 17:37 - 2014-09-11 19:54 - 00440320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-08-18 17:36 - 2014-09-11 19:54 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-08-18 17:35 - 2014-09-11 19:54 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-08-18 17:27 - 2014-09-11 19:54 - 00365056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-08-18 17:25 - 2014-09-11 19:54 - 00727040 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-08-18 17:25 - 2014-09-11 19:54 - 00707072 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-08-18 17:24 - 2011-10-02 11:37 - 00000000 ____D () C:\ProgramData\Skype
2014-08-18 17:23 - 2014-09-11 19:54 - 02104832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-08-18 17:23 - 2014-09-11 19:54 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-08-18 17:22 - 2014-09-11 19:54 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-08-18 17:19 - 2014-09-11 19:54 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-08-18 17:17 - 2014-09-11 19:54 - 00243200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-08-18 17:17 - 2014-09-11 19:54 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-08-18 17:17 - 2009-07-13 23:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2014-08-18 17:16 - 2014-09-11 19:54 - 13588480 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-08-18 17:15 - 2014-09-11 19:54 - 11769856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-08-18 17:15 - 2014-09-11 19:54 - 02310656 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-08-18 17:09 - 2014-09-11 19:54 - 00603136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-08-18 17:08 - 2014-09-11 19:54 - 02014208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-08-18 17:07 - 2014-09-11 19:54 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-08-18 17:02 - 2014-08-18 16:17 - 00002900 _____ () C:\Windows\system32\lic2.xml7385
2014-08-18 16:55 - 2014-09-11 19:54 - 01447424 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-08-18 16:46 - 2014-09-11 19:54 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-08-18 16:38 - 2014-09-11 19:54 - 01190400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-08-18 16:38 - 2014-09-11 19:54 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-08-18 16:36 - 2014-09-11 19:54 - 00678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
Some content of TEMP:
====================
C:\Users\costco\AppData\Local\Temp\Quarantine.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-09-07 02:18
==================== End Of Log ============================
--- --- ---