doublepack | 29.04.2015 23:14 | Addition.txt Code:
==================== EXE Association (whitelisted) ===============
(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, the associated entry will be removed from the registry.)
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-2833233637-2508301349-1291184669-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Luke\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
DNS Servers: 192.168.1.1
==================== MSCONFIG/TASK MANAGER disabled items ==
(Currently there is no automatic fix for this section.)
HKLM\...\StartupApproved\Run: => "iTunesHelper"
HKLM\...\StartupApproved\Run32: => "LogMeIn Hamachi Ui"
HKU\S-1-5-21-2833233637-2508301349-1291184669-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-2833233637-2508301349-1291184669-1001\...\StartupApproved\Run: => "Skype"
HKU\S-1-5-21-2833233637-2508301349-1291184669-1001\...\StartupApproved\Run: => "iDevice Manager Launcher"
==================== FirewallRules (whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{E7554797-41BE-420B-9F5C-1EBE27688857}] => (Allow) C:\Program Files (x86)\Nero\Nero 12\Nero BackItUp\BackItUp.exe
FirewallRules: [{2D338243-2018-4788-BABE-837BD8E40F68}] => (Allow) C:\Program Files (x86)\Nero\Nero 12\Nero BackItUp\BackItUp.exe
FirewallRules: [{59A37F2E-AD53-4FDF-B9F1-9C048715B665}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
FirewallRules: [{3CBCB046-FAA3-4709-AA4B-D4E6BFB00084}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
FirewallRules: [{3FF686FB-07B4-4F92-BEAD-C4CCA423F721}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe
FirewallRules: [{E73394DC-5A9B-418B-923A-76099AE77896}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe
FirewallRules: [{69655989-5BB2-4CA9-AC4D-22BB40F4CE79}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe
FirewallRules: [{A8DD827D-44B7-4F01-9B10-6C8C7B2421CF}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe
FirewallRules: [{A6019CFC-B626-4EBA-98CE-122F82B963D1}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12.exe
FirewallRules: [{000F2993-3D1D-4E9F-B5BE-C4F377CD4C39}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe
FirewallRules: [{6B553771-7C53-4E02-86EA-CC4FC5659276}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe
FirewallRules: [{D1B71D00-1D43-4E67-B6A0-2A69DB6C4849}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12Agent.exe
FirewallRules: [{3295121D-F072-4A5D-92B9-31306F4D56A0}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12ML.exe
FirewallRules: [{1B33FC17-3AD8-46E8-89F3-241795832DDA}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD.exe
FirewallRules: [{FB9D8A30-EA0A-4AE0-A143-0D9822556BFA}] => (Allow) C:\Program Files (x86)\Acer\Acer Media\DMCDaemon.exe
FirewallRules: [{622F1F22-B0E0-4602-88FF-7E4BE5665939}] => (Allow) C:\Program Files (x86)\Acer\Acer Media\DMCDaemon.exe
FirewallRules: [{1E7D9559-63EC-4D32-BA88-C969DB527D05}] => (Allow) C:\Program Files (x86)\Acer\Acer Media\WindowsUpnpMV.exe
FirewallRules: [{962B1694-7C6A-48D4-8964-346C11450F03}] => (Allow) C:\Program Files (x86)\Acer\Acer Media\WindowsUpnpMV.exe
FirewallRules: [{FF8F480F-D39F-4359-BBF4-C1A00B76E43B}] => (Allow) C:\Program Files (x86)\Acer\Acer Media\DMCDaemon.exe
FirewallRules: [{68A1B8D1-6863-4F95-9021-C40449AF7F56}] => (Allow) C:\Program Files (x86)\Acer\Acer Media\DMCDaemon.exe
FirewallRules: [{60C2F3C5-B1EE-429A-975A-90F0093A4260}] => (Allow) C:\Program Files (x86)\Acer\Acer Media\WindowsUpnpMV.exe
FirewallRules: [{C72CCF90-1969-46E3-8254-E873C1E820C2}] => (Allow) C:\Program Files (x86)\Acer\Acer Media\WindowsUpnpMV.exe
FirewallRules: [{4B863526-F96D-4A1C-BC11-34D96CED5B7B}] => (Allow) C:\Program Files (x86)\Acer\Acer Photo\DMCDaemon.exe
FirewallRules: [{C7007839-AAB2-4721-82DB-41C334145BC6}] => (Allow) C:\Program Files (x86)\Acer\Acer Photo\DMCDaemon.exe
FirewallRules: [{F1561C61-0CC3-453E-AA96-80A50073F933}] => (Allow) C:\Program Files (x86)\Acer\Acer Photo\WindowsUpnp.exe
FirewallRules: [{0956945E-ECEB-454F-AA7E-3E4E416B94EF}] => (Allow) C:\Program Files (x86)\Acer\Acer Photo\WindowsUpnp.exe
FirewallRules: [{8483553C-17C6-40E6-8C14-FED5CDA1A2B5}] => (Allow) C:\Program Files (x86)\Acer\Acer Photo\DMCDaemon.exe
FirewallRules: [{7219418A-0269-43F4-8637-E3BF19C0C338}] => (Allow) C:\Program Files (x86)\Acer\Acer Photo\DMCDaemon.exe
FirewallRules: [{4A54BFC3-D4FE-4C4C-AFC7-69A630C66FC3}] => (Allow) C:\Program Files (x86)\Acer\Acer Photo\WindowsUpnp.exe
FirewallRules: [{D23B23B3-01CE-400B-A884-9762D24CC810}] => (Allow) C:\Program Files (x86)\Acer\Acer Photo\WindowsUpnp.exe
FirewallRules: [{59FED6E3-EF16-46D3-8DD8-C36DF47F912B}] => (Allow) C:\Program Files (x86)\Acer\Acer Portal\ccd.exe
FirewallRules: [{E54F8976-3F9C-4949-A45A-1539FF2E344C}] => (Allow) C:\Program Files (x86)\Acer\Acer Portal\ccd.exe
FirewallRules: [{F48263C3-F917-409F-9702-CF9C9C198F9D}] => (Allow) C:\Program Files (x86)\Acer\Acer Portal\Sdd.exe
FirewallRules: [{0D06A8F2-5F3B-4F05-B642-959DB220A0C1}] => (Allow) C:\Program Files (x86)\Acer\Acer Portal\Sdd.exe
FirewallRules: [{5EE6C1DA-08E6-4857-ADF3-D0A43994F7F8}] => (Allow) C:\Program Files (x86)\Acer\Acer Portal\virtualdrive.exe
FirewallRules: [{FEE32B52-2861-4E12-8DE6-F5612EE38C50}] => (Allow) C:\Program Files (x86)\Acer\Acer Portal\virtualdrive.exe
FirewallRules: [{83022108-C32A-40A8-92E9-A3F4808BC15A}] => (Allow) C:\Program Files (x86)\Acer\Acer Portal\ccd.exe
FirewallRules: [{8EBBC63A-315B-4834-88B2-CAEC6FFBC836}] => (Allow) C:\Program Files (x86)\Acer\Acer Portal\ccd.exe
FirewallRules: [{784E8EFF-739D-44EE-91EB-FCE0AEE7368F}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{DDD272BD-F836-46B5-97DA-6445F9FBE302}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{55F745E5-9DD0-4AC1-8670-C8A746E1204C}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{256972A2-5F68-4277-BC1E-0A9C3FAC9B05}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{34228308-62F7-4877-8EB9-ACEE6E3F24BE}] => (Allow) C:\Program Files (x86)\GameforgeLive\gfl_client.exe
FirewallRules: [{ACA4E598-83A4-4F7C-A0DF-2574CDD03756}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
FirewallRules: [{4A3DC8F5-7AE0-415E-9D44-2758E8B2CD40}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
FirewallRules: [{7C9C10FC-2D80-4E62-8008-D520DB981432}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
FirewallRules: [{8F9439EE-2590-47EE-892D-EA1106AA5869}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Source\hl2.exe
FirewallRules: [{EFA6776B-4BFD-4C91-AB95-547A8168AF8C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Source\hl2.exe
FirewallRules: [{70E3E026-F6FB-473B-BAD8-D0DDFDD905B6}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{0770D0BE-C57E-4C92-86F3-C4C54587DC3F}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{1C6FCE1E-66FA-4C9B-8B43-776910F0D503}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{8CBBA233-C5F1-419B-9353-9C5711233715}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{A7BC554F-8F33-4328-9B65-1F5E75E4427F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Call of Duty Black Ops II\t6mp.exe
FirewallRules: [{FACEFBF5-B11E-4156-85D6-F7DBAA63C276}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Call of Duty Black Ops II\t6mp.exe
FirewallRules: [{383B2C2F-786C-499B-A717-18C52C712CB4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Call of Duty Black Ops II\t6sp.exe
FirewallRules: [{E4E54C7E-2E6C-4088-9F0C-658C8521734E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Call of Duty Black Ops II\t6sp.exe
FirewallRules: [{546DAEFA-E7CC-44DD-B2D9-5BBB431C7D58}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Call of Duty Black Ops II\t6zm.exe
FirewallRules: [{82DF21ED-5735-49CC-A071-9D72E599A137}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Call of Duty Black Ops II\t6zm.exe
FirewallRules: [{A5732DD7-EBCB-496A-A89B-51C1A5E1A2F4}] => (Allow) C:\Program Files\Java\jre1.8.0_45\bin\javacpl.exe
FirewallRules: [{8824542F-F357-4151-A2EF-7E986145C905}] => (Allow) C:\Program Files\Java\jre1.8.0_45\bin\javacpl.exe
FirewallRules: [{87C2D4A0-4619-44B1-AB75-BEC3E782F729}] => (Allow) C:\Program Files\Java\jre1.8.0_45\bin\javacpl.exe
FirewallRules: [{6D569F9A-2AB3-4629-A8FD-BA0FF9C7D927}] => (Allow) C:\Program Files\Java\jre1.8.0_45\bin\javacpl.exe
FirewallRules: [{306237A1-8C6E-44E1-974C-4E904A8ED4CB}] => (Allow) C:\Program Files\Java\jre1.8.0_45\bin\javacpl.exe
FirewallRules: [{19765BC9-502D-43BE-8F46-8FC6B53A86BE}] => (Allow) C:\Program Files\Java\jre1.8.0_45\bin\javacpl.exe
FirewallRules: [{F3E80958-FB79-45FE-9676-3FA5CC8553D0}] => (Allow) C:\Program Files\Java\jre1.8.0_45\bin\javacpl.exe
FirewallRules: [{012F5B9B-3A58-4797-A685-CB5D046D8039}] => (Allow) C:\Program Files\Java\jre1.8.0_45\bin\javacpl.exe
FirewallRules: [TCP Query User{577A31B1-FC0D-4E81-BEB7-3ECC9F7F0093}C:\program files\java\jre1.8.0_45\bin\java.exe] => (Allow) C:\program files\java\jre1.8.0_45\bin\java.exe
FirewallRules: [UDP Query User{B0AE0150-6D84-41BF-8675-51328C75E02D}C:\program files\java\jre1.8.0_45\bin\java.exe] => (Allow) C:\program files\java\jre1.8.0_45\bin\java.exe
FirewallRules: [{EB6CD351-3EC1-4251-85C3-1FC9B26D44E7}] => (Allow) C:\program files\java\jre1.8.0_45\bin\java.exe
FirewallRules: [{97A3EED2-4418-4B92-A793-B38A40803068}] => (Allow) C:\program files\java\jre1.8.0_45\bin\java.exe
FirewallRules: [TCP Query User{5894B1E8-8FFE-445F-B183-FDC1665C601C}C:\users\luke\downloads\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\users\luke\downloads\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [UDP Query User{2C988805-8DA8-4342-A87A-0C3083029CD3}C:\users\luke\downloads\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\users\luke\downloads\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [{3377194A-0E72-4CA6-8B4B-A638DCD001BC}] => (Allow) C:\Program Files\Java\jre1.8.0_45\bin\javacpl.exe
FirewallRules: [{D45510EC-5B2C-4C45-A8BE-4A23B16F4255}] => (Allow) C:\Program Files\Java\jre1.8.0_45\bin\javacpl.exe
FirewallRules: [{4DD39C25-CB56-4F35-BB9F-CEB53C9D378F}] => (Allow) C:\program files\java\jre1.8.0_45\bin\java.exe
FirewallRules: [{91607FB7-616A-401E-B22E-CC3E2842FDAE}] => (Allow) C:\program files\java\jre1.8.0_45\bin\java.exe
FirewallRules: [{FFBA80FC-9BF7-4BAE-9829-D60CF37B2120}] => (Allow) C:\Users\Luke\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{D6C0FC17-EB84-461A-A7A8-E8E85DAB2237}] => (Allow) C:\Users\Luke\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [TCP Query User{ABE424B3-2C9D-4B8B-A053-0E4E58A723CC}C:\program files (x86)\ea games\battlefield play4free\bfp4f.exe] => (Allow) C:\program files (x86)\ea games\battlefield play4free\bfp4f.exe
FirewallRules: [UDP Query User{EAAF7A58-520C-48A2-9EB2-6C403AF6ADFB}C:\program files (x86)\ea games\battlefield play4free\bfp4f.exe] => (Allow) C:\program files (x86)\ea games\battlefield play4free\bfp4f.exe
FirewallRules: [TCP Query User{E6704CC5-FDBD-45A8-9858-FA3C61B4A567}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{43569F6A-E34E-42FD-B924-5F64E8531891}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{F6318D68-0C39-49D6-88C8-E94174EE956E}] => (Allow) C:\Program Files (x86)\Software4u\iDevice Manager\Software4u.IDeviceManager.exe
FirewallRules: [{2F9F0EDE-F98A-48FD-9311-8EBCD66D54A3}] => (Allow) C:\Program Files (x86)\Software4u\iDevice Manager\Software4u.IDeviceManager.exe
FirewallRules: [{BA102D17-2FF9-47CC-8098-0708CEBC3DE8}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{5F3E8C8F-2743-4502-A1A0-99294CD3508D}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{C9CD8245-4C79-483C-B399-3735C8A4A978}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{170C9D24-870A-4752-88D0-39D7F47515BA}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{870B228C-8B91-4066-90C7-6AFABE147E24}] => (Allow) C:\Program Files\iTunes\iTunes.exe
FirewallRules: [TCP Query User{F97EB000-B010-4F53-9CD9-5BFA2FF8AEAA}C:\programdata\electronic arts\need for speed world\data\nfsw.exe] => (Allow) C:\programdata\electronic arts\need for speed world\data\nfsw.exe
FirewallRules: [UDP Query User{77974C3F-126D-4BE9-B13E-E61B8E6CEFE9}C:\programdata\electronic arts\need for speed world\data\nfsw.exe] => (Allow) C:\programdata\electronic arts\need for speed world\data\nfsw.exe
FirewallRules: [{AECA3B0D-05E3-4D86-81B1-327E1BDC5095}] => (Block) C:\programdata\electronic arts\need for speed world\data\nfsw.exe
FirewallRules: [{8E3C3A08-08F8-41C7-ACCA-78DAAFEB4F82}] => (Block) C:\programdata\electronic arts\need for speed world\data\nfsw.exe
FirewallRules: [{1F4F3D50-A2AE-492F-B2D6-B4BD662677CF}] => (Allow) C:\Program Files (x86)\Alarm für Cobra 11 - Das Syndikat - DEMO\CrashTime4Hi.exe
FirewallRules: [{0A819849-291C-4D86-B2A8-4533197A3331}] => (Allow) C:\Program Files (x86)\Alarm für Cobra 11 - Das Syndikat - DEMO\CrashTime4Hi.exe
FirewallRules: [{79EF5871-5713-4449-AAA6-C4D3CE263C5B}] => (Allow) C:\Program Files (x86)\Alarm für Cobra 11 - Das Syndikat - DEMO\CrashTime4Low.exe
FirewallRules: [{E3E31E13-DEEB-4634-9B54-27C81E766235}] => (Allow) C:\Program Files (x86)\Alarm für Cobra 11 - Das Syndikat - DEMO\CrashTime4Low.exe
FirewallRules: [{F67540D9-1ADD-4F24-9D06-DB41FC2ABF80}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [TCP Query User{F341A0F9-79CA-4754-B6F2-66BDB236230C}C:\users\luke\desktop\johnyserver\css\srcds.exe] => (Allow) C:\users\luke\desktop\johnyserver\css\srcds.exe
FirewallRules: [UDP Query User{6570CFC7-2BF5-4430-97B1-0A6298175165}C:\users\luke\desktop\johnyserver\css\srcds.exe] => (Allow) C:\users\luke\desktop\johnyserver\css\srcds.exe
FirewallRules: [TCP Query User{A3C6189A-22D7-459D-B5AC-347B014566BC}C:\program files (x86)\hlsw\hlsw.exe] => (Allow) C:\program files (x86)\hlsw\hlsw.exe
FirewallRules: [UDP Query User{23988B52-A1DC-4C7A-AAE6-F9A72A414644}C:\program files (x86)\hlsw\hlsw.exe] => (Allow) C:\program files (x86)\hlsw\hlsw.exe
FirewallRules: [{6B6DC1FA-C976-4F84-A119-97D9EFF98D9B}] => (Allow) LPort=12000
FirewallRules: [{58612240-A7A8-4BC5-BF08-C018B433E4CF}] => (Allow) LPort=27015
FirewallRules: [{7F0CF6A4-A03B-4A94-B254-D99D1CC3DC7F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Skyrim\SkyrimLauncher.exe
FirewallRules: [{65272A67-B35A-4F4F-9B88-FF425FDD2EFA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Skyrim\SkyrimLauncher.exe
FirewallRules: [TCP Query User{3AB22375-CAF2-4628-B14D-BD254A903407}C:\users\luke\desktop\neuer ordner\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\users\luke\desktop\neuer ordner\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [UDP Query User{F44DE5B0-95ED-41C2-A771-C4057269AEB3}C:\users\luke\desktop\neuer ordner\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\users\luke\desktop\neuer ordner\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [{A23FBA4D-C174-49C9-A879-FE982548980F}] => (Allow) C:\program files\java\jre1.8.0_45\bin\java.exe
FirewallRules: [{4B78278C-B488-4C26-88E1-8FB2129C64C0}] => (Allow) C:\program files\java\jre1.8.0_45\bin\java.exe
FirewallRules: [{5617ABCE-4A30-4B1C-9B38-DF22AEBD1872}] => (Allow) C:\users\luke\downloads\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [{182203E0-806E-4661-A4C1-B59EE10E5C26}] => (Allow) C:\users\luke\downloads\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [{C46AECDE-EFCF-441A-A813-1D460B73E1C9}] => (Allow) C:\users\luke\desktop\neuer ordner\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [{A5FAC95F-A382-4D6D-BA68-4A972637E584}] => (Allow) C:\users\luke\desktop\neuer ordner\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [{B197CC8A-CC1F-4121-B4E1-91A402DB5198}] => (Allow) C:\Program Files (x86)\Maxthon\Bin\Maxthon.exe
FirewallRules: [{20B023C1-D6DC-4A6A-AE97-3515B9511E6C}] => (Allow) C:\Program Files (x86)\Maxthon\Bin\Maxthon.exe
FirewallRules: [{26C6452A-F41B-49FC-B057-3A1C51068125}] => (Allow) C:\Program Files (x86)\Maxthon\Bin\MxUp.exe
FirewallRules: [{DF503139-67E5-43CA-BD72-A33D8084E6FE}] => (Allow) C:\Program Files (x86)\Maxthon\Bin\MxUp.exe
FirewallRules: [{494258DC-76F3-4ABB-8331-B31F36DB2B92}] => (Allow) C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe
FirewallRules: [{6046E8C7-C1B5-4244-8988-A43A930BD440}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (04/29/2015 11:51:43 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: LUKAS)
Description: Microsoft.SkypeApp_kzf8qxf38zg5c3
Error: (04/29/2015 11:36:43 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: LUKAS)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe3
Error: (04/29/2015 11:36:43 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: LUKAS)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe3
Error: (04/29/2015 11:36:43 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: LUKAS)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe3
Error: (04/29/2015 11:36:43 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: LUKAS)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe3
Error: (04/29/2015 11:36:43 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: LUKAS)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe3
Error: (04/29/2015 11:36:42 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: LUKAS)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe3
Error: (04/29/2015 11:36:42 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: LUKAS)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe3
Error: (04/29/2015 11:36:42 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: LUKAS)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe3
Error: (04/29/2015 11:36:42 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: LUKAS)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe3
System errors:
=============
Error: (04/29/2015 10:29:35 PM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert und an den Remoteendpunkt gesendet. Dies kann dazu führen, dass die Verbindung beendet wird. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 42. Der Windows-SChannel-Fehlerstatus lautet: 250.
Error: (04/29/2015 10:29:10 PM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert und an den Remoteendpunkt gesendet. Dies kann dazu führen, dass die Verbindung beendet wird. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 10. Der Windows-SChannel-Fehlerstatus lautet: 10.
Error: (04/29/2015 10:29:10 PM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert und an den Remoteendpunkt gesendet. Dies kann dazu führen, dass die Verbindung beendet wird. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 42. Der Windows-SChannel-Fehlerstatus lautet: 250.
Error: (04/29/2015 10:27:30 PM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert und an den Remoteendpunkt gesendet. Dies kann dazu führen, dass die Verbindung beendet wird. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 42. Der Windows-SChannel-Fehlerstatus lautet: 250.
Error: (04/29/2015 10:26:39 PM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert und an den Remoteendpunkt gesendet. Dies kann dazu führen, dass die Verbindung beendet wird. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 42. Der Windows-SChannel-Fehlerstatus lautet: 250.
Error: (04/29/2015 10:26:38 PM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert und an den Remoteendpunkt gesendet. Dies kann dazu führen, dass die Verbindung beendet wird. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 42. Der Windows-SChannel-Fehlerstatus lautet: 250.
Error: (04/29/2015 10:24:32 PM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert und an den Remoteendpunkt gesendet. Dies kann dazu führen, dass die Verbindung beendet wird. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 10. Der Windows-SChannel-Fehlerstatus lautet: 10.
Error: (04/29/2015 10:23:55 PM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert und an den Remoteendpunkt gesendet. Dies kann dazu führen, dass die Verbindung beendet wird. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 40. Der Windows-SChannel-Fehlerstatus lautet: 252.
Error: (04/29/2015 10:23:54 PM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert und an den Remoteendpunkt gesendet. Dies kann dazu führen, dass die Verbindung beendet wird. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 40. Der Windows-SChannel-Fehlerstatus lautet: 252.
Error: (04/29/2015 10:23:54 PM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert und an den Remoteendpunkt gesendet. Dies kann dazu führen, dass die Verbindung beendet wird. Die schwerwiegende Warnung hat folgenden für das TLS-Protokoll definierten Code: 40. Der Windows-SChannel-Fehlerstatus lautet: 252.
Microsoft Office Sessions:
=========================
Error: (04/29/2015 11:51:43 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: LUKAS)
Description: Microsoft.SkypeApp_kzf8qxf38zg5c3
Error: (04/29/2015 11:36:43 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: LUKAS)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe3
Error: (04/29/2015 11:36:43 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: LUKAS)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe3
Error: (04/29/2015 11:36:43 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: LUKAS)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe3
Error: (04/29/2015 11:36:43 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: LUKAS)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe3
Error: (04/29/2015 11:36:43 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: LUKAS)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe3
Error: (04/29/2015 11:36:42 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: LUKAS)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe3
Error: (04/29/2015 11:36:42 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: LUKAS)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe3
Error: (04/29/2015 11:36:42 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: LUKAS)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe3
Error: (04/29/2015 11:36:42 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: LUKAS)
Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe3
CodeIntegrity Errors:
===================================
Date: 2015-04-29 21:22:55.664
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2015-04-29 14:23:18.733
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2015-04-29 10:12:39.680
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2015-04-26 16:53:51.635
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Common Files\Avnex\vcs64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2015-04-26 16:04:21.227
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-04-26 16:04:21.016
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-04-25 02:08:49.445
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-04-25 02:08:49.281
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-04-24 22:56:34.461
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-04-24 22:56:33.952
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i5-4200U CPU @ 1.60GHz
Percentage of memory in use: 57%
Total physical RAM: 8072.27 MB
Available physical RAM: 3403.35 MB
Total Pagefile: 16264.27 MB
Available Pagefile: 10794.91 MB
Total Virtual: 131072 MB
Available Virtual: 131071.77 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:913.7 GB) (Free:755.01 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: F153F78B)
Partition: GPT Partition Type.
==================== End Of Log ============================ FRST1.txt Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 29-04-2015 01
Ran by Luke (administrator) on LUKAS on 30-04-2015 00:10:57
Running from C:\Users\Luke\AppData\Local\Temp
Loaded Profiles: Luke (Available profiles: Luke & Administrator)
Platform: Windows 8.1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11 (Default browser path: "C:\Program Files (x86)\Maxthon\Bin\Maxthon.exe" "%1")
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\AdminService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\Acer Portal\CCDMonitorService.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(XTab system) C:\Program Files (x86)\XTab\ProtectService.exe
(Infonaut) C:\Program Files (x86)\Infonaut_1.10.0.14\Service\insvc.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe
(McAfee, Inc.) C:\Windows\System32\mfevtps.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
() C:\Users\Luke\AppData\Local\B835A680-1430316511-E311-B039-F8A963069189\snsi9750.tmp
() C:\Program Files (x86)\Metal Maker\updateMetalMaker.exe
() C:\Program Files (x86)\Metal Maker\bin\utilMetalMaker.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMEvent.exe
(SearchProtect) C:\Program Files (x86)\XTab\CmdShell.exe
(XTab system) C:\Program Files (x86)\XTab\HPNotify.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfefire.exe
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMTray.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDTouch.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
() C:\Users\Luke\AppData\Local\mbot_de_616\upmbot_de_616.exe
() C:\Program Files (x86)\Metal Maker\bin\MetalMaker.expext.exe
() C:\Program Files (x86)\Metal Maker\bin\MetalMaker.BrowserAdapter.exe
() C:\Program Files (x86)\Metal Maker\bin\MetalMaker.BrowserAdapter64.exe
() C:\Program Files (x86)\Metal Maker\bin\MetalMaker.PurBrowse64.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Atheros Communications) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
() C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Pokki) C:\Users\Luke\AppData\Local\Pokki\Engine\HostAppServiceUpdater.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastUI.exe
() C:\Program Files (x86)\mbot_de_616\mbot_de_616.exe
() C:\ProgramData\{0b69d174-b53b-1b86-0b69-9d174b5345d2}\Download.exe
(SoftBrain Technologies Ltd.) C:\Users\Luke\AppData\Local\SmartWeb\SmartWebHelper.exe
(SoftBrain Technologies Ltd.) C:\Users\Luke\AppData\Local\SmartWeb\SmartWebApp.exe
(Pokki) C:\Users\Luke\AppData\Local\Pokki\Engine\HostAppService.exe
(Pokki) C:\Users\Luke\AppData\Local\Pokki\Engine\HostAppService.exe
(Pokki) C:\Users\Luke\AppData\Local\Pokki\Engine\StartMenuIndexer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
() C:\Program Files (x86)\gmsd_de_478\gmsd_de_478.exe
() C:\Users\Luke\AppData\Local\gmsd_de_478\upgmsd_de_478.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe
() C:\Program Files\shopperz\nseven.exe
() C:\Program Files\shopperz\csrcc.exe
() C:\Program Files\shopperz\grunt.exe
() C:\Program Files\shopperz\wrex.exe
() C:\Program Files\shopperz\wrex64.exe
(Time Lapse Solutions) C:\ProgramData\XVrbwwYL\DDYvwy.exe
(Acresso Software Inc.) C:\Users\Luke\AppData\Local\Temp\{EEC0A9E7-0462-4743-9761-4B1CFF8D1277}\ISBEW64.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
() C:\ProgramData\NetEngine\bin\D8\netengine.exe
() C:\ProgramData\NetEngine\bin\D8\netengine.exe
(Maxthon International ltd.) C:\Program Files (x86)\Maxthon\Bin\Maxthon.exe
(Maxthon International ltd.) C:\Program Files (x86)\Maxthon\Bin\Maxthon.exe
(Maxthon International ltd.) C:\Program Files (x86)\Maxthon\Bin\Maxthon.exe
(Maxthon International ltd.) C:\Program Files (x86)\Maxthon\Bin\Maxthon.exe
(Electronic Arts, Inc.) C:\Program Files (x86)\Electronic Arts\Die Sims 3\Game\Bin\TS3.exe
() C:\Users\Luke\AppData\Roaming\B835A680-1430309082-E311-B039-F8A963069189\nsg7E93.tmp
(Maxthon International ltd.) C:\Program Files (x86)\Maxthon\Bin\Maxthon.exe
(Maxthon International ltd.) C:\Program Files (x86)\Maxthon\Bin\Maxthon.exe
(Maxthon International ltd.) C:\Program Files (x86)\Maxthon\Bin\Maxthon.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2890056 2013-09-06] (ELAN Microelectronics Corp.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13647576 2013-08-27] (Realtek Semiconductor)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [169768 2015-04-07] (Apple Inc.)
HKLM\...\Run: [shopperz] => C:\Program Files\shopperz\wrex.exe [429944 2015-02-15] ()
HKLM\...\Run: [shopperz64] => C:\Program Files\shopperz\wrex64.exe [460664 2015-02-15] ()
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766208 2013-10-02] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [3978600 2015-03-30] (LogMeIn Inc.)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5515496 2015-04-29] (Avast Software s.r.o.)
HKLM-x32\...\Run: [mbot_de_616] => C:\Program Files (x86)\mbot_de_616\mbot_de_616.exe [3982792 2015-04-28] ()
HKLM-x32\...\Run: [WinCheck] => C:\Users\Luke\AppData\Local\B835A680-1430316354-E311-B039-F8A963069189\bnsd4DB0.exe
HKLM-x32\...\Run: [gmsd_de_466] => [X]
HKLM-x32\...\Run: [SmartWeb] => C:\Users\Luke\AppData\Local\SmartWeb\SmartWebHelper.exe [270368 2015-02-17] (SoftBrain Technologies Ltd.)
HKLM-x32\...\Run: [gmsd_de_478] => C:\Program Files (x86)\gmsd_de_478\gmsd_de_478.exe [3983304 2015-04-29] ()
HKLM-x32\...\RunOnce: [upmbot_de_616.exe] => C:\Users\Luke\AppData\Local\gmsd_de_478\upmbot_de_616.exe -runonce
HKLM-x32\...\RunOnce: [upgmsd_de_478.exe] => C:\Users\Luke\AppData\Local\gmsd_de_478\upgmsd_de_478.exe [3285448 2015-04-29] ()
HKLM-x32\...\RunOnce: [Update] => C:\Users\Luke\AppData\Roaming\ASPackage\ASPackage.exe [325762 2015-04-29] ( )
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [132736 2013-09-07] (Atheros Communications)
HKLM\...\Policies\Explorer: [NoFolderOptions] 0
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKU\S-1-5-21-2833233637-2508301349-1291184669-1001\...\Run: [Pokki] => "%LOCALAPPDATA%\Pokki\Engine\HostAppServiceUpdater.exe" /LOGON
HKU\S-1-5-21-2833233637-2508301349-1291184669-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [2889408 2015-04-14] (Valve Corporation)
HKU\S-1-5-21-2833233637-2508301349-1291184669-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [31682144 2015-03-25] (Skype Technologies S.A.)
HKU\S-1-5-21-2833233637-2508301349-1291184669-1001\...\Run: [iDevice Manager Launcher] => C:\Program Files (x86)\Software4u\iDevice Manager\Software4u.IDMLauncher.exe [134144 2015-04-10] (Marx Softwareentwicklung - www.software4u.de)
HKU\S-1-5-21-2833233637-2508301349-1291184669-1001\...\Run: [GoogleChromeAutoLaunch_357DA613DC992796A98A448139ABAE37] => C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe [637440 2015-03-16] (Crossbrowse)
HKU\S-1-5-21-2833233637-2508301349-1291184669-1001\...\Run: [Optimizer Pro] => C:\Program Files (x86)\Optimizer Pro 3.86\OptProLauncher.exe [148008 2015-04-26] ()
Startup: C:\Users\Luke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\crossbrowse.lnk [2015-04-29]
ShortcutTarget: crossbrowse.lnk -> C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe (Crossbrowse)
Startup: C:\Users\Luke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Download.lnk [2015-04-29]
ShortcutTarget: Download.lnk -> C:\ProgramData\{0b69d174-b53b-1b86-0b69-9d174b5345d2}\Download.exe ()
Startup: C:\Users\Luke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\hqghumeaylnlf.lnk [2015-04-29]
ShortcutTarget: hqghumeaylnlf.lnk -> C:\ProgramData\{32b7aad5-3436-182d-32b7-7aad5343ab54}\hqghumeaylnlf.exe (PC Utilities Software Limited)
Startup: C:\Users\Luke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SmartWeb.lnk [2015-04-29]
ShortcutTarget: SmartWeb.lnk -> C:\Users\Luke\AppData\Local\SmartWeb\SmartWebHelper.exe (SoftBrain Technologies Ltd.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-04-29] (Avast Software s.r.o.)
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.oursurfing.com/?type=hp&ts=1430308955&z=163f000315e11019ae43519g4z4c7e7cbe9bet8w1e&from=fsf&uid=WDCXWD10JPVX-22JC3T0_WD-WXD1EB3LMD81LMD81
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?trackid=sp-006
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.oursurfing.com/web/?type=ds&ts=1430308955&z=163f000315e11019ae43519g4z4c7e7cbe9bet8w1e&from=fsf&uid=WDCXWD10JPVX-22JC3T0_WD-WXD1EB3LMD81LMD81&q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=sp-006&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.oursurfing.com/?type=hp&ts=1430308955&z=163f000315e11019ae43519g4z4c7e7cbe9bet8w1e&from=fsf&uid=WDCXWD10JPVX-22JC3T0_WD-WXD1EB3LMD81LMD81
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.oursurfing.com/web/?type=ds&ts=1430308955&z=163f000315e11019ae43519g4z4c7e7cbe9bet8w1e&from=fsf&uid=WDCXWD10JPVX-22JC3T0_WD-WXD1EB3LMD81LMD81&q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\S-1-5-21-2833233637-2508301349-1291184669-1001\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/search?trackid=sp-006&q={searchTerms}
HKU\S-1-5-21-2833233637-2508301349-1291184669-1001\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/?trackid=sp-006
HKU\S-1-5-21-2833233637-2508301349-1291184669-1001\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.google.com/?trackid=sp-006
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.oursurfing.com/web/?type=ds&ts=1430308955&z=163f000315e11019ae43519g4z4c7e7cbe9bet8w1e&from=fsf&uid=WDCXWD10JPVX-22JC3T0_WD-WXD1EB3LMD81LMD81&q={searchTerms}
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.oursurfing.com/web/?type=ds&ts=1430308955&z=163f000315e11019ae43519g4z4c7e7cbe9bet8w1e&from=fsf&uid=WDCXWD10JPVX-22JC3T0_WD-WXD1EB3LMD81LMD81&q={searchTerms}
SearchScopes: HKLM -> {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://de.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = https://www.google.com/search?trackid=sp-006&q={searchTerms}
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.oursurfing.com/web/?type=ds&ts=1430308955&z=163f000315e11019ae43519g4z4c7e7cbe9bet8w1e&from=fsf&uid=WDCXWD10JPVX-22JC3T0_WD-WXD1EB3LMD81LMD81&q={searchTerms}
SearchScopes: HKLM-x32 -> {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://de.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms}
SearchScopes: HKLM-x32 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = https://www.google.com/search?trackid=sp-006&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2833233637-2508301349-1291184669-1001 -> DefaultScope {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = https://www.google.com/search?trackid=sp-006&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2833233637-2508301349-1291184669-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.oursurfing.com/web/?utm_source=b&utm_medium=fsf&utm_campaign=install_ie&utm_content=ds&from=fsf&uid=WDCXWD10JPVX-22JC3T0_WD-WXD1EB3LMD81LMD81&ts=1430308999&type=default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2833233637-2508301349-1291184669-1001 -> {2023ECEC-E06A-4372-A1C7-0B49F9E0FFF0} URL = hxxp://www.oursurfing.com/web/?utm_source=b&utm_medium=fsf&utm_campaign=install_ie&utm_content=ds&from=fsf&uid=WDCXWD10JPVX-22JC3T0_WD-WXD1EB3LMD81LMD81&ts=1430308999&type=default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2833233637-2508301349-1291184669-1001 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.oursurfing.com/web/?utm_source=b&utm_medium=fsf&utm_campaign=install_ie&utm_content=ds&from=fsf&uid=WDCXWD10JPVX-22JC3T0_WD-WXD1EB3LMD81LMD81&ts=1430308999&type=default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2833233637-2508301349-1291184669-1001 -> {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://www.oursurfing.com/web/?utm_source=b&utm_medium=fsf&utm_campaign=install_ie&utm_content=ds&from=fsf&uid=WDCXWD10JPVX-22JC3T0_WD-WXD1EB3LMD81LMD81&ts=1430308999&type=default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2833233637-2508301349-1291184669-1001 -> {BB866FE7-57AF-456D-B09C-81C3118619DA} URL = hxxp://www.oursurfing.com/web/?utm_source=b&utm_medium=fsf&utm_campaign=install_ie&utm_content=ds&from=fsf&uid=WDCXWD10JPVX-22JC3T0_WD-WXD1EB3LMD81LMD81&ts=1430308999&type=default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2833233637-2508301349-1291184669-1001 -> {E733165D-CBCF-4FDA-883E-ADEF965B476C} URL = hxxp://www.oursurfing.com/web/?utm_source=b&utm_medium=fsf&utm_campaign=install_ie&utm_content=ds&from=fsf&uid=WDCXWD10JPVX-22JC3T0_WD-WXD1EB3LMD81LMD81&ts=1430308999&type=default&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2833233637-2508301349-1291184669-1001 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = https://www.google.com/search?trackid=sp-006&q={searchTerms}
BHO: No Name -> {141c9d6a-65cf-4420-b8e4-88b4268a9e14} -> No File
BHO: No Name -> {5fb97375-172f-4a69-89f0-bc02a68bacee} -> No File
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_45\bin\ssv.dll [2015-04-24] (Oracle Corporation)
BHO: BlockAndSurf -> {79AAD48C-7658-E566-0E71-9D097E9E899C} -> C:\Program Files (x86)\version42BlockAndSurf\192_x64.dll [2015-04-29] ()
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-04-29] (Avast Software s.r.o.)
BHO: McAfee SiteAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\siteadvisor\x64\McIEPlg.dll [2015-03-11] (McAfee, Inc.)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-04-24] (Oracle Corporation)
BHO-x32: No Name -> {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} -> No File
BHO-x32: BlockAndSurf -> {79AAD48C-7658-E566-0E71-9D097E9E899C} -> C:\Program Files (x86)\version42BlockAndSurf\192.dll [2015-04-29] ()
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-04-29] (Avast Software s.r.o.)
BHO-x32: McAfee SiteAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\siteadvisor\McIEPlg.dll [2015-03-11] (McAfee, Inc.)
BHO-x32: No Name -> {d1ed8ab0-4dff-42de-95da-49e0537b3612} -> No File
Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\siteadvisor\x64\McIEPlg.dll [2015-03-11] (McAfee, Inc.)
Toolbar: HKLM-x32 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\siteadvisor\McIEPlg.dll [2015-03-11] (McAfee, Inc.)
DPF: HKLM-x32 {C8BC46C7-921C-4102-B67D-F1F7E65FB0BE} https://battlefield.play4free.com/static/updater/BP4FUpdater_1.0.96.0.cab
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\x64\McIEPlg.dll [2015-03-11] (McAfee, Inc.)
Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\McIEPlg.dll [2015-03-11] (McAfee, Inc.)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\x64\McIEPlg.dll [2015-03-11] (McAfee, Inc.)
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\siteadvisor\McIEPlg.dll [2015-03-11] (McAfee, Inc.)
StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe hxxp://www.oursurfing.com/?type=sc&ts=1430308755&z=ee6bff7719bca02b2914038gezac6eac5e4bcm1w0c&from=amt&uid=WDCXWD10JPVX-22JC3T0_WD-WXD1EB3LMD81LMD81
FireFox:
========
FF ProfilePath: C:\Users\Luke\AppData\Roaming\Mozilla\Firefox\Profiles\ce36tu02.default
FF NewTab: hxxp://www.oursurfing.com/newtab/?type=nt&ts=1430308955&z=163f000315e11019ae43519g4z4c7e7cbe9bet8w1e&from=fsf&uid=WDCXWD10JPVX-22JC3T0_WD-WXD1EB3LMD81LMD81
FF Homepage: hxxp://www.oursurfing.com/?type=hp&ts=1430308955&z=163f000315e11019ae43519g4z4c7e7cbe9bet8w1e&from=fsf&uid=WDCXWD10JPVX-22JC3T0_WD-WXD1EB3LMD81LMD81
FF NetworkProxy: "type", 0
FF Plugin: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-04-24] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-04-24] (Oracle Corporation)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-09-04] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-09-04] (Intel Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-04-17] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-04-17] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-02-05] (VideoLAN)
FF user.js: detected! => C:\Users\Luke\AppData\Roaming\Mozilla\Firefox\Profiles\ce36tu02.default\user.js [2015-04-29]
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor
FF Extension: McAfee SiteAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor [2013-10-31]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-04-29]
FF HKLM-x32\...\Firefox\Extensions: [quick_searchff@gmail.com] - C:\Users\Luke\AppData\Roaming\Mozilla\Firefox\Profiles\ce36tu02.default\extensions\quick_searchff@gmail.com
FF HKLM-x32\...\Firefox\Extensions: [sweetsearch@gmail.com] - C:\Users\Luke\AppData\Roaming\Mozilla\Firefox\Profiles\ce36tu02.default\extensions\sweetsearch@gmail.com
FF HKU\S-1-5-21-2833233637-2508301349-1291184669-1001\...\Firefox\Extensions: [{EDFB8DAF-FFDE-A9DE-F341-F0A7EC5530DB}] - C:\Program Files (x86)\version42BlockAndSurf\192.xpi
FF Extension: BlockAndSurf - C:\Program Files (x86)\version42BlockAndSurf\192.xpi [2015-04-29]
Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR Profile: C:\Users\Luke\AppData\Local\Google\Chrome\User Data\Default
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2015-04-21]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2015-04-21]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-04-29]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 4abaf598; c:\Program Files (x86)\Optimizer Pro 3.86\OptProMon.dll [1792552 2015-04-29] ()
R2 70F4EEDB-1367-4b4f-8247-3133551A7415; C:\Program Files\shopperz\grunt.exe [281976 2015-02-15] ()
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-01-19] (Apple Inc.)
R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [312448 2013-09-07] (Windows (R) Win 7 DDK provider) [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-04-29] (Avast Software s.r.o.)
S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-10-29] (Microsoft Corporation)
R2 CCDMonitorService; C:\Program Files (x86)\Acer\Acer Portal\CCDMonitorService.exe [2650696 2013-07-26] (Acer Incorporated)
R2 csrcc; C:\Program Files\shopperz\csrcc.exe [1445752 2015-02-15] ()
R2 DDYvwy; C:\ProgramData\XVrbwwYL\DDYvwy.exe [2730984 2015-04-29] (Time Lapse Solutions)
R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [663592 2013-07-05] (Acer Incorporated)
R2 ETDService; C:\Program Files\Elantech\ETDService.exe [101192 2013-09-06] (ELAN Microelectronics Corp.)
R2 IHProtect Service; C:\Program Files (x86)\XTab\ProtectService.exe [158816 2015-04-20] (XTab system)
R2 insvc_1.10.0.14; C:\Program Files (x86)\Infonaut_1.10.0.14\Service\insvc.exe [278600 2015-04-10] (Infonaut)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-04] (Intel Corporation)
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [417552 2015-03-30] (LogMeIn, Inc.)
R2 LMSvc; C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe [457768 2013-08-03] (Acer Incorporate)
R2 McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe [154856 2015-04-10] (McAfee, Inc.)
R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [221832 2014-10-01] (McAfee, Inc.)
R2 mfevtp; C:\Windows\system32\mfevtps.exe [189920 2014-10-01] (McAfee, Inc.)
S3 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [4278112 2013-08-01] (Symantec Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [1931632 2015-04-24] (Electronic Arts)
R2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [75136 2015-04-21] ()
R2 rurifuqe; C:\Users\Luke\AppData\Local\B835A680-1430316511-E311-B039-F8A963069189\snsi9750.tmp [122368 2015-04-29] () [File not signed]
R2 shopperz Updater; C:\Program Files\shopperz\nseven.exe [169848 2015-02-15] ()
R2 sudexedu; C:\Users\Luke\AppData\Roaming\B835A680-1430309082-E311-B039-F8A963069189\nsg7E93.tmp [155648 2015-04-29] () [File not signed]
R2 Update Metal Maker; C:\Program Files (x86)\Metal Maker\updateMetalMaker.exe [401648 2015-04-29] ()
R2 Util Metal Maker; C:\Program Files (x86)\Metal Maker\bin\utilMetalMaker.exe [401648 2015-04-29] ()
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [36096 2013-05-21] (Advanced Micro Devices, Inc.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29168 2015-04-29] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [89944 2015-04-29] (Avast Software s.r.o.)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-04-29] (Avast Software s.r.o.)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65736 2015-04-29] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1047320 2015-04-29] (Avast Software s.r.o.)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [442264 2015-04-29] (Avast Software s.r.o.)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [137288 2015-04-29] (Avast Software s.r.o.)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [272248 2015-04-29] ()
R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3859968 2013-08-15] (Qualcomm Atheros Communications, Inc.)
S3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [8536752 2013-07-01] (Broadcom Corporation)
S3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2013-09-07] (Qualcomm Atheros)
S3 BthLEEnum; C:\Windows\System32\drivers\BthLEEnum.sys [226304 2013-12-04] (Microsoft Corporation)
S3 ccSet_NARA; C:\Windows\system32\drivers\NARAx64\0405000.009\ccSetx64.sys [150104 2013-07-30] (Symantec Corporation)
S3 cfwids; C:\Windows\System32\drivers\cfwids.sys [72136 2014-10-01] (McAfee, Inc.)
R1 cherimoya; C:\Windows\System32\drivers\cherimoya.sys [60376 2015-01-06] (Cherimoya Ltd)
R3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [44296 2015-03-30] (LogMeIn Inc.)
R1 innfd_1_10_0_14; C:\Windows\System32\drivers\innfd_1_10_0_14.sys [58224 2015-04-10] (Infonaut)
R3 LMDriver; C:\Windows\System32\drivers\LMDriver.sys [21360 2013-07-17] (Acer Incorporated)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-09-04] (Intel Corporation)
S3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [181584 2014-10-01] (McAfee, Inc.)
R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [313680 2014-10-01] (McAfee, Inc.)
S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [70608 2014-10-01] (McAfee, Inc.)
R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [526360 2014-10-01] (McAfee, Inc.)
R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [786304 2014-10-01] (McAfee, Inc.)
R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [348560 2014-10-01] (McAfee, Inc.)
R3 RadioShim; C:\Windows\System32\drivers\RadioShim.sys [14680 2013-07-17] (Acer Incorporated)
S2 vcs; C:\Program Files (x86)\Common Files\Avnex\vcs64.sys [4096 2015-04-21] () [File not signed]
R3 VCSVADHWSer; C:\Windows\system32\DRIVERS\vcsvad.sys [21504 2008-12-26] (Avnex)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation)
R2 webTinstMKTN84; C:\WINDOWS\system32\Drivers\webTinstMKTN84.sys [50216 2015-04-29] ()
R1 {b94c3215-569a-484c-84dc-f0bcf79c44cc}Gw64; C:\Windows\System32\drivers\{b94c3215-569a-484c-84dc-f0bcf79c44cc}Gw64.sys [48784 2015-04-29] (StdLib)
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-04-29 23:52 - 2015-04-30 00:10 - 00000000 ____D () C:\FRST
2015-04-29 22:43 - 2015-04-29 22:43 - 00002114 _____ () C:\Users\Public\Desktop\Die*Sims™*3.lnk
2015-04-29 22:20 - 2015-04-29 22:20 - 00000000 ____D () C:\ZombieNews
2015-04-29 21:36 - 2015-04-29 21:36 - 00003244 _____ () C:\WINDOWS\System32\Tasks\Optimizer Pro Schedule
2015-04-29 21:36 - 2015-04-29 21:36 - 00000000 ____D () C:\Users\Luke\Documents\Optimizer Pro
2015-04-29 21:36 - 2015-04-29 21:36 - 00000000 ____D () C:\Users\Luke\AppData\Roaming\Optimizer Pro
2015-04-29 21:34 - 2015-04-29 21:34 - 00000000 ____D () C:\Users\Luke\AppData\Local\ZombieNews
2015-04-29 21:32 - 2015-04-29 21:34 - 00000000 __SHD () C:\Users\Luke\AppData\Local\EmieUserList
2015-04-29 21:32 - 2015-04-29 21:34 - 00000000 __SHD () C:\Users\Luke\AppData\Local\EmieSiteList
2015-04-29 21:32 - 2015-04-29 21:34 - 00000000 __SHD () C:\Users\Luke\AppData\Local\EmieBrowserModeList
2015-04-29 21:32 - 2015-04-29 21:32 - 00003428 _____ () C:\WINDOWS\System32\Tasks\NetEngine
2015-04-29 21:32 - 2015-04-29 21:32 - 00000000 ____D () C:\ProgramData\NetEngine
2015-04-29 21:31 - 2015-04-29 21:31 - 00001075 _____ () C:\Users\Luke\Desktop\Optimizer Pro.lnk
2015-04-29 21:31 - 2015-04-29 21:31 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro v3.2
2015-04-29 21:31 - 2015-04-29 21:31 - 00000000 ____D () C:\ProgramData\{32b7aad5-3436-182d-32b7-7aad5343ab54}
2015-04-29 21:31 - 2015-04-29 21:31 - 00000000 ____D () C:\Program Files (x86)\Optimizer Pro 3.86
2015-04-29 21:30 - 2015-04-29 21:50 - 00000378 _____ () C:\WINDOWS\Tasks\APSnotifierPP1.job
2015-04-29 21:30 - 2015-04-29 21:30 - 00002806 _____ () C:\WINDOWS\System32\Tasks\APSnotifierPP1
2015-04-29 21:30 - 2015-04-29 21:30 - 00002804 _____ () C:\WINDOWS\System32\Tasks\APSnotifierPP3
2015-04-29 21:30 - 2015-04-29 21:30 - 00002804 _____ () C:\WINDOWS\System32\Tasks\APSnotifierPP2
2015-04-29 21:30 - 2015-04-29 21:30 - 00001021 _____ () C:\Users\Luke\Desktop\AnyProtect.lnk
2015-04-29 21:30 - 2015-04-29 21:30 - 00000376 _____ () C:\WINDOWS\Tasks\APSnotifierPP3.job
2015-04-29 21:30 - 2015-04-29 21:30 - 00000376 _____ () C:\WINDOWS\Tasks\APSnotifierPP2.job
2015-04-29 21:30 - 2015-04-29 21:30 - 00000000 ____D () C:\Users\Luke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnyProtect PC Backup
2015-04-29 21:29 - 2015-04-29 21:29 - 00004058 _____ () C:\WINDOWS\System32\Tasks\Crossbrowse
2015-04-29 21:29 - 2015-04-29 21:29 - 00001066 _____ () C:\WINDOWS\Tasks\Crossbrowse.job
2015-04-29 21:29 - 2015-04-29 21:29 - 00000000 ____D () C:\Users\Luke\AppData\Local\Crossbrowse
2015-04-29 21:28 - 2015-04-29 21:28 - 00005468 _____ () C:\WINDOWS\System32\Tasks\0cd19e6d-ad3d-4a4c-abe4-06731ad73841-5
2015-04-29 21:28 - 2015-04-29 21:28 - 00002464 _____ () C:\WINDOWS\Tasks\0cd19e6d-ad3d-4a4c-abe4-06731ad73841-5_user.job
2015-04-29 21:28 - 2015-04-29 21:28 - 00002464 _____ () C:\WINDOWS\Tasks\0cd19e6d-ad3d-4a4c-abe4-06731ad73841-5.job
2015-04-29 21:28 - 2015-04-29 21:28 - 00002370 _____ () C:\Users\Public\Desktop\Crossbrowse.lnk
2015-04-29 21:28 - 2015-04-29 21:28 - 00000000 ____D () C:\Users\Luke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASPackage
2015-04-29 21:28 - 2015-04-29 21:28 - 00000000 ____D () C:\Users\Luke\AppData\Roaming\B835A680-1430335704-E311-B039-F8A963069189
2015-04-29 21:28 - 2015-04-29 21:28 - 00000000 ____D () C:\Users\Luke\AppData\Roaming\ASPackage
2015-04-29 21:28 - 2015-04-29 21:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crossbrowse
2015-04-29 21:28 - 2015-04-29 21:28 - 00000000 ____D () C:\Program Files (x86)\HD Cinema Plus 1..7V29.04
2015-04-29 21:28 - 2015-04-29 21:28 - 00000000 ____D () C:\Program Files (x86)\Crossbrowse
2015-04-29 21:27 - 2015-04-29 21:28 - 00000000 ____D () C:\ProgramData\XVrbwwYL
2015-04-29 21:27 - 2015-04-29 21:27 - 00003618 _____ () C:\WINDOWS\System32\Tasks\gtaUpt
2015-04-29 21:27 - 2015-04-29 21:27 - 00000983 _____ () C:\Users\Luke\Desktop\GUPlayer.lnk
2015-04-29 21:27 - 2015-04-29 21:27 - 00000000 ____D () C:\Users\Luke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GUPlayer
2015-04-29 21:27 - 2015-04-29 21:27 - 00000000 ____D () C:\ProgramData\ZombieNews
2015-04-29 21:27 - 2015-04-29 21:27 - 00000000 ____D () C:\Program Files\shopperz
2015-04-29 21:27 - 2015-04-29 21:27 - 00000000 ____D () C:\Program Files (x86)\predm
2015-04-29 21:27 - 2015-04-29 21:27 - 00000000 ____D () C:\Program Files (x86)\GUPlayer
2015-04-29 21:27 - 2015-01-06 12:38 - 00060376 _____ (Cherimoya Ltd) C:\WINDOWS\system32\Drivers\cherimoya.sys
2015-04-29 21:26 - 2015-04-29 21:26 - 00050216 _____ () C:\WINDOWS\system32\Drivers\webTinstMKTN84.sys
2015-04-29 21:26 - 2015-04-29 21:26 - 00003092 _____ () C:\WINDOWS\System32\Tasks\BlockAndSurf Update
2015-04-29 21:26 - 2015-04-29 21:26 - 00002178 _____ () C:\WINDOWS\patsearch.bin
2015-04-29 21:26 - 2015-04-29 21:26 - 00002104 _____ () C:\Users\Luke\Desktop\Continue GamesDesktop Uninstaller.lnk
2015-04-29 21:26 - 2015-04-29 21:26 - 00000454 _____ () C:\WINDOWS\Tasks\BlockAndSurf Update.job
2015-04-29 21:26 - 2015-04-29 21:26 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_webTinstMKTN84_01009.Wdf
2015-04-29 21:26 - 2015-04-29 21:26 - 00000000 ____D () C:\Program Files (x86)\version42BlockAndSurf
2015-04-29 21:25 - 2015-04-29 21:32 - 00000000 ____D () C:\Users\Luke\AppData\Local\gmsd_de_478
2015-04-29 21:25 - 2015-04-29 21:25 - 00000000 ____D () C:\Program Files (x86)\gmsd_de_478
2015-04-29 21:22 - 2015-04-29 21:26 - 00000306 __RSH () C:\ProgramData\ntuser.pol
2015-04-29 17:55 - 2015-04-29 17:55 - 00000000 ____D () C:\ProgramData\EA Core
2015-04-29 17:28 - 2015-04-29 17:28 - 00001868 _____ () C:\Users\Luke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\avast! antivirus.lnk
2015-04-29 14:58 - 2015-04-29 14:58 - 00000000 ____D () C:\Users\Luke\SupTab
2015-04-29 14:26 - 2015-04-29 20:25 - 00000000 ____D () C:\Users\Luke\Documents\Electronic Arts
2015-04-29 14:19 - 2015-04-29 21:30 - 00000000 ____D () C:\Program Files (x86)\AnyProtectEx
2015-04-29 14:19 - 2015-04-29 14:19 - 00000000 __SHD () C:\Users\Luke\AppData\Roaming\AnyProtectEx
2015-04-29 14:18 - 2015-04-29 21:32 - 00000000 ____D () C:\Users\Luke\AppData\Local\SmartWeb
2015-04-29 14:17 - 2015-04-29 14:17 - 00000000 ____D () C:\Program Files (x86)\Infonaut_1.10.0.14
2015-04-29 14:10 - 2015-04-29 14:12 - 00000000 ____D () C:\Users\Luke\AppData\Roaming\Dropbox
2015-04-29 14:10 - 2015-04-29 14:10 - 00001046 _____ () C:\Users\Public\Desktop\VLC media player.lnk
2015-04-29 14:10 - 2015-04-29 14:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2015-04-29 14:09 - 2015-04-29 14:09 - 00000000 ____D () C:\Users\Luke\AppData\Roaming\B835A680-1430309359-E311-B039-F8A963069189
2015-04-29 14:09 - 2015-04-29 14:09 - 00000000 ____D () C:\Program Files (x86)\VideoLAN
2015-04-29 14:08 - 2015-04-29 21:32 - 00000000 ____D () C:\Users\Luke\AppData\Local\B835A680-1430316511-E311-B039-F8A963069189
2015-04-29 14:07 - 2015-04-29 21:24 - 00000000 ____D () C:\Users\Luke\AppData\Roaming\SpeedFox
2015-04-29 14:07 - 2015-04-29 14:07 - 00000000 ____D () C:\Program Files (x86)\Microsoft WSE
2015-04-29 14:07 - 2008-09-04 17:22 - 00447752 _____ (On2.com) C:\WINDOWS\SysWOW64\vp6vfw.dll
2015-04-29 14:05 - 2015-04-29 14:24 - 00000000 ____D () C:\ProgramData\{0b69d174-b53b-1b86-0b69-9d174b5345d2}
2015-04-29 14:05 - 2015-04-29 14:21 - 00000340 _____ () C:\WINDOWS\Tasks\Bidaily Synchronize Task.job
2015-04-29 14:05 - 2015-04-29 14:05 - 00003226 _____ () C:\WINDOWS\System32\Tasks\Bidaily Synchronize Task
2015-04-29 14:04 - 2015-04-29 23:23 - 00000000 ____D () C:\Users\Luke\AppData\Roaming\B835A680-1430309082-E311-B039-F8A963069189
2015-04-29 14:04 - 2015-04-29 21:32 - 00000000 ____D () C:\Users\Luke\AppData\Local\mbot_de_616
2015-04-29 14:04 - 2015-04-29 14:04 - 00000000 ____D () C:\Users\Luke\AppData\Roaming\VOPackage
2015-04-29 14:04 - 2015-04-29 14:04 - 00000000 ____D () C:\Users\Luke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage
2015-04-29 14:04 - 2015-04-29 14:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MYBESTOFFERSTODAY
2015-04-29 14:04 - 2015-04-29 14:04 - 00000000 ____D () C:\Program Files (x86)\mbot_de_616
2015-04-29 14:03 - 2015-04-29 14:03 - 00000000 ____D () C:\Program Files (x86)\FlashBeat
2015-04-29 14:02 - 2015-04-29 14:25 - 00000000 ____D () C:\Program Files (x86)\OLBPre
2015-04-29 14:02 - 2015-04-29 14:06 - 00000000 ____D () C:\ProgramData\13401842200255233837
2015-04-29 14:01 - 2015-04-29 14:14 - 00000000 ____D () C:\Program Files (x86)\Priceless
2015-04-29 14:01 - 2015-04-29 14:01 - 00000000 ____D () C:\ProgramData\emkembjnhfkidachnaiodfdcoibbbbab
2015-04-29 14:01 - 2015-04-29 14:01 - 00000000 ____D () C:\Program Files (x86)\app_setup
2015-04-29 14:00 - 2015-04-29 14:03 - 00000000 ____D () C:\Program Files (x86)\XTab
2015-04-29 14:00 - 2015-04-29 14:02 - 00000000 ____D () C:\Users\Luke\AppData\Roaming\oursurfing
2015-04-29 14:00 - 2015-04-29 14:00 - 00000000 ____D () C:\Users\Luke\AppData\Roaming\AVAST Software
2015-04-29 14:00 - 2015-04-29 14:00 - 00000000 ____D () C:\ProgramData\WindowsMangerProtect
2015-04-29 14:00 - 2015-04-29 14:00 - 00000000 ____D () C:\ProgramData\IHProtectUpDate
2015-04-29 14:00 - 2015-04-29 14:00 - 00000000 ____D () C:\Program Files (x86)\MyPCBU
2015-04-29 13:59 - 2015-04-29 19:04 - 00004182 _____ () C:\WINDOWS\System32\Tasks\avast! Emergency Update
2015-04-29 13:59 - 2015-04-29 13:59 - 00335112 _____ (AVAST Software s. r. o.) C:\WINDOWS\AswCheck.exe
2015-04-29 13:59 - 2015-04-29 13:59 - 00001938 _____ () C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2015-04-29 13:59 - 2015-04-29 13:59 - 00000000 ____D () C:\WINDOWS\System32\Tasks\AVAST Software
2015-04-29 13:59 - 2015-04-29 13:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2015-04-29 13:58 - 2015-04-29 13:58 - 01047320 _____ (Avast Software s.r.o.) C:\WINDOWS\system32\Drivers\aswSnx.sys
2015-04-29 13:58 - 2015-04-29 13:58 - 00442264 _____ (Avast Software s.r.o.) C:\WINDOWS\system32\Drivers\aswSP.sys
2015-04-29 13:58 - 2015-04-29 13:58 - 00364472 _____ (Avast Software s.r.o.) C:\WINDOWS\system32\aswBoot.exe
2015-04-29 13:58 - 2015-04-29 13:58 - 00272248 _____ () C:\WINDOWS\system32\Drivers\aswVmm.sys
2015-04-29 13:58 - 2015-04-29 13:58 - 00137288 _____ (Avast Software s.r.o.) C:\WINDOWS\system32\Drivers\aswStm.sys
2015-04-29 13:58 - 2015-04-29 13:58 - 00093528 _____ (Avast Software s.r.o.) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2015-04-29 13:58 - 2015-04-29 13:58 - 00089944 _____ (Avast Software s.r.o.) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2015-04-29 13:58 - 2015-04-29 13:58 - 00065736 _____ () C:\WINDOWS\system32\Drivers\aswRvrt.sys
2015-04-29 13:58 - 2015-04-29 13:58 - 00043112 _____ (Avast Software s.r.o.) C:\WINDOWS\avastSS.scr
2015-04-29 13:58 - 2015-04-29 13:58 - 00029168 _____ () C:\WINDOWS\system32\Drivers\aswHwid.sys
2015-04-29 13:57 - 2015-04-29 13:57 - 00000000 ____D () C:\Program Files\AVAST Software
2015-04-29 13:56 - 2015-04-29 13:56 - 00000000 ____D () C:\ProgramData\AVAST Software
2015-04-29 13:51 - 2015-04-29 03:55 - 00048784 _____ (StdLib) C:\WINDOWS\system32\Drivers\{b94c3215-569a-484c-84dc-f0bcf79c44cc}Gw64.sys
2015-04-29 13:50 - 2015-04-29 23:23 - 00000000 ____D () C:\Program Files (x86)\Metal Maker
2015-04-29 13:42 - 2015-04-29 21:47 - 00000000 ____D () C:\Users\Luke\Desktop\Neuer Ordner (3)
2015-04-29 12:47 - 2015-04-29 13:05 - 00000000 ____D () C:\Users\Luke\Downloads\The Sims 3 -RELOADED
2015-04-29 10:11 - 2015-04-29 10:12 - 00285504 _____ () C:\WINDOWS\Minidump\042915-61125-01.dmp
2015-04-29 10:11 - 2015-04-29 10:11 - 868998835 _____ () C:\WINDOWS\MEMORY.DMP
2015-04-29 10:11 - 2015-04-29 10:11 - 00000000 ____D () C:\WINDOWS\Minidump
2015-04-27 23:07 - 2015-04-27 23:07 - 00310167 _____ () C:\Users\Luke\Desktop\11074899_840690589301131_1341894070_n.mp4
2015-04-27 23:03 - 2015-04-27 23:03 - 00275617 _____ () C:\Users\Luke\Desktop\11118223_856286217741568_1520020295_n.mp4
2015-04-27 21:01 - 2015-04-29 13:56 - 00000000 ____D () C:\Program Files (x86)\R.G. Freedom
2015-04-27 15:51 - 2015-04-27 15:51 - 00000000 ____D () C:\Users\Luke\Documents\CyberLink
2015-04-27 15:51 - 2015-04-27 15:51 - 00000000 ____D () C:\Users\Luke\AppData\Roaming\CyberLink
2015-04-27 15:11 - 2015-04-27 15:24 - 527503131 _____ () C:\Users\Luke\Desktop\Project X.flv
2015-04-27 15:10 - 2015-04-27 15:10 - 00001061 _____ () C:\Users\Public\Desktop\Maxthon Cloud Browser.lnk
2015-04-26 17:01 - 2015-04-26 17:02 - 00000000 ____D () C:\Program Files (x86)\DirectX June 2010 SDK
2015-04-26 16:24 - 2015-04-26 16:24 - 00002331 _____ () C:\Users\Luke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Acer Games.lnk
2015-04-26 16:24 - 2015-04-26 16:24 - 00002311 _____ () C:\Users\Luke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC App Store.lnk
2015-04-26 15:01 - 2015-04-26 15:01 - 00000000 ____D () C:\Program Files (x86)\SystemRequirementsLab
2015-04-26 14:59 - 2015-04-29 08:45 - 00000000 ____D () C:\ProgramData\GFACE
2015-04-26 14:59 - 2015-04-26 14:59 - 00001930 _____ () C:\Users\Luke\Desktop\Warface Launcher.lnk
2015-04-26 14:59 - 2015-04-26 14:59 - 00000000 ____D () C:\Users\Luke\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Warface Launcher
2015-04-26 14:59 - 2015-04-26 14:59 - 00000000 ____D () C:\Program Files (x86)\Crytek
2015-04-24 23:04 - 2015-04-24 23:04 - 00000000 ____D () C:\Users\Luke\.m2
2015-04-24 22:45 - 2015-04-24 22:45 - 00001094 _____ () C:\Users\Public\Desktop\Git Bash.lnk
2015-04-24 22:45 - 2015-04-24 22:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Git
2015-04-24 22:44 - 2015-04-24 22:45 - 00000000 ____D () C:\Program Files (x86)\Git
2015-04-24 19:17 - 2015-04-24 19:17 - 00000000 ____D () C:\Users\Luke\Documents\My Games
2015-04-24 17:05 - 2015-04-24 17:43 - 00000000 ____D () C:\Users\Luke\AppData\Roaming\HLSW
2015-04-24 16:15 - 2015-04-24 16:31 - 00000000 ____D () C:\Users\Luke\Desktop\johnyserver
2015-04-24 14:19 - 2015-04-29 20:19 - 00000000 ____D () C:\Users\Luke\AppData\Roaming\Origin
2015-04-24 14:19 - 2015-04-24 14:19 - 00000000 ____D () C:\Program Files (x86)\Origin Games
2015-04-24 14:16 - 2015-04-29 20:26 - 00000000 ____D () C:\ProgramData\Origin
2015-04-24 14:16 - 2015-04-24 14:18 - 00000000 ____D () C:\Program Files (x86)\Origin
2015-04-24 14:16 - 2015-04-24 14:16 - 00000955 _____ () C:\Users\Public\Desktop\Origin.lnk
2015-04-24 14:13 - 2015-04-24 14:13 - 00000000 ____D () C:\Users\Luke\AppData\Roaming\WildTangent
2015-04-23 22:03 - 2015-02-27 14:20 - 00021040 _____ (Dll-Files.com) C:\WINDOWS\system32\roboot64.exe
2015-04-23 21:56 - 2015-04-24 14:12 - 00000000 ____D () C:\Users\Luke\AppData\Roaming\TweakNow RegCleaner
2015-04-23 21:46 - 2015-04-23 22:04 - 00004096 _____ () C:\Users\Public\Documents\000017B4.LCS
2015-04-23 21:46 - 2015-04-23 21:46 - 00000000 ____D () C:\ProgramData\Synetic
2015-04-23 21:45 - 2015-04-23 21:45 - 00000000 ____D () C:\Users\Luke\AppData\Roaming\ProtectDISC
2015-04-23 21:44 - 2012-08-28 14:35 - 15453832 _____ (Microsoft Corporation) C:\WINDOWS\system32\xlive.dll
2015-04-23 21:29 - 2015-04-23 21:29 - 00000000 ____D () C:\Users\Luke\Documents\Games for Windows - LIVE Demos
2015-04-23 21:29 - 2015-04-23 21:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games for Windows - LIVE
2015-04-23 21:27 - 2015-04-27 21:18 - 00000000 ___HD () C:\WINDOWS\msdownld.tmp
2015-04-23 21:27 - 2015-04-23 22:03 - 00000000 ____D () C:\WINDOWS\SysWOW64\directx
2015-04-23 21:27 - 2015-04-23 21:29 - 00000000 ____D () C:\Program Files (x86)\Microsoft Games for Windows - LIVE
2015-04-23 21:27 - 2015-04-23 21:27 - 00000000 ____D () C:\WINDOWS\SysWOW64\xlive
2015-04-23 15:52 - 2015-04-23 15:53 - 00000000 ____D () C:\Users\Luke\Desktop\papa
2015-04-22 17:54 - 2014-10-29 05:59 - 03460472 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll
2015-04-22 17:54 - 2014-10-29 03:43 - 07075328 _____ (Microsoft Corporation) C:\WINDOWS\system32\glcndFilter.dll
2015-04-22 17:54 - 2014-10-29 03:33 - 15157760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2015-04-22 17:54 - 2014-10-29 03:02 - 14354944 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2015-04-22 17:54 - 2014-10-29 02:52 - 15432704 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2015-04-22 17:54 - 2014-10-29 02:50 - 12749824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2015-04-22 17:54 - 2014-10-29 02:46 - 09530368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2015-04-22 17:54 - 2014-10-29 02:45 - 13318144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2015-04-22 17:54 - 2014-10-29 02:37 - 06386176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2015-04-22 17:53 - 2014-10-29 06:10 - 01816008 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll
2015-04-22 17:53 - 2014-10-29 05:59 - 02529856 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2015-04-22 17:53 - 2014-10-29 05:59 - 00014144 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\swenum.sys
2015-04-22 17:53 - 2014-10-29 05:58 - 00014528 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\drmkaud.sys
2015-04-22 17:53 - 2014-10-29 05:57 - 03138720 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVCORE.DLL
2015-04-22 17:53 - 2014-10-29 05:57 - 03118096 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2015-04-22 17:53 - 2014-10-29 05:57 - 02745160 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVDECOD.DLL
2015-04-22 17:53 - 2014-10-29 05:57 - 02450216 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVENCOD.DLL
2015-04-22 17:53 - 2014-10-29 05:57 - 01286048 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAudDecMFT.dll
2015-04-22 17:53 - 2014-10-29 05:55 - 01543768 _____ (Microsoft Corporation) C:\WINDOWS\system32\webservices.dll
2015-04-22 17:53 - 2014-10-29 05:52 - 02485056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2015-04-22 17:53 - 2014-10-29 05:52 - 02334080 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2015-04-22 17:53 - 2014-10-29 05:52 - 01518504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2015-04-22 17:53 - 2014-10-29 05:52 - 01509688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2015-04-22 17:53 - 2014-10-29 05:52 - 01288096 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll
2015-04-22 17:53 - 2014-10-29 05:52 - 01165744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2015-04-22 17:53 - 2014-10-29 05:52 - 01064720 _____ (Microsoft Corporation) C:\WINDOWS\system32\drmv2clt.dll
2015-04-22 17:53 - 2014-10-29 05:52 - 00952384 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2015-04-22 17:53 - 2014-10-29 05:51 - 01310912 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2015-04-22 17:53 - 2014-10-29 05:13 - 01901240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2015-04-22 17:53 - 2014-10-29 05:12 - 01946144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2015-04-22 17:53 - 2014-10-29 05:12 - 01907384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2015-04-22 17:53 - 2014-10-29 05:11 - 02689392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVCORE.DLL
2015-04-22 17:53 - 2014-10-29 05:11 - 02528760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVDECOD.DLL
2015-04-22 17:53 - 2014-10-29 05:11 - 02447104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVENCOD.DLL
2015-04-22 17:53 - 2014-10-29 05:11 - 01024200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAudDecMFT.dll
2015-04-22 17:53 - 2014-10-29 05:10 - 01564464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2015-04-22 17:53 - 2014-10-29 05:10 - 01209624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2015-04-22 17:53 - 2014-10-29 05:10 - 01178104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webservices.dll
2015-04-22 17:53 - 2014-10-29 05:07 - 02324208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2015-04-22 17:53 - 2014-10-29 05:07 - 01115104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll
2015-04-22 17:53 - 2014-10-29 05:07 - 00959112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2015-04-22 17:53 - 2014-10-29 04:59 - 03109376 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2015-04-22 17:53 - 2014-10-29 04:29 - 04483072 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbon.dll
2015-04-22 17:53 - 2014-10-29 04:28 - 01502208 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpssvcs.dll
2015-04-22 17:53 - 2014-10-29 04:25 - 00785920 _____ (Microsoft Corporation) C:\WINDOWS\system32\blackbox.dll
2015-04-22 17:53 - 2014-10-29 04:24 - 04418560 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll
2015-04-22 17:53 - 2014-10-29 04:19 - 03320320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2015-04-22 17:53 - 2014-10-29 04:17 - 02003456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmc.exe
2015-04-22 17:53 - 2014-10-29 04:10 - 02706432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2015-04-22 17:53 - 2014-10-29 04:00 - 02162176 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2015-04-22 17:53 - 2014-10-29 03:57 - 02924032 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmcndmgr.dll
2015-04-22 17:53 - 2014-10-29 03:56 - 03754496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVidCtl.dll
2015-04-22 17:53 - 2014-10-29 03:51 - 00941056 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsFilt.dll
2015-04-22 17:53 - 2014-10-29 03:48 - 01080832 _____ (Microsoft Corporation) C:\WINDOWS\system32\sbe.dll
2015-04-22 17:53 - 2014-10-29 03:45 - 03607040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2015-04-22 17:53 - 2014-10-29 03:45 - 00618496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\blackbox.dll
2015-04-22 17:53 - 2014-10-29 03:45 - 00165888 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpinput.exe
2015-04-22 17:53 - 2014-10-29 03:44 - 02984448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll
2015-04-22 17:53 - 2014-10-29 03:39 - 02896384 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2015-04-22 17:53 - 2014-10-29 03:38 - 04690432 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe
2015-04-22 17:53 - 2014-10-29 03:35 - 03256320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2015-04-22 17:53 - 2014-10-29 03:31 - 02941952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebSync.dll
2015-04-22 17:53 - 2014-10-29 03:28 - 03820544 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2015-04-22 17:53 - 2014-10-29 03:26 - 03561984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbon.dll
2015-04-22 17:53 - 2014-10-29 03:24 - 02364928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmcndmgr.dll
2015-04-22 17:53 - 2014-10-29 03:23 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\quartz.dll
2015-04-22 17:53 - 2014-10-29 03:22 - 03633664 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2015-04-22 17:53 - 2014-10-29 03:22 - 02410496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVidCtl.dll
2015-04-22 17:53 - 2014-10-29 03:21 - 01250816 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2015-04-22 17:53 - 2014-10-29 03:18 - 01753600 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2015-04-22 17:53 - 2014-10-29 03:17 - 01360896 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll
2015-04-22 17:53 - 2014-10-29 03:16 - 05267968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\glcndFilter.dll
2015-04-22 17:53 - 2014-10-29 03:14 - 03553280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
2015-04-22 17:53 - 2014-10-29 03:12 - 02749952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2015-04-22 17:53 - 2014-10-29 03:11 - 01639424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2015-04-22 17:53 - 2014-10-29 03:10 - 02469888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
2015-04-22 17:53 - 2014-10-29 03:10 - 02344960 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2015-04-22 17:53 - 2014-10-29 03:08 - 02608640 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2015-04-22 17:53 - 2014-10-29 03:08 - 02542080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll
2015-04-22 17:53 - 2014-10-29 03:08 - 02174976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll
2015-04-22 17:53 - 2014-10-29 03:08 - 01822720 _____ (Microsoft Corporation) C:\WINDOWS\system32\dui70.dll
2015-04-22 17:53 - 2014-10-29 03:08 - 01560576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2015-04-22 17:53 - 2014-10-29 03:05 - 03273216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2015-04-22 17:53 - 2014-10-29 03:03 - 04067840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2015-04-22 17:53 - 2014-10-29 03:03 - 02635264 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2015-04-22 17:53 - 2014-10-29 02:59 - 01490944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2015-04-22 17:53 - 2014-10-29 02:52 - 02554880 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2015-04-22 17:53 - 2014-10-29 02:52 - 02170368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2015-04-22 17:53 - 2014-10-29 02:52 - 01461248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dui70.dll
2015-04-22 17:53 - 2014-10-29 02:52 - 01275904 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2015-04-22 17:53 - 2014-10-29 02:51 - 01554432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2015-04-22 17:53 - 2014-10-29 02:50 - 02317824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2015-04-22 17:53 - 2014-10-29 02:46 - 01919488 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll
2015-04-22 17:53 - 2014-10-29 02:45 - 01725952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2015-04-22 17:53 - 2014-10-29 02:43 - 05264384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2015-04-22 17:53 - 2014-10-29 02:42 - 01922560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2015-04-22 17:53 - 2014-10-29 02:42 - 01221120 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2015-04-22 17:53 - 2014-10-29 02:41 - 02880000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpccpl.dll
2015-04-22 17:53 - 2014-10-29 02:40 - 02104832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsservices.dll
2015-04-22 17:53 - 2014-10-29 02:39 - 02814464 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll
2015-04-22 17:53 - 2014-10-29 02:39 - 01000448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
2015-04-22 17:53 - 2014-10-29 02:38 - 07032320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2015-04-22 17:53 - 2014-10-29 02:36 - 00954880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2015-04-22 17:53 - 2014-10-29 02:35 - 01668096 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll
2015-04-22 17:53 - 2014-10-29 02:34 - 01544192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2015-04-22 17:53 - 2014-10-29 02:33 - 06213632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2015-04-22 17:53 - 2014-10-15 10:32 - 02025792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2015-04-22 17:53 - 2014-10-07 08:45 - 03307112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2015-04-22 17:53 - 2014-10-07 05:44 - 02890296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2015-04-22 17:52 - 2014-10-29 06:09 - 01950280 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupapi.dll
2015-04-22 17:52 - 2014-10-29 06:09 - 01309744 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2015-04-22 17:52 - 2014-10-29 06:03 - 00435008 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2015-04-22 17:52 - 2014-10-29 06:00 - 01540696 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2015-04-22 17:52 - 2014-10-29 06:00 - 01385216 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2015-04-22 17:52 - 2014-10-29 05:57 - 01576312 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2015-04-22 17:52 - 2014-10-29 05:57 - 01552704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2015-04-22 17:52 - 2014-10-29 05:57 - 01210176 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOD.DLL
2015-04-22 17:52 - 2014-10-29 05:57 - 01150208 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOE.DLL
2015-04-22 17:52 - 2014-10-29 05:57 - 00643064 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2015-04-22 17:52 - 2014-10-29 05:57 - 00557832 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVSDECD.DLL
2015-04-22 17:52 - 2014-10-29 05:55 - 01133200 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2015-04-22 17:52 - 2014-10-29 05:52 - 00988544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2015-04-22 17:52 - 2014-10-29 05:52 - 00962216 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2015-04-22 17:52 - 2014-10-29 05:52 - 00850656 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll
2015-04-22 17:52 - 2014-10-29 05:52 - 00821696 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2015-04-22 17:52 - 2014-10-29 05:52 - 00734448 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll
2015-04-22 17:52 - 2014-10-29 05:52 - 00634768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2015-04-22 17:52 - 2014-10-29 05:52 - 00580024 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmdrmdev.dll
2015-04-22 17:52 - 2014-10-29 05:52 - 00497936 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2015-04-22 17:52 - 2014-10-29 05:52 - 00444728 _____ (Microsoft Corporation) C:\WINDOWS\system32\MMDevAPI.dll
2015-04-22 17:52 - 2014-10-29 05:52 - 00405456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll
2015-04-22 17:52 - 2014-10-29 05:18 - 01782912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupapi.dll
2015-04-22 17:52 - 2014-10-29 05:18 - 01103768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Taskmgr.exe
2015-04-22 17:52 - 2014-10-29 05:18 - 00848568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll
2015-04-22 17:52 - 2014-10-29 05:18 - 00016504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\psapi.dll
2015-04-22 17:52 - 2014-10-29 05:12 - 00616704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10level9.dll
2015-04-22 17:52 - 2014-10-29 05:12 - 00430176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2015-04-22 17:52 - 2014-10-29 05:11 - 01037656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOD.DLL
2015-04-22 17:52 - 2014-10-29 05:11 - 00914648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOE.DLL
2015-04-22 17:52 - 2014-10-29 05:11 - 00492704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVSDECD.DLL
2015-04-22 17:52 - 2014-10-29 05:11 - 00488064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpeffects.dll
2015-04-22 17:52 - 2014-10-29 05:10 - 01287112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2015-04-22 17:52 - 2014-10-29 05:10 - 00569128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clbcatq.dll
2015-04-22 17:52 - 2014-10-29 05:10 - 00492232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2015-04-22 17:52 - 2014-10-29 05:07 - 01321192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
2015-04-22 17:52 - 2014-10-29 05:07 - 00857384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2015-04-22 17:52 - 2014-10-29 05:07 - 00801584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2015-04-22 17:52 - 2014-10-29 05:07 - 00785568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2015-04-22 17:52 - 2014-10-29 05:07 - 00705008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2015-04-22 17:52 - 2014-10-29 05:07 - 00700328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetcore.dll
2015-04-22 17:52 - 2014-10-29 05:07 - 00584120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll
2015-04-22 17:52 - 2014-10-29 05:07 - 00551064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2015-04-22 17:52 - 2014-10-29 05:07 - 00482360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmdrmdev.dll
2015-04-22 17:52 - 2014-10-29 05:07 - 00409040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll
2015-04-22 17:52 - 2014-10-29 05:07 - 00399752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2015-04-22 17:52 - 2014-10-29 05:07 - 00331048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MMDevAPI.dll
2015-04-22 17:52 - 2014-10-29 05:05 - 00890128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drmv2clt.dll
2015-04-22 17:52 - 2014-10-29 04:56 - 01164288 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSMPEG2ENC.DLL
2015-04-22 17:52 - 2014-10-29 04:50 - 01192960 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2015-04-22 17:52 - 2014-10-29 04:48 - 00636416 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFx02000.dll
2015-04-22 17:52 - 2014-10-29 04:43 - 00685056 _____ (Microsoft Corporation) C:\WINDOWS\system32\riched20.dll
2015-04-22 17:52 - 2014-10-29 04:42 - 01091584 _____ (Microsoft Corporation) C:\WINDOWS\system32\opengl32.dll
2015-04-22 17:52 - 2014-10-29 04:40 - 00610816 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxs.dll
2015-04-22 17:52 - 2014-10-29 04:36 - 00546304 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqlcese40.dll
2015-04-22 17:52 - 2014-10-29 04:33 - 07558144 _____ (Microsoft Corporation) C:\WINDOWS\system32\NL7Data0011.dll
2015-04-22 17:52 - 2014-10-29 04:33 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqlsrv32.dll
2015-04-22 17:52 - 2014-10-29 04:31 - 00971264 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqlceqp40.dll
2015-04-22 17:52 - 2014-10-29 04:30 - 00734208 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSWB70804.dll
2015-04-22 17:52 - 2014-10-29 04:30 - 00734208 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSWB70404.dll
2015-04-22 17:52 - 2014-10-29 04:30 - 00734208 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSWB7001E.dll
2015-04-22 17:52 - 2014-10-29 04:30 - 00734208 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSWB70011.dll
2015-04-22 17:52 - 2014-10-29 04:29 - 01246720 _____ (Microsoft Corporation) C:\WINDOWS\system32\ogldrv.dll
2015-04-22 17:52 - 2014-10-29 04:26 - 00771584 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbc32.dll
2015-04-22 17:52 - 2014-10-29 04:26 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartCardSimulator.dll
2015-04-22 17:52 - 2014-10-29 04:22 - 00428032 _____ (Microsoft Corporation) C:\WINDOWS\system32\msihnd.dll
2015-04-22 17:52 - 2014-10-29 04:18 - 00784384 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpksetup.exe
2015-04-22 17:52 - 2014-10-29 04:11 - 01070080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSMPEG2ENC.DLL
2015-04-22 17:52 - 2014-10-29 04:11 - 00435712 _____ (Microsoft Corporation) C:\WINDOWS\system32\mswmdm.dll
2015-04-22 17:52 - 2014-10-29 04:09 - 00632320 _____ (Microsoft Corporation) C:\WINDOWS\system32\psisdecd.dll
2015-04-22 17:52 - 2014-10-29 04:08 - 00670208 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll
2015-04-22 17:52 - 2014-10-29 04:08 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmdrmnet.dll
2015-04-22 17:52 - 2014-10-29 04:07 - 06692352 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe
2015-04-22 17:52 - 2014-10-29 04:06 - 01313792 _____ (Microsoft Corporation) C:\WINDOWS\system32\vds.exe
2015-04-22 17:52 - 2014-10-29 04:06 - 00980480 _____ (Microsoft Corporation) C:\WINDOWS\system32\imapi2fs.dll
2015-04-22 17:52 - 2014-10-29 04:06 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAC3ENC.DLL
2015-04-22 17:52 - 2014-10-29 04:05 - 00679424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaaut.dll
2015-04-22 17:52 - 2014-10-29 04:04 - 00070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\WavDest.dll
2015-04-22 17:52 - 2014-10-29 04:03 - 02334720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncCenter.dll
2015-04-22 17:52 - 2014-10-29 04:03 - 00862720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2015-04-22 17:52 - 2014-10-29 04:03 - 00832000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\autoconv.exe
2015-04-22 17:52 - 2014-10-29 03:59 - 00670720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaservc.dll
2015-04-22 17:52 - 2014-10-29 03:59 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\riched20.dll
2015-04-22 17:52 - 2014-10-29 03:56 - 01526784 _____ (Microsoft Corporation) C:\WINDOWS\system32\pla.dll
2015-04-22 17:52 - 2014-10-29 03:56 - 00603648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll
2015-04-22 17:52 - 2014-10-29 03:56 - 00499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sxs.dll
2015-04-22 17:52 - 2014-10-29 03:54 - 00432640 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscp.dll
2015-04-22 17:52 - 2014-10-29 03:53 - 01101824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll
2015-04-22 17:52 - 2014-10-29 03:53 - 01065984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8.dll
2015-04-22 17:52 - 2014-10-29 03:53 - 00881152 _____ (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelinesvc.exe
2015-04-22 17:52 - 2014-10-29 03:53 - 00468992 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2015-04-22 17:52 - 2014-10-29 03:53 - 00433152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqlcese40.dll
2015-04-22 17:52 - 2014-10-29 03:50 - 01289216 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMNetMgr.dll
2015-04-22 17:52 - 2014-10-29 03:50 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqlsrv32.dll
2015-04-22 17:52 - 2014-10-29 03:49 - 00742400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqlceqp40.dll
2015-04-22 17:52 - 2014-10-29 03:47 - 01096192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ogldrv.dll
2015-04-22 17:52 - 2014-10-29 03:47 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpssvcs.dll
2015-04-22 17:52 - 2014-10-29 03:47 - 00517120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsound.dll
2015-04-22 17:52 - 2014-10-29 03:46 - 01497600 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2015-04-22 17:52 - 2014-10-29 03:46 - 01001472 _____ (Microsoft Corporation) C:\WINDOWS\HelpPane.exe
2015-04-22 17:52 - 2014-10-29 03:45 - 00672768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbc32.dll
2015-04-22 17:52 - 2014-10-29 03:42 - 03724800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSAT.exe
2015-04-22 17:52 - 2014-10-29 03:42 - 00852480 _____ (Microsoft Corporation) C:\WINDOWS\system32\PurchaseWindowsLicense.dll
2015-04-22 17:52 - 2014-10-29 03:40 - 02067968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdshext.dll
2015-04-22 17:52 - 2014-10-29 03:37 - 01563136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmc.exe
2015-04-22 17:52 - 2014-10-29 03:37 - 01436160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdc.dll
2015-04-22 17:52 - 2014-10-29 03:36 - 02764288 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameux.dll
2015-04-22 17:52 - 2014-10-29 03:36 - 01252864 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2015-04-22 17:52 - 2014-10-29 03:36 - 00609792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmdrmsdk.dll
2015-04-22 17:52 - 2014-10-29 03:35 - 00532480 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDec.dll
2015-04-22 17:52 - 2014-10-29 03:34 - 01114624 _____ (Microsoft Corporation) C:\WINDOWS\system32\termsrv.dll
2015-04-22 17:52 - 2014-10-29 03:34 - 01037824 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll
2015-04-22 17:52 - 2014-10-29 03:33 - 01056768 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebcamUi.dll
2015-04-22 17:52 - 2014-10-29 03:32 - 01843712 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2015-04-22 17:52 - 2014-10-29 03:32 - 00654848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comuid.dll
2015-04-22 17:52 - 2014-10-29 03:32 - 00512512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\psisdecd.dll
2015-04-22 17:52 - 2014-10-29 03:32 - 00391680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmdrmnet.dll
2015-04-22 17:52 - 2014-10-29 03:31 - 01278464 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll
2015-04-22 17:52 - 2014-10-29 03:31 - 00761344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imapi2fs.dll
2015-04-22 17:52 - 2014-10-29 03:31 - 00561664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qedit.dll
2015-04-22 17:52 - 2014-10-29 03:30 - 06465536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspaint.exe
2015-04-22 17:52 - 2014-10-29 03:30 - 00657920 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2015-04-22 17:52 - 2014-10-29 03:30 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wldap32.dll
2015-04-22 17:52 - 2014-10-29 03:27 - 00557568 _____ (Microsoft Corporation) C:\WINDOWS\system32\untfs.dll
2015-04-22 17:52 - 2014-10-29 03:26 - 00838656 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2015-04-22 17:52 - 2014-10-29 03:25 - 01812992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2015-04-22 17:52 - 2014-10-29 03:25 - 01534464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pla.dll
2015-04-22 17:52 - 2014-10-29 03:24 - 01217024 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
2015-04-22 17:52 - 2014-10-29 03:24 - 00845312 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2015-04-22 17:52 - 2014-10-29 03:23 - 00484352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll
2015-04-22 17:52 - 2014-10-29 03:22 - 01084416 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2015-04-22 17:52 - 2014-10-29 03:21 - 00391680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2015-04-22 17:52 - 2014-10-29 03:20 - 01492480 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbghelp.dll
2015-04-22 17:52 - 2014-10-29 03:19 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2015-04-22 17:52 - 2014-10-29 03:19 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSync.dll
2015-04-22 17:52 - 2014-10-29 03:19 - 00550912 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll
2015-04-22 17:52 - 2014-10-29 03:18 - 01050624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMNetMgr.dll
2015-04-22 17:52 - 2014-10-29 03:17 - 01402368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpcServices.dll
2015-04-22 17:52 - 2014-10-29 03:17 - 00829952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sbe.dll
2015-04-22 17:52 - 2014-10-29 03:16 - 01696256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2015-04-22 17:52 - 2014-10-29 03:16 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\secproc.dll
2015-04-22 17:52 - 2014-10-29 03:16 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\system32\secproc_isv.dll
2015-04-22 17:52 - 2014-10-29 03:16 - 00332288 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAnimation.dll
2015-04-22 17:52 - 2014-10-29 03:14 - 00854528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdosys.dll
2015-04-22 17:52 - 2014-10-29 03:14 - 00802816 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2015-04-22 17:52 - 2014-10-29 03:14 - 00737280 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2015-04-22 17:52 - 2014-10-29 03:14 - 00609280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2015-04-22 17:52 - 2014-10-29 03:12 - 01969664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpdshext.dll
2015-04-22 17:52 - 2014-10-29 03:12 - 00702976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2015-04-22 17:52 - 2014-10-29 03:12 - 00645120 _____ (Microsoft Corporation) C:\WINDOWS\system32\msTextPrediction.dll
2015-04-22 17:52 - 2014-10-29 03:11 - 02597376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gameux.dll
2015-04-22 17:52 - 2014-10-29 03:11 - 01323008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdc.dll
2015-04-22 17:52 - 2014-10-29 03:10 - 01096704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll |