Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 08-12-2013 03 Ran by Konar (administrator) on KOMPUTER on 09-12-2013 15:40:10 Running from C:\Users\Konar\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: English(US) Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\System32\atiesrxx.exe (IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe (Hewlett-Packard Company) C:\Windows\System32\hpservice.exe (AMD) C:\Windows\System32\atieclxx.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Andrea Electronics Corporation) C:\Program Files\IDT\WDM\AESTSr64.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe (ESET) C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesApp64.exe (IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Microsoft Corporation) C:\Program Files\Microsoft IntelliPoint\ipoint.exe (ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe () C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe (Spotify Ltd) C:\Users\Konar\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe () C:\Users\Konar\Desktop\Games\QuietHDD\quietHDD.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray64.exe [487424 2010-07-22] (IDT, Inc.) HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2837288 2011-10-14] (Synaptics Incorporated) HKLM\...\Run: [IntelliPoint] - C:\Program Files\Microsoft IntelliPoint\ipoint.exe [2417032 2011-08-01] (Microsoft Corporation) HKLM\...\Run: [egui] - C:\Program Files\ESET\ESET Smart Security\egui.exe [5618456 2013-09-12] (ESET) HKCU\...\Run: [Pando Media Booster] - C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe [3093624 2012-12-27] () HKCU\...\Run: [DAEMON Tools Lite] - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd) HKCU\...\Run: [Spotify Web Helper] - C:\Users\Konar\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1140736 2013-09-25] (Spotify Ltd) HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [98304 2010-04-16] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pl/ HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.qvo6.com/?utm_source=b&utm_medium=cor&utm_campaign=eXQ&utm_content=hp&from=cor&uid=WDCXWD3200BPVT-22JJ5T0_WD-WXU1E62SRHX5SRHX5&ts=1379086382 HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.qvo6.com/?utm_source=b&utm_medium=cor&utm_campaign=eXQ&utm_content=hp&from=cor&uid=WDCXWD3200BPVT-22JJ5T0_WD-WXU1E62SRHX5SRHX5&ts=1379086382 StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Tcpip\Parameters: [DhcpNameServer] 217.113.224.134 217.113.224.35 FireFox: ======== FF ProfilePath: C:\Users\Konar\AppData\Roaming\Mozilla\Firefox\Profiles\jcnuuusc.default FF Homepage: about:home FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_168.dll () FF Plugin: @java.com/DTPlugin,version=10.10.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.10.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @microsoft.com/GENUINE - disabled No File FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.0.7 - C:\Program Files\VideoLAN\VLC\npvlc.dll No File FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_168.dll () FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1202122.dll (Adobe Systems, Inc.) FF Plugin-x32: @ganymede/GanymedeNetPlugin,version=1.0 - C:\Program Files (x86)\Ganymede\Plugins\npganymedenet.dll ( ) FF Plugin-x32: @microsoft.com/GENUINE - disabled No File FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF Plugin-x32: @real.com/nppl3260;version=6.0.12.450 - C:\Program Files (x86)\Real Alternative\browser\plugins\nppl3260.dll (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprpjplug;version=6.0.12.448 - C:\Program Files (x86)\Real Alternative\browser\plugins\nprpjplug.dll (RealNetworks, Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.1.1 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) FF Extension: Adblock Plus - C:\Users\Konar\AppData\Roaming\Mozilla\Firefox\Profiles\jcnuuusc.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi FF HKLM-x32\...\Firefox\Extensions: [{FFB96CC1-7EB3-449D-B827-DB661701C6BB}] - C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird FF Extension: ESET Smart Security Extension - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird Chrome: ======= CHR HomePage: CHR RestoreOnStartup: "" CHR DefaultSearchKeyword: google.pl CHR DefaultSearchProvider: Google CHR DefaultSearchURL: {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding} CHR DefaultSuggestURL: {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}{google:pageClassification}sugkey={google:suggestAPIKeyParameter} CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.63\pdf.dll () CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.124\npGoogleUpdate3.dll No File CHR Extension: (Google Drive) - C:\Users\Konar\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0 CHR Extension: (YouTube) - C:\Users\Konar\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0 CHR Extension: (Google Search) - C:\Users\Konar\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0 CHR Extension: (Auto HD For YouTube\u2122) - C:\Users\Konar\AppData\Local\Google\Chrome\User Data\Default\Extensions\koiaokdomkpjdgniimnkhgbilbjgpeak\5.66_0 CHR Extension: (Google Wallet) - C:\Users\Konar\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_0 CHR Extension: (Gmail) - C:\Users\Konar\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0 ==================== Services (Whitelisted) ================= R2 ekrn; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [1337752 2013-09-12] (ESET) R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe [2402232 2012-12-17] (TuneUp Software) ==================== Drivers (Whitelisted) ==================== R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2013-03-22] (DT Soft Ltd) R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [239320 2013-09-17] (ESET) R0 edevmon; C:\Windows\System32\DRIVERS\edevmon.sys [239296 2013-09-17] (ESET) R0 edevmon; C:\Windows\SysWow64\DRIVERS\edevmon.sys [239296 2013-09-17] (ESET) R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [168256 2013-09-17] (ESET) R2 epfw; C:\Windows\System32\DRIVERS\epfw.sys [220232 2013-09-17] (ESET) R1 EpfwLWF; C:\Windows\System32\DRIVERS\EpfwLWF.sys [44120 2013-09-17] (ESET) R0 epfwwfp; C:\Windows\System32\DRIVERS\epfwwfp.sys [62136 2013-09-17] (ESET) R0 sptd; C:\Windows\System32\Drivers\sptd.sys [834544 2013-11-04] () R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesDriver64.sys [11880 2012-09-19] (TuneUp Software) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-12-09 15:40 - 2013-12-09 15:41 - 00010448 _____ C:\Users\Konar\Downloads\FRST.txt 2013-12-09 15:39 - 2013-12-09 15:39 - 00000000 ____D C:\FRST 2013-12-09 15:37 - 2013-12-09 15:37 - 01927998 _____ (Farbar) C:\Users\Konar\Downloads\FRST64.exe 2013-12-07 17:59 - 2013-12-07 17:59 - 00255785 _____ C:\Users\Konar\Desktop\moh.rar 2013-12-07 17:59 - 2013-10-23 14:16 - 00026684 _____ C:\Users\Konar\Desktop\mohliga.zip 2013-12-07 17:59 - 2013-10-18 15:45 - 00229228 _____ C:\Users\Konar\Desktop\mody.rar 2013-12-06 23:07 - 2013-12-09 05:51 - 1973455042 _____ C:\Users\Konar\Downloads\s.p.club_1080.mp4 2013-12-06 23:07 - 2013-12-09 05:51 - 1561247744 _____ C:\Users\Konar\Downloads\The Office_ A XXX Parody (New Sensations) XXX (DVDRip).avi 2013-12-06 23:05 - 2013-12-06 23:05 - 00000000 ____D C:\Users\Konar\Downloads\DirtyMasseur - Gia Dimarco 2013-12-05 19:45 - 2013-12-09 15:24 - 00139495 ____N C:\Windows\WindowsUpdate.log 2013-12-05 18:43 - 2013-12-05 18:43 - 00000000 ____D C:\ProgramData\ESET 2013-12-05 18:37 - 2013-12-05 18:37 - 00002052 _____ C:\Windows\epplauncher.mif 2013-12-05 18:22 - 2013-12-05 18:22 - 00763276 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2013-12-05 18:18 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE 2013-12-05 18:15 - 2013-12-05 18:15 - 23212032 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 17142784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 12995584 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 11220992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 05765120 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 04240384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-12-05 18:15 - 2013-12-05 18:15 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-12-05 18:15 - 2013-12-05 18:15 - 02332160 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 02166272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 01993728 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-12-05 18:15 - 2013-12-05 18:15 - 01926656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-12-05 18:15 - 2013-12-05 18:15 - 01818112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 01394176 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 01156608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-12-05 18:15 - 2013-12-05 18:15 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-12-05 18:15 - 2013-12-05 18:15 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-12-05 18:15 - 2013-12-05 18:15 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-12-05 18:15 - 2013-12-05 18:15 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-12-05 18:15 - 2013-12-05 18:15 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-12-05 18:15 - 2013-12-05 18:15 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-12-05 18:15 - 2013-12-05 18:15 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-12-05 18:15 - 2013-12-05 18:15 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-12-05 18:15 - 2013-12-05 18:15 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-12-05 18:15 - 2013-12-05 18:15 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-12-05 18:15 - 2013-12-05 18:15 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-12-05 18:15 - 2013-12-05 18:15 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2013-12-05 18:15 - 2013-12-05 18:15 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-12-05 18:15 - 2013-12-05 18:15 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-12-05 18:15 - 2013-12-05 18:15 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-12-05 18:15 - 2013-12-05 18:15 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-12-05 18:15 - 2013-12-05 18:15 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-12-05 18:15 - 2013-12-05 18:15 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-12-05 18:15 - 2013-12-05 18:15 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-12-05 18:15 - 2013-12-05 18:15 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-12-05 18:15 - 2013-12-05 18:15 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-12-05 18:15 - 2013-12-05 18:15 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-12-05 18:15 - 2013-12-05 18:15 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2013-12-05 18:09 - 2013-10-05 21:25 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2013-12-05 18:09 - 2013-10-05 20:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-12-05 18:09 - 2013-10-04 03:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll 2013-12-05 18:09 - 2013-10-04 03:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll 2013-12-05 18:09 - 2013-10-04 03:24 - 01930752 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2013-12-05 18:09 - 2013-10-04 02:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll 2013-12-05 18:09 - 2013-10-04 02:56 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2013-12-05 18:09 - 2013-10-04 02:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll 2013-12-05 18:09 - 2013-10-03 03:23 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2013-12-05 18:09 - 2013-10-03 03:00 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2013-12-05 18:09 - 2013-09-28 02:09 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2013-12-05 18:09 - 2013-09-25 03:26 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2013-12-05 18:09 - 2013-09-25 03:26 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2013-12-05 18:09 - 2013-09-25 03:23 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2013-12-05 18:09 - 2013-09-25 03:23 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2013-12-05 18:09 - 2013-09-25 03:23 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2013-12-05 18:09 - 2013-09-25 03:22 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2013-12-05 18:09 - 2013-09-25 03:21 - 01447936 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2013-12-05 18:09 - 2013-09-25 03:21 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2013-12-05 18:09 - 2013-09-25 02:58 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2013-12-05 18:09 - 2013-09-25 02:57 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2013-12-05 18:09 - 2013-09-25 02:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2013-12-05 18:09 - 2013-09-25 02:56 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2013-12-05 18:09 - 2013-09-25 02:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2013-12-05 18:09 - 2013-07-04 13:18 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2013-12-05 18:08 - 2013-10-12 03:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2013-12-05 18:08 - 2013-10-12 03:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2013-12-05 18:08 - 2013-10-12 03:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2013-12-05 18:08 - 2013-10-12 03:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll 2013-12-05 18:08 - 2013-10-12 03:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL 2013-12-05 17:52 - 2013-12-05 17:52 - 00000000 ____D C:\Users\Konar\AppData\Roaming\MPC-HC 2013-12-05 17:51 - 2013-12-05 17:51 - 00000000 ____D C:\Program Files (x86)\K-Lite Codec Pack 2013-12-05 17:51 - 2013-11-14 19:00 - 00127488 _____ C:\Windows\system32\ff_vfw.dll 2013-12-05 17:51 - 2013-11-14 19:00 - 00112640 _____ C:\Windows\SysWOW64\ff_vfw.dll 2013-12-05 17:51 - 2013-08-22 19:09 - 00256088 _____ C:\Windows\system32\unrar64.dll 2013-12-05 17:51 - 2013-03-17 19:22 - 03554304 _____ (x264vfw project) C:\Windows\system32\x264vfw64.dll 2013-12-05 17:51 - 2013-03-17 18:21 - 03649536 _____ (x264vfw project) C:\Windows\SysWOW64\x264vfw.dll 2013-12-05 17:51 - 2012-07-21 12:55 - 00180736 _____ (fccHandler) C:\Windows\system32\ac3acm.acm 2013-12-05 17:51 - 2012-07-21 12:54 - 00122880 _____ (fccHandler) C:\Windows\SysWOW64\ac3acm.acm 2013-12-05 17:51 - 2011-12-07 19:37 - 00148992 _____ ( ) C:\Windows\system32\lagarith.dll 2013-12-05 17:51 - 2011-12-07 19:32 - 00216064 _____ ( ) C:\Windows\SysWOW64\lagarith.dll 2013-12-05 17:51 - 2011-06-24 16:45 - 00258560 _____ C:\Windows\system32\xvidvfw.dll 2013-12-05 17:51 - 2011-06-24 16:44 - 00243200 _____ C:\Windows\SysWOW64\xvidvfw.dll 2013-12-05 17:51 - 2011-06-24 16:31 - 00703488 _____ C:\Windows\system32\xvidcore.dll 2013-12-05 17:51 - 2011-06-24 16:28 - 00650752 _____ C:\Windows\SysWOW64\xvidcore.dll 2013-12-05 17:51 - 2004-05-18 20:16 - 00039936 _____ (Disappearing Inc.) C:\Windows\SysWOW64\huffyuv.dll 2013-12-05 17:40 - 2013-12-05 17:40 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-12-05 17:40 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2013-12-05 17:18 - 2013-12-06 23:09 - 00000000 ____D C:\Users\Konar\Downloads\New X 2013-11-26 15:11 - 2013-12-08 20:49 - 00001032 _____ C:\Users\Konar\Desktop\New Text Document.txt 2013-11-16 01:14 - 2013-11-16 23:48 - 00000000 ____D C:\Users\Konar\AppData\Local\Microsoft Games ==================== One Month Modified Files and Folders ======= 2013-12-09 15:41 - 2013-12-09 15:40 - 00010448 _____ C:\Users\Konar\Downloads\FRST.txt 2013-12-09 15:41 - 2012-12-27 22:15 - 00000000 ____D C:\Users\Konar\AppData\Local\PMB Files 2013-12-09 15:39 - 2013-12-09 15:39 - 00000000 ____D C:\FRST 2013-12-09 15:37 - 2013-12-09 15:37 - 01927998 _____ (Farbar) C:\Users\Konar\Downloads\FRST64.exe 2013-12-09 15:29 - 2009-07-14 05:45 - 00022064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-12-09 15:29 - 2009-07-14 05:45 - 00022064 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-12-09 15:26 - 2009-07-14 06:13 - 00782510 _____ C:\Windows\system32\PerfStringBackup.INI 2013-12-09 15:25 - 2013-01-14 21:34 - 00000000 ____D C:\ProgramData\Xfire 2013-12-09 15:25 - 2012-12-29 16:34 - 00000000 ____D C:\Users\Konar\AppData\Roaming\uTorrent 2013-12-09 15:25 - 2012-12-28 16:24 - 00000000 ____D C:\Users\Konar\AppData\Roaming\AIMP3 2013-12-09 15:25 - 2012-12-27 21:40 - 00000000 ____D C:\Users\Konar\AppData\Roaming\TS3Client 2013-12-09 15:24 - 2013-12-05 19:45 - 00139495 ____N C:\Windows\WindowsUpdate.log 2013-12-09 15:22 - 2013-10-19 16:35 - 00001044 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore1cecce0cb975380.job 2013-12-09 15:21 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-12-09 05:51 - 2013-12-06 23:07 - 1973455042 _____ C:\Users\Konar\Downloads\s.p.club_1080.mp4 2013-12-09 05:51 - 2013-12-06 23:07 - 1561247744 _____ C:\Users\Konar\Downloads\The Office_ A XXX Parody (New Sensations) XXX (DVDRip).avi 2013-12-09 05:46 - 2013-10-19 16:35 - 00001048 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA1cecce0cd41874e.job 2013-12-09 05:31 - 2013-09-27 23:48 - 00000000 ____D C:\Users\Konar\Downloads\The Big Bang Theory Season 7 2013-12-09 04:07 - 2012-12-27 22:15 - 00000000 ____D C:\ProgramData\PMB Files 2013-12-08 20:49 - 2013-11-26 15:11 - 00001032 _____ C:\Users\Konar\Desktop\New Text Document.txt 2013-12-08 17:41 - 2013-10-19 16:35 - 00004044 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA1cecce0cd41874e 2013-12-08 17:41 - 2013-10-19 16:35 - 00003792 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore1cecce0cb975380 2013-12-08 15:19 - 2012-12-28 16:24 - 00000000 ____D C:\Program Files (x86)\AIMP3 2013-12-08 03:37 - 2013-06-15 21:16 - 00000000 ____D C:\Users\Konar\AppData\Roaming\vlc 2013-12-07 20:21 - 2013-01-14 21:34 - 00000000 ____D C:\Users\Konar\AppData\Roaming\Xfire 2013-12-07 17:59 - 2013-12-07 17:59 - 00255785 _____ C:\Users\Konar\Desktop\moh.rar 2013-12-06 23:09 - 2013-12-05 17:18 - 00000000 ____D C:\Users\Konar\Downloads\New X 2013-12-06 23:05 - 2013-12-06 23:05 - 00000000 ____D C:\Users\Konar\Downloads\DirtyMasseur - Gia Dimarco 2013-12-06 21:55 - 2013-01-17 03:15 - 00000000 ____D C:\Program Files\World of Warcraft 2013-12-05 19:45 - 2012-12-27 21:36 - 00000000 ____D C:\Users\Konar\Desktop\Games 2013-12-05 19:41 - 2013-09-15 18:36 - 00000000 ____D C:\Program Files (x86)\Outlast 2013-12-05 19:28 - 2013-09-13 17:22 - 00000000 ____D C:\AdwCleaner 2013-12-05 18:43 - 2013-12-05 18:43 - 00000000 ____D C:\ProgramData\ESET 2013-12-05 18:43 - 2012-12-27 20:05 - 00000000 ____D C:\Program Files\ESET 2013-12-05 18:37 - 2013-12-05 18:37 - 00002052 _____ C:\Windows\epplauncher.mif 2013-12-05 18:32 - 2012-12-28 00:24 - 00000000 ____D C:\Windows\Panther 2013-12-05 18:31 - 2012-12-27 15:35 - 00001307 _____ C:\Users\Konar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-12-05 18:28 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2013-12-05 18:22 - 2013-12-05 18:22 - 00763276 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2013-12-05 18:15 - 2013-12-05 18:15 - 23212032 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 17142784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 12995584 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 11220992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 05765120 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 04240384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-12-05 18:15 - 2013-12-05 18:15 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-12-05 18:15 - 2013-12-05 18:15 - 02332160 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 02166272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 01993728 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-12-05 18:15 - 2013-12-05 18:15 - 01926656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-12-05 18:15 - 2013-12-05 18:15 - 01818112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 01394176 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 01156608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-12-05 18:15 - 2013-12-05 18:15 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-12-05 18:15 - 2013-12-05 18:15 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-12-05 18:15 - 2013-12-05 18:15 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-12-05 18:15 - 2013-12-05 18:15 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-12-05 18:15 - 2013-12-05 18:15 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-12-05 18:15 - 2013-12-05 18:15 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-12-05 18:15 - 2013-12-05 18:15 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-12-05 18:15 - 2013-12-05 18:15 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-12-05 18:15 - 2013-12-05 18:15 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-12-05 18:15 - 2013-12-05 18:15 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-12-05 18:15 - 2013-12-05 18:15 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-12-05 18:15 - 2013-12-05 18:15 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2013-12-05 18:15 - 2013-12-05 18:15 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-12-05 18:15 - 2013-12-05 18:15 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-12-05 18:15 - 2013-12-05 18:15 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-12-05 18:15 - 2013-12-05 18:15 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-12-05 18:15 - 2013-12-05 18:15 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-12-05 18:15 - 2013-12-05 18:15 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-12-05 18:15 - 2013-12-05 18:15 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-12-05 18:15 - 2013-12-05 18:15 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-12-05 18:15 - 2013-12-05 18:15 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-12-05 18:15 - 2013-12-05 18:15 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-12-05 18:15 - 2013-12-05 18:15 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-12-05 18:15 - 2013-12-05 18:15 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2013-12-05 18:13 - 2013-07-11 12:26 - 00000000 ____D C:\Windows\system32\MRT 2013-12-05 18:11 - 2012-12-27 17:38 - 82896128 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-12-05 18:07 - 2013-05-04 17:20 - 00000000 ____D C:\Program Files (x86)\VideoLAN 2013-12-05 18:03 - 2013-06-15 21:16 - 00000000 ____D C:\Program Files\VideoLAN 2013-12-05 17:52 - 2013-12-05 17:52 - 00000000 ____D C:\Users\Konar\AppData\Roaming\MPC-HC 2013-12-05 17:51 - 2013-12-05 17:51 - 00000000 ____D C:\Program Files (x86)\K-Lite Codec Pack 2013-12-05 17:40 - 2013-12-05 17:40 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-12-05 17:36 - 2012-12-27 19:30 - 00000000 ____D C:\Program Files\CCleaner 2013-12-05 17:26 - 2013-11-04 16:12 - 00000000 ____D C:\Users\Konar\Downloads\Supernatural Season 9 2013-12-05 17:26 - 2013-09-25 19:45 - 00000000 ____D C:\Users\Konar\Downloads\How I Met Your Mother Season 9 2013-12-05 17:25 - 2012-12-31 05:06 - 00000000 ____D C:\Program Files (x86)\NapiProjekt 2013-12-05 17:18 - 2013-01-05 15:59 - 00000000 ___HD C:\Users\Konar\Downloads\X 2013-12-05 16:21 - 2012-12-27 21:36 - 00000000 ____D C:\Program Files\TeamSpeak 3 Client 2013-12-05 16:07 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\NDF 2013-12-05 14:49 - 2013-01-19 16:33 - 00000000 ____D C:\Users\Konar\Documents\FIFA 13 2013-12-04 21:17 - 2013-01-19 15:40 - 00000000 ____D C:\Users\Konar\AppData\Roaming\DAEMON Tools Lite 2013-12-04 21:12 - 2013-04-15 03:19 - 00000000 ____D C:\Program Files (x86)\Electronic Arts 2013-12-04 21:10 - 2012-12-27 15:50 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-12-04 21:09 - 2013-03-30 12:23 - 00000000 ____D C:\Program Files (x86)\EA Games 2013-12-01 11:45 - 2013-04-15 03:31 - 00000000 ____D C:\Users\Konar\Documents\NFS ProStreet 2013-11-30 10:20 - 2013-01-09 01:39 - 00000000 ____D C:\Program Files (x86)\SpeedFan 2013-11-19 03:33 - 2010-11-21 04:27 - 00267936 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2013-11-16 23:48 - 2013-11-16 01:14 - 00000000 ____D C:\Users\Konar\AppData\Local\Microsoft Games 2013-11-14 19:00 - 2013-12-05 17:51 - 00127488 _____ C:\Windows\system32\ff_vfw.dll 2013-11-14 19:00 - 2013-12-05 17:51 - 00112640 _____ C:\Windows\SysWOW64\ff_vfw.dll 2013-11-09 00:24 - 2013-09-28 00:39 - 00000000 ____D C:\Users\Konar\Downloads\Friends Season 7 ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-11-30 13:14 ==================== End Of Log ============================