Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 14-07-2014 01 Ran by SYSTEM on MINWINPC on 21-07-2014 18:48:20 Running from i:\ Platform: Windows Vista (TM) Ultimate Service Pack 1 (X64) OS Language: English (United States) Internet Explorer Version 9 Boot Mode: Recovery The current controlset is ControlSet003 [b]ATTENTION!:=====> If the system is bootable FRST must be run from normal or Safe mode to create a complete log.[/b] The only official download link for FRST: Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/ Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/ Download link from any site other than Bleeping Computer is unpermitted or outdated. See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Registry (Whitelisted) ================== HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2199840 2014-04-30] (NVIDIA Corporation) HKLM-x32\...\Run: [mobilegeni daemon] => "C:\Program Files (x86)\Mobogenie\DaemonProcess.exe" HKLM-x32\...\Run: [WD Quick View] => C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe [5545328 2014-02-28] (Western Digital Technologies, Inc.) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [585048 2014-05-31] (Razer Inc.) HKU\Adam\...\Run: [uTorrent] => C:\Users\Adam\AppData\Roaming\uTorrent\uTorrent.exe [1338704 2014-06-30] (BitTorrent Inc.) HKU\Adam\...\Run: [swg] => C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2009-04-12] (Google Inc.) HKU\Adam\...\Run: [Adobe Reader Synchronizer] => C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AdobeCollabSync.exe [1243040 2012-01-03] (Adobe Systems Incorporated) HKU\Adam\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [17875120 2012-10-19] (Skype Technologies S.A.) HKU\Adam\...\Run: [LiveSupport] => "C:\Program Files (x86)\LiveSupport\LiveSupport.exe" /noshow /log HKU\Default\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter HKU\TEMP\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter HKU\TEMP.Adam-PC\...\Run: [WindowsWelcomeCenter] => rundll32.exe oobefldr.dll,ShowWelcomeCenter ShellIconOverlayIdentifiers: SkyDrive1 -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File ShellIconOverlayIdentifiers: SkyDrive2 -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File ShellIconOverlayIdentifiers: SkyDrive3 -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File ShellIconOverlayIdentifiers: GDriveBlacklistedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google) ShellIconOverlayIdentifiers: GDriveSharedEditOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google) ShellIconOverlayIdentifiers: GDriveSharedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google) ShellIconOverlayIdentifiers: GDriveSharedViewOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google) ShellIconOverlayIdentifiers: GDriveSyncedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google) ShellIconOverlayIdentifiers: GDriveSyncingOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google) ShellIconOverlayIdentifiers: IDM Shell Extension -> {CDC95B92-E27C-4745-A8C5-64A52A78855D} => M:\Program Files (x86)\Internet Download Manager\IDMShellExt64.dll No File ShellIconOverlayIdentifiers-x32: SkyDrive1 -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File ShellIconOverlayIdentifiers-x32: SkyDrive2 -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File ShellIconOverlayIdentifiers-x32: SkyDrive3 -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File ShellIconOverlayIdentifiers-x32: EnhancedStorageShell -> {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D} => No File ==================== Services (Whitelisted) ================= S2 AxAutoMntSrv; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [75624 2012-01-05] (Alcohol Soft Development Team) S4 CLHNServiceForPowerDVD12; F:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12\Kernel\DMP\CLHNServer\CLHNServiceForPowerDVD12.exe [90640 2012-07-25] (CyberLink Corp.) S4 Creative Dolby Digital Live Pack Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\DDLLicensing.exe [79360 2009-01-12] (Creative Labs) S2 CtHdaSvc; C:\Windows\sysWow64\CtHdaSvc.exe [112640 2013-07-03] (Creative Technology Ltd) S4 CyberLink PowerDVD 12 Media Server Monitor Service; F:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe [78352 2012-07-25] (CyberLink) S4 CyberLink PowerDVD 12 Media Server Service; F:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe [295440 2012-07-25] (CyberLink) S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [520416 2014-01-28] (Futuremark) S2 GEST Service; C:\Program Files (x86)\GIGABYTE\EnergySaver\GSvr.exe [68136 2008-09-24] () S4 HDDlife HDD Access service; C:\Program Files (x86)\Common Files\BinarySense\hldasvc.exe [2095368 2013-02-14] (BinarySense, Inc.) S2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2151744 2014-03-10] (IObit) S2 MBAMScheduler; E:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1809720 2014-05-11] (Malwarebytes Corporation) S2 MBAMService; E:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [860472 2014-05-11] (Malwarebytes Corporation) S2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2014-03-11] (Microsoft Corporation) S3 NisSrv; C:\Program Files\Microsoft Security Client\NisSrv.exe [347872 2014-03-11] (Microsoft Corporation) S2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1617696 2014-04-30] (NVIDIA Corporation) S4 Philips amBX USB HAL; C:\Program Files (x86)\amBX\Device Drivers\Philips USB\Philips_amBX_USB_HAL.exe [540672 2008-06-09] (Philips) S4 Philips HAL Starter; C:\Program Files (x86)\amBX\Device Drivers\Philips USB\Philips_HAL_Starter.exe [74240 2008-06-09] () S4 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2013-10-23] () S4 RemoteAccess; C:\Windows\system32\svchost.exe [27648 2008-01-20] (Microsoft Corporation) S2 WDBackup; C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe [1042808 2014-02-28] (Western Digital Technologies, Inc.) S2 WDDriveService; C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe [271728 2014-02-28] (Western Digital Technologies, Inc.) S2 WDRulesService; C:\Program Files (x86)\Western Digital\WD SmartWare\WDRulesEngine.exe [1178128 2012-12-19] (Western Digital ) S2 CTAudSvcService; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [X] S4 CyberLink PowerDVD 11.0 Monitor Service; "H:\Program Files (x86)\CyberLink\PowerDVD11\PowerDVD11\Common\MediaServer\CLMSMonitorService.exe" [X] S4 CyberLink PowerDVD 11.0 Service; "H:\Program Files (x86)\CyberLink\PowerDVD11\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe" [X] S4 CyberLink PowerDVD 13 Media Server Monitor Service; "H:\CyberLink\PowerDVD13\PowerDVD13\Kernel\DMS\CLMSMonitorServicePDVD13.exe" [X] S4 CyberLink PowerDVD 13 Media Server Service; "H:\CyberLink\PowerDVD13\PowerDVD13\Kernel\DMS\CLMSServerPDVD13.exe" [X] S3 Survarium Update Service; M:\Program Files (x86)\Survarium\game\binaries\x86\survarium_service.exe [X] ==================== Drivers (Whitelisted) ==================== S3 ASPI; C:\Windows\SysWOW64\DRIVERS\ASPI32.sys [84832 2002-07-17] (Adaptec) S1 Beep; C:\Windows\SysWow64\Drivers\Beep.sys [0 2009-03-14] () S3 ENTECH64; C:\Windows\system32\DRIVERS\ENTECH64.sys [12744 2008-09-17] (EnTech Taiwan) S3 ENTECH64; C:\Windows\SysWOW64\DRIVERS\ENTECH64.sys [12744 2007-09-07] (EnTech Taiwan) S3 GVTDrv64; C:\Windows\GVTDrv64.sys [30528 2013-04-07] () S3 Lavasoft Kernexplorer; C:\Program Files (x86)\Lavasoft\Ad-Aware\KernExplorer64.sys [17152 2011-02-12] () S3 NTIOLib_1_0_4; C:\Program Files (x86)\MSI\Live Update 5\NTIOLib_X64.sys [14136 2010-10-22] (MSI) S2 ntk_PowerDVD12; F:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12\Kernel\DMP\CLHNServer\ntk_PowerDVD12_64.sys [83704 2012-06-20] (Cyberlink Corp.) S3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [10568 2012-07-23] () S2 {73526619-C24F-470B-9BED-53D455FBB5C6}; F:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12\Common\NavFilter\000.fcl [147704 2012-08-10] (CyberLink Corp.) S4 adp94xx; \SystemRoot\system32\drivers\adp94xx.sys [X] S4 adpahci; \SystemRoot\system32\drivers\adpahci.sys [X] S4 adpu160m; \SystemRoot\system32\drivers\adpu160m.sys [X] S4 adpu320; \SystemRoot\system32\drivers\adpu320.sys [X] S3 afcdp; system32\DRIVERS\afcdp.sys [X] S3 agp440; \SystemRoot\system32\drivers\agp440.sys [X] S4 aic78xx; \SystemRoot\system32\drivers\djsvs.sys [X] S3 Aken; \??\H:\0 A.D. alpha\binaries\system\aken64.sys [X] S4 aliide; \SystemRoot\system32\drivers\aliide.sys [X] S4 amdide; \SystemRoot\system32\drivers\amdide.sys [X] S4 AmdK8; \SystemRoot\system32\drivers\amdk8.sys [X] S0 amdkmpfd; system32\DRIVERS\amdkmpfd.sys [X] S4 arc; \SystemRoot\system32\drivers\arc.sys [X] S4 arcsas; \SystemRoot\system32\drivers\arcsas.sys [X] S5 Aspi32; C:\Windows\SysWOW64\Drivers\Aspi32.sys [84832 2002-07-17] (Adaptec) S2 atksgt; system32\DRIVERS\atksgt.sys [X] S1 avgtp; \??\C:\Windows\system32\drivers\avgtpx64.sys [X] S4 blbdrive; \SystemRoot\system32\drivers\blbdrive.sys [X] S3 BrFiltLo; \SystemRoot\system32\drivers\brfiltlo.sys [X] S3 BrFiltUp; \SystemRoot\system32\drivers\brfiltup.sys [X] S4 Brserid; \SystemRoot\system32\drivers\brserid.sys [X] S4 BrSerWdm; \SystemRoot\system32\drivers\brserwdm.sys [X] S4 BrUsbMdm; \SystemRoot\system32\drivers\brusbmdm.sys [X] S3 BrUsbSer; \SystemRoot\system32\drivers\brusbser.sys [X] S4 BTHMODEM; \SystemRoot\system32\drivers\bthmodem.sys [X] S3 catchme; \??\C:\ComboFix\catchme.sys [X] S4 circlass; \SystemRoot\system32\drivers\circlass.sys [X] S4 cmdide; \SystemRoot\system32\drivers\cmdide.sys [X] S4 Compbatt; \SystemRoot\system32\drivers\compbatt.sys [X] S2 cpuz133; \??\C:\Windows\system32\drivers\cpuz133_x64.sys [X] S2 cpuz134; \??\C:\Windows\system32\drivers\cpuz134_x64.sys [X] S3 cpuz136; \??\C:\Windows\TEMP\cpuz136\cpuz136_x64.sys [X] S0 crcdisk; system32\drivers\crcdisk.sys [X] S3 CT20XUT; system32\drivers\CT20XUT.SYS [X] S3 CT20XUT.SYS; \SystemRoot\System32\drivers\CT20XUT.SYS [X] S3 CTEXFIFX; system32\drivers\CTEXFIFX.SYS [X] S3 CTEXFIFX.SYS; \SystemRoot\System32\drivers\CTEXFIFX.SYS [X] S3 cthda; system32\drivers\cthda.sys [X] S3 cthdb; system32\DRIVERS\cthdb.sys [X] S3 CTHWIUT; system32\drivers\CTHWIUT.SYS [X] S3 CTHWIUT.SYS; \SystemRoot\System32\drivers\CTHWIUT.SYS [X] S1 dtsoftbus01; system32\DRIVERS\dtsoftbus01.sys [X] S3 E1G60; system32\DRIVERS\E1G6032E.sys [X] S4 elxstor; \SystemRoot\system32\drivers\elxstor.sys [X] S3 emupia; system32\drivers\emupia2k.sys [X] S4 ErrDev; \SystemRoot\system32\drivers\errdev.sys [X] S3 gagp30kx; \SystemRoot\system32\drivers\gagp30kx.sys [X] S3 ggflt; system32\DRIVERS\ggflt.sys [X] S3 ggsemc; system32\DRIVERS\ggsemc.sys [X] S3 GPUZ; \??\C:\Windows\TEMP\GPUZ.sys [X] S3 ha20x22k; system32\drivers\ha20x22k.sys [X] S3 ha20x2k; system32\drivers\ha20x2k.sys [X] S4 HidBth; \SystemRoot\system32\drivers\hidbth.sys [X] S4 HidIr; \SystemRoot\system32\drivers\hidir.sys [X] S4 HpCISSs; \SystemRoot\system32\drivers\hpcisss.sys [X] S4 i2omp; \SystemRoot\system32\drivers\i2omp.sys [X] S4 iaStorV; \SystemRoot\system32\drivers\iastorv.sys [X] S2 IDMWFP; system32\DRIVERS\idmwfp.sys [X] S4 iirsp; \SystemRoot\system32\drivers\iirsp.sys [X] S3 IntcAzAudAddService; system32\drivers\RTKVHD64.sys [X] S4 intelide; \SystemRoot\system32\drivers\intelide.sys [X] S3 intelppm; system32\DRIVERS\intelppm.sys [X] S4 IPMIDRV; \SystemRoot\system32\drivers\ipmidrv.sys [X] S4 isapnp; \SystemRoot\system32\drivers\isapnp.sys [X] S4 iteatapi; \SystemRoot\system32\drivers\iteatapi.sys [X] S4 iteraid; \SystemRoot\system32\drivers\iteraid.sys [X] S3 ivusb; system32\DRIVERS\ivusb.sys [X] S0 JRAID; system32\DRIVERS\jraid.sys [X] S0 Lbd; system32\DRIVERS\Lbd.sys [X] S2 lirsgt; system32\DRIVERS\lirsgt.sys [X] S4 LSI_FC; \SystemRoot\system32\drivers\lsi_fc.sys [X] S4 LSI_SAS; \SystemRoot\system32\drivers\lsi_sas.sys [X] S4 LSI_SCSI; \SystemRoot\system32\drivers\lsi_scsi.sys [X] S3 Lycosa; system32\drivers\Lycosa.sys [X] S3 massfilter_hs; system32\drivers\massfilter_hs.sys [X] S3 MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [X] S3 MBAMWebAccessControl; \??\C:\Windows\system32\drivers\mwac.sys [X] S4 megasas; \SystemRoot\system32\drivers\megasas.sys [X] S4 MegaSR; \SystemRoot\system32\drivers\megasr.sys [X] S3 monitor; system32\DRIVERS\monitor.sys [X] S0 MpFilter; system32\DRIVERS\MpFilter.sys [X] S4 mpio; \SystemRoot\system32\drivers\mpio.sys [X] S4 Mraid35x; \SystemRoot\system32\drivers\mraid35x.sys [X] S4 msdsm; \SystemRoot\system32\drivers\msdsm.sys [X] S3 netr28ux; system32\DRIVERS\netr28ux.sys [X] S4 nfrd960; \SystemRoot\system32\drivers\nfrd960.sys [X] S3 NisDrv; system32\DRIVERS\NisDrvWFP.sys [X] S2 ntk_PowerDVD; \??\H:\Program Files (x86)\CyberLink\PowerDVD11\PowerDVD11\Kernel\DMP\ntk_PowerDVD_64.sys [X] S3 nusb3hub; system32\DRIVERS\nusb3hub.sys [X] S3 nusb3xhc; system32\DRIVERS\nusb3xhc.sys [X] S3 NVHDA; system32\drivers\nvhda64v.sys [X] S3 nvlddmkm; system32\DRIVERS\nvlddmkm.sys [X] S4 nvraid; \SystemRoot\system32\drivers\nvraid.sys [X] S4 nvstor; \SystemRoot\system32\drivers\nvstor.sys [X] S3 nv_agp; \SystemRoot\system32\drivers\nv_agp.sys [X] S4 Parport; \SystemRoot\system32\drivers\parport.sys [X] S4 pcmcia; \SystemRoot\system32\drivers\pcmcia.sys [X] S4 Processor; \SystemRoot\system32\drivers\processr.sys [X] S0 PxHlpa64; System32\Drivers\PxHlpa64.sys [X] S4 ql2300; \SystemRoot\system32\drivers\ql2300.sys [X] S4 ql40xx; \SystemRoot\system32\drivers\ql40xx.sys [X] S3 RTL8023x64; system32\DRIVERS\Rtnic64.sys [X] S3 RTL8169; system32\DRIVERS\Rtlh64.sys [X] S3 rzendpt; system32\DRIVERS\rzendpt.sys [X] S3 rzmouhid; system32\DRIVERS\rzmouhid.sys [X] S3 rzp1endpt; system32\DRIVERS\rzp1endpt.sys [X] S3 rzudd; system32\DRIVERS\rzudd.sys [X] S3 rzvmouse; system32\DRIVERS\rzvmouse.sys [X] S3 s1018bus; system32\DRIVERS\s1018bus.sys [X] S3 s1018mdfl; system32\DRIVERS\s1018mdfl.sys [X] S3 s1018mdm; system32\DRIVERS\s1018mdm.sys [X] S3 s1018mgmt; system32\DRIVERS\s1018mgmt.sys [X] S3 s1018nd5; system32\DRIVERS\s1018nd5.sys [X] S3 s1018obex; system32\DRIVERS\s1018obex.sys [X] S3 s1018unic; system32\DRIVERS\s1018unic.sys [X] S3 s117bus; system32\DRIVERS\s117bus.sys [X] S3 s117mgmt; system32\DRIVERS\s117mgmt.sys [X] S3 s117nd5; system32\DRIVERS\s117nd5.sys [X] S3 s117unic; system32\DRIVERS\s117unic.sys [X] S4 sbp2port; \SystemRoot\system32\drivers\sbp2port.sys [X] S1 SBRE; \??\C:\Windows\system32\drivers\SBREdrv.sys [X] S3 seehcri; system32\DRIVERS\seehcri.sys [X] S3 Serenum; \SystemRoot\system32\drivers\serenum.sys [X] S3 Serial; \SystemRoot\system32\drivers\serial.sys [X] S4 sffdisk; \SystemRoot\system32\drivers\sffdisk.sys [X] S3 sffp_mmc; \SystemRoot\system32\drivers\sffp_mmc.sys [X] S3 sffp_sd; \SystemRoot\system32\drivers\sffp_sd.sys [X] S4 sfloppy; \SystemRoot\system32\drivers\sfloppy.sys [X] S3 Sftfs; system32\DRIVERS\Sftfslh.sys [X] S3 Sftplay; system32\DRIVERS\Sftplaylh.sys [X] S3 Sftredir; system32\DRIVERS\Sftredirlh.sys [X] S3 Sftvol; system32\DRIVERS\Sftvollh.sys [X] S4 SiSRaid2; \SystemRoot\system32\drivers\sisraid2.sys [X] S4 SiSRaid4; \SystemRoot\system32\drivers\sisraid4.sys [X] S0 snapman; system32\DRIVERS\snapman.sys [X] S0 sptd; \SystemRoot\System32\Drivers\sptd.sys [X] S3 SRS_SSCFilter; system32\drivers\srs_sscfilter_amd64.sys [X] S3 swenum; system32\DRIVERS\swenum.sys [X] S4 Symc8xx; \SystemRoot\system32\drivers\symc8xx.sys [X] S4 Sym_hi; \SystemRoot\system32\drivers\sym_hi.sys [X] S4 Sym_u3; \SystemRoot\system32\drivers\sym_u3.sys [X] S0 tdrpman273; system32\DRIVERS\tdrpm273.sys [X] S0 timounter; system32\DRIVERS\timntr.sys [X] S2 TurboB; system32\DRIVERS\TurboB.sys [X] S3 uagp35; \SystemRoot\system32\drivers\uagp35.sys [X] S3 uisp; System32\Drivers\usbicp.sys [X] S3 uliagpkx; \SystemRoot\system32\drivers\uliagpkx.sys [X] S4 uliahci; \SystemRoot\system32\drivers\uliahci.sys [X] S4 UlSata; \SystemRoot\system32\drivers\ulsata.sys [X] S4 ulsata2; \SystemRoot\system32\drivers\ulsata2.sys [X] S4 usbcir; \SystemRoot\system32\drivers\usbcir.sys [X] S4 usbohci; \SystemRoot\system32\drivers\usbohci.sys [X] S3 usbscan; system32\DRIVERS\usbscan.sys [X] S3 VaneFltr; system32\drivers\Lachesis.sys [X] S3 VBoxNetAdp; system32\DRIVERS\VBoxNetAdp.sys [X] S3 vcd10bus; system32\DRIVERS\vcd10bus.sys [X] S3 VClone; system32\DRIVERS\VClone.sys [X] S4 viaide; \SystemRoot\system32\drivers\viaide.sys [X] S3 vmci; \SystemRoot\system32\DRIVERS\vmci.sys [X] S3 VMnetAdapter; system32\DRIVERS\vmnetadapter.sys [X] S4 vsmraid; \SystemRoot\system32\drivers\vsmraid.sys [X] S4 WacomPen; \SystemRoot\system32\drivers\wacompen.sys [X] S4 Wd; \SystemRoot\system32\drivers\wd.sys [X] S3 WDC_SAM; system32\DRIVERS\wdcsam64.sys [X] S3 WinDriver6; system32\drivers\windrvr6.sys [X] S2 {09F57980-3432-4AFC-957D-27AC45FAE1F5}; \??\H:\CyberLink\PowerDVD13\PowerDVD13\Common\NavFilter\000.fcl [X] S2 {329F96B6-DF1E-4328-BFDA-39EA953C1312}; \??\H:\Program Files (x86)\CyberLink\PowerDVD11\PowerDVD11\Common\NavFilter\000.fcl [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-07-21 08:12 - 2013-10-29 19:55 - 00122368 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\drmk.sys 2014-07-21 08:12 - 2013-10-29 18:33 - 00218112 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\portcls.sys 2014-07-21 08:12 - 2013-09-27 13:49 - 00000000 _____ () C:\Windows\System32\Drivers\Msft_User_WpdRapi2_01_00_00.Wdf 2014-07-21 08:12 - 2013-09-14 05:33 - 00000000 _____ () C:\Windows\System32\Drivers\Msft_Kernel_rzvmouse_01009.Wdf 2014-07-21 08:12 - 2013-09-14 05:33 - 00000000 _____ () C:\Windows\System32\Drivers\Msft_Kernel_rzp1endpt_01009.Wdf 2014-07-21 08:12 - 2013-09-03 18:31 - 00404992 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\afd.sys 2014-07-21 08:12 - 2013-07-31 20:10 - 00901568 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\dxgkrnl.sys 2014-07-21 08:12 - 2013-07-04 19:58 - 01417664 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys 2014-07-21 08:12 - 2013-07-04 18:15 - 00040448 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\tcpipreg.sys 2014-07-21 08:12 - 2013-07-02 18:22 - 00031616 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\hidparse.sys 2014-07-21 08:12 - 2013-06-28 18:25 - 00274944 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\usbhub.sys 2014-07-21 08:12 - 2013-06-28 18:25 - 00259584 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\usbport.sys 2014-07-21 08:12 - 2013-06-28 18:25 - 00095744 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\usbccgp.sys 2014-07-21 08:12 - 2013-06-28 18:25 - 00007552 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\usbd.sys 2014-07-21 08:12 - 2013-06-26 15:00 - 00785624 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\Wdf01000.sys 2014-07-21 08:12 - 2013-06-15 03:38 - 00029184 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\tssecsrv.sys 2014-07-21 08:12 - 2013-05-15 03:03 - 00000000 _____ () C:\Windows\System32\Drivers\Msft_Kernel_rzudd_01009.Wdf 2014-07-21 08:12 - 2013-05-15 03:03 - 00000000 _____ () C:\Windows\System32\Drivers\Msft_Kernel_rzendpt_01009.Wdf 2014-07-21 08:12 - 2013-03-03 11:13 - 01513320 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ntfs.sys 2014-07-21 08:12 - 2013-02-11 18:18 - 00019456 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\usb8023x.sys 2014-07-21 08:12 - 2013-02-11 18:18 - 00019456 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\usb8023.sys 2014-07-21 08:12 - 2013-01-06 11:10 - 00000000 _____ () C:\Windows\System32\Drivers\Msft_Kernel_WinUSB_01009.Wdf 2014-07-21 08:12 - 2012-09-27 10:22 - 00000000 _____ () C:\Windows\System32\Drivers\Msft_User_WpdRapi_01_00_00.Wdf 2014-07-21 08:12 - 2012-08-21 03:50 - 00267648 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\volsnap.sys 2014-07-21 08:12 - 2012-07-25 20:55 - 00054376 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\WdfLdr.sys 2014-07-21 08:12 - 2012-07-25 18:26 - 00198656 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\WUDFRd.sys 2014-07-21 08:12 - 2012-07-25 18:26 - 00087040 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\WUDFPf.sys 2014-07-21 08:12 - 2012-06-04 07:29 - 00516480 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ksecdd.sys 2014-07-21 08:12 - 2012-06-02 06:57 - 00000003 _____ () C:\Windows\System32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf 2014-07-21 08:12 - 2012-05-01 06:29 - 00209920 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\rdpwd.sys 2014-07-21 08:12 - 2012-03-20 15:34 - 00072576 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\partmgr.sys 2014-07-21 08:12 - 2012-02-29 05:52 - 00016384 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\fs_rec.sys 2014-07-21 08:12 - 2011-07-06 07:49 - 00275456 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mrxsmb10.sys 2014-07-21 08:12 - 2011-05-05 06:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\usbehci.sys 2014-07-21 08:12 - 2011-05-05 06:17 - 00029184 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\usbuhci.sys 2014-07-21 08:12 - 2011-04-29 05:41 - 00176128 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\srv2.sys 2014-07-21 08:12 - 2011-04-29 05:40 - 00145920 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\srvnet.sys 2014-07-21 08:12 - 2011-04-29 05:39 - 00135680 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mrxsmb.sys 2014-07-21 08:12 - 2011-04-29 05:39 - 00107008 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mrxsmb20.sys 2014-07-21 08:12 - 2011-04-14 07:14 - 00097792 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\dfsc.sys 2014-07-21 08:12 - 2011-02-18 06:18 - 00450560 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\srv.sys 2014-07-21 08:12 - 2011-02-18 06:16 - 00090624 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\bowser.sys 2014-07-21 08:12 - 2010-05-02 10:19 - 00000000 _____ () C:\Windows\System32\Drivers\Msft_Kernel_ggflt_01007.Wdf 2014-07-21 08:12 - 2010-04-06 00:34 - 00345984 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\netio.sys 2014-07-21 08:12 - 2010-02-20 13:30 - 00620032 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\http.sys 2014-07-21 08:12 - 2010-02-18 03:59 - 00029696 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\tunnel.sys 2014-07-21 08:12 - 2009-10-29 10:00 - 00000000 _____ () C:\Windows\System32\Drivers\Msft_User_WpdMtpDr_01_07_00.Wdf 2014-07-21 08:12 - 2009-10-29 10:00 - 00000000 _____ () C:\Windows\System32\Drivers\Msft_User_WpdFs_01_07_00.Wdf 2014-07-21 08:12 - 2009-09-30 16:51 - 00046592 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\WpdUsb.sys 2014-07-21 08:12 - 2009-09-10 09:25 - 00000000 _____ () C:\Windows\System32\Drivers\Msft_Kernel_WinUSB_01005.Wdf 2014-07-21 08:12 - 2009-07-13 16:06 - 00040448 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\winusb.sys 2014-07-21 08:12 - 2009-04-13 01:25 - 00000000 _____ () C:\Windows\System32\Drivers\Msft_Kernel_ggsemc_01007.Wdf 2014-07-21 08:12 - 2009-04-10 14:15 - 00738264 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ndis.sys 2014-07-21 08:12 - 2009-04-10 14:15 - 00408024 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\volmgrx.sys 2014-07-21 08:12 - 2009-04-10 14:15 - 00325608 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\acpi.sys 2014-07-21 08:12 - 2009-04-10 14:15 - 00310760 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\msrpc.sys 2014-07-21 08:12 - 2009-04-10 14:15 - 00275432 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\fltMgr.sys 2014-07-21 08:12 - 2009-04-10 14:15 - 00215528 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\msiscsi.sys 2014-07-21 08:12 - 2009-04-10 14:15 - 00178664 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\pci.sys 2014-07-21 08:12 - 2009-04-10 14:15 - 00166888 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\FWPKCLNT.SYS 2014-07-21 08:12 - 2009-04-10 14:15 - 00164840 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\Classpnp.sys 2014-07-21 08:12 - 2009-04-10 14:15 - 00164328 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\Storport.sys 2014-07-21 08:12 - 2009-04-10 14:15 - 00160744 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\fvevol.sys 2014-07-21 08:12 - 2009-04-10 14:15 - 00155112 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ecache.sys 2014-07-21 08:12 - 2009-04-10 14:15 - 00123368 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ataport.sys 2014-07-21 08:12 - 2009-04-10 14:15 - 00067048 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\volmgr.sys 2014-07-21 08:12 - 2009-04-10 14:15 - 00067032 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\disk.sys 2014-07-21 08:12 - 2009-04-10 14:15 - 00062440 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\termdd.sys 2014-07-21 08:12 - 2009-04-10 14:15 - 00059880 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mup.sys 2014-07-21 08:12 - 2009-04-10 14:15 - 00049640 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\pciidex.sys 2014-07-21 08:12 - 2009-04-10 14:15 - 00039400 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\crashdmp.sys 2014-07-21 08:12 - 2009-04-10 14:15 - 00029656 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\msahci.sys 2014-07-21 08:12 - 2009-04-10 14:15 - 00029656 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\Dumpata.sys 2014-07-21 08:12 - 2009-04-10 14:15 - 00020952 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\atapi.sys 2014-07-21 08:12 - 2009-04-10 14:15 - 00019432 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\spldr.sys 2014-07-21 08:12 - 2009-04-10 14:15 - 00014312 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\pciide.sys 2014-07-21 08:12 - 2009-04-10 12:49 - 00313856 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\rdpdr.sys 2014-07-21 08:12 - 2009-04-10 12:44 - 00026112 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\tdi.sys 2014-07-21 08:12 - 2009-04-10 12:43 - 00169472 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ndiswan.sys 2014-07-21 08:12 - 2009-04-10 12:43 - 00124928 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\rasl2tp.sys 2014-07-21 08:12 - 2009-04-10 12:43 - 00098816 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\raspptp.sys 2014-07-21 08:12 - 2009-04-10 12:43 - 00094720 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\tdx.sys 2014-07-21 08:12 - 2009-04-10 12:43 - 00086528 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\wanarp.sys 2014-07-21 08:12 - 2009-04-10 12:43 - 00078336 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\rassstp.sys 2014-07-21 08:12 - 2009-04-10 12:43 - 00067584 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ipfltdrv.sys 2014-07-21 08:12 - 2009-04-10 12:43 - 00050176 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\raspppoe.sys 2014-07-21 08:12 - 2009-04-10 12:43 - 00040960 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\rndismpx.sys 2014-07-21 08:12 - 2009-04-10 12:43 - 00040960 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\RNDISMP.sys 2014-07-21 08:12 - 2009-04-10 12:42 - 00248320 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\netbt.sys 2014-07-21 08:12 - 2009-04-10 12:42 - 00140288 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\rmcast.sys 2014-07-21 08:12 - 2009-04-10 12:42 - 00094208 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\pacer.sys 2014-07-21 08:12 - 2009-04-10 12:42 - 00088064 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\smb.sys 2014-07-21 08:12 - 2009-04-10 12:40 - 00187392 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\nwifi.sys 2014-07-21 08:12 - 2009-04-10 12:39 - 00948736 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\hdaudbus.sys 2014-07-21 08:12 - 2009-04-10 12:39 - 00275456 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\HdAudio.sys 2014-07-21 08:12 - 2009-04-10 12:39 - 00077824 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\USBSTOR.SYS 2014-07-21 08:12 - 2009-04-10 12:39 - 00072448 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ohci1394.sys 2014-07-21 08:12 - 2009-04-10 12:39 - 00068224 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\stream.sys 2014-07-21 08:12 - 2009-04-10 12:39 - 00049152 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\hidclass.sys 2014-07-21 08:12 - 2009-04-10 12:39 - 00032640 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\USBCAMD2.sys 2014-07-21 08:12 - 2009-04-10 12:39 - 00015872 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\hidusb.sys 2014-07-21 08:12 - 2009-04-10 12:34 - 00079872 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\cdrom.sys 2014-07-21 08:12 - 2009-04-10 12:34 - 00019968 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\Diskdump.sys 2014-07-21 08:12 - 2009-04-10 12:33 - 00188416 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ks.sys 2014-07-21 08:12 - 2009-04-10 12:33 - 00022528 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\kbdhid.sys 2014-07-21 08:12 - 2009-04-10 12:09 - 00098816 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\dxg.sys 2014-07-21 08:12 - 2009-04-10 12:09 - 00040448 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\watchdog.sys 2014-07-21 08:12 - 2009-04-10 11:56 - 00460800 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\csc.sys 2014-07-21 08:12 - 2009-04-10 11:55 - 00287744 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\rdbss.sys 2014-07-21 08:12 - 2009-04-10 11:55 - 00139264 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mrxdav.sys 2014-07-21 08:12 - 2009-04-10 11:54 - 00299008 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\udfs.sys 2014-07-21 08:12 - 2009-04-10 11:54 - 00198144 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\fastfat.sys 2014-07-21 08:12 - 2009-04-10 11:54 - 00187904 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\exfat.sys 2014-07-21 08:12 - 2009-04-10 11:54 - 00044544 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\npfs.sys 2014-07-21 08:12 - 2009-03-13 07:49 - 00594432 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\spsys.sys 2014-07-21 08:12 - 2009-03-02 09:08 - 00025248 _____ (AGG Software (http://www.aggsoft.com)) C:\Windows\System32\Drivers\ausbmon.sys 2014-07-21 08:12 - 2009-02-10 15:02 - 00000000 _____ () C:\Windows\System32\Drivers\Msft_User_WpdMtpDr_01_00_00.Wdf 2014-07-21 08:12 - 2009-01-07 11:34 - 00000000 _____ () C:\Windows\System32\Drivers\Msft_User_WpdFs_01_00_00.Wdf 2014-07-21 08:12 - 2008-09-17 06:14 - 00012744 _____ (EnTech Taiwan) C:\Windows\System32\Drivers\Entech64.sys 2014-07-21 08:12 - 2008-01-20 18:51 - 00056376 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\dumpfve.sys 2014-07-21 08:12 - 2008-01-20 18:50 - 00070200 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\fileinfo.sys 2014-07-21 08:12 - 2008-01-20 18:50 - 00029696 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\tdtcp.sys 2014-07-21 08:12 - 2008-01-20 18:50 - 00022016 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\asyncmac.sys 2014-07-21 08:12 - 2008-01-20 18:50 - 00016384 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\tdpipe.sys 2014-07-21 08:12 - 2008-01-20 18:50 - 00007168 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\RDPCDD.sys 2014-07-21 08:12 - 2008-01-20 18:49 - 00173112 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\scsiport.sys 2014-07-21 08:12 - 2008-01-20 18:49 - 00126464 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\videoprt.sys 2014-07-21 08:12 - 2008-01-20 18:49 - 00119296 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\bridge.sys 2014-07-21 08:12 - 2008-01-20 18:49 - 00090624 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\cdfs.sys 2014-07-21 08:12 - 2008-01-20 18:49 - 00070200 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mountmgr.sys 2014-07-21 08:12 - 2008-01-20 18:49 - 00040448 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\modem.sys 2014-07-21 08:12 - 2008-01-20 18:49 - 00026112 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\msfs.sys 2014-07-21 08:12 - 2008-01-20 18:49 - 00022016 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ndisuio.sys 2014-07-21 08:12 - 2008-01-20 18:49 - 00020992 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\smclib.sys 2014-07-21 08:12 - 2008-01-20 18:49 - 00019512 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\wmilib.sys 2014-07-21 08:12 - 2008-01-20 18:49 - 00017408 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\irenum.sys 2014-07-21 08:12 - 2008-01-20 18:49 - 00009728 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\umpass.sys 2014-07-21 08:12 - 2008-01-20 18:48 - 00119296 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\irda.sys 2014-07-21 08:12 - 2008-01-20 18:48 - 00109568 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\luafv.sys 2014-07-21 08:12 - 2008-01-20 18:48 - 00081408 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mpsdrv.sys 2014-07-21 08:12 - 2008-01-20 18:48 - 00075776 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\rspndr.sys 2014-07-21 08:12 - 2008-01-20 18:48 - 00059392 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\lltdio.sys 2014-07-21 08:12 - 2008-01-20 18:48 - 00029184 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\tape.sys 2014-07-21 08:12 - 2008-01-20 18:48 - 00028672 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\vga.sys 2014-07-21 08:12 - 2008-01-20 18:48 - 00024064 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\nsiproxy.sys 2014-07-21 08:12 - 2008-01-20 18:48 - 00022016 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mcd.sys 2014-07-21 08:12 - 2008-01-20 18:48 - 00020992 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ws2ifsl.sys 2014-07-21 08:12 - 2008-01-20 18:48 - 00020864 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ksthunk.sys 2014-07-21 08:12 - 2008-01-20 18:48 - 00011264 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\rootmdm.sys 2014-07-21 08:12 - 2008-01-20 18:48 - 00011008 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mskssrv.sys 2014-07-21 08:12 - 2008-01-20 18:48 - 00007936 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mstee.sys 2014-07-21 08:12 - 2008-01-20 18:48 - 00007168 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\RDPENCDD.sys 2014-07-21 08:12 - 2008-01-20 18:47 - 00115712 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ipnat.sys 2014-07-21 08:12 - 2008-01-20 18:47 - 00059904 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ndproxy.sys 2014-07-21 08:12 - 2008-01-20 18:47 - 00044544 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\netbios.sys 2014-07-21 08:12 - 2008-01-20 18:47 - 00033280 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\filetrace.sys 2014-07-21 08:12 - 2008-01-20 18:47 - 00024064 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ndistapi.sys 2014-07-21 08:12 - 2008-01-20 18:47 - 00018432 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\TUNMP.SYS 2014-07-21 08:12 - 2008-01-20 18:47 - 00016896 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\dxapi.sys 2014-07-21 08:12 - 2008-01-20 18:47 - 00014848 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\rasacd.sys 2014-07-21 08:12 - 2008-01-20 18:46 - 00065280 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\1394bus.sys 2014-07-21 08:12 - 2008-01-20 18:46 - 00064000 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\i8042prt.sys 2014-07-21 08:12 - 2008-01-20 18:46 - 00046592 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\qwavedrv.sys 2014-07-21 08:12 - 2008-01-20 18:46 - 00042040 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\kbdclass.sys 2014-07-21 08:12 - 2008-01-20 18:46 - 00041984 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\umbus.sys 2014-07-21 08:12 - 2008-01-20 18:46 - 00039992 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mouclass.sys 2014-07-21 08:12 - 2008-01-20 18:46 - 00029696 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\fdc.sys 2014-07-21 08:12 - 2008-01-20 18:46 - 00029184 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\vgapnp.sys 2014-07-21 08:12 - 2008-01-20 18:46 - 00026624 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\sermouse.sys 2014-07-21 08:12 - 2008-01-20 18:46 - 00024576 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\flpydisk.sys 2014-07-21 08:12 - 2008-01-20 18:46 - 00024064 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\usbprint.sys 2014-07-21 08:12 - 2008-01-20 18:46 - 00019968 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mouhid.sys 2014-07-21 08:12 - 2008-01-20 18:46 - 00015616 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\bdasup.sys 2014-07-21 08:12 - 2008-01-20 18:45 - 00034872 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mssmbios.sys 2014-07-21 08:12 - 2008-01-20 18:45 - 00017976 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\msisadrv.sys 2014-07-21 08:12 - 2008-01-20 18:45 - 00014336 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\wmiacpi.sys 2014-07-21 08:12 - 2008-01-20 18:45 - 00006144 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\drmkaud.sys 2014-07-21 08:12 - 2006-11-02 01:37 - 00007040 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mspclock.sys 2014-07-21 08:12 - 2006-11-02 01:37 - 00006656 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mspqm.sys 2014-07-21 08:12 - 2006-11-02 01:37 - 00006144 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\null.sys 2014-07-21 08:12 - 2006-10-23 18:08 - 00712704 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\PEAuth.sys 2014-07-21 08:12 - 2006-09-29 15:51 - 00023040 _____ (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) C:\Windows\System32\Drivers\secdrv.sys 2014-07-21 08:12 - 2006-09-18 13:37 - 00003683 _____ () C:\Windows\System32\Drivers\etc\lmhosts.sam 2014-07-21 08:12 - 2006-09-18 13:24 - 03440660 _____ () C:\Windows\System32\Drivers\gm.dls 2014-07-21 08:12 - 2006-09-18 13:24 - 00000646 _____ () C:\Windows\System32\Drivers\gmreadme.txt 2014-07-20 16:20 - 2014-07-20 16:20 - 00000048 _____ () C:\Windows\System32\.directory 2014-07-20 16:16 - 2014-07-20 16:16 - 00000049 _____ () C:\Windows\.directory 2014-07-20 09:17 - 2013-06-18 04:18 - 00000001 ___SH () C:\BOOTNXT 2014-07-19 14:03 - 2014-04-26 12:21 - 00404132 __RSH () C:\bootmgr 2014-07-15 07:32 - 2009-04-10 14:15 - 00029656 _____ (Microsoft Corporation) C:\Windows\System32\msahci.sys 2014-07-14 20:42 - 2014-07-14 20:43 - 00000000 ____D () C:\Windows\System32\pl 2014-07-14 20:41 - 2014-07-14 20:41 - 00000000 ____D () C:\Windows\System32\0415 2014-07-14 20:40 - 2014-07-14 20:40 - 00000000 ____D () C:\Windows\System32\NetworkList 2014-07-14 20:39 - 2014-07-14 20:39 - 00000000 ____D () C:\Windows\System32\ias 2014-07-14 20:37 - 2014-07-14 20:37 - 00000000 ____D () C:\Windows\System32\RemInst ==================== One Month Modified Files and Folders ======= 2014-07-21 15:42 - 2012-03-03 11:40 - 00000000 ____D () C:\FRST 2014-07-20 16:20 - 2014-07-20 16:20 - 00000048 _____ () C:\Windows\System32\.directory 2014-07-20 16:16 - 2014-07-20 16:16 - 00000049 _____ () C:\Windows\.directory 2014-07-15 23:46 - 2006-11-02 05:33 - 00000000 ____D () C:\Windows\PolicyDefinitions 2014-07-14 20:43 - 2014-07-14 20:42 - 00000000 ____D () C:\Windows\System32\pl 2014-07-14 20:41 - 2014-07-14 20:41 - 00000000 ____D () C:\Windows\System32\0415 2014-07-14 20:41 - 2006-11-02 05:34 - 00000000 ____D () C:\Windows\System32\spool 2014-07-14 20:40 - 2014-07-14 20:40 - 00000000 ____D () C:\Windows\System32\NetworkList 2014-07-14 20:40 - 2006-11-02 05:34 - 00000000 ____D () C:\Windows\System32\sysprep 2014-07-14 20:39 - 2014-07-14 20:39 - 00000000 ____D () C:\Windows\System32\ias 2014-07-14 20:37 - 2014-07-14 20:37 - 00000000 ____D () C:\Windows\System32\RemInst 2014-07-14 20:36 - 2006-11-02 05:33 - 00000000 ____D () C:\Windows\System32\com 2014-06-30 05:56 - 2014-01-16 05:24 - 01088188 _____ () C:\Windows\WindowsUpdate.log 2014-06-30 05:56 - 2013-11-05 15:45 - 00000189 _____ () C:\service.log 2014-06-30 05:56 - 2006-11-02 07:40 - 00032628 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-06-30 05:56 - 2006-11-02 07:40 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-06-30 05:56 - 2006-11-02 07:21 - 00013536 ____H () C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 2014-06-30 05:56 - 2006-11-02 07:21 - 00013536 ____H () C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 2014-06-30 05:55 - 2009-03-01 13:28 - 00000432 ____H () C:\Windows\Tasks\User_Feed_Synchronization-{C348E8BD-B5BC-4631-9CD9-757851ED7B0D}.job 2014-06-30 05:33 - 2013-11-06 12:53 - 00001044 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-06-30 04:37 - 2011-07-06 08:49 - 00000008 __RSH () C:\Users\Adam\ntuser.pol 2014-06-30 04:37 - 2009-03-30 14:26 - 00000000 ____D () C:\users\Adam 2014-06-30 03:35 - 2008-01-21 01:57 - 00000000 ____D () C:\Windows\System32\winrm 2014-06-30 03:35 - 2008-01-21 01:57 - 00000000 ____D () C:\Windows\System32\slmgr 2014-06-30 03:35 - 2008-01-21 01:57 - 00000000 ____D () C:\Windows\System32\Printing_Admin_Scripts 2014-06-30 03:35 - 2006-11-02 05:34 - 00000000 ____D () C:\Windows\System32\winevt 2014-06-30 03:35 - 2006-11-02 05:34 - 00000000 ____D () C:\Windows\System32\SMI 2014-06-30 03:35 - 2006-11-02 05:34 - 00000000 ____D () C:\Windows\System32\setup 2014-06-30 03:35 - 2006-11-02 05:34 - 00000000 ____D () C:\Windows\System32\oobe 2014-06-30 03:35 - 2006-11-02 05:34 - 00000000 ____D () C:\Windows\System32\MUI 2014-06-30 03:33 - 2006-11-02 05:33 - 00000000 ____D () C:\Windows\System32\bg-BG 2014-06-30 03:33 - 2006-11-02 05:33 - 00000000 ____D () C:\Windows\System32\ar-SA 2014-06-30 03:32 - 2006-11-02 05:34 - 00000000 ____D () C:\Windows\System32\uk-UA 2014-06-30 03:32 - 2006-11-02 05:34 - 00000000 ____D () C:\Windows\System32\tr-TR 2014-06-30 03:32 - 2006-11-02 05:34 - 00000000 ____D () C:\Windows\System32\th-TH 2014-06-30 03:32 - 2006-11-02 05:34 - 00000000 ____D () C:\Windows\System32\sr-Latn-CS 2014-06-30 03:32 - 2006-11-02 05:34 - 00000000 ____D () C:\Windows\System32\sl-SI 2014-06-30 03:32 - 2006-11-02 05:34 - 00000000 ____D () C:\Windows\System32\sk-SK 2014-06-30 03:32 - 2006-11-02 05:34 - 00000000 ____D () C:\Windows\System32\ro-RO 2014-06-30 03:32 - 2006-11-02 05:34 - 00000000 ____D () C:\Windows\System32\Msdtc 2014-06-30 03:32 - 2006-11-02 05:34 - 00000000 ____D () C:\Windows\System32\lv-LV 2014-06-30 03:32 - 2006-11-02 05:34 - 00000000 ____D () C:\Windows\System32\lt-LT 2014-06-30 03:32 - 2006-11-02 05:34 - 00000000 ____D () C:\Windows\System32\hr-HR 2014-06-30 03:32 - 2006-11-02 05:34 - 00000000 ____D () C:\Windows\System32\he-IL 2014-06-30 03:32 - 2006-11-02 05:34 - 00000000 ____D () C:\Windows\System32\et-EE 2014-06-30 02:35 - 2012-10-16 13:47 - 00000000 ____D () C:\Users\Adam\AppData\Roaming\uTorrent 2014-06-30 02:35 - 2009-02-08 09:52 - 00000000 ____D () C:\Users\Adam\AppData\Roaming\Skype 2014-06-30 02:18 - 2009-03-30 14:56 - 00154112 _____ () C:\Users\Adam\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2014-06-30 01:34 - 2013-11-06 12:53 - 00001040 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-06-30 01:26 - 2014-05-18 00:08 - 00008192 _____ () C:\Windows\SysWOW64\WDPABKP.dat 2014-06-30 01:26 - 2009-01-06 10:41 - 00024072 _____ (Windows (R) Server 2003 DDK provider) C:\Windows\gdrv.sys Files to move or delete: ==================== C:\Users\Adam\nvidiaInspector.exe C:\Users\Adam\AppData\Roaming\settings.ini Some content of TEMP: ==================== C:\Users\Adam\AppData\Local\Temp\B1FreeArchiver_1.5.86.exe ==================== Known DLLs (Whitelisted) ================ ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit C:\Windows\system32\codeintegrity\Bootcat.cache IS MISSING <==== ATTENTION!. ==================== Restore Points ========================= ==================== Memory info =========================== Percentage of memory in use: 7% Total physical RAM: 16380.58 MB Available physical RAM: 15164.52 MB Total Pagefile: 15736.25 MB Available Pagefile: 15127.08 MB Total Virtual: 8192 MB Available Virtual: 8191.91 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:195.31 GB) (Free:16.2 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive e: (Win7) (Fixed) (Total:931.51 GB) (Free:1.25 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive f: () (Fixed) (Total:638.54 GB) (Free:9.83 GB) NTFS Drive g: () (Fixed) (Total:97.66 GB) (Free:11.85 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive h: (2008.03.29_2201) (CDROM) (Total:0.15 GB) (Free:0 GB) UDF Drive i: (ADATA UFD) (Removable) (Total:58.64 GB) (Free:58.55 GB) NTFS Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS Drive y: (Nowy) (Fixed) (Total:931.28 GB) (Free:10.4 GB) NTFS ==>[System with boot components (obtained from reading drive)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: 71690CAA) Partition 1: (Active) - (Size=932 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: 183219B4) Partition 1: (Active) - (Size=931 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=148 MB) - (Type=17) Partition 3: (Not Active) - (Size=91 MB) - (Type=17) ======================================================== Disk: 2 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: 412B412A) Partition 1: (Active) - (Size=195 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=639 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=98 GB) - (Type=07 NTFS) ======================================================== Disk: 3 (MBR Code: Windows 7 or 8) (Size: 59 GB) (Disk ID: 46552041) Partition 1: (Active) - (Size=59 GB) - (Type=07 NTFS) LastRegBack: 2014-06-30 01:35 ==================== End Of Log ============================