Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 27-09-2014 Ran by Da Mian (administrator) on DAMIAN-TOSH on 27-09-2014 12:54:41 Running from C:\Users\Da Mian\Downloads Loaded Profile: Da Mian (Available profiles: Da Mian) Platform: Microsoft Windows 7 Home Premium (X86) OS Language: Polski (Polska) Internet Explorer Version 8 Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (McAfee, Inc.) C:\Program Files\McAfee\SiteAdvisor\McSACore.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\McProxy\McProxy.exe (McAfee, Inc.) C:\Program Files\McAfee\VirusScan\Mcshield.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (McAfee, Inc.) C:\Program Files\McAfee\MPF\MpfSrv.exe (McAfee, Inc.) C:\Program Files\McAfee\MSK\msksrver.exe (TOSHIBA Corporation) C:\Windows\System32\TODDSrv.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TECO\TecoService.exe (TOSHIBA CORPORATION) C:\Program Files\TOSHIBA\ConfigFree\NDSTray.exe (TOSHIBA CORPORATION) C:\Program Files\TOSHIBA\ConfigFree\CFSwMgr.exe (TOSHIBA CORPORATION) C:\Program Files\TOSHIBA\Utilities\KeNotify.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\BulletinBoard\TosNcCore.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\SmoothView\SmoothView.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (McAfee, Inc.) C:\Program Files\McAfee\MSC\mcmscsvc.exe (McAfee, Inc.) C:\Program Files\McAfee.com\Agent\mcagent.exe (Intel Corporation) C:\Windows\System32\igfxext.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (TOSHIBA CORPORATION) C:\Program Files\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TECO\TEco.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe (TOSHIBA CORPORATION.) C:\Program Files\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Toshiba Europe GmbH) C:\Program Files\TOSHIBA\Registration\ToshibaReminder.exe (TOSHIBA) C:\Program Files\TOSHIBA\Toshiba Online Product Information\TOPI.exe (TrueCrypt Foundation) C:\Program Files\TrueCrypt\TrueCrypt.exe (McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.) C:\Program Files\McAfee\VirusScan\mcsysmon.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe (TOSHIBA CORPORATION) C:\Program Files\TOSHIBA\ConfigFree\CFIWmxSvcs.exe (TOSHIBA CORPORATION) C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\MNA\McNASvc.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSENotify.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe () C:\Users\Da Mian\AppData\Local\Temp\SHSetup.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [SVPWUTIL] => C:\Program Files\TOSHIBA\Utilities\SVPWUTIL.exe [352256 2009-08-12] (TOSHIBA) HKLM\...\Run: [HWSetup] => C:\Program Files\TOSHIBA\Utilities\HWSetup.exe [425984 2009-06-02] (TOSHIBA Electronics, Inc.) HKLM\...\Run: [KeNotify] => C:\Program Files\TOSHIBA\Utilities\KeNotify.exe [34088 2009-01-13] (TOSHIBA CORPORATION) HKLM\...\Run: [TosSENotify] => C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe [611672 2009-08-03] (TOSHIBA Corporation) HKLM\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [35696 2009-02-27] (Adobe Systems Incorporated) HKLM\...\Run: [Toshiba TEMPRO] => C:\Program Files\Toshiba TEMPRO\TemproTray.exe [1050000 2009-08-06] (Toshiba Europe GmbH) HKLM\...\Run: [TosNC] => C:\Program Files\Toshiba\BulletinBoard\TosNcCore.exe [466792 2009-08-06] (TOSHIBA Corporation) HKLM\...\Run: [TosReelTimeMonitor] => C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe [29528 2009-08-06] (TOSHIBA Corporation) HKLM\...\Run: [TPwrMain] => C:\Program Files\TOSHIBA\Power Saver\TPwrMain.EXE [476512 2009-08-05] (TOSHIBA Corporation) HKLM\...\Run: [HSON] => C:\Program Files\TOSHIBA\TBS\HSON.exe [55160 2009-03-09] (TOSHIBA Corporation) HKLM\...\Run: [SmoothView] => C:\Program Files\Toshiba\SmoothView\SmoothView.exe [521528 2009-08-13] (TOSHIBA Corporation) HKLM\...\Run: [00TCrdMain] => C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe [738616 2009-08-05] (TOSHIBA Corporation) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [7625248 2009-07-28] (Realtek Semiconductor) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1545512 2009-07-20] (Synaptics Incorporated) HKLM\...\Run: [ITSecMng] => C:\Program Files\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe [83336 2009-07-21] (TOSHIBA CORPORATION) HKLM\...\Run: [SmartFaceVWatcher] => C:\Program Files\Toshiba\SmartFaceV\SmartFaceVWatcher.exe [163840 2009-07-29] (TOSHIBA Corporation) HKLM\...\Run: [Teco] => C:\Program Files\TOSHIBA\TECO\Teco.exe [1324384 2009-08-26] (TOSHIBA Corporation) HKLM\...\Run: [ToshibaServiceStation] => C:\Program Files\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe [1294136 2009-08-17] (TOSHIBA Corporation) HKLM\...\Run: [TosWaitSrv] => C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [611672 2009-08-06] (TOSHIBA Corporation) HKLM\...\Run: [TWebCamera] => C:\Program Files\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe [2446648 2009-08-11] (TOSHIBA CORPORATION.) HKLM\...\Run: [Toshiba Registration] => C:\Program Files\Toshiba\Registration\ToshibaReminder.exe [134032 2009-07-30] (Toshiba Europe GmbH) HKLM\...\Run: [mcagent_exe] => C:\Program Files\McAfee.com\Agent\mcagent.exe [645328 2009-05-01] (McAfee, Inc.) HKU\S-1-5-21-1097403981-626546199-445260315-1000\...\Run: [TOSHIBA Online Product Information] => C:\Program Files\TOSHIBA\Toshiba Online Product Information\topi.exe [6203296 2009-08-12] (TOSHIBA) HKU\S-1-5-21-1097403981-626546199-445260315-1000\...\Run: [TrueCrypt] => C:\Program Files\TrueCrypt\TrueCrypt.exe [1517520 2014-09-25] (TrueCrypt Foundation) HKU\S-1-5-18\...\Run: [TOSHIBA Online Product Information] => C:\Program Files\TOSHIBA\Toshiba Online Product Information\topi.exe [6203296 2009-08-12] (TOSHIBA) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.gazeta.pl/0,0.html?p=181&d=20140925 HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com/ig/redirectdomain?brand=TSEH&bmod=TSEH HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.gazeta.pl/0,0.html?p=181&d=20140925 SearchScopes: HKCU - DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = SearchScopes: HKCU - {7F15A10C-F8B2-4A01-8A33-5072766BAAFE} URL = http://www.amazon.co.uk/gp/search?ie=UTF8&keywords={searchTerms}&tag=tochibauk-win7-ie-search-21&index=blended&linkCode=ur2 SearchScopes: HKCU - {F929E814-5ED3-47C7-81F9-A47E6A469F33} URL = http://rover.ebay.com/rover/1/4908-44618-9400-8/4?satitle={searchTerms} BHO: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll (McAfee, Inc.) BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO: McAfee Phishing Filter -> {27B4851A-3207-45A2-B947-BE8AFE6163AB} -> C:\Program Files\McAfee\MSK\MskAPBho.dll () BHO: scriptproxy -> {7DB2D5A0-7241-4E79-B68D-6309F01C5231} -> C:\Program Files\McAfee\VirusScan\scriptsn.dll (McAfee, Inc.) BHO: Pomocnik rejestracji usługi Windows Live -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) BHO: SunriseBrowse -> {b110ca24-17f3-4555-b0d2-672ab034adf9} -> C:\Program Files\SunriseBrowse\SunriseBrowsebho.dll (SunriseBrowse) BHO: McAfee SiteAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.) Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation) Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - c:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll (Microsoft Corporation) Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation) Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) Tcpip\Parameters: [DhcpNameServer] 31.128.24.2 31.128.0.31 FireFox: ======== FF ProfilePath: C:\Users\Da Mian\AppData\Roaming\Mozilla\Firefox\Profiles\3lxkjktc.default FF Homepage: hxxp://www.gazeta.pl/0,0.html?p=181&d=20140925 FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_15_0_0_152.dll () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/WLPG,version=14.0.8081.0709 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF user.js: detected! => C:\Users\Da Mian\AppData\Roaming\Mozilla\Firefox\Profiles\3lxkjktc.default\user.js FF Extension: Flashblock - C:\Users\Da Mian\AppData\Roaming\Mozilla\Firefox\Profiles\3lxkjktc.default\Extensions\{3d7eb24f-2740-49df-8937-200b1cc08f8a} [2014-09-26] FF Extension: NoScript - C:\Users\Da Mian\AppData\Roaming\Mozilla\Firefox\Profiles\3lxkjktc.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2014-09-26] FF Extension: Adblock Plus - C:\Users\Da Mian\AppData\Roaming\Mozilla\Firefox\Profiles\3lxkjktc.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-09-25] FF Extension: SunriseBrowse - C:\Users\Da Mian\AppData\Roaming\Mozilla\Firefox\Profiles\3lxkjktc.default\Extensions\{fef7f75c-f985-4250-96f9-8183cd04238b}.xpi [2014-09-25] FF HKLM\...\Firefox\Extensions: [{B7082FAA-CB62-4872-9106-E42DD88EDE45}] - C:\Program Files\McAfee\SiteAdvisor FF Extension: McAfee SiteAdvisor - C:\Program Files\McAfee\SiteAdvisor [2009-09-07] FF HKCU\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi FF Extension: McAfee Security Scan Plus - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04] Chrome: ======= ========================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 cfWiMAXService; C:\Program Files\TOSHIBA\ConfigFree\CFIWmxSvcs.exe [185712 2009-08-10] (TOSHIBA CORPORATION) R2 ConfigFree Service; C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe [46448 2009-03-10] (TOSHIBA CORPORATION) R2 McAfee SiteAdvisor Service; C:\Program Files\McAfee\SiteAdvisor\McSACore.exe [93320 2009-12-08] (McAfee, Inc.) S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [235696 2014-04-09] (McAfee, Inc.) R2 mcmscsvc; C:\Program Files\McAfee\MSC\mcmscsvc.exe [865832 2009-05-01] (McAfee, Inc.) R2 McNASvc; c:\Program Files\Common Files\McAfee\MNA\McNASvc.exe [2482848 2009-04-09] (McAfee, Inc.) S3 McODS; C:\Program Files\McAfee\VirusScan\mcods.exe [365072 2009-05-08] (McAfee, Inc.) R2 McProxy; c:\Program Files\Common Files\McAfee\McProxy\McProxy.exe [359952 2009-04-09] (McAfee, Inc.) R2 McShield; C:\Program Files\McAfee\VirusScan\Mcshield.exe [144704 2009-05-13] (McAfee, Inc.) R3 McSysmon; C:\Program Files\McAfee\VirusScan\mcsysmon.exe [606736 2009-05-08] (McAfee, Inc.) R2 MpfService; C:\Program Files\McAfee\MPF\MPFSrv.exe [893112 2009-05-08] (McAfee, Inc.) R2 MSK80Service; C:\Program Files\McAfee\MSK\MskSrver.exe [26640 2009-04-09] (McAfee, Inc.) S2 TemproMonitoringService; C:\Program Files\Toshiba TEMPRO\TemproSvc.exe [116104 2009-08-06] (Toshiba Europe GmbH) R3 TMachInfo; C:\Program Files\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe [51512 2009-08-17] (TOSHIBA Corporation) R2 TOSHIBA eco Utility Service; C:\Program Files\TOSHIBA\TECO\TecoService.exe [185712 2009-08-27] (TOSHIBA Corporation) R3 TOSHIBA HDD SSD Alert Service; C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe [111960 2009-08-03] (TOSHIBA Corporation) R3 TPCHSrv; C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe [685424 2009-08-06] (TOSHIBA Corporation) S2 0235961411731394mcinstcleanup; C:\Windows\TEMP\023596~1.EXE C:\PROGRA~1\COMMON~1\McAfee\INSTAL~1\cleanup.ini -cleanup -nolog -service ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R3 LPCFilter; C:\Windows\system32\DRIVERS\LPCFilter.sys [36208 2009-07-30] (COMPAL ELECTRONIC INC.) R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [79816 2009-05-13] (McAfee, Inc.) R3 mfebopk; C:\Windows\System32\drivers\mfebopk.sys [35272 2009-05-13] (McAfee, Inc.) R1 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [214024 2009-05-13] (McAfee, Inc.) S3 mferkdk; C:\Windows\System32\drivers\mferkdk.sys [34248 2009-05-13] (McAfee, Inc.) R3 mfesmfk; C:\Windows\System32\drivers\mfesmfk.sys [40552 2009-05-13] (McAfee, Inc.) R1 MPFP; C:\Windows\System32\Drivers\Mpfp.sys [130424 2009-04-09] (McAfee, Inc.) R3 PGEffect; C:\Windows\System32\DRIVERS\pgeffect.sys [24064 2009-06-22] (TOSHIBA Corporation) R3 RTL8187B; C:\Windows\System32\DRIVERS\RTL8187B.sys [376320 2009-08-13] (Realtek Semiconductor Corporation ) R2 TVALZFL; C:\Windows\System32\DRIVERS\TVALZFL.sys [12920 2009-06-19] (TOSHIBA Corporation) R1 {fef7f75c-f985-4250-96f9-8183cd04238b}Gw; C:\Windows\System32\drivers\{fef7f75c-f985-4250-96f9-8183cd04238b}Gw.sys [43160 2014-09-26] (StdLib) S3 RSUSBSTOR; System32\Drivers\RtsUStor.sys [X] S3 RtsUIR; system32\DRIVERS\Rts516xIR.sys [X] R2 sbapifs; system32\DRIVERS\sbapifs.sys [X] S3 Tosrfcom; No ImagePath S3 USBCCID; system32\DRIVERS\RtsUCcid.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-09-27 12:54 - 2014-09-27 12:55 - 00016703 _____ () C:\Users\Da Mian\Downloads\FRST.txt 2014-09-27 12:54 - 2014-09-27 12:54 - 00000000 ____D () C:\FRST 2014-09-27 12:52 - 2014-09-27 12:53 - 01100288 _____ (Farbar) C:\Users\Da Mian\Downloads\FRST.exe 2014-09-27 12:38 - 2014-09-27 12:38 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\Da Mian\Downloads\SpyHunter-Installer.exe 2014-09-26 14:24 - 2014-09-27 11:52 - 00000000 ____D () C:\ProgramData\STOPzilla! 2014-09-26 14:21 - 2014-09-26 14:21 - 00707664 _____ (iS3, Inc.) C:\Users\Da Mian\Downloads\SZSetup_AID10121_AV.exe 2014-09-26 13:33 - 2014-09-26 13:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus 2014-09-26 13:33 - 2014-09-26 13:33 - 00000000 ____D () C:\Program Files\McAfee Security Scan 2014-09-26 10:13 - 2014-09-26 00:29 - 00043160 _____ (StdLib) C:\Windows\system32\Drivers\{fef7f75c-f985-4250-96f9-8183cd04238b}Gw.sys 2014-09-25 21:09 - 2014-09-25 21:09 - 00000000 ____D () C:\Users\Da Mian\Desktop\Tor Browser 2014-09-25 21:08 - 2014-09-25 21:08 - 27604804 _____ () C:\Users\Da Mian\Downloads\torbrowser-install-3.6.5_pl.exe 2014-09-25 21:07 - 2014-09-26 14:27 - 00000000 ____D () C:\Program Files\SunriseBrowse 2014-09-25 21:05 - 2014-09-25 21:05 - 00747456 _____ ( ) C:\Users\Da Mian\Downloads\Tor-Browser-Bundle(34312)-dp.exe 2014-09-25 19:56 - 2014-09-25 19:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2014-09-25 19:55 - 2014-09-25 19:55 - 06958304 _____ (Microsoft Corporation) C:\Users\Da Mian\Downloads\Silverlight.exe 2014-09-25 15:30 - 2014-09-25 15:30 - 00000000 ____D () C:\Users\Da Mian\AppData\Local\TOSHIBA_Corporation 2014-09-25 15:09 - 2014-09-25 15:09 - 01835008 _____ () C:\Users\Da Mian\Documents\TrueCrypt Rescue Disk.iso 2014-09-25 15:09 - 2014-09-25 15:09 - 00000000 ____D () C:\ProgramData\TrueCrypt 2014-09-25 15:03 - 2014-09-25 15:29 - 00000000 ____D () C:\Users\Da Mian\AppData\Roaming\TrueCrypt 2014-09-25 15:02 - 2014-09-25 15:02 - 00231376 _____ (TrueCrypt Foundation) C:\Windows\system32\Drivers\truecrypt.sys 2014-09-25 15:02 - 2014-09-25 15:02 - 00001035 _____ () C:\Users\Public\Desktop\TrueCrypt.lnk 2014-09-25 15:02 - 2014-09-25 15:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TrueCrypt 2014-09-25 15:01 - 2014-09-25 15:03 - 00000000 ____D () C:\Program Files\TrueCrypt 2014-09-25 15:00 - 2014-09-25 15:00 - 02785578 _____ () C:\Users\Da Mian\Downloads\TrueCrypt 7.1.zip 2014-09-25 14:57 - 2014-09-25 14:58 - 03466248 _____ (TrueCrypt Foundation) C:\Users\Da Mian\Downloads\TrueCrypt Setup 7.1a.exe 2014-09-25 14:56 - 2014-09-25 14:56 - 00000000 ____D () C:\Users\Da Mian\Downloads\TrueCrypt 7.0a Source 2014-09-25 14:51 - 2014-09-25 14:51 - 01843837 _____ () C:\Users\Da Mian\Downloads\TrueCrypt 7.0a Source.zip 2014-09-25 14:46 - 2014-09-25 14:46 - 02573392 _____ (TrueCrypt Foundation) C:\Users\Da Mian\Downloads\TrueCrypt-7.2(2).exe 2014-09-25 13:00 - 2014-09-26 13:37 - 00000000 ____D () C:\Program Files\Opera 2014-09-25 13:00 - 2014-09-25 13:00 - 00001100 _____ () C:\Users\Public\Desktop\Opera.lnk 2014-09-25 13:00 - 2014-09-25 13:00 - 00001100 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk 2014-09-25 13:00 - 2014-09-25 13:00 - 00000000 ____D () C:\Users\Da Mian\AppData\Roaming\Opera Software 2014-09-25 13:00 - 2014-09-25 13:00 - 00000000 ____D () C:\Users\Da Mian\AppData\Local\Opera Software 2014-09-25 12:57 - 2014-09-25 12:57 - 00747456 _____ ( ) C:\Users\Da Mian\Downloads\TrueCrypt(12856)-dp.exe 2014-09-25 12:54 - 2014-09-25 12:54 - 02573392 _____ (TrueCrypt Foundation) C:\Users\Da Mian\Downloads\TrueCrypt-7.2(1).exe 2014-09-25 12:45 - 2014-09-25 12:45 - 00000000 ____D () C:\Users\Da Mian\AppData\Roaming\Adobe 2014-09-25 12:45 - 2014-09-25 12:45 - 00000000 ____D () C:\Users\Da Mian\AppData\Local\Macromedia 2014-09-25 12:44 - 2014-09-25 12:44 - 02573392 _____ (TrueCrypt Foundation) C:\Users\Da Mian\Downloads\TrueCrypt-7.2.exe 2014-09-25 12:40 - 2014-09-27 12:06 - 00000930 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-09-25 12:40 - 2014-09-26 13:33 - 00002019 _____ () C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk 2014-09-25 12:40 - 2014-09-26 13:33 - 00000000 ____D () C:\ProgramData\McAfee Security Scan 2014-09-25 12:40 - 2014-09-25 12:40 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe 2014-09-25 12:40 - 2014-09-25 12:40 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl 2014-09-25 12:40 - 2014-09-25 12:40 - 00000000 ____D () C:\Windows\system32\Macromed 2014-09-25 12:38 - 2014-09-25 12:45 - 00000000 ____D () C:\Users\Da Mian\AppData\Local\Adobe 2014-09-25 12:36 - 2014-09-25 12:36 - 00000000 ____D () C:\Users\Da Mian\AppData\Roaming\Toshiba 2014-09-25 12:36 - 2014-09-25 12:36 - 00000000 ____D () C:\Users\Da Mian\AppData\Roaming\Mozilla 2014-09-25 12:36 - 2014-09-25 12:36 - 00000000 ____D () C:\Users\Da Mian\AppData\Local\Mozilla 2014-09-25 12:35 - 2014-09-25 12:35 - 00001124 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2014-09-25 12:35 - 2014-09-25 12:35 - 00001112 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-09-25 12:35 - 2014-09-25 12:35 - 00000000 ____D () C:\ProgramData\Mozilla 2014-09-25 12:35 - 2014-09-25 12:35 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service 2014-09-25 12:35 - 2014-09-25 12:35 - 00000000 ____D () C:\Program Files\Mozilla Firefox 2014-09-25 12:29 - 2014-09-25 12:30 - 00244304 _____ () C:\Users\Da Mian\Desktop\Firefox Setup Stub 32.0.3.exe 2014-09-25 12:24 - 2014-09-25 12:25 - 00000000 ____D () C:\Users\Da Mian\AppData\Local\Google 2014-09-25 12:24 - 2014-09-25 12:24 - 00000000 ____D () C:\Users\Da Mian\AppData\Roaming\Google 2014-09-25 12:20 - 2014-09-25 12:20 - 00001428 _____ () C:\Users\Da Mian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-09-25 12:20 - 2014-09-25 12:20 - 00000000 ____D () C:\Users\Da Mian\AppData\Local\Toshiba 2014-09-25 12:19 - 2014-09-25 12:19 - 00079136 _____ () C:\Users\Da Mian\AppData\Local\GDIPFONTCACHEV1.DAT 2014-09-25 12:17 - 2014-09-25 12:20 - 00000000 ____D () C:\Users\Da Mian 2014-09-25 12:17 - 2014-09-25 12:17 - 00000020 ___SH () C:\Users\Da Mian\ntuser.ini 2014-09-25 12:17 - 2014-09-25 12:17 - 00000000 _SHDL () C:\Users\Public\Documents\Moje wideo 2014-09-25 12:17 - 2014-09-25 12:17 - 00000000 _SHDL () C:\Users\Public\Documents\Moje obrazy 2014-09-25 12:17 - 2014-09-25 12:17 - 00000000 _SHDL () C:\Users\Public\Documents\Moja muzyka 2014-09-25 12:17 - 2014-09-25 12:17 - 00000000 _SHDL () C:\Users\Default\Ustawienia lokalne 2014-09-25 12:17 - 2014-09-25 12:17 - 00000000 _SHDL () C:\Users\Default\Szablony 2014-09-25 12:17 - 2014-09-25 12:17 - 00000000 _SHDL () C:\Users\Default\Moje dokumenty 2014-09-25 12:17 - 2014-09-25 12:17 - 00000000 _SHDL () C:\Users\Default\Menu Start 2014-09-25 12:17 - 2014-09-25 12:17 - 00000000 _SHDL () C:\Users\Default\Documents\Moje wideo 2014-09-25 12:17 - 2014-09-25 12:17 - 00000000 _SHDL () C:\Users\Default\Documents\Moje obrazy 2014-09-25 12:17 - 2014-09-25 12:17 - 00000000 _SHDL () C:\Users\Default\Documents\Moja muzyka 2014-09-25 12:17 - 2014-09-25 12:17 - 00000000 _SHDL () C:\Users\Default\Dane aplikacji 2014-09-25 12:17 - 2014-09-25 12:17 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2014-09-25 12:17 - 2014-09-25 12:17 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Historia 2014-09-25 12:17 - 2014-09-25 12:17 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Dane aplikacji 2014-09-25 12:17 - 2014-09-25 12:17 - 00000000 _SHDL () C:\Users\Default User\Documents\Moje wideo 2014-09-25 12:17 - 2014-09-25 12:17 - 00000000 _SHDL () C:\Users\Default User\Documents\Moje obrazy 2014-09-25 12:17 - 2014-09-25 12:17 - 00000000 _SHDL () C:\Users\Default User\Documents\Moja muzyka 2014-09-25 12:17 - 2014-09-25 12:17 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2014-09-25 12:17 - 2014-09-25 12:17 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Historia 2014-09-25 12:17 - 2014-09-25 12:17 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Dane aplikacji 2014-09-25 12:17 - 2014-09-25 12:17 - 00000000 _SHDL () C:\Users\Da Mian\Ustawienia lokalne 2014-09-25 12:17 - 2014-09-25 12:17 - 00000000 _SHDL () C:\Users\Da Mian\Szablony 2014-09-25 12:17 - 2014-09-25 12:17 - 00000000 _SHDL () C:\Users\Da Mian\Moje dokumenty 2014-09-25 12:17 - 2014-09-25 12:17 - 00000000 _SHDL () C:\Users\Da Mian\Menu Start 2014-09-25 12:17 - 2014-09-25 12:17 - 00000000 _SHDL () C:\Users\Da Mian\Documents\Moje wideo 2014-09-25 12:17 - 2014-09-25 12:17 - 00000000 _SHDL () C:\Users\Da Mian\Documents\Moje obrazy 2014-09-25 12:17 - 2014-09-25 12:17 - 00000000 _SHDL () C:\Users\Da Mian\Documents\Moja muzyka 2014-09-25 12:17 - 2014-09-25 12:17 - 00000000 _SHDL () C:\Users\Da Mian\Dane aplikacji 2014-09-25 12:17 - 2014-09-25 12:17 - 00000000 _SHDL () C:\Users\Da Mian\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2014-09-25 12:17 - 2014-09-25 12:17 - 00000000 _SHDL () C:\Users\Da Mian\AppData\Local\Historia 2014-09-25 12:17 - 2014-09-25 12:17 - 00000000 _SHDL () C:\Users\Da Mian\AppData\Local\Dane aplikacji 2014-09-25 12:17 - 2014-09-25 12:17 - 00000000 _SHDL () C:\ProgramData\Ulubione 2014-09-25 12:17 - 2014-09-25 12:17 - 00000000 _SHDL () C:\ProgramData\Szablony 2014-09-25 12:17 - 2014-09-25 12:17 - 00000000 _SHDL () C:\ProgramData\Pulpit 2014-09-25 12:17 - 2014-09-25 12:17 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programy 2014-09-25 12:17 - 2014-09-25 12:17 - 00000000 _SHDL () C:\ProgramData\Menu Start 2014-09-25 12:17 - 2014-09-25 12:17 - 00000000 _SHDL () C:\ProgramData\Dokumenty 2014-09-25 12:17 - 2014-09-25 12:17 - 00000000 _SHDL () C:\ProgramData\Dane aplikacji 2014-09-25 12:17 - 2014-09-25 12:17 - 00000000 ____D () C:\Users\Da Mian\AppData\Local\VirtualStore 2014-09-25 12:17 - 2014-09-25 12:17 - 00000000 ____D () C:\ProgramData\ToshibaEurope 2014-09-25 12:17 - 2009-09-07 10:15 - 00000000 ____D () C:\Users\Da Mian\AppData\Roaming\Macromedia 2014-09-25 12:17 - 2009-07-14 06:42 - 00000000 ___RD () C:\Users\Da Mian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-09-25 12:17 - 2009-07-14 06:37 - 00000000 ___RD () C:\Users\Da Mian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-09-25 12:14 - 2014-09-25 12:14 - 00000000 __RSH () C:\Windows\system32\Drivers\TOSHIBA_Satellite L500_10217-PL_PSLS0E-02V01.MRK 2014-09-25 12:13 - 2014-09-25 12:13 - 00000000 ____D () C:\Windows\OemDrv 2014-09-25 12:13 - 2014-09-25 12:13 - 00000000 _____ () C:\Windows\NDSTray.INI 2014-09-25 12:12 - 2014-09-25 12:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA DVD PLAYER 2014-09-25 12:12 - 2014-09-25 12:12 - 00000000 ____D () C:\Program Files\Common Files\Toshiba Shared 2014-09-25 12:12 - 2009-07-24 15:57 - 00275536 _____ (TOSHIBA Corporation) C:\Windows\system32\Drivers\tos_sps32.sys 2014-09-25 12:12 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll 2014-09-25 12:11 - 2009-06-22 17:04 - 00024064 _____ (TOSHIBA Corporation) C:\Windows\system32\Drivers\PGEffect.sys 2014-09-25 12:10 - 2014-09-25 12:10 - 00000000 ____D () C:\Windows\system32\SDA 2014-09-25 12:09 - 2014-09-25 12:12 - 00000000 ____D () C:\ProgramData\TOSHIBA 2014-09-25 12:08 - 2009-02-02 18:27 - 07360512 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSUSTORicon.dll 2014-09-25 12:07 - 2014-09-25 12:07 - 00007848 _____ () C:\Windows\DPINST.LOG 2014-09-25 12:07 - 2014-09-25 12:07 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_SynTP_01007.Wdf 2014-09-25 12:07 - 2014-09-25 12:07 - 00000000 ____D () C:\Program Files\Synaptics 2014-09-25 12:06 - 2014-09-26 23:19 - 00035186 _____ () C:\Windows\WindowsUpdate.log 2014-09-25 12:05 - 2014-09-25 12:06 - 00000000 ____D () C:\Program Files\Realtek WLAN Driver 2014-09-25 12:05 - 2009-08-13 08:37 - 00376320 _____ (Realtek Semiconductor Corporation ) C:\Windows\system32\Drivers\RTL8187B.sys 2014-09-25 12:03 - 2014-09-25 12:03 - 00002807 _____ () C:\RHDSetup.log 2014-09-25 12:03 - 2014-09-25 12:03 - 00000000 ___HD () C:\Program Files\Temp 2014-09-25 12:03 - 2014-09-25 12:03 - 00000000 ____D () C:\Windows\system32\RTCOM 2014-09-25 12:03 - 2009-08-03 11:54 - 00000520 _____ () C:\Windows\system32\Drivers\RTEQEX0.dat 2014-09-25 12:03 - 2009-07-28 21:13 - 02898464 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO.dll 2014-09-25 12:03 - 2009-07-28 21:13 - 01227296 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkPgExt.dll 2014-09-25 12:03 - 2009-07-28 21:13 - 00551456 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSndMgr.cpl 2014-09-25 12:03 - 2009-07-28 21:13 - 00326176 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApoApi.dll 2014-09-25 12:03 - 2009-07-28 21:13 - 00052256 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoInst.dll 2014-09-25 12:03 - 2009-07-28 21:02 - 02735504 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHDA.sys 2014-09-25 12:03 - 2009-07-21 22:01 - 00266240 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO.dll 2014-09-25 12:03 - 2009-07-10 19:57 - 00000520 _____ () C:\Windows\system32\Drivers\RTEQEX1.dat 2014-09-25 12:03 - 2009-06-24 10:43 - 00831488 _____ (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll 2014-09-25 12:03 - 2009-04-16 18:05 - 01784352 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesLib.dll 2014-09-25 12:03 - 2009-04-16 10:14 - 00142848 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTACap.dll 2014-09-25 12:03 - 2009-03-31 14:07 - 00125952 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTARen.dll 2014-09-25 12:03 - 2009-03-09 05:32 - 00290304 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT32.dll 2014-09-25 12:03 - 2009-03-09 05:30 - 00290304 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA32.dll 2014-09-25 12:03 - 2008-11-09 11:52 - 00159744 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2014-09-25 12:03 - 2008-05-19 18:25 - 01933312 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ.dll 2014-09-25 12:03 - 2008-04-30 08:48 - 00167936 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP360.dll 2014-09-25 12:03 - 2007-07-30 18:26 - 00126976 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO.dll 2014-09-25 12:03 - 2007-07-25 09:33 - 00135168 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW.dll 2014-09-25 12:03 - 2007-05-17 11:26 - 00185776 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSHD.dll 2014-09-25 12:03 - 2006-12-13 10:30 - 00339968 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSXT.dll 2014-09-25 12:00 - 1999-10-12 18:47 - 00024576 _____ (Toshiba) C:\Windows\system32\TSCI.dll 2014-09-25 12:00 - 1999-10-12 18:45 - 00024576 _____ (Toshiba) C:\Windows\system32\THCI.dll 2014-09-25 11:58 - 2014-09-25 11:58 - 00015210 _____ () C:\Windows\system32\results.xml 2014-09-25 11:56 - 2014-09-25 11:56 - 00000000 ____D () C:\Windows\system32\Lang 2014-09-25 11:56 - 2014-09-25 11:56 - 00000000 ____D () C:\Intel 2014-09-25 11:56 - 2009-09-02 14:41 - 01002008 _____ (Intel Corporation) C:\Windows\system32\igxpun.exe ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-09-27 11:56 - 2009-07-14 06:34 - 00016080 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-09-27 11:56 - 2009-07-14 06:34 - 00016080 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-09-27 11:54 - 2009-09-07 09:51 - 01523412 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-09-27 11:54 - 2009-07-14 10:07 - 00687828 _____ () C:\Windows\system32\perfh015.dat 2014-09-27 11:54 - 2009-07-14 10:07 - 00131382 _____ () C:\Windows\system32\perfc015.dat 2014-09-27 11:49 - 2009-09-07 10:14 - 00009655 _____ () C:\Windows\system32\Config.MPF 2014-09-27 11:48 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-09-27 11:48 - 2009-07-14 06:39 - 00034794 _____ () C:\Windows\setupact.log 2014-09-26 19:26 - 2009-09-07 10:10 - 00512614 _____ () C:\Windows\PFRO.log 2014-09-26 13:36 - 2009-09-07 10:11 - 00000000 ____D () C:\Program Files\McAfee 2014-09-26 13:31 - 2009-07-14 04:04 - 00000537 _____ () C:\Windows\win.ini 2014-09-26 10:10 - 2009-09-07 10:25 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-09-25 15:35 - 2009-09-07 10:09 - 00000000 ____D () C:\ProgramData\Partner 2014-09-25 12:46 - 2009-07-14 06:52 - 00000000 ____D () C:\Windows\system32\restore 2014-09-25 12:20 - 2009-09-07 09:27 - 00000000 ____D () C:\Toshiba 2014-09-25 12:19 - 2009-09-07 10:11 - 00000000 ____D () C:\ProgramData\McAfee 2014-09-25 12:17 - 2009-07-14 04:37 - 00000000 __RHD () C:\Users\Default 2014-09-25 12:17 - 2009-07-14 04:37 - 00000000 ____D () C:\Program Files\Windows NT 2014-09-25 12:16 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\rescache 2014-09-25 12:13 - 2009-09-07 09:36 - 00000000 ____D () C:\Windows\Panther 2014-09-25 12:13 - 2009-07-14 06:34 - 00003043 _____ () C:\Windows\DtcInstall.log 2014-09-25 12:12 - 2009-09-07 10:01 - 00000000 ____D () C:\Program Files\TOSHIBA 2014-09-25 12:12 - 2009-09-07 09:59 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information 2014-09-25 12:11 - 2009-09-07 10:02 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA 2014-09-25 12:10 - 2009-09-07 10:04 - 00000000 ____D () C:\Windows\Downloaded Installations 2014-09-25 12:08 - 2009-09-07 10:02 - 00000000 ____D () C:\Program Files\Realtek 2014-09-25 12:03 - 2009-09-07 10:01 - 00000000 ____D () C:\Program Files\Common Files\InstallShield 2014-09-25 11:54 - 2009-09-07 09:37 - 00003540 _____ () C:\Windows\TSSysprep.log 2014-09-25 11:53 - 2009-07-14 06:33 - 00341776 _____ () C:\Windows\system32\FNTCACHE.DAT Some content of TEMP: ==================== C:\Users\Da Mian\AppData\Local\Temp\SHSetup.exe ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\explorer.exe => File is digitally signed C:\Windows\system32\winlogon.exe => File is digitally signed C:\Windows\system32\wininit.exe => File is digitally signed C:\Windows\system32\svchost.exe => File is digitally signed C:\Windows\system32\services.exe => File is digitally signed C:\Windows\system32\User32.dll => File is digitally signed C:\Windows\system32\userinit.exe => File is digitally signed C:\Windows\system32\rpcss.dll => File is digitally signed C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2009-09-07 09:37 ==================== End Of Log ============================