1. Computer problem? Tech Support Guy is completely free -- paid for by advertisers and donations. Click here to join today! If you're new to Tech Support Guy, we highly recommend that you visit our Guide for New Members.

Help! computer is runnnig slow (Moved from Windows 8 forum)

Discussion in 'Virus & Other Malware Removal' started by kimberly1965, Mar 1, 2015.

Thread Status:
Not open for further replies.
Advertisement
  1. kimberly1965

    kimberly1965 Thread Starter

    Joined:
    May 5, 2002
    Messages:
    83
    I sure hope someone can help me. I had been scouring these pages trying to fix all the things that are wrong with my computer. I have done so many antivirus scans but I cannot find any viruses. So, here is the list. First I always get these messages saying my cpu’s are high. When I go to task manager, it shows they are always running at 100%. I don’t know what to disable and I am afraid I will mess my computer up. I did that the other day when I followed the advice on here that someone gave someone about doing a clean boot and disabling the start up menu. I had the hardest time getting my computer to get back on. I had to get it in safe mood to get it working again. But my computer is so slow. I type faster than I see the words at times and also right in the middle of typing it will stop and I am always writing the wrong passwords because I don’t know what letters its keeping or not. I can’t play any of the games I use to play that I downloaded from bigfishgames or gamehouse. As soon as they come on, they flash right back to main computer screen. My system restores are never successful and I tried to do a refresh of my computer but I don’t have the windows 8 cd, it was already loaded on my laptop when I got it. I also tried to download 8.1 and that was unsuccessful too. Please! Is there someone who can help me? Here are some scans that I have already ran.

    Logfile of Trend Micro HijackThis v2.0.5
    Scan saved at 1:39:13 PM, on 3/1/2015
    Platform: Unknown Windows (WinNT 6.02.1008)
    MSIE: Internet Explorer v10.0 (10.00.9200.17183)


    Boot mode: Normal

    Running processes:
    C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
    C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
    C:\Program Files\AVAST Software\Avast\avastui.exe
    C:\Program Files\Microsoft Office 15\Root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE15\CSISYNCCLIENT.EXE
    C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe
    C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
    C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
    C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
    C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
    C:\Program Files\Microsoft Office 15\root\office15\WINWORD.EXE
    C:\Users\Kim\AppData\Local\Microsoft\Windows\INetCache\Content.IE5\5HAZW9Z4\HijackThis.exe

    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
    O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
    O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
    O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
    O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
    O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
    O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
    O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
    O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
    O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
    O23 - Service: HP Connected Remote Service (HPConnectedRemote) - Hewlett-Packard - C:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteService.exe
    O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
    O23 - Service: @oem19.inf,%hpservice_desc%;HP Service (hpsrv) - Unknown owner - C:\WINDOWS\system32\Hpservice.exe (file missing)
    O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
    O23 - Service: LiveUpdate (LiveUpdateSvc) - Unknown owner - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe (file missing)
    O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
    O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
    O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
    O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
    O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
    O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10101 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
    O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
    O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
    O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
    O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
    O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
    O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
    O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

    --
    End of file - 5260 bytes
     

    Attached Files:

  2. JSntgRvr

    JSntgRvr Retired Moderator and Malware Specialist

    Joined:
    Jul 1, 2003
    Messages:
    18,552
    First Name:
    José
    Hi and welcome. :)

    Please download SystemLook from one of the links below and save it to your Desktop.

    32 bit Download Mirror #1
    32 bit Download Mirror #2


    For 64bit systems, Please download SystemLook from the link below and save it to your Desktop.

    64 bit Download Mirror

    • Double-click SystemLook.exe (or SystemLook_x64.exe) to run the application.
    • Copy the content of the following quote box into the main textfield:
    • Click the Look button to start the scan.
    • When finished, a notepad window will open with the results of the scan. Please post this log in your next reply.

    Note: The log can also be found on your Desktop entitled SystemLook.txt
     
  3. kimberly1965

    kimberly1965 Thread Starter

    Joined:
    May 5, 2002
    Messages:
    83
    Thank you so much for your response!
    I sure hope I did this right!
    SystemLook 30.07.11 by jpshortstuff
    Log created at 22:09 on 13/03/2015 by Kim
    Administrator - Elevation successful

    ========== regfind ==========

    Searching for " AutoUpdate.exe"
    No data found.

    Searching for " netsh.exe"
    No data found.

    -= EOF =-
     
  4. JSntgRvr

    JSntgRvr Retired Moderator and Malware Specialist

    Joined:
    Jul 1, 2003
    Messages:
    18,552
    First Name:
    José
    Lets scan the computer.

    [​IMG] Please download Junkware Removal Tool to your desktop.
    • Shut down your protection software now to avoid potential conflicts.
    • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
    • The tool will open and start scanning your system.
    • Please be patient as this can take a while to complete depending on your system's specifications.
    • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
    • Post the contents of JRT.txt into your next message.

    Download AdwCleaner from here. Save the file to the desktop.


    NOTE: If you are using IE 8 or above you may get a warning that stops the program from downloading. Just click on the warning and allow the download to complete.

    Close all open windows and browsers.
    • XP users: Double click the AdwCleaner icon to start the program.
    • Vista/7/8 users: Right click the AdwCleaner icon on the desktop, click Run as administrator and accept the UAC prompt to run AdwCleaner.
      You will see the following console:
    [​IMG]
    • Click the Scan button and wait for the scan to finish.
    • After the Scan has finished the window may or may not show what it found and above, in the progress bar, you will see: Pending. Please uncheck elements you don't want to remove.
    • Click the Clean button.
    • Everything checked will be deleted.
    • When the program has finished cleaning a report appears.Once done it will ask to reboot, allow this
    [​IMG]
    • On reboot a log will be produced please copy / paste that in your next reply. This report is also saved to C:\AdwCleaner\AdwCleaner[S0].txt

    [​IMG] Please download Malwarebytes Anti-Malware to your desktop
    • Double-click mbam-setup-version.exe and follow the prompts to install the program.
    • At the end, be sure a check-mark is placed next to the following:
      1. Enable free trial of Malwarebytes Anti-Malware Premium
      2. Launch Malwarebytes Anti-Malware
    • Then click Finish.
    • If an update is found, you will be prompted to download and install the latest version.
    • Once the program has loaded, select Scan now. Or select the Threat Scan from the Scan menu.
    • When the scan is complete , make sure that everything is set to "Quarantine", and click Apply Actions.
    • Reboot your computer if prompted.
    Extra Note:

    If MBAM encounters a file that is difficult to remove,you will be presented with 1 of 2 prompts,click OK to either and let MBAM proceed with the disinfection process. If asked to restart the computer, please do so immediatly.

    The log is available throughout History ->Application logs. Please post it contents in your next reply.


    Open FRST and let it update. Re-scan to produce a FRST.txt and Addition.txt logs. Post them on your reply.
     
  5. kimberly1965

    kimberly1965 Thread Starter

    Joined:
    May 5, 2002
    Messages:
    83
    unkware Removal Tool (JRT) by Thisisu
    Version: 6.4.3 (03.01.2015:1)
    OS: Windows 8.1 x64
    Ran by Kim on Sat 03/14/2015 at 11:31:36.59
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




    ~~~ Services



    ~~~ Registry Values



    ~~~ Registry Keys



    ~~~ Files



    ~~~ Folders



    ~~~ Event Viewer Logs were cleared





    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    Scan was completed on Sat 03/14/2015 at 11:35:44.55
    End of JRT log
    ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
     
  6. kimberly1965

    kimberly1965 Thread Starter

    Joined:
    May 5, 2002
    Messages:
    83
    # AdwCleaner v4.112 - Logfile created 14/03/2015 at 11:41:02
    # Updated 09/03/2015 by Xplode
    # Database : 2015-03-05.1 [Server]
    # Operating system : Windows 8.1 (x64)
    # Username : Kim - KIMSOFFICE
    # Running from : C:\Users\Kim\AppData\Local\Microsoft\Windows\INetCache\IE\TQ6UCPD8\adwcleaner_4.112.exe
    # Option : Cleaning

    ***** [ Services ] *****


    ***** [ Files / Folders ] *****

    Folder Deleted : C:\Users\Kim\AppData\LocalLow\Yahoo! Companion
    Folder Deleted : C:\Users\Kim\AppData\LocalLow\Check Point Software Technologies LTD
    Folder Deleted : C:\Users\Kim\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck

    ***** [ Scheduled tasks ] *****


    ***** [ Shortcuts ] *****


    ***** [ Registry ] *****

    Key Deleted : HKLM\SOFTWARE\Trymedia Systems

    ***** [ Web browsers ] *****

    -\\ Internet Explorer v11.0.9600.17416


    -\\ Mozilla Firefox v


    -\\ Google Chrome v

    [C:\Users\Kim\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://search.aol.com/aol/search?q={searchTerms}
    [C:\Users\Kim\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.ask.com/web?q={searchTerms}

    *************************

    AdwCleaner[R0].txt - [1381 bytes] - [14/03/2015 11:36:32]
    AdwCleaner[S0].txt - [1320 bytes] - [14/03/2015 11:41:02]

    ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1379 bytes] ##########
     
  7. kimberly1965

    kimberly1965 Thread Starter

    Joined:
    May 5, 2002
    Messages:
    83
    Malwarebytes Anti-Malware
    www.malwarebytes.org


    Update, 3/2/2015 2:43:56 AM, SYSTEM, KIMSOFFICE, Scheduler, Malware Database, 2015.3.2.1, 2015.3.2.2,
    Protection, 3/2/2015 2:43:56 AM, SYSTEM, KIMSOFFICE, Protection, Refresh, Starting,
    Protection, 3/2/2015 2:43:56 AM, SYSTEM, KIMSOFFICE, Protection, Malicious Website Protection, Stopping,
    Protection, 3/2/2015 2:43:57 AM, SYSTEM, KIMSOFFICE, Protection, Malicious Website Protection, Stopped,
    Protection, 3/2/2015 2:44:12 AM, SYSTEM, KIMSOFFICE, Protection, Refresh, Success,
    Protection, 3/2/2015 2:44:12 AM, SYSTEM, KIMSOFFICE, Protection, Malicious Website Protection, Starting,
    Protection, 3/2/2015 2:44:13 AM, SYSTEM, KIMSOFFICE, Protection, Malicious Website Protection, Started,
    Scan, 3/2/2015 4:38:42 AM, SYSTEM, KIMSOFFICE, Manual, Start:3/2/2015 3:58:30 AM, Duration:40 min 12 sec, Threat Scan, Completed, 0 Malware Detections, 0 Non-Malware Detections,
    Update, 3/2/2015 6:38:54 AM, SYSTEM, KIMSOFFICE, Scheduler, Malware Database, 2015.3.2.2, 2015.3.2.3,
    Protection, 3/2/2015 6:38:54 AM, SYSTEM, KIMSOFFICE, Protection, Refresh, Starting,
    Protection, 3/2/2015 6:38:54 AM, SYSTEM, KIMSOFFICE, Protection, Malicious Website Protection, Stopping,
    Protection, 3/2/2015 6:38:55 AM, SYSTEM, KIMSOFFICE, Protection, Malicious Website Protection, Stopped,
    Protection, 3/2/2015 6:39:09 AM, SYSTEM, KIMSOFFICE, Protection, Refresh, Success,
    Protection, 3/2/2015 6:39:09 AM, SYSTEM, KIMSOFFICE, Protection, Malicious Website Protection, Starting,
    Protection, 3/2/2015 6:39:10 AM, SYSTEM, KIMSOFFICE, Protection, Malicious Website Protection, Started,
    Protection, 3/2/2015 8:31:59 AM, SYSTEM, KIMSOFFICE, Protection, Malware Protection, Starting,
    Protection, 3/2/2015 8:32:00 AM, SYSTEM, KIMSOFFICE, Protection, Malware Protection, Started,
    Protection, 3/2/2015 8:32:00 AM, SYSTEM, KIMSOFFICE, Protection, Malicious Website Protection, Starting,
    Protection, 3/2/2015 8:32:01 AM, SYSTEM, KIMSOFFICE, Protection, Malicious Website Protection, Started,
    Update, 3/2/2015 9:54:36 AM, SYSTEM, KIMSOFFICE, Scheduler, Malware Database, 2015.3.2.3, 2015.3.2.4,
    Protection, 3/2/2015 9:54:36 AM, SYSTEM, KIMSOFFICE, Protection, Refresh, Starting,
    Protection, 3/2/2015 9:54:36 AM, SYSTEM, KIMSOFFICE, Protection, Malicious Website Protection, Stopping,
    Protection, 3/2/2015 9:54:37 AM, SYSTEM, KIMSOFFICE, Protection, Malicious Website Protection, Stopped,
    Protection, 3/2/2015 9:57:22 AM, SYSTEM, KIMSOFFICE, Protection, Refresh, Success,
    Protection, 3/2/2015 9:57:22 AM, SYSTEM, KIMSOFFICE, Protection, Malicious Website Protection, Starting,
    Protection, 3/2/2015 9:57:23 AM, SYSTEM, KIMSOFFICE, Protection, Malicious Website Protection, Started,
    Update, 3/2/2015 10:57:11 AM, SYSTEM, KIMSOFFICE, Scheduler, Malware Database, 2015.3.2.4, 2015.3.2.5,
    Protection, 3/2/2015 10:57:11 AM, SYSTEM, KIMSOFFICE, Protection, Refresh, Starting,
    Protection, 3/2/2015 10:57:11 AM, SYSTEM, KIMSOFFICE, Protection, Malicious Website Protection, Stopping,
    Protection, 3/2/2015 10:57:11 AM, SYSTEM, KIMSOFFICE, Protection, Malicious Website Protection, Stopped,
    Protection, 3/2/2015 10:59:57 AM, SYSTEM, KIMSOFFICE, Protection, Refresh, Success,
    Protection, 3/2/2015 10:59:57 AM, SYSTEM, KIMSOFFICE, Protection, Malicious Website Protection, Starting,
    Protection, 3/2/2015 10:59:57 AM, SYSTEM, KIMSOFFICE, Protection, Malicious Website Protection, Started,
    Update, 3/2/2015 5:00:18 PM, SYSTEM, KIMSOFFICE, Scheduler, Malware Database, 2015.3.2.5, 2015.3.2.7,
    Protection, 3/2/2015 5:00:18 PM, SYSTEM, KIMSOFFICE, Protection, Refresh, Starting,
    Protection, 3/2/2015 5:00:18 PM, SYSTEM, KIMSOFFICE, Protection, Malicious Website Protection, Stopping,
    Protection, 3/2/2015 5:00:18 PM, SYSTEM, KIMSOFFICE, Protection, Malicious Website Protection, Stopped,
    Protection, 3/2/2015 5:04:30 PM, SYSTEM, KIMSOFFICE, Protection, Refresh, Success,
    Protection, 3/2/2015 5:04:30 PM, SYSTEM, KIMSOFFICE, Protection, Malicious Website Protection, Starting,
    Protection, 3/2/2015 5:04:31 PM, SYSTEM, KIMSOFFICE, Protection, Malicious Website Protection, Started,

    (end)
     
  8. kimberly1965

    kimberly1965 Thread Starter

    Joined:
    May 5, 2002
    Messages:
    83
    I hope I did this all right, I am not very computer savy.
    but I did everything you told me to do, even if it took me awhile to figure it out.
    Kim
     
  9. JSntgRvr

    JSntgRvr Retired Moderator and Malware Specialist

    Joined:
    Jul 1, 2003
    Messages:
    18,552
    First Name:
    José
    Open FRST and let it update. Re-scan to produce a FRST.txt and Addition.txt logs. Post them on your reply.
     
  10. kimberly1965

    kimberly1965 Thread Starter

    Joined:
    May 5, 2002
    Messages:
    83
    Users shortcut scan result (x64) Version: 11-03-2015
    Ran by Kim at 2015-03-14 19:28:10
    Running from C:\Users\Kim\Desktop\computer
    Boot Mode: Normal
    ==================== Shortcuts =============================

    (The entries could be listed to be restored or removed.)



    Shortcut: C:\Users\Administrator\Links\Desktop.lnk -> C:\Users\Kim\Desktop ()
    Shortcut: C:\Users\Administrator\Links\Downloads.lnk -> C:\Users\Kim\Downloads ()
    Shortcut: C:\Users\Administrator\Links\SkyDrive.lnk -> C:\Users\Kim\SkyDrive (No File)
    Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk -> C:\Users\Kim\Documents ()
    Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk -> C:\Users\Kim\Pictures ()
    Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
    Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Windows.Defender.lnk -> C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
    Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
    Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
    Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
    Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
    Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\CyberLink Media Suite.lnk -> C:\Program Files (x86)\CyberLink\Media Suite\PS.exe (CyberLink Corp.)
    Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\CyberLink YouCam.lnk -> C:\Program Files (x86)\CyberLink\YouCam\Youcam_webcam_camera_video.exe (No File)
    Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer (2).lnk -> C:\Users\Kim\AppData\Roaming\Microsoft\Windows\Libraries ()
    Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer (3).lnk -> C:\Users\Kim\AppData\Roaming\Microsoft\Windows\Libraries ()
    Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer.lnk -> C:\Users\Kim\AppData\Roaming\Microsoft\Windows\Libraries ()
    Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\HP Utility Center.lnk -> C:\HP\Data\HPUC\HPPU.exe (Hewlett-Packard Development Company, L.P.)
    Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\HPConnectedRemoteMgmtUI.lnk -> C:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteMgmtUI.exe (Hewlett-Packard)
    Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer (2).lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
    Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer (3).lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
    Shortcut: C:\Users\Administrator\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
    Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
    Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
    Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
    Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
    Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc ()
    Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc ()
    Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation)
    Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation)
    Shortcut: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\WinZip.lnk -> C:\Program Files\WinZip\WINZIP64.EXE (WinZip Computing, S.L.)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk -> C:\Windows\Installer\{AC76BA86-7AD7-1033-7B44-AB0000000001}\SC_Reader.ico ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Camera.lnk -> C:\Windows\Camera\Camera.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileManager.lnk -> C:\Windows\FileManager\FileManager.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Immersive Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk -> C:\Program Files (x86)\Windows Live\Photo Gallery\MovieMaker.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Gallery.lnk -> C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoGallery.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotosApp.lnk -> C:\Windows\FileManager\PhotosApp.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Store.lnk -> C:\Windows\WinStore\WinStore.htm ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip\WinZip 19.0.lnk -> C:\Program Files\WinZip\WINZIP64.EXE (WinZip Computing, S.L.)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools\Windows Easy Transfer.lnk -> C:\Windows\System32\migwiz\migwiz.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware\SUPERAntiSpyware Alternate Start.lnk -> C:\Program Files\SUPERAntiSpyware\RUNSAS.EXE (SUPERAdBlocker.com and SUPERAntiSpyware.com)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware\SUPERAntiSpyware Professional.lnk -> C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (SUPERAntiSpyware)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security and Protection\HP Recovery Manager\HP Recovery Manager.lnk -> C:\Program Files (x86)\Hewlett-Packard\HP Recovery Manager\Rebecca.exe ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Productivity and Tools\HP Utility Center.lnk -> C:\HP\Data\HPUC\HPPU.exe (Hewlett-Packard Development Company, L.P.)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Music, Photos and Videos\CyberLink Media Suite.lnk -> C:\Program Files (x86)\CyberLink\Media Suite\PS.exe (CyberLink Corp.)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Music, Photos and Videos\CyberLink PhotoDirector.lnk -> C:\Program Files (x86)\CyberLink\PhotoDirector\PhotoDirector.exe (CyberLink Corp.)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Music, Photos and Videos\CyberLink PowerDirector 10.lnk -> C:\Program Files (x86)\CyberLink\PowerDirector10\PDR10.exe (CyberLink Corp.)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Music, Photos and Videos\CyberLink PowerDVD.lnk -> C:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD10.exe (CyberLink Corp.)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Music, Photos and Videos\HP Connected Remote.lnk -> C:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteMgmtUI.exe (Hewlett-Packard)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight\Microsoft Silverlight.lnk -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\Silverlight.Configuration.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Access 2013.lnk -> C:\Program Files\Microsoft Office 15\root\office15\MSACCESS.EXE (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Excel 2013.lnk -> C:\Program Files\Microsoft Office 15\root\office15\EXCEL.EXE (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\OneNote 2013.lnk -> C:\Program Files\Microsoft Office 15\root\office15\ONENOTE.EXE (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Outlook 2013.lnk -> C:\Program Files\Microsoft Office 15\root\office15\OUTLOOK.EXE (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\PowerPoint 2013.lnk -> C:\Program Files\Microsoft Office 15\root\office15\POWERPNT.EXE (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Publisher 2013.lnk -> C:\Program Files\Microsoft Office 15\root\office15\MSPUB.EXE (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Send to OneNote 2013.lnk -> C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Word 2013.lnk -> C:\Program Files\Microsoft Office 15\root\office15\WINWORD.EXE (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Office 2013 Tools\Office 2013 Language Preferences.lnk -> C:\Program Files\Microsoft Office 15\root\office15\SETLANG.EXE (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013\Office 2013 Tools\Office 2013 Upload Center.lnk -> C:\Program Files\Microsoft Office 15\root\office15\MSOUC.EXE (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Malwarebytes Anti-Malware Notifications.lnk -> C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe (Malwarebytes Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Malwarebytes Anti-Malware.lnk -> C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe (Malwarebytes Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Uninstall Malwarebytes Anti-Malware.lnk -> C:\Program Files (x86)\Malwarebytes Anti-Malware\unins000.exe ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware\Tools\Malwarebytes Anti-Malware Chameleon.lnk -> C:\Program Files (x86)\Malwarebytes Anti-Malware\Chameleon\Windows\chameleon.chm ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Configure Java.lnk -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\javacpl.exe (Oracle Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver Update Utility\Intel(R) Driver Update Utility 2.0.lnk -> C:\Program Files (x86)\Intel Driver Update Utility\DriverUpdateUI.exe (Intel)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IBM SPSS Statistics\IBM SPSS Statistics 22.lnk -> C:\Program Files\IBM\SPSS\Statistics\22\stats.exe (IBM Corp.)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IBM SPSS Statistics\Python 2.7 for IBM SPSS Statistics 22\Python (command line).lnk -> C:\Program Files\IBM\SPSS\Statistics\22\statisticspython.bat ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IBM SPSS Statistics\Python 2.7 for IBM SPSS Statistics 22\Python Manuals.lnk -> C:\Program Files\IBM\SPSS\Statistics\22\Python\Doc\python271.chm ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GameHouse\Bloom!.lnk -> C:\GameHouse Games\Bloom\Bloom.exe (e-FunSoft Games)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GameHouse\Cinema Tycoon 2 - Movie Mania.lnk -> C:\GameHouse Games\Cinema Tycoon 2 - Movie Mania\CinemaTycoon2MovieMania.exe (TikGames, LLC.)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GameHouse\Hidden Object - Home Makeover 3.lnk -> C:\GameHouse Games\Hidden Object - Home Makeover 3\HomeMakeover3PC.exe ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GameHouse\Hotel Mogul - Las Vegas.lnk -> C:\GameHouse Games\Hotel Mogul - Las Vegas\GH-HM.exe (No File)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GameHouse\Hotel Mogul.lnk -> C:\GameHouse Games\Hotel Mogul\Hotel Mogul.exe ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GameHouse\Manor Memoirs.lnk -> C:\GameHouse Games\Manor Memoirs\ManorMemoirs.exe (Playrix)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GameHouse\Ski Resort Mogul.lnk -> C:\GameHouse Games\Ski Resort Mogul\SkiResortMogul.exe ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GameHouse\Summer Resort Mogul.lnk -> C:\GameHouse Games\Summer Resort Mogul\GH-SummerResortMogul.exe ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Communication and Chat\HP MyRoom.lnk -> C:\Windows\Installer\{9C35EDE5-4B0F-45E7-A438-314BA889948E}\MyRoomIcon.exe ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira\Avira Desktop\Avira Free Antivirus Help.lnk -> C:\Program Files (x86)\Avira\AntiVir Desktop\avwin.chm ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira\Avira Desktop\Avira on the Internet.lnk -> C:\Program Files (x86)\Avira\AntiVir Desktop\weblink.url ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira\Avira Desktop\Start Avira Free Antivirus.lnk -> C:\Program Files (x86)\Avira\AntiVir Desktop\avcenter.exe (Avira Operations GmbH & Co. KG)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center\AMD Catalyst Control Center.lnk -> C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (ATI Technologies Inc.)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Component Services.lnk -> C:\Windows\System32\comexp.msc ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\dfrgui.lnk -> C:\Windows\System32\dfrgui.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Disk Cleanup.lnk -> C:\Windows\System32\cleanmgr.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\iSCSI Initiator.lnk -> C:\Windows\System32\iscsicpl.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Memory Diagnostics Tool.lnk -> C:\Windows\System32\MdSched.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\ODBC Data Sources (32-bit).lnk -> C:\Windows\SysWOW64\odbcad32.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\ODBC Data Sources (64-bit).lnk -> C:\Windows\System32\odbcad32.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk -> C:\Windows\System32\services.msc ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Configuration.lnk -> C:\Windows\System32\msconfig.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Information.lnk -> C:\Windows\System32\msinfo32.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows Firewall with Advanced Security.lnk -> C:\Windows\System32\WF.msc ()
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows PowerShell ISE (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Calculator.lnk -> C:\Windows\System32\calc.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Math Input Panel.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\mip.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Paint.lnk -> C:\Windows\System32\mspaint.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Remote Desktop Connection.lnk -> C:\Windows\System32\mstsc.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Snipping Tool.lnk -> C:\Windows\System32\SnippingTool.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sound Recorder.lnk -> C:\Windows\System32\SoundRecorder.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Steps Recorder.lnk -> C:\Windows\System32\psr.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sticky Notes.lnk -> C:\Windows\System32\StikyNot.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Fax and Scan.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Wordpad.lnk -> C:\Program Files\Windows NT\Accessories\wordpad.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\XPS Viewer.lnk -> C:\Windows\System32\xpsrchvw.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC\Windows Journal.lnk -> C:\Program Files\Windows Journal\Journal.exe (Microsoft Corporation)
    Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Character Map.lnk -> C:\Windows\System32\charmap.exe (Microsoft Corporation)
    Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk -> C:\Users\Kim\Documents ()
    Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk -> C:\Users\Kim\Pictures ()
    Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
    Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Windows.Defender.lnk -> C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
    Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
    Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
    Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
    Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
    Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
    Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
    Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
    Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
    Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc ()
    Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc ()
    Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation)
    Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation)
    Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
    Shortcut: C:\Users\Kim\OneDrive\Documents\Documents\Documents\YouCam\YouCam(Webcam).lnk -> C:\Program Files (x86)\CyberLink\YouCam\Youcam_webcam_camera_video.exe (No File)
    Shortcut: C:\Users\Kim\Links\Desktop.lnk -> C:\Users\Kim\Desktop ()
    Shortcut: C:\Users\Kim\Links\Downloads.lnk -> C:\Users\Kim\Downloads ()
    Shortcut: C:\Users\Kim\Documents\Links\SkyDrive.lnk -> C:\Program Files (x86)\Microsoft SkyDrive\SkyDriveSetup.exe (Microsoft Corporation)
    Shortcut: C:\Users\Kim\Documents\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SkyDrive.lnk -> C:\Program Files (x86)\Microsoft SkyDrive\SkyDriveSetup.exe (Microsoft Corporation)
    Shortcut: C:\Users\Kim\Documents\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
    Shortcut: C:\Users\Kim\Documents\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\File Explorer.lnk -> C:\Users\Kim\AppData\Roaming\Microsoft\Windows\Libraries ()
    Shortcut: C:\Users\Kim\Documents\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Windows.Defender.lnk -> C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
    Shortcut: C:\Users\Kim\Documents\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
    Shortcut: C:\Users\Kim\Documents\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
    Shortcut: C:\Users\Kim\Documents\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
    Shortcut: C:\Users\Kim\Documents\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
    Shortcut: C:\Users\Kim\Desktop\Documents - Shortcut.lnk -> C:\Users\Kim\AppData\Roaming\Microsoft\Windows\Libraries\Documents.library-ms ()
    Shortcut: C:\Users\Kim\Desktop\FRST - Shortcut.lnk -> C:\FRST ()
    Shortcut: C:\Users\Kim\Desktop\computer\Malwarebytes Anti-Malware.lnk -> C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe (Malwarebytes Corporation)
    Shortcut: C:\Users\Kim\Desktop\computer\SUPERAntiSpyware Professional.lnk -> C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (SUPERAntiSpyware)
    Shortcut: C:\Users\Kim\AppData\Roaming\Microsoft\Word\Discussion1aResearchtheory304312730753065322\Discussion1aResearchtheory.docx.lnk -> C:\Users\Kim\OneDrive\Documents\Discussion1aResearchtheory.docx (No File)
    Shortcut: C:\Users\Kim\AppData\Roaming\Microsoft\Word\BEGIN%20HERE304312990178783250\BEGIN%20HERE.doc.lnk -> C:\Users\Kim\Documents\BEGIN HERE.doc (No File)
    Shortcut: C:\Users\Kim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk -> C:\Users\Kim\Documents ()
    Shortcut: C:\Users\Kim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IBM SPSS Statistics 22.lnk -> C:\Program Files\IBM\SPSS\Statistics\22\stats.exe (IBM Corp.)
    Shortcut: C:\Users\Kim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
    Shortcut: C:\Users\Kim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk -> C:\Users\Kim\Pictures ()
    Shortcut: C:\Users\Kim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
    Shortcut: C:\Users\Kim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Windows.Defender.lnk -> C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
    Shortcut: C:\Users\Kim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
    Shortcut: C:\Users\Kim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
    Shortcut: C:\Users\Kim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
    Shortcut: C:\Users\Kim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
    Shortcut: C:\Users\Kim\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
    Shortcut: C:\Users\Kim\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
    Shortcut: C:\Users\Kim\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Word 2013.lnk -> C:\Program Files\Microsoft Office 15\root\office15\WINWORD.EXE (Microsoft Corporation)
    Shortcut: C:\Users\Kim\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
    Shortcut: C:\Users\Kim\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
    Shortcut: C:\Users\Kim\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
    Shortcut: C:\Users\Kim\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
    Shortcut: C:\Users\Kim\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc ()
    Shortcut: C:\Users\Kim\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc ()
    Shortcut: C:\Users\Kim\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation)
    Shortcut: C:\Users\Kim\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation)
    Shortcut: C:\Users\Kim\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
    Shortcut: C:\Users\Kim_2\Links\Desktop.lnk -> C:\Users\Kim\Desktop ()
    Shortcut: C:\Users\Kim_2\Links\Downloads.lnk -> C:\Users\Kim\Downloads ()
    Shortcut: C:\Users\Kim_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk -> C:\Users\Kim\Documents ()
    Shortcut: C:\Users\Kim_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
    Shortcut: C:\Users\Kim_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk -> C:\Users\Kim\Pictures ()
    Shortcut: C:\Users\Kim_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
    Shortcut: C:\Users\Kim_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Windows.Defender.lnk -> C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation)
    Shortcut: C:\Users\Kim_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
    Shortcut: C:\Users\Kim_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
    Shortcut: C:\Users\Kim_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
    Shortcut: C:\Users\Kim_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
    Shortcut: C:\Users\Kim_2\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
    Shortcut: C:\Users\Kim_2\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
    Shortcut: C:\Users\Kim_2\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
    Shortcut: C:\Users\Kim_2\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
    Shortcut: C:\Users\Kim_2\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
    Shortcut: C:\Users\Kim_2\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
    Shortcut: C:\Users\Kim_2\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc ()
    Shortcut: C:\Users\Kim_2\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc ()
    Shortcut: C:\Users\Kim_2\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation)
    Shortcut: C:\Users\Kim_2\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation)
    Shortcut: C:\Users\Kim_2\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
    Shortcut: C:\Users\Public\Desktop\Adobe Reader XI.lnk -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe (Adobe Systems Incorporated)
    Shortcut: C:\Users\Public\Desktop\Intel(R) Driver Update Utility 2.0.lnk -> C:\Program Files (x86)\Intel Driver Update Utility\DriverUpdateUI.exe (Intel)
    Shortcut: C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk -> C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe (Malwarebytes Corporation)
    Shortcut: C:\Users\Public\Desktop\WinZip.lnk -> C:\Program Files\WinZip\WINZIP64.EXE (WinZip Computing, S.L.)


    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Shopping and Services\eBay.lnk -> C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe () -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=ebay&pf=cnnb&locale=en_us&bd=all&c=131
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Music, Photos and Videos\Walmart Photo Center.lnk -> C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe () -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=onlinesvs&s=wmsnapfish&pf=cnnb&locale=en_us&bd=all&c=104


    ShortcutWithArgument: C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
    ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - Network Connections.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> ::{7007ACC7-3202-11D1-AAD2-00805FC1270E}
    ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager
    ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\06 - System.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.System
    ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\08 - Power Options.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.PowerOptions
    ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group3\10 - Programs and Features.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.ProgramsAndFeatures
    ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}
    ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0}
    ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> /e,::{20D04FE0-3AEA-1069-A2D8-08002B30309D}
    ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /0
    ShortcutWithArgument: C:\Users\Administrator\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257}
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> -sta {C90FB8CA-3295-4462-A721-2935E83694BA}
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools\Default Programs.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DefaultPrograms
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools\Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /7
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware\SUPERAntiSpyware Registration-Activation.lnk -> C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe (SUPERAntiSpyware) -> /register
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security and Protection\HP Recovery Manager\HP Recovery Media Creation.lnk -> C:\Program Files (x86)\Hewlett-Packard\HP Recovery Manager\Rebecca.exe () -> \CRM
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RoboForm\RoboForm.lnk -> C:\Program Files (x86)\Siber Systems\AI RoboForm\identities.exe (Siber Systems) -> -startpage
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\About Java.lnk -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\javacpl.exe (Oracle Corporation) -> -tab about
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Check For Updates.lnk -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\javacpl.exe (Oracle Corporation) -> -tab update
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IBM SPSS Statistics\IBM SPSS Statistics 22 License Authorization Wizard.lnk -> C:\Program Files\IBM\SPSS\Statistics\22\law.exe (IBM Corp.) -> -is:javahome "C:\Program Files\IBM\SPSS\Statistics\22\JRE" -s:silent
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IBM SPSS Statistics\Python 2.7 for IBM SPSS Statistics 22\IDLE(PythonGUI).lnk -> C:\Program Files\IBM\SPSS\Statistics\22\statisticspythonw.bat () -> /i
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IBM SPSS Statistics\Python 2.7 for IBM SPSS Statistics 22\Module Docs.lnk -> C:\Program Files\IBM\SPSS\Statistics\22\statisticspythonw.bat () -> /m
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\All Casual Games.lnk -> C:\Program Files (x86)\WildTangent Games\Game Explorer Categories - genres\provider.exe (WildTangent) -> /id=000d96f5-8034-4b74-a429-b6f0b04c75f4 /src gamesmenuoem
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\All Enthusiast Games.lnk -> C:\Program Files (x86)\WildTangent Games\Game Explorer Categories - genres\provider.exe (WildTangent) -> /id=26352374-af55-4b53-b07b-6b0288ed97df /src gamesmenuoem
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\All Family Games.lnk -> C:\Program Files (x86)\WildTangent Games\Game Explorer Categories - genres\provider.exe (WildTangent) -> /id=d58eecb0-0816-11de-8c30-0800200c9a66 /src gamesmenuoem
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\All Kids Games.lnk -> C:\Program Files (x86)\WildTangent Games\Game Explorer Categories - genres\provider.exe (WildTangent) -> /id=3eda1e54-8889-41f5-a649-5a306789b7ef /src gamesmenuoem
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\All MMO Games.lnk -> C:\Program Files (x86)\WildTangent Games\Game Explorer Categories - genres\provider.exe (WildTangent) -> /id=c3c636e0-1b04-11de-8c30-0800200c9a66 /src gamesmenuoem
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira\Avira.lnk -> C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe (Avira Operations GmbH & Co. KG) -> /showMiniGui
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center\Help.lnk -> C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLI.exe (ATI Technologies Inc.) -> Start Help -help
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Computer Management.lnk -> C:\Windows\System32\compmgmt.msc () -> /s
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Event Viewer.lnk -> C:\Windows\System32\eventvwr.msc () -> /s
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Performance Monitor.lnk -> C:\Windows\System32\perfmon.msc () -> /s
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Resource Monitor.lnk -> C:\Windows\System32\perfmon.exe (Microsoft Corporation) -> /res
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Task Scheduler.lnk -> C:\Windows\System32\taskschd.msc () -> /s
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility\Speech Recognition.lnk -> C:\Windows\Speech\Common\sapisvr.exe (Microsoft Corporation) -> -SpeechUX
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{e923cba5-ed90-4670-bf07-064d14a1cd55}\PlayTasks\0\web.lnk -> C:\Program Files (x86)\HP Games\Web Link - Mahjongg Dark Dimensions\launcher.exe (WildTangent) -> /src gameexploreroem
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{d58eecb0-0816-11de-8c30-0800200c9a66}\PlayTasks\0\provider.lnk -> C:\Program Files (x86)\WildTangent Games\Game Explorer Categories - genres\provider.exe (WildTangent) -> /id=d58eecb0-0816-11de-8c30-0800200c9a66 /src gameexploreroem
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{c3c636e0-1b04-11de-8c30-0800200c9a66}\PlayTasks\0\provider.lnk -> C:\Program Files (x86)\WildTangent Games\Game Explorer Categories - genres\provider.exe (WildTangent) -> /id=c3c636e0-1b04-11de-8c30-0800200c9a66 /src gameexploreroem
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{5f828e7a-066c-4d4a-ada6-8b2494b859db}\PlayTasks\0\web.lnk -> C:\Program Files (x86)\HP Games\Web Link - Polar Bowler Strike!\launcher.exe (WildTangent) -> /src gameexploreroem
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{3eda1e54-8889-41f5-a649-5a306789b7ef}\PlayTasks\0\provider.lnk -> C:\Program Files (x86)\WildTangent Games\Game Explorer Categories - genres\provider.exe (WildTangent) -> /id=3eda1e54-8889-41f5-a649-5a306789b7ef /src gameexploreroem
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{2D080D0F-37EF-433E-90F1-CE36EB0205F6}\PlayTasks\0\web.lnk -> C:\Program Files (x86)\HP Games\Web Link - Seafight\launcher.exe (WildTangent) -> /src gameexploreroem
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{26352374-af55-4b53-b07b-6b0288ed97df}\PlayTasks\0\provider.lnk -> C:\Program Files (x86)\WildTangent Games\Game Explorer Categories - genres\provider.exe (WildTangent) -> /id=26352374-af55-4b53-b07b-6b0288ed97df /src gameexploreroem
    ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\GameExplorer\{000d96f5-8034-4b74-a429-b6f0b04c75f4}\PlayTasks\0\provider.lnk -> C:\Program Files (x86)\WildTangent Games\Game Explorer Categories - genres\provider.exe (WildTangent) -> /id=000d96f5-8034-4b74-a429-b6f0b04c75f4 /src gameexploreroem
    ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
    ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - Network Connections.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> ::{7007ACC7-3202-11D1-AAD2-00805FC1270E}
    ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager
    ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\06 - System.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.System
    ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\08 - Power Options.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.PowerOptions
    ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\10 - Programs and Features.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.ProgramsAndFeatures
    ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}
    ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0}
    ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> /e,::{20D04FE0-3AEA-1069-A2D8-08002B30309D}
    ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /0
    ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257}
    ShortcutWithArgument: C:\Users\Kim\Documents\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
    ShortcutWithArgument: C:\Users\Kim\AppData\Roaming\Microsoft\Word\Tip%20sheet%20for%20Research304311461453697802\Tip%20sheet%20for%20Research.docx.lnk -> C:\Users\Kim\OneDrive\Documents\Quantitative Research\Tip sheet for Research.docx () -> 14
    ShortcutWithArgument: C:\Users\Kim\AppData\Roaming\Microsoft\Word\Assignment%202%20research304329021779303975\Assignment%202%20research.docx.lnk -> C:\Users\Kim\OneDrive\Documents\Research Theory\Assignment 2 research.docx () -> 0
    ShortcutWithArgument: C:\Users\Kim\AppData\Roaming\Microsoft\Word\2%20dissertation%20outline304329051133544210\2%20dissertation%20outline.docx.lnk -> C:\Users\Kim\OneDrive\Documents\Research Theory\2 dissertation outline.docx () -> 0
    ShortcutWithArgument: C:\Users\Kim\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
    ShortcutWithArgument: C:\Users\Kim\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - Network Connections.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> ::{7007ACC7-3202-11D1-AAD2-00805FC1270E}
    ShortcutWithArgument: C:\Users\Kim\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager
    ShortcutWithArgument: C:\Users\Kim\AppData\Local\Microsoft\Windows\WinX\Group3\06 - System.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.System
    ShortcutWithArgument: C:\Users\Kim\AppData\Local\Microsoft\Windows\WinX\Group3\08 - Power Options.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.PowerOptions
    ShortcutWithArgument: C:\Users\Kim\AppData\Local\Microsoft\Windows\WinX\Group3\10 - Programs and Features.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.ProgramsAndFeatures
    ShortcutWithArgument: C:\Users\Kim\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}
    ShortcutWithArgument: C:\Users\Kim\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0}
    ShortcutWithArgument: C:\Users\Kim\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> /e,::{20D04FE0-3AEA-1069-A2D8-08002B30309D}
    ShortcutWithArgument: C:\Users\Kim\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /0
    ShortcutWithArgument: C:\Users\Kim\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257}
    ShortcutWithArgument: C:\Users\Kim_2\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
    ShortcutWithArgument: C:\Users\Kim_2\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - Network Connections.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> ::{7007ACC7-3202-11D1-AAD2-00805FC1270E}
    ShortcutWithArgument: C:\Users\Kim_2\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager
    ShortcutWithArgument: C:\Users\Kim_2\AppData\Local\Microsoft\Windows\WinX\Group3\06 - System.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.System
    ShortcutWithArgument: C:\Users\Kim_2\AppData\Local\Microsoft\Windows\WinX\Group3\08 - Power Options.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.PowerOptions
    ShortcutWithArgument: C:\Users\Kim_2\AppData\Local\Microsoft\Windows\WinX\Group3\10 - Programs and Features.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.ProgramsAndFeatures
    ShortcutWithArgument: C:\Users\Kim_2\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}
    ShortcutWithArgument: C:\Users\Kim_2\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0}
    ShortcutWithArgument: C:\Users\Kim_2\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> /e,::{20D04FE0-3AEA-1069-A2D8-08002B30309D}
    ShortcutWithArgument: C:\Users\Kim_2\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /0
    ShortcutWithArgument: C:\Users\Kim_2\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257}
    ShortcutWithArgument: C:\Users\Public\Desktop\Avira.lnk -> C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe (Avira Operations GmbH & Co. KG) -> /showMiniGui


    InternetURL: C:\Users\Administrator\Favorites\Bing.url -> hxxp://go.microsoft.com/fwlink/p/?LinkId=255142
    InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RoboForm\Buy RoboForm.url -> hxxp://www.roboform.com/php/pums/rfprepay.php?lic=default_alt&lang=
    InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RoboForm\Generate Passwords.url -> file:///C:/Program%20Files%20(x86)/Siber%20Systems/AI%20RoboForm/Generate%20Passwords.lnk
    InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RoboForm\New Version Check.url -> file:///C:/Program%20Files%20(x86)/Siber%20Systems/AI%20RoboForm/New%20Version%20Check.lnk
    InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RoboForm\RoboForm Editor.url -> file:///C:/Program%20Files%20(x86)/Siber%20Systems/AI%20RoboForm/RoboForm%20Editor.lnk
    InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RoboForm\Search Box.url -> file:///C:/Program%20Files%20(x86)/Siber%20Systems/AI%20RoboForm/Search%20Box.lnk
    InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RoboForm\Search Files.url -> file:///C:/Program%20Files%20(x86)/Siber%20Systems/AI%20RoboForm/Search%20Files.lnk
    InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RoboForm\TaskBar Icon.url -> file:///C:/Program%20Files%20(x86)/Siber%20Systems/AI%20RoboForm/TaskBar%20Icon.lnk
    InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RoboForm\Uninstall.url -> file:///C:/Program%20Files%20(x86)/Siber%20Systems/AI%20RoboForm/Uninstall.lnk
    InternetURL: C:\Users\Default\Favorites\HP\Accessories.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=hpaccessories&pf=cnnb&locale=en_us&bd=all&c=131
    InternetURL: C:\Users\Default\Favorites\HP\eBay.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=ebay&pf=cnnb&locale=en_us&bd=all&c=131
    InternetURL: C:\Users\Default\Favorites\HP\HP Creative Studio.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=activitycenter&pf=cnnb&locale=en_us&bd=all&c=131
    InternetURL: C:\Users\Default\Favorites\HP\HP Store.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=hpstore&pf=cnnb&locale=en_us&bd=all&c=131
    InternetURL: C:\Users\Default\Favorites\HP\Printing.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=printing&pf=cnnb&locale=en_us&bd=all&c=131
    InternetURL: C:\Users\Default\Favorites\HP\Saving Center.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=savingscenter&pf=cnnb&locale=en_us&bd=all&c=131
    InternetURL: C:\Users\Default\Favorites\HP\Software and Driver Downloads.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=downloads&pf=cnnb&locale=en_us&bd=all&c=131
    InternetURL: C:\Users\Default\Favorites\HP\Try HP MyRoom Free.url -> hxxp://redirect.hp.com/svs/rdr?bd=all&tp=iefavs&locale=en_ww&pf=cnnb&c=124&s=hp_myroom&TYPE=4
    InternetURL: C:\Users\Default\Favorites\HP\Walmart Photo Center.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=wmsnapfish&pf=cnnb&locale=en_us&bd=all&c=104
    InternetURL: C:\Users\Kim\OneDrive.old\Documents\stuff\Kim's Notebook.url -> https://skydrive.live.com/redir.aspx?cid=594f6a50a614844a&resid=594F6A50A614844A!3875&type=3
    InternetURL: C:\Users\Kim\OneDrive\Documents\stuff\Kim's Notebook.url -> https://skydrive.live.com/redir.aspx?cid=594f6a50a614844a&resid=594F6A50A614844A!3875&type=3
    InternetURL: C:\Users\Kim\Favorites\(1) CEU Support for KY Social Worker Licensure.url -> https://www.facebook.com/groups/231336003688541/
    InternetURL: C:\Users\Kim\Favorites\(48) Facebook.url -> https://www.facebook.com/
    InternetURL: C:\Users\Kim\Favorites\106 Autumn Drive, Campbellsville KY, 42718 for sale Homes.com.url -> hxxp://www.homes.com/property/106-autumn-dr-campbellsville-ky-42718/id-600035890419/?zmc=EM-LST-SSE
    InternetURL: C:\Users\Kim\Favorites\5 Big Media Stereotypes About the South (And the Real Story Behind Them) Alternet.url -> hxxp://www.alternet.org/story/154794/5_big_media_stereotypes_about_the_south_%28and_the_real_story_behind_them%29?page=0%2C1
    InternetURL: C:\Users\Kim\Favorites\Academic Software from Student Discounts! - SPSS.url -> hxxp://studentdiscounts.com/spss.aspx
    InternetURL: C:\Users\Kim\Favorites\Aggression - Noko-Psykology.url -> https://sites.google.com/site/nokopsykology/aggression
    InternetURL: C:\Users\Kim\Favorites\aicepsychologyreview - Bandura, Ross and Ross - Period 2.url -> hxxp://aicepsychologyreview.wikispaces.com/Bandura%2C+Ross+and+Ross+-+Period+2
    InternetURL: C:\Users\Kim\Favorites\amazon.com Online Shopping for Electronics, Apparel, Computers, Books, DVDs & more.url -> hxxp://www.amazon.com/
    InternetURL: C:\Users\Kim\Favorites\Bandura.url -> hxxp://homepage.ntlworld.com/gary.sturt/Bandura.htm
    InternetURL: C:\Users\Kim\Favorites\Behavioral Theories and Treatment of Anxiety.url -> hxxp://www.springer.com/psychology/book/978-1-4684-4696-8
    InternetURL: C:\Users\Kim\Favorites\Best Oatmeal Cookies Recipe - Food.com.url -> hxxp://www.food.com/recipe/best-oatmeal-cookies-54351
    InternetURL: C:\Users\Kim\Favorites\Bing.url -> hxxp://go.microsoft.com/fwlink/p/?LinkId=255142
    InternetURL: C:\Users\Kim\Favorites\Blackboard Learn.url -> https://keiseruniversity.blackboard.com/webapps/portal/frameset.jsp
    InternetURL: C:\Users\Kim\Favorites\Bureau of Justice Statistics (BJS) - Arrest-Related Deaths.url -> hxxp://www.bjs.gov/index.cfm?ty=dcdetail&iid=428
    InternetURL: C:\Users\Kim\Favorites\Campbellsville, Kentucky Real Estate Listings Campbellsville.com.url -> hxxp://www.campbellsville.com/campbellsville-real-estate.php
    InternetURL: C:\Users\Kim\Favorites\Cauliflower Gratin Recipe Ina Garten Food Network.url -> hxxp://www.foodnetwork.com/recipes/ina-garten/cauliflower-gratin-recipe.html
    InternetURL: C:\Users\Kim\Favorites\ceus.url -> https://www.continuingeducation.com/Aspx/MyTranscript.aspx
    InternetURL: C:\Users\Kim\Favorites\Choice Quote of the Day.url -> hxxp://www.quotes-day.com/quotes/choice/
    InternetURL: C:\Users\Kim\Favorites\Citizens Bank & Trust Company.url -> https://www.cbtky.com/
    InternetURL: C:\Users\Kim\Favorites\Components of a Research Paper - Center for Innovation in Research and Teaching.url -> https://cirt.gcu.edu/research/developmentresources/tutorials/researchpaper
    InternetURL: C:\Users\Kim\Favorites\Contact Us OnTheHub Save on Software this Back-to-School.url -> hxxp://estore.onthehub.com/WebStore/Support/ContactUs.aspx?ws=49c547ba-f56d-dd11-bb6c-0030485a6b08
    InternetURL: C:\Users\Kim\Favorites\Contact Us — School of Dentistry.url -> hxxp://louisville.edu/dentistry/patient-care/contact
    InternetURL: C:\Users\Kim\Favorites\Design Custom Printed Shirts Fast!.url -> hxxp://www.customtshirts.com/designer/?product_id=9935
    InternetURL: C:\Users\Kim\Favorites\Differences Between Qualitative and Quantitative Research Methods.url -> hxxp://www.orau.gov/cdcynergy/soc2web/Content/phase05/phase05_step03_deeper_qualitative_and_quantitative.htm
    InternetURL: C:\Users\Kim\Favorites\Diplomatic Courier - U.S. Department of State.url -> hxxp://careers.state.gov/work/opportunities/vacancy-announcements/dc?source=govdelivery&utm_medium=email&utm_source=govdelivery
    InternetURL: C:\Users\Kim\Favorites\dog bed furniture eBay.url -> hxxp://www.ebay.com/sch/i.html?_nkw=dog+bed+furniture
    InternetURL: C:\Users\Kim\Favorites\eBay.url -> hxxp://www.ebay.com/
    InternetURL: C:\Users\Kim\Favorites\Every Person With Kids Has Had This Hilarious Experience At Least Once.url -> hxxp://www.liftable.com/danieltofil/daddy-daughter-standoff/
    InternetURL: C:\Users\Kim\Favorites\Factors contributing to Homelessness Homeless Resource Network.url -> hxxp://homelessresourcenetwork.org/index.php/homelessness101/homelessness-causes/
    InternetURL: C:\Users\Kim\Favorites\Follow the liar the effects of adult lies on children's honesty - ResearchGate.url -> hxxp://www.researchgate.net/publication/260837765_Follow_the_liar_the_effects_of_adult_lies_on_children%27s_honesty
    InternetURL: C:\Users\Kim\Favorites\FOX Sports Bracket Challenge - How to Play.url -> hxxp://www.foxsports.com/fantasy/collegebasketball/tourney/help/howtoplay/?entry=1522149
    InternetURL: C:\Users\Kim\Favorites\Furniture Style Dog Beds - Couch, Sofa & More - Dog.com.url -> hxxp://www.dog.com/beds/furniture-style-dog-beds/1704/
    InternetURL: C:\Users\Kim\Favorites\Gettington.com - Great Brands and More Ways to Pay.url -> hxxp://www.gettington.com/
    InternetURL: C:\Users\Kim\Favorites\GoFundMe - Dashboard.url -> https://funds.gofundme.com/dashboard/ke3ec0
    InternetURL: C:\Users\Kim\Favorites\Grant Information Resources to Get You Started Edutopia.url -> hxxp://www.edutopia.org/grantinfo
    InternetURL: C:\Users\Kim\Favorites\GRM.url -> hxxp://www.guidestar.org/SearchResults.aspx
    InternetURL: C:\Users\Kim\Favorites\HBE Home Page.url -> https://kyenroll.ky.gov/prescreening/hbehomepage#!indLink
    InternetURL: C:\Users\Kim\Favorites\Help! computer is runnnig slow (Moved from Windows 8 forum) - Tech Support Guy.url -> hxxp://forums.techguy.org/virus-other-malware-removal/1144010-help-computer-runnnig-slow-moved.html#post9053857
    InternetURL: C:\Users\Kim\Favorites\High-Speed Internet Welcome Center Windstream.url -> hxxp://www.windstream.com/welcomecenter/?icmid=wcwallgrdn
    InternetURL: C:\Users\Kim\Favorites\How People Explain Behavior Malle Lab.url -> hxxp://research.clps.brown.edu/SocCogSci/Projects/explainingbehavior.html
    InternetURL: C:\Users\Kim\Favorites\How Social Media Causes Depression Anxiety.url -> hxxp://www.depressionanxietydiet.com/how-social-media-causes-depression-anxiety/
    InternetURL: C:\Users\Kim\Favorites\http--files.eric.ed.gov-fulltext-ED535499.pdf.url -> hxxp://files.eric.ed.gov/fulltext/ED535499.pdf
    InternetURL: C:\Users\Kim\Favorites\http--psyc.csustan.edu-bhesse-psy2020-Lectures-Spring04-p2020U3L3_5.pdf.url -> hxxp://psyc.csustan.edu/bhesse/psy2020/Lectures/Spring04/p2020U3L3_5.pdf
    InternetURL: C:\Users\Kim\Favorites\http--www.antoniocasella.eu-archipsy-Black_aspd_2010.pdf.url -> hxxp://www.antoniocasella.eu/archipsy/Black_aspd_2010.pdf
    InternetURL: C:\Users\Kim\Favorites\http--www.bjs.gov-content-pub-pdf-mhtip.pdf.url -> hxxp://www.bjs.gov/content/pub/pdf/mhtip.pdf
    InternetURL: C:\Users\Kim\Favorites\http--www.olicognography.org-tables-hamiltonanxietyratingscale.png.url -> hxxp://www.olicognography.org/tables/hamiltonanxietyratingscale.png
    InternetURL: C:\Users\Kim\Favorites\http--www.riu6.org-cms-lib05-PA10000129-Centricity-Domain-22-cbasls.pdf.url -> hxxp://www.riu6.org/cms/lib05/PA10000129/Centricity/Domain/22/cbasls.pdf
    InternetURL: C:\Users\Kim\Favorites\http--www.sagepub.com-creswellstudy-Sample%20Student%20Proposals-Proposal-QUAN-Hayes.pdf.url -> hxxp://www.sagepub.com/creswellstudy/Sample%20Student%20Proposals/Proposal-QUAN-Hayes.pdf
    InternetURL: C:\Users\Kim\Favorites\http--www.uta.edu-faculty-story-StudentResearchResources-BasicElementsOfAResearchPaper.pdf.url -> hxxp://www.uta.edu/faculty/story/StudentResearchResources/BasicElementsOfAResearchPaper.pdf
    InternetURL: C:\Users\Kim\Favorites\https--keiseruniversity.blackboard.com-bbcswebdav-pid-2318120-dt-content-rid-5930084_1-courses-RSM702G1-109012014-Bandura%20Ross%20%26%20Ross%20%281961%29.pdf.url -> https://keiseruniversity.blackboard...02G1-109012014/Bandura Ross & Ross (1961).pdf
    InternetURL: C:\Users\Kim\Favorites\https--www.priceline.com-hotel-offerAccepted.dojsk=334a050a364a050a201409300048494be010304286&forcedWCS=OA.url -> https://www.priceline.com/hotel/off...4a050a201409300048494be010304286&forcedWCS=OA
    InternetURL: C:\Users\Kim\Favorites\Inmate Locator - Search results.url -> hxxp://inmatelocator.cor.state.pa.us/inmatelocatorweb/Criteria.aspx
    InternetURL: C:\Users\Kim\Favorites\INTRODUCTION TO SOCIAL PSYCHOLOGYReadings Main Elements of Definitions Social Psychology Social Sciences Psychology.url -> hxxp://www.zeepedia.com/read.php?introduction_to_social_psychology_readings_main_elements_of_definitions_social_psychology&b=95&c=1
    InternetURL: C:\Users\Kim\Favorites\J.S. Eastwood - Editor Doctoral dissertations, master's theses, journal articles, grant proposals, books..url -> hxxp://www.jeastwood.com/schedule.html
    InternetURL: C:\Users\Kim\Favorites\Just Mugshots - Browse & Search Criminal Records.url -> hxxp://www.justmugshots.com/
    InternetURL: C:\Users\Kim\Favorites\kentucky Board of Social Work - Online License Renewal.url -> https://secure.kentucky.gov/renewalservices/kbsw/Default.aspx
    InternetURL: C:\Users\Kim\Favorites\Key Elements of a Research Proposal - Quantitative Design.url -> hxxp://www.bcps.org/offices/lis/researchcourse/develop_quantitative.html
    InternetURL: C:\Users\Kim\Favorites\Laptop frozen on Dell screen - Tech Support Guy.url -> hxxp://forums.techguy.org/windows-xp/840552-laptop-frozen-dell-screen.html
    InternetURL: C:\Users\Kim\Favorites\LG&E-KU My Account Logon.url -> https://my.lge-ku.com/cs/public/logonMain.jsp?redirectURL=/cs/logon.sap?ume.logon.locale=en
    InternetURL: C:\Users\Kim\Favorites\Mini Cheese Ball Bites.url -> hxxp://www.fivehearthome.com/2013/11/24/mini-cheese-ball-bites/
    InternetURL: C:\Users\Kim\Favorites\My Credit Activity.url -> https://www.gettington.com/user/credit_activity.jsp
    InternetURL: C:\Users\Kim\Favorites\My Online Family — TylerPerry.com.url -> hxxp://www.tylerperry.com/talk/
    InternetURL: C:\Users\Kim\Favorites\New Tab.url -> about:Tabs
    InternetURL: C:\Users\Kim\Favorites\NIMH · Anxiety Disorders.url -> hxxp://www.nimh.nih.gov/health/publications/anxiety-disorders/index.shtml?wvsessionid=wv650bd43245ce405884dd789794894544
    InternetURL: C:\Users\Kim\Favorites\Our Government The White House.url -> hxxp://www.whitehouse.gov/our-government
    InternetURL: C:\Users\Kim\Favorites\Outlook.com - [email protected] -> https://bay174.mail.live.com/default.aspx?id=64855&owa=1&owasuffix=owa/
    InternetURL: C:\Users\Kim\Favorites\Peanut Butter Truffles.url -> hxxp://www.bhg.com/recipe/candy/peanut-butter-truffles/?socsrc=bhgfb0914143
    InternetURL: C:\Users\Kim\Favorites\PHILADELPHIA Mini Cheesecakes Recipe - Kraft Recipes.url -> hxxp://www.kraftrecipes.com/recipes/philadelphia-mini-cheesecakes-143464.aspx
    InternetURL: C:\Users\Kim\Favorites\pof.url -> hxxp://www.pof.com/inbox.aspx
    InternetURL: C:\Users\Kim\Favorites\Quantitative Research - Chanimal.url -> hxxp://www.chanimal.com/resources/product-management/quantitative-research/
    InternetURL: C:\Users\Kim\Favorites\QUANTITATIVE RESEARCH - SAMPLES.url -> hxxp://www.researchproposalsforhealthprofessionals.com/quantitative_research__samples.htm
    InternetURL: C:\Users\Kim\Favorites\Recycled Dog Sweater.url -> hxxp://voknits.com/recycled-dog-sweater/
    InternetURL: C:\Users\Kim\Favorites\Red Malamute and Alaskan Malamute Breeder Ervins Malamutes.url -> hxxp://ervinsmalamutes.com/my_girls.html
    InternetURL: C:\Users\Kim\Favorites\Regression and correlation analysis.url -> hxxp://abyss.uoregon.edu/~js/glossary/correlation.html
    InternetURL: C:\Users\Kim\Favorites\Research question - Wikipedia, the free encyclopedia.url -> hxxp://en.wikipedia.org/wiki/Research_question
    InternetURL: C:\Users\Kim\Favorites\Should I have both Norton & SpyBot S&D on my computer.url -> https://answers.yahoo.com/question/index?qid=20090818024022AA6iib4
    InternetURL: C:\Users\Kim\Favorites\Sign in to Comcast.url -> https://login.comcast.net/login?for.../OneTimePayment&s=ccentral-cima&r=comcast.net
    InternetURL: C:\Users\Kim\Favorites\Skinnytaste.url -> hxxp://www.skinnytaste.com/
    InternetURL: C:\Users\Kim\Favorites\Social media anxiety Sites like Facebook, Twitter stressing teens out Fox News.url -> hxxp://www.foxnews.com/health/2013/03/20/social-media-anxiety-sites-like-facebook-twitter-stressing-teens-out/
    InternetURL: C:\Users\Kim\Favorites\Social Media Causes Anxiety Anxiety.org.url -> https://www.anxiety.org/blog/social-media-causes-anxiety
    InternetURL: C:\Users\Kim\Favorites\Social Media Fuels Low Self-Esteem, Anxiety [STUDY].url -> hxxp://mashable.com/2012/07/08/social-media-anxiety-study/
    InternetURL: C:\Users\Kim\Favorites\Solve Office product key problems.url -> hxxp://support.microsoft.com/common/survey.aspx?scid=sw;en;3463&showpage=6
    InternetURL: C:\Users\Kim\Favorites\solved Computer Running Slow - System Idle Process 100% - Tech Support Guy.url -> hxxp://forums.techguy.org/virus-other-malware-removal/648534-computer-running-slow-system-idle.html
    InternetURL: C:\Users\Kim\Favorites\Some Examples of Qualitative Research.url -> hxxp://www.brighthubpm.com/methods-strategies/118658-understand-what-is-qualitative-research-with-examples/
    InternetURL: C:\Users\Kim\Favorites\Stereotypes Simply Psychology.url -> hxxp://www.simplypsychology.org/katz-braly.html
    InternetURL: C:\Users\Kim\Favorites\Stereotypes and Prejudices.url -> hxxp://www.remember.org/guide/History.root.stereotypes.html
    InternetURL: C:\Users\Kim\Favorites\Study Search Results.url -> hxxp://www.icpsr.umich.edu/icpsrweb/ICPSR/studies?sortBy=&q=mental+disorders+prisons&searchSource=revise
    InternetURL: C:\Users\Kim\Favorites\Support Networks For Young Homeless People.url -> hxxp://www.ukessays.com/dissertations/social-work/young-homeless-people.php
    InternetURL: C:\Users\Kim\Favorites\Tech Support Guy - Search Results.url -> hxxp://forums.techguy.org/search.php?searchid=8709034
    InternetURL: C:\Users\Kim\Favorites\Technology Leads to Anxiety and Depression, Studies Show.url -> hxxp://www.switched.com/2009/02/04/technology-leads-to-anxiety-and-depression-studies-show/
    InternetURL: C:\Users\Kim\Favorites\Terms of Use.url -> hxxp://www.icpsr.umich.edu/cgi-bin/terms?path=ICPSR&study=9978&bundle=ascspss&ds=1&dups=yes
    InternetURL: C:\Users\Kim\Favorites\Tesco Health and Wellbeing.url -> hxxp://www.tescohealthandwellbeing.com/home
    InternetURL: C:\Users\Kim\Favorites\The 45 Most Inspiring Quotes on Change.url -> hxxp://exploreforayear.com/clarity/45-inspiring-quotes-change
    InternetURL: C:\Users\Kim\Favorites\The Dawes Rolls Census Cards.url -> hxxp://www.archives.gov/research/native-americans/dawes/census-cards.html
    InternetURL: C:\Users\Kim\Favorites\The Official Site of the Chickasaw Nation CDIB and Chickasaw Citizenship Cards.url -> https://www.chickasaw.net/Services/CDIB-and-Chickasaw-Citizenship-Cards.aspx
    InternetURL: C:\Users\Kim\Favorites\The Salvation Army - Search Results.url -> hxxp://www.salvationarmyusa.org/usn/plugins/gdosCenterSearch?query=campbellsville ky&mode=query_1&limit=20
    InternetURL: C:\Users\Kim\Favorites\The Simply Filling Technique Food List.url -> hxxp://www.weightwatchers.com/util/art/index_art.aspx?tabnum=1&art_id=65271
    InternetURL: C:\Users\Kim\Favorites\The South Not all Bubbas and banjos - CNN.com.url -> hxxp://www.cnn.com/2012/04/14/us/bubba-southern-stereotypes/index.html
    InternetURL: C:\Users\Kim\Favorites\Types of variables.url -> hxxp://dissertation.laerd.com/types-of-variables.php
    InternetURL: C:\Users\Kim\Favorites\Using a Critical Value Table for Pearson's r.url -> hxxp://www.gifted.uconn.edu/siegle/research/Correlation/alphaleve.htm
    InternetURL: C:\Users\Kim\Favorites\Walmart.com - Checkout.url -> https://www.walmart.com/subflow/co_photo/1467352352/co_sub_billing/select_or_create_cc.do
    InternetURL: C:\Users\Kim\Favorites\Welcome to Investigations Home Investigations in Number, Data, and Space®.url -> hxxp://investigations.terc.edu/
    InternetURL: C:\Users\Kim\Favorites\Welcome to Kentucky's Focus-Career.url -> https://focuscareer.ky.gov/career/
    InternetURL: C:\Users\Kim\Favorites\What Does the Bible Say About Giving To The Poor.url -> hxxp://www.openbible.info/topics/giving_to_the_poor
    InternetURL: C:\Users\Kim\Favorites\What Is Standard Deviation (with picture).url -> hxxp://www.wisegeek.org/what-is-standard-deviation.htm
    InternetURL: C:\Users\Kim\Favorites\Where Americans are using the most prescription painkillers.url -> hxxp://www.msn.com/en-us/health/medical/where-americans-are-using-the-most-prescription-painkillers/ar-BBgyl8u?ocid=HPCDHP
    InternetURL: C:\Users\Kim\Favorites\Why Do People Stereotype.url -> hxxp://whydopeople.net/why-do-people-stereotype/
    InternetURL: C:\Users\Kim\Favorites\Windstream Online - Welcome to Windstream Online.url -> https://www.windstreamonline.com/pol/Landing.do
    InternetURL: C:\Users\Kim\Favorites\Wix HTML Editor.url -> hxxp://editor.wix.com/html/editor/web/renderer/edit/3e9b9aaa-cd53-43b7-bcc3-efdb17bbe268?metaSiteId=ab8d9c15-3be9-409e-baa9-d9628712d732&editorSessionId=2938969D-AB8F-45C3-929C-63E01E8C25CC
    InternetURL: C:\Users\Kim\Favorites\Zero PointsPlus® value food list.url -> hxxp://www.weightwatchers.com/util/art/index_art.aspx?tabnum=1&art_id=59781
    InternetURL: C:\Users\Kim\Favorites\Links\(29) Facebook.url -> https://www.facebook.com/
    InternetURL: C:\Users\Kim\Favorites\Links\HP - See What's Hot.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&s=webslice&tp=iefavbar&pf=cnnb&locale=en_us&bd=HP&c=131
    InternetURL: C:\Users\Kim\Favorites\Links\msn (2).url -> hxxp://www.msn.com/en-us?cobrand=hp13.msn.com&ocid=HPCDHP&pc=HPDTDFJS
    InternetURL: C:\Users\Kim\Favorites\Links\msn.url -> hxxp://www.msn.com/en-us?cobrand=hp13.msn.com&ocid=HPCDHP&pc=HPDTDFJS
    InternetURL: C:\Users\Kim\Favorites\Links\Sign Up.url -> hxxp://signup.womanfreebies.com/?aid=1748&nid=2&subid=K-L-WFcom-calm49&transaction_id=10248f52572bfa47d320f96897d971&utm_source=1748_K-L-WFcom-calm49&utm_medium=pub&utm_campaign=US+-+WomanFreebies.com+EXCLUSIVE+-+PRIVATE&view=c
    InternetURL: C:\Users\Kim\Favorites\Links\Welcome, Kimberly – Blackboard Learn.url -> https://keiseruniversity.blackboard...xecute/tabs/tabAction?tab_tab_group_id=_326_1
    InternetURL: C:\Users\Kim\Favorites\Keiser\Account Overview.url -> https://www.continuingeducation.com/Aspx/MyAccount.aspx
    InternetURL: C:\Users\Kim\Favorites\Keiser\Automaticity in Cognition Motivation & Evaluation (ACME) Lab.url -> hxxp://www.yale.edu/acmelab/publications.html
    InternetURL: C:\Users\Kim\Favorites\Keiser\bibme Fast & Easy Bibliography Maker - MLA, APA, Chicago, Turabian - Free.url -> hxxp://www.bibme.org/
    InternetURL: C:\Users\Kim\Favorites\Keiser\Blackboard Learn.url -> https://keiseruniversity.blackboard.com/webapps/portal/frameset.jsp
    InternetURL: C:\Users\Kim\Favorites\Keiser\Blackboard Learn2.url -> https://keisergrad.blackboard.com/webapps/portal/frameset.jsp
    InternetURL: C:\Users\Kim\Favorites\Keiser\Chocolate Peanut Butter Eggs Recipe - Food.com.url -> hxxp://www.food.com/recipe/chocolate-peanut-butter-eggs-497935
    InternetURL: C:\Users\Kim\Favorites\Keiser\Create your account Khan Academy.url -> https://www.khanacademy.org/completesignup?token=d55456eb10d705c78bfe8f4417ac98ffb5d17f3e
    InternetURL: C:\Users\Kim\Favorites\Keiser\Dr. Seuss - 135 quotes.url -> hxxp://www.great-quotes.com/quotes/author/Dr./Seuss
    InternetURL: C:\Users\Kim\Favorites\Keiser\Getting Started — University of Louisville Dental School.url -> hxxp://louisville.edu/dental/patients/howto
    InternetURL: C:\Users\Kim\Favorites\Keiser\GSA Auctions, General Services Administration, Government Site for Auctions.url -> hxxp://gsaauctions.gov/gsaauctions/aucbystate/
    InternetURL: C:\Users\Kim\Favorites\Keiser\How to Set Up a Hypothesis Test Null versus Alternative - For Dummies.url -> hxxp://www.dummies.com/how-to/content/how-to-set-up-a-hypothesis-test-null-versus-altern.html
    InternetURL: C:\Users\Kim\Favorites\Keiser\http--melissaferguson.squarespace.com-storage-Ferguson%20Bargh%202004%20TICS.pdf.url -> hxxp://melissaferguson.squarespace.com/storage/Ferguson%20Bargh%202004%20TICS.pdf
    InternetURL: C:\Users\Kim\Favorites\Keiser\http--www.history.com-shows-vikings-interactives-ultimate-ireland-adventure-sweepstakes.url -> hxxp://www.history.com/shows/vikings/interactives/ultimate-ireland-adventure-sweepstakes?
    InternetURL: C:\Users\Kim\Favorites\Keiser\Hypothesis Testing with Pearson's r.url -> hxxp://www.statisticslectures.com/topics/hypothesispearsonr/
    InternetURL: C:\Users\Kim\Favorites\Keiser\INTRODUCTION TO SOCIAL PSYCHOLOGYReadings Main Elements of Definitions Social Psychology Social Sciences Psychology.url -> hxxp://www.zeepedia.com/read.php?introduction_to_social_psychology_readings_main_elements_of_definitions_social_psychology&b=95&c=1
    InternetURL: C:\Users\Kim\Favorites\Keiser\KASAC Kentucky Adolescent Substance Abuse Consortium.url -> hxxp://kasac.org/
    InternetURL: C:\Users\Kim\Favorites\Keiser\Keiser Portal.url -> https://campusportal.keiseruniversi...u.aspx?ReturnUrl=/Secure/Student/student.aspx
    InternetURL: C:\Users\Kim\Favorites\Keiser\Keiser University - Keiser University Online Bookstore.url -> https://book.keiseruniversity.edu/store/pc/home.asp
    InternetURL: C:\Users\Kim\Favorites\Keiser\Keiser University.url -> https://campusportal.keiseruniversi...u.aspx?ReturnUrl=/Secure/Student/student.aspx
    InternetURL: C:\Users\Kim\Favorites\Keiser\My Courses.url -> https://www.continuingeducation.com/Aspx/MyCoursesInProgress.aspx?nav=InProgress
    InternetURL: C:\Users\Kim\Favorites\Keiser\National Coalition for the Homeless.url -> hxxp://www.nationalhomeless.org/factsheets/Mental_Illness.html
    InternetURL: C:\Users\Kim\Favorites\Keiser\Netflix loads slowly or has bad video quality..url -> https://help.netflix.com/en/node/230
    InternetURL: C:\Users\Kim\Favorites\Keiser\Online Ceus for Social Workers, Psychologists, Counselors & MFTs.url -> hxxp://ce4less.com/
    InternetURL: C:\Users\Kim\Favorites\Keiser\Order Details OnTheHub Save on Software this Back-to-School.url -> https://estore.onthehub.com/WebStor...s.aspx?o=1db939b3-629f-e411-9408-b8ca3a5db7a1
    InternetURL: C:\Users\Kim\Favorites\Keiser\Purdue OWL APA Formatting and Style Guide.url -> https://owl.english.purdue.edu/owl/resource/560/03/
    InternetURL: C:\Users\Kim\Favorites\Keiser\Search Results.url -> hxxp://www.guidestar.org/SearchResults.aspx
    InternetURL: C:\Users\Kim\Favorites\Keiser\Splash Page.url -> hxxp://kesu-verso.auto-graphics.com/WelcomePages/Login.aspx?cid=KESU&lid=KESU&preview=&IlumMode=/
    InternetURL: C:\Users\Kim\Favorites\Keiser\stats Two-Way ANOVA.url -> https://people.richland.edu/james/lecture/m170/ch13-2wy.html
    InternetURL: C:\Users\Kim\Favorites\Keiser\The Cognitive Theory of Social Anxiety Andrew Kukes Foundation for Social Anxiety.url -> hxxp://akfsa.org/research/the-cognitive-theory-of-social-anxiety/
    InternetURL: C:\Users\Kim\Favorites\Keiser\Thesaurus.com Find Synonyms and Antonyms of Words at Thesaurus.com.url -> hxxp://thesaurus.com/
    InternetURL: C:\Users\Kim\Favorites\Keiser\Welcome, Kimberly – Blackboard Learn.url -> https://keiseruniversity.blackboard...xecute/tabs/tabAction?tab_tab_group_id=_326_1
    InternetURL: C:\Users\Kim\Favorites\Keiser\Yourgovernmenthousinggrants.com.url -> hxxp://yourgovernmenthousinggrants.com/?ac=2&slt=8&slr=1&lpt=1&query=Government%20Home%20Loans&afdToken=Cs4BChMIh7nm9fKWxAIVly-BCh3LbwDtGAUgB1CP0fkBUObmigJQ_5LAB1DC8M0JUPWt9g9Qs4P3D1CPjJ4QUM_1vRBQgKabEVDfweURUMTttxVQndWBH1DR2OQlUIfi2iZQnovEKVCzutcvULW61y9Qt7rXL1DCiPlmULnkwmhQv4rulwFQ04rulwFQ1IvulwFQ6pPapAFxib7b5R1Xvw-CARMI77Hn9fKWxAIVhhmBCh2POgBwjQGGIP9PkQHlnFP01M-yTZEBFN3kLtDqZNMSGQBtOoqQZrKt7ohIlyECRqUWXNegKOzCP1c
    InternetURL: C:\Users\Kim\Favorites\Keiser\youtube - Bing.url -> hxxp://www.bing.com/search?q=youtube&form=PRHPCS&pc=AV01&mkt=en-us&refig=42cd6f7d8f4741a3ab953a89f2dfd7d1&ghc=1&qs=MM&pq=you&sc=8-3&sp=1&cvid=42cd6f7d8f4741a3ab953a89f2dfd7d1
    InternetURL: C:\Users\Kim\Favorites\Keiser\YouTube.url -> https://www.youtube.com/
    InternetURL: C:\Users\Kim\Favorites\junk\8 Absurd Myths About Southern Women**Sheryl St. Germain.url -> hxxp://www.huffingtonpost.com/sheryl-st-germain/southern-women-myths-stereotypes_b_4999992.html
    InternetURL: C:\Users\Kim\Favorites\junk\ArchiveGrid Loyal Jones interview, December 8, 1999..url -> hxxp://beta.worldcat.org/archivegrid/collection/data/628312127
    InternetURL: C:\Users\Kim\Favorites\junk\Commonwealth of Kentucky (Merit) - Home.url -> https://sjobs.brassring.com/TGWebHost/home.aspx?SID=^2pU43xyvlUzOg2fxa4cVbwS0bOuL_slp_rhc_Y2/jqcy5QY0axWvZH4SPZVMpmurJLDHFk/f
    InternetURL: C:\Users\Kim\Favorites\junk\Cookbook Fundraising - Everything you need to know.url -> hxxp://www.better-fundraising-ideas.com/cookbook-fundraising.html
    InternetURL: C:\Users\Kim\Favorites\junk\EDU740 Designing and Assessing Courses and Curricula - D22 - Keiser Graduate Schools - Keiser University Online Bookstore.url -> https://book.keiseruniversity.edu/store/pc/viewPrd.asp?idproduct=569&idcategory=6
    InternetURL: C:\Users\Kim\Favorites\junk\FitDay Free Calorie Counter and Diet Journal*Food Search.url -> hxxp://www.fitday.com/fitness/FoodSearch.html?_s_NewSearchString=potato+salad&_s_oi1_oi2=Search&_q_FormName=oi1&_q_FormCheck=725017182
    InternetURL: C:\Users\Kim\Favorites\junk\How to Develop Curriculum eHow.url -> hxxp://www.ehow.com/how_5274806_develop-curriculum.html
    InternetURL: C:\Users\Kim\Favorites\junk\http--www.continuingeducation.com-Aspx-MailCertificate.aspxtestid=15466143&userid=2722465.url -> hxxp://www.continuingeducation.com/Aspx/MailCertificate.aspx?testid=15466143&userid=2722465
    InternetURL: C:\Users\Kim\Favorites\junk\http--www.oswego308.org-assets-5-teaching_and_learning-CurriculumOverview_(3).pdf.url -> hxxp://www.oswego308.org/assets/5/teaching_and_learning/CurriculumOverview_(3).pdf
    InternetURL: C:\Users\Kim\Favorites\junk\http--www.turningpts.org-pdf-Curriculum.pdf.url -> hxxp://www.turningpts.org/pdf/Curriculum.pdf
    InternetURL: C:\Users\Kim\Favorites\junk\Inbox - Native American Personals Meet Native American Men & Women, Native American Personals.url -> hxxp://www.nativeamericanpersonals.com/inbox?re=profile,default,mainmenu#page1&thread10709879
    InternetURL: C:\Users\Kim\Favorites\junk\Kentucky Online Gateway.url -> https://ssoexternal.chfs.ky.gov/adf...kynect.ky.gov/SelfService/AcceptanceofConsent
    InternetURL: C:\Users\Kim\Favorites\junk\LoveAndSeek.com - The Christian Singles Network.url -> hxxp://www.loveandseek.com/v3/messages/?start=1&Folder=Inbox
    InternetURL: C:\Users\Kim\Favorites\junk\My eBay Account My Favorite Nonprofits.url -> https://donations.ebay.com/donation...8c4b5e9cbefe7e9e4eab6f8b9eed9abf3e5d1bdbdfcb0
    InternetURL: C:\Users\Kim\Favorites\junk\My Personal Educational Philosophy Statement.url -> hxxp://www.etni.org.il/etnirag/issue5/nellie_deutsch.htm
    InternetURL: C:\Users\Kim\Favorites\junk\Native American Personals Meet Native American Men & Women.url -> hxxp://www.nativeamericanpersonals.com/?utm_campaign=profile_view_bulk&utm_medium=email&utm_source=membership_premium&utm_content=logo_link&h=YT01NmYyNGN8Yz05MGU4ODc0ZjFiMDZjNTFiM2NlNTU4MDU5OTg1NTA4Mg==
    InternetURL: C:\Users\Kim\Favorites\junk\Online Dating Service, Meet Singles, Matchmaking.url -> hxxp://www.pof.com/inbox.aspx
    InternetURL: C:\Users\Kim\Favorites\junk\Pandora One - Listen to Pandora with No Ads, Higher Quality Audio, and More.url -> hxxp://www.pandora.com/station/play/1422169466451859533
    InternetURL: C:\Users\Kim\Favorites\junk\Saba.url -> https://classes.redcross.org/Saba/Web/Main
    InternetURL: C:\Users\Kim\Favorites\junk\Social Work Continuing Education, Social Work CE ContinuingEducation.com.url -> hxxp://www.continuingeducation.com/social-work
    InternetURL: C:\Users\Kim\Favorites\junk\Taylor County Detention Center Inmates.url -> hxxp://taylorcountydetention.com/taylor_inmatelist.html
    InternetURL: C:\Users\Kim\Favorites\junk\The New Social Worker Online — the professional social work careers magazine.url -> hxxp://www.socialworker.com/
    InternetURL: C:\Users\Kim\Favorites\junk\TUBE+ Watch full length TV Shows and Movies online for free.url -> hxxp://www.tubeplus.me/
    InternetURL: C:\Users\Kim\Favorites\junk\Volunteer Connection - Login Here.url -> https://volunteerconnection.redcross.org/?nd=m_home
    InternetURL: C:\Users\Kim\Favorites\junk\Volunteer Connection.url -> https://volunteerconnection.redcross.org/?nd=m_home
    InternetURL: C:\Users\Kim\Favorites\junk\Watch Movies Online Hulu.url -> hxxp://www.hulu.com/movies
    InternetURL: C:\Users\Kim\Favorites\junk\Where Bias Begins The Truth About Stereotypes Psychology Today.url -> hxxp://www.psychologytoday.com/articles/199805/where-bias-begins-the-truth-about-stereotypes
    InternetURL: C:\Users\Kim\Favorites\junk\Your Textbook Rentals.url -> https://www.amazon.com/gp/rental/your-account
    InternetURL: C:\Users\Kim\Favorites\HP\Accessories.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=hpaccessories&pf=cnnb&locale=en_us&bd=all&c=131
    InternetURL: C:\Users\Kim\Favorites\HP\eBay.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=ebay&pf=cnnb&locale=en_us&bd=all&c=131
    InternetURL: C:\Users\Kim\Favorites\HP\HP Creative Studio.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=activitycenter&pf=cnnb&locale=en_us&bd=all&c=131
    InternetURL: C:\Users\Kim\Favorites\HP\HP Smart Friend.url -> hxxp://js.redirect.hp.com/jumpstation?bd=all&c=134&locale=en_us&pf=cnnb&s=sf_volume_ie_nb&tp=iefavs
    InternetURL: C:\Users\Kim\Favorites\HP\HP Store.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=hpstore&pf=cnnb&locale=en_us&bd=all&c=131
    InternetURL: C:\Users\Kim\Favorites\HP\Printing.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=printing&pf=cnnb&locale=en_us&bd=all&c=131
    svs/rdr?TYPE=4&tp=iefavs&s=savingscenter&pf=cnnb&locale=en_us&bd=all&c=131
    InternetURL: C:\Users\Kim\Favorites\HP\Software and Driver Downloads.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=downloads&pf=cnnb&locale=en_us&bd=all&c=131
    InternetURL: C:\Users\Kim\Favorites\HP\Try HP MyRoom Free.url -> hxxp://redirect.hp.com/svs/rdr?bd=all&tp=iefavs&locale=en_ww&pf=cnnb&c=124&s=hp_myroom&TYPE=4
    InternetURL: C:\Users\Kim\Favorites\HP\Walmart Photo Center.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=wmsnapfish&pf=cnnb&locale=en_us&bd=all&c=104
    InternetURL: C:\Users\Kim\Favorites\HP\WildTangent Games for HP.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=myhpgames&pf=cnnb&locale=en-us&bd=all&c=134
    InternetURL: C:\Users\Kim\Favorites\Dell\Dell Auction.url -> hxxp://www.dellauction.com/
    InternetURL: C:\Users\Kim\Favorites\Dell\Dell Internet Security.url -> hxxp://support.dell.com/support/topics/global.aspx/support/security/security?c=us&cs=19&l=en&s=dhs
    InternetURL: C:\Users\Kim\Favorites\Dell\Dell.url -> hxxp://www.dell.com/
    InternetURL: C:\Users\Kim\Favorites\Dell\Support.Dell.Com.url -> hxxp://support.dell.com/support/index.aspx?c=us&l=en&s=gen
    InternetURL: C:\Users\Kim\Documents\Favorites\HP\Accessories.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=hpaccessories&pf=cnnb&locale=en_us&bd=all&c=131
    InternetURL: C:\Users\Kim\Documents\Favorites\HP\eBay.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=ebay&pf=cnnb&locale=en_us&bd=all&c=131
    InternetURL: C:\Users\Kim\Documents\Favorites\HP\HP Creative Studio.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=activitycenter&pf=cnnb&locale=en_us&bd=all&c=131
    InternetURL: C:\Users\Kim\Documents\Favorites\HP\HP Store.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=hpstore&pf=cnnb&locale=en_us&bd=all&c=131
    InternetURL: C:\Users\Kim\Documents\Favorites\HP\Printing.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=printing&pf=cnnb&locale=en_us&bd=all&c=131
    InternetURL: C:\Users\Kim\Documents\Favorites\HP\Saving Center.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=savingscenter&pf=cnnb&locale=en_us&bd=all&c=131
    InternetURL: C:\Users\Kim\Documents\Favorites\HP\Software and Driver Downloads.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=downloads&pf=cnnb&locale=en_us&bd=all&c=131
    InternetURL: C:\Users\Kim\Documents\Favorites\HP\Try HP MyRoom Free.url -> hxxp://redirect.hp.com/svs/rdr?bd=all&tp=iefavs&locale=en_ww&pf=cnnb&c=124&s=hp_myroom&TYPE=4
    InternetURL: C:\Users\Kim\Documents\Favorites\HP\Walmart Photo Center.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=wmsnapfish&pf=cnnb&locale=en_us&bd=all&c=104
    InternetURL: C:\Users\Kim_2\Favorites\(20) Facebook.url -> https://www.facebook.com/
    InternetURL: C:\Users\Kim_2\Favorites\Bing.url -> hxxp://go.microsoft.com/fwlink/p/?LinkId=255142
    InternetURL: C:\Users\Kim_2\Favorites\Links\HP - See What's Hot.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&s=webslice&tp=iefavbar&pf=cnnb&locale=en_us&bd=HP&c=131
    InternetURL: C:\Users\Kim_2\Favorites\HP\Accessories.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=hpaccessories&pf=cnnb&locale=en_us&bd=all&c=131
    InternetURL: C:\Users\Kim_2\Favorites\HP\eBay.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=ebay&pf=cnnb&locale=en_us&bd=all&c=131
    InternetURL: C:\Users\Kim_2\Favorites\HP\HP Creative Studio.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=activitycenter&pf=cnnb&locale=en_us&bd=all&c=131
    InternetURL: C:\Users\Kim_2\Favorites\HP\HP Store.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=hpstore&pf=cnnb&locale=en_us&bd=all&c=131
    InternetURL: C:\Users\Kim_2\Favorites\HP\Printing.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=printing&pf=cnnb&locale=en_us&bd=all&c=131
    InternetURL: C:\Users\Kim_2\Favorites\HP\Saving Center.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=savingscenter&pf=cnnb&locale=en_us&bd=all&c=131
    InternetURL: C:\Users\Kim_2\Favorites\HP\Software and Driver Downloads.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=downloads&pf=cnnb&locale=en_us&bd=all&c=131
    InternetURL: C:\Users\Kim_2\Favorites\HP\Try HP MyRoom Free.url -> hxxp://redirect.hp.com/svs/rdr?bd=all&tp=iefavs&locale=en_ww&pf=cnnb&c=124&s=hp_myroom&TYPE=4
    InternetURL: C:\Users\Kim_2\Favorites\HP\Walmart Photo Center.url -> hxxp://redirect.hp.com/svs/rdr?TYPE=4&tp=iefavs&s=wmsnapfish&pf=cnnb&locale=en_us&bd=all&c=104
    InternetURL: C:\Users\Public\Documents\SCHOOL\Documents\Documents (2)\EA Games\The Sims 2\Downloads\Sims2Pack Installer\S2PCI Website.url -> 0

    ==================== End of log =============================
     
  11. kimberly1965

    kimberly1965 Thread Starter

    Joined:
    May 5, 2002
    Messages:
    83
    Additional scan result of Farbar Recovery Scan Tool (x64) Version: 11-03-2015
    Ran by Kim at 2015-03-14 19:22:16
    Running from C:\Users\Kim\Desktop\computer
    Boot Mode: Normal
    ==========================================================


    ==================== Security Center ========================

    (If an entry is included in the fixlist, it will be removed.)

    AV: Avira Desktop (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
    AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
    AS: Avira Desktop (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
    AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

    ==================== Installed Programs ======================

    (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

    Adobe Reader XI (11.0.10) (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated)
    Adobe Shockwave Player 11.6 (HKLM-x32\...\Adobe Shockwave Player) (Version: 11.6.6.636 - Adobe Systems, Inc.)
    AMD Catalyst Install Manager (HKLM\...\{3FAEEEBE-48F4-84C1-2B49-96AE73E67E3E}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
    Avira (HKLM-x32\...\{bd538030-07d4-4999-a525-7fafa2483f56}) (Version: 1.1.30.21727 - Avira Operations & Co. KG)
    Avira (x32 Version: 1.1.30.21727 - Avira Operations & Co. KG) Hidden
    Avira Free Antivirus (HKLM-x32\...\Avira AntiVir Desktop) (Version: 15.0.8.650 - Avira)
    Bloom! (HKLM-x32\...\61d3dea51539b1ca7af11a9bfad7ca93) (Version: - GameHouse)
    Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
    Catalyst Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD)
    Cinema Tycoon 2 - Movie Mania (HKLM-x32\...\881c0fd38897ef2ead660905175adbf0) (Version: - GameHouse)
    CyberLink Media Suite 10 (HKLM-x32\...\InstallShield_{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}) (Version: 10.0.2.2114 - CyberLink Corp.)
    CyberLink PhotoDirector (HKLM-x32\...\InstallShield_{4862344A-A39C-4897-ACD4-A1BED5163C5A}) (Version: 2.0.2.3317 - CyberLink Corp.)
    CyberLink PowerDirector 10 (HKLM-x32\...\InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}) (Version: 10.0.2.2126 - CyberLink Corp.)
    CyberLink PowerDVD (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.7.4528 - CyberLink Corp.)
    D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
    Energy Star (HKLM-x32\...\{FC0ADA4D-8FA5-4452-8AFF-F0A0BAC97EF7}) (Version: 1.0.9 - Hewlett-Packard Company)
    Google Update Helper (x32 Version: 1.3.21.169 - Google Inc.) Hidden
    Hidden Object - Home Makeover 3 (HKLM-x32\...\64de423a8f389c03c441963cbc8044f8) (Version: - GameHouse)
    Hotel Mogul - Las Vegas (HKLM-x32\...\caae12950a181c8df29fbf1fdab69cee) (Version: - GameHouse)
    Hotel Mogul (HKLM-x32\...\20732ed362cd9b5ee1fbfad19f7f3b13) (Version: - GameHouse)
    HP 3D DriveGuard (HKLM\...\{6821D775-9303-46DD-977A-2D97CA18B054}) (Version: 4.2.8.1 - Hewlett-Packard Company)
    HP Connected Remote (HKLM-x32\...\{F243A34B-AB7F-4065-B770-B85B767C247C}) (Version: 1.0.1218 - Hewlett-Packard)
    HP CoolSense (HKLM-x32\...\{8704FEEF-A6A8-4E7E-B124-BD6122C66E2C}) (Version: 2.10.42 - Hewlett-Packard Company)
    HP MyRoom (HKLM-x32\...\{9C35EDE5-4B0F-45E7-A438-314BA889948E}) (Version: 9.0.0.0 - Hewlett-Packard Company)
    HP Quick Launch (HKLM-x32\...\{E5823036-6F09-4D0A-B05C-E2BAA129288A}) (Version: 3.0.6 - Hewlett-Packard Company)
    HP Registration Service (HKLM\...\{C2E428EB-116E-41C0-9E84-B22DE9CCA42F}) (Version: 1.1.6232.4245 - Hewlett-Packard)
    HP Utility Center (HKLM-x32\...\{0C57987A-A03A-4B95-A309-D23F78F406CA}) (Version: 1.0.8 - Hewlett-Packard)
    HP Wireless Button Driver (HKLM-x32\...\{941DE69D-6CEE-4171-8F1F-3D7E352AA498}) (Version: 1.0.6.1 - Hewlett-Packard Company)
    HydraVision (x32 Version: 4.2.252.0 - Advanced Micro Devices, Inc.) Hidden
    IBM SPSS Statistics 22 (HKLM\...\{104875A1-D083-4A34-BC4F-3F635B7F8EF7}) (Version: 22.0.0.0 - IBM Corp)
    IDT Audio (HKLM-x32\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6425.0 - IDT)
    Intel(R) Driver Update Utility 2.0 (x32 Version: 2.0.0.29 - Intel) Hidden
    Intel® Driver Update Utility (HKLM-x32\...\{8409c4f7-2340-4933-a304-5d37db4fb48b}) (Version: 2.0.0.29 - Intel)
    Java 8 Update 31 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation)
    Java 8 Update 40 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218040F0}) (Version: 8.0.400 - Oracle Corporation)
    Malwarebytes Anti-Malware version 2.0.4.1028 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation)
    Manor Memoirs (HKLM-x32\...\d212a241025ce16589c54cf231a3b795) (Version: - GameHouse)
    Microsoft Office 365 - en-us (HKLM\...\O365HomePremRetail - en-us) (Version: 15.0.4693.1002 - Microsoft Corporation)
    Microsoft OneDrive (HKU\S-1-5-21-3303695090-1817798212-3423905771-1002\...\OneDriveSetup.exe) (Version: 17.3.1171.0714 - Microsoft Corporation)
    Microsoft OneDrive (HKU\S-1-5-21-3303695090-1817798212-3423905771-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\OneDriveSetup.exe) (Version: 17.3.1171.0714 - Microsoft Corporation)
    Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
    Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
    Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
    Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
    Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
    Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
    Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
    Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
    Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
    Movie Maker (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
    Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4693.1002 - Microsoft Corporation) Hidden
    Office 15 Click-to-Run Licensing Component (Version: 15.0.4693.1002 - Microsoft Corporation) Hidden
    Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4693.1002 - Microsoft Corporation) Hidden
    Qualcomm Atheros Driver Installation Program (HKLM-x32\...\{C3A32068-8AB1-4327-BB16-BED9C6219DC7}) (Version: 10.0 - Qualcomm Atheros)
    Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.3.730.2012 - Realtek)
    Realtek PCIE Card Reader (HKLM-x32\...\{C1594429-8296-4652-BF54-9DBE4932A44C}) (Version: 6.2.8400.29031 - Realtek Semiconductor Corp.)
    RoboForm 7-9-8-5 (All Users) (HKLM-x32\...\AI RoboForm) (Version: 7-9-8-5 - Siber Systems)
    Ski Resort Mogul (HKLM-x32\...\ef3b9852328aecbb1fbd148c4d2c51d1) (Version: - GameHouse)
    Summer Resort Mogul (HKLM-x32\...\371180b2310b155f6411334ef56199bc) (Version: - GameHouse)
    SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 6.0.1170 - SUPERAntiSpyware.com)
    swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
    Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 16.2.10.12 - Synaptics Incorporated)
    Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3503.0728 - Microsoft Corporation)
    WinZip 19.0 (HKLM\...\{CD95F661-A5C4-44F5-A6AA-ECDD91C240E7}) (Version: 19.0.11294 - WinZip Computing, S.L. )

    ==================== Custom CLSID (selected items): ==========================

    (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

    CustomCLSID: HKU\S-1-5-21-3303695090-1817798212-3423905771-1002_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Kim\AppData\Local\Microsoft\SkyDrive\17.3.1171.0714\amd64\SkyDriveShell64.dll (Microsoft Corporation)
    CustomCLSID: HKU\S-1-5-21-3303695090-1817798212-3423905771-1002_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Kim\AppData\Local\Microsoft\SkyDrive\17.3.1171.0714\amd64\SkyDriveShell64.dll (Microsoft Corporation)
    CustomCLSID: HKU\S-1-5-21-3303695090-1817798212-3423905771-1002_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\Kim\AppData\Local\Microsoft\SkyDrive\17.3.1171.0714\amd64\SkyDriveShell64.dll (Microsoft Corporation)
    CustomCLSID: HKU\S-1-5-21-3303695090-1817798212-3423905771-1002_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Kim\AppData\Local\Microsoft\SkyDrive\17.3.1171.0714\amd64\SkyDriveShell64.dll (Microsoft Corporation)
    CustomCLSID: HKU\S-1-5-21-3303695090-1817798212-3423905771-1002_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Kim\AppData\Local\Microsoft\SkyDrive\17.3.1171.0714\amd64\FileSyncApi64.dll (Microsoft Corporation)

    ==================== Restore Points =========================

    07-03-2015 20:02:23 restore
    12-03-2015 18:07:40 Restore Operation
    14-03-2015 11:01:51 avast! antivirus system restore point

    ==================== Hosts content: ==========================

    (If needed Hosts: directive could be included in the fixlist to reset Hosts.)

    2013-08-22 09:25 - 2013-08-22 09:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts

    ==================== Scheduled Tasks (whitelisted) =============

    (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

    Task: {134D80A5-20AD-41B1-963A-B997C8C80715} - System32\Tasks\ASC8_SkipUac_Kim => C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASC.exe
    Task: {14DB5FA4-3FCE-4767-8ADB-91F53B750F82} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-03-07] (Microsoft Corporation)
    Task: {27F531BC-A265-42DF-84C3-881C6C72900D} - System32\Tasks\Open URL by RoboForm => Rundll32.exe url.dll,FileProtocolHandler "http://www.roboform.com/test-pass.html?aaa=KICMGMNJLMLMJJIMKJOJCNOJKJKJJMCNLMOJIMKMCNOJLMIMGMCNNJNJHMHMJMNMHMMMOMKMLMPMJNJICMIMCNGMCNHMFMOMPMCNPMCNGMNMPMPMFMJMCNNMCNGMNMPMPMCNNMJNPICMLMFMEKMICNJJCKFMPMJNHICMEKMICNJJCKJNBJCMELGJCJJNKJCMJNNICMJNDJCMKJBJJNMJCMOMFMJMNMFMPMJNFICMGJLJKJBJLIGJLIGJKJMIBNKJHIKJ"
    Task: {29BF83DA-8F49-421D-9001-4DE0B89D2688} - System32\Tasks\Driver Booster SkipUAC (Kim) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe
    Task: {2D370971-7563-4AB5-B930-A82D0BCCFA52} - System32\Tasks\Synaptics TouchPad Enhancements => \Program Files\Synaptics\SynTP\SynTPEnh.exe [2012-08-24] (Synaptics Incorporated)
    Task: {3670B281-47E2-4176-AE48-FBA62298D4D9} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2015-02-21] (Microsoft Corporation)
    Task: {43195153-1E26-4600-A7B5-B37B22889774} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2014-12-30] (Microsoft Corporation)
    Task: {4946F395-9E69-4405-BFAF-888F72483295} - System32\Tasks\{973AE1C8-B6AA-400F-B1ED-41B8E3220234} => pcalua.exe -a C:\Users\Kim\AppData\Local\ArcadeParlor\removal.exe
    Task: {4B37DEB6-A5BD-4084-BCEE-25FCB8562459} - System32\Tasks\SUPERAntiSpyware Scheduled Task 93d9c2e7-1df1-4930-88b1-0cee64e3e403 => C:\Program Files\SUPERAntiSpyware\SASTask.exe [2013-11-07] (SUPERAdBlocker.com)
    Task: {6A29640D-2CE4-4A21-906A-87FB86B3EE2F} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated)
    Task: {8BF5AF86-91CD-44B8-A75A-F03CD2DAFFF0} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2014-12-30] (Microsoft Corporation)
    Task: {8FF58B62-A886-4EB6-8EF7-04A4D93D280E} - System32\Tasks\SUPERAntiSpyware Scheduled Task cfb32e7b-aaab-4a89-b196-4f4fb96ff71e => C:\Program Files\SUPERAntiSpyware\SASTask.exe [2013-11-07] (SUPERAdBlocker.com)
    Task: {A107AE30-C61D-4EAC-9D5D-E1FE79657C8A} - System32\Tasks\ASC8_PerformanceMonitor => C:\Program Files (x86)\IObit\Advanced SystemCare 8\Monitor.exe
    Task: {B1AD81C4-D1A9-41F6-A4A8-74C231AD5651} - System32\Tasks\Run RoboForm TaskBar Icon => C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe [2015-02-21] (Siber Systems)
    Task: {D802C2A5-6004-49CB-884F-B3B3C171F552} - System32\Tasks\Uninstaller_SkipUac_Kim => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe
    Task: {EF282E3D-823C-4F12-BD4F-A3AF432C488A} - System32\Tasks\Microsoft Office 15 Sync Maintenance for KIMSOFFICE-Kim Kimsoffice => C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe [2015-02-21] (Microsoft Corporation)
    Task: C:\WINDOWS\Tasks\ASC8_SkipUac_Kim.job => C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASC.exe
    Task: C:\WINDOWS\Tasks\SUPERAntiSpyware Scheduled Task 93d9c2e7-1df1-4930-88b1-0cee64e3e403.job => C:\Program Files\SUPERAntiSpyware\SASTask.exedC:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
    Task: C:\WINDOWS\Tasks\SUPERAntiSpyware Scheduled Task cfb32e7b-aaab-4a89-b196-4f4fb96ff71e.job => C:\Program Files\SUPERAntiSpyware\SASTask.exedC:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
    Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    Task: C:\WINDOWS\Tasks\Uninstaller_SkipUac_Kim.job => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe

    ==================== Loaded Modules (whitelisted) ==============

    2014-07-04 22:33 - 2014-07-04 22:33 - 00127488 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll
    2015-02-21 10:23 - 2014-05-20 12:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll
    2015-02-21 16:47 - 2015-02-21 19:09 - 08898728 _____ () C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\1033\GrooveIntlResource.dll
    2014-07-04 22:33 - 2014-07-04 22:33 - 00102400 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll
    2015-02-21 10:24 - 2015-02-21 17:12 - 00316576 _____ () C:\Program Files\Microsoft Office 15\root\office15\AppVIsvStream32.dll
    2012-09-23 21:43 - 2012-09-23 21:43 - 00313992 _____ () C:\Program Files (x86)\Adobe\Reader 11.0\Reader\sqlite.dll
    2014-12-03 02:31 - 2014-12-03 02:31 - 14588632 _____ () C:\Program Files (x86)\Adobe\Reader 11.0\Reader\NPSWF32.dll

    ==================== Alternate Data Streams (whitelisted) =========

    (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

    AlternateDataStreams: C:\ProgramData\Temp:2CB9631F
    AlternateDataStreams: C:\ProgramData\Temp:A41FEAA2
    AlternateDataStreams: C:\ProgramData\Temp:F43B7E8F
    AlternateDataStreams: C:\Users\Kim\OneDrive:ms-properties
    AlternateDataStreams: C:\Users\Kim\OneDrive.old:ms-properties
    AlternateDataStreams: C:\Users\Kim_2\OneDrive:ms-properties

    ==================== Safe Mode (whitelisted) ===================

    (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


    ==================== EXE Association (whitelisted) ===============

    (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


    ==================== Other Areas ============================

    (Currently there is no automatic fix for this section.)

    HKU\S-1-5-21-3303695090-1817798212-3423905771-1002\Control Panel\Desktop\\Wallpaper -> C:\Users\Kim\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\photo gallery wallpaper.jpg
    HKU\S-1-5-21-3303695090-1817798212-3423905771-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Control Panel\Desktop\\Wallpaper -> C:\Users\Kim\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\photo gallery wallpaper.jpg
    HKU\S-1-5-21-3303695090-1817798212-3423905771-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg
    DNS Servers: 192.168.254.254

    ==================== MSCONFIG/TASK MANAGER disabled items ==

    (Currently there is no automatic fix for this section.)


    ==================== Accounts: =============================

    Administrator (S-1-5-21-3303695090-1817798212-3423905771-500 - Administrator - Disabled) => C:\Users\Administrator
    Guest (S-1-5-21-3303695090-1817798212-3423905771-501 - Limited - Enabled)
    HomeGroupUser$ (S-1-5-21-3303695090-1817798212-3423905771-1007 - Limited - Enabled)
    Kim (S-1-5-21-3303695090-1817798212-3423905771-1002 - Administrator - Enabled) => C:\Users\Kim
    Kim_2 (S-1-5-21-3303695090-1817798212-3423905771-1009 - Limited - Enabled) => C:\Users\Kim_2

    ==================== Faulty Device Manager Devices =============


    ==================== Event log errors: =========================

    Application errors:
    ==================
    Error: (03/14/2015 07:24:41 PM) (Source: Application Error) (EventID: 1000) (User: )
    Description: Faulting application name: HPConnectedRemoteService.exe, version: 1.0.1218.0, time stamp: 0x5078a573
    Faulting module name: KERNELBASE.dll, version: 6.3.9600.17415, time stamp: 0x54505737
    Exception code: 0xe0434352
    Fault offset: 0x0000000000008b9c
    Faulting process id: 0x164c
    Faulting application start time: 0xHPConnectedRemoteService.exe0
    Faulting application path: HPConnectedRemoteService.exe1
    Faulting module path: HPConnectedRemoteService.exe2
    Report Id: HPConnectedRemoteService.exe3
    Faulting package full name: HPConnectedRemoteService.exe4
    Faulting package-relative application ID: HPConnectedRemoteService.exe5

    Error: (03/14/2015 07:24:41 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
    Description: Application: HPConnectedRemoteService.exe
    Framework Version: v4.0.30319
    Description: The process was terminated due to an unhandled exception.
    Exception Info: System.InvalidOperationException
    Stack:
    at System.ServiceModel.Security.SecurityUtils.GetCertificateFromStoreCore(System.Security.Cryptography.X509Certificates.StoreName, System.Security.Cryptography.X509Certificates.StoreLocation, System.Security.Cryptography.X509Certificates.X509FindType, System.Object, System.ServiceModel.EndpointAddress, Boolean)
    at System.ServiceModel.Security.X509CertificateRecipientServiceCredential.SetCertificate(System.Security.Cryptography.X509Certificates.StoreLocation, System.Security.Cryptography.X509Certificates.StoreName, System.Security.Cryptography.X509Certificates.X509FindType, System.Object)
    at SwitchBoard.Utils.WCFServiceHostUtil.setupService(System.Object, System.Type, Int32, Boolean)
    at SwitchBoard.SwitchBoardService.RunService()
    at System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
    at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
    at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
    at System.Threading.ThreadHelper.ThreadStart()

    Error: (03/14/2015 07:24:17 PM) (Source: Application Error) (EventID: 1000) (User: )
    Description: Faulting application name: HPConnectedRemoteService.exe, version: 1.0.1218.0, time stamp: 0x5078a573
    Faulting module name: KERNELBASE.dll, version: 6.3.9600.17415, time stamp: 0x54505737
    Exception code: 0xe0434352
    Fault offset: 0x0000000000008b9c
    Faulting process id: 0xd6c
    Faulting application start time: 0xHPConnectedRemoteService.exe0
    Faulting application path: HPConnectedRemoteService.exe1
    Faulting module path: HPConnectedRemoteService.exe2
    Report Id: HPConnectedRemoteService.exe3
    Faulting package full name: HPConnectedRemoteService.exe4
    Faulting package-relative application ID: HPConnectedRemoteService.exe5

    Error: (03/14/2015 07:24:16 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
    Description: Application: HPConnectedRemoteService.exe
    Framework Version: v4.0.30319
    Description: The process was terminated due to an unhandled exception.
    Exception Info: System.InvalidOperationException
    Stack:
    at System.ServiceModel.Security.SecurityUtils.GetCertificateFromStoreCore(System.Security.Cryptography.X509Certificates.StoreName, System.Security.Cryptography.X509Certificates.StoreLocation, System.Security.Cryptography.X509Certificates.X509FindType, System.Object, System.ServiceModel.EndpointAddress, Boolean)
    at System.ServiceModel.Security.X509CertificateRecipientServiceCredential.SetCertificate(System.Security.Cryptography.X509Certificates.StoreLocation, System.Security.Cryptography.X509Certificates.StoreName, System.Security.Cryptography.X509Certificates.X509FindType, System.Object)
    at SwitchBoard.Utils.WCFServiceHostUtil.setupService(System.Object, System.Type, Int32, Boolean)
    at SwitchBoard.SwitchBoardService.RunService()
    at System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
    at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
    at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
    at System.Threading.ThreadHelper.ThreadStart()

    Error: (03/14/2015 07:23:52 PM) (Source: Application Error) (EventID: 1000) (User: )
    Description: Faulting application name: HPConnectedRemoteService.exe, version: 1.0.1218.0, time stamp: 0x5078a573
    Faulting module name: KERNELBASE.dll, version: 6.3.9600.17415, time stamp: 0x54505737
    Exception code: 0xe0434352
    Fault offset: 0x0000000000008b9c
    Faulting process id: 0x1d2c
    Faulting application start time: 0xHPConnectedRemoteService.exe0
    Faulting application path: HPConnectedRemoteService.exe1
    Faulting module path: HPConnectedRemoteService.exe2
    Report Id: HPConnectedRemoteService.exe3
    Faulting package full name: HPConnectedRemoteService.exe4
    Faulting package-relative application ID: HPConnectedRemoteService.exe5

    Error: (03/14/2015 07:23:52 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
    Description: Application: HPConnectedRemoteService.exe
    Framework Version: v4.0.30319
    Description: The process was terminated due to an unhandled exception.
    Exception Info: System.InvalidOperationException
    Stack:
    at System.ServiceModel.Security.SecurityUtils.GetCertificateFromStoreCore(System.Security.Cryptography.X509Certificates.StoreName, System.Security.Cryptography.X509Certificates.StoreLocation, System.Security.Cryptography.X509Certificates.X509FindType, System.Object, System.ServiceModel.EndpointAddress, Boolean)
    at System.ServiceModel.Security.X509CertificateRecipientServiceCredential.SetCertificate(System.Security.Cryptography.X509Certificates.StoreLocation, System.Security.Cryptography.X509Certificates.StoreName, System.Security.Cryptography.X509Certificates.X509FindType, System.Object)
    at SwitchBoard.Utils.WCFServiceHostUtil.setupService(System.Object, System.Type, Int32, Boolean)
    at SwitchBoard.SwitchBoardService.RunService()
    at System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
    at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
    at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
    at System.Threading.ThreadHelper.ThreadStart()

    Error: (03/14/2015 07:23:33 PM) (Source: Application Error) (EventID: 1000) (User: )
    Description: Faulting application name: HPConnectedRemoteService.exe, version: 1.0.1218.0, time stamp: 0x5078a573
    Faulting module name: KERNELBASE.dll, version: 6.3.9600.17415, time stamp: 0x54505737
    Exception code: 0xe0434352
    Fault offset: 0x0000000000008b9c
    Faulting process id: 0x18a4
    Faulting application start time: 0xHPConnectedRemoteService.exe0
    Faulting application path: HPConnectedRemoteService.exe1
    Faulting module path: HPConnectedRemoteService.exe2
    Report Id: HPConnectedRemoteService.exe3
    Faulting package full name: HPConnectedRemoteService.exe4
    Faulting package-relative application ID: HPConnectedRemoteService.exe5

    Error: (03/14/2015 07:23:33 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
    Description: Application: HPConnectedRemoteService.exe
    Framework Version: v4.0.30319
    Description: The process was terminated due to an unhandled exception.
    Exception Info: System.InvalidOperationException
    Stack:
    at System.ServiceModel.Security.SecurityUtils.GetCertificateFromStoreCore(System.Security.Cryptography.X509Certificates.StoreName, System.Security.Cryptography.X509Certificates.StoreLocation, System.Security.Cryptography.X509Certificates.X509FindType, System.Object, System.ServiceModel.EndpointAddress, Boolean)
    at System.ServiceModel.Security.X509CertificateRecipientServiceCredential.SetCertificate(System.Security.Cryptography.X509Certificates.StoreLocation, System.Security.Cryptography.X509Certificates.StoreName, System.Security.Cryptography.X509Certificates.X509FindType, System.Object)
    at SwitchBoard.Utils.WCFServiceHostUtil.setupService(System.Object, System.Type, Int32, Boolean)
    at SwitchBoard.SwitchBoardService.RunService()
    at System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
    at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
    at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
    at System.Threading.ThreadHelper.ThreadStart()

    Error: (03/14/2015 07:23:14 PM) (Source: Application Error) (EventID: 1000) (User: )
    Description: Faulting application name: HPConnectedRemoteService.exe, version: 1.0.1218.0, time stamp: 0x5078a573
    Faulting module name: KERNELBASE.dll, version: 6.3.9600.17415, time stamp: 0x54505737
    Exception code: 0xe0434352
    Fault offset: 0x0000000000008b9c
    Faulting process id: 0x2424
    Faulting application start time: 0xHPConnectedRemoteService.exe0
    Faulting application path: HPConnectedRemoteService.exe1
    Faulting module path: HPConnectedRemoteService.exe2
    Report Id: HPConnectedRemoteService.exe3
    Faulting package full name: HPConnectedRemoteService.exe4
    Faulting package-relative application ID: HPConnectedRemoteService.exe5

    Error: (03/14/2015 07:23:14 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
    Description: Application: HPConnectedRemoteService.exe
    Framework Version: v4.0.30319
    Description: The process was terminated due to an unhandled exception.
    Exception Info: System.InvalidOperationException
    Stack:
    at System.ServiceModel.Security.SecurityUtils.GetCertificateFromStoreCore(System.Security.Cryptography.X509Certificates.StoreName, System.Security.Cryptography.X509Certificates.StoreLocation, System.Security.Cryptography.X509Certificates.X509FindType, System.Object, System.ServiceModel.EndpointAddress, Boolean)
    at System.ServiceModel.Security.X509CertificateRecipientServiceCredential.SetCertificate(System.Security.Cryptography.X509Certificates.StoreLocation, System.Security.Cryptography.X509Certificates.StoreName, System.Security.Cryptography.X509Certificates.X509FindType, System.Object)
    at SwitchBoard.Utils.WCFServiceHostUtil.setupService(System.Object, System.Type, Int32, Boolean)
    at SwitchBoard.SwitchBoardService.RunService()
    at System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
    at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
    at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
    at System.Threading.ThreadHelper.ThreadStart()


    System errors:
    =============
    Error: (03/14/2015 07:24:42 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
    Description: The HP Connected Remote Service service terminated unexpectedly. It has done this 1845 time(s). The following corrective action will be taken in 5000 milliseconds: Restart the service.

    Error: (03/14/2015 07:24:18 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
    Description: The HP Connected Remote Service service terminated unexpectedly. It has done this 1844 time(s). The following corrective action will be taken in 5000 milliseconds: Restart the service.

    Error: (03/14/2015 07:23:56 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
    Description: The HP Connected Remote Service service terminated unexpectedly. It has done this 1843 time(s). The following corrective action will be taken in 5000 milliseconds: Restart the service.

    Error: (03/14/2015 07:23:37 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
    Description: The HP Connected Remote Service service terminated unexpectedly. It has done this 1842 time(s). The following corrective action will be taken in 5000 milliseconds: Restart the service.

    Error: (03/14/2015 07:23:19 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
    Description: The HP Connected Remote Service service terminated unexpectedly. It has done this 1841 time(s). The following corrective action will be taken in 5000 milliseconds: Restart the service.

    Error: (03/14/2015 07:22:59 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
    Description: The HP Connected Remote Service service terminated unexpectedly. It has done this 1840 time(s). The following corrective action will be taken in 5000 milliseconds: Restart the service.

    Error: (03/14/2015 07:22:43 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
    Description: The HP Connected Remote Service service terminated unexpectedly. It has done this 1839 time(s). The following corrective action will be taken in 5000 milliseconds: Restart the service.

    Error: (03/14/2015 07:22:28 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
    Description: The HP Connected Remote Service service terminated unexpectedly. It has done this 1838 time(s). The following corrective action will be taken in 5000 milliseconds: Restart the service.

    Error: (03/14/2015 07:22:14 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
    Description: The HP Connected Remote Service service terminated unexpectedly. It has done this 1837 time(s). The following corrective action will be taken in 5000 milliseconds: Restart the service.

    Error: (03/14/2015 07:21:57 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
    Description: The HP Connected Remote Service service terminated unexpectedly. It has done this 1836 time(s). The following corrective action will be taken in 5000 milliseconds: Restart the service.


    Microsoft Office Sessions:
    =========================
    Error: (03/14/2015 07:24:41 PM) (Source: Application Error) (EventID: 1000) (User: )
    Description: HPConnectedRemoteService.exe1.0.1218.05078a573KERNELBASE.dll6.3.9600.1741554505737e04343520000000000008b9c164c01d05eae01799f5fC:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteService.exeC:\WINDOWS\system32\KERNELBASE.dll49c2c48d-caa1-11e4-beba-38eaa7f7d4ae

    Error: (03/14/2015 07:24:41 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
    Description: Application: HPConnectedRemoteService.exe
    Framework Version: v4.0.30319
    Description: The process was terminated due to an unhandled exception.
    Exception Info: System.InvalidOperationException
    Stack:
    at System.ServiceModel.Security.SecurityUtils.GetCertificateFromStoreCore(System.Security.Cryptography.X509Certificates.StoreName, System.Security.Cryptography.X509Certificates.StoreLocation, System.Security.Cryptography.X509Certificates.X509FindType, System.Object, System.ServiceModel.EndpointAddress, Boolean)
    at System.ServiceModel.Security.X509CertificateRecipientServiceCredential.SetCertificate(System.Security.Cryptography.X509Certificates.StoreLocation, System.Security.Cryptography.X509Certificates.StoreName, System.Security.Cryptography.X509Certificates.X509FindType, System.Object)
    at SwitchBoard.Utils.WCFServiceHostUtil.setupService(System.Object, System.Type, Int32, Boolean)
    at SwitchBoard.SwitchBoardService.RunService()
    at System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
    at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
    at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
    at System.Threading.ThreadHelper.ThreadStart()

    Error: (03/14/2015 07:24:17 PM) (Source: Application Error) (EventID: 1000) (User: )
    Description: HPConnectedRemoteService.exe1.0.1218.05078a573KERNELBASE.dll6.3.9600.1741554505737e04343520000000000008b9cd6c01d05eadf48b52fcC:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteService.exeC:\WINDOWS\system32\KERNELBASE.dll3b53e48e-caa1-11e4-beba-38eaa7f7d4ae

    Error: (03/14/2015 07:24:16 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
    Description: Application: HPConnectedRemoteService.exe
    Framework Version: v4.0.30319
    Description: The process was terminated due to an unhandled exception.
    Exception Info: System.InvalidOperationException
    Stack:
    at System.ServiceModel.Security.SecurityUtils.GetCertificateFromStoreCore(System.Security.Cryptography.X509Certificates.StoreName, System.Security.Cryptography.X509Certificates.StoreLocation, System.Security.Cryptography.X509Certificates.X509FindType, System.Object, System.ServiceModel.EndpointAddress, Boolean)
    at System.ServiceModel.Security.X509CertificateRecipientServiceCredential.SetCertificate(System.Security.Cryptography.X509Certificates.StoreLocation, System.Security.Cryptography.X509Certificates.StoreName, System.Security.Cryptography.X509Certificates.X509FindType, System.Object)
    at SwitchBoard.Utils.WCFServiceHostUtil.setupService(System.Object, System.Type, Int32, Boolean)
    at SwitchBoard.SwitchBoardService.RunService()
    at System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
    at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
    at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
    at System.Threading.ThreadHelper.ThreadStart()

    Error: (03/14/2015 07:23:52 PM) (Source: Application Error) (EventID: 1000) (User: )
    Description: HPConnectedRemoteService.exe1.0.1218.05078a573KERNELBASE.dll6.3.9600.1741554505737e04343520000000000008b9c1d2c01d05eade8b966d0C:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteService.exeC:\WINDOWS\system32\KERNELBASE.dll2cafa9d8-caa1-11e4-beba-38eaa7f7d4ae

    Error: (03/14/2015 07:23:52 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
    Description: Application: HPConnectedRemoteService.exe
    Framework Version: v4.0.30319
    Description: The process was terminated due to an unhandled exception.
    Exception Info: System.InvalidOperationException
    Stack:
    at System.ServiceModel.Security.SecurityUtils.GetCertificateFromStoreCore(System.Security.Cryptography.X509Certificates.StoreName, System.Security.Cryptography.X509Certificates.StoreLocation, System.Security.Cryptography.X509Certificates.X509FindType, System.Object, System.ServiceModel.EndpointAddress, Boolean)
    at System.ServiceModel.Security.X509CertificateRecipientServiceCredential.SetCertificate(System.Security.Cryptography.X509Certificates.StoreLocation, System.Security.Cryptography.X509Certificates.StoreName, System.Security.Cryptography.X509Certificates.X509FindType, System.Object)
    at SwitchBoard.Utils.WCFServiceHostUtil.setupService(System.Object, System.Type, Int32, Boolean)
    at SwitchBoard.SwitchBoardService.RunService()
    at System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
    at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
    at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
    at System.Threading.ThreadHelper.ThreadStart()

    Error: (03/14/2015 07:23:33 PM) (Source: Application Error) (EventID: 1000) (User: )
    Description: HPConnectedRemoteService.exe1.0.1218.05078a573KERNELBASE.dll6.3.9600.1741554505737e04343520000000000008b9c18a401d05eadde52f7b3C:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteService.exeC:\WINDOWS\system32\KERNELBASE.dll2159b7fe-caa1-11e4-beba-38eaa7f7d4ae

    Error: (03/14/2015 07:23:33 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
    Description: Application: HPConnectedRemoteService.exe
    Framework Version: v4.0.30319
    Description: The process was terminated due to an unhandled exception.
    Exception Info: System.InvalidOperationException
    Stack:
    at System.ServiceModel.Security.SecurityUtils.GetCertificateFromStoreCore(System.Security.Cryptography.X509Certificates.StoreName, System.Security.Cryptography.X509Certificates.StoreLocation, System.Security.Cryptography.X509Certificates.X509FindType, System.Object, System.ServiceModel.EndpointAddress, Boolean)
    at System.ServiceModel.Security.X509CertificateRecipientServiceCredential.SetCertificate(System.Security.Cryptography.X509Certificates.StoreLocation, System.Security.Cryptography.X509Certificates.StoreName, System.Security.Cryptography.X509Certificates.X509FindType, System.Object)
    at SwitchBoard.Utils.WCFServiceHostUtil.setupService(System.Object, System.Type, Int32, Boolean)
    at SwitchBoard.SwitchBoardService.RunService()
    at System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
    at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
    at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
    at System.Threading.ThreadHelper.ThreadStart()

    Error: (03/14/2015 07:23:14 PM) (Source: Application Error) (EventID: 1000) (User: )
    Description: HPConnectedRemoteService.exe1.0.1218.05078a573KERNELBASE.dll6.3.9600.1741554505737e04343520000000000008b9c242401d05eadd2237e61C:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteService.exeC:\WINDOWS\system32\KERNELBASE.dll16339631-caa1-11e4-beba-38eaa7f7d4ae

    Error: (03/14/2015 07:23:14 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
    Description: Application: HPConnectedRemoteService.exe
    Framework Version: v4.0.30319
    Description: The process was terminated due to an unhandled exception.
    Exception Info: System.InvalidOperationException
    Stack:
    at System.ServiceModel.Security.SecurityUtils.GetCertificateFromStoreCore(System.Security.Cryptography.X509Certificates.StoreName, System.Security.Cryptography.X509Certificates.StoreLocation, System.Security.Cryptography.X509Certificates.X509FindType, System.Object, System.ServiceModel.EndpointAddress, Boolean)
    at System.ServiceModel.Security.X509CertificateRecipientServiceCredential.SetCertificate(System.Security.Cryptography.X509Certificates.StoreLocation, System.Security.Cryptography.X509Certificates.StoreName, System.Security.Cryptography.X509Certificates.X509FindType, System.Object)
    at SwitchBoard.Utils.WCFServiceHostUtil.setupService(System.Object, System.Type, Int32, Boolean)
    at SwitchBoard.SwitchBoardService.RunService()
    at System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
    at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
    at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
    at System.Threading.ThreadHelper.ThreadStart()


    ==================== Memory info ===========================

    Processor: AMD A6-4455M APU with Radeon(tm) HD Graphics
    Percentage of memory in use: 47%
    Total physical RAM: 5602.26 MB
    Available physical RAM: 2930.86 MB
    Total Pagefile: 11234.26 MB
    Available Pagefile: 7588.59 MB
    Total Virtual: 131072 MB
    Available Virtual: 131071.81 MB

    ==================== Drives ================================

    Drive c: () (Fixed) (Total:440.46 GB) (Free:262.79 GB) NTFS ==>[System with boot components (obtained from reading drive)]
    Drive d: (RECOVERY) (Fixed) (Total:24.09 GB) (Free:23.99 GB) NTFS

    ==================== MBR & Partition Table ==================

    ========================================================
    Disk: 0 (Size: 465.8 GB) (Disk ID: 0A1E55B0)

    Partition: GPT Partition Type.

    ==================== End Of Log ============================
     
  12. kimberly1965

    kimberly1965 Thread Starter

    Joined:
    May 5, 2002
    Messages:
    83
    Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-03-2015
    Ran by Kim (administrator) on KIMSOFFICE on 14-03-2015 19:14:35
    Running from C:\Users\Kim\Desktop\computer
    Loaded Profiles: Kim & (Available profiles: Kim & Kim_2 & Administrator)
    Platform: Windows 8.1 (X64) OS Language: English (United States)
    Internet Explorer Version 11 (Default browser: IE)
    Boot Mode: Normal
    Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

    ==================== Processes (Whitelisted) =================

    (If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

    (AMD) C:\Windows\System32\atiesrxx.exe
    (AMD) C:\Windows\System32\atieclxx.exe
    (IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
    (Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
    (SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore64.exe
    (Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
    (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
    (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
    (Microsoft Corporation) C:\Windows\System32\dasHost.exe
    (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
    (Microsoft Corporation) C:\Windows\System32\dllhost.exe
    (IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
    (AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe
    (AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM64.exe
    (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
    (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
    (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
    (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
    (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
    (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
    (Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe
    (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
    (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
    (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
    (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
    (Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\WINWORD.EXE
    (SUPERAntiSpyware) C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
    (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
    (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
    (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
    (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
    (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avscan.exe
    (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe
    (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe
    (Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17477_none_fa2b7d3b9b36c7b4\TiWorker.exe
    (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe
    (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AcroRd32.exe
    (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\update.exe
    (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\updrgui.exe


    ==================== Registry (Whitelisted) ==================

    (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

    HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1664000 2012-08-20] (IDT, Inc.)
    HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2916152 2012-08-24] (Synaptics Incorporated)
    HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766688 2014-07-04] (Advanced Micro Devices, Inc.)
    HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [335232 2015-02-10] (Oracle Corporation)
    HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [126712 2015-01-19] (Avira Operations GmbH & Co. KG)
    HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [703280 2015-02-25] (Avira Operations GmbH & Co. KG)
    HKU\S-1-5-21-3303695090-1817798212-3423905771-1002\...\Run: [HydraVisionDesktopManager] => C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [1967616 2014-04-17] (AMD)
    HKU\S-1-5-21-3303695090-1817798212-3423905771-1002\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\Bubbles.scr [788480 2014-11-21] (Microsoft Corporation)
    HKU\S-1-5-21-3303695090-1817798212-3423905771-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [HydraVisionDesktopManager] => C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [1967616 2014-04-17] (AMD)
    HKU\S-1-5-21-3303695090-1817798212-3423905771-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\Bubbles.scr [788480 2014-11-21] (Microsoft Corporation)
    HKU\S-1-5-21-3303695090-1817798212-3423905771-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [HydraVisionDesktopManager] => C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [1967616 2014-04-17] (AMD)
    ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File

    ==================== Internet (Whitelisted) ====================

    (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

    HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://g.msn.com/HPNOT13/1
    HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/HPNOT13/1
    HKU\S-1-5-21-3303695090-1817798212-3423905771-1002\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
    HKU\S-1-5-21-3303695090-1817798212-3423905771-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
    HKU\S-1-5-21-3303695090-1817798212-3423905771-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Start Page = http://g.msn.com/HPNOT13/1
    HKU\S-1-5-21-3303695090-1817798212-3423905771-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/HPNOT13/1
    SearchScopes: HKLM -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.com/rover/1/711-154371-11896-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms}
    SearchScopes: HKLM-x32 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.com/rover/1/711-154371-11896-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms}
    SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-21-3303695090-1817798212-3423905771-1002 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.com/rover/1/711-154371-11896-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms}
    SearchScopes: HKU\S-1-5-21-3303695090-1817798212-3423905771-1002 -> {E0EB54C7-1552-4E76-A953-5B39540ED2E2} URL = https://search.yahoo.com/search?p={searchTerms}&ei=UTF-8&fr=w3i&type=W3i_DS,136,0_0,Search,20150208,20028,0,25,0
    SearchScopes: HKU\S-1-5-21-3303695090-1817798212-3423905771-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = http://rover.ebay.com/rover/1/711-154371-11896-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms}
    SearchScopes: HKU\S-1-5-21-3303695090-1817798212-3423905771-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> {E0EB54C7-1552-4E76-A953-5B39540ED2E2} URL = https://search.yahoo.com/search?p={searchTerms}&ei=UTF-8&fr=w3i&type=W3i_DS,136,0_0,Search,20150208,20028,0,25,0
    SearchScopes: HKU\S-1-5-21-3303695090-1817798212-3423905771-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-21-3303695090-1817798212-3423905771-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-21-3303695090-1817798212-3423905771-1009-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL =
    BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll No File
    BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2015-02-21] (Microsoft Corporation)
    BHO: RoboForm Toolbar Helper -> {724d43a9-0d85-11d4-9908-00400523e39a} -> C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll [2015-02-21] (Siber Systems Inc.)
    BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2015-02-21] (Microsoft Corporation)
    BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll [2015-03-07] (Oracle Corporation)
    BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-07] (Oracle Corporation)
    Toolbar: HKLM - &RoboForm Toolbar - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll [2015-02-21] (Siber Systems Inc.)
    Toolbar: HKU\S-1-5-21-3303695090-1817798212-3423905771-1002 -> &RoboForm Toolbar - {724D43A0-0D85-11D4-9908-00400523E39A} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll [2015-02-21] (Siber Systems Inc.)
    Toolbar: HKU\S-1-5-21-3303695090-1817798212-3423905771-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> &RoboForm Toolbar - {724D43A0-0D85-11D4-9908-00400523E39A} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll [2015-02-21] (Siber Systems Inc.)
    Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-02-21] (Microsoft Corporation)
    Tcpip\Parameters: [DhcpNameServer] 192.168.254.254

    FireFox:
    ========
    FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-14] ( Microsoft Corporation)
    FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\windows\SysWOW64\Adobe\Director\np32dsw_1166636.dll [2012-08-08] (Adobe Systems, Inc.)
    FF Plugin-x32: @java.com/DTPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\dtplugin\npDeployJava1.dll [2015-03-07] (Oracle Corporation)
    FF Plugin-x32: @java.com/JavaPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\plugin2\npjp2.dll [2015-03-07] (Oracle Corporation)
    FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-14] ( Microsoft Corporation)
    FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2015-02-21] (Microsoft Corporation)
    FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3503.0728 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-07-28] (Microsoft Corporation)
    FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)

    Chrome:
    =======
    CHR Profile: C:\Users\Kim\AppData\Local\Google\Chrome\User Data\Default
    CHR Extension: (Google Slides) - C:\Users\Kim\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-02-21]
    CHR Extension: (Google Docs) - C:\Users\Kim\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-21]
    CHR Extension: (Google Drive) - C:\Users\Kim\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-02-21]
    CHR Extension: (YouTube) - C:\Users\Kim\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-02-21]
    CHR Extension: (Google Search) - C:\Users\Kim\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-02-21]
    CHR Extension: (Google Sheets) - C:\Users\Kim\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-02-21]
    CHR Extension: (Avast Online Security) - C:\Users\Kim\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-02-26]
    CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Kim\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-03]
    CHR Extension: (Google Wallet) - C:\Users\Kim\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-02-21]
    CHR Extension: (Gmail) - C:\Users\Kim\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-02-21]
    CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx
    CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx

    ==================== Services (Whitelisted) =================

    (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

    R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [172344 2014-07-22] (SUPERAntiSpyware.com)
    R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2014-07-04] (Advanced Micro Devices, Inc.) [File not signed]
    R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [432888 2015-02-25] (Avira Operations GmbH & Co. KG)
    R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [432888 2015-02-25] (Avira Operations GmbH & Co. KG)
    R2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [182520 2015-01-19] (Avira Operations GmbH & Co. KG)
    S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-11-21] (Microsoft Corporation)
    R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2711736 2015-01-14] (Microsoft Corporation)
    R2 HPConnectedRemote; C:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteService.exe [35744 2012-10-12] (Hewlett-Packard)
    S4 IconMan_R; C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2451456 2012-07-13] (Realsil Microelectronics Inc.) [File not signed]
    R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2014-11-21] (Malwarebytes Corporation)
    R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [969016 2014-11-21] (Malwarebytes Corporation)
    S3 w3logsvc; C:\Windows\system32\inetsrv\w3logsvc.dll [76800 2014-07-02] (Microsoft Corporation)
    S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-03] (Microsoft Corporation)
    S2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-03] (Microsoft Corporation)

    ==================== Drivers (Whitelisted) ====================

    (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

    S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [21160 2012-09-22] (Advanced Micro Devices, Inc.)
    R2 AODDriver4.2.0; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59648 2013-09-20] (Advanced Micro Devices)
    S2 AODDriver4.3; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59648 2013-09-20] (Advanced Micro Devices)
    R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3859968 2013-08-22] (Qualcomm Atheros Communications, Inc.)
    R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdW86.sys [91648 2012-08-22] (Advanced Micro Devices)
    R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [128536 2015-02-25] (Avira Operations GmbH & Co. KG)
    R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [132120 2015-02-25] (Avira Operations GmbH & Co. KG)
    R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [28600 2015-02-25] (Avira Operations GmbH & Co. KG)
    R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [26528 2015-02-26] (REALiX(tm))
    R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2014-11-21] (Malwarebytes Corporation)
    R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [129752 2015-03-14] (Malwarebytes Corporation)
    R3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2014-11-21] (Malwarebytes Corporation)
    R3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [294104 2015-02-26] (Realtek Semiconductor Corp.)
    R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
    R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
    S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [41272 2012-08-24] (Synaptics Incorporated)
    S3 SmbDrvI; C:\Windows\System32\drivers\Smb_driver_Intel.sys [43832 2012-08-24] (Synaptics Incorporated)
    S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-03] (Microsoft Corporation)
    R3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [20800 2012-08-31] (Hewlett-Packard Development Company, L.P.)

    ========================== Drivers MD5 =======================

    C:\Windows\System32\drivers\1394ohci.sys E1832BD9FD7E0FC2DC9FA5935DE3E8C1
    C:\Windows\System32\drivers\3ware.sys AD508A1A46EC21B740AB31C28EFDFDB1
    C:\Windows\system32\DRIVERS\Accelerometer.sys 899B7E724BF19F17978B6A37B864A277
    C:\Windows\System32\drivers\ACPI.sys E796AE43DDD1844281DB4D57294D17C0
    C:\Windows\System32\Drivers\acpiex.sys AC8279D229398BCF05C3154ADCA86813
    C:\Windows\System32\drivers\acpipagr.sys A8970D9BF23CD309E0403978A1B58F3F
    C:\Windows\System32\drivers\acpipmi.sys 111A89C99C5B4F1A7BCE5F643DD86F65
    C:\Windows\System32\drivers\acpitime.sys 5758387D68A20AE7D3245011B07E36E7
    C:\Windows\System32\drivers\ADP80XX.SYS 7C1FDF1B48298CBA7CE4BDD4978951AD
    C:\Windows\system32\drivers\afd.sys 374E27295F0A9DCAA8FC96370F9BEEA5
    C:\Windows\System32\drivers\agp440.sys 7DFAEBA9AD62D20102B576D5CAC45EC8
    C:\Windows\System32\DRIVERS\ahcache.sys F0CB6DB513CAC393D04A0FCE0A59E1BF
    C:\Windows\System32\drivers\amdk8.sys 7589DE749DB6F71A68489DCE04158729
    C:\Windows\System32\drivers\amdkmafd.sys F2FF8C1B41B3784EDBD5C6D5397F403C
    C:\Windows\system32\DRIVERS\atikmdag.sys 71F8D8B977ACC5973FA042BF906E709F
    C:\Windows\system32\DRIVERS\atikmpag.sys 4AA027F91A8093B1CDF453B5394F6715
    C:\Windows\System32\drivers\amdppm.sys B46D2D89AFF8A9490FA8C98C7A5616E3
    C:\Windows\System32\drivers\amdsata.sys D2BF2F94A47D332814910FD47C6BBCD2
    C:\Windows\System32\drivers\amdsbs.sys A8E04943C7BBA7219AA50400272C3C6E
    C:\Windows\System32\drivers\amdxata.sys CEA5F4F27CFC08E3A44D576811B35F50
    C:\Windows\System32\drivers\amd_sata.sys C34265B45F8425D3401DA986CC6A1D2C
    C:\Windows\System32\drivers\amd_xata.sys DFD313793E08048D5F6CAEB9086A5673
    C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys E8CCB797DAF80779C768BD3A9FC8FCAF
    C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys E8CCB797DAF80779C768BD3A9FC8FCAF
    C:\Windows\system32\drivers\appid.sys 415DD71628795197F7AFC176CBADC74E
    C:\Windows\System32\drivers\arcsas.sys 65045784366F7EC5FB4E71BCF923187B
    C:\Windows\System32\drivers\atapi.sys 74B14192CF79A72F7536B27CB8814FBD
    C:\Windows\system32\DRIVERS\athwbx.sys 37B33DDE5490A2DF56DFB46580356E3F
    C:\Windows\system32\drivers\AtihdW86.sys 87DAD8D354E312DB16636DC71EB39E5E
    C:\Windows\System32\DRIVERS\avgntflt.sys 00BF66D168E1A7AA7E1C9F458BBA0B34
    C:\Windows\system32\DRIVERS\avipbb.sys 055D318220DD4593F2A8C8FF83707D36
    C:\Windows\system32\DRIVERS\avkmgr.sys 390184FAD8FCC1B6DA25AEBAE928C3B6
    C:\Windows\System32\drivers\bxvbda.sys A4A73F631FE2AA2826FBE4A399B04DEF
    C:\Windows\System32\drivers\BasicDisplay.sys 8CC7F7E4AFCBA605921B137ED7992C68
    C:\Windows\System32\drivers\BasicRender.sys 38A82F4EE8C416A6744B6D30381ED768
    C:\Windows\System32\drivers\bcmfn2.sys C1ABB0F7E3BEA48A0417BDF6FF14AB21
    C:\Windows\System32\Drivers\Beep.sys EC19013E4CF87609534165DF897274D6
    C:\Windows\System32\DRIVERS\bowser.sys 6B4FFFDDC618FCF64473CAA86E305697
    C:\Windows\System32\drivers\BthAvrcpTg.sys A8F23D453A424FF4DE04989C4727ECC7
    C:\Windows\System32\drivers\bthhfenum.sys 67343511D80BF3D6D9EEDB5BA8D0B06B
    C:\Windows\System32\drivers\BthHFHid.sys 71FE2A48E4C93DDB9798C024880B6C07
    C:\Windows\System32\drivers\bthmodem.sys EF4B9E7C9AD88C00C18A12B0D22D1894
    C:\Windows\System32\DRIVERS\cdfs.sys 2FA6510E33F7DEFEC03658B74101A9B9
    C:\Windows\System32\drivers\cdrom.sys C6796EA22B513E3457514D92DCDB1A3D
    C:\Windows\System32\drivers\circlass.sys BE9936EDD3267FAAFF94A7835867F00B
    C:\Windows\System32\drivers\CLFS.sys 179A41249055D5F039F1B6703F3B6D2B
    C:\Windows\System32\drivers\CmBatt.sys EF6EF85DADC3184A10D8F2F7159973CB
    C:\Windows\System32\Drivers\cng.sys 3930E508DDA46C1FF68FD963F350AA0A
    C:\Windows\System32\drivers\CompositeBus.sys 03AAED827C36F35D70900558B8274905
    C:\Windows\System32\drivers\condrv.sys A1FF7DFBFBE164CF92603C651D304DD2
    C:\Windows\System32\drivers\dam.sys 389C998C64319CD97625B0550E52ECFA
    C:\Windows\System32\Drivers\dfsc.sys A03F362C5557E238CBFA914689C77248
    C:\Windows\System32\drivers\disk.sys 4D40C9B33F738797CF50E77CB7C53E85
    C:\Windows\System32\drivers\dmvsc.sys EB70A894708D1BC176AFD690FF06085F
    C:\Windows\system32\drivers\drmkaud.sys 00C594D5A1DBD22AD8B2902B9F6EFF94
    C:\Windows\System32\drivers\dxgkrnl.sys E1BB0B6F00F470B451AB45EA13EBA0B3
    C:\Windows\System32\drivers\evbda.sys 114BCFDF367FF37C3F1B0A96AF542E4D
    C:\Windows\System32\drivers\EhStorClass.sys 43531A5993380CC5113242C29D265FD9
    C:\Windows\System32\drivers\EhStorTcgDrv.sys 6F8E738A9505A388B1157FDDE7B3101B
    C:\Windows\System32\drivers\errdev.sys DFFFAE1442BA4076E18EED5E406FA0D3
    C:\Windows\System32\Drivers\exfat.sys 7729D294A555C7AEB281ED8E4D0E01E4
    C:\Windows\System32\Drivers\fastfat.sys 7C4E0D5900B2A1D11EDD626D6DDB937B
    C:\Windows\System32\drivers\fdc.sys 5D8402613E778B3BD45E687A8372710B
    C:\Windows\System32\drivers\fileinfo.sys BCFD8B149B3ADF92D0DB1E909CAF0265
    C:\Windows\System32\drivers\filetrace.sys A1A66C4FDAFD6B0289523232AFB7D8AF
    C:\Windows\System32\drivers\flpydisk.sys BE743083CF7063C486A4398E3AEFE59A
    C:\Windows\System32\drivers\fltmgr.sys C1FB505A73FA2E9019D32444AB33B75A
    C:\Windows\System32\drivers\FsDepends.sys A7C31B168F371E8E6796219F23E354DB
    C:\Windows\System32\Drivers\Fs_Rec.sys 09F460AFEDCA03F3BF6E07D1CCC9AC42
    C:\Windows\System32\DRIVERS\fvevol.sys F152D55E497E12256290C43B31C7D0CE
    C:\Windows\System32\drivers\fxppm.sys 9591D0B9351ED489EAFD9D1CE52A8015
    C:\Windows\System32\drivers\gagp30kx.sys FC3EF65EE20D39F8749C2218DBA681CA
    C:\Windows\System32\drivers\vmgencounter.sys 0BF5CAD281E25F1418E5B8875DC5ADD1
    C:\Windows\System32\Drivers\msgpioclx.sys 8DF1254093B5C354CE725EB6B9B0DE19
    C:\Windows\System32\drivers\HDAudBus.sys D4B7ED39C7900384D9E5C1283F1E7926
    C:\Windows\System32\drivers\HidBatt.sys 10A70BC1871CD955D85CD88372724906
    C:\Windows\System32\drivers\hidbth.sys 42F88B57CAE42FC10059C887B3FCFCEA
    C:\Windows\System32\drivers\hidi2c.sys C241A8BAFBBFC90176EA0F5240EACC17
    C:\Windows\System32\drivers\hidir.sys 9BDDEE26255421017E161CCB9D5EDA95
    C:\Windows\System32\drivers\hidusb.sys 8DB8EAB9D0C6A5DF0BDCADEA239220B4
    C:\Windows\System32\DRIVERS\hpdskflt.sys D104FF402FC3DDB686E6DEF00334DB26
    C:\Windows\System32\drivers\HpSAMD.sys A6AACEA4C785789BDA5912AD1FEDA80D
    C:\Windows\System32\drivers\HTTP.sys 9DDCA7F18983C5410DEFF79F819DF93C
    C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS E5805896A55D4166C20F216249F40FA3
    C:\Windows\System32\drivers\hwpolicy.sys 90656C0B3864804B090434EFC582404F
    C:\Windows\System32\drivers\hyperkbd.sys 6D6F9E3BF0484967E52F7E846BFF1CA1
    C:\Windows\system32\DRIVERS\HyperVideo.sys 907C870F8C31F8DDD6F090857B46AB25
    C:\Windows\System32\drivers\i8042prt.sys 49EE0AE9E5B64FFBBD06D55C4984B598
    C:\Windows\System32\drivers\iaLPSSi_GPIO.sys 5D90E32E36CE5D4C535D17CE08AEAF05
    C:\Windows\System32\drivers\iaLPSSi_I2C.sys DD05E7E80F52ADE9AEB292819920F32C
    C:\Windows\System32\drivers\iaStorAV.sys 08BFE413B0B4AA8DFA4B5684CE06D3DC
    C:\Windows\System32\drivers\iaStorV.sys A2200C3033FA4EF249FC096A7A7D02A2
    C:\Windows\System32\drivers\intelide.sys 4E448FCFFD00E8D657CD9E48D3E47157
    C:\Windows\System32\drivers\intelpep.sys 7AA01AB1C110916825E6E1389F1B9AF2
    C:\Windows\System32\drivers\intelppm.sys 47E74A8E53C7C24DCE38311E1451C1D9
    C:\Windows\System32\DRIVERS\ipfltdrv.sys 9DB76D7F9E4E53EFE5DD8C53DE837514
    C:\Windows\System32\drivers\IPMIDrv.sys 9C096BF5E10CA8BFA56F32522A89FAF1
    C:\Windows\System32\drivers\ipnat.sys B7342B3C58E91107F6E946A93D9D4EFD
    C:\Windows\System32\drivers\irenum.sys AE44C526AB5F8A487D941CEB57B10C97
    C:\Windows\System32\drivers\isapnp.sys 8AFEEA3955AA43616A60F133B1D25F21
    C:\Windows\System32\drivers\msiscsi.sys D90AB68D0FAC9F357F663670FDBB511E
    C:\Windows\System32\drivers\kbdclass.sys 5917AFE4A3F695A54B99C1849C8207FE
    C:\Windows\System32\drivers\kbdhid.sys 8CD840A062F6BDF41DDE3ACB96164B72
    C:\Windows\system32\DRIVERS\kdnic.sys 813871C7D402A05F2E3A7075F9584A05
    C:\Windows\System32\Drivers\ksecdd.sys 4E829B18D5BAEC29893792A3C671A847
    C:\Windows\System32\Drivers\ksecpkg.sys 15C8C65CEA018C02EA0F648448C491C5
    C:\Windows\system32\drivers\ksthunk.sys 11AFB527AA370B1DAFD5C36F35F6D45F
    C:\Windows\system32\DRIVERS\lltdio.sys C09010B3680860131631F53E8FE7BAD8
    C:\Windows\System32\drivers\lsi_sas.sys C755AE4635457AA2A11F79C0DF857ABC
    C:\Windows\System32\drivers\lsi_sas2.sys ADAC09CBE7A2040B7F68B5E5C9A75141
    C:\Windows\System32\drivers\lsi_sas3.sys 04D1274BB9BBCCF12BD12374002AA191
    C:\Windows\System32\drivers\lsi_sss.sys 327469EEF3833D0C584B7E88A76AEC0C
    C:\Windows\system32\drivers\luafv.sys DDEE191AB32DFC22C6465002ECDF5EE4
    C:\WINDOWS\system32\drivers\mbam.sys CA43F8904E24BBE49982E4C0B29E6579
    C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys 26C43960C99EE861A5D0EDC4DCF3B1C3
    C:\WINDOWS\system32\drivers\mwac.sys 9D7BFFDB5FA62B600DF1FCB4919D9D79
    C:\Windows\System32\drivers\megasas.sys EB5C03A070F30D64A6DF80E53B22F53F
    C:\Windows\System32\drivers\megasr.sys F6F13533196DE7A582D422B0241E4363
    C:\Windows\System32\drivers\modem.sys 8B38C44F69259987C95135C9627E2378
    C:\Windows\System32\drivers\monitor.sys 601589000CC90F0DF8DA2CC254A3CCC9
    C:\Windows\System32\drivers\mouclass.sys 08374E4E5B8914DE6067CBA99F61E930
    C:\Windows\System32\drivers\mouhid.sys 5FCBAB60598AE119E02B4C27DE6B99EA
    C:\Windows\System32\drivers\mountmgr.sys D1D82F007A079A4D623DBD1F36EF30A1
    C:\Windows\System32\drivers\mpsdrv.sys 6FC047578785B0435F4E2660946D1ADC
    C:\Windows\system32\drivers\mrxdav.sys DB32958F0E704EFBF7F15161A569E39F
    C:\Windows\System32\DRIVERS\mrxsmb.sys 31233271EDE50D1BBB220F78AFA60486
    C:\Windows\System32\DRIVERS\mrxsmb10.sys 3E28B99198B514DFEB152EACF913025E
    C:\Windows\System32\DRIVERS\mrxsmb20.sys 6276AC2AA203CF47811F6EFBBD214FBF
    C:\Windows\system32\DRIVERS\bridge.sys F3C060444777A59FC63D920719E43CCD
    C:\Windows\System32\Drivers\Msfs.sys D13329FBF8345B28AB30F44CC247DC08
    C:\Windows\System32\drivers\msgpiowin32.sys C6B474E46F9E543B875981ED3FFE6ADD
    C:\Windows\System32\drivers\mshidkmdf.sys 65C92EB9D08DB5C69F28C7FFD4E84E31
    C:\Windows\System32\drivers\mshidumdf.sys 52299F086AC2DAFD100DD5DC4A8614BA
    C:\Windows\System32\drivers\msisadrv.sys 36D92AF3343C3A3E57FEF11C449AEA4C
    C:\Windows\system32\drivers\MSKSSRV.sys A9BBBD2BAE6142253B9195E949AC2E8D
    C:\Windows\system32\DRIVERS\mslldp.sys 51B3AC0560848CD6D65AC2033E293113
    C:\Windows\system32\drivers\MSPCLOCK.sys 7B2128EB875DCBC006E6A913211006D6
    C:\Windows\system32\drivers\MSPQM.sys 1E88171579B218115C7A772F8DE04BD8
    C:\Windows\System32\Drivers\MsRPC.sys BBE2A455053E63BECBF42C2F9B21FAE0
    C:\Windows\System32\drivers\mssmbios.sys 8D6B7D515C5CBCDB75B928A0B73C3C5E
    C:\Windows\system32\drivers\MSTEE.sys 115019AE01E0EB9C048530D2928AB4A2
    C:\Windows\System32\drivers\MTConfig.sys 96D604A35070360F0DD4A7A8AF410B5E
    C:\Windows\System32\Drivers\mup.sys 619CA29326B82372621DB2C0964D8365
    C:\Windows\System32\drivers\mvumis.sys B8C35C94DCB2DFEAF03BB42131F2F77F
    C:\Windows\system32\DRIVERS\nwifi.sys 008F7CED69FD5B30CBDE1E03C6F36A27
    C:\Windows\System32\drivers\ndis.sys 6D3A2565E01B3E4B0F1BEDB0D4B00B3F
    C:\Windows\system32\DRIVERS\ndiscap.sys 8CECC8DA55F3274181FD1EA28AD76664
    C:\Windows\system32\DRIVERS\NdisImPlatform.sys 269882812E9A68FFF1AFE1283D428322
    C:\Windows\system32\DRIVERS\ndistapi.sys DC1D9F692C2AD84C214584C28501C1F7
    C:\Windows\system32\DRIVERS\ndisuio.sys B832B35055BA2B7B4181861FF94D8E59
    C:\Windows\System32\drivers\NdisVirtualBus.sys 1F58E48EF75F34C35D8E93A0DC535CFE
    C:\Windows\system32\DRIVERS\ndiswan.sys DEC29080202D4F9F17F55E18BCFCC41A
    C:\Windows\system32\DRIVERS\ndiswan.sys DEC29080202D4F9F17F55E18BCFCC41A
    C:\Windows\System32\Drivers\NDProxy.sys 0BBE2FA30BAD58C9ADC01E4F84A3D2A1
    C:\Windows\System32\drivers\Ndu.sys 3083926D1CC5B56EA0786527B557DD1B
    C:\Windows\System32\DRIVERS\netbios.sys 42FF4975D032CAE558AE4BB8448F6E5A
    C:\Windows\System32\DRIVERS\netbt.sys 0217532E19A748F0E5D569307363D5FD
    C:\Windows\System32\drivers\netvsc63.sys D4DCE03870314D3354F3501F9DDD4123
    C:\Windows\System32\Drivers\Npfs.sys 8F44A2F57C9F1A19AC9C6288C10FB351
    C:\Windows\System32\drivers\npsvctrig.sys CBDB4F0871C88DF930FC0E8588CA67FC
    C:\Windows\System32\drivers\nsiproxy.sys 0E046FF5823B95326D10CF1B4AF23541
    C:\Windows\System32\Drivers\Ntfs.sys 7F68063A5A0461E02BC860CE0E6BFDDC
    C:\Windows\System32\Drivers\Null.sys EF1B290FC9F0E47CC0B537292BEE5904
    C:\Windows\System32\drivers\nvraid.sys BC6B5942AFF25EBAF62DE43C3807EDF8
    C:\Windows\System32\drivers\nvstor.sys 1F43ABFFAC3D6CA356851D517392966E
    C:\Windows\System32\drivers\nv_agp.sys 6934A936A7369DFE37B7DBA93F5E5E49
    C:\Windows\System32\drivers\parport.sys 764B1121867B2D9B31C491668AC72B2B
    C:\Windows\System32\drivers\partmgr.sys BAFF6122CFC9F95CA175AD8C348179A4
    C:\Windows\System32\drivers\pci.sys 91ED124E261EA8FAA1C0FFDF2A71B0C4
    C:\Windows\System32\drivers\pciide.sys 346E38FCC6859A727DD28AFAD1F0AFF4
    C:\Windows\System32\drivers\pcmcia.sys 4D3BDCC1C7B40C9D7B6AD990E6DEC397
    C:\Windows\System32\drivers\pcw.sys BF28771D1436C88BE1D297D3098B0F7D
    C:\Windows\System32\drivers\pdc.sys ED54A75050211DC77F9B98C41E026858
    C:\Windows\System32\drivers\peauth.sys 0ECEE590F2E2EF969FB74A6FC583A1E6
    C:\Windows\System32\drivers\processr.sys ECD373F9571C745894367CC2635EA44F
    C:\Windows\system32\DRIVERS\pacer.sys FC0141B4A5AD6D637D883C1A89FC45C5
    C:\Windows\system32\drivers\qwavedrv.sys 83868EB2924E6BC21A54337C65D614D1
    C:\Windows\System32\DRIVERS\rasacd.sys B337B1F1E82A83E20A1743E008E25C0F
    C:\Windows\system32\DRIVERS\raspppoe.sys 5247F308C4103CDC4FE12AE1D235800A
    C:\Windows\System32\DRIVERS\rdbss.sys A1A5E79C0D1352AFDC08328A623DA051
    C:\Windows\System32\drivers\rdpbus.sys 6B21EBF892CD8CACB71669B35AB5DE32
    C:\Windows\System32\drivers\rdpdr.sys 680C1DAE268B6FB67FA21B389A8B79EF
    C:\Windows\System32\drivers\rdpvideominiport.sys BC8A79C625568DDB7DCA49D0C2741A64
    C:\Windows\System32\drivers\rdyboost.sys A26AEC49F318FEE141DDDB2C5F99B3E6
    C:\Windows\System32\Drivers\ReFS.sys 615DFD97DEA56CE1C3A52185A3038FF8
    C:\Windows\system32\DRIVERS\RtsP2Stor.sys 0F6F714ED34B4BA6493A7B0902451A5D
    C:\Windows\system32\DRIVERS\rspndr.sys 2D05A5508F4685412F2B89E8C2189ABC
    C:\Windows\system32\DRIVERS\Rt630x64.sys CED833BA33C84E657C184D51B2E6AED9
    C:\Windows\System32\drivers\vms3cap.sys 1A063730F221B2746FF00457AE17E4F0
    C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS 3289766038DB2CB14D07DC84392138D5
    C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS 58A38E75F3316A83C23DF6173D41F2B5
    C:\Windows\System32\drivers\sbp2port.sys C624A1B32211C3166EDB3F4AB02A30B7
    C:\Windows\System32\DRIVERS\scfilter.sys 13BEA6C882D4D877A5A85CA149C86BC1
    C:\Windows\System32\drivers\sdbus.sys 27FF998504DEF8D29A771FBB41707C5E
    C:\Windows\System32\drivers\sdstor.sys 0B1E929D11A8E358106955603FAC65E8
    C:\Windows\System32\Drivers\secdrv.sys ==> MD5 is legit
    C:\Windows\System32\drivers\SerCx.sys DB2FF24CE0BDD15FE75870AFE312BA89
    C:\Windows\System32\drivers\SerCx2.sys 0044B31F93946D5D41982314381FE431
    C:\Windows\System32\drivers\serenum.sys 3CD600C089C1251BEEB4CD4CD5164F9E
    C:\Windows\System32\drivers\serial.sys D864381BC9C725FAB01D94C060660166
    C:\Windows\System32\drivers\sermouse.sys 148195AE95D9BC7375A08846439FDAC1
    C:\Windows\System32\drivers\sfloppy.sys 472B7A5AC181C050888DB454663DD764
    C:\Windows\System32\drivers\SiSRaid2.sys 2F518D13DD6F3053837FE606F1A2EA1F
    C:\Windows\System32\drivers\sisraid4.sys 1AC9A200A9C49C4508F04AAFFCA34A3F
    C:\Windows\System32\drivers\Smb_driver_AMDASF.sys AF5CC3F9B88F140D78FC967ABF0F4EC7
    C:\Windows\System32\drivers\Smb_driver_Intel.sys 19555D03CB179BED8B8AAA239A36BDA4
    C:\Windows\System32\drivers\spaceport.sys D24B1945ED1F9C96DA786DBBF1E983CE
    C:\Windows\System32\drivers\SpbCx.sys F337BE11071818FC3F5DC2940B6BDE34
    C:\Windows\System32\DRIVERS\srv.sys 6416E79A58A8FCC33A447A4DDDD3BF04
    C:\Windows\System32\DRIVERS\srv2.sys 00D8AC8E3053290BDE6EA2FB6810D2FC
    C:\Windows\System32\DRIVERS\srvnet.sys D047CD668E6277FD80F0C613946F034C
    C:\Windows\System32\drivers\stexstor.sys 366DEA74BBA65B362BCCFC6FC2ADFD8B
    C:\Windows\system32\DRIVERS\stwrt64.sys 32BE0B7CCA47A5BE30E7E43DC54B54F3
    C:\Windows\System32\drivers\storahci.sys 0ED2E318ABB68C1A35A8B8038BDB4C90
    C:\Windows\System32\drivers\vmstorfl.sys 8B9486B64E5FC17FB9CC04CA10B77A34
    C:\Windows\System32\drivers\stornvme.sys 6B06E2D11E604BE2B1A406C4CB3B90DE
    C:\Windows\System32\drivers\storvsc.sys 548759755BC73DAD663250239D7E0B9F
    C:\Windows\System32\drivers\swenum.sys 65454187E0F8B6C0DCECB0287D06EC43
    C:\Windows\system32\DRIVERS\SynTP.sys 3F45C3FE208CA5E68832B65C597A35A6
    C:\Windows\System32\drivers\tcpip.sys 3C2DF97A21A9BBE6355B0A51F288EFFF
    C:\Windows\system32\DRIVERS\tcpip.sys 3C2DF97A21A9BBE6355B0A51F288EFFF
    C:\Windows\System32\drivers\tcpipreg.sys 41CF802064F72E55F50CA0A221FD36D4
    C:\Windows\system32\DRIVERS\tdx.sys FFF28F9F6823EB1756C60F1649560BBF
    C:\Windows\System32\drivers\terminpt.sys 232D185D2337F141311D0CF1983E1431
    C:\Windows\system32\drivers\tpm.sys 82F909359600D3603FE852DB7F135626
    C:\Windows\System32\drivers\tsusbflt.sys BF8F54CA37E9C9D6582C31C5761F8C93
    C:\Windows\System32\drivers\TsUsbGD.sys 20185BEB7512EDE4EFECDFA148AC9F99
    C:\Windows\system32\DRIVERS\tunnel.sys C8E0E78B5D284C2FF59BDFFDAF997242
    C:\Windows\System32\drivers\uagp35.sys F6EEAD052943B5A3104C1405BB856C54
    C:\Windows\System32\drivers\uaspstor.sys FE6067B1FD4E63650C667B33D080565B
    C:\Windows\System32\drivers\ucx01000.sys 807F8CF3E973305FC435C61CBBEE2A49
    C:\Windows\System32\DRIVERS\udfs.sys 1EC649F112896FAE33250F0B97AC5D0B
    C:\Windows\System32\drivers\UEFI.sys 9578691F297E1B1F519970FE6D47CB21
    C:\Windows\System32\drivers\uliagpkx.sys 5EAB5117DDB24FC4D39E6FFFCF1837B9
    C:\Windows\System32\drivers\umbus.sys DA34C39A18E60E7C3FA0630566408034
    C:\Windows\System32\drivers\umpass.sys AE8294875E5446E359B1E8035D40C05E
    C:\Windows\System32\drivers\usbccgp.sys FF78D053A05E5A394F4E3C1816CC65A8
    C:\Windows\System32\drivers\usbcir.sys 0139248F6B95CF0D837B5B46A2722D40
    C:\Windows\System32\drivers\usbehci.sys 48BA326A3DBA5B5BEB5F2777F4618696
    C:\Windows\system32\DRIVERS\usbfilter.sys 504901430B6E03B99EBB6BF26E0868C6
    C:\Windows\System32\drivers\usbhub.sys FEF0BC107812B36849741C3211BA6B60
    C:\Windows\System32\drivers\UsbHub3.sys FAA564A13576F9284546BF016D27B551
    C:\Windows\System32\drivers\usbohci.sys 3019097FB6C985EF24C058090FF3BDBD
    C:\Windows\System32\drivers\usbprint.sys 4D655E3B684BE9B0F7FFD8A2935C348C
    C:\Windows\System32\drivers\USBSTOR.SYS 66732C13628BDB1AB0D6FD46027327C2
    C:\Windows\System32\drivers\usbuhci.sys 064260B3A5868AC894A4943543BC7AB7
    C:\Windows\System32\Drivers\usbvideo.sys 5C8F604F6DC74177CDD8372D7B1ADFF0
    C:\Windows\System32\drivers\USBXHCI.SYS 1A20F03700D2B2ED775E38D751EF2F63
    C:\Windows\System32\drivers\vdrvroot.sys FEB26E3B8345A7E8D62F945C4AE86562
    C:\Windows\System32\drivers\VerifierExt.sys A026EDEAA5EECAE0B08E2748B616D4BD
    C:\Windows\System32\drivers\vhdmp.sys F6ECFD6128A16A4851CFE98D4E01B011
    C:\Windows\System32\drivers\viaide.sys 06D38968028E9AB19DE9B618C7B6D199
    C:\Windows\System32\drivers\vmbus.sys 511AD3FF957A0127E6BD336FF6F89C38
    C:\Windows\System32\drivers\VMBusHID.sys DA40BEA0A863CE768C940CA9723BF81F
    C:\Windows\System32\drivers\volmgr.sys 55D7D963DE85162F1C49721E502F9744
    C:\Windows\System32\drivers\volmgrx.sys CCB9E901F7254BF96D28EB1B0E5329B7
    C:\Windows\System32\drivers\volsnap.sys 64CA2B4A49A8EAF495E435623ECCE7DB
    C:\Windows\System32\drivers\vpci.sys EF31713EE4C7CCFE4049F7E7F15645A2
    C:\Windows\System32\drivers\vsmraid.sys 4539F45F9F4C9757A86A56C949421E07
    C:\Windows\System32\drivers\vstxraid.sys 0849B7260F26FE05EA56DED0672E2F4B
    C:\Windows\System32\drivers\vwifibus.sys BE970C369E43B509C1EDA2B8FA7CECB0
    C:\Windows\system32\DRIVERS\vwififlt.sys 6B26AD573CCDD5209DF4397438B76354
    C:\Windows\system32\DRIVERS\vwifimp.sys 0B48E0DFB44EE475F4FD8A8EE599AF30
    C:\Windows\System32\drivers\wacompen.sys 0910AB9ED404C1434E2D0376C2AD5D8B
    C:\Windows\System32\drivers\WdBoot.sys 1751F6B031ADAC34724511057D2E455D
    C:\Windows\System32\drivers\Wdf01000.sys CB6C63FF8342B467E2EF76E98D5B934D
    C:\Windows\System32\drivers\WdFilter.sys D296D0F0DB2CD1504F90405603664493
    C:\Windows\System32\Drivers\WdNisDrv.sys 9F4DF0043965808973023A9B51A11136
    C:\Windows\System32\DRIVERS\wfplwfs.sys 715ABA3DD164D06457A2A3C92F6EA9D5
    C:\Windows\System32\drivers\wimmount.sys 5F66B7BB330AA80067FC66149A692620
    C:\Windows\System32\drivers\WirelessButtonDriver64.sys 4F2A80D65AE6F845776E2F06AE6782ED
    C:\Windows\System32\drivers\wmiacpi.sys 2834D9D3B4F554A39C72F00EA3F0E128
    C:\Windows\System32\Drivers\Wof.sys 7FC5667DF73D4B04AA457CC3A4180E09
    C:\Windows\System32\DRIVERS\wpcfltr.sys A2468CC3509394A33C4C32F99563D845
    C:\Windows\System32\drivers\WpdUpFltr.sys 9F2904B55F6CECCD1A8D986B5CE2609A
    C:\Windows\system32\drivers\ws2ifsl.sys AE072B0339D0A18E455DC21666CAD572
    C:\Windows\System32\drivers\WudfPf.sys 481286719402E4BAEFEA0604AB1B5113
    C:\Windows\System32\drivers\WUDFRd.sys D7B4859227B02BCC1055B279A63C937F
    C:\Windows\system32\DRIVERS\WUDFRd.sys D7B4859227B02BCC1055B279A63C937F
    C:\Windows\system32\DRIVERS\WUDFRd.sys D7B4859227B02BCC1055B279A63C937F

    ==================== NetSvcs (Whitelisted) ===================

    (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


    ==================== One Month Created Files and Folders ========

    (If an entry is included in the fixlist, the file\folder will be moved.)

    2015-03-14 19:09 - 2015-03-14 19:09 - 00000651 _____ () C:\Users\Kim\Desktop\FRST - Shortcut.lnk
    2015-03-14 14:18 - 2015-03-14 14:18 - 00000000 ____D () C:\Users\Kim\AppData\Roaming\Avira
    2015-03-14 13:28 - 2015-03-14 13:16 - 00043576 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avnetflt.sys
    2015-03-14 13:10 - 2015-02-25 17:51 - 00132120 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys
    2015-03-14 13:10 - 2015-02-25 17:51 - 00128536 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys
    2015-03-14 13:10 - 2015-02-25 17:51 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avkmgr.sys
    2015-03-14 11:53 - 2015-03-14 13:52 - 00129752 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
    2015-03-14 11:52 - 2015-03-14 11:52 - 00001118 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
    2015-03-14 11:52 - 2015-03-14 11:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
    2015-03-14 11:52 - 2015-03-14 11:52 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
    2015-03-14 11:52 - 2014-11-21 06:14 - 00093400 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
    2015-03-14 11:52 - 2014-11-21 06:14 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
    2015-03-14 11:52 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
    2015-03-14 11:39 - 2015-03-14 11:41 - 07123452 _____ (Malwarebytes Corporation ) C:\Users\Kim\Desktop\mbam-setup-2.0.4.1028.exe.k263h6d.partial
    2015-03-14 11:36 - 2015-03-14 11:41 - 00000000 ___DC () C:\AdwCleaner
    2015-03-14 11:35 - 2015-03-14 11:35 - 00000620 _____ () C:\Users\Kim\Desktop\JRT.txt
    2015-03-14 11:03 - 2015-03-14 13:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
    2015-03-14 11:03 - 2015-03-14 11:03 - 00001149 _____ () C:\Users\Public\Desktop\Avira.lnk
    2015-03-14 11:02 - 2015-03-14 13:10 - 00000000 ____D () C:\ProgramData\Avira
    2015-03-14 11:02 - 2015-03-14 13:10 - 00000000 ____D () C:\Program Files (x86)\Avira
    2015-03-14 10:59 - 2015-03-14 11:00 - 04515896 _____ (Avira Operations & Co. KG) C:\Users\Kim\Downloads\avira_en_av_5910735142__ws.exe
    2015-03-13 22:09 - 2015-03-13 22:11 - 00000518 _____ () C:\Users\Kim\Desktop\SystemLook.txt
    2015-03-13 22:08 - 2015-03-13 22:09 - 00165376 _____ () C:\Users\Kim\Desktop\SystemLook_x64.exe
    2015-03-13 21:43 - 2015-03-04 17:24 - 00792032 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
    2015-03-13 21:43 - 2015-03-04 17:24 - 00178144 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
    2015-03-13 21:17 - 2015-03-13 21:21 - 03231437 _____ () C:\Users\Kim\Downloads\Windows8.1-KB2908279-v2-x64.msu
    2015-03-13 20:35 - 2015-03-13 20:35 - 00006934 _____ () C:\Users\Kim\Downloads\Download Document.html
    2015-03-11 19:28 - 2015-03-11 19:28 - 00002542 _____ () C:\Users\Kim\Downloads\delivery.ris
    2015-03-11 11:50 - 2015-01-26 23:44 - 00933888 _____ (Microsoft Corporation) C:\WINDOWS\system32\calc.exe
    2015-03-11 11:50 - 2015-01-23 21:51 - 00816128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\calc.exe
    2015-03-11 11:49 - 2015-02-03 19:58 - 00264000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys
    2015-03-11 11:49 - 2015-02-03 19:58 - 00114496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys
    2015-03-11 11:49 - 2015-02-03 19:58 - 00044024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys
    2015-03-11 11:49 - 2015-02-02 19:53 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\winshfhc.dll
    2015-03-11 11:49 - 2015-02-02 19:53 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winshfhc.dll
    2015-03-11 11:48 - 2015-02-06 19:09 - 00396419 _____ () C:\WINDOWS\system32\ApnDatabase.xml
    2015-03-11 11:48 - 2015-01-23 03:17 - 00723072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
    2015-03-11 11:48 - 2015-01-23 01:02 - 00560392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
    2015-03-11 11:47 - 2015-02-05 16:24 - 01113920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
    2015-03-11 11:47 - 2015-01-30 19:42 - 03097600 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
    2015-03-11 11:47 - 2015-01-30 19:29 - 02484224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
    2015-03-11 11:47 - 2015-01-28 21:58 - 00347136 _____ (Microsoft Corporation) C:\WINDOWS\system32\photowiz.dll
    2015-03-11 11:47 - 2015-01-28 21:29 - 00290816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\photowiz.dll
    2015-03-11 11:47 - 2015-01-28 21:04 - 01091072 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
    2015-03-11 11:47 - 2015-01-28 21:04 - 00864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
    2015-03-11 11:46 - 2015-02-05 21:28 - 02257408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
    2015-03-11 11:46 - 2015-02-05 21:08 - 01943040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
    2015-03-11 11:46 - 2015-02-02 20:03 - 03551744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll
    2015-03-11 11:46 - 2015-02-02 20:02 - 04298240 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll
    2015-03-11 11:46 - 2015-01-29 23:01 - 00097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidbth.sys
    2015-03-11 11:46 - 2015-01-29 22:03 - 01488896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc42u.dll
    2015-03-11 11:46 - 2015-01-29 22:03 - 01464832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc42.dll
    2015-03-11 11:46 - 2015-01-29 22:02 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappgnui.dll
    2015-03-11 11:46 - 2015-01-29 21:44 - 01230336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc42u.dll
    2015-03-11 11:46 - 2015-01-29 21:42 - 01204224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc42.dll
    2015-03-11 11:46 - 2015-01-29 21:40 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappgnui.dll
    2015-03-11 11:46 - 2015-01-29 21:37 - 00331776 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll
    2015-03-11 11:46 - 2015-01-29 21:29 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\atlthunk.dll
    2015-03-11 11:46 - 2015-01-29 21:24 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll
    2015-03-11 11:46 - 2015-01-29 21:24 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapp3hst.dll
    2015-03-11 11:46 - 2015-01-29 21:16 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapphost.dll
    2015-03-11 11:46 - 2015-01-29 21:08 - 00346112 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll
    2015-03-11 11:46 - 2015-01-29 21:06 - 00278016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappcfg.dll
    2015-03-11 11:46 - 2015-01-28 21:11 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
    2015-03-11 11:46 - 2015-01-28 21:00 - 00210944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
    2015-03-11 11:46 - 2015-01-28 20:59 - 02773504 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
    2015-03-11 11:46 - 2015-01-28 20:55 - 00971776 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
    2015-03-11 11:46 - 2015-01-28 20:50 - 00811008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
    2015-03-11 11:46 - 2015-01-28 20:49 - 02459136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
    2015-03-11 11:46 - 2015-01-27 22:24 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageContextHandler.dll
    2015-03-11 11:46 - 2015-01-27 21:47 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StorageContextHandler.dll
    2015-03-11 11:45 - 2015-02-07 19:57 - 01090048 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
    2015-03-11 11:45 - 2015-02-07 19:49 - 00791040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
    2015-03-11 11:45 - 2015-01-27 19:47 - 02501368 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
    2015-03-11 11:45 - 2015-01-27 19:41 - 02207488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
    2015-03-11 11:45 - 2014-12-11 01:36 - 00046456 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockScreenContentServer.exe
    2015-03-11 10:43 - 2015-02-12 13:40 - 22291584 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
    2015-03-11 10:43 - 2015-02-12 13:34 - 19731824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
    2015-03-11 10:42 - 2015-03-05 22:53 - 00430080 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
    2015-03-11 10:42 - 2015-03-05 22:33 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
    2015-03-11 10:42 - 2015-02-25 19:26 - 04178944 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
    2015-03-11 10:42 - 2015-02-19 23:03 - 00358912 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
    2015-03-11 10:42 - 2015-02-19 22:58 - 00044032 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
    2015-03-11 10:42 - 2015-02-19 22:20 - 00301056 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
    2015-03-11 10:42 - 2015-02-19 22:15 - 00035840 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
    2015-03-11 10:42 - 2015-01-30 19:20 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
    2015-03-11 10:42 - 2015-01-28 11:41 - 07472960 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
    2015-03-11 10:42 - 2015-01-28 11:41 - 01733440 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
    2015-03-11 10:42 - 2015-01-28 11:41 - 01498360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
    2015-03-11 10:42 - 2015-01-27 00:22 - 00131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
    2015-03-11 10:42 - 2015-01-26 22:11 - 03547648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
    2015-03-11 10:39 - 2015-02-20 21:16 - 25021440 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
    2015-03-11 10:39 - 2015-02-20 20:41 - 12827648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
    2015-03-11 10:39 - 2015-02-20 20:25 - 19720192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
    2015-03-11 10:39 - 2015-02-19 22:49 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
    2015-03-11 10:39 - 2015-02-19 22:48 - 02886144 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
    2015-03-11 10:39 - 2015-02-19 22:32 - 06035456 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
    2015-03-11 10:39 - 2015-02-19 22:09 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
    2015-03-11 10:39 - 2015-02-19 22:07 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
    2015-03-11 10:39 - 2015-02-19 22:05 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
    2015-03-11 10:39 - 2015-02-19 22:03 - 02278400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
    2015-03-11 10:39 - 2015-02-19 21:59 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
    2015-03-11 10:39 - 2015-02-19 21:49 - 00801280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
    2015-03-11 10:39 - 2015-02-19 21:46 - 02125824 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
    2015-03-11 10:39 - 2015-02-19 21:43 - 14398976 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
    2015-03-11 10:39 - 2015-02-19 21:30 - 04300288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
    2015-03-11 10:39 - 2015-02-19 21:30 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
    2015-03-11 10:39 - 2015-02-19 21:28 - 02358784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
    2015-03-11 10:39 - 2015-02-19 21:24 - 02052608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
    2015-03-11 10:39 - 2015-02-19 21:24 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
    2015-03-11 10:39 - 2015-02-19 21:16 - 01548288 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
    2015-03-11 10:39 - 2015-02-19 21:01 - 01888256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
    2015-03-11 10:39 - 2015-02-19 20:57 - 01311232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
    2015-03-11 10:38 - 2015-02-20 20:27 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
    2015-03-11 10:38 - 2015-02-20 20:27 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll
    2015-03-11 10:38 - 2015-02-20 19:58 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
    2015-03-11 10:38 - 2015-02-20 19:32 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
    2015-03-11 10:38 - 2015-02-19 22:47 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll
    2015-03-11 10:38 - 2015-02-19 22:35 - 00816128 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
    2015-03-11 10:38 - 2015-02-19 22:34 - 00814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
    2015-03-11 10:38 - 2015-02-19 22:06 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll
    2015-03-11 10:38 - 2015-02-19 21:56 - 00664064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
    2015-03-11 10:38 - 2015-02-19 21:52 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
    2015-03-11 10:38 - 2015-02-19 21:49 - 00374272 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
    2015-03-11 10:38 - 2015-02-19 21:29 - 02865152 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
    2015-03-11 10:38 - 2015-02-19 21:26 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll
    2015-03-11 10:38 - 2015-02-19 21:03 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
    2015-03-11 10:38 - 2015-02-19 20:55 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
    2015-03-11 10:37 - 2015-01-29 14:45 - 01763352 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
    2015-03-11 10:37 - 2015-01-29 14:34 - 01488040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
    2015-03-11 10:36 - 2015-01-27 21:31 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll
    2015-03-11 10:36 - 2015-01-27 21:11 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPhoto.dll
    2015-03-11 10:35 - 2015-01-21 01:54 - 01384712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
    2015-03-11 10:35 - 2015-01-21 01:15 - 01123848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
    2015-03-09 21:45 - 2015-03-09 21:45 - 00010752 ___SH () C:\Users\Kim\Documents\Thumbs.db
    2015-03-09 12:55 - 2015-03-14 11:02 - 00033345 _____ () C:\Users\Kim\Documents\COMPLIANCE REVIEW SPREADSHEET 14.xlsx
    2015-03-09 09:18 - 2015-03-09 09:18 - 00000023 _____ () C:\Users\Kim\Downloads\Quote _10013 from Jason McGinnis Remodeling (2)
    2015-03-08 13:39 - 2015-03-08 13:39 - 00012288 _____ () C:\WINDOWS\system32\umstartup.etl
    2015-03-07 23:57 - 2015-03-07 23:57 - 00000000 ____D () C:\Users\Kim\AppData\Roaming\ReactorGames
    2015-03-07 23:30 - 2015-03-12 18:36 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
    2015-03-07 23:30 - 2015-03-07 23:30 - 00000000 ____D () C:\Users\Kim\AppData\Roaming\Mozilla
    2015-03-07 23:30 - 2015-03-07 23:30 - 00000000 ____D () C:\Users\Kim\AppData\Local\Mozilla
    2015-03-07 23:30 - 2015-03-07 23:30 - 00000000 ____D () C:\ProgramData\Mozilla
    2015-03-07 23:08 - 2015-03-07 23:08 - 00000000 ____D () C:\Users\Kim\AppData\Roaming\WiguGames
    2015-03-07 21:14 - 2015-03-07 21:14 - 00000000 ____D () C:\ProgramData\ATI
    2015-03-07 20:59 - 2015-03-12 18:36 - 00000000 ____D () C:\Program Files (x86)\Raptr
    2015-03-07 20:59 - 2015-03-07 20:59 - 00000000 ____D () C:\Users\Kim\AppData\Roaming\Raptr
    2015-03-07 20:58 - 2015-03-12 18:36 - 00000000 ____D () C:\Program Files\AMD Quick Stream
    2015-03-07 20:57 - 2015-03-07 20:57 - 00064052 _____ () C:\WINDOWS\SysWOW64\CCCInstall_201503071957479280.log
    2015-03-07 20:47 - 2015-03-07 20:47 - 00000000 ____D () C:\Program Files (x86)\AMD
    2015-03-07 20:45 - 2015-03-07 20:45 - 00065660 _____ () C:\WINDOWS\SysWOW64\CCCInstall_201503071945198437.log
    2015-03-07 19:07 - 2015-03-07 21:45 - 00000000 ____D () C:\Users\Kim\AppData\Roaming\InImages
    2015-03-07 18:47 - 2015-03-07 18:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
    2015-03-07 18:45 - 2015-03-07 18:45 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
    2015-03-07 18:45 - 2015-03-07 18:45 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
    2015-03-07 18:34 - 2014-04-15 19:35 - 00028352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aspnet_counters.dll
    2015-03-07 18:34 - 2014-04-15 19:34 - 00029888 _____ (Microsoft Corporation) C:\WINDOWS\system32\aspnet_counters.dll
    2015-03-07 17:53 - 2014-11-15 15:05 - 00801584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
    2015-03-07 17:53 - 2014-11-15 02:29 - 00962216 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
    2015-03-07 17:53 - 2014-11-14 10:36 - 00055776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
    2015-03-07 17:53 - 2014-11-14 03:10 - 03558400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
    2015-03-07 17:53 - 2014-11-14 02:58 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe
    2015-03-07 17:53 - 2014-11-14 02:57 - 01027584 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
    2015-03-07 17:53 - 2014-11-14 02:57 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll
    2015-03-07 17:53 - 2014-11-14 02:54 - 00407552 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll
    2015-03-07 17:53 - 2014-11-14 02:54 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
    2015-03-07 17:53 - 2014-11-14 02:53 - 00894976 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
    2015-03-07 17:53 - 2014-11-14 02:52 - 01714176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll
    2015-03-07 17:53 - 2014-11-14 01:04 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe
    2015-03-07 17:53 - 2014-11-14 01:03 - 00885760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
    2015-03-07 17:53 - 2014-11-14 01:03 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll
    2015-03-07 17:53 - 2014-11-14 01:01 - 00723968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
    2015-03-07 17:53 - 2014-11-14 01:01 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
    2015-03-07 17:53 - 2014-11-10 14:06 - 02485056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
    2015-03-07 17:53 - 2014-11-10 14:06 - 00473408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
    2015-03-07 17:53 - 2014-11-10 14:06 - 00428864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
    2015-03-07 17:53 - 2014-11-10 14:06 - 00136512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys
    2015-03-07 17:53 - 2014-11-09 22:57 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agilevpn.sys
    2015-03-07 17:53 - 2014-11-09 21:37 - 00845312 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
    2015-03-07 17:53 - 2014-11-09 21:34 - 01084416 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
    2015-03-07 17:53 - 2014-11-09 21:26 - 00422400 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
    2015-03-07 17:53 - 2014-11-09 21:20 - 00420864 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll
    2015-03-07 17:53 - 2014-11-09 21:09 - 00272384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FWPUCLNT.DLL
    2015-03-07 17:53 - 2014-11-09 21:08 - 00702464 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
    2015-03-07 17:53 - 2014-11-09 21:06 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
    2015-03-07 17:53 - 2014-11-09 20:57 - 00624640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
    2015-03-07 17:53 - 2014-11-09 20:57 - 00561664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
    2015-03-07 17:53 - 2014-11-08 00:00 - 00072192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndproxy.sys
    2015-03-07 17:53 - 2014-11-08 00:00 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndistapi.sys
    2015-03-07 17:53 - 2014-11-07 23:58 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rasl2tp.sys
    2015-03-07 17:53 - 2014-11-07 23:58 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wanarp.sys
    2015-03-07 17:53 - 2014-11-07 23:56 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\kmddsp.tsp
    2015-03-07 17:53 - 2014-11-07 23:56 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmxs.dll
    2015-03-07 17:53 - 2014-11-07 23:56 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasser.dll
    2015-03-07 17:53 - 2014-11-07 23:24 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasdiag.dll
    2015-03-07 17:53 - 2014-11-07 23:13 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kmddsp.tsp
    2015-03-07 17:53 - 2014-11-07 23:13 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasmxs.dll
    2015-03-07 17:53 - 2014-11-07 23:13 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasser.dll
    2015-03-07 17:53 - 2014-11-07 22:48 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasdiag.dll
    2015-03-07 17:53 - 2014-11-07 22:38 - 00166912 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
    2015-03-07 17:53 - 2014-11-07 22:17 - 00143360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
    2015-03-07 17:53 - 2014-11-07 22:09 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascfg.dll
    2015-03-07 17:53 - 2014-11-07 22:03 - 00733696 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll
    2015-03-07 17:53 - 2014-11-07 21:59 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rascfg.dll
    2015-03-07 17:53 - 2014-11-07 21:58 - 04837376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll
    2015-03-07 17:53 - 2014-11-07 21:49 - 01154048 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe
    2015-03-07 17:53 - 2014-11-06 23:58 - 00952896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
    2015-03-07 17:53 - 2014-11-06 23:20 - 00786120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
    2015-03-07 17:53 - 2014-11-04 22:12 - 00211968 _____ (Microsoft Corporation) C:\WINDOWS\system32\QSHVHOST.DLL
    2015-03-07 17:53 - 2014-11-04 22:12 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\QSVRMGMT.DLL
    2015-03-07 17:53 - 2014-11-04 22:06 - 00514048 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairing.dll
    2015-03-07 17:53 - 2014-11-04 21:44 - 00657920 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
    2015-03-07 17:53 - 2014-11-04 21:43 - 00252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
    2015-03-07 17:53 - 2014-11-04 21:41 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\system32\untfs.dll
    2015-03-07 17:53 - 2014-11-04 21:39 - 00155648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\QSHVHOST.DLL
    2015-03-07 17:53 - 2014-11-04 21:39 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\QSVRMGMT.DLL
    2015-03-07 17:53 - 2014-11-04 21:33 - 00465408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DevicePairing.dll
    2015-03-07 17:53 - 2014-11-04 21:21 - 00658432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDApi.dll
    2015-03-07 17:53 - 2014-11-04 21:20 - 00498688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
    2015-03-07 17:53 - 2014-11-04 21:18 - 00507392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\untfs.dll
    2015-03-07 17:53 - 2014-11-04 21:14 - 00309760 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDMon.dll
    2015-03-07 17:53 - 2014-11-04 21:06 - 00555520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSDApi.dll
    2015-03-07 17:53 - 2014-11-04 15:33 - 00058176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys
    2015-03-07 17:53 - 2014-11-04 15:25 - 00059712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\kbdclass.sys
    2015-03-07 17:53 - 2014-11-04 15:25 - 00051008 _____ (Microsoft Corporation) C:\WIND
     
  13. kimberly1965

    kimberly1965 Thread Starter

    Joined:
    May 5, 2002
    Messages:
    83
    NetSvcs (Whitelisted) ===================

    (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


    ==================== One Month Created Files and Folders ========

    (If an entry is included in the fixlist, the file\folder will be moved.)

    2015-03-14 19:09 - 2015-03-14 19:09 - 00000651 _____ () C:\Users\Kim\Desktop\FRST - Shortcut.lnk
    2015-03-14 14:18 - 2015-03-14 14:18 - 00000000 ____D () C:\Users\Kim\AppData\Roaming\Avira
    2015-03-14 13:28 - 2015-03-14 13:16 - 00043576 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avnetflt.sys
    2015-03-14 13:10 - 2015-02-25 17:51 - 00132120 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys
    2015-03-14 13:10 - 2015-02-25 17:51 - 00128536 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys
    2015-03-14 13:10 - 2015-02-25 17:51 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avkmgr.sys
    2015-03-14 11:53 - 2015-03-14 13:52 - 00129752 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
    2015-03-14 11:52 - 2015-03-14 11:52 - 00001118 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
    2015-03-14 11:52 - 2015-03-14 11:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
    2015-03-14 11:52 - 2015-03-14 11:52 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
    2015-03-14 11:52 - 2014-11-21 06:14 - 00093400 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
    2015-03-14 11:52 - 2014-11-21 06:14 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
    2015-03-14 11:52 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
    2015-03-14 11:39 - 2015-03-14 11:41 - 07123452 _____ (Malwarebytes Corporation ) C:\Users\Kim\Desktop\mbam-setup-2.0.4.1028.exe.k263h6d.partial
    2015-03-14 11:36 - 2015-03-14 11:41 - 00000000 ___DC () C:\AdwCleaner
    2015-03-14 11:35 - 2015-03-14 11:35 - 00000620 _____ () C:\Users\Kim\Desktop\JRT.txt
    2015-03-14 11:03 - 2015-03-14 13:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
    2015-03-14 11:03 - 2015-03-14 11:03 - 00001149 _____ () C:\Users\Public\Desktop\Avira.lnk
    2015-03-14 11:02 - 2015-03-14 13:10 - 00000000 ____D () C:\ProgramData\Avira
    2015-03-14 11:02 - 2015-03-14 13:10 - 00000000 ____D () C:\Program Files (x86)\Avira
    2015-03-14 10:59 - 2015-03-14 11:00 - 04515896 _____ (Avira Operations & Co. KG) C:\Users\Kim\Downloads\avira_en_av_5910735142__ws.exe
    2015-03-13 22:09 - 2015-03-13 22:11 - 00000518 _____ () C:\Users\Kim\Desktop\SystemLook.txt
    2015-03-13 22:08 - 2015-03-13 22:09 - 00165376 _____ () C:\Users\Kim\Desktop\SystemLook_x64.exe
    2015-03-13 21:43 - 2015-03-04 17:24 - 00792032 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
    2015-03-13 21:43 - 2015-03-04 17:24 - 00178144 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
    2015-03-13 21:17 - 2015-03-13 21:21 - 03231437 _____ () C:\Users\Kim\Downloads\Windows8.1-KB2908279-v2-x64.msu
    2015-03-13 20:35 - 2015-03-13 20:35 - 00006934 _____ () C:\Users\Kim\Downloads\Download Document.html
    2015-03-11 19:28 - 2015-03-11 19:28 - 00002542 _____ () C:\Users\Kim\Downloads\delivery.ris
    2015-03-11 11:50 - 2015-01-26 23:44 - 00933888 _____ (Microsoft Corporation) C:\WINDOWS\system32\calc.exe
    2015-03-11 11:50 - 2015-01-23 21:51 - 00816128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\calc.exe
    2015-03-11 11:49 - 2015-02-03 19:58 - 00264000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys
    2015-03-11 11:49 - 2015-02-03 19:58 - 00114496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys
    2015-03-11 11:49 - 2015-02-03 19:58 - 00044024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys
    2015-03-11 11:49 - 2015-02-02 19:53 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\winshfhc.dll
    2015-03-11 11:49 - 2015-02-02 19:53 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winshfhc.dll
    2015-03-11 11:48 - 2015-02-06 19:09 - 00396419 _____ () C:\WINDOWS\system32\ApnDatabase.xml
    2015-03-11 11:48 - 2015-01-23 03:17 - 00723072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
    2015-03-11 11:48 - 2015-01-23 01:02 - 00560392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
    2015-03-11 11:47 - 2015-02-05 16:24 - 01113920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
    2015-03-11 11:47 - 2015-01-30 19:42 - 03097600 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
    2015-03-11 11:47 - 2015-01-30 19:29 - 02484224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
    2015-03-11 11:47 - 2015-01-28 21:58 - 00347136 _____ (Microsoft Corporation) C:\WINDOWS\system32\photowiz.dll
    2015-03-11 11:47 - 2015-01-28 21:29 - 00290816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\photowiz.dll
    2015-03-11 11:47 - 2015-01-28 21:04 - 01091072 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
    2015-03-11 11:47 - 2015-01-28 21:04 - 00864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
    2015-03-11 11:46 - 2015-02-05 21:28 - 02257408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
    2015-03-11 11:46 - 2015-02-05 21:08 - 01943040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
    2015-03-11 11:46 - 2015-02-02 20:03 - 03551744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll
    2015-03-11 11:46 - 2015-02-02 20:02 - 04298240 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll
    2015-03-11 11:46 - 2015-01-29 23:01 - 00097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidbth.sys
    2015-03-11 11:46 - 2015-01-29 22:03 - 01488896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc42u.dll
    2015-03-11 11:46 - 2015-01-29 22:03 - 01464832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfc42.dll
    2015-03-11 11:46 - 2015-01-29 22:02 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappgnui.dll
    2015-03-11 11:46 - 2015-01-29 21:44 - 01230336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc42u.dll
    2015-03-11 11:46 - 2015-01-29 21:42 - 01204224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc42.dll
    2015-03-11 11:46 - 2015-01-29 21:40 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappgnui.dll
    2015-03-11 11:46 - 2015-01-29 21:37 - 00331776 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll
    2015-03-11 11:46 - 2015-01-29 21:29 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\atlthunk.dll
    2015-03-11 11:46 - 2015-01-29 21:24 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll
    2015-03-11 11:46 - 2015-01-29 21:24 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapp3hst.dll
    2015-03-11 11:46 - 2015-01-29 21:16 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapphost.dll
    2015-03-11 11:46 - 2015-01-29 21:08 - 00346112 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll
    2015-03-11 11:46 - 2015-01-29 21:06 - 00278016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappcfg.dll
    2015-03-11 11:46 - 2015-01-28 21:11 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
    2015-03-11 11:46 - 2015-01-28 21:00 - 00210944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
    2015-03-11 11:46 - 2015-01-28 20:59 - 02773504 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
    2015-03-11 11:46 - 2015-01-28 20:55 - 00971776 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
    2015-03-11 11:46 - 2015-01-28 20:50 - 00811008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
    2015-03-11 11:46 - 2015-01-28 20:49 - 02459136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
    2015-03-11 11:46 - 2015-01-27 22:24 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageContextHandler.dll
    2015-03-11 11:46 - 2015-01-27 21:47 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StorageContextHandler.dll
    2015-03-11 11:45 - 2015-02-07 19:57 - 01090048 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
    2015-03-11 11:45 - 2015-02-07 19:49 - 00791040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
    2015-03-11 11:45 - 2015-01-27 19:47 - 02501368 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
    2015-03-11 11:45 - 2015-01-27 19:41 - 02207488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
    2015-03-11 11:45 - 2014-12-11 01:36 - 00046456 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockScreenContentServer.exe
    2015-03-11 10:43 - 2015-02-12 13:40 - 22291584 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
    2015-03-11 10:43 - 2015-02-12 13:34 - 19731824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
    2015-03-11 10:42 - 2015-03-05 22:53 - 00430080 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
    2015-03-11 10:42 - 2015-03-05 22:33 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
    2015-03-11 10:42 - 2015-02-25 19:26 - 04178944 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
    2015-03-11 10:42 - 2015-02-19 23:03 - 00358912 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
    2015-03-11 10:42 - 2015-02-19 22:58 - 00044032 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
    2015-03-11 10:42 - 2015-02-19 22:20 - 00301056 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
    2015-03-11 10:42 - 2015-02-19 22:15 - 00035840 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
    2015-03-11 10:42 - 2015-01-30 19:20 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
    2015-03-11 10:42 - 2015-01-28 11:41 - 07472960 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
    2015-03-11 10:42 - 2015-01-28 11:41 - 01733440 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
    2015-03-11 10:42 - 2015-01-28 11:41 - 01498360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
    2015-03-11 10:42 - 2015-01-27 00:22 - 00131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
    2015-03-11 10:42 - 2015-01-26 22:11 - 03547648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
    2015-03-11 10:39 - 2015-02-20 21:16 - 25021440 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
    2015-03-11 10:39 - 2015-02-20 20:41 - 12827648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
    2015-03-11 10:39 - 2015-02-20 20:25 - 19720192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
    2015-03-11 10:39 - 2015-02-19 22:49 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
    2015-03-11 10:39 - 2015-02-19 22:48 - 02886144 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
    2015-03-11 10:39 - 2015-02-19 22:32 - 06035456 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
    2015-03-11 10:39 - 2015-02-19 22:09 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
    2015-03-11 10:39 - 2015-02-19 22:07 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
    2015-03-11 10:39 - 2015-02-19 22:05 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
    2015-03-11 10:39 - 2015-02-19 22:03 - 02278400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
    2015-03-11 10:39 - 2015-02-19 21:59 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
    2015-03-11 10:39 - 2015-02-19 21:49 - 00801280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
    2015-03-11 10:39 - 2015-02-19 21:46 - 02125824 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
    2015-03-11 10:39 - 2015-02-19 21:43 - 14398976 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
    2015-03-11 10:39 - 2015-02-19 21:30 - 04300288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
    2015-03-11 10:39 - 2015-02-19 21:30 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
    2015-03-11 10:39 - 2015-02-19 21:28 - 02358784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
    2015-03-11 10:39 - 2015-02-19 21:24 - 02052608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
    2015-03-11 10:39 - 2015-02-19 21:24 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
    2015-03-11 10:39 - 2015-02-19 21:16 - 01548288 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
    2015-03-11 10:39 - 2015-02-19 21:01 - 01888256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
    2015-03-11 10:39 - 2015-02-19 20:57 - 01311232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
    2015-03-11 10:38 - 2015-02-20 20:27 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
    2015-03-11 10:38 - 2015-02-20 20:27 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll
    2015-03-11 10:38 - 2015-02-20 19:58 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
    2015-03-11 10:38 - 2015-02-20 19:32 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
    2015-03-11 10:38 - 2015-02-19 22:47 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll
    2015-03-11 10:38 - 2015-02-19 22:35 - 00816128 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
    2015-03-11 10:38 - 2015-02-19 22:34 - 00814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
    2015-03-11 10:38 - 2015-02-19 22:06 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll
    2015-03-11 10:38 - 2015-02-19 21:56 - 00664064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
    2015-03-11 10:38 - 2015-02-19 21:52 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
    2015-03-11 10:38 - 2015-02-19 21:49 - 00374272 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
    2015-03-11 10:38 - 2015-02-19 21:29 - 02865152 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
    2015-03-11 10:38 - 2015-02-19 21:26 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll
    2015-03-11 10:38 - 2015-02-19 21:03 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
    2015-03-11 10:38 - 2015-02-19 20:55 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
    2015-03-11 10:37 - 2015-01-29 14:45 - 01763352 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
    2015-03-11 10:37 - 2015-01-29 14:34 - 01488040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
    2015-03-11 10:36 - 2015-01-27 21:31 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll
    2015-03-11 10:36 - 2015-01-27 21:11 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPhoto.dll
    2015-03-11 10:35 - 2015-01-21 01:54 - 01384712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
    2015-03-11 10:35 - 2015-01-21 01:15 - 01123848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
    2015-03-09 21:45 - 2015-03-09 21:45 - 00010752 ___SH () C:\Users\Kim\Documents\Thumbs.db
    2015-03-09 12:55 - 2015-03-14 11:02 - 00033345 _____ () C:\Users\Kim\Documents\COMPLIANCE REVIEW SPREADSHEET 14.xlsx
    2015-03-09 09:18 - 2015-03-09 09:18 - 00000023 _____ () C:\Users\Kim\Downloads\Quote _10013 from Jason McGinnis Remodeling (2)
    2015-03-08 13:39 - 2015-03-08 13:39 - 00012288 _____ () C:\WINDOWS\system32\umstartup.etl
    2015-03-07 23:57 - 2015-03-07 23:57 - 00000000 ____D () C:\Users\Kim\AppData\Roaming\ReactorGames
    2015-03-07 23:30 - 2015-03-12 18:36 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
    2015-03-07 23:30 - 2015-03-07 23:30 - 00000000 ____D () C:\Users\Kim\AppData\Roaming\Mozilla
    2015-03-07 23:30 - 2015-03-07 23:30 - 00000000 ____D () C:\Users\Kim\AppData\Local\Mozilla
    2015-03-07 23:30 - 2015-03-07 23:30 - 00000000 ____D () C:\ProgramData\Mozilla
    2015-03-07 23:08 - 2015-03-07 23:08 - 00000000 ____D () C:\Users\Kim\AppData\Roaming\WiguGames
    2015-03-07 21:14 - 2015-03-07 21:14 - 00000000 ____D () C:\ProgramData\ATI
    2015-03-07 20:59 - 2015-03-12 18:36 - 00000000 ____D () C:\Program Files (x86)\Raptr
    2015-03-07 20:59 - 2015-03-07 20:59 - 00000000 ____D () C:\Users\Kim\AppData\Roaming\Raptr
    2015-03-07 20:58 - 2015-03-12 18:36 - 00000000 ____D () C:\Program Files\AMD Quick Stream
    2015-03-07 20:57 - 2015-03-07 20:57 - 00064052 _____ () C:\WINDOWS\SysWOW64\CCCInstall_201503071957479280.log
    2015-03-07 20:47 - 2015-03-07 20:47 - 00000000 ____D () C:\Program Files (x86)\AMD
    2015-03-07 20:45 - 2015-03-07 20:45 - 00065660 _____ () C:\WINDOWS\SysWOW64\CCCInstall_201503071945198437.log
    2015-03-07 19:07 - 2015-03-07 21:45 - 00000000 ____D () C:\Users\Kim\AppData\Roaming\InImages
    2015-03-07 18:47 - 2015-03-07 18:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
    2015-03-07 18:45 - 2015-03-07 18:45 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
    2015-03-07 18:45 - 2015-03-07 18:45 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
    2015-03-07 18:34 - 2014-04-15 19:35 - 00028352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aspnet_counters.dll
    2015-03-07 18:34 - 2014-04-15 19:34 - 00029888 _____ (Microsoft Corporation) C:\WINDOWS\system32\aspnet_counters.dll
    2015-03-07 17:53 - 2014-11-15 15:05 - 00801584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
    2015-03-07 17:53 - 2014-11-15 02:29 - 00962216 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
    2015-03-07 17:53 - 2014-11-14 10:36 - 00055776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
    2015-03-07 17:53 - 2014-11-14 03:10 - 03558400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
    2015-03-07 17:53 - 2014-11-14 02:58 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe
    2015-03-07 17:53 - 2014-11-14 02:57 - 01027584 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
    2015-03-07 17:53 - 2014-11-14 02:57 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll
    2015-03-07 17:53 - 2014-11-14 02:54 - 00407552 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll
    2015-03-07 17:53 - 2014-11-14 02:54 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
    2015-03-07 17:53 - 2014-11-14 02:53 - 00894976 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
    2015-03-07 17:53 - 2014-11-14 02:52 - 01714176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll
    2015-03-07 17:53 - 2014-11-14 01:04 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe
    2015-03-07 17:53 - 2014-11-14 01:03 - 00885760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
    2015-03-07 17:53 - 2014-11-14 01:03 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll
    2015-03-07 17:53 - 2014-11-14 01:01 - 00723968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
    2015-03-07 17:53 - 2014-11-14 01:01 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
    2015-03-07 17:53 - 2014-11-10 14:06 - 02485056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
    2015-03-07 17:53 - 2014-11-10 14:06 - 00473408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
    2015-03-07 17:53 - 2014-11-10 14:06 - 00428864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
    2015-03-07 17:53 - 2014-11-10 14:06 - 00136512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys
    2015-03-07 17:53 - 2014-11-09 22:57 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agilevpn.sys
    2015-03-07 17:53 - 2014-11-09 21:37 - 00845312 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
    2015-03-07 17:53 - 2014-11-09 21:34 - 01084416 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
    2015-03-07 17:53 - 2014-11-09 21:26 - 00422400 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
    2015-03-07 17:53 - 2014-11-09 21:20 - 00420864 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll
    2015-03-07 17:53 - 2014-11-09 21:09 - 00272384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FWPUCLNT.DLL
    2015-03-07 17:53 - 2014-11-09 21:08 - 00702464 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
    2015-03-07 17:53 - 2014-11-09 21:06 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
    2015-03-07 17:53 - 2014-11-09 20:57 - 00624640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
    2015-03-07 17:53 - 2014-11-09 20:57 - 00561664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
    2015-03-07 17:53 - 2014-11-08 00:00 - 00072192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndproxy.sys
    2015-03-07 17:53 - 2014-11-08 00:00 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndistapi.sys
    2015-03-07 17:53 - 2014-11-07 23:58 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rasl2tp.sys
    2015-03-07 17:53 - 2014-11-07 23:58 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wanarp.sys
    2015-03-07 17:53 - 2014-11-07 23:56 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\kmddsp.tsp
    2015-03-07 17:53 - 2014-11-07 23:56 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmxs.dll
    2015-03-07 17:53 - 2014-11-07 23:56 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasser.dll
    2015-03-07 17:53 - 2014-11-07 23:24 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasdiag.dll
    2015-03-07 17:53 - 2014-11-07 23:13 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kmddsp.tsp
    2015-03-07 17:53 - 2014-11-07 23:13 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasmxs.dll
    2015-03-07 17:53 - 2014-11-07 23:13 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasser.dll
    2015-03-07 17:53 - 2014-11-07 22:48 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasdiag.dll
    2015-03-07 17:53 - 2014-11-07 22:38 - 00166912 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
    2015-03-07 17:53 - 2014-11-07 22:17 - 00143360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
    2015-03-07 17:53 - 2014-11-07 22:09 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascfg.dll
    2015-03-07 17:53 - 2014-11-07 22:03 - 00733696 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll
    2015-03-07 17:53 - 2014-11-07 21:59 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rascfg.dll
    2015-03-07 17:53 - 2014-11-07 21:58 - 04837376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll
    2015-03-07 17:53 - 2014-11-07 21:49 - 01154048 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe
    2015-03-07 17:53 - 2014-11-06 23:58 - 00952896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
    2015-03-07 17:53 - 2014-11-06 23:20 - 00786120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
    2015-03-07 17:53 - 2014-11-04 22:12 - 00211968 _____ (Microsoft Corporation) C:\WINDOWS\system32\QSHVHOST.DLL
    2015-03-07 17:53 - 2014-11-04 22:12 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\QSVRMGMT.DLL
    2015-03-07 17:53 - 2014-11-04 22:06 - 00514048 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairing.dll
    2015-03-07 17:53 - 2014-11-04 21:44 - 00657920 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
    2015-03-07 17:53 - 2014-11-04 21:43 - 00252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
    2015-03-07 17:53 - 2014-11-04 21:41 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\system32\untfs.dll
    2015-03-07 17:53 - 2014-11-04 21:39 - 00155648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\QSHVHOST.DLL
    2015-03-07 17:53 - 2014-11-04 21:39 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\QSVRMGMT.DLL
    2015-03-07 17:53 - 2014-11-04 21:33 - 00465408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DevicePairing.dll
    2015-03-07 17:53 - 2014-11-04 21:21 - 00658432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDApi.dll
    2015-03-07 17:53 - 2014-11-04 21:20 - 00498688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
    2015-03-07 17:53 - 2014-11-04 21:18 - 00507392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\untfs.dll
    2015-03-07 17:53 - 2014-11-04 21:14 - 00309760 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDMon.dll
    2015-03-07 17:53 - 2014-11-04 21:06 - 00555520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSDApi.dll
    2015-03-07 17:53 - 2014-11-04 15:33 - 00058176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys
    2015-03-07 17:53 - 2014-11-04 15:25 - 00059712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\kbdclass.sys
    2015-03-07 17:53 - 2014-11-04 15:25 - 00051008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mouclass.sys
    2015-03-07 17:53 - 2014-11-04 02:55 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sermouse.sys
    2015-03-07 17:53 - 2014-11-04 02:54 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\i8042prt.sys
    2015-03-07 17:53 - 2014-11-04 02:54 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\kbdhid.sys
    2015-03-07 17:53 - 2014-11-04 02:54 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mouhid.sys
    2015-03-07 17:53 - 2014-11-04 02:27 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe
    2015-03-07 17:53 - 2014-11-04 01:01 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
    2015-03-07 17:53 - 2014-10-30 20:51 - 18823168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
    2015-03-07 17:53 - 2014-10-30 20:10 - 15158784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
    2015-03-07 17:53 - 2014-10-28 23:05 - 00551232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
    2015-03-07 17:53 - 2014-10-28 21:55 - 00242176 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSCard.dll
    2015-03-07 17:53 - 2014-10-28 21:13 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinSCard.dll
    2015-03-07 17:53 - 2014-10-20 21:59 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\eventcls.dll
    2015-03-07 17:53 - 2014-10-20 21:19 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eventcls.dll
    2015-03-07 17:53 - 2014-10-20 20:50 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\vsstrace.dll
    2015-03-07 17:53 - 2014-10-20 20:31 - 01574400 _____ (Microsoft Corporation) C:\WINDOWS\system32\vssapi.dll
    2015-03-07 17:53 - 2014-10-20 20:31 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vsstrace.dll
    2015-03-07 17:53 - 2014-10-20 20:30 - 01454080 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe
    2015-03-07 17:53 - 2014-10-20 20:20 - 01142272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vssapi.dll
    2015-03-07 17:53 - 2014-10-18 04:09 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
    2015-03-07 17:53 - 2014-10-18 04:09 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
    2015-03-07 17:53 - 2014-10-18 03:25 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
    2015-03-07 17:53 - 2014-10-18 02:50 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaext.dll
    2015-03-07 17:53 - 2014-10-17 00:56 - 00238912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
    2015-03-07 17:53 - 2014-10-17 00:56 - 00153920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
    2015-03-07 17:53 - 2014-10-17 00:56 - 00039744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
    2015-03-07 17:53 - 2014-10-16 23:35 - 00086336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
    2015-03-07 16:27 - 2015-03-07 16:43 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3303695090-1817798212-3423905771-1009
    2015-03-07 16:26 - 2015-03-07 16:26 - 00003934 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{CEB42291-A6F2-466B-8F4A-88B1887F6ABE}
    2015-03-07 16:26 - 2015-03-07 16:26 - 00000000 __SHD () C:\Users\Kim_2\AppData\Local\EmieUserList
    2015-03-07 16:26 - 2015-03-07 16:26 - 00000000 __SHD () C:\Users\Kim_2\AppData\Local\EmieSiteList
    2015-03-07 16:26 - 2015-03-07 16:26 - 00000000 __SHD () C:\Users\Kim_2\AppData\Local\EmieBrowserModeList
    2015-03-07 16:26 - 2015-03-07 16:26 - 00000000 ____D () C:\Users\Kim_2\AppData\Roaming\Macromedia
    2015-03-07 16:25 - 2015-03-07 16:25 - 00000000 ____D () C:\Users\Kim_2\OneDrive
    2015-03-07 16:24 - 2015-03-07 16:24 - 00000000 ____D () C:\Users\Kim_2\AppData\Roaming\ATI
    2015-03-07 16:24 - 2015-03-07 16:24 - 00000000 ____D () C:\Users\Kim_2\AppData\Local\ATI
    2015-03-07 16:24 - 2015-03-07 16:24 - 00000000 ____D () C:\Users\Kim_2\AppData\Local\AMD
    2015-03-07 16:10 - 2015-03-07 16:10 - 00001446 _____ () C:\Users\Kim_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
    2015-03-07 16:10 - 2015-03-07 16:10 - 00000000 ____D () C:\Users\Kim_2\AppData\Roaming\Adobe
    2015-03-07 16:10 - 2015-03-07 16:10 - 00000000 ____D () C:\Users\Kim_2\AppData\Local\VirtualStore
    2015-03-07 16:09 - 2015-03-07 16:24 - 00000000 ____D () C:\Users\Kim_2\AppData\Local\Packages
    2015-03-07 16:09 - 2015-03-07 16:09 - 00000000 ____D () C:\Users\Kim_2\AppData\Roaming\Synaptics
    2015-03-07 16:06 - 2015-03-07 16:06 - 00000020 ___SH () C:\Users\Kim_2\ntuser.ini
    2015-03-07 16:06 - 2014-11-21 04:52 - 00000369 _____ () C:\Users\Kim_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
    2015-03-07 16:06 - 2014-11-21 04:52 - 00000369 _____ () C:\Users\Kim_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
    2015-03-07 16:05 - 2015-03-12 18:38 - 00000000 ____D () C:\Users\Kim_2
    2015-03-07 16:05 - 2015-03-03 18:27 - 00000000 ___RD () C:\Users\Kim_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
    2015-03-07 16:05 - 2015-03-02 09:24 - 00000000 ____D () C:\Users\Kim_2\Documents\hp.system.package.metadata
    2015-03-07 16:05 - 2014-11-21 11:57 - 00000000 ___RD () C:\Users\Kim_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
    2015-03-07 16:05 - 2014-11-21 11:57 - 00000000 ___RD () C:\Users\Kim_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
    2015-03-07 16:05 - 2013-08-22 11:36 - 00000000 ____D () C:\Users\Kim_2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
    2015-03-07 13:29 - 2015-03-07 13:29 - 00000000 ____D () C:\Users\Kim\AppData\Roaming\WinZip
    2015-03-07 13:19 - 2015-03-12 18:37 - 00000000 ____D () C:\Users\Kim\AppData\Local\WinZip
    2015-03-07 13:19 - 2015-03-12 18:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip
    2015-03-07 13:19 - 2015-03-12 18:36 - 00000000 ____D () C:\Program Files\WinZip
    2015-03-07 13:19 - 2015-03-07 21:52 - 00000000 ____D () C:\ProgramData\WinZip
    2015-03-07 13:19 - 2015-03-07 13:19 - 00002299 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\WinZip.lnk
    2015-03-07 13:19 - 2015-03-07 13:19 - 00002293 _____ () C:\Users\Public\Desktop\WinZip.lnk
    2015-03-07 12:58 - 2015-03-07 12:58 - 00059351 _____ () C:\Users\Kim\Downloads\memtest86+-5.01.iso.gz
    2015-03-07 12:56 - 2015-03-07 12:57 - 00059435 _____ () C:\Users\Kim\Downloads\memtest86+-5.01.iso.zip
    2015-03-07 12:56 - 2015-03-07 12:56 - 00002259 _____ () C:\WINDOWS\epplauncher.mif
    2015-03-06 19:52 - 2015-03-06 19:52 - 00000000 ____D () C:\Users\Kim\AppData\Roaming\HomeMakeover3PC
    2015-03-05 16:31 - 2015-03-05 16:32 - 00000000 ____D () C:\Users\Kim\AppData\Roaming\FarmFablesEnhanced
    2015-03-05 15:47 - 2015-03-05 15:47 - 00000000 ____D () C:\Users\Kim\AppData\Roaming\Bloom!
    2015-03-04 22:38 - 2015-03-04 22:38 - 00001182 _____ () C:\Users\Public\Desktop\Intel(R) Driver Update Utility 2.0.lnk
    2015-03-04 22:38 - 2015-03-04 22:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver Update Utility
    2015-03-04 22:38 - 2015-03-04 22:38 - 00000000 ____D () C:\Program Files (x86)\Intel Driver Update Utility
    2015-03-04 18:12 - 2015-03-04 18:08 - 00572407 _____ () C:\Users\Public\Documents\ICPSR_09978.zip
    2015-03-04 17:54 - 2015-03-04 14:52 - 08597667 _____ () C:\Users\Public\Documents\icpsr2149-dataset2.sav
    2015-03-04 17:33 - 2015-03-04 17:35 - 00014242 _____ () C:\Users\Kim\Downloads\wldintro.zip
    2015-03-04 15:08 - 2015-03-04 17:27 - 00073664 _____ () C:\Users\Kim\Downloads\spssfiles.zip
    2015-03-04 14:53 - 2015-03-04 14:53 - 00000983 _____ () C:\Users\Kim\Downloads\Depression.sav
    2015-03-04 14:10 - 2015-03-09 21:45 - 00000000 ____D () C:\Users\Kim\Documents\IBM
    2015-03-03 18:58 - 2015-03-03 18:58 - 00000000 ____D () C:\Users\Kim\AppData\Local\Deployment
    2015-03-03 15:17 - 2014-06-09 18:13 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
    2015-03-03 15:17 - 2014-06-09 18:13 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
    2015-03-03 15:16 - 2014-11-09 19:19 - 00991232 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
    2015-03-03 15:16 - 2014-11-09 19:19 - 00806400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
    2015-03-03 15:16 - 2014-11-09 19:18 - 00259584 _____ (Microsoft Corporation) C:\WINDOWS\system32\pku2u.dll
    2015-03-03 15:16 - 2014-11-09 19:18 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pku2u.dll
    2015-03-03 15:13 - 2014-07-23 23:20 - 00875688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr120_clr0400.dll
    2015-03-03 15:13 - 2014-07-23 23:20 - 00869544 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcr120_clr0400.dll
    2015-03-03 15:12 - 2015-02-03 19:38 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepdu.dll
    2015-03-03 15:12 - 2015-02-03 19:08 - 00761856 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
    2015-03-03 15:12 - 2015-02-03 19:08 - 00414208 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
    2015-03-03 15:12 - 2015-02-02 19:11 - 01098752 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
    2015-03-03 15:12 - 2015-02-02 19:11 - 00894464 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
    2015-03-03 15:12 - 2015-02-02 19:11 - 00609280 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
    2015-03-03 15:12 - 2015-01-19 14:42 - 01487976 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
    2015-03-03 15:12 - 2014-12-02 19:09 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
    2015-03-02 22:09 - 2015-03-02 22:09 - 00000000 ____D () C:\ProgramData\Playrix Entertainment
    2015-03-02 14:50 - 2015-03-02 14:50 - 00000000 ____D () C:\Users\Kim\AppData\Local\Windows Live
    2015-03-02 13:54 - 2015-03-02 13:54 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf
    2015-03-02 13:43 - 2015-03-12 18:36 - 00000000 ___DC () C:\GameHouse Games
    2015-03-02 13:43 - 2015-03-02 13:43 - 00000000 ____D () C:\ProgramData\com.gamehouse.acid
    2015-03-02 11:57 - 2015-03-03 09:51 - 00000000 ___DC () C:\WINDOWS\Panther
    2015-03-02 11:47 - 2015-03-02 11:47 - 00535640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
    2015-03-02 11:47 - 2015-03-02 11:47 - 00531616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
    2015-03-02 11:47 - 2015-03-02 11:47 - 00448792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
    2015-03-02 11:47 - 2015-03-02 11:47 - 00413248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
    2015-03-02 11:47 - 2015-03-02 11:47 - 00372408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
    2015-03-02 11:47 - 2015-03-02 11:47 - 00229888 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
    2015-03-02 11:47 - 2015-03-02 11:47 - 00108944 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDump.dll
    2015-03-02 11:47 - 2015-03-02 11:47 - 00038264 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe
    2015-03-02 11:47 - 2015-03-02 11:47 - 00033584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe
    2015-03-02 11:46 - 2015-03-02 11:46 - 02819584 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll
    2015-03-02 11:46 - 2015-03-02 11:46 - 02171904 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll
    2015-03-02 11:46 - 2015-03-02 11:46 - 01091072 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR(84).dll
    2015-03-02 11:46 - 2015-03-02 11:46 - 00788680 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
    2015-03-02 11:46 - 2015-03-02 11:46 - 00672984 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe
    2015-03-02 11:46 - 2015-03-02 11:46 - 00602776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
    2015-03-02 11:46 - 2015-03-02 11:46 - 00463872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
    2015-03-02 11:46 - 2015-03-02 11:46 - 00273240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
    2015-03-02 11:46 - 2015-03-02 11:46 - 00116736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsDatabase.dll
    2015-03-02 11:45 - 2015-03-02 11:45 - 01970432 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
    2015-03-02 11:45 - 2015-03-02 11:45 - 01612992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
    2015-03-02 11:45 - 2015-03-02 11:45 - 00563504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
    2015-03-02 11:45 - 2015-03-02 11:45 - 00513488 _____ () C:\WINDOWS\SysWOW64\locale.nls
    2015-03-02 11:45 - 2015-03-02 11:45 - 00513488 _____ () C:\WINDOWS\system32\locale.nls
    2015-03-02 11:45 - 2015-03-02 11:45 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
    2015-03-02 11:45 - 2015-03-02 11:45 - 00391680 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
    2015-03-02 11:45 - 2015-03-02 11:45 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
    2015-03-02 11:45 - 2015-03-02 11:45 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll
    2015-03-02 11:45 - 2015-03-02 11:45 - 00225280 ____N (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
    2015-03-02 11:45 - 2015-03-02 11:45 - 00225280 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc(85).dll
    2015-03-02 11:45 - 2015-03-02 11:45 - 00177984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
    2015-03-02 11:45 - 2015-03-02 11:45 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWbPrxy.exe
    2015-03-02 11:45 - 2015-03-02 11:45 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSetupStatusProvider.dll
    2015-03-02 11:45 - 2015-03-02 11:45 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceSetupStatusProvider.dll
    2015-03-02 11:44 - 2015-03-02 11:44 - 00718848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
    2015-03-02 11:44 - 2015-03-02 11:44 - 00538624 _____ (Microsoft Corporation) C:\WINDOWS\system32\scesrv.dll
    2015-03-02 11:44 - 2015-03-02 11:44 - 00490496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll
    2015-03-02 11:44 - 2015-03-02 11:44 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll
    2015-03-02 11:44 - 2015-03-02 11:44 - 00417280 _____ (Microsoft Corporation) C:\WINDOWS\system32\html.iec
    2015-03-02 11:44 - 2015-03-02 11:44 - 00393728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scesrv.dll
    2015-03-02 11:44 - 2015-03-02 11:44 - 00340992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\html.iec
    2015-03-02 11:44 - 2015-03-02 11:44 - 00327168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
    2015-03-02 11:44 - 2015-03-02 11:44 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
    2015-03-02 11:42 - 2015-03-02 11:42 - 00285184 ____N (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll
    2015-03-02 11:42 - 2015-03-02 11:42 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64(87).dll
    2015-03-02 11:42 - 2015-03-02 11:42 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
    2015-03-02 11:42 - 2015-03-02 11:42 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
    2015-03-02 11:42 - 2015-03-02 11:42 - 00075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ahcache.sys
    2015-03-02 11:42 - 2015-03-02 11:42 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setup16.exe
    2015-03-02 11:42 - 2015-03-02 11:42 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntvdm64.dll
    2015-03-02 11:42 - 2015-03-02 11:42 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntvdm64.dll
    2015-03-02 11:42 - 2015-03-02 11:42 - 00013312 ____N (Microsoft Corporation) C:\WINDOWS\system32\wow64cpu.dll
    2015-03-02 11:42 - 2015-03-02 11:42 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64cpu(88).dll
    2015-03-02 11:42 - 2015-03-02 11:42 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\instnm.exe
    2015-03-02 11:42 - 2015-03-02 11:42 - 00005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wow32.dll
    2015-03-02 11:42 - 2015-03-02 11:42 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user.exe
    2015-03-02 11:41 - 2015-03-02 11:41 - 00262144 _____ () C:\WINDOWS\system32\config\userdiff
    2015-03-02 11:38 - 2015-03-02 11:38 - 00000000 ____D () C:\Program Files\Reference Assemblies
    2015-03-02 11:38 - 2015-03-02 11:38 - 00000000 ____D () C:\Program Files\MSBuild
    2015-03-02 11:38 - 2015-03-02 11:38 - 00000000 ____D () C:\Program Files (x86)\Reference Assemblies
    2015-03-02 11:38 - 2015-03-02 11:38 - 00000000 ____D () C:\Program Files (x86)\MSBuild
    2015-03-02 11:38 - 2015-03-02 11:38 - 00000000 ____D () C:\inetpub
    2015-03-02 11:37 - 2013-08-03 00:48 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
    2015-03-02 11:37 - 2013-08-03 00:48 - 00124112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
    2015-03-02 11:37 - 2013-08-03 00:41 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
    2015-03-02 11:37 - 2013-08-03 00:41 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
    2015-03-02 10:03 - 2015-03-02 10:03 - 00000000 __SHD () C:\Users\Kim\AppData\Local\EmieUserList
    2015-03-02 10:03 - 2015-03-02 10:03 - 00000000 __SHD () C:\Users\Kim\AppData\Local\EmieSiteList
    2015-03-02 10:03 - 2015-03-02 10:03 - 00000000 __SHD () C:\Users\Kim\AppData\Local\EmieBrowserModeList
    2015-03-02 10:00 - 2015-03-02 10:00 - 00003886 _____ () C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
    2015-03-02 09:53 - 2015-03-02 10:02 - 00000000 ____D () C:\Users\Kim\AppData\Local\PackageStaging
    2015-03-02 09:52 - 2015-03-02 09:52 - 00001446 _____ () C:\Users\Kim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
    2015-03-02 09:51 - 2015-03-02 09:51 - 00000020 ___SH () C:\Users\Kim\ntuser.ini
    2015-03-02 09:46 - 2015-03-02 09:46 - 00022744 _____ () C:\WINDOWS\system32\emptyregdb.dat
    2015-03-02 09:24 - 2015-03-02 09:24 - 00001547 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
    2015-03-02 09:24 - 2015-03-02 09:24 - 00000000 ____D () C:\Users\Default\Documents\hp.system.package.metadata
    2015-03-02 09:24 - 2015-03-02 09:24 - 00000000 ____D () C:\Users\Default User\Documents\hp.system.package.metadata
    2015-03-02 09:17 - 2015-03-02 09:17 - 00000000 ____D () C:\WINDOWS\system32\config\bbimigrate
    2015-03-02 09:15 - 2015-03-12 19:40 - 00000000 ____D () C:\Users\Kim
    2015-03-02 09:15 - 2015-03-12 18:38 - 00000000 ____D () C:\Users\Administrator
    2015-03-02 09:15 - 2015-03-02 09:46 - 00036198 _____ () C:\WINDOWS\diagwrn.xml
    2015-03-02 09:15 - 2015-03-02 09:46 - 00036198 _____ () C:\WINDOWS\diagerr.xml
    2015-03-02 09:15 - 2015-03-02 09:17 - 00000000 ___RD () C:\Users\Kim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
    2015-03-02 09:15 - 2015-03-02 09:16 - 00000000 ___RD () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
    2015-03-02 09:15 - 2014-11-21 11:57 - 00000000 ___RD () C:\Users\Kim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
    2015-03-02 09:15 - 2014-11-21 11:57 - 00000000 ___RD () C:\Users\Kim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
    2015-03-02 09:15 - 2014-11-21 11:57 - 00000000 ___RD () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
    2015-03-02 09:15 - 2014-11-21 11:57 - 00000000 ___RD () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
    2015-03-02 09:15 - 2014-11-21 04:52 - 00000369 _____ () C:\Users\Kim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
    2015-03-02 09:15 - 2014-11-21 04:52 - 00000369 _____ () C:\Users\Kim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
    2015-03-02 09:15 - 2014-11-21 04:52 - 00000369 _____ () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
    2015-03-02 09:15 - 2014-11-21 04:52 - 00000369 _____ () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
    2015-03-02 09:15 - 2013-08-22 11:36 - 00000000 ____D () C:\Users\Kim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
    2015-03-02 09:15 - 2013-08-22 11:36 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
    2015-03-02 09:09 - 2015-03-02 09:09 - 00930400 _____ () C:\WINDOWS\SysWOW64\PerfStringBackup.INI
    2015-03-02 09:07 - 2015-03-02 09:17 - 00012096 _____ () C:\WINDOWS\iis.log
    2015-03-02 09:04 - 2015-03-12 18:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
    2015-03-02 09:04 - 2015-03-12 18:36 - 00000000 ____D () C:\Program Files\ATI Technologies
    2015-03-02 09:04 - 2015-03-07 20:58 - 00000000 ____D () C:\ProgramData\AMD
    2015-03-02 09:04 - 2015-03-02 09:04 - 00060601 _____ () C:\WINDOWS\SysWOW64\CCCInstall_201503020804541329.log
    2015-03-02 09:03 - 2015-03-14 17:47 - 01859098 _____ () C:\WINDOWS\WindowsUpdate.log
    2015-03-02 09:03 - 2015-03-14 11:02 - 00000000 ____D () C:\ProgramData\Package Cache
    2015-03-02 09:03 - 2015-03-12 18:36 - 00000000 ____D () C:\Program Files (x86)\ATI Technologies
    2015-03-02 09:03 - 2015-03-02 09:03 - 00000264 _____ () C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job
    2015-03-02 09:03 - 2015-03-02 09:03 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_SynTP_01009.Wdf
    2015-03-02 09:02 - 2015-03-12 18:36 - 00000000 ____D () C:\Program Files\AMD
    2015-03-02 09:02 - 2015-03-02 09:02 - 00000000 ____D () C:\Program Files\Synaptics
    2015-03-02 09:02 - 2015-03-02 09:02 - 00000000 ____D () C:\Program Files\Common Files\ATI Technologies
    2015-03-02 09:02 - 2015-03-02 09:02 - 00000000 _____ () C:\WINDOWS\ativpsrm.bin
    2015-03-02 09:01 - 2015-03-02 09:26 - 00000000 ____D () C:\Program Files\IDT
    2015-03-02 09:01 - 2015-03-02 09:01 - 00000000 ____D () C:\WINDOWS\system32\SRSLabs
    2015-03-02 09:01 - 2012-08-20 01:45 - 06085632 _____ (IDT, Inc.) C:\WINDOWS\system32\stlang64.dll
    2015-03-02 09:01 - 2012-08-20 01:45 - 01821184 _____ (IDT, Inc.) C:\WINDOWS\system32\IDTNC64.cpl
    2015-03-02 09:01 - 2012-08-20 01:45 - 01664000 _____ (IDT, Inc.) C:\WINDOWS\sttray64.exe
    2015-03-02 09:01 - 2011-05-02 18:27 - 03308376 _____ (Dolby Laboratories) C:\WINDOWS\system32\EEP64A.dll
    2015-03-02 09:01 - 2011-05-02 18:27 - 00426328 _____ (Dolby Laboratories) C:\WINDOWS\system32\EED64A.dll
    2015-03-02 09:01 - 2011-05-02 18:27 - 00136024 _____ (Dolby Laboratories) C:\WINDOWS\system32\EEL64A.dll
    2015-03-02 09:01 - 2011-05-02 18:27 - 00118104 _____ (Dolby Laboratories) C:\WINDOWS\system32\EEA64A.dll
    2015-03-02 04:35 - 2015-03-02 09:46 - 00006588 _____ () C:\WINDOWS\comsetup.log
    2015-03-01 22:42 - 2015-03-01 22:42 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
    2015-03-01 22:42 - 2015-03-01 22:42 - 00001979 _____ () C:\Users\Public\Desktop\Adobe Reader XI.lnk
    2015-03-01 22:40 - 2015-03-02 09:54 - 00000000 ____D () C:\ProgramData\Adobe
    2015-03-01 22:40 - 2015-03-01 22:40 - 00000000 ____D () C:\Program Files (x86)\Adobe
    2015-03-01 21:57 - 2015-03-02 10:20 - 00000000 ____D () C:\Users\Kim\AppData\Local\Adobe
    2015-03-01 21:15 - 2015-03-01 21:15 - 00000000 ____D () C:\Users\Public\Documents\Research Theory
    2015-03-01 20:33 - 2015-03-01 21:58 - 00000759 _____ () C:\Users\Kim\AppData\Roaming\Microsoft\Windows\Start Menu\Login Here – Blackboard Learn.website
    2015-03-01 20:32 - 2015-03-01 20:32 - 00000520 _____ () C:\Users\Kim\AppData\Roaming\Microsoft\Windows\Start Menu\msn.website
    2015-03-01 19:38 - 2015-03-14 19:14 - 00000000 ____D () C:\Users\Kim\Desktop\computer
    2015-03-01 18:07 - 2015-03-01 18:07 - 00000000 ___DC () C:\Refresh
    2015-03-01 14:12 - 2015-03-14 13:12 - 00000528 _____ () C:\WINDOWS\Tasks\SUPERAntiSpyware Scheduled Task 93d9c2e7-1df1-4930-88b1-0cee64e3e403.job
    2015-03-01 14:12 - 2015-03-14 02:00 - 00000528 _____ () C:\WINDOWS\Tasks\SUPERAntiSpyware Scheduled Task cfb32e7b-aaab-4a89-b196-4f4fb96ff71e.job
    2015-03-01 14:12 - 2015-03-01 14:12 - 00003586 _____ () C:\WINDOWS\System32\Tasks\SUPERAntiSpyware Scheduled Task cfb32e7b-aaab-4a89-b196-4f4fb96ff71e
    2015-03-01 14:12 - 2015-03-01 14:12 - 00003504 _____ () C:\WINDOWS\System32\Tasks\SUPERAntiSpyware Scheduled Task 93d9c2e7-1df1-4930-88b1-0cee64e3e403
    2015-03-01 14:12 - 2015-03-01 14:12 - 00000000 ____D () C:\Users\Kim\AppData\Roaming\SUPERAntiSpyware.com
    2015-03-01 14:09 - 2015-03-07 14:15 - 00000000 ____D () C:\Program Files\SUPERAntiSpyware
    2015-03-01 14:09 - 2015-03-02 09:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
    2015-03-01 14:09 - 2015-03-01 14:09 - 00000000 ____D () C:\ProgramData\SUPERAntiSpyware.com
    2015-03-01 14:05 - 2015-03-01 14:05 - 00000000 ____D () C:\ProgramData\Malwarebytes
    2015-03-01 13:58 - 2015-03-14 19:14 - 00000000 ___DC () C:\FRST
    2015-03-01 13:57 - 2015-03-01 13:58 - 02092544 _____ (Farbar) C:\Users\Kim\Downloads\FRST64.exe
    2015-03-01 11:56 - 2015-03-12 20:00 - 00000000 ___DC () C:\FixMeStick
    2015-03-01 10:12 - 2015-03-01 10:12 - 00000000 ____D () C:\ProgramData\Microsoft SkyDrive
    2015-03-01 10:04 - 2015-03-01 10:04 - 00001120 _____ () C:\Users\Kim\Desktop\Documents - Shortcut.lnk
    2015-02-28 23:04 - 2015-03-04 18:18 - 00000000 ___RD () C:\Users\Kim\Documents\HP stuff
    2015-02-28 22:57 - 2015-03-11 15:02 - 00007599 _____ () C:\Users\Kim\AppData\Local\Resmon.ResmonCfg
    2015-02-28 21:23 - 2015-02-28 21:23 - 00000000 ____D () C:\Users\Kim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
    2015-02-28 19:08 - 2015-02-28 22:21 - 00000000 ____D () C:\WINDOWS\pss
    2015-02-28 12:49 - 2015-03-01 22:29 - 00000000 ____C () C:\Recovery.txt
    2015-02-27 22:24 - 2015-03-02 09:22 - 00000000 ____D () C:\WINDOWS\system32\%LOCALAPPDATA%
    2015-02-27 21:19 - 2015-03-01 09:50 - 00000000 ____D () C:\Users\Kim\AppData\Local\CrashDumps
    2015-02-27 19:54 - 2015-02-27 19:57 - 00000000 ____D () C:\ProgramData\Oracle
    2015-02-27 19:42 - 2015-02-27 19:53 - 30431144 _____ (Oracle Corporation) C:\Users\Kim\Downloads\jre-8u31-windows-i586.exe
    2015-02-26 12:32 - 2015-03-03 18:29 - 00000000 ____D () C:\WINDOWS\system32\AutoUpdateLicense
    2015-02-26 11:12 - 2015-02-26 11:13 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Kim\Downloads\mbam-setup-2.0.4.1028 (1).exe
    2015-02-26 11:12 - 2015-02-26 11:12 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Kim\Downloads\mbam-setup-2.0.4.1028.exe
    2015-02-26 09:05 - 2015-02-26 09:05 - 09890008 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RsCRIcon.dll
    2015-02-26 09:05 - 2015-02-26 09:05 - 00294104 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RtsP2Stor.sys
    2015-02-26 09:03 - 2015-02-26 09:03 - 00874712 _____ (Realtek ) C:\WINDOWS\system32\Drivers\Rt630x64.sys
    2015-02-26 09:03 - 2015-02-26 09:03 - 00073800 _____ (Realtek Semiconductor Corporation) C:\WINDOWS\system32\RtNicProp64.dll
    2015-02-26 09:02 - 2015-02-26 09:02 - 03915264 _____ (Qualcomm Atheros Communications, Inc.) C:\WINDOWS\system32\Drivers\athw8x.sys
    2015-02-26 09:02 - 2015-02-26 09:02 - 00081608 _____ (Advanced Micro Devices) C:\WINDOWS\system32\Drivers\amd_sata.sys
    2015-02-26 09:02 - 2015-02-26 09:02 - 00025800 _____ (Advanced Micro Devices) C:\WINDOWS\system32\Drivers\amd_xata.sys
    2015-02-26 09:01 - 2015-02-26 09:01 - 00043840 _____ (Hewlett-Packard Company) C:\WINDOWS\system32\Drivers\Accelerometer.sys
    2015-02-26 09:01 - 2015-02-26 09:01 - 00031040 _____ (Hewlett-Packard Company) C:\WINDOWS\system32\hpservice.exe
    2015-02-26 09:01 - 2015-02-26 09:01 - 00031040 _____ (Hewlett-Packard Company) C:\WINDOWS\system32\Drivers\hpdskflt.sys
    2015-02-26 09:01 - 2015-02-26 09:01 - 00021312 _____ (Hewlett-Packard Company) C:\WINDOWS\system32\accelerometerdll.DLL
    2015-02-26 09:01 - 2015-02-26 09:01 - 00018240 _____ (Hewlett-Packard Company) C:\WINDOWS\system32\HPMDPCoInst12.dll
    2015-02-26 08:56 - 2015-02-28 19:49 - 00002392 _____ () C:\WINDOWS\System32\Tasks\Uninstaller_SkipUac_Kim
    2015-02-26 08:56 - 2015-02-26 13:51 - 00002850 _____ () C:\WINDOWS\System32\Tasks\Driver Booster SkipUAC (Kim)
    2015-02-26 08:56 - 2015-02-26 08:56 - 00026528 _____ (REALiX(tm)) C:\WINDOWS\SysWOW64\Drivers\HWiNFO64A.SYS
    2015-02-26 08:55 - 2015-02-28 19:49 - 00000296 _____ () C:\WINDOWS\Tasks\Uninstaller_SkipUac_Kim.job
    2015-02-26 08:55 - 2015-02-26 08:55 - 00000000 ____D () C:\Users\Kim\AppData\Roaming\Apple Computer
    2015-02-26 08:23 - 2015-02-28 22:21 - 00000000 ____D () C:\Users\Kim\AppData\Roaming\ProductData
    2015-02-26 08:22 - 2015-02-28 22:22 - 00000000 ____D () C:\ProgramData\ProductData
    2015-02-26 08:22 - 2015-02-26 08:55 - 00003184 _____ () C:\WINDOWS\System32\Tasks\ASC8_PerformanceMonitor
    2015-02-26 08:19 - 2015-02-28 22:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare 8
    2015-02-26 08:19 - 2015-02-28 22:22 - 00000000 ____D () C:\ProgramData\IObit
    2015-02-26 08:19 - 2015-02-28 22:21 - 00000000 ____D () C:\Users\Kim\AppData\Roaming\IObit
    2015-02-26 08:19 - 2015-02-26 13:55 - 00000000 ____D () C:\Program Files (x86)\IObit
    2015-02-26 08:19 - 2015-02-26 12:22 - 00000260 _____ () C:\WINDOWS\Tasks\ASC8_SkipUac_Kim.job
    2015-02-26 08:19 - 2015-02-26 08:19 - 00002356 _____ () C:\WINDOWS\System32\Tasks\ASC8_SkipUac_Kim
    2015-02-26 08:19 - 2015-02-26 08:19 - 00000000 ____D () C:\WINDOWS\Tasks\ImCleanDisabled
    2015-02-26 08:19 - 2015-02-26 08:19 - 00000000 ____D () C:\ProgramData\{BAF091CA-86C4-4627-ADA1-897E2621C1B0}
    2015-02-26 07:19 - 2015-02-26 14:10 - 00000000 ____D () C:\Program Files\Google
    2015-02-26 07:07 - 2015-02-26 07:07 - 00000000 ____D () C:\Program Files\AVAST Software
    2015-02-26 07:06 - 2015-03-14 11:08 - 00000000 ____D () C:\ProgramData\AVAST Software
    2015-02-25 20:42 - 2015-02-28 22:21 - 00000000 ____D () C:\Users\Kim\Downloads\SysinternalsSuite
    2015-02-25 20:42 - 2015-02-25 21:10 - 00256056 _____ () C:\Users\Kim\Downloads\BT5R3-KDE-64.torrent
    2015-02-25 20:42 - 2015-02-25 20:42 - 00252688 _____ () C:\Users\Kim\Downloads\BT5R3-GNOME-64.torrent
    2015-02-25 20:34 - 2015-02-25 20:42 - 13946571 _____ () C:\Users\Kim\Downloads\SysinternalsSuite.zip
    2015-02-25 20:30 - 2015-02-25 20:30 - 00000000 ____D () C:\Users\Kim\AppData\Local\Avg2015
    2015-02-25 20:24 - 2015-02-28 22:22 - 00000000 ____D () C:\ProgramData\MFAData
    2015-02-25 20:24 - 2015-02-25 20:24 - 00000000 ____D () C:\Users\Kim\AppData\Local\MFAData
    2015-02-25 20:24 - 2015-02-25 20:24 - 00000000 ____D () C:\Users\Kim\AppData\Local\Avg2014
    2015-02-25 11:08 - 2015-02-25 11:10 - 00000000 ____D () C:\Users\Public\Documents\SCHOOL
    2015-02-24 21:56 - 2015-03-14 19:09 - 00132608 ___SH () C:\Users\Kim\Desktop\Thumbs.db
    2015-02-24 21:14 - 2015-02-28 22:22 - 00000000 ____D () C:\Users\Kim\AppData\Local\Intel
    2015-02-24 21:09 - 2015-02-24 21:11 - 02333416 _____ (Intel) C:\Users\Kim\Downloads\Intel Driver Update Utility Installer.exe
    2015-02-24 20:36 - 2015-03-02 14:42 - 00000000 ____D () C:\Users\Kim\Downloads\Junk
    2015-02-24 20:19 - 2015-02-24 20:19 - 00000000 ____D () C:\Program Files (x86)\Shockwave.com
    2015-02-24 12:14 - 2015-01-29 04:30 - 00011056 ____N () C:\WINDOWS\system32\AutoconfigV2.cab
    2015-02-23 20:39 - 2015-03-03 18:26 - 00000000 ____D () C:\WINDOWS\system32\appraiser
    2015-02-23 13:58 - 2015-03-07 18:45 - 00000000 ____D () C:\WINDOWS\system32\MRT
    2015-02-23 13:58 - 2015-03-07 18:38 - 122905848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
    2015-02-23 10:31 - 2015-02-23 10:31 - 00000000 __HDC () C:\OneDriveTemp
    2015-02-23 09:59 - 2015-02-23 09:59 - 00000000 ____D () C:\Users\Kim\AppData\Local\AppEx Networks
    2015-02-22 21:43 - 2015-03-12 18:38 - 00065536 _____ () C:\WINDOWS\system32\spu_storage.bin
    2015-02-22 21:27 - 2015-02-22 21:27 - 00000000 ____D () C:\Users\Kim\AppData\Roaming\library_dir
    2015-02-22 21:16 - 2015-03-12 18:14 - 00000000 ____D () C:\Program Files (x86)\AMD AVT
    2015-02-22 21:16 - 2015-02-22 21:16 - 00061432 _____ () C:\WINDOWS\SysWOW64\CCCInstall_201502222016077630.log
    2015-02-22 19:38 - 2015-02-22 19:38 - 00004096 _____ () C:\WINDOWS\d3dx.dat
    2015-02-22 10:15 - 2015-02-22 10:15 - 00002533 _____ () C:\Users\Kim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IBM SPSS Statistics 22.lnk
    2015-02-21 23:44 - 2013-05-04 00:51 - 00014848 ____N (Microsoft) C:\WINDOWS\system32\rars.rs
    2015-02-21 23:44 - 2013-05-04 00:10 - 00014848 ____N (Microsoft) C:\WINDOWS\SysWOW64\rars.rs
    2015-02-21 21:07 - 2015-03-12 18:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GameHouse
    2015-02-21 21:02 - 2015-03-12 18:36 - 00000000 ____D () C:\Users\Kim\AppData\Local\com.gamehouse.acid
    2015-02-21 19:44 - 2015-03-14 12:07 - 00004972 _____ () C:\WINDOWS\System32\Tasks\Microsoft Office 15 Sync Maintenance for KIMSOFFICE-Kim Kimsoffice
    2015-02-21 17:56 - 2015-03-03 20:42 - 00000000 ____D () C:\Program Files (x86)\Google
    2015-02-21 17:56 - 2015-02-26 13:53 - 00000000 ____D () C:\Users\Kim\AppData\Local\Google
    2015-02-21 17:55 - 2015-02-21 17:55 - 00000000 ____D () C:\Users\Kim\AppData\Local\Apps\2.0
    2015-02-21 17:34 - 2015-02-21 17:34 - 00000000 ____D () C:\Users\Kim\AppData\Roaming\SPSSInc
    2015-02-21 17:33 - 2015-02-21 17:33 - 00000000 ____D () C:\Users\Kim\AppData\Local\javasharedresources
    2015-02-21 16:57 - 2015-02-21 16:57 - 00000000 ____D () C:\Users\Kim\AppData\Local\IBM
    2015-02-21 16:57 - 2015-02-21 16:57 - 00000000 ____D () C:\ProgramData\SafeNet Sentinel
    2015-02-21 16:56 - 2015-03-02 09:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IBM SPSS Statistics
    2015-02-21 16:56 - 2015-02-28 22:22 - 00000000 ____D () C:\ProgramData\SPSS
    2015-02-21 16:55 - 2015-02-28 22:31 - 00000000 ____D () C:\Program Files\Common Files\IBM
    2015-02-21 16:54 - 2015-02-21 16:54 - 00001025 _____ () C:\WINDOWS\SysWOW64\sysprs7.tgz
    2015-02-21 16:54 - 2015-02-21 16:54 - 00001025 _____ () C:\WINDOWS\SysWOW64\sysprs7.dll
    2015-02-21 16:54 - 2015-02-21 16:54 - 00000219 _____ () C:\WINDOWS\SysWOW64\lsprst7.tgz
    2015-02-21 16:54 - 2015-02-21 16:54 - 00000205 _____ () C:\WINDOWS\SysWOW64\lsprst7.dll
    2015-02-21 16:54 - 2015-02-21 16:54 - 00000016 ____H () C:\WINDOWS\SysWOW64\servdat.slm
    2015-02-21 16:54 - 2015-02-21 16:54 - 00000000 ____D () C:\Program Files\IBM
    2015-02-21 16:47 - 2015-02-28 22:21 - 00000000 ____D () C:\Users\Kim\Downloads\IBM SPSS Statistics 22 for Windows 64-bit
    2015-02-21 16:44 - 2015-02-21 16:59 - 00000000 ____D () C:\Users\Kim\AppData\Local\Big Fish
    2015-02-21 15:37 - 2015-02-21 15:37 - 00004088 _____ () C:\WINDOWS\System32\Tasks\Open URL by RoboForm
    2015-02-21 15:37 - 2015-02-21 15:37 - 00003492 _____ () C:\WINDOWS\System32\Tasks\Run RoboForm TaskBar Icon
    2015-02-21 15:35 - 2015-03-02 09:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RoboForm
    2015-02-21 15:35 - 2015-02-21 15:35 - 00000000 ____D () C:\Users\Kim\AppData\Roaming\RoboForm
    2015-02-21 15:35 - 2015-02-21 15:35 - 00000000 ____D () C:\ProgramData\RoboForm
    2015-02-21 15:35 - 2015-02-21 15:35 - 00000000 ____D () C:\Program Files (x86)\Siber Systems
    2015-02-21 12:06 - 2015-02-21 12:06 - 00003096 _____ () C:\WINDOWS\System32\Tasks\{973AE1C8-B6AA-400F-B1ED-41B8E3220234}
    2015-02-21 11:51 - 2015-02-24 22:50 - 00000000 ____D () C:\Users\Kim\AppData\Roaming\hpqlog
    2015-02-21 11:51 - 2015-02-21 11:51 - 00000000 ____D () C:\Users\Kim\AppData\Local\Stardock
    2015-02-21 11:51 - 2015-02-21 11:51 - 00000000 ____D () C:\ProgramData\Stardock
    2015-02-21 11:44 - 2015-03-12 18:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
    2015-02-21 11:44 - 2015-03-12 18:36 - 00000000 ____D () C:\Program Files (x86)\Java
    2015-02-21 11:44 - 2015-03-07 11:38 - 00098216 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
    2015-02-21 11:44 - 2015-02-21 11:44 - 00000000 ____D () C:\ProgramData\Sun
    2015-02-21 11:20 - 2015-01-06 19:05 - 00465640 _____ (myradioplayer) C:\WINDOWS\system32\myradioplayer64.dll
    2015-02-21 10:56 - 2015-02-21 10:56 - 00000000 ____D () C:\Users\Kim\AppData\Roaming\e-academy Inc
    2015-02-21 10:52 - 2015-03-04 18:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
    2015-02-21 10:23 - 2015-02-21 12:07 - 00000000 ____D () C:\Program Files\Microsoft Office 15
    2015-02-21 09:54 - 2015-03-14 11:58 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3303695090-1817798212-3423905771-1002
    2015-02-21 09:51 - 2015-02-21 09:51 - 00000000 ____D () C:\Users\Kim\AppData\Roaming\Macromedia
    2015-02-21 09:47 - 2015-02-21 09:47 - 00000000 ____D () C:\Users\Kim\AppData\Roaming\ATI
    2015-02-21 09:47 - 2015-02-21 09:47 - 00000000 ____D () C:\Users\Kim\AppData\Local\ATI
    2015-02-21 09:47 - 2015-02-21 09:47 - 00000000 ____D () C:\Users\Kim\AppData\Local\AMD
    2015-02-21 09:46 - 2015-03-07 16:23 - 00000000 ____D () C:\WINDOWS\System32\Tasks\WPD
    2015-02-21 09:46 - 2015-02-21 11:51 - 00000000 ____D () C:\Users\Kim\AppData\Local\Hewlett-Packard
    2015-02-21 09:45 - 2015-03-14 16:47 - 00003926 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{68230B0E-0198-4435-BC19-C95F862EB16B}
    2015-02-21 09:45 - 2015-03-02 10:20 - 00000000 ____D () C:\Users\Kim\AppData\Roaming\Adobe
    2015-02-21 09:45 - 2015-03-02 09:22 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Shopping and Services
    2015-02-21 09:43 - 2015-02-21 09:43 - 00000141 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.64.bc
    2015-02-21 09:42 - 2015-03-12 18:20 - 00000000 ____D () C:\Users\Kim\AppData\Local\Packages
    2015-02-21 09:42 - 2015-02-22 16:20 - 00000000 ____D () C:\Users\Kim\AppData\Local\VirtualStore
    2015-02-21 09:42 - 2015-02-21 11:51 - 00000000 ____D () C:\Users\Kim\AppData\Roaming\Hewlett-Packard
    2015-02-21 09:42 - 2015-02-21 09:42 - 00000000 ____D () C:\Users\Kim\AppData\Roaming\Synaptics
    2015-02-21 09:40 - 2015-03-02 08:27 - 01871323 _____ () C:\WINDOWS\WindowsUpdate (1).log
    2015-02-21 09:40 - 2015-02-22 00:19 - 00000000 ____D () C:\WINDOWS\softwaredistribution.bak
    2015-02-21 09:29 - 2015-02-21 09:29 - 00000110 ____C () C:\CTOERROR.flg
    2015-02-21 09:26 - 2015-02-21 09:26 - 00002314 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3303695090-1817798212-3423905771-500
    2015-02-21 09:24 - 2015-02-21 09:24 - 332690624 _____ () C:\WINDOWS\MEMORY.DMP
    2015-02-14 17:18 - 2015-02-14 17:18 - 00000000 ____D () C:\Users\Public\Documents\Real
    2015-02-12 06:21 - 2015-02-12 06:21 - 00829264 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcr100.dll
    2015-02-12 06:21 - 2015-02-12 06:21 - 00608080 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp100.dll
    2015-02-12 05:05 - 2015-02-12 05:05 - 00773968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr100.dll
    2015-02-12 05:05 - 2015-02-12 05:05 - 00421200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp100.dll

    ==================== One Month Modified Files and Folders =======

    (If an entry is included in the fixlist, the file\folder will be moved.)

    2015-03-14 19:00 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\system32\sru
    2015-03-14 12:46 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\AppReadiness
    2015-03-14 11:45 - 2014-09-17 10:39 - 00000000 ___DO () C:\Users\Kim\OneDrive
    2015-03-14 11:42 - 2013-08-22 10:46 - 00336379 _____ () C:\WINDOWS\setupact.log
    2015-03-14 11:42 - 2013-08-22 10:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
    2015-03-14 11:41 - 2013-08-22 09:25 - 00524288 ___SH () C:\WINDOWS\system32\config\BBI
    2015-03-14 11:13 - 2014-11-21 04:44 - 00956476 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
    2015-03-14 11:08 - 2014-11-21 04:34 - 00311798 _____ () C:\WINDOWS\PFRO.log
    2015-03-13 21:42 - 2013-08-22 10:44 - 00492000 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
    2015-03-13 21:40 - 2013-08-22 11:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
    2015-03-13 21:40 - 2013-08-22 11:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
    2015-03-13 21:40 - 2013-08-22 11:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
    2015-03-13 21:39 - 2013-08-22 11:36 - 00000000 ___RD () C:\WINDOWS\ToastData
    2015-03-13 21:39 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\WinStore
    2015-03-13 21:39 - 2013-08-22 11:36 - 00000000 ____D () C:\Program Files\Windows Defender
    2015-03-13 21:39 - 2013-08-22 11:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
    2015-03-13 21:39 - 2012-07-26 03:59 - 00000000 ____D () C:\WINDOWS\CbsTemp
    2015-03-13 21:10 - 2015-01-18 18:40 - 00000000 ____D () C:\Users\Kim\Desktop\Games
    2015-03-12 18:38 - 2013-08-22 11:36 - 00000000 __RSD () C:\WINDOWS\Media
    2015-03-12 18:38 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\PolicyDefinitions
    2015-03-12 18:23 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\registration
    2015-03-12 18:15 - 2013-02-25 12:47 - 00000000 ____D () C:\Program Files\ATI
    2015-03-12 18:14 - 2014-04-22 16:22 - 00000000 ___DC () C:\AMD
    2015-03-12 18:14 - 2014-04-14 12:23 - 00000000 _RHDC () C:\MSOCache
    2015-03-12 09:08 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\system32\NDF
    2015-03-07 19:00 - 2013-08-22 09:25 - 00524288 ___SH () C:\WINDOWS\system32\config\BBI(82)
    2015-03-07 18:59 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\setup
    2015-03-07 18:59 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\inetsrv
    2015-03-07 18:59 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\system32\setup
    2015-03-07 18:59 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\system32\inetsrv
    2015-03-06 15:18 - 2012-07-26 04:12 - 00000000 ____D () C:\WINDOWS\LiveKernelReports
    2015-03-06 13:34 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\rescache
    2015-03-03 18:27 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\system32\sr-Latn-RS
    2015-03-03 18:27 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\system32\sr-Latn-CS
    2015-03-03 18:26 - 2014-11-21 11:56 - 00000000 ___SD () C:\WINDOWS\system32\CompatTel
    2015-03-03 18:16 - 2013-08-22 11:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
    2015-03-03 18:11 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\system32\restore
    2015-03-02 11:57 - 2014-04-22 20:20 - 00000000 __SHD () C:\Recovery
    2015-03-02 11:56 - 2013-08-22 11:36 - 00262144 _____ () C:\WINDOWS\system32\config\BCD-Template
    2015-03-02 11:46 - 2013-08-22 11:36 - 00000000 ___RD () C:\WINDOWS\ImmersiveControlPanel
    2015-03-02 11:38 - 2014-11-21 05:16 - 00202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisRtl.dll
    2015-03-02 11:38 - 2014-11-21 05:16 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisRtl.dll
    2015-03-02 11:38 - 2014-11-21 05:16 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ahadmin.dll
    2015-03-02 11:38 - 2014-11-21 05:16 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\admwprox.dll
    2015-03-02 11:38 - 2014-11-21 05:16 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\admwprox.dll
    2015-03-02 11:38 - 2014-11-21 05:16 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ahadmin.dll
    2015-03-02 11:38 - 2014-11-21 05:16 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisreset.exe
    2015-03-02 11:38 - 2014-11-21 05:16 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisreset.exe
    2015-03-02 11:38 - 2014-11-21 05:16 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wamregps.dll
    2015-03-02 11:38 - 2014-11-21 05:16 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisrstap.dll
    2015-03-02 11:38 - 2014-11-21 05:16 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wamregps.dll
    2015-03-02 11:38 - 2014-11-21 05:16 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisrstap.dll
    2015-03-02 09:39 - 2013-08-22 11:36 - 00000000 __RHD () C:\Users\Public\Libraries
    2015-03-02 09:27 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\system32\AppLocker
    2015-03-02 09:27 - 2013-08-22 09:36 - 00000000 ____D () C:\WINDOWS\system32\Sysprep
    2015-03-02 09:26 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\system32\MsDtc
    2015-03-02 09:26 - 2013-08-22 09:25 - 00008192 ___SH () C:\WINDOWS\system32\config\ELAM
    2015-03-02 09:26 - 2013-02-25 13:11 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Communication and Chat
    2015-03-02 09:26 - 2013-02-25 13:03 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Productivity and Tools
    2015-03-02 09:26 - 2013-02-25 12:55 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
    2015-03-02 09:26 - 2012-12-01 17:56 - 00000000 ____D () C:\WINDOWS\en
    2015-03-02 09:24 - 2014-11-21 04:00 - 00000000 ____D () C:\WINDOWS\SysWOW64\WCN
    2015-03-02 09:24 - 2014-11-21 04:00 - 00000000 ____D () C:\WINDOWS\SysWOW64\sysprep
    2015-03-02 09:24 - 2014-11-21 04:00 - 00000000 ____D () C:\WINDOWS\system32\WCN
    2015-03-02 09:24 - 2013-08-22 11:37 - 00005217 _____ () C:\WINDOWS\DtcInstall.log
    2015-03-02 09:24 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\MUI
    2015-03-02 09:24 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\migwiz
    2015-03-02 09:24 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\Macromed
    2015-03-02 09:24 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\IME
    2015-03-02 09:24 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\system32\spool
    2015-03-02 09:24 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\system32\MUI
    2015-03-02 09:24 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\system32\IME
    2015-03-02 09:24 - 2013-08-22 09:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\SMI
    2015-03-02 09:24 - 2013-08-22 09:36 - 00000000 ____D () C:\WINDOWS\system32\oobe
    2015-03-02 09:24 - 2013-02-25 12:44 - 00000000 ____D () C:\WINDOWS\SysWOW64\sda
    2015-03-02 09:24 - 2012-12-01 17:52 - 00000000 ____D () C:\WINDOWS\SysWOW64\Adobe
    2015-03-02 09:24 - 2012-07-26 01:37 - 00000000 ____D () C:\Users\Default.migrated
    2015-03-02 09:22 - 2013-08-22 11:43 - 00000000 ____D () C:\WINDOWS\DigitalLocker
    2015-03-02 09:22 - 2013-08-22 11:36 - 00000000 __SHD () C:\Program Files (x86)\Windows Sidebar
    2015-03-02 09:22 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\Help
    2015-03-02 09:22 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\AppCompat
    2015-03-02 09:22 - 2012-12-01 18:02 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
    2015-03-02 09:22 - 2012-12-01 17:50 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security and Protection
    2015-03-02 09:22 - 2012-08-03 18:29 - 00000000 ____D () C:\ProgramData\PRICache
    2015-03-02 09:21 - 2013-08-22 11:36 - 00000000 __SHD () C:\Program Files\Windows Sidebar
    2015-03-02 09:17 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\system32\Recovery
    2015-03-02 09:16 - 2012-08-03 18:28 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Packages
    2015-03-02 09:00 - 2013-08-22 09:36 - 00000000 __RHD () C:\Users\Default
    2015-03-02 07:22 - 2012-07-26 04:12 - 00000000 ____D () C:\WINDOWS\AUInstallAgent
    2015-02-28 22:22 - 2013-02-25 13:27 - 00000000 ____D () C:\ProgramData\Norton
    2015-02-28 22:22 - 2012-12-01 17:59 - 00000000 ____D () C:\ProgramData\Hewlett-Packard
    2015-02-28 22:22 - 2012-12-01 17:46 - 00000000 ____D () C:\ProgramData\Temp
    2015-02-26 14:06 - 2013-02-25 12:55 - 00000000 ____D () C:\Program Files (x86)\HP Games
    2015-02-26 14:05 - 2013-02-25 12:55 - 00000000 ____D () C:\Program Files (x86)\WildTangent Games
    2015-02-26 14:04 - 2013-02-25 12:55 - 00000000 ____D () C:\ProgramData\WildTangent
    2015-02-26 12:35 - 2012-07-26 04:12 - 00000000 ___HD () C:\WINDOWS\ELAMBKUP
    2015-02-24 22:52 - 2012-12-01 17:42 - 00000000 ____D () C:\Program Files (x86)\Hewlett-Packard
    2015-02-24 22:49 - 2012-12-01 17:46 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
    2015-02-24 22:44 - 2012-12-01 17:48 - 00000000 ____D () C:\Program Files (x86)\CyberLink
    2015-02-24 21:56 - 2014-08-22 15:06 - 00000000 ____D () C:\Users\Public\Downloads\Norton
    2015-02-24 20:35 - 2014-08-01 11:09 - 00584192 ___SH () C:\Users\Kim\Downloads\Thumbs.db
    2015-02-21 20:27 - 2012-12-01 17:52 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
    2015-02-21 10:30 - 2014-04-14 02:02 - 01382640 ____C () C:\WindowsNIRMALA.tt2
    2015-02-21 10:30 - 2014-04-14 02:02 - 01334012 ____C () C:\WindowsNIRMALAB.tt2
    2015-02-21 09:45 - 2012-08-03 20:02 - 00000000 ___HD () C:\SYSTEM.SAV
    2015-02-20 22:34 - 2014-04-14 12:42 - 00000000 ____D () C:\Users\Public\Documents\stuff
    2015-02-16 13:13 - 2014-05-18 14:04 - 00000000 ____D () C:\Users\Public\Documents\GRM
    2015-02-14 09:24 - 2014-04-14 07:49 - 00000000 ____D () C:\Users\Public\Documents\Keiser

    ==================== Files in the root of some directories =======

    2015-02-28 22:57 - 2015-03-11 15:02 - 0007599 _____ () C:\Users\Kim\AppData\Local\Resmon.ResmonCfg
    2015-02-21 09:43 - 2015-02-21 09:43 - 0000141 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.64.bc

    Some content of TEMP:
    ====================
    C:\Users\Kim\AppData\Local\Temp\amd-catalyst-omega-14.12-without-dotnet45-win8.1-64bit.exe
    C:\Users\Kim\AppData\Local\Temp\AutoDetectUtilApp.exe
    C:\Users\Kim\AppData\Local\Temp\avgnt.exe
    C:\Users\Kim\AppData\Local\Temp\Quarantine.exe
    C:\Users\Kim\AppData\Local\Temp\sqlite3.dll


    ==================== Bamital & volsnap Check =================

    (There is no automatic fix for files that do not pass verification.)

    C:\Windows\System32\winlogon.exe => File is digitally signed
    C:\Windows\System32\wininit.exe => File is digitally signed
    C:\Windows\explorer.exe => File is digitally signed
    C:\Windows\SysWOW64\explorer.exe => File is digitally signed
    C:\Windows\System32\svchost.exe => File is digitally signed
    C:\Windows\SysWOW64\svchost.exe => File is digitally signed
    C:\Windows\System32\services.exe => File is digitally signed
    C:\Windows\System32\User32.dll => File is digitally signed
    C:\Windows\SysWOW64\User32.dll => File is digitally signed
    C:\Windows\System32\userinit.exe => File is digitally signed
    C:\Windows\SysWOW64\userinit.exe => File is digitally signed
    C:\Windows\System32\rpcss.dll => File is digitally signed
    C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


    LastRegBack: 2015-03-03 20:56

    ==================== End Of Log ============================
     
  14. kimberly1965

    kimberly1965 Thread Starter

    Joined:
    May 5, 2002
    Messages:
    83
    how do I get rid of all this junk? a lot of it I don't have on my computer anymore. I uninstalled all my games. the only important things I have on this computer is my school work and I can save it on a stick drive. I would reformat but my laptop did not come with a windows8 disk. so I don't know how to do it.
     
  15. JSntgRvr

    JSntgRvr Retired Moderator and Malware Specialist

    Joined:
    Jul 1, 2003
    Messages:
    18,552
    First Name:
    José
    There is nothing wrong in those reports. Does it still slow?
     
  16. Sponsor

As Seen On
As Seen On...

Welcome to Tech Support Guy!

Are you looking for the solution to your computer problem? Join our site today to ask your question. This site is completely free -- paid for by advertisers and donations.

If you're not already familiar with forums, watch our Welcome Guide to get started.

Join over 733,556 other people just like you!

Loading...
Thread Status:
Not open for further replies.

Short URL to this thread: https://techguy.org/1144010

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.
    Dismiss Notice