LandzDown Forum

Security => Analysis and Malware Removal => Topic started by: Meta on May 26, 2015, 07:01:58 PM

Title: Tab redirect on a Windows 8.1 computer
Post by: Meta on May 26, 2015, 07:01:58 PM
I noticed problems recently with tabs being redirected to adds by "Powered by Adsupply" on IE, Chrome and Waterfox.

So far I found Adblock (Waterfox) stops these from loading, but tap is still overridden.

My only clue is that I began using a Microsoft UN/PW recently.

I also have ran full virus scans on my Dell Inspiron 15Z with MS 8.1, windows defender being one and spybot.
Title: Re: Tab redirect on a Windows 8.1 computer
Post by: Corrine on May 26, 2015, 07:32:18 PM
Hi, Meta.  Welcome to LandzDown Forum. 

In order to assist you, please provide the logs requested in the Log Posting Instructions (http://www.landzdown.com/analysis-and-malware-removal/log-posting-instructions/) topic.

Thank you.
Title: Re: Tab redirect on a Windows 8.1 computer
Post by: Meta on May 26, 2015, 07:38:52 PM
Thanks for advice, cool site
Title: Re: Tab redirect on a Windows 8.1 computer
Post by: Corrine on May 26, 2015, 07:41:25 PM
Thank you, Meta.  We're a small forum but it works well for us.

After you post the logs, I'll be able to analyze them and provide guidance on removing whatever is causing the ads.
Title: Re: Tab redirect on a Windows 8.1 computer
Post by: plodr on May 26, 2015, 09:27:58 PM
Thanks Corrine  :rose: for helping someone I sent here from another forum.
Title: Re: Tab redirect on a Windows 8.1 computer
Post by: Corrine on May 26, 2015, 10:21:37 PM
Always happy to help.
Title: Re: Tab redirect on a Windows 8.1 computer
Post by: Meta on May 26, 2015, 11:34:05 PM
Hi Corrine

Things are looking very good.

I found the file (offers.bycontext.com) that generated the "adsupply" Tabs  and removed it from my HD.

Thanks again to you and plodr (I see she has nice upgrade of her logo on this site.)

Title: Re: Tab redirect on a Windows 8.1 computer
Post by: Corrine on May 26, 2015, 11:44:41 PM
Hi, Meta.

I'm glad you're happy but there are likely other files you didn't recognize as part of the adware on your computer.  However, it is your computer, your choice if you don't want me to look at the logs.
Title: Re: Tab redirect on a Windows 8.1 computer
Post by: Meta on May 27, 2015, 12:06:58 AM
You are most gracious to offer your time Corrine.

Hopefully Your kind efforts won't be needed.

I'll certainly keep you and this site in mind if myself or another get in a bind and need help with potential malware.

http://www.landzdown.com/Smileys/default/icon_biggrin.gif
Title: Re: Tab redirect on a Windows 8.1 computer
Post by: Pete! on May 27, 2015, 01:21:36 PM
Meta:

I almost replied to your inquiry on the "other forum", but when Liz referred you here, I decided not to disrupt Corrine's procedure.

When this "nasty" got on my wife's computer, I stopped it by....
https://www.malwarebytes.org/

Title: Re: Tab redirect on a Windows 8.1 computer
Post by: Meta on May 27, 2015, 02:37:32 PM


Interesting! I wonder if utorrent was the carrier?

Thanks Pete, I did exactly what you recommended yesterday.

Today all is well.

Title: Re: Tab redirect on a Windows 8.1 computer
Post by: Corrine on May 29, 2015, 03:03:48 PM
Meta, here's my thoughts about uTorrent and other P2P software:

P2P programs form a direct conduit on to your computer. They have always been a target of malware writers. P2P security measures are easily circumvented and if your P2P program is not configured correctly, you may be sharing more files than you realize. There have been cases where people's passwords, address books and other personal, private, and financial details have been exposed to the file sharing network by a badly configured program.

With P2P file sharing, what means do you have of identifying or authenticating the source of the download? In addition, a file can be distributed among many hosts, and peers will provide for download the sections that they have already downloaded. This results in the distinct possibility of a distribution method in which malicious bits are mixed with with good files.
Title: Re: Tab redirect on a Windows 8.1 computer
Post by: Meta on May 29, 2015, 09:55:31 PM
Thanks Corrine,

Your comments make a  lot sense.


I have used uTorrent in the distance past on an old desk top,  I thought I might give it a try last month but I don't  need it.

Title: Re: Tab redirect on a Windows 8.1 computer
Post by: Meta on May 30, 2015, 03:30:04 PM
OK! I noticed trouble loadin MS weather app

I ran spybot again and allowed removal of spyware

ran malware bites for the 3rd time, restored all he previous results that I had removed.

Results of screen317's Security Check version 1.002 
   x64 (UAC is enabled) 
Internet Explorer 11 
``````````````Antivirus/Firewall Check:``````````````[/u]
Windows Firewall Enabled! 
Windows Defender   
WMI entry may not exist for antivirus; attempting automatic update.
`````````Anti-malware/Other Utilities Check:`````````[/u]
MVPS Hosts File 
Spybot - Search & Destroy
Adobe Flash Player    17.0.0.188 
Google Chrome (43.0.2357.65)
Google Chrome (43.0.2357.81)
````````Process Check: objlist.exe by Laurent````````[/u] 
Windows Defender MSMpEng.exe
Spybot Teatimer.exe is disabled!
Windows Defender MpCmdRun.exe   
`````````````````System Health check`````````````````[/u]
Total Fragmentation on Drive C:  %
````````````````````End of Log``````````````````````[/u]

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 29-05-2015
Ran by jim (administrator) on LAPTOP on 30-05-2015 11:07:00
Running from C:\Users\jim\Downloads
Loaded Profiles: jim (Available Profiles: jim)
Platform: Windows 8.1 (X64) OS Language: English (United States)
Internet Explorer Version 11 (Default browser path: "C:\Program Files\Waterfox\waterfox.exe" -osint -url "%1")
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Windows\SysWOW64\irstrtsv.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(SecureSoft) C:\Windows\mlwps.exe
(NTI Corporation) C:\Program Files (x86)\NTI\NTI Backup Now EZ\BackupNowEZSvr.exe
(The Privoxy team - www.privoxy.org) C:\Program Files (x86)\Gamma Task Menager\privoxy.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
() C:\Program Files\CyberLink\Shared files\RichVideo64.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
(Dell Inc.) C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe
(TorchMedia Inc.) C:\Users\jim\AppData\Local\Torch\Update\TorchCrashHandler.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
(Microsoft Corporation) C:\Windows\System32\alg.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Intel) C:\Program Files (x86)\Intel\irstrt\RapidStartConfig.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel Corporation) C:\Windows\System32\igfxTray.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Intel® Corporation) C:\Program Files\Intel\CCDashboard\bin\CCDashServer.exe
(Glarysoft Ltd) C:\Program Files (x86)\Glary Utilities 5\memdefrag.exe
(Flux Software LLC) C:\Users\jim\AppData\Local\FluxSoftware\Flux\flux.exe
(Microsoft Corporation) C:\Windows\System32\WWAHost.exe
(Nico Mak Computing) C:\Program Files\WinZip\FAH\FAHWindow64.exe
(Murray Hurps Software Pty Ltd) C:\Program Files (x86)\Ad Muncher\AdMunch.exe
(Murray Hurps Software Pty Ltd) C:\Program Files (x86)\Ad Muncher\AdMunch64.exe
(Glarysoft Ltd) C:\Program Files (x86)\Glary Utilities 5\Integrator.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
(Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
(Dell Inc.) C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe
(Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe
(Intuit Inc.) C:\Program Files (x86)\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
(Dell Inc.) C:\Program Files\Dell\DellDataVault\DellDataVault.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Waterfox) C:\Program Files\Waterfox\waterfox.exe
(Mozilla Corporation) C:\Program Files\Waterfox\plugin-container.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [QuickSet] => c:\Program Files\Dell\QuickSet\QuickSet.exe [3759504 2012-07-20] (Dell Inc.)
HKLM\...\Run: [IntelMyWiFiDashboard] => C:\Program Files\Intel\CCDashboard\bin\CCDashServer.exe [5010224 2012-07-13] (Intel® Corporation)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2917688 2012-09-07] (Synaptics Incorporated)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1425408 2012-07-24] (IDT, Inc.)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [285240 2012-10-24] (Intel Corporation)
HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.)
HKLM-x32\...\Run: [CLMLServer_For_P2G9] => "C:\Program Files (x86)\CyberLink\Power2Go9\CLMLSvc_P2G9.exe"
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM-x32\...\Run: [Ad Muncher] => C:\Program Files (x86)\Ad Muncher\AdMunch.exe [560760 2014-11-22] (Murray Hurps Software Pty Ltd)
HKLM-x32\...\Run: [BackupNowEZtray] => C:\Program Files (x86)\NTI\NTI Backup Now EZ\BackupNowEZtray.exe [580632 2011-09-23] (NTI Corporation)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-10-02] (Apple Inc.)
Winlogon\Notify\igfxcui: igfxdev.dll [X]
Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
HKU\S-1-5-21-3104636226-4124162768-151004050-1001\...\Run: [Akamai NetSession Interface] => C:\Users\jim\AppData\Local\Akamai\netsession_win.exe [4489472 2013-06-05] (Akamai Technologies, Inc.)
HKU\S-1-5-21-3104636226-4124162768-151004050-1001\...\Run: [GUDelayStartup] => C:\Program Files (x86)\Glary Utilities 5\StartupManager.exe [37152 2015-05-25] (Glarysoft Ltd)
HKU\S-1-5-21-3104636226-4124162768-151004050-1001\...\Run: [Glary Memory Optimizer] => C:\Program Files (x86)\Glary Utilities 5\memdefrag.exe [122656 2015-05-25] (Glarysoft Ltd)
HKU\S-1-5-21-3104636226-4124162768-151004050-1001\...\Run: [CCleaner] => C:\Program Files\CCleaner\CCleaner64.exe [8322328 2015-05-08] (Piriform Ltd)
HKU\S-1-5-21-3104636226-4124162768-151004050-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8322328 2015-05-08] (Piriform Ltd)
HKU\S-1-5-21-3104636226-4124162768-151004050-1001\...\Run: [Spybot-S&D Cleaning] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [4566952 2014-06-24] (Safer-Networking Ltd.)
HKU\S-1-5-21-3104636226-4124162768-151004050-1001\...\Run: [f.lux] => C:\Users\jim\AppData\Local\FluxSoftware\Flux\flux.exe [1017224 2013-10-23] (Flux Software LLC)
HKU\S-1-5-21-3104636226-4124162768-151004050-1001\...\MountPoints2: {f9e63405-9f29-11e3-bed6-84a6c8c8a6bc} - "E:\KODAK_Camera_Setup_App.exe"
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\FAH.lnk [2015-05-19]
ShortcutTarget: FAH.lnk -> C:\Program Files\WinZip\FAH\FAHConsole.exe (Nico Mak Computing)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WinZip Preloader.lnk [2015-05-19]
ShortcutTarget: WinZip Preloader.lnk -> C:\Program Files\WinZip\WzPreloader.exe (WinZip Computing, S.L.)
BootExecute: autocheck autochk * 

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

ProxyEnable: [S-1-5-21-3104636226-4124162768-151004050-1001] => Internet Explorer proxy is enabled
ProxyServer: [S-1-5-21-3104636226-4124162768-151004050-1001] => 127.0.0.1:8118
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
HKU\S-1-5-21-3104636226-4124162768-151004050-1001\Software\Microsoft\Internet Explorer\Main,Start Page = https://search.protectedio.com/?u=3a71b3f2-9aae-90bb-2043-6ae7e176bce2&c=p1&s=hp&inst=1432403676
HKU\S-1-5-21-3104636226-4124162768-151004050-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://dell13.msn.com
HKU\S-1-5-21-3104636226-4124162768-151004050-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/?ocid=iehp
SearchScopes: HKLM-x32 -> {20B9D1AE-AD1A-38B4-87FE-AF278DA9861D} URL =
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3104636226-4124162768-151004050-1001 -> {20B9D1AE-AD1A-38B4-87FE-AF278DA9861D} URL =
SearchScopes: HKU\S-1-5-21-3104636226-4124162768-151004050-1001 -> {968B9555-3CED-4984-ADD1-9AC30178B277} URL = https://search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=523482&p={searchTerms}
DPF: HKLM-x32 {49312E18-AA92-4CC2-BB97-55DEA7BCADD6} https://support.dell.com/systemprofiler/SysProExe.CAB
DPF: HKLM-x32 {FFB3A759-98B1-446F-BDA9-909C6EB18CC7} http://utilities.pcpitstop.com/Optimize3/pcpitstop2.dll
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1

FireFox:
========
FF ProfilePath: C:\Users\jim\AppData\Roaming\Mozilla\Firefox\Profiles\2wrbouke.default-1403124906351
FF DefaultSearchEngine.US: WebWebWeb - by Video Downloader Professional
FF Homepage: https://my.yahoo.com/
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_17_0_0_188.dll [2015-05-19] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-16] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_188.dll [2015-05-19] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-06] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-06] (Intel Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-15] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-15] (Google Inc.)
FF Plugin HKU\S-1-5-21-3104636226-4124162768-151004050-1001: amazon.com/AmazonMP3DownloaderPlugin -> C:\Users\jim\AppData\Local\Program Files\Amazon\MP3 Downloader\npAmazonMP3DownloaderPlugin10181.dll [2013-05-22] (Amazon.com, Inc.)
FF Plugin HKU\S-1-5-21-3104636226-4124162768-151004050-1001: TorchVLC -> C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\npvlc.dll [2013-07-30] (VideoLAN)
FF SearchPlugin: C:\Users\jim\AppData\Roaming\Mozilla\Firefox\Profiles\2wrbouke.default-1403124906351\searchplugins\duckduckgo.xml [2014-06-18]
FF SearchPlugin: C:\Users\jim\AppData\Roaming\Mozilla\Firefox\Profiles\2wrbouke.default-1403124906351\searchplugins\webwebweb---by-video-downloader-professional.xml [2015-04-17]
FF Extension: Pocket - C:\Users\jim\AppData\Roaming\Mozilla\Firefox\Profiles\2wrbouke.default-1403124906351\Extensions\isreaditlater@ideashower.com [2015-05-29]
FF Extension: Youtube MP3 Podcaster - C:\Users\jim\AppData\Roaming\Mozilla\Firefox\Profiles\2wrbouke.default-1403124906351\Extensions\youtubemp3podcaster@jeremy.d.gregorio.com [2015-05-28]
FF Extension: YouTube Unblocker - C:\Users\jim\AppData\Roaming\Mozilla\Firefox\Profiles\2wrbouke.default-1403124906351\Extensions\youtubeunblocker@unblocker.yt [2015-05-28]
FF Extension: Flashblock - C:\Users\jim\AppData\Roaming\Mozilla\Firefox\Profiles\2wrbouke.default-1403124906351\Extensions\{3d7eb24f-2740-49df-8937-200b1cc08f8a} [2015-05-29]
FF Extension: EPUBReader - C:\Users\jim\AppData\Roaming\Mozilla\Firefox\Profiles\2wrbouke.default-1403124906351\Extensions\{5384767E-00D9-40E9-B72F-9CC39D655D6F} [2015-05-29]
FF Extension: Adblock Plus Pop-up Addon - C:\Users\jim\AppData\Roaming\Mozilla\Firefox\Profiles\2wrbouke.default-1403124906351\Extensions\adblockpopups@jessehakanen.net.xpi [2015-02-13]
FF Extension: Video Downloader Professional - C:\Users\jim\AppData\Roaming\Mozilla\Firefox\Profiles\2wrbouke.default-1403124906351\Extensions\ffext_basicvideoext@startpage24.xpi [2015-04-17]
FF Extension: HTML5 Video Everywhere! - C:\Users\jim\AppData\Roaming\Mozilla\Firefox\Profiles\2wrbouke.default-1403124906351\Extensions\html5-video-everywhere@lejenome.me.xpi [2015-02-24]
FF Extension: μ Adblock - C:\Users\jim\AppData\Roaming\Mozilla\Firefox\Profiles\2wrbouke.default-1403124906351\Extensions\jid1-yIDO6R3DGl4u2Q@jetpack.xpi [2015-02-13]
FF Extension: Easiest YouTube Video Downloader - C:\Users\jim\AppData\Roaming\Mozilla\Firefox\Profiles\2wrbouke.default-1403124906351\Extensions\manishjain9@hotmail.com_easiestyoutube.xpi [2015-02-13]
FF Extension: FastestFox - C:\Users\jim\AppData\Roaming\Mozilla\Firefox\Profiles\2wrbouke.default-1403124906351\Extensions\smarterwiki@wikiatic.com.xpi [2015-02-13]
FF Extension: TrashMail.com - C:\Users\jim\AppData\Roaming\Mozilla\Firefox\Profiles\2wrbouke.default-1403124906351\Extensions\spam@trashmail.net.xpi [2015-02-23]
FF Extension: Undo Closed Tabs Button - C:\Users\jim\AppData\Roaming\Mozilla\Firefox\Profiles\2wrbouke.default-1403124906351\Extensions\undoclosedtabsbutton@supernova00.biz.xpi [2015-02-13]
FF Extension: Undo Close Tab Replacement - C:\Users\jim\AppData\Roaming\Mozilla\Firefox\Profiles\2wrbouke.default-1403124906351\Extensions\undotab@darktrojan.net.xpi [2015-02-13]
FF Extension: Session Manager - C:\Users\jim\AppData\Roaming\Mozilla\Firefox\Profiles\2wrbouke.default-1403124906351\Extensions\{1280606b-2510-4fe0-97ef-9b5a22eafe30}.xpi [2015-02-13]
FF Extension: X-notifier - C:\Users\jim\AppData\Roaming\Mozilla\Firefox\Profiles\2wrbouke.default-1403124906351\Extensions\{37fa1426-b82d-11db-8314-0800200c9a66}.xpi [2015-02-13]
FF Extension: YouTube High Definition - C:\Users\jim\AppData\Roaming\Mozilla\Firefox\Profiles\2wrbouke.default-1403124906351\Extensions\{7b1bf0b6-a1b9-42b0-b75d-252036438bdc}.xpi [2015-04-11]
FF Extension: Easy Youtube Video Downloader Express - C:\Users\jim\AppData\Roaming\Mozilla\Firefox\Profiles\2wrbouke.default-1403124906351\Extensions\{b9acf540-acba-11e1-8ccb-001fd0e08bd4}.xpi [2015-04-07]
FF Extension: Adblock Plus - C:\Users\jim\AppData\Roaming\Mozilla\Firefox\Profiles\2wrbouke.default-1403124906351\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-02-13]
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK

Chrome:
=======
CHR Profile: C:\Users\jim\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\jim\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-04-08]
CHR Extension: (Google Drive) - C:\Users\jim\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-04-08]
CHR Extension: (YouTube) - C:\Users\jim\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-04-08]
CHR Extension: (Google Search) - C:\Users\jim\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-04-08]
CHR Extension: (Bookmark Manager) - C:\Users\jim\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik [2015-04-21]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\jim\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-04-08]
CHR Extension: (Google Wallet) - C:\Users\jim\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-04-08]
CHR Extension: (Gmail) - C:\Users\jim\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-04-08]
CHR HKLM-x32\...\Chrome\Extension: [pbkdpahkifcigckmhiafindmaflfifgm] - C:\Users\jim\AppData\Local\Coupon Companion\Chrome\Coupon Companion.crx [Not Found]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-10-28] (Microsoft Corporation)
R2 DellDataVault; C:\Program Files\Dell\DellDataVault\DellDataVault.exe [2557136 2015-02-26] (Dell Inc.)
R2 DellDataVaultWiz; C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe [201936 2015-02-26] (Dell Inc.)
S3 DellDigitalDelivery; C:\Program Files (x86)\Dell Digital Delivery\DeliveryService.exe [173568 2012-10-09] (Dell Products, LP.) [File not signed]
R2 IconMan_R; C:\Program Files (x86)\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe [2464400 2012-09-07] (Realsil Microelectronics Inc.)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [319376 2014-10-01] (Intel Corporation)
S3 Intel(R) Wireless Bluetooth(R) 4.0 Radio Management; C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe [157128 2013-09-18] (Intel Corporation)
R2 irstrtsv; C:\Windows\SysWOW64\irstrtsv.exe [193576 2012-07-20] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-17] (Intel Corporation)
S3 KSS; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Scan 2.0\kss.exe [202328 2012-12-07] (Kaspersky Lab ZAO)
R2 Live Malware Protection; C:\WINDOWS\mlwps.exe [242688 2015-05-30] (SecureSoft) [File not signed] <==== ATTENTION
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1080120 2015-04-14] (Malwarebytes Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [272176 2012-07-18] ()
R2 NTI BackupNowEZSvr; C:\Program Files (x86)\NTI\NTI Backup Now EZ\BackupNowEZSvr.exe [45592 2011-09-23] (NTI Corporation)
R2 PRIVOXYSERVICE; C:\Program Files (x86)\Gamma Task Menager\privoxy.exe [371200 2015-05-30] (The Privoxy team - www.privoxy.org) [File not signed] <==== ATTENTION
S4 PuranDefrag; C:\Windows\SYSTEM32\PuranDefragS.exe [292736 2013-08-15] (Puran Software) [File not signed]
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [253776 2013-03-26] (CyberLink)
R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [390672 2012-08-08] ()
R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.)
S3 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)
R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [321536 2012-07-24] (IDT, Inc.) [File not signed]
R2 SupportAssistAgent; C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [19288 2015-04-10] (Dell Inc.)
R2 TorchCrashHandler; C:\Users\jim\AppData\Local\Torch\Update\TorchCrashHandler.exe [1217032 2015-05-12] (TorchMedia Inc.) <==== ATTENTION
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-03] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-03] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [2699568 2012-07-18] (Intel® Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 BthLEEnum; C:\Windows\System32\drivers\BthLEEnum.sys [226304 2013-12-04] (Microsoft Corporation)
S3 btmaux; C:\Windows\system32\DRIVERS\btmaux.sys [140600 2013-07-22] (Motorola Solutions, Inc.)
R3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [1390904 2013-09-05] (Motorola Solutions, Inc.)
R3 CLVirtualBus01; C:\Windows\System32\drivers\CLVirtualBus01.sys [103176 2014-03-12] (CyberLink)
R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [91912 2013-08-29] (CyberLink)
R3 DDDriver; C:\Windows\system32\drivers\DDDriver64Dcsa.sys [23760 2015-01-30] (Dell Computer Corporation)
R3 DellProf; C:\Windows\system32\drivers\DellProf.sys [23312 2015-01-30] (Dell Computer Corporation)
S3 DellRbtn; C:\Windows\System32\drivers\DellRbtn.sys [10752 2012-08-05] (OSR Open Systems Resources, Inc.)
R1 GUBootStartup; C:\WINDOWS\System32\drivers\GUBootStartup.sys [20160 2015-05-09] (Glarysoft Ltd)
R3 irstrtdv; C:\Windows\System32\drivers\irstrtdv.sys [43800 2012-07-20] (Intel Corporation)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-04-14] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-04-14] (Malwarebytes Corporation)
R3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew00.sys [3345376 2013-09-04] (Intel Corporation)
R0 rtcrfilt64; C:\Windows\System32\DRIVERS\rtcrfilt64.sys [19600 2012-09-04] (Realtek Semiconductor Corp.)
S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [41272 2012-09-07] (Synaptics Incorporated)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [43832 2012-09-07] (Synaptics Incorporated)
U3 TrueSight; C:\Windows\System32\drivers\TrueSight.sys [35064 2015-04-11] ()
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-03] (Microsoft Corporation)
S2 {C5F942FD-1110-4664-86CE-0C6BDA305235}; \??\C:\Program Files (x86)\CyberLink\PowerDVD14\Common\NavFilter\000.fcl [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-05-30 11:07 - 2015-05-30 11:07 - 00023205 _____ () C:\Users\jim\Downloads\FRST.txt
2015-05-30 11:06 - 2015-05-30 11:06 - 00001136 _____ () C:\Users\jim\Desktop\FRST64 - Shortcut.lnk
2015-05-30 10:48 - 2015-05-30 10:56 - 00000000 ____D () C:\Program Files (x86)\Gamma Task Menager
2015-05-30 10:48 - 2015-05-30 10:48 - 01566224 _____ (Dummy, Ltd.) C:\Users\jim\Downloads\[FIXED].All.You.Need.To.Start.Meditating. .The.Ultimate.Meditation.Starter.Pack_10924_i9520712_il345.exe
2015-05-30 10:48 - 2015-05-30 10:48 - 00803840 _____ () C:\Users\jim\AppData\Roaming\1ED4.tmp.exe
2015-05-30 10:48 - 2015-05-30 10:48 - 00242688 _____ (SecureSoft) C:\WINDOWS\mlwps.exe
2015-05-30 10:48 - 2015-05-30 10:48 - 00218152 _____ (Jelbrus LLC) C:\Users\jim\Downloads\Theta_Meditation_System_(Dr_Jeffrey_Thompson).exe
2015-05-30 10:46 - 2015-05-30 10:56 - 00037070 _____ () C:\WINDOWS\PFRO.log
2015-05-30 10:43 - 2015-05-30 11:07 - 00000000 ____D () C:\FRST
2015-05-30 10:42 - 2015-05-30 10:42 - 02108928 _____ (Farbar) C:\Users\jim\Downloads\FRST64.exe
2015-05-30 08:57 - 2015-05-30 10:56 - 00000385 _____ () C:\WINDOWS\setupact.log
2015-05-30 08:57 - 2015-05-30 08:57 - 00000000 _____ () C:\WINDOWS\setuperr.log
2015-05-29 21:39 - 2015-05-29 21:39 - 00378232 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2015-05-29 21:33 - 2015-05-25 15:23 - 00450831 ____R () C:\WINDOWS\system32\Drivers\etc\hosts.20150529-213342.backup
2015-05-27 15:54 - 2015-05-30 10:31 - 00427155 _____ () C:\WINDOWS\WindowsUpdate.log
2015-05-25 15:23 - 2015-05-25 15:21 - 00450831 ____R () C:\WINDOWS\system32\Drivers\etc\hosts.20150525-152330.backup
2015-05-25 15:21 - 2015-05-19 19:13 - 00450831 ____R () C:\WINDOWS\system32\Drivers\etc\hosts.20150525-152128.backup
2015-05-23 21:22 - 2015-05-23 21:22 - 00001136 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Prism Video File Converter.lnk
2015-05-23 21:22 - 2015-05-23 21:22 - 00001124 _____ () C:\Users\Public\Desktop\Prism Video File Converter.lnk
2015-05-23 21:20 - 2015-05-23 21:20 - 00001188 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Doxillion Document Converter.lnk
2015-05-23 21:20 - 2015-05-23 21:20 - 00001176 _____ () C:\Users\Public\Desktop\Doxillion Document Converter.lnk
2015-05-23 21:11 - 2015-05-23 21:14 - 28980409 _____ () C:\Users\jim\Downloads\DELTA DEEP SLEEP JEFFERY THOMPSON.webm
2015-05-23 21:01 - 2015-05-23 21:07 - 90187241 _____ () C:\Users\jim\Downloads\DELTA Deep sleep system jeffery thompson.webm
2015-05-22 13:18 - 2015-05-22 13:18 - 00003618 _____ () C:\WINDOWS\System32\Tasks\Anti Virus Update Worker
2015-05-22 13:18 - 2015-05-22 13:18 - 00000000 ____D () C:\Program Files (x86)\Anti Virus Update
2015-05-20 14:45 - 2015-05-27 09:30 - 00000000 ____D () C:\Users\jim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NetMon
2015-05-19 19:13 - 2015-05-19 19:12 - 00450831 ____R () C:\WINDOWS\system32\Drivers\etc\hosts.20150519-191322.backup
2015-05-19 19:12 - 2015-05-09 20:22 - 00450831 ____R () C:\WINDOWS\system32\Drivers\etc\hosts.20150519-191254.backup
2015-05-19 17:22 - 2015-05-19 17:23 - 00000861 _____ () C:\Users\jim\Desktop\CyberLink_Power2Go_v9.0.1601.0.lnk
2015-05-19 17:22 - 2015-05-19 17:22 - 01208864 _____ (CyberLink) C:\Users\jim\Downloads\CyberLink_Power2Go_Downloader(1).exe
2015-05-19 15:23 - 2015-05-19 15:24 - 01208864 _____ (CyberLink) C:\Users\jim\Downloads\CyberLink_Power2Go_Downloader.exe
2015-05-19 15:21 - 2015-05-19 15:21 - 00000000 ____D () C:\Users\Public\Documents\Baidu
2015-05-19 15:21 - 2015-05-19 15:21 - 00000000 ____D () C:\ProgramData\Baidu
2015-05-19 15:21 - 2015-05-19 15:21 - 00000000 ____D () C:\FFOutput
2015-05-19 15:18 - 2015-05-19 15:18 - 00001216 _____ () C:\Users\jim\Desktop\Format Factory.lnk
2015-05-19 15:18 - 2015-05-19 15:18 - 00000000 ____D () C:\Users\jim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FormatFactory
2015-05-19 15:18 - 2015-05-19 15:18 - 00000000 ____D () C:\Program Files (x86)\FreeTime
2015-05-19 15:13 - 2015-05-19 15:14 - 01409896 _____ (CyberLink) C:\Users\jim\Downloads\CyberLink_Power2Go_v9.0.1601.0.exe
2015-05-19 15:05 - 2015-05-19 15:07 - 00000000 ____D () C:\Users\jim\AppData\Local\WinZip
2015-05-19 15:04 - 2015-05-19 15:05 - 00000000 ____D () C:\ProgramData\WinZip
2015-05-19 15:04 - 2015-05-19 15:04 - 00002225 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\WinZip.lnk
2015-05-19 15:04 - 2015-05-19 15:04 - 00002219 _____ () C:\Users\Public\Desktop\WinZip.lnk
2015-05-19 15:04 - 2015-05-19 15:04 - 00000000 ____D () C:\Users\jim\Documents\Add-in Express
2015-05-19 15:04 - 2015-05-19 15:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip
2015-05-19 15:04 - 2015-05-19 15:04 - 00000000 ____D () C:\Program Files\WinZip
2015-05-19 13:16 - 2015-05-26 14:43 - 00070144 _____ () C:\WINDOWS\SysWOW64\tasks.dll
2015-05-18 17:12 - 2015-05-18 17:12 - 00002531 _____ () C:\Users\Public\Desktop\TurboTax 2013.lnk
2015-05-18 17:12 - 2015-05-18 17:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TurboTax 2013
2015-05-18 14:56 - 2015-05-23 21:22 - 00000000 ____D () C:\WINDOWS\System32\Tasks\NCH Software
2015-05-18 14:56 - 2015-05-23 21:22 - 00000000 ____D () C:\Users\jim\AppData\Roaming\NCH Software
2015-05-18 14:56 - 2015-05-23 21:22 - 00000000 ____D () C:\ProgramData\NCH Software
2015-05-18 14:56 - 2015-05-23 21:22 - 00000000 ____D () C:\Program Files (x86)\NCH Software
2015-05-18 14:56 - 2015-05-18 14:56 - 00001272 _____ () C:\Users\Public\Desktop\NCH Suite.lnk
2015-05-18 14:56 - 2015-05-18 14:56 - 00001152 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Switch Sound File Converter.lnk
2015-05-18 14:56 - 2015-05-18 14:56 - 00001140 _____ () C:\Users\Public\Desktop\Switch Sound File Converter.lnk
2015-05-18 14:45 - 2015-05-26 15:49 - 00000000 ____D () C:\Users\jim\AppData\Roaming\uTorrent
2015-05-18 14:42 - 2015-05-18 14:42 - 00050190 _____ () C:\Users\jim\Downloads\Awakened Mind System 2.0 - Breakthrough Audio Technology - Dr. Jeffrey Thompson ---[www.bts.to]---  (1).torrent
2015-05-18 14:40 - 2015-05-18 14:40 - 636401808 _____ () C:\Users\jim\Downloads\CD1 (1).BIN
2015-05-18 13:17 - 2015-05-18 13:17 - 00003320 _____ () C:\WINDOWS\System32\Tasks\Malware Cleaner
2015-05-18 13:16 - 2015-05-30 10:48 - 00000000 ____D () C:\Users\jim\AppData\Roaming\Updater
2015-05-18 13:16 - 2015-05-18 13:16 - 00000000 _____ () C:\Users\jim\AppData\Roaming\1ED4.tmp
2015-05-18 12:17 - 2015-05-18 17:43 - 00000000 ____D () C:\Users\jim\Downloads\Awakened.Mind.System.2.0.KOSMOS
2015-05-18 12:06 - 2015-05-18 12:06 - 00518871 _____ () C:\Users\jim\Downloads\CD1.BIN
2015-05-18 10:11 - 2015-05-18 11:32 - 00002329 _____ () C:\Users\jim\Desktop\Facebook.lnk
2015-05-18 10:11 - 2015-05-18 11:32 - 00002325 _____ () C:\Users\jim\Desktop\YouTube.lnk
2015-05-18 10:10 - 2015-05-30 10:56 - 00000000 ____D () C:\ProgramData\TorchCrashHandler
2015-05-18 10:10 - 2015-05-18 10:11 - 00002261 _____ () C:\Users\jim\Desktop\Free Music.lnk
2015-05-18 10:10 - 2015-05-18 10:11 - 00002261 _____ () C:\Users\jim\Desktop\Free Games.lnk
2015-05-18 10:10 - 2015-05-18 10:11 - 00001443 _____ () C:\Users\jim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Torch.lnk
2015-05-18 10:10 - 2015-05-18 10:11 - 00001418 _____ () C:\Users\jim\Desktop\Torch.lnk
2015-05-18 10:10 - 2015-05-18 10:10 - 00000000 ____D () C:\Users\jim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Torch
2015-05-18 10:04 - 2015-05-18 10:10 - 00000000 ____D () C:\Users\jim\AppData\Local\Torch
2015-05-17 20:59 - 2015-05-30 10:57 - 00000000 ____D () C:\Users\jim\OneDrive
2015-05-17 20:37 - 2015-01-05 23:01 - 00072192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndproxy.sys
2015-05-17 20:37 - 2015-01-05 22:59 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wanarp.sys
2015-05-17 20:37 - 2015-01-05 21:12 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascfg.dll
2015-05-17 20:37 - 2015-01-05 21:02 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rascfg.dll
2015-05-17 19:17 - 2015-05-17 19:17 - 00000000 ____H () C:\Users\jim\Documents\Default.rdp
2015-05-13 14:32 - 2015-04-30 16:35 - 00124112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-05-13 14:32 - 2015-04-30 16:35 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-05-13 09:05 - 2015-04-21 13:14 - 24971776 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-05-13 09:05 - 2015-04-21 12:50 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-05-13 09:05 - 2015-04-21 12:50 - 00417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\html.iec
2015-05-13 09:05 - 2015-04-21 12:49 - 02885120 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-05-13 09:05 - 2015-04-21 12:37 - 00633856 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll
2015-05-13 09:05 - 2015-04-21 12:35 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-05-13 09:05 - 2015-04-21 12:31 - 06025728 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-05-13 09:05 - 2015-04-21 12:24 - 19691008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-05-13 09:05 - 2015-04-21 12:13 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\inseng.dll
2015-05-13 09:05 - 2015-04-21 12:11 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2015-05-13 09:05 - 2015-04-21 12:09 - 00341504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\html.iec
2015-05-13 09:05 - 2015-04-21 12:08 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2015-05-13 09:05 - 2015-04-21 12:07 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2015-05-13 09:05 - 2015-04-21 12:05 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2015-05-13 09:05 - 2015-04-21 12:04 - 02278400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-05-13 09:05 - 2015-04-21 11:59 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2015-05-13 09:05 - 2015-04-21 11:58 - 00664576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2015-05-13 09:05 - 2015-04-21 11:52 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2015-05-13 09:05 - 2015-04-21 11:49 - 00801280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2015-05-13 09:05 - 2015-04-21 11:49 - 00720384 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2015-05-13 09:05 - 2015-04-21 11:49 - 00374272 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2015-05-13 09:05 - 2015-04-21 11:46 - 02125824 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2015-05-13 09:05 - 2015-04-21 11:40 - 14401536 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-05-13 09:05 - 2015-04-21 11:38 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2015-05-13 09:05 - 2015-04-21 11:37 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll
2015-05-13 09:05 - 2015-04-21 11:36 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2015-05-13 09:05 - 2015-04-21 11:32 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2015-05-13 09:05 - 2015-04-21 11:31 - 04305920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2015-05-13 09:05 - 2015-04-21 11:28 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll
2015-05-13 09:05 - 2015-04-21 11:27 - 02352128 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-05-13 09:05 - 2015-04-21 11:26 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2015-05-13 09:05 - 2015-04-21 11:26 - 00327168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2015-05-13 09:05 - 2015-04-21 11:25 - 02052608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2015-05-13 09:05 - 2015-04-21 11:17 - 12828672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-05-13 09:05 - 2015-04-21 11:15 - 01547264 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-05-13 09:05 - 2015-04-21 11:03 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2015-05-13 09:05 - 2015-04-21 11:02 - 01882112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2015-05-13 09:05 - 2015-04-21 10:58 - 01310208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2015-05-13 09:05 - 2015-04-21 10:56 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2015-05-13 09:05 - 2015-03-30 01:47 - 00561928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2015-05-13 09:05 - 2015-03-26 23:27 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2015-05-13 09:05 - 2015-03-26 22:50 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll
2015-05-13 09:05 - 2015-03-26 22:48 - 01441792 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2015-05-13 09:04 - 2015-04-09 20:34 - 02256896 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2015-05-13 09:04 - 2015-04-09 20:11 - 01943040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2015-05-13 09:04 - 2015-03-17 13:26 - 00467776 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2015-05-13 09:04 - 2015-03-08 22:02 - 00057856 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthhfenum.sys
2015-05-13 09:03 - 2015-04-30 19:05 - 00429568 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2015-05-13 09:03 - 2015-04-30 18:48 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2015-05-13 09:03 - 2015-04-24 17:32 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcResources.dll
2015-05-13 09:03 - 2015-04-13 18:48 - 04180480 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2015-05-13 09:03 - 2015-04-09 21:00 - 01996800 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2015-05-13 09:03 - 2015-04-09 20:50 - 01387008 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2015-05-13 09:03 - 2015-04-09 20:26 - 01560576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2015-05-13 09:03 - 2015-04-08 18:55 - 00410128 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2015-05-13 09:03 - 2015-04-02 20:35 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoMetadataHandler.dll
2015-05-13 09:03 - 2015-04-02 20:14 - 00364544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoMetadataHandler.dll
2015-05-13 09:03 - 2015-04-01 18:22 - 02985984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll
2015-05-13 09:03 - 2015-04-01 18:20 - 04417536 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll
2015-05-13 09:03 - 2015-03-31 23:45 - 01491456 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbghelp.dll
2015-05-13 09:03 - 2015-03-31 22:31 - 01207296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbghelp.dll
2015-05-13 09:03 - 2015-03-19 21:56 - 00080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ahcache.sys
2015-05-13 09:03 - 2015-03-12 22:02 - 00316416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\udfs.sys
2015-05-13 09:03 - 2015-03-12 21:11 - 02162176 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2015-05-13 09:03 - 2015-03-12 20:39 - 01812992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2015-05-13 09:03 - 2015-03-10 21:49 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdbinst.exe
2015-05-13 09:03 - 2015-03-10 21:09 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sdbinst.exe
2015-05-13 09:03 - 2015-03-05 22:47 - 01696256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2015-05-13 09:03 - 2015-03-04 19:09 - 01429504 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2015-05-13 09:03 - 2015-03-03 21:32 - 00172544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2015-05-13 09:03 - 2015-03-03 21:12 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2015-05-13 09:03 - 2015-02-17 19:19 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll
2015-05-13 09:03 - 2015-01-29 20:53 - 02819584 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll
2015-05-13 09:02 - 2015-03-13 00:03 - 00239424 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2015-05-13 09:02 - 2015-03-13 00:03 - 00154432 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2015-05-13 09:02 - 2015-03-12 20:29 - 00410017 _____ () C:\WINDOWS\system32\ApnDatabase.xml
2015-05-13 09:02 - 2015-03-05 23:08 - 02067968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdshext.dll
2015-05-13 09:02 - 2015-03-05 22:43 - 01969664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpdshext.dll
2015-05-10 20:16 - 2015-05-10 20:16 - 00003116 _____ () C:\WINDOWS\System32\Tasks\{CF6A2296-F9FF-4279-ACC0-3FD4EA6530AE}
2015-05-09 20:22 - 2015-05-09 20:20 - 00450831 ____R () C:\WINDOWS\system32\Drivers\etc\hosts.20150509-202221.backup
2015-05-09 20:20 - 2015-04-28 17:05 - 00450831 ____R () C:\WINDOWS\system32\Drivers\etc\hosts.20150509-202039.backup
2015-05-08 17:37 - 2015-05-08 17:37 - 00429169 _____ () C:\Users\jim\Desktop\152 Bay St - Google Maps.htm
2015-05-08 17:37 - 2015-05-08 17:37 - 00000000 ____D () C:\Users\jim\Desktop\152 Bay St - Google Maps_files
2015-05-02 11:13 - 2015-05-02 11:15 - 00000000 ____D () C:\Users\jim\Desktop\YOU TUBE

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-05-30 11:00 - 2014-07-22 17:06 - 00000830 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2015-05-30 11:00 - 2013-09-30 00:04 - 00865408 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2015-05-30 11:00 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\system32\sru
2015-05-30 10:57 - 2014-06-14 10:16 - 00000000 ____D () C:\Program Files (x86)\Glary Utilities 5
2015-05-30 10:56 - 2015-04-08 20:30 - 00000910 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-05-30 10:56 - 2013-08-28 15:18 - 00000434 _____ () C:\WINDOWS\system32\Drivers\etc\hosts.ics
2015-05-30 10:56 - 2013-08-22 10:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2015-05-30 10:56 - 2013-08-22 09:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI
2015-05-30 10:48 - 2015-02-13 17:24 - 00136408 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2015-05-30 10:48 - 2015-02-03 20:28 - 00000000 ____D () C:\Users\jim\AppData\Roaming\Rainmaker Software Group LLC.​
2015-05-30 10:41 - 2015-04-08 20:30 - 00000914 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-05-30 09:05 - 2013-11-07 22:33 - 00003910 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{BE3EB89D-A7D3-4535-B383-E499A0E11535}
2015-05-29 22:06 - 2012-12-11 23:06 - 00000000 ____D () C:\Program Files\Puran Defrag
2015-05-29 21:35 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\system32\NDF
2015-05-29 21:31 - 2014-02-21 15:13 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
2015-05-28 15:20 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\system32\FxsTmp
2015-05-28 11:01 - 2015-02-13 11:58 - 00003904 _____ () C:\WINDOWS\System32\Tasks\Dell SupportAssistAgent AutoUpdate
2015-05-28 10:59 - 2015-02-13 11:57 - 00000000 ____D () C:\ProgramData\SupportAssistAgent
2015-05-27 16:43 - 2015-02-23 20:37 - 00000000 ____D () C:\Users\jim\AppData\Local\CrashDumps
2015-05-27 16:13 - 2012-11-21 13:25 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3104636226-4124162768-151004050-1001
2015-05-27 09:28 - 2014-06-14 10:16 - 00003304 _____ () C:\WINDOWS\System32\Tasks\GlaryInitialize 5
2015-05-27 09:28 - 2014-06-14 10:16 - 00002964 _____ () C:\WINDOWS\System32\Tasks\GU5SkipUAC
2015-05-27 09:28 - 2014-06-14 10:16 - 00001106 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5.lnk
2015-05-27 09:28 - 2014-06-14 10:16 - 00001094 _____ () C:\Users\Public\Desktop\Glary Utilities 5.lnk
2015-05-27 09:27 - 2014-09-12 16:09 - 00000836 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2015-05-27 09:26 - 2014-09-12 16:09 - 00000000 ____D () C:\Program Files\CCleaner
2015-05-26 14:43 - 2013-10-27 20:59 - 00001369 _____ () C:\Users\jim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-05-22 08:30 - 2014-08-27 15:23 - 00000000 ____D () C:\Users\jim\Documents\META - PHYSICS
2015-05-19 19:05 - 2014-02-21 15:13 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2
2015-05-19 19:01 - 2015-04-07 13:04 - 00000000 ____D () C:\Users\jim\AppData\Local\Adobe
2015-05-19 18:55 - 2014-07-22 17:06 - 00003718 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2015-05-19 17:34 - 2014-09-12 14:27 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink WaveEditor 2
2015-05-19 17:34 - 2012-10-31 01:41 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink Media Suite
2015-05-19 17:13 - 2012-10-31 01:41 - 00000000 ____D () C:\Program Files (x86)\CyberLink
2015-05-19 15:46 - 2014-09-12 14:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDVD 14
2015-05-19 15:46 - 2014-09-12 14:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink LabelPrint 2.5
2015-05-19 15:46 - 2014-09-12 14:26 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink Power2Go 9
2015-05-19 15:41 - 2014-10-17 16:59 - 00000000 ____D () C:\Program Files\CyberLink
2015-05-19 15:23 - 2012-10-31 01:41 - 00000000 ____D () C:\ProgramData\CyberLink
2015-05-19 15:05 - 2013-10-27 20:05 - 00000000 ____D () C:\Users\jim
2015-05-18 17:12 - 2014-11-20 18:13 - 00000000 ____D () C:\Program Files (x86)\TurboTax
2015-05-17 21:11 - 2012-11-21 23:36 - 00000498 _____ () C:\Users\jim\AppData\Roaming\Microsoft\Windows\Start Menu\My Yahoo!.website
2015-05-17 20:37 - 2012-07-26 03:59 - 00000000 ____D () C:\WINDOWS\CbsTemp
2015-05-17 20:34 - 2015-04-04 11:38 - 00000000 ___SD () C:\WINDOWS\SysWOW64\GWX
2015-05-17 20:34 - 2015-04-04 11:38 - 00000000 ___SD () C:\WINDOWS\system32\GWX
2015-05-17 20:08 - 2015-02-13 17:24 - 00001116 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-05-17 20:08 - 2015-02-13 17:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-05-17 20:08 - 2015-02-13 17:24 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-05-16 18:56 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\rescache
2015-05-15 20:30 - 2014-12-13 21:44 - 00000000 ____D () C:\Program Files\Waterfox
2015-05-15 20:09 - 2015-01-22 17:22 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2015-05-15 20:09 - 2015-01-22 17:22 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2015-05-15 20:08 - 2013-08-22 11:36 - 00000000 ___RD () C:\WINDOWS\ImmersiveControlPanel
2015-05-15 20:08 - 2013-08-22 09:36 - 00000000 ____D () C:\WINDOWS\system32\AdvancedInstallers
2015-05-15 19:36 - 2015-04-08 20:30 - 00003886 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2015-05-15 19:36 - 2015-04-08 20:30 - 00003650 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2015-05-14 14:15 - 2013-08-22 11:36 - 00000000 ____D () C:\WINDOWS\AppReadiness
2015-05-13 14:29 - 2013-08-03 20:45 - 00000000 ____D () C:\WINDOWS\system32\MRT
2015-05-13 14:24 - 2012-12-12 11:31 - 140425016 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-05-13 14:17 - 2015-01-22 17:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2015-05-13 14:11 - 2013-09-29 23:51 - 00000000 ____D () C:\Program Files\Windows Journal
2015-05-09 19:01 - 2014-06-14 10:16 - 00020160 _____ (Glarysoft Ltd) C:\WINDOWS\system32\Drivers\GUBootStartup.sys
2015-05-05 13:59 - 2014-12-11 18:51 - 00792568 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2015-05-05 13:59 - 2014-12-11 18:51 - 00178168 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2015-05-01 20:36 - 2015-04-27 20:32 - 00000000 ____D () C:\Users\jim\Downloads\NEW AGE 2015
2015-05-01 19:24 - 2012-12-11 23:06 - 00001025 _____ () C:\Users\jim\Desktop\Puran Defrag.lnk

==================== Files in the root of some directories =======

2014-04-22 08:08 - 2014-04-22 08:08 - 0476160 _____ () C:\Program Files (x86)\setup.exe
2015-05-18 13:16 - 2015-05-18 13:16 - 0000000 _____ () C:\Users\jim\AppData\Roaming\1ED4.tmp
2015-05-30 10:48 - 2015-05-30 10:48 - 0803840 _____ () C:\Users\jim\AppData\Roaming\1ED4.tmp.exe
2012-12-16 17:34 - 2012-12-16 17:42 - 0000552 _____ () C:\Users\jim\AppData\Roaming\FreeDesktopClock.ini
2012-12-01 15:54 - 2015-04-26 18:03 - 0007597 _____ () C:\Users\jim\AppData\Local\resmon.resmoncfg
2012-12-28 08:53 - 2015-01-27 20:39 - 0000935 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.400.32.bc
2012-10-31 01:45 - 2012-10-31 01:46 - 0000119 _____ () C:\ProgramData\{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}.log
2012-10-31 01:41 - 2012-10-31 01:42 - 0000106 _____ () C:\ProgramData\{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}.log
2012-10-31 01:42 - 2012-10-31 01:43 - 0000111 _____ () C:\ProgramData\{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}.log
2012-10-31 01:41 - 2012-10-31 01:41 - 0000107 _____ () C:\ProgramData\{C59C179C-668D-49A9-B6EA-0121CCFC1243}.log
2012-10-31 01:43 - 2012-10-31 01:45 - 0000108 _____ () C:\ProgramData\{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}.log

Files to move or delete:
====================
C:\Users\jim\AHCI_Intel_W8_X04_A00_Setup-M2G0X_ZPE.exe
C:\Users\jim\APP_Quickset_W8_X02_A00_Setup-4PF13_ZPE.exe
C:\Users\jim\BT2230_Intel_W84_X05_A01_Setup-7KHT7_ZPE.exe
C:\Users\jim\Chipset_Intel_W8_X00_A00_Setup-R11GY_ZPE.exe
C:\Users\jim\DellDigitalDelivery.2.2.2000.0_Install_ZPE.exe
C:\Users\jim\iMEI_Intel_W8_X04_A00_Setup-5NK82_ZPE.exe


Some zero byte size files/folders:
==========================
C:\Windows\SysWOW64\igfxtray.exe

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-05-30 09:16

==================== End of log ============================

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 29-05-2015
Ran by jim at 2015-05-30 11:08:10
Running from C:\Users\jim\Downloads
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3104636226-4124162768-151004050-500 - Administrator - Disabled)
Guest (S-1-5-21-3104636226-4124162768-151004050-501 - Limited - Enabled)
jim (S-1-5-21-3104636226-4124162768-151004050-1001 - Administrator - Enabled) => C:\Users\jim

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Spybot - Search and Destroy (Enabled - Up to date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

123 Free Solitaire 2011 v8.0 (HKLM-x32\...\123 Free Solitaire_is1) (Version:  - TreeCardGames)
7-Zip 9.22beta (HKLM-x32\...\7-Zip) (Version:  - )
AbiWord 2.9.4 (HKLM-x32\...\AbiWord2) (Version: 2.9.4 - AbiSource Developers)
Absolute Reminder (HKLM-x32\...\{40F4FF7A-B214-4453-B973-080B09CED019}) (Version: 2.1.0.8 - Absolute Software)
Ad Muncher v4.94.34121 (Free)  (HKLM-x32\...\Ad Muncher) (Version:  - )
Adobe Flash Player 17 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 17.0.0.188 - Adobe Systems Incorporated)
Akamai NetSession Interface (HKU\S-1-5-21-3104636226-4124162768-151004050-1001\...\Akamai) (Version:  - Akamai Technologies, Inc)
Amazon Browser App (HKLM-x32\...\{0A7D6F3C-F2AB-48ED-BE23-99791BFF87D6}) (Version: 1.0.0.0 - Amazon) <==== ATTENTION
Amazon MP3 Downloader 1.0.18 (HKU\S-1-5-21-3104636226-4124162768-151004050-1001\...\Amazon MP3 Downloader) (Version: 1.0.18 - Amazon Services LLC)
Apple Application Support (HKLM-x32\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 2.1.0.6 - Atheros Communications Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 5.06 - Piriform)
CyberLink LabelPrint 2.5 (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.0.6603 - CyberLink Corp.)
CyberLink Media Suite 12 (HKLM-x32\...\InstallShield_{8F14AA37-5193-4A14-BD5B-BDF9B361AEF7}) (Version: 12.0 - CyberLink Corp.)
CyberLink PhotoDirector 5 (Version: 5.0.5315.0 - CyberLink Corp.) Hidden
CyberLink Power2Go 9 (HKLM-x32\...\InstallShield_{57D68FAE-CB5E-4fd6-AE3B-A0B43375AF18}) (Version: 9.0.1601.0 - CyberLink Corp.)
CyberLink PowerDirector 12 (Version: 12.0.2930.0 - CyberLink Corp.) Hidden
CyberLink PowerDVD 14 (HKLM-x32\...\{32C8E300-BDB4-4398-92C2-E9B7D8A233DB}) (Version: 14.0.4028.58 - CyberLink Corp.)
CyberLink WaveEditor 2 (HKLM-x32\...\InstallShield_{324F76CC-D8DD-4D87-B77D-D4AF5E1AA7B3}) (Version: 2.0.0.4203 - CyberLink Corp.)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Dell Data Vault (Version: 4.2.2.0 - Dell Inc.) Hidden
Dell Digital Delivery (HKLM-x32\...\{F91BF1B5-4213-440C-8539-C6EB2F1D1734}) (Version: 2.2.4000.0 - Dell Products, LP)
Dell SupportAssistAgent (HKLM-x32\...\{287348C8-8B47-4C36-AF28-441A3B7D8722}) (Version: 1.0.3.60494 - Dell)
Dell System Detect (HKU\S-1-5-21-3104636226-4124162768-151004050-1001\...\73f463568823ebbe) (Version: 5.12.0.3 - Dell)
Dell System Detect Bootstrapper (HKU\S-1-5-21-3104636226-4124162768-151004050-1001\...\8e3135b376bd523e) (Version: 1.1.0.15 - Dell)
Dell Touchpad (HKLM\...\SynTPDeinstKey) (Version: 16.2.12.13 - Synaptics Incorporated)
Doxillion Document Converter (HKLM-x32\...\Doxillion) (Version: 2.35 - NCH Software)
f.lux (HKU\S-1-5-21-3104636226-4124162768-151004050-1001\...\Flux) (Version:  - )
FormatFactory 3.6.0.0 (HKLM-x32\...\FormatFactory) (Version: 3.6.0.0 - Format Factory)
Glary Utilities 5.26 (HKLM-x32\...\Glary Utilities 5) (Version: 5.26.0.45 - Glarysoft Ltd)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 43.0.2357.81 - Google Inc.)
Google Update Helper (x32 Version: 1.3.27.5 - Google Inc.) Hidden
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1008 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1252 - Intel Corporation)
Intel(R) My WiFi Dashboard (HKLM\...\{1E741267-F54B-4b3a-A7B6-1D1A156E385E}) (Version: 15.05.5000.0219 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3958 - Intel Corporation)
Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed (HKLM\...\{89478C31-5CE8-461A-9084-9A0AF059F84F}) (Version: 15.5.0.0344 - Intel Corporation)
Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology (HKLM\...\{302600C1-6BDF-4FD1-1309-148929CC1385}) (Version: 3.1.1309.0390 - Intel Corporation)
Intel(R) Rapid Start Technology (HKLM-x32\...\3D073343-CEEB-4ce7-85AC-A69A7631B5D6) (Version: 2.1.0.1002 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.5.11.1002 - Intel Corporation)
Intel® PROSet/Wireless WiFi Software (HKLM\...\{99FDAE3B-6905-45A6-8F73-595363AAD3D1}) (Version: 15.05.1000.1411 - Intel Corporation)
Kaspersky Security Scan (HKLM-x32\...\InstallWIX_{56009CA3-423B-41F8-884A-E5B049534F15}) (Version: 12.0.1.340 - Kaspersky Lab)
Kaspersky Security Scan (x32 Version: 12.0.1.340 - Kaspersky Lab) Hidden
Malwarebytes Anti-Malware version 2.1.6.1022 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.6.1022 - Malwarebytes Corporation)
Microsoft Office (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.6120.5004 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
MPC-HC 1.7.8 (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.8 - MPC-HC Team)
NetMon (HKU\S-1-5-21-3104636226-4124162768-151004050-1001\...\NetMon) (Version: 0.5b - NetMon) <==== ATTENTION!
NTI Backup Now EZ (HKLM-x32\...\InstallShield_{B9ECA41B-55CC-4654-B6B5-6731D009EC69}) (Version: 2.5.2.36 - NTI Corporation)
NTI Backup Now EZ (x32 Version: 2.5.2.36 - NTI Corporation) Hidden
Octoshape add-in for Adobe Flash Player (HKU\S-1-5-21-3104636226-4124162768-151004050-1001\...\Octoshape add-in for Adobe Flash Player) (Version:  - )
OpenOffice 4.1.0 (HKLM-x32\...\{C87EF11D-36E9-479D-9898-7541EA1E8A6A}) (Version: 4.10.9764 - Apache Software Foundation)
Prism Video File Converter (HKLM-x32\...\Prism) (Version: 2.45 - NCH Software)
Puran Defrag 7.7 (HKLM\...\Puran Defrag_is1) (Version:  - Puran Software)
Quickset64 (HKLM\...\{87CF757E-C1F1-4D22-865C-00C6950B5258}) (Version: 11.1.003 - Dell Inc.)
QuickTime 7 (HKLM-x32\...\{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E}) (Version: 7.76.80.95 - Apple Inc.)
Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.2.8400.39034 - Realtek Semiconductor Corp.)
RogueKiller version 10 (HKLM\...\8B3D7924-ED89-486B-8322-E8594065D5CB_is1) (Version: 10 - Adlice Software)
Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee)
Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.4.40 - Safer-Networking Ltd.)
Switch Sound File Converter (HKLM-x32\...\Switch) (Version: 4.79 - NCH Software)
Torch (HKU\S-1-5-21-3104636226-4124162768-151004050-1001\...\Torch) (Version: 39.0.0.9626 - Torch Media, Inc) <==== ATTENTION
Translate Genius (HKLM-x32\...\{5FA1D4AD-5929-4A14-B711-A5A9D8DC9F96}) (Version: 1.0.9 - TGF Interactive)
Turboball (HKLM-x32\...\Turboball_is1) (Version: 1.0 - Media Contact LLC)
TurboTax 2014 (HKLM-x32\...\TurboTax 2014) (Version: 2014.0 - Intuit, Inc)
Waterfox 38.0 (x64 en-US) (HKLM\...\Waterfox 38.
Title: Re: Tab redirect on a Windows 8.1 computer
Post by: Corrine on May 30, 2015, 04:55:51 PM
Hi, Meta.

I'm not sure why you would restore what MBAM had previously removed but I'm glad that this time you decided to provide logs.  The reason is that I'm finding some rather nasty results -- a file identified as a trojan and another as a worm, along with a browser hijacker. 

1.  Let's start with Glary Utilities 5 --

Although the software is legitimate, Windows is a closed source system. Developers of registry cleaners and "system optimizers" do not have the core code of Windows 7 and Windows 8 and are not working on definitive information, but rather they are going on past knowledge and experience. Automatic cleaners will usually have to do some guesswork.  Modifying registry keys incorrectly can cause Windows instability, or make Windows unbootable. No registry cleaner is completely safe and the potential is ever present to cause more problems than they claim to fix.

Registry cleaners cannot distinguish between good and bad. If you run a registry cleaner, it will delete all those keys which are obsolete and sitting idle; but in reality, those keys may well be needed by some programs or windows at a later time.  There are no gains to be had from using a registry cleaner and the risk is great.  In addition, Microsoft does not support the use of registry cleaners.  See Microsoft support policy for the use of registry cleaning utilities (http://support.microsoft.com/kb/2563254).

It is your computer, your choice.  However, you may want to consider uninstalling the software.

2.  Please do the following to run FRST: 

Note: If the tool warns you about the version you're using being an outdated version please download and run the updated version.

NOTICE: This script was written specifically for this user. Running it on another machine may cause damage to your operating system

start
CreateRestorePoint:
CloseProcesses:
Folder: C:\Program Files (x86)\Gamma Task Menager
Winlogon\Notify\igfxcui: igfxdev.dll [X]
Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
CHR HKLM-x32\...\Chrome\Extension: [pbkdpahkifcigckmhiafindmaflfifgm] - C:\Users\jim\AppData\Local\Coupon Companion\Chrome\Coupon Companion.crx [Not Found]
R2 Live Malware Protection; C:\WINDOWS\mlwps.exe [242688 2015-05-30] (SecureSoft) [File not signed] <==== ATTENTION
File: C:\WINDOWS\mlwps.exe
R2 PRIVOXYSERVICE; C:\Program Files (x86)\Gamma Task Menager\privoxy.exe [371200 2015-05-30] (The Privoxy team - www.privoxy.org) [File not signed] <==== ATTENTION
Folder: C:\Program Files (x86)\Gamma Task Menager
R2 TorchCrashHandler; C:\Users\jim\AppData\Local\Torch\Update\TorchCrashHandler.exe [1217032 2015-05-12] (TorchMedia Inc.) <==== ATTENTION
Torch (HKU\S-1-5-21-3104636226-4124162768-151004050-1001\...\Torch) (Version: 39.0.0.9626 - Torch Media, Inc) <==== ATTENTION
Folder: C:\Users\jim\AppData\Local\Torch
2015-05-18 10:10 - 2015-05-18 10:11 - 00001418 _____ () C:\Users\jim\Desktop\Torch.lnk
2015-05-18 10:10 - 2015-05-18 10:10 - 00000000 ____D () C:\Users\jim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Torch
2015-05-18 10:04 - 2015-05-18 10:10 - 00000000 ____D () C:\Users\jim\AppData\Local\Torch
2015-05-20 14:45 - 2015-05-27 09:30 - 00000000 ____D () C:\Users\jim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NetMon
NetMon (HKU\S-1-5-21-3104636226-4124162768-151004050-1001\...\NetMon) (Version: 0.5b - NetMon) <==== ATTENTION!
C:\Users\jim\AHCI_Intel_W8_X04_A00_Setup-M2G0X_ZPE.exe
C:\Users\jim\APP_Quickset_W8_X02_A00_Setup-4PF13_ZPE.exe
C:\Users\jim\BT2230_Intel_W84_X05_A01_Setup-7KHT7_ZPE.exe
C:\Users\jim\Chipset_Intel_W8_X00_A00_Setup-R11GY_ZPE.exe
C:\Users\jim\DellDigitalDelivery.2.2.2000.0_Install_ZPE.exe
C:\Users\jim\iMEI_Intel_W8_X04_A00_Setup-5NK82_ZPE.exe
EmptyTemp:
end
3.  Please download AdwCleaner (http://general-changelog-team.fr/fr/downloads/finish/20-outils-de-xplode/2-adwcleaner/) by Xplode and save to your Desktop.
4.  Please download Junkware Removal Tool (http://www.bleepingcomputer.com/download/junkware-removal-tool/dl/131/) to your desktop.
Title: Re: Tab redirect on a Windows 8.1 computer
Post by: Meta on May 30, 2015, 06:33:25 PM
Hi on another xp PC on same network

having trouble 'PROXY SERVER ISN'T responding

Title: Re: Tab redirect on a Windows 8.1 computer
Post by: Meta on May 30, 2015, 08:05:41 PM
Wow, I don't know what happened but I've rebooted several times, tried cabeling to Laptop, ran malware bytes again.

Fix result of Farbar Recovery Scan Tool (x64) Version: 29-05-2015
Ran by jim at 2015-05-30 14:16:42 Run:1
Running from C:\Users\jim\Downloads
Loaded Profiles: jim (Available Profiles: jim)
Boot Mode: Normal
==============================================

fixlist content:
*****************
start
CreateRestorePoint:
CloseProcesses:
Folder: C:\Program Files (x86)\Gamma Task Menager
Winlogon\Notify\igfxcui: igfxdev.dll [X]
Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
CHR HKLM-x32\...\Chrome\Extension: [pbkdpahkifcigckmhiafindmaflfifgm] - C:\Users\jim\AppData\Local\Coupon Companion\Chrome\Coupon Companion.crx [Not Found]
R2 Live Malware Protection; C:\WINDOWS\mlwps.exe [242688 2015-05-30] (SecureSoft) [File not signed] <==== ATTENTION
File: C:\WINDOWS\mlwps.exe
R2 PRIVOXYSERVICE; C:\Program Files (x86)\Gamma Task Menager\privoxy.exe [371200 2015-05-30] (The Privoxy team - www.privoxy.org) [File not signed] <==== ATTENTION
Folder: C:\Program Files (x86)\Gamma Task Menager
R2 TorchCrashHandler; C:\Users\jim\AppData\Local\Torch\Update\TorchCrashHandler.exe [1217032 2015-05-12] (TorchMedia Inc.) <==== ATTENTION
Torch (HKU\S-1-5-21-3104636226-4124162768-151004050-1001\...\Torch) (Version: 39.0.0.9626 - Torch Media, Inc) <==== ATTENTION
Folder: C:\Users\jim\AppData\Local\Torch
2015-05-18 10:10 - 2015-05-18 10:11 - 00001418 _____ () C:\Users\jim\Desktop\Torch.lnk
2015-05-18 10:10 - 2015-05-18 10:10 - 00000000 ____D () C:\Users\jim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Torch
2015-05-18 10:04 - 2015-05-18 10:10 - 00000000 ____D () C:\Users\jim\AppData\Local\Torch
2015-05-20 14:45 - 2015-05-27 09:30 - 00000000 ____D () C:\Users\jim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NetMon
NetMon (HKU\S-1-5-21-3104636226-4124162768-151004050-1001\...\NetMon) (Version: 0.5b - NetMon) <==== ATTENTION!
C:\Users\jim\AHCI_Intel_W8_X04_A00_Setup-M2G0X_ZPE.exe
C:\Users\jim\APP_Quickset_W8_X02_A00_Setup-4PF13_ZPE.exe
C:\Users\jim\BT2230_Intel_W84_X05_A01_Setup-7KHT7_ZPE.exe
C:\Users\jim\Chipset_Intel_W8_X00_A00_Setup-R11GY_ZPE.exe
C:\Users\jim\DellDigitalDelivery.2.2.2000.0_Install_ZPE.exe
C:\Users\jim\iMEI_Intel_W8_X04_A00_Setup-5NK82_ZPE.exe
EmptyTemp:
*****************

Restore point was successfully created.
Processes closed successfully.

========================= Folder: C:\Program Files (x86)\Gamma Task Menager ========================

2015-05-30 10:48 - 2015-05-30 10:48 - 0000411 _____ () C:\Program Files (x86)\Gamma Task Menager\config.txt
2015-05-30 10:48 - 2015-05-30 10:48 - 0000021 _____ () C:\Program Files (x86)\Gamma Task Menager\default.action
2015-05-30 10:48 - 2015-05-30 10:48 - 0000142 _____ () C:\Program Files (x86)\Gamma Task Menager\default.filter
2015-05-30 10:48 - 2015-05-30 10:48 - 0144896 _____ (SecureSoft) C:\Program Files (x86)\Gamma Task Menager\gtrsecure.exe
2015-05-30 10:48 - 2015-05-30 10:48 - 0078336 _____ (SecureSoft) C:\Program Files (x86)\Gamma Task Menager\itweb.dll
2015-05-30 10:48 - 2015-05-30 10:48 - 0116736 _____ (SecureSoft) C:\Program Files (x86)\Gamma Task Menager\itweb64.dll
2015-05-30 10:48 - 2015-05-30 10:48 - 0086528 _____ () C:\Program Files (x86)\Gamma Task Menager\mgwz.dll
2015-05-30 10:48 - 2015-05-30 10:48 - 0371200 _____ (The Privoxy team - www.privoxy.org) C:\Program Files (x86)\Gamma Task Menager\privoxy.exe
2015-05-30 10:56 - 2015-05-30 10:56 - 0000000 _____ () C:\Program Files (x86)\Gamma Task Menager\privoxy.log
2015-05-30 10:48 - 2015-05-30 10:48 - 0103424 _____ (Secure Soft) C:\Program Files (x86)\Gamma Task Menager\sschromium.exe
2015-05-30 10:48 - 2015-05-30 10:48 - 0167424 _____ (Secure Soft) C:\Program Files (x86)\Gamma Task Menager\sschromium64.exe
2015-05-30 10:48 - 2015-05-30 10:48 - 0080896 _____ (AlfaSystem) C:\Program Files (x86)\Gamma Task Menager\ssff.exe
2015-05-30 10:48 - 2015-05-30 10:48 - 0135168 _____ (SecureSoft) C:\Program Files (x86)\Gamma Task Menager\ssie.dll

====== End of Folder: ======

"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui" => key Removed successfully
"HKLM\Software\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SDWinLogon" => key Removed successfully
"HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\pbkdpahkifcigckmhiafindmaflfifgm" => key Removed successfully
Live Malware Protection => Service Removed successfully

========================= File: C:\WINDOWS\mlwps.exe ========================

MD5: 6FF7F7EB3BD6EDB4280FFFDE18AEABA2
Creation and modification date: 2015-05-30 10:48 - 2015-05-30 10:48
Size: 0242688
Attributes: ----A
Company Name: SecureSoft
Internal Name: sswps.exe
Original Name: sswps.exe
Product Name: Live SecureSoft Protection
Description: Live SecureSoft Protection
File Version: 1.0.8.0
Product Version: 1.0.8.0
Copyright$creamod: Copyright 2014 SecureSoft, All rights reserved.

====== End of File: ======

PRIVOXYSERVICE => Service Removed successfully

========================= Folder: C:\Program Files (x86)\Gamma Task Menager ========================

2015-05-30 10:48 - 2015-05-30 10:48 - 0000411 _____ () C:\Program Files (x86)\Gamma Task Menager\config.txt
2015-05-30 10:48 - 2015-05-30 10:48 - 0000021 _____ () C:\Program Files (x86)\Gamma Task Menager\default.action
2015-05-30 10:48 - 2015-05-30 10:48 - 0000142 _____ () C:\Program Files (x86)\Gamma Task Menager\default.filter
2015-05-30 10:48 - 2015-05-30 10:48 - 0144896 _____ (SecureSoft) C:\Program Files (x86)\Gamma Task Menager\gtrsecure.exe
2015-05-30 10:48 - 2015-05-30 10:48 - 0078336 _____ (SecureSoft) C:\Program Files (x86)\Gamma Task Menager\itweb.dll
2015-05-30 10:48 - 2015-05-30 10:48 - 0116736 _____ (SecureSoft) C:\Program Files (x86)\Gamma Task Menager\itweb64.dll
2015-05-30 10:48 - 2015-05-30 10:48 - 0086528 _____ () C:\Program Files (x86)\Gamma Task Menager\mgwz.dll
2015-05-30 10:48 - 2015-05-30 10:48 - 0371200 _____ (The Privoxy team - www.privoxy.org) C:\Program Files (x86)\Gamma Task Menager\privoxy.exe
2015-05-30 10:56 - 2015-05-30 10:56 - 0000000 _____ () C:\Program Files (x86)\Gamma Task Menager\privoxy.log
2015-05-30 10:48 - 2015-05-30 10:48 - 0103424 _____ (Secure Soft) C:\Program Files (x86)\Gamma Task Menager\sschromium.exe
2015-05-30 10:48 - 2015-05-30 10:48 - 0167424 _____ (Secure Soft) C:\Program Files (x86)\Gamma Task Menager\sschromium64.exe
2015-05-30 10:48 - 2015-05-30 10:48 - 0080896 _____ (AlfaSystem) C:\Program Files (x86)\Gamma Task Menager\ssff.exe
2015-05-30 10:48 - 2015-05-30 10:48 - 0135168 _____ (SecureSoft) C:\Program Files (x86)\Gamma Task Menager\ssie.dll

====== End of Folder: ======

TorchCrashHandler => Service Removed successfully
Torch (HKU\S-1-5-21-3104636226-4124162768-151004050-1001\...\Torch) (Version: 39.0.0.9626 - Torch Media, Inc) <==== ATTENTION => Error: No automatic fix found for this entry.

========================= Folder: C:\Users\jim\AppData\Local\Torch ========================

2015-02-24 07:23 - 2015-02-24 07:23 - 0176965 _____ () C:\Users\jim\AppData\Local\Torch\Free Games.ico
2015-02-24 07:23 - 2015-02-24 07:23 - 0177997 _____ () C:\Users\jim\AppData\Local\Torch\Free Music.ico
2015-05-18 10:10 - 2015-05-11 23:21 - 1911304 _____ () C:\Users\jim\AppData\Local\Torch\Helper.dll
2015-05-18 10:04 - 2015-05-18 10:10 - 0013958 __RSH () C:\Users\jim\AppData\Local\Torch\log.log
2015-05-18 10:10 - 2015-05-12 01:17 - 0193904 _____ (Torch Media, Inc) C:\Users\jim\AppData\Local\Torch\Uninstall.exe
2015-05-18 10:10 - 2015-05-18 10:18 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Application
2015-05-18 10:11 - 2015-05-18 20:14 - 0001210 _____ () C:\Users\jim\AppData\Local\Torch\Application\debug.log
2015-05-18 10:10 - 2015-05-18 10:10 - 0002465 _____ () C:\Users\jim\AppData\Local\Torch\Application\master_preferences
2015-05-18 10:10 - 2015-05-12 01:14 - 0844296 _____ (Torch Media Inc.) C:\Users\jim\AppData\Local\Torch\Application\torch.exe
2015-05-18 10:10 - 2015-05-18 10:10 - 0000385 _____ () C:\Users\jim\AppData\Local\Torch\Application\VisualElementsManifest.xml
2015-05-18 10:10 - 2015-05-18 10:10 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626
2015-05-18 10:10 - 2015-05-12 01:14 - 0000220 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\39.0.0.9626.manifest
2015-05-18 10:10 - 2015-05-12 01:14 - 44984328 _____ (Torch Media Inc.) C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\chrome.dll
2015-05-18 10:10 - 2015-05-12 01:14 - 1930673 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\chrome_100_percent.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 2416793 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\chrome_200_percent.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 38305288 _____ (Torch Media Inc.) C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\chrome_child.dll
2015-05-18 10:10 - 2015-05-12 01:14 - 0130568 _____ (The Chromium Authors) C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\chrome_elf.dll
2015-05-18 10:10 - 2015-05-12 01:14 - 3231832 _____ (Microsoft Corporation) C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\d3dcompiler_46.dll
2015-05-18 10:10 - 2015-05-12 01:14 - 2319880 _____ (The Chromium Authors) C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\delegate_execute.exe
2015-05-18 10:10 - 2015-05-12 01:14 - 1925640 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\ffmpegsumo.dll
2015-05-18 10:10 - 2015-05-12 01:14 - 10490576 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\icudtl.dat
2015-05-18 10:10 - 2015-05-12 01:14 - 0218632 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\libegl.dll
2015-05-18 10:10 - 2015-05-12 01:14 - 0313864 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\libexif.dll
2015-05-18 10:10 - 2015-05-12 01:14 - 1357832 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\libglesv2.dll
2015-05-18 10:10 - 2015-05-12 01:14 - 0501256 _____ (The Chromium Authors) C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\metro_driver.dll
2015-05-18 10:10 - 2015-05-12 01:14 - 2622464 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\nacl_irt_x86_32.nexe
2015-05-18 10:10 - 2015-05-12 01:14 - 3147112 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\nacl_irt_x86_64.nexe
2015-05-18 10:10 - 2015-05-12 01:14 - 2131464 _____ (Torch Media Inc.) C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\nacl64.exe
2015-05-18 10:10 - 2015-05-12 01:14 - 9307144 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\pdf.dll
2015-05-18 10:10 - 2015-05-12 01:14 - 27038267 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\resources.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0002679 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\secondarytile.png
2015-05-18 10:10 - 2015-05-18 10:10 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\default_apps
2015-05-18 10:10 - 2015-05-12 01:14 - 0001266 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\default_apps\external_extensions.json
2015-05-18 10:10 - 2015-05-18 10:10 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Extensions
2015-05-18 10:10 - 2015-05-12 01:14 - 0400406 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Extensions\ask_toolbar_6_0_0.crx
2015-05-18 10:10 - 2015-05-12 01:14 - 0000487 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Extensions\external_extensions.json
2015-05-18 10:10 - 2015-05-12 01:14 - 0043702 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Extensions\TorchDeals.crx
2015-05-18 10:10 - 2015-05-18 10:10 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Installer
2015-05-18 10:10 - 2015-05-12 01:14 - 194775403 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Installer\chrome.7z
2015-05-18 10:10 - 2015-05-12 01:14 - 1192968 _____ (Torch Media Inc.) C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Installer\setup.exe
2015-05-18 10:10 - 2015-05-18 10:10 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales
2015-05-18 10:10 - 2015-05-12 01:14 - 0321468 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\am.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0310269 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\ar.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0381666 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\bg.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0488582 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\bn.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0235697 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\ca.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0232831 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\cs.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0212725 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\da.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0234555 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\de.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0417087 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\el.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0194761 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\en-GB.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0194638 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\en-US.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0240818 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\es.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0235006 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\es-419.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0207984 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\et.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0329669 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\fa.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0220462 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\fi.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0237769 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\fil.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0251329 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\fr.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0460342 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\gu.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0266387 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\he.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0470934 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\hi.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0221877 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\hr.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0246244 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\hu.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0208913 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\id.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0229203 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\it.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0280659 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\ja.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0531173 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\kn.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0239471 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\ko.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0230608 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\lt.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0235178 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\lv.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0594669 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\ml.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0464574 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\mr.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0214339 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\ms.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0213341 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\nb.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0225009 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\nl.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0228218 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\pl.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0225841 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\pt-BR.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0231812 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\pt-PT.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0238008 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\ro.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0351690 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\ru.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0240346 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\sk.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0218766 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\sl.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0349259 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\sr.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0214625 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\sv.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0215244 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\sw.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0548190 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\ta.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0522258 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\te.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0455463 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\th.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0231480 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\tr.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0362937 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\uk.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0260447 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\vi.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0192778 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\zh-CN.pak
2015-05-18 10:10 - 2015-05-12 01:14 - 0195922 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\Locales\zh-TW.pak
2015-05-18 10:10 - 2015-05-18 10:10 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\PepperFlash
2015-05-18 10:10 - 2015-05-12 01:14 - 0002047 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\PepperFlash\manifest.json
2015-05-18 10:10 - 2015-05-12 01:14 - 14910280 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\PepperFlash\pepflashplayer.dll
2015-05-18 10:10 - 2015-05-18 10:10 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\torch_default_apps
2015-05-18 10:10 - 2015-05-12 01:14 - 0000746 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\torch_default_apps\external_extensions.json
2015-05-18 10:10 - 2015-05-12 01:14 - 0005755 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\torch_default_apps\torch_games_app.crx
2015-05-18 10:10 - 2015-05-12 01:14 - 0005624 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\torch_default_apps\torch_music_app.crx
2015-05-18 10:10 - 2015-05-12 01:14 - 0005774 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\torch_default_apps\torch_torrent_app.crx
2015-05-18 10:10 - 2015-05-18 10:10 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\torch_default_themes
2015-05-18 10:10 - 2015-05-12 01:14 - 0001972 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\torch_default_themes\black_theme.crx
2015-05-18 10:10 - 2015-05-12 01:14 - 0000169 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\torch_default_themes\bokadokfjkloipfpomljajlhcncgejoc.json
2015-05-18 10:10 - 2015-05-18 10:10 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\torch_extensions
2015-05-18 10:10 - 2015-05-12 01:14 - 1722916 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\torch_extensions\drop_to_s.crx
2015-05-18 10:10 - 2015-05-12 01:14 - 0000860 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\torch_extensions\external_extensions.json
2015-05-18 10:10 - 2015-05-12 01:14 - 1528638 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\torch_extensions\facelift.crx
2015-05-18 10:10 - 2015-05-12 01:14 - 0935315 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\torch_extensions\new_tab.crx
2015-05-18 10:10 - 2015-05-12 01:14 - 0006620 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\torch_extensions\torch_games_ext.crx
2015-05-18 10:10 - 2015-05-12 01:14 - 0344512 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\torch_extensions\torch_music_ext.crx
2015-05-18 10:10 - 2015-05-12 01:14 - 0116329 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\torch_extensions\torchhelper.crx
2015-05-18 10:10 - 2015-05-18 10:10 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\VisualElements
2015-05-18 10:10 - 2015-05-12 01:14 - 0004726 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\VisualElements\logo.png
2015-05-18 10:10 - 2015-05-12 01:14 - 0016981 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\VisualElements\smalllogo.png
2015-05-18 10:10 - 2015-05-12 01:14 - 0013757 _____ () C:\Users\jim\AppData\Local\Torch\Application\39.0.0.9626\VisualElements\splash-620x300.png
2015-05-18 10:18 - 2015-05-18 10:18 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Application\Dictionaries
2015-05-18 10:18 - 2015-05-18 10:18 - 0440949 _____ () C:\Users\jim\AppData\Local\Torch\Application\Dictionaries\en-US-3-0.bdic
2015-05-18 10:10 - 2015-05-18 10:10 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins
2015-05-18 10:10 - 2015-05-18 10:10 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Hola
2015-05-18 10:10 - 2015-05-18 10:10 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Torrent
2015-05-18 10:10 - 2015-05-18 10:10 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Torrent\39.0.0.9626
2015-05-18 10:10 - 2015-05-18 10:10 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video
2015-05-18 10:10 - 2015-05-18 10:10 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC
2015-05-18 10:10 - 2013-07-30 18:20 - 0014220 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\AUTHORS.txt
2015-05-18 10:10 - 2013-07-30 18:21 - 0499200 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\axvlc.dll
2015-05-18 10:10 - 2013-07-30 18:20 - 0000294 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\axvlc.dll.manifest
2015-05-18 10:10 - 2013-07-30 18:20 - 0018092 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\COPYING.txt
2015-05-18 10:10 - 2013-07-30 18:21 - 0144896 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\libvlc.dll
2015-05-18 10:10 - 2013-07-30 18:20 - 0000283 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\libvlc.dll.manifest
2015-05-18 10:10 - 2013-07-30 18:22 - 2376192 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\libvlccore.dll
2015-05-18 10:10 - 2013-07-30 18:20 - 0127385 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\NEWS.txt
2015-05-18 10:10 - 2013-07-30 18:21 - 0353280 _____ (VideoLAN) C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\npvlc.dll
2015-05-18 10:10 - 2013-07-30 18:20 - 0000294 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\npvlc.dll.manifest
2015-05-18 10:10 - 2013-07-30 18:20 - 0002631 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\README.txt
2015-05-18 10:10 - 2013-07-30 17:53 - 0003786 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\spad.nsi
2015-05-18 10:10 - 2013-07-30 18:21 - 0054272 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\spad-setup.exe
2015-05-18 10:10 - 2013-07-30 18:20 - 0001140 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\THANKS.txt
2015-05-18 10:10 - 2013-07-30 18:21 - 0124416 _____ (VideoLAN) C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\vlc.exe
2015-05-18 10:10 - 2013-07-30 18:20 - 0000825 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\vlc.exe.manifest
2015-05-18 10:10 - 2013-07-30 18:20 - 0073164 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\vlc.ico
2015-05-18 10:10 - 2013-07-30 17:53 - 0045482 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\vlc.win32.nsi
2015-05-18 10:10 - 2013-07-30 18:21 - 0114176 _____ (VideoLAN) C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\vlc-cache-gen.exe
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\languages
2015-05-18 10:10 - 2013-07-30 17:53 - 0002629 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\languages\basque.nsh
2015-05-18 10:10 - 2013-07-30 17:53 - 0004158 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\languages\bengali.nsh
2015-05-18 10:10 - 2013-07-30 17:53 - 0002481 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\languages\brazilian_portuguese.nsh
2015-05-18 10:10 - 2013-07-30 17:53 - 0002315 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\languages\bulgarian.nsh
2015-05-18 10:10 - 2013-07-30 17:53 - 0002414 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\languages\catalan.nsh
2015-05-18 10:10 - 2013-07-30 17:53 - 0003098 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\languages\croatian.nsh
2015-05-18 10:10 - 2013-07-30 17:53 - 0002400 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\languages\danish.nsh
2015-05-18 10:10 - 2013-07-30 17:53 - 0000952 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\languages\declaration.nsh
2015-05-18 10:10 - 2013-07-30 17:53 - 0002624 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\languages\dutch.nsh
2015-05-18 10:10 - 2013-07-30 17:53 - 0002476 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\languages\english.nsh
2015-05-18 10:10 - 2013-07-30 17:53 - 0002505 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\languages\estonian.nsh
2015-05-18 10:10 - 2013-07-30 17:53 - 0002193 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\languages\finnish.nsh
2015-05-18 10:10 - 2013-07-30 17:53 - 0002598 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\languages\french.nsh
2015-05-18 10:10 - 2013-07-30 17:53 - 0002828 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\languages\galician.nsh
2015-05-18 10:10 - 2013-07-30 17:53 - 0002550 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\languages\german.nsh
2015-05-18 10:10 - 2013-07-30 17:53 - 0002256 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\languages\hebrew.nsh
2015-05-18 10:10 - 2013-07-30 17:53 - 0002231 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\languages\hungarian.nsh
2015-05-18 10:10 - 2013-07-30 17:53 - 0002320 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\languages\italian.nsh
2015-05-18 10:10 - 2013-07-30 17:53 - 0002547 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\languages\japanese.nsh
2015-05-18 10:10 - 2013-07-30 17:53 - 0002376 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\languages\lithuanian.nsh
2015-05-18 10:10 - 2013-07-30 17:53 - 0002151 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\languages\occitan.nsh
2015-05-18 10:10 - 2013-07-30 17:53 - 0002539 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\languages\polish.nsh
2015-05-18 10:10 - 2013-07-30 17:53 - 0003510 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\languages\punjabi.nsh
2015-05-18 10:10 - 2013-07-30 17:53 - 0002234 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\languages\romanian.nsh
2015-05-18 10:10 - 2013-07-30 17:53 - 0002635 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\languages\russian.nsh
2015-05-18 10:10 - 2013-07-30 17:53 - 0002218 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\languages\schinese.nsh
2015-05-18 10:10 - 2013-07-30 17:53 - 0002584 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\languages\serbian.nsh
2015-05-18 10:10 - 2013-07-30 17:53 - 0002417 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\languages\slovak.nsh
2015-05-18 10:10 - 2013-07-30 17:53 - 0002237 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\languages\slovenian.nsh
2015-05-18 10:10 - 2013-07-30 17:53 - 0003016 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\languages\sorani.nsh
2015-05-18 10:10 - 2013-07-30 17:53 - 0002818 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\languages\spanish.nsh
2015-05-18 10:10 - 2013-07-30 17:53 - 0002664 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\languages\swedish.nsh
2015-05-18 10:10 - 2013-07-30 17:53 - 0002585 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\languages\ukrainian.nsh
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ach
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ach\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0063797 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ach\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\af
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\af\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0055787 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\af\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\am
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\am\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0082688 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\am\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\an
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\an\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0539975 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\an\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ar
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ar\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0326823 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ar\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ast
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ast\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0532395 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ast\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\az
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\az\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0001090 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\az\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\be
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\be\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0754927 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\be\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\bg
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\bg\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0694950 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\bg\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\bn
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\bn\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0754446 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\bn\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\bn_IN
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\bn_IN\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0925984 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\bn_IN\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\br
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\br\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0094046 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\br\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ca
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ca\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0471952 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ca\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\cgg
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\cgg\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0047217 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\cgg\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ckb
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ckb\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0099143 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ckb\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\co
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\co\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0000702 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\co\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\cs
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\cs\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0223237 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\cs\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\cy
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\cy\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0136568 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\cy\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\da
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\da\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0271046 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\da\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\de
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\de\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0607587 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\de\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\el
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\el\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0844887 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\el\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\en_GB
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\en_GB\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0023243 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\en_GB\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\es
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\es\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0579426 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\es\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\et
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\et\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0509577 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\et\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\eu
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\eu\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0547161 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\eu\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\fa
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\fa\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0119049 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\fa\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ff
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ff\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0093910 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ff\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\fi
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\fi\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0599991 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\fi\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\fr
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\fr\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0576087 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\fr\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\fur
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\fur\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0043730 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\fur\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ga
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ga\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0161636 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ga\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\gd
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\gd\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0190687 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\gd\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\gl
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\gl\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0620665 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\gl\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\gu
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\gu\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0030673 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\gu\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\he
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\he\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0211070 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\he\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\hi
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\hi\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0151059 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\hi\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\hr
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\hr\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0610623 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\hr\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\hu
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\hu\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0618080 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\hu\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\hy
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\hy\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0152083 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\hy\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ia
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ia\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0011306 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ia\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\id
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\id\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0364897 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\id\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\is
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\is\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0161020 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\is\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\it
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\it\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0445363 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\it\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ja
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ja\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0678937 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ja\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ka
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ka\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0064502 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ka\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\kk
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\kk\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0266123 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\kk\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\km
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\km\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 1020171 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\km\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\kmr
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\kmr\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0017852 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\kmr\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\kn
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\kn\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0020750 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\kn\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ko
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ko\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0334753 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ko\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ky
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ky\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0044957 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ky\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\lg
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\lg\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0062785 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\lg\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\lt
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\lt\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0375021 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\lt\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\lv
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\lv\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0006803 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\lv\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\mk
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\mk\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0007492 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\mk\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ml
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ml\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0043603 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ml\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\mn
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\mn\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0092721 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\mn\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\mr
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\mr\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0131948 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\mr\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ms
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ms\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0300195 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ms\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\my
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\my\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0011442 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\my\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\nb
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\nb\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0133828 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\nb\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ne
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ne\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0373448 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ne\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\nl
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\nl\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0594163 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\nl\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\nn
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\nn\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0119921 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\nn\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\oc
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\oc\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0146965 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\oc\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\or_IN
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\or_IN\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0025914 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\or_IN\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\pa
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\pa\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0302854 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\pa\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\pl
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\pl\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0606033 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\pl\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ps
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ps\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0047663 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ps\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\pt_BR
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\pt_BR\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0610311 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\pt_BR\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\pt_PT
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\pt_PT\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0291242 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\pt_PT\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ro
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ro\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0339836 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ro\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ru
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ru\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0771939 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ru\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\si
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\si\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0299047 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\si\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\sk
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\sk\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0632073 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\sk\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\sl
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\sl\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0458694 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\sl\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\sq
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\sq\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0001364 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\sq\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\sr
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\sr\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0356755 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\sr\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\sv
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\sv\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0301314 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\sv\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ta
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ta\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0094676 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\ta\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\te
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\te\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0170969 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\te\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\tet
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\tet\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0000484 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\tet\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\th
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\th\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0318619 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\th\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\tl
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\tl\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0000461 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\tl\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\tr
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\tr\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0609273 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\tr\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\uk
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\uk\LC_MESSAGES
2015-05-18 10:10 - 2013-07-30 18:20 - 0779687 _____ () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\uk\LC_MESSAGES\vlc.mo
2015-05-18 10:10 - 2013-08-21 12:05 - 0000000 ____D () C:\Users\jim\AppData\Local\Torch\Plugins\Video\VLC\locale\uz
2015-05
Title: Re: Tab redirect on a Windows 8.1 computer
Post by: Meta on May 30, 2015, 08:21:09 PM
# AdwCleaner v4.205 - Logfile created 30/05/2015 at 16:12:11
# Updated 21/05/2015 by Xplode
# Database : 2015-05-25.3 [Server]
# Operating system : Windows 8.1  (x64)
# Username : jim - LAPTOP
# Running from : C:\Users\jim\Downloads\adwcleaner_4.205.exe
# Option : Cleaning

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\ProgramData\torchcrashhandler
Folder Deleted : C:\Users\jim\AppData\Roaming\Updater
Folder Deleted : C:\Users\jim\AppData\Roaming\Mozilla\Firefox\Profiles\2wrbouke.default-1403124906351\Extensions\isreaditlater@ideashower.com
File Deleted : C:\Users\jim\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Torch.lnk
File Deleted : C:\Users\jim\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Torch.lnk
File Deleted : C:\Users\jim\Desktop\Facebook.lnk
File Deleted : C:\Users\jim\Desktop\Free Games.lnk
File Deleted : C:\Users\jim\Desktop\Youtube.lnk

***** [ Scheduled tasks ] *****

Task Deleted : Malware Cleaner

***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Classes\Applications\Torch.exe
Key Deleted : HKCU\Software\torch
Key Deleted : HKCU\Software\NetMon
Key Deleted : HKLM\SOFTWARE\torch
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\torch
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\NetMon
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{0A7D6F3C-F2AB-48ED-BE23-99791BFF87D6}
Key Deleted : HKLM\SOFTWARE\Classes\Installer\Features\C3F6D7A0BA2FDE84EB329997B1FF786D
Key Deleted : HKLM\SOFTWARE\Classes\Installer\Products\C3F6D7A0BA2FDE84EB329997B1FF786D
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\C3F6D7A0BA2FDE84EB329997B1FF786D
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\ask.com
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.ask.com
Data Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyEnable] - 1
Data Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - <local>

***** [ Web browsers ] *****

-\\ Internet Explorer v11.0.9600.17416


-\\ Mozilla Firefox v


-\\ Google Chrome v43.0.2357.81

[C:\Users\jim\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://search.aol.com/aol/search?q={searchTerms}
[C:\Users\jim\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://www.ask.com/web?q={searchTerms}

*************************

AdwCleaner[R0].txt - [5794 bytes] - [13/02/2015 16:01:17]
AdwCleaner[R1].txt - [5853 bytes] - [13/02/2015 16:30:38]
AdwCleaner[R2].txt - [1399 bytes] - [11/04/2015 15:38:35]
AdwCleaner[R3].txt - [1442 bytes] - [13/04/2015 12:32:01]
AdwCleaner[R4].txt - [2453 bytes] - [30/05/2015 16:07:49]
AdwCleaner[R5].txt - [3181 bytes] - [30/05/2015 16:11:01]
AdwCleaner[S0].txt - [4986 bytes] - [13/02/2015 16:32:55]
AdwCleaner[S1].txt - [3073 bytes] - [30/05/2015 16:12:11]

########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [3132  bytes] ##########
Title: Re: Tab redirect on a Windows 8.1 computer
Post by: Meta on May 30, 2015, 08:32:59 PM
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.8.5 (05.30.2015:1)
OS: Windows 8.1 x64
Ran by jim on 30-May-15 at 16:26:08.90
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Tasks

Successfully deleted: [Task] C:\WINDOWS\system32\tasks\PCDEventLauncherTask
Successfully deleted: [Task] C:\WINDOWS\system32\tasks\PCDoctorBackgroundMonitorTask
Successfully deleted: [Task] C:\WINDOWS\system32\tasks\System Installer



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Clients\StartMenuInternet\Torch



~~~ Files

Successfully deleted: [File] C:\WINDOWS\wininit.ini
Successfully deleted: [File] C:\WINDOWS\prefetch\ASKPIP_FF_.EXE-CDAB442A.pf



~~~ Folders

Successfully deleted: [Folder] C:\ProgramData\baidu



~~~ Chrome


[C:\Users\jim\appdata\local\Google\Chrome\User Data\Default\Preferences] - default search provider reset

[C:\Users\jim\appdata\local\Google\Chrome\User Data\Default\Preferences] - Extensions Deleted:

[C:\Users\jim\appdata\local\Google\Chrome\User Data\Default\Secure Preferences] - default search provider reset

[C:\Users\jim\appdata\local\Google\Chrome\User Data\Default\Secure Preferences] - Extensions Deleted:
[]





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 30-May-15 at 16:28:29.32
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Title: Re: Tab redirect on a Windows 8.1 computer
Post by: Meta on May 30, 2015, 08:39:56 PM
Things look great so far

Many thanks to all that helped.

Jim
Title: Re: Tab redirect on a Windows 8.1 computer
Post by: Corrine on May 30, 2015, 10:42:42 PM
Hi, Meta.

Is your laptop working correctly now?  If so, I'll provide instructions for cleaning up the tools used during the process.
Title: Re: Tab redirect on a Windows 8.1 computer
Post by: Meta on May 30, 2015, 11:01:58 PM
Whew! Thankfully laptop doing well, removed some old version and Glary Utilities 5
Title: Re: Tab redirect on a Windows 8.1 computer
Post by: Corrine on May 30, 2015, 11:31:00 PM
Excellent!  Personally, I was surprised that AdwCleaner and JRT still found so many files to remove.

Let's take care of removing the tools used:

Please download Delfix from here (http://general-changelog-team.fr/fr/downloads/finish/20-outils-de-xplode/9-delfix).

Ensure the following boxes are checked:
The program will run for a few moments and then notepad will open with a log.   Please paste the log in your next reply.
Title: Re: Tab redirect on a Windows 8.1 computer
Post by: Meta on May 31, 2015, 12:28:04 AM
somehow I deleted the 1st delfix file

here' the 2nd:

# DelFix v1.010 - Logfile created 30/05/2015 at 20:24:06
# Updated 26/04/2015 by Xplode
# Username : jim - LAPTOP
# Operating System : Windows 8.1  (64 bits)

~ Removing disinfection tools ...


########## - EOF - ##########
Title: Re: Tab redirect on a Windows 8.1 computer
Post by: Corrine on May 31, 2015, 12:56:56 AM
That's ok.  I meant to delete the line requesting the log be posted.  The main thing is that the tool nicely backs up the registry, clears System Restore of infected restore points and nicely removes all those files I had you download to your desktop.  Much easier than doing it manually,

Now you can go play (you'll find plodr and Pete handing around somewhere ;) ).  Just watch the files you download as you did accumulate some adware along with a few other nasties. 
Title: Re: Tab redirect on a Windows 8.1 computer
Post by: Meta on May 31, 2015, 01:22:50 AM
I'm not a fan of MS version of system restore, so I haven't 't used it. Maybe today or (tomorrow) would be a good time to at least create one Restore Pt.

Big Thanks Corrine, Things change, I keep learning.

Before coming to the Capitol District, I met my 1st computer up in  Orono, Me in 1959!
Title: Re: Tab redirect on a Windows 8.1 computer
Post by: Corrine on May 31, 2015, 01:46:17 AM
Nonetheless, creating a fresh restore point prior to making changes to your computer can most certainly come in handy. 

You're way ahead of me, Meta.  I remember being impressed by a keypunch in 167 or 1968.