Here is the first log:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 17-08-2014 01
Ran by Tracy Dornelly (administrator) on TRACYDORNELLY on 20-08-2014 08:40:34
Running from C:\Users\Tracy Dornelly\Downloads
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: English (United States)
Internet Explorer Version 11
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version:
http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/
Download link for 64-Bit Version:
http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST:
http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Andrea Electronics Corporation) C:\Program Files\IDT\WDM\AESTSr64.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Dell, Inc.) C:\Program Files (x86)\Dell\Dell Datasafe Online\NOBuAgent.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(SoftThinks SAS) C:\Program Files (x86)\Dell DataSafe Local Backup\SftService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(SoftThinks - Dell) C:\Program Files (x86)\Dell DataSafe Local Backup\Toaster.exe
() C:\Program Files (x86)\Dell DataSafe Local Backup\Components\Scheduler\STService.exe
(SoftThinks - Dell) C:\Program Files (x86)\Dell DataSafe Local Backup\Components\DSUpdate\DSUpd.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Dell Inc.) C:\Program Files\Dell\QuickSet\quickset.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\Apoint.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
(Creative Technology Ltd) C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
() C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe
() C:\Program Files (x86)\Dell Stage\Dell Stage\AccuWeather\accuweather.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\ApMsgFwd.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\ApntEx.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\hidfind.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\btplayerctrl.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Mozilla Corporation) C:\Users\Tracy Dornelly\AppData\Local\Idle~Crawler\firefox\firefox.exe
(Mozilla Corporation) C:\Users\Tracy Dornelly\AppData\Local\Idle~Crawler\firefox\firefox.exe
(Mozilla Corporation) C:\Users\Tracy Dornelly\AppData\Local\Idle~Crawler\firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_14_0_0_145.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_14_0_0_145.exe
(Mozilla Corporation) C:\Users\Tracy Dornelly\AppData\Local\Idle~Crawler\firefox\firefox.exe
(Mozilla Corporation) C:\Users\Tracy Dornelly\AppData\Local\Idle~Crawler\firefox\firefox.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Users\Tracy Dornelly\AppData\Local\Idle~Crawler\firefox\firefox.exe
(Mozilla Corporation) C:\Users\Tracy Dornelly\AppData\Local\Idle~Crawler\firefox\firefox.exe
(Mozilla Corporation) C:\Users\Tracy Dornelly\AppData\Local\Idle~Crawler\firefox\firefox.exe
(Mozilla Corporation) C:\Users\Tracy Dornelly\AppData\Local\Idle~Crawler\firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_14_0_0_145.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_14_0_0_145.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_14_0_0_145.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_14_0_0_145.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_14_0_0_145.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_14_0_0_145.exe
() C:\Users\Tracy Dornelly\AppData\Local\Idle~Crawler\Idle~Crawler.exe
(Mozilla Corporation) C:\Users\Tracy Dornelly\AppData\Local\Idle~Crawler\firefox\firefox.exe
(Microsoft Corporation) C:\Windows\System32\consent.exe
(Mozilla Corporation) C:\Users\Tracy Dornelly\AppData\Local\Idle~Crawler\firefox\plugin-container.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_14_0_0_145.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_14_0_0_145.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [525312 2011-01-25] (IDT, Inc.)
HKLM\...\Run: [QuickSet] => C:\Program Files\Dell\QuickSet\QuickSet.exe [3666800 2011-01-21] (Dell Inc.)
HKLM\...\Run: [IntelTBRunOnce] => wscript.exe //b //nologo "C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs"
HKLM\...\Run: [IntelWireless] => C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe [1933584 2010-12-17] (Intel(R) Corporation)
HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp
HKLM\...\Run: [Apoint] => C:\Program Files\DellTPad\Apoint.exe [609144 2011-04-12] (Alps Electric Co., Ltd.)
HKLM\...\Run: [DellStage] => C:\Program Files (x86)\Dell Stage\Dell Stage\stage_primary.exe [2195824 2012-02-01] ()
HKLM-x32\...\Run: [Dell Webcam Central] => C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe [503942 2011-04-13] (Creative Technology Ltd)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [283160 2010-11-06] (Intel Corporation)
HKLM-x32\...\Run: [NUSB3MON] => C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-11-17] (Renesas Electronics Corporation)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [RoxWatchTray] => c:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatchTray12OEM.exe [240112 2010-11-25] (Sonic Solutions)
HKLM-x32\...\Run: [Desktop Disc Tool] => c:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe [514544 2010-11-17] ()
HKLM-x32\...\Run: [Dell DataSafe Online] => C:\Program Files (x86)\Dell\Dell Datasafe Online\NOBuClient.exe [1117528 2010-08-25] (Dell, Inc.)
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"
HKLM-x32\...\Run: [AccuWeatherWidget] => C:\Program Files (x86)\Dell Stage\Dell Stage\AccuWeather\accuweather.exe [968048 2012-02-01] ()
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [43816 2014-07-03] (Apple Inc.)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-07-08] (Apple Inc.)
HKLM-x32\...\Run: [fst_us_205] => [X]
Winlogon\Notify\GoToAssist: C:\Program Files (x86)\Citrix\GoToAssist\615\G2AWinLogon_x64.dll (Citrix Online, a division of Citrix Systems, Inc.)
Winlogon\Notify\igfxcui: C:\windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-4085511053-820811713-3101008905-1000\...\Run: [ShowBatteryBar] => C:\Program Files\BatteryBar\ShowBatteryBar.exe [89600 2013-04-11] ()
HKU\S-1-5-21-4085511053-820811713-3101008905-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [21650016 2014-07-24] (Skype Technologies S.A.)
HKU\S-1-5-21-4085511053-820811713-3101008905-1000\...\RunOnce: [FlashPlayerUpdate] => C:\windows\SysWOW64\Macromed\Flash\FlashUtil32_14_0_0_145_Plugin.exe [851632 2014-07-08] (Adobe Systems Incorporated)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
Startup: C:\Users\Tracy Dornelly\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DealFinder.lnk
ShortcutTarget: DealFinder.lnk -> C:\Program Files (x86)\AA\DealFinder\DealFinder\DealFinder.exe (No File)
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://g.msn.com/USCON/1
BHO: No Name -> {27B4851A-3207-45A2-B947-BE8AFE6163AB} -> No File
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Skype add-on for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
BHO-x32: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll (McAfee, Inc.)
BHO-x32: McAfee Phishing Filter -> {27B4851A-3207-45A2-B947-BE8AFE6163AB} -> c:\progra~1\mcafee\msk\mskapbho.dll No File
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Skype Browser Helper -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Handler: cozi - {5356518D-FE9C-4E08-9C1F-1E872ECD367F} - No File
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: cozi - {5356518D-FE9C-4E08-9C1F-1E872ECD367F} - C:\Program Files (x86)\Cozi Express\CoziProtocolHandler.dll (Cozi Group, Inc.)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 75.75.75.75 75.75.76.76
FireFox:
========
FF ProfilePath: C:\Users\Tracy Dornelly\AppData\Roaming\Mozilla\Firefox\Profiles\lcohjray.default
FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll ()
FF Plugin: @java.com/JavaPlugin -> C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @citrixonline.com/appdetectorplugin -> C:\Users\Tracy Dornelly\AppData\Local\Citrix\Plugins\79\npappdetector.dll (Citrix Online)
FF user.js: detected! => C:\Users\Tracy Dornelly\AppData\Roaming\Mozilla\Firefox\Profiles\lcohjray.default\user.js
FF SearchPlugin: C:\Users\Tracy Dornelly\AppData\Roaming\Mozilla\Firefox\Profiles\lcohjray.default\searchplugins\cc-wiki-en.xml
FF SearchPlugin: C:\Users\Tracy Dornelly\AppData\Roaming\Mozilla\Firefox\Profiles\lcohjray.default\searchplugins\creative-commons-search.xml
FF SearchPlugin: C:\Users\Tracy Dornelly\AppData\Roaming\Mozilla\Firefox\Profiles\lcohjray.default\searchplugins\web-search-powered-by-google.xml
FF Extension: cosstminn - C:\Users\Tracy Dornelly\AppData\Roaming\Mozilla\Firefox\Profiles\lcohjray.default\Extensions\
bodn@ieiy.net [2014-08-15]
FF Extension: PageRank for Firefox - C:\Users\Tracy Dornelly\AppData\Roaming\Mozilla\Firefox\Profiles\lcohjray.default\Extensions\
pagerank@any-tech.ws.xpi [2012-04-10]
FF Extension: Alexa Toolbar - C:\Users\Tracy Dornelly\AppData\Roaming\Mozilla\Firefox\Profiles\lcohjray.default\Extensions\
toolbar@alexa.com.xpi [2011-09-06]
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2014-06-11]
FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA} [2014-06-11]
FF HKCU\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: McAfee Security Scan Plus - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04]
Chrome:
=======
CHR Extension: (cosstminn) - C:\Users\Tracy Dornelly\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkpacilcggkkbellcfbemdfaammddigp [2014-08-15]
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [897088 2010-11-03] (Intel Corporation) [File not signed]
R3 Bluetooth Media Service; C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe [1298496 2010-11-03] (Intel Corporation) [File not signed]
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [289256 2014-04-09] (McAfee, Inc.)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [340240 2010-12-17] ()
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
S3 mr7910; C:\Windows\System32\DRIVERS\mr7910.sys [55808 2007-03-16] (Mars Semiconductor Corp.)
S3 RimUsb; C:\Windows\System32\Drivers\RimUsb_AMD64.sys [27520 2007-05-14] (Research In Motion Limited)
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-08-20 08:40 - 2014-08-20 08:41 - 00017883 _____ () C:\Users\Tracy Dornelly\Downloads\FRST.txt
2014-08-20 08:39 - 2014-08-20 08:40 - 00000000 ____D () C:\FRST
2014-08-20 08:37 - 2014-08-20 08:37 - 02101760 _____ (Farbar) C:\Users\Tracy Dornelly\Downloads\FRST64.exe
2014-08-16 10:43 - 2014-08-20 08:39 - 00002600 _____ () C:\Users\Tracy Dornelly\Desktop\Homeschooling notes.txt
2014-08-15 23:36 - 2014-08-15 23:36 - 00000000 ____D () C:\Program Files (x86)\predm
2014-08-15 23:27 - 2013-12-18 22:04 - 00264616 _____ (Oracle Corporation) C:\windows\SysWOW64\javaws.exe
2014-08-15 23:26 - 2014-08-15 23:26 - 00000000 ____D () C:\Program Files (x86)\Okiitan
2014-08-15 23:25 - 2014-08-15 23:25 - 00003476 _____ () C:\windows\System32\Tasks\PCSafePRO_Popup
2014-08-15 23:25 - 2014-08-15 23:25 - 00003212 _____ () C:\windows\System32\Tasks\PCSafePRO_Start
2014-08-15 23:25 - 2014-08-15 23:25 - 00000000 ____D () C:\Users\Tracy Dornelly\AppData\Local\Fusion_Tech_Software,_LLC
2014-08-15 23:24 - 2014-08-16 08:55 - 00000000 ____D () C:\Program Files (x86)\globalUpdate
2014-08-15 23:24 - 2014-08-15 23:44 - 00000000 ____D () C:\ProgramData\cosstminn
2014-08-15 23:24 - 2014-08-15 23:36 - 00000000 __SHD () C:\windows\SysWOW64\AI_RecycleBin
2014-08-15 23:24 - 2014-08-15 23:34 - 00000000 ____D () C:\ProgramData\4d09ce8d5400296d
2014-08-15 23:24 - 2014-08-15 23:34 - 00000000 ____D () C:\Program Files (x86)\cosstminn
2014-08-15 23:24 - 2014-08-15 23:25 - 00000000 ____D () C:\Users\Tracy Dornelly\Documents\PCSafePRO
2014-08-15 23:24 - 2014-08-15 23:25 - 00000000 ____D () C:\Users\Tracy Dornelly\AppData\Local\Idle~Crawler
2014-08-15 23:24 - 2014-08-15 23:24 - 00004606 _____ () C:\windows\System32\Tasks\Idle~Crawler Runner
2014-08-15 23:24 - 2014-08-15 23:24 - 00000258 __RSH () C:\ProgramData\ntuser.pol
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____H () C:\windows\system32\Drivers\Msft_Kernel_webinstr_01009.Wdf
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\Tracy Dornelly\AppData\Local\Torch
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\Tracy Dornelly\AppData\Local\Packages
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\Tracy Dornelly\AppData\Local\Google
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\Tracy Dornelly\AppData\Local\globalUpdate
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\Tracy Dornelly\AppData\Local\Comodo
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\Tracy Dornelly\AppData\Local\Chromatic Browser
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Torch
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Google
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Comodo
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Chromatic Browser
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\HomeGroupUser$
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\Guest\AppData\Local\Torch
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\Guest\AppData\Local\Google
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\Guest\AppData\Local\Comodo
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\Guest\AppData\Local\Chromatic Browser
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\Guest
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Torch
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Google
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Comodo
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Chromatic Browser
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\Administrator
2014-08-15 23:23 - 2014-08-15 23:23 - 00000000 ____D () C:\ProgramData\UpdateCommon
2014-08-15 23:22 - 2014-08-15 23:33 - 00000000 ____D () C:\Users\Tracy Dornelly\AppData\Roaming\device
2014-08-15 23:22 - 2014-08-15 23:32 - 00000000 ____D () C:\Users\Tracy Dornelly\AppData\Roaming\serv
2014-08-15 23:22 - 2014-08-15 23:22 - 00300920 _____ () C:\Users\Tracy Dornelly\Downloads\setup.exe
2014-08-15 12:56 - 2014-08-15 12:56 - 00267359 _____ () C:\Users\Tracy Dornelly\Downloads\ferguson protest 1.jpeg
2014-08-14 08:54 - 2014-06-30 18:24 - 00008856 _____ (Microsoft Corporation) C:\windows\system32\icardres.dll
2014-08-14 08:54 - 2014-06-30 18:14 - 00008856 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardres.dll
2014-08-14 08:54 - 2014-06-06 02:16 - 00035480 _____ (Microsoft Corporation) C:\windows\SysWOW64\TsWpfWrp.exe
2014-08-14 08:54 - 2014-06-06 02:12 - 00035480 _____ (Microsoft Corporation) C:\windows\system32\TsWpfWrp.exe
2014-08-14 08:54 - 2014-03-09 17:48 - 01389208 _____ (Microsoft Corporation) C:\windows\system32\icardagt.exe
2014-08-14 08:54 - 2014-03-09 17:48 - 00171160 _____ (Microsoft Corporation) C:\windows\system32\infocardapi.dll
2014-08-14 08:54 - 2014-03-09 17:47 - 00619672 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardagt.exe
2014-08-14 08:54 - 2014-03-09 17:47 - 00099480 _____ (Microsoft Corporation) C:\windows\SysWOW64\infocardapi.dll
2014-08-13 09:17 - 2014-07-31 19:41 - 00348856 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2014-08-13 09:17 - 2014-07-31 19:16 - 00307384 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2014-08-13 09:17 - 2014-07-25 10:52 - 23645696 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2014-08-13 09:17 - 2014-07-25 10:02 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2014-08-13 09:17 - 2014-07-25 10:01 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2014-08-13 09:17 - 2014-07-25 09:51 - 17524224 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2014-08-13 09:17 - 2014-07-25 09:30 - 00066048 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2014-08-13 09:17 - 2014-07-25 09:28 - 00548352 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2014-08-13 09:17 - 2014-07-25 09:28 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2014-08-13 09:17 - 2014-07-25 09:25 - 02774528 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2014-08-13 09:17 - 2014-07-25 09:25 - 00083968 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2014-08-13 09:17 - 2014-07-25 09:11 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2014-08-13 09:17 - 2014-07-25 09:10 - 00033792 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2014-08-13 09:17 - 2014-07-25 09:04 - 02724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2014-08-13 09:17 - 2014-07-25 09:03 - 00598016 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2014-08-13 09:17 - 2014-07-25 09:00 - 00139264 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2014-08-13 09:17 - 2014-07-25 09:00 - 00111616 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2014-08-13 09:17 - 2014-07-25 08:59 - 00758272 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2014-08-13 09:17 - 2014-07-25 08:47 - 00940032 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2014-08-13 09:17 - 2014-07-25 08:40 - 00452096 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2014-08-13 09:17 - 2014-07-25 08:34 - 00455168 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2014-08-13 09:17 - 2014-07-25 08:34 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2014-08-13 09:17 - 2014-07-25 08:33 - 00051200 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieetwproxystub.dll
2014-08-13 09:17 - 2014-07-25 08:30 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\MshtmlDac.dll
2014-08-13 09:17 - 2014-07-25 08:28 - 05824512 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2014-08-13 09:17 - 2014-07-25 08:28 - 00072704 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2014-08-13 09:17 - 2014-07-25 08:21 - 02184704 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2014-08-13 09:17 - 2014-07-25 08:19 - 00195584 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2014-08-13 09:17 - 2014-07-25 08:18 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2014-08-13 09:17 - 2014-07-25 08:17 - 00085504 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2014-08-13 09:17 - 2014-07-25 08:17 - 00032768 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2014-08-13 09:17 - 2014-07-25 08:12 - 00438784 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2014-08-13 09:17 - 2014-07-25 08:10 - 00292864 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2014-08-13 09:17 - 2014-07-25 08:10 - 00112128 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2014-08-13 09:17 - 2014-07-25 08:08 - 00597504 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2014-08-13 09:17 - 2014-07-25 08:06 - 04204032 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2014-08-13 09:17 - 2014-07-25 07:52 - 00367104 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2014-08-13 09:17 - 2014-07-25 07:47 - 00631808 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2014-08-13 09:17 - 2014-07-25 07:43 - 00060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-08-13 09:17 - 2014-07-25 07:42 - 00692736 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2014-08-13 09:17 - 2014-07-25 07:39 - 02087936 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2014-08-13 09:17 - 2014-07-25 07:39 - 01249280 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2014-08-13 09:17 - 2014-07-25 07:36 - 00164864 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2014-08-13 09:17 - 2014-07-25 07:34 - 00069632 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2014-08-13 09:17 - 2014-07-25 07:29 - 00239616 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2014-08-13 09:17 - 2014-07-25 07:23 - 13547008 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2014-08-13 09:17 - 2014-07-25 07:13 - 00526336 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2014-08-13 09:17 - 2014-07-25 07:07 - 02001920 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2014-08-13 09:17 - 2014-07-25 07:07 - 01068032 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2014-08-13 09:17 - 2014-07-25 07:03 - 11772928 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2014-08-13 09:17 - 2014-07-25 06:52 - 02266624 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2014-08-13 09:17 - 2014-07-25 06:26 - 01431040 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2014-08-13 09:17 - 2014-07-25 06:17 - 00846336 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2014-08-13 09:17 - 2014-07-25 06:09 - 00704512 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2014-08-13 09:17 - 2014-07-25 06:05 - 01792512 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2014-08-13 09:17 - 2014-07-25 06:00 - 01169920 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2014-08-13 09:17 - 2014-07-15 23:25 - 00404480 _____ (Microsoft Corporation) C:\windows\system32\gdi32.dll
2014-08-13 09:17 - 2014-07-15 23:23 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\tzres.dll
2014-08-13 09:17 - 2014-07-15 22:46 - 00311808 _____ (Microsoft Corporation) C:\windows\SysWOW64\gdi32.dll
2014-08-13 09:17 - 2014-07-15 22:46 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\tzres.dll
2014-08-13 09:17 - 2014-07-15 22:12 - 03163648 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2014-08-13 09:17 - 2014-07-08 22:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDYAK.DLL
2014-08-13 09:17 - 2014-07-08 22:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDTAT.DLL
2014-08-13 09:17 - 2014-07-08 22:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDRU1.DLL
2014-08-13 09:17 - 2014-07-08 22:03 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\KBDBASH.DLL
2014-08-13 09:17 - 2014-07-08 22:03 - 00006656 _____ (Microsoft Corporation) C:\windows\system32\KBDRU.DLL
2014-08-13 09:17 - 2014-07-08 21:31 - 00007168 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDYAK.DLL
2014-08-13 09:17 - 2014-07-08 21:31 - 00007168 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDTAT.DLL
2014-08-13 09:17 - 2014-07-08 21:31 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDRU1.DLL
2014-08-13 09:17 - 2014-07-08 21:31 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDRU.DLL
2014-08-13 09:17 - 2014-07-08 21:31 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\KBDBASH.DLL
2014-08-13 09:17 - 2014-07-08 18:38 - 00419992 _____ () C:\windows\system32\locale.nls
2014-08-13 09:17 - 2014-07-08 18:30 - 00419992 _____ () C:\windows\SysWOW64\locale.nls
2014-08-13 09:17 - 2014-06-24 22:05 - 14175744 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll
2014-08-13 09:17 - 2014-06-24 21:41 - 12874240 _____ (Microsoft Corporation) C:\windows\SysWOW64\shell32.dll
2014-08-13 09:17 - 2014-06-15 22:10 - 00985536 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgkrnl.sys
2014-08-13 09:17 - 2014-06-03 06:02 - 03241984 _____ (Microsoft Corporation) C:\windows\system32\msi.dll
2014-08-13 09:17 - 2014-06-03 06:02 - 01941504 _____ (Microsoft Corporation) C:\windows\system32\authui.dll
2014-08-13 09:17 - 2014-06-03 06:02 - 00504320 _____ (Microsoft Corporation) C:\windows\system32\msihnd.dll
2014-08-13 09:17 - 2014-06-03 06:02 - 00112064 _____ (Microsoft Corporation) C:\windows\system32\consent.exe
2014-08-13 09:17 - 2014-06-03 05:29 - 02363392 _____ (Microsoft Corporation) C:\windows\SysWOW64\msi.dll
2014-08-13 09:17 - 2014-06-03 05:29 - 01805824 _____ (Microsoft Corporation) C:\windows\SysWOW64\authui.dll
2014-08-13 09:17 - 2014-06-03 05:29 - 00337408 _____ (Microsoft Corporation) C:\windows\SysWOW64\msihnd.dll
2014-08-13 09:14 - 2014-08-06 22:06 - 00529920 _____ (Microsoft Corporation) C:\windows\system32\aepdu.dll
2014-08-13 09:14 - 2014-08-06 22:01 - 00424448 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
2014-08-13 09:14 - 2014-07-13 22:02 - 01216000 _____ (Microsoft Corporation) C:\windows\system32\rpcrt4.dll
2014-08-13 09:14 - 2014-07-13 21:40 - 00664064 _____ (Microsoft Corporation) C:\windows\SysWOW64\rpcrt4.dll
2014-08-08 18:38 - 2014-08-08 18:38 - 00635760 _____ (ROBLOX Corporation) C:\Users\Tracy Dornelly\Downloads\RobloxPlayerLauncher.exe
2014-08-08 13:39 - 2014-08-08 13:39 - 00000000 ____D () C:\Users\Tracy Dornelly\AppData\Local\{DCEAD4C1-DA90-433F-95C5-684F3A1A49A6}
2014-08-08 01:38 - 2014-08-08 01:38 - 00000000 ____D () C:\Users\Tracy Dornelly\AppData\Local\{87170A43-C0BB-4AB3-AB22-DF7B10BED0E9}
2014-08-07 12:47 - 2014-08-07 12:47 - 00000000 ____D () C:\Users\Tracy Dornelly\AppData\Local\{562E1661-2DC5-43FB-BD64-0DB920A871B3}
2014-08-07 10:01 - 2014-08-07 10:01 - 00147098 _____ () C:\Users\Tracy Dornelly\Downloads\blerd tristan.jpeg
2014-08-07 00:44 - 2014-08-07 00:47 - 00000000 ____D () C:\Users\Tracy Dornelly\AppData\Local\{02327C8C-1B9C-40B9-A407-1543EE8B852E}
2014-08-07 00:44 - 2014-08-07 00:44 - 00000000 ____D () C:\Users\Tracy Dornelly\AppData\Local\{2A6227B3-28A2-4C5E-9435-C4DBA6CDB1F7}
2014-08-02 09:14 - 2014-05-14 12:23 - 02477536 _____ (Microsoft Corporation) C:\windows\system32\wuaueng.dll
2014-08-02 09:14 - 2014-05-14 12:23 - 00700384 _____ (Microsoft Corporation) C:\windows\system32\wuapi.dll
2014-08-02 09:14 - 2014-05-14 12:23 - 00581600 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapi.dll
2014-08-02 09:14 - 2014-05-14 12:23 - 00058336 _____ (Microsoft Corporation) C:\windows\system32\wuauclt.exe
2014-08-02 09:14 - 2014-05-14 12:23 - 00044512 _____ (Microsoft Corporation) C:\windows\system32\wups2.dll
2014-08-02 09:14 - 2014-05-14 12:23 - 00038880 _____ (Microsoft Corporation) C:\windows\system32\wups.dll
2014-08-02 09:14 - 2014-05-14 12:23 - 00036320 _____ (Microsoft Corporation) C:\windows\SysWOW64\wups.dll
2014-08-02 09:14 - 2014-05-14 12:21 - 02620928 _____ (Microsoft Corporation) C:\windows\system32\wucltux.dll
2014-08-02 09:14 - 2014-05-14 12:20 - 00097792 _____ (Microsoft Corporation) C:\windows\system32\wudriver.dll
2014-08-02 09:14 - 2014-05-14 12:17 - 00092672 _____ (Microsoft Corporation) C:\windows\SysWOW64\wudriver.dll
2014-08-02 09:14 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\windows\system32\wuwebv.dll
2014-08-02 09:14 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuwebv.dll
2014-08-02 09:14 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\windows\system32\wuapp.exe
2014-08-02 09:14 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapp.exe
2014-07-24 22:58 - 2014-08-15 20:03 - 00030288 _____ () C:\Users\Tracy Dornelly\Desktop\notes misc.txt
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-08-20 08:41 - 2014-08-20 08:40 - 00017883 _____ () C:\Users\Tracy Dornelly\Downloads\FRST.txt
2014-08-20 08:40 - 2014-08-20 08:39 - 00000000 ____D () C:\FRST
2014-08-20 08:40 - 2011-08-24 21:25 - 00000506 _____ () C:\windows\Tasks\SystemToolsDailyTest.job
2014-08-20 08:40 - 2011-07-21 02:07 - 01468836 _____ () C:\windows\WindowsUpdate.log
2014-08-20 08:39 - 2014-08-16 10:43 - 00002600 _____ () C:\Users\Tracy Dornelly\Desktop\Homeschooling notes.txt
2014-08-20 08:39 - 2013-05-23 13:23 - 00000000 ____D () C:\Users\Tracy Dornelly\AppData\Roaming\BatteryBar
2014-08-20 08:37 - 2014-08-20 08:37 - 02101760 _____ (Farbar) C:\Users\Tracy Dornelly\Downloads\FRST64.exe
2014-08-20 08:37 - 2011-08-24 21:25 - 00000564 _____ () C:\windows\Tasks\PCDoctorBackgroundMonitorTask.job
2014-08-20 08:26 - 2012-04-12 08:08 - 00000830 _____ () C:\windows\Tasks\Adobe Flash Player Updater.job
2014-08-20 08:26 - 2011-08-27 20:59 - 00000000 ____D () C:\Users\Tracy Dornelly\AppData\Roaming\Skype
2014-08-18 12:33 - 2012-05-27 11:11 - 73540096 ___SH () C:\Users\Tracy Dornelly\Downloads\Thumbs.db
2014-08-18 12:31 - 2011-08-24 21:25 - 00003560 _____ () C:\windows\System32\Tasks\SystemToolsDailyTest
2014-08-16 09:25 - 2009-07-14 00:45 - 00028576 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-08-16 09:25 - 2009-07-14 00:45 - 00028576 ____H () C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-08-16 08:55 - 2014-08-15 23:24 - 00000000 ____D () C:\Program Files (x86)\globalUpdate
2014-08-16 02:15 - 2013-09-11 06:46 - 00000000 ____D () C:\Program Files (x86)\Java
2014-08-15 23:48 - 2013-05-23 13:43 - 00017373 _____ () C:\windows\setupact.log
2014-08-15 23:45 - 2011-07-21 03:04 - 00000000 ____D () C:\Users\Default\AppData\Local\SoftThinks
2014-08-15 23:45 - 2011-07-21 03:04 - 00000000 ____D () C:\Users\Default User\AppData\Local\SoftThinks
2014-08-15 23:45 - 2011-07-21 02:53 - 00000000 ____D () C:\Program Files (x86)\Dell DataSafe Local Backup
2014-08-15 23:44 - 2014-08-15 23:24 - 00000000 ____D () C:\ProgramData\cosstminn
2014-08-15 23:44 - 2013-05-23 13:42 - 00156168 _____ () C:\windows\PFRO.log
2014-08-15 23:44 - 2009-07-14 01:08 - 00000006 ____H () C:\windows\Tasks\SA.DAT
2014-08-15 23:36 - 2014-08-15 23:36 - 00000000 ____D () C:\Program Files (x86)\predm
2014-08-15 23:36 - 2014-08-15 23:24 - 00000000 __SHD () C:\windows\SysWOW64\AI_RecycleBin
2014-08-15 23:34 - 2014-08-15 23:24 - 00000000 ____D () C:\ProgramData\4d09ce8d5400296d
2014-08-15 23:34 - 2014-08-15 23:24 - 00000000 ____D () C:\Program Files (x86)\cosstminn
2014-08-15 23:33 - 2014-08-15 23:22 - 00000000 ____D () C:\Users\Tracy Dornelly\AppData\Roaming\device
2014-08-15 23:32 - 2014-08-15 23:22 - 00000000 ____D () C:\Users\Tracy Dornelly\AppData\Roaming\serv
2014-08-15 23:29 - 2013-09-11 07:02 - 00000000 ____D () C:\ProgramData\Oracle
2014-08-15 23:29 - 2012-05-07 00:34 - 00000000 ____D () C:\Users\Tracy Dornelly\DDM
2014-08-15 23:26 - 2014-08-15 23:26 - 00000000 ____D () C:\Program Files (x86)\Okiitan
2014-08-15 23:25 - 2014-08-15 23:25 - 00003476 _____ () C:\windows\System32\Tasks\PCSafePRO_Popup
2014-08-15 23:25 - 2014-08-15 23:25 - 00003212 _____ () C:\windows\System32\Tasks\PCSafePRO_Start
2014-08-15 23:25 - 2014-08-15 23:25 - 00000000 ____D () C:\Users\Tracy Dornelly\AppData\Local\Fusion_Tech_Software,_LLC
2014-08-15 23:25 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\Tracy Dornelly\Documents\PCSafePRO
2014-08-15 23:25 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\Tracy Dornelly\AppData\Local\Idle~Crawler
2014-08-15 23:24 - 2014-08-15 23:24 - 00004606 _____ () C:\windows\System32\Tasks\Idle~Crawler Runner
2014-08-15 23:24 - 2014-08-15 23:24 - 00000258 __RSH () C:\ProgramData\ntuser.pol
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____H () C:\windows\system32\Drivers\Msft_Kernel_webinstr_01009.Wdf
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\Tracy Dornelly\AppData\Local\Torch
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\Tracy Dornelly\AppData\Local\Packages
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\Tracy Dornelly\AppData\Local\Google
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\Tracy Dornelly\AppData\Local\globalUpdate
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\Tracy Dornelly\AppData\Local\Comodo
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\Tracy Dornelly\AppData\Local\Chromatic Browser
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Torch
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Google
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Comodo
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\HomeGroupUser$\AppData\Local\Chromatic Browser
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\HomeGroupUser$
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\Guest\AppData\Local\Torch
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\Guest\AppData\Local\Google
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\Guest\AppData\Local\Comodo
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\Guest\AppData\Local\Chromatic Browser
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\Guest
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Torch
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Google
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Comodo
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Chromatic Browser
2014-08-15 23:24 - 2014-08-15 23:24 - 00000000 ____D () C:\Users\Administrator
2014-08-15 23:24 - 2009-07-13 23:20 - 00000000 ___HD () C:\windows\system32\GroupPolicy
2014-08-15 23:24 - 2009-07-13 23:20 - 00000000 ____D () C:\windows\SysWOW64\GroupPolicy
2014-08-15 23:23 - 2014-08-15 23:23 - 00000000 ____D () C:\ProgramData\UpdateCommon
2014-08-15 23:22 - 2014-08-15 23:22 - 00300920 _____ () C:\Users\Tracy Dornelly\Downloads\setup.exe
2014-08-15 20:03 - 2014-07-24 22:58 - 00030288 _____ () C:\Users\Tracy Dornelly\Desktop\notes misc.txt
2014-08-15 12:56 - 2014-08-15 12:56 - 00267359 _____ () C:\Users\Tracy Dornelly\Downloads\ferguson protest 1.jpeg
2014-08-14 10:47 - 2009-07-13 23:20 - 00000000 ____D () C:\windows\rescache
2014-08-14 09:24 - 2009-07-14 00:45 - 00464288 _____ () C:\windows\system32\FNTCACHE.DAT
2014-08-14 09:22 - 2009-07-13 23:20 - 00000000 ____D () C:\windows\PolicyDefinitions
2014-08-14 09:06 - 2011-12-11 15:37 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-08-14 09:01 - 2013-08-08 01:41 - 00000000 ____D () C:\windows\system32\MRT
2014-08-14 08:59 - 2011-08-27 12:34 - 99218768 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
2014-08-14 08:52 - 2014-05-07 03:00 - 00000000 ___SD () C:\windows\system32\CompatTel
2014-08-12 21:39 - 2011-07-21 04:59 - 00000000 ___RD () C:\Users\Public\Recorded TV
2014-08-10 09:30 - 2011-07-21 02:48 - 00000000 ____D () C:\ProgramData\Skype
2014-08-08 18:38 - 2014-08-08 18:38 - 00635760 _____ (ROBLOX Corporation) C:\Users\Tracy Dornelly\Downloads\RobloxPlayerLauncher.exe
2014-08-08 13:39 - 2014-08-08 13:39 - 00000000 ____D () C:\Users\Tracy Dornelly\AppData\Local\{DCEAD4C1-DA90-433F-95C5-684F3A1A49A6}
2014-08-08 01:38 - 2014-08-08 01:38 - 00000000 ____D () C:\Users\Tracy Dornelly\AppData\Local\{87170A43-C0BB-4AB3-AB22-DF7B10BED0E9}
2014-08-07 12:47 - 2014-08-07 12:47 - 00000000 ____D () C:\Users\Tracy Dornelly\AppData\Local\{562E1661-2DC5-43FB-BD64-0DB920A871B3}
2014-08-07 10:01 - 2014-08-07 10:01 - 00147098 _____ () C:\Users\Tracy Dornelly\Downloads\blerd tristan.jpeg
2014-08-07 00:47 - 2014-08-07 00:44 - 00000000 ____D () C:\Users\Tracy Dornelly\AppData\Local\{02327C8C-1B9C-40B9-A407-1543EE8B852E}
2014-08-07 00:44 - 2014-08-07 00:44 - 00000000 ____D () C:\Users\Tracy Dornelly\AppData\Local\{2A6227B3-28A2-4C5E-9435-C4DBA6CDB1F7}
2014-08-06 22:06 - 2014-08-13 09:14 - 00529920 _____ (Microsoft Corporation) C:\windows\system32\aepdu.dll
2014-08-06 22:01 - 2014-08-13 09:14 - 00424448 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
2014-08-01 10:46 - 2012-04-10 00:21 - 00000000 ____D () C:\Users\Tracy Dornelly\Tracy's Life
2014-07-31 19:41 - 2014-08-13 09:17 - 00348856 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2014-07-31 19:16 - 2014-08-13 09:17 - 00307384 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2014-07-26 08:39 - 2012-05-20 09:45 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-07-26 08:39 - 2012-05-20 09:45 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-07-26 08:39 - 2012-05-07 07:39 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-07-26 01:16 - 2012-05-20 09:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2014-07-25 10:52 - 2014-08-13 09:17 - 23645696 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2014-07-25 10:02 - 2014-08-13 09:17 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2014-07-25 10:01 - 2014-08-13 09:17 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2014-07-25 09:51 - 2014-08-13 09:17 - 17524224 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2014-07-25 09:30 - 2014-08-13 09:17 - 00066048 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2014-07-25 09:28 - 2014-08-13 09:17 - 00548352 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2014-07-25 09:28 - 2014-08-13 09:17 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2014-07-25 09:25 - 2014-08-13 09:17 - 02774528 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2014-07-25 09:25 - 2014-08-13 09:17 - 00083968 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2014-07-25 09:11 - 2014-08-13 09:17 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2014-07-25 09:10 - 2014-08-13 09:17 - 00033792 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2014-07-25 09:04 - 2014-08-13 09:17 - 02724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2014-07-25 09:03 - 2014-08-13 09:17 - 00598016 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2014-07-25 09:00 - 2014-08-13 09:17 - 00139264 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2014-07-25 09:00 - 2014-08-13 09:17 - 00111616 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2014-07-25 08:59 - 2014-08-13 09:17 - 00758272 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2014-07-25 08:47 - 2014-08-13 09:17 - 00940032 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2014-07-25 08:40 - 2014-08-13 09:17 - 00452096 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2014-07-25 08:34 - 2014-08-13 09:17 - 00455168 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2014-07-25 08:34 - 2014-08-13 09:17 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2014-07-25 08:33 - 2014-08-13 09:17 - 00051200 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieetwproxystub.dll
2014-07-25 08:30 - 2014-08-13 09:17 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\MshtmlDac.dll
2014-07-25 08:28 - 2014-08-13 09:17 - 05824512 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2014-07-25 08:28 - 2014-08-13 09:17 - 00072704 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2014-07-25 08:21 - 2014-08-13 09:17 - 02184704 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2014-07-25 08:19 - 2014-08-13 09:17 - 00195584 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2014-07-25 08:18 - 2014-08-13 09:17 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2014-07-25 08:17 - 2014-08-13 09:17 - 00085504 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2014-07-25 08:17 - 2014-08-13 09:17 - 00032768 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2014-07-25 08:12 - 2014-08-13 09:17 - 00438784 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2014-07-25 08:10 - 2014-08-13 09:17 - 00292864 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2014-07-25 08:10 - 2014-08-13 09:17 - 00112128 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2014-07-25 08:08 - 2014-08-13 09:17 - 00597504 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2014-07-25 08:06 - 2014-08-13 09:17 - 04204032 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2014-07-25 07:52 - 2014-08-13 09:17 - 00367104 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2014-07-25 07:47 - 2014-08-13 09:17 - 00631808 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2014-07-25 07:43 - 2014-08-13 09:17 - 00060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-07-25 07:42 - 2014-08-13 09:17 - 00692736 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2014-07-25 07:39 - 2014-08-13 09:17 - 02087936 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2014-07-25 07:39 - 2014-08-13 09:17 - 01249280 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2014-07-25 07:36 - 2014-08-13 09:17 - 00164864 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2014-07-25 07:34 - 2014-08-13 09:17 - 00069632 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2014-07-25 07:29 - 2014-08-13 09:17 - 00239616 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2014-07-25 07:23 - 2014-08-13 09:17 - 13547008 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2014-07-25 07:13 - 2014-08-13 09:17 - 00526336 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2014-07-25 07:07 - 2014-08-13 09:17 - 02001920 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2014-07-25 07:07 - 2014-08-13 09:17 - 01068032 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2014-07-25 07:03 - 2014-08-13 09:17 - 11772928 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2014-07-25 06:52 - 2014-08-13 09:17 - 02266624 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2014-07-25 06:26 - 2014-08-13 09:17 - 01431040 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2014-07-25 06:17 - 2014-08-13 09:17 - 00846336 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2014-07-25 06:09 - 2014-08-13 09:17 - 00704512 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2014-07-25 06:05 - 2014-08-13 09:17 - 01792512 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2014-07-25 06:00 - 2014-08-13 09:17 - 01169920 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2014-07-23 14:45 - 2014-06-11 12:38 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
Some content of TEMP:
====================
C:\Users\Tracy Dornelly\AppData\Local\Temp\7-doohtz.dll
C:\Users\Tracy Dornelly\AppData\Local\Temp\jre-7u40-windows-i586-iftw.exe
C:\Users\Tracy Dornelly\AppData\Local\Temp\jre-7u45-windows-i586-iftw.exe
C:\Users\Tracy Dornelly\AppData\Local\Temp\jre-7u51-windows-i586-iftw.exe
C:\Users\Tracy Dornelly\AppData\Local\Temp\nzttyylf.dll
C:\Users\Tracy Dornelly\AppData\Local\Temp\post1.exe
C:\Users\Tracy Dornelly\AppData\Local\Temp\post2.dll
C:\Users\Tracy Dornelly\AppData\Local\Temp\post2.exe
C:\Users\Tracy Dornelly\AppData\Local\Temp\setup__9487.exe
C:\Users\Tracy Dornelly\AppData\Local\Temp\SkypeSetup.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-08-07 00:38
==================== End Of Log ============================