Documenti di Didattica
Documenti di Professioni
Documenti di Cultura
soft Corporation)
HKU\S-1-5-21-4065476890-3613898036-4242967038-1000\...\Run: [Gyazo] => C:\Progra
m Files\Gyazo\GyStation.exe [3586848 2016-02-17] (Nota Inc.)
HKU\S-1-5-21-4065476890-3613898036-4242967038-1000\...\Run: [Skype] => C:\Progra
m Files\Skype\Phone\Skype.exe [50605696 2016-02-10] (Skype Technologies S.A.)
HKU\S-1-5-21-4065476890-3613898036-4242967038-1000\...\RunOnce: [Uninstall C:\Us
ers\Rob\AppData\Local\Microsoft\OneDrive\17.3.5892.0626] => C:\WINDOWS\system32\
cmd.exe /q /c rmdir /s /q "C:\Users\Rob\AppData\Local\Microsoft\OneDrive\17.3.58
92.0626"
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be remo
ved or restored to default.)
ProxyServer: [S-1-5-21-4065476890-3613898036-4242967038-1000] => 88.149.221.35:8
0
AutoConfigURL: [S-1-5-21-4065476890-3613898036-4242967038-1000] => 88.149.221.35
:80
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{90d2c7a2-ced5-4c48-bd5e-171057577e1f}: [DhcpNameServer] 192
.168.0.1
Tcpip\..\Interfaces\{F79825C2-F5DA-4BA0-B32C-1CE09871F886}: [DhcpNameServer] 172
.18.15.1
Internet Explorer:
==================
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:
\Program Files\Java\jre1.8.0_72\bin\ssv.dll [2016-02-21] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} ->
C:\Program Files\Java\jre1.8.0_72\bin\jp2ssv.dll [2016-02-21] (Oracle Corporatio
n)
FireFox:
========
FF Plugin: @java.com/DTPlugin,version=11.72.2 -> C:\Program Files\Java\jre1.8.0_
72\bin\dtplugin\npDeployJava1.dll [2016-02-21] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.72.2 -> C:\Program Files\Java\jre1.8.
0_72\bin\plugin2\npjp2.dll [2016-02-21] (Oracle Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\
Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\
Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\n
ppdf32.dll [2015-11-18] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-4065476890-3613898036-4242967038-1000: @unity3d.com/Unity
Player,version=1.0 -> C:\Users\Rob\AppData\LocalLow\Unity\WebPlayer\loader\npUni
ty3D32.dll [2015-12-17] (Unity Technologies ApS)
Chrome:
=======
CHR HomePage: Default -> hxxp://www.msn.com/?pc=__PARAM__&ocid=__PARAM__DHP&osmk
t=it-it
CHR StartupUrls: Default -> "hxxps://www.google.it/"
CHR DefaultSearchURL: Default -> hxxp://www.bing.com/search?FORM=__PARAM__DF&PC=
__PARAM__&q={searchTerms}
CHR DefaultSearchKeyword: Default -> bing.com
CHR Profile: C:\Users\Rob\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Presentazioni Google) - C:\Users\Rob\AppData\Local\Google\Chrome
\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-09-12]
oft Corporation)
R1 HWiNFO32; C:\Windows\system32\drivers\HWiNFO32.SYS [23840 2015-12-25] (REALiX
(tm))
S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [23256 2015-10-05] (Malwa
rebytes)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [51928 2015-10-05]
(Malwarebytes Corporation)
R3 MTsensor; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [13216 2015-12-25] ()
R3 netr28u; C:\WINDOWS\System32\drivers\netr28u.sys [1800704 2015-10-30] (MediaT
ek Inc.)
R2 NVR0FLASHDev; C:\Windows\nvflash.sys [36896 2009-01-07] (NVIDIA Corp.)
R3 SCREAMINGBDRIVER; C:\WINDOWS\system32\drivers\ScreamingBAudio.sys [34896 2012
-07-31] (Screaming Bee LLC)
R3 tap-tb-0901; C:\WINDOWS\System32\drivers\tap-tb-0901.sys [33280 2015-08-10] (
The OpenVPN Project)
R3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [35288 2013-08-22] (The Open
VPN Project)
R3 VIAHdAudAddService; C:\WINDOWS\system32\drivers\viahduaa.sys [575184 2015-0622] (VIA Technologies, Inc.)
S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [37400 2015-10-30] (Microsoft
Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [246104 2015-10-30] (Micro
soft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [98648 2015-10-30] (Micros
oft Corporation)
U3 idsvc; no ImagePath
U3 wpcsvc; no ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. T
he file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-03-18 12:04 - 2016-03-18 12:04
.txt
2016-03-18 12:04 - 2016-03-18 12:04
2016-03-18 12:03 - 2016-03-18 12:04
oads\FRST.exe
2016-03-18 12:02 - 2016-03-18 12:02
ElevatedDiagnostics
2016-03-18 11:19 - 2016-03-18 11:20
wnloads\ComboFix.exe
2016-03-18 10:13 - 2016-03-18 10:18
ctx_Jun2010_redist.exe
2016-03-18 10:11 - 2016-03-18 10:11
\WINDOWS\system32\MRT.exe
2016-03-18 10:11 - 2016-03-18 10:11
2016-03-18 10:07 - 2016-03-18 10:08
Users\Rob\Downloads\dxwebsetup.exe
2016-03-18 09:55 - 2016-03-18 10:09
2016-03-18 09:51 - 2016-03-18 09:51
dll por alexisflow99.rar
2016-03-18 09:51 - 2016-03-18 09:51
dll por alexisflow99.rar
2016-03-18 09:49 - 2016-03-18 09:49
nts_asi_loader_13 (4).zip
2016-03-18 09:11 - 2015-10-29 19:42 - 05739520 _____
WINDOWS\system32\prm0009.dll
2016-03-18 09:11 - 2015-10-29 19:41 - 02629632 _____
WINDOWS\system32\NlsLexicons0009.dll
2016-03-18 09:11 - 2015-10-29 19:24 - 04847616 _____
WINDOWS\system32\NlsData0009.dll
2016-03-18 09:07 - 2016-03-18 09:07 - 00001051 _____
g\Microsoft\Windows\Start Menu\Programs\Funzionalit
2016-03-18 09:05 - 2016-03-18 09:05 - 00002095 _____
am.lnk
2016-03-18 08:56 - 2016-03-18 11:11 - 00000000 ____D
MicrosoftEdge
2016-03-18 08:55 - 2016-03-18 08:55 - 00000000 ____D
NetworkTiles
2016-03-18 08:53 - 2016-03-18 08:54 - 00000000 ____D
Comms
2016-03-18 00:03 - 2016-03-18 08:52 - 00002450 _____
g\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-03-18 00:03 - 2016-03-18 08:52 - 00000000 ___RD
2016-03-17 23:58 - 2016-03-17 23:58 - 00000000 ____D
ActiveSync
2016-03-17 23:56 - 2016-03-17 23:56 - 00000000 ____D
Publishers
2016-03-17 23:55 - 2016-03-17 23:55 - 00048896 _____
WINDOWS\system32\Drivers\axplhvru.sys
2016-03-17 23:54 - 2016-03-18 11:08 - 00000000 ____D
Packages
2016-03-17 23:54 - 2016-03-17 23:54 - 00000020 ___SH
2016-03-17 23:54 - 2016-03-17 23:54 - 00000000 ____D
TileDataLayer
2016-03-17 23:51 - 2016-03-17 23:51 - 00000000 _SHDL
stampa
2016-03-17 23:51 - 2016-03-17 23:51 - 00000000 _SHDL
rete
2016-03-17 23:51 - 2016-03-17 23:51 - 00000000 _SHDL
2016-03-17 23:51 - 2016-03-17 23:51 - 00000000 _SHDL
2016-03-17 23:51 - 2016-03-17 23:51 - 00000000 _SHDL
2016-03-17 23:51 - 2016-03-17 23:51 - 00000000 _SHDL
ni locali
2016-03-17 23:51 - 2016-03-17 23:51 - 00000000 _SHDL
Video
2016-03-17 23:51 - 2016-03-17 23:51 - 00000000 _SHDL
Musica
2016-03-17 23:51 - 2016-03-17 23:51 - 00000000 _SHDL
Immagini
2016-03-17 23:51 - 2016-03-17 23:51 - 00000000 _SHDL
2016-03-17 23:51 - 2016-03-17 23:51 - 00000000 _SHDL
cazioni
2016-03-17 23:51 - 2016-03-17 23:51 - 00000000 _SHDL
aming\Microsoft\Windows\Start Menu\Programmi
2016-03-17 23:51 - 2016-03-17 23:51 - 00000000 _SHDL
cal\Dati applicazioni
2016-03-17 23:51 - 2016-03-17 23:51 - 00000000 _SHDL
cal\Cronologia
2016-03-17 23:51 - 2016-03-17 23:51 - 00000000 _SHDL
ents\Video
2016-03-17 23:51 - 2016-03-17 23:51 - 00000000 _SHDL
ents\Musica
2016-03-17 23:51 - 2016-03-17 23:51 - 00000000 _SHDL
ents\Immagini
2016-03-17 23:51 - 2016-03-17 23:51 - 00000000 _SHDL
ta\Roaming\Microsoft\Windows\Start Menu\Programmi
2016-03-17 23:51 - 2016-03-17 23:51 - 00000000 _SHDL
ta\Local\Dati applicazioni
2016-03-17 23:51 - 2016-03-17 23:51 - 00000000 _SHDL
ta\Local\Cronologia
2016-03-17 23:49 - 2016-03-17 23:49 - 00021500 _____
gdb.dat
2016-03-17 23:39 - 2016-03-17 23:39 - 00001544 _____
ndows\Start Menu\Programs\Windows Media Player.lnk
2016-03-17 23:39 - 2016-03-17 23:39 - 00000000 ____D
aming\Media Center Programs
2016-03-17 23:39 - 2016-03-17 23:39 - 00000000 ____D
ta\Roaming\Media Center Programs
2016-03-17 23:37 - 2016-03-17 23:37 - 00000000 ____D
es\SpeechEngines
2016-03-17 23:33 - 2016-03-18 09:13 - 00000000 ____D
2016-03-17 23:33 - 2016-03-17 23:33 - 00000000 _SHDL
mpa
2016-03-17 23:33 - 2016-03-17 23:33 - 00000000 _SHDL
e
2016-03-17 23:33 - 2016-03-17 23:33 - 00000000 _SHDL
2016-03-17 23:33 - 2016-03-17 23:33 - 00000000 _SHDL
2016-03-17 23:33 - 2016-03-17 23:33 - 00000000 _SHDL
2016-03-17 23:33 - 2016-03-17 23:33 - 00000000 _SHDL
ocali
2016-03-17 23:33 - 2016-03-17 23:33 - 00000000 _SHDL
o
2016-03-17 23:33 - 2016-03-17 23:33 - 00000000 _SHDL
ca
2016-03-17 23:33 - 2016-03-17 23:33 - 00000000 _SHDL
gini
2016-03-17 23:33 - 2016-03-17 23:33 - 00000000 _SHDL
2016-03-17 23:33 - 2016-03-17 23:33 - 00000000 _SHDL
oni
2016-03-17 23:33 - 2016-03-17 23:33 - 00000000 _SHDL
g\Microsoft\Windows\Start Menu\Programmi
2016-03-17 23:33 - 2016-03-17 23:33 - 00000000 _SHDL
Dati applicazioni
2016-03-17 23:33 - 2016-03-17 23:33 - 00000000 _SHDL
Cronologia
2016-03-17 23:31 - 2016-03-18 08:53 - 02067418 _____
ingBackup.INI
2016-03-17 23:28 - 2016-03-17 23:37 - 00000000 ____D
2016-03-17 23:27 - 2016-03-17 23:37 - 00000000 ____D
ration
2016-03-17 23:27 - 2016-03-17 23:27 - 00000000 ____D
2016-03-17 23:27 - 2016-03-17 23:27 - 00000000 ____D
2016-03-17 23:27 - 2015-10-13 17:47 - 04388016 _____
DOWS\system32\nvcpl.dll
2016-03-17 23:27 - 2015-10-13 17:47 - 03060912 _____
DOWS\system32\nvsvc.dll
2016-03-17 23:27 - 2015-10-13 17:47 - 02553520 _____
DOWS\system32\nvsvcr.dll
2016-03-17 23:27 - 2015-10-13 17:47 - 00670512 _____
DOWS\system32\nvvsvc.exe
2016-03-17 23:27 - 2015-10-13 17:47 - 00374904 _____
DOWS\system32\nvmctray.dll
2016-03-17 23:27 - 2015-10-13 17:47 - 00061560 _____
C:\Users\Default User\AppDa
C:\Users\Default User\AppDa
C:\Users\Default User\AppDa
C:\WINDOWS\system32\emptyre
C:\ProgramData\Microsoft\Wi
C:\Users\Default\AppData\Ro
C:\Users\Default User\AppDa
C:\Program Files\Common Fil
C:\Users\Rob
C:\Users\Rob\Risorse di sta
C:\Users\Rob\Risorse di ret
C:\Users\Rob\Recenti
C:\Users\Rob\Modelli
C:\Users\Rob\Menu Avvio
C:\Users\Rob\Impostazioni l
C:\Users\Rob\Documents\Vide
C:\Users\Rob\Documents\Musi
C:\Users\Rob\Documents\Imma
C:\Users\Rob\Documenti
C:\Users\Rob\Dati applicazi
C:\Users\Rob\AppData\Roamin
C:\Users\Rob\AppData\Local\
C:\Users\Rob\AppData\Local\
C:\WINDOWS\system32\PerfStr
C:\ProgramData\NVIDIA
C:\ProgramData\NVIDIA Corpo
C:\WINDOWS\system32\SRSLabs
C:\Program Files\VIA
(NVIDIA Corporation) C:\WIN
(NVIDIA Corporation) C:\WIN
(NVIDIA Corporation) C:\WIN
(NVIDIA Corporation) C:\WIN
(NVIDIA Corporation) C:\WIN
(NVIDIA Corporation) C:\WIN
DOWS\system32\nvshext.dll
2016-03-17 23:27 - 2015-10-13 15:55 - 05972783 _____ C:\WINDOWS\system32\nvcopro
c.bin
2016-03-17 23:26 - 2016-03-17 23:37 - 00000000 ____D C:\Program Files\NVIDIA Cor
poration
2016-03-17 23:26 - 2016-03-17 23:26 - 00000000 ____H C:\WINDOWS\system32\Drivers
\Msft_User_WpdFs_01_11_00.Wdf
2016-03-17 23:24 - 2016-03-17 23:54 - 00000000 ___DC C:\WINDOWS\Panther
2016-03-17 23:18 - 2016-03-17 23:18 - 00000000 ____D C:\Windows.old
2016-03-17 23:17 - 2016-03-17 23:17 - 00008192 _____ C:\WINDOWS\system32\config\
userdiff
2016-03-17 23:15 - 2016-03-17 23:15 - 00000000 ____D C:\WINDOWS\system32\XPSView
er
2016-03-17 23:15 - 2016-03-17 23:15 - 00000000 ____D C:\WINDOWS\system32\msmq
2016-03-17 23:15 - 2016-03-17 23:15 - 00000000 ____D C:\WINDOWS\system32\BestPra
ctices
2016-03-17 23:15 - 2016-03-17 23:15 - 00000000 ____D C:\Program Files\Reference
Assemblies
2016-03-17 23:15 - 2016-03-17 23:15 - 00000000 ____D C:\Program Files\MSBuild
2016-03-17 23:15 - 2016-03-17 23:15 - 00000000 ____D C:\inetpub
2016-03-17 23:14 - 2016-03-17 23:14 - 00942592 _____ (Microsoft Corporation) C:\
WINDOWS\system32\reseteng.dll
2016-03-17 23:14 - 2016-03-17 23:14 - 00279376 _____ (Microsoft Corporation) C:\
WINDOWS\system32\systemreset.exe
2016-03-17 23:14 - 2016-03-17 23:14 - 00228704 _____ (Microsoft Corporation) C:\
WINDOWS\system32\Drivers\sdbus.sys
2016-03-17 23:14 - 2016-03-17 23:14 - 00153952 _____ (Microsoft Corporation) C:\
WINDOWS\system32\Drivers\dumpsd.sys
2016-03-17 23:14 - 2015-10-23 17:47 - 00778936 _____ (Microsoft Corporation) C:\
WINDOWS\system32\PresentationNative_v0300.dll
2016-03-17 23:14 - 2015-10-23 17:47 - 00103120 _____ (Microsoft Corporation) C:\
WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2016-03-17 23:14 - 2015-10-23 17:47 - 00035480 _____ (Microsoft Corporation) C:\
WINDOWS\system32\TsWpfWrp.exe
2016-03-17 22:34 - 2015-10-30 06:45 - 00000001 ___SH C:\BOOTNXT
2016-03-17 22:29 - 2016-03-17 23:50 - 00010449 _____ C:\WINDOWS\diagerr.xml
2016-03-17 22:29 - 2016-03-17 23:50 - 00009528 _____ C:\WINDOWS\diagwrn.xml
2016-03-16 17:27 - 2016-03-16 17:27 - 00000000 ____D C:\Users\Rob\AppData\Local\
My Games
2016-03-15 18:47 - 2016-03-15 18:47 - 00000214 _____ C:\Users\Rob\Desktop\Sid Me
ier's Civilization V.url
2016-03-15 18:32 - 2016-03-15 18:32 - 00000000 ____D C:\Users\Rob\AppData\LocalL
ow\WARTEAM
2016-03-13 18:44 - 2016-03-13 18:44 - 00000000 ____D C:\Users\Rob\Downloads\back
up_1457545003_9055e521a188ddce.sql
2016-03-13 18:44 - 2016-03-09 18:37 - 25602120 _____ C:\Users\Rob\Desktop\backup
_1457545003_9055e521a188ddce.sql
2016-03-13 15:10 - 2016-03-13 15:10 - 00267174 _____ C:\Users\Rob\Desktop\Nuova
immagine bitmap.bmp
2016-03-11 22:45 - 2016-03-11 22:45 - 00001269 _____ C:\Users\Rob\Desktop\messag
gio moes.txt
2016-03-10 15:53 - 2016-03-10 15:53 - 00003288 ____N C:\bootsqm.dat
2016-03-09 18:36 - 2016-03-09 18:37 - 05389167 _____ C:\Users\Rob\Downloads\back
up_1457545003_9055e521a188ddce.sql.gz
2016-03-08 21:05 - 2016-03-08 21:05 - 00000000 ____D C:\Users\Rob\Desktop\bideo
2016-03-08 16:08 - 2016-03-08 16:08 - 01925049 _____ C:\Users\Rob\Desktop\icone.
rar
2016-03-08 15:57 - 2016-03-18 09:43 - 00000000 ____D C:\Users\Rob\Desktop\new
2016-03-08 15:56 - 2016-03-08 15:57 - 01162568 _____ C:\Users\Rob\Downloads\new.
rar
2016-02-26 16:23 - 2016-02-26 16:27 - 48166072 _____ (Hammer & Chisel, Inc.) C:\
Users\Rob\Downloads\DiscordSetup.exe
2016-02-25 12:14 - 2016-02-25 13:19 - 407651602 _____ C:\Users\Rob\Downloads\xon
otic-0.8.1.zip
2016-02-24 20:08 - 2016-03-17 23:40 - 00000000 ____D C:\ProgramData\Microsoft\Wi
ndows\Start Menu\Programs\Notepad++
2016-02-24 20:08 - 2016-02-24 22:12 - 00000000 ____D C:\Users\Rob\AppData\Roamin
g\Notepad++
2016-02-24 20:08 - 2016-02-24 20:08 - 00000000 ____D C:\Program Files\Notepad++
2016-02-24 20:07 - 2016-02-24 20:07 - 04204144 _____ C:\Users\Rob\Downloads\npp.
6.9.Installer.exe
2016-02-24 20:04 - 2016-02-24 20:06 - 00000000 ____D C:\Users\Rob\AppData\Roamin
g\SQLyog
2016-02-24 20:04 - 2016-02-24 20:04 - 00000000 ____D C:\Program Files\SQLyog Tri
al
2016-02-24 20:02 - 2016-02-24 20:03 - 05860032 _____ (Webyog Inc.) C:\Users\Rob\
Downloads\SQLyog-12.2.0-0.x86Trial.exe
2016-02-23 20:59 - 2016-02-19 16:47 - 02671822 _____ C:\Users\Rob\Desktop\LdAcco
unt.sql
2016-02-23 17:17 - 2016-02-23 17:17 - 03020240 _____ C:\Users\Rob\Desktop\ts3_re
cording_16_02_23_17_17_26.wav
2016-02-22 14:22 - 2016-03-17 23:59 - 00000000 ____D C:\Users\Rob\Desktop\basic_
orange
2016-02-22 14:21 - 2016-02-22 14:22 - 01409096 _____ C:\Users\Rob\Downloads\basi
c_orange.zip
2016-02-21 21:41 - 2016-02-21 21:45 - 00001931 _____ C:\Users\Rob\Desktop\styles
heet.css
2016-02-21 21:17 - 2016-02-21 21:17 - 00018760 _____ C:\Users\Rob\Downloads\pros
ilver_se_3.1.4 (1).zip
2016-02-21 21:16 - 2016-02-21 21:16 - 00000000 ____D C:\Users\Rob\Desktop\prosil
ver_se
2016-02-21 21:15 - 2016-02-21 21:15 - 00018760 _____ C:\Users\Rob\Downloads\pros
ilver_se_3.1.4.zip
2016-02-21 20:44 - 2016-02-21 20:44 - 00708302 _____ C:\Users\Rob\Downloads\301.
zip
2016-02-21 20:18 - 2016-01-09 09:57 - 00000000 ____D C:\Users\Rob\Desktop\phpBB3
2016-02-21 20:16 - 2016-02-21 20:17 - 03950815 _____ C:\Users\Rob\Downloads\phpB
B-3.1.7-pl1.zip
2016-02-21 19:57 - 2016-03-04 18:44 - 00000000 ____D C:\Users\Rob\AppData\Roamin
g\FileZilla
2016-02-21 19:56 - 2016-03-17 23:40 - 00000000 ____D C:\ProgramData\Microsoft\Wi
ndows\Start Menu\Programs\FileZilla FTP Client
2016-02-21 19:56 - 2016-02-21 19:56 - 00002043 _____ C:\Users\Public\Desktop\Fil
eZilla Client.lnk
2016-02-21 19:56 - 2016-02-21 19:56 - 00000000 ____D C:\Program Files\FileZilla
FTP Client
2016-02-21 19:53 - 2016-02-21 19:55 - 06342024 _____ (Tim Kosse) C:\Users\Rob\Do
wnloads\FileZilla_3.15.0.2_win32-setup.exe
2016-02-21 17:22 - 2016-02-21 17:22 - 00000000 ____D C:\Program Files\Common Fil
es\Java
2016-02-21 17:15 - 2016-02-21 17:20 - 00000000 ____D C:\Users\Rob\Desktop\Icone
TeamSpeak
2016-02-20 16:27 - 2016-02-20 16:28 - 00327943 _____ C:\Users\Rob\Downloads\LdAc
count.sql.zip
2016-02-20 15:49 - 2016-02-20 15:50 - 05354948 _____ C:\Users\Rob\Downloads\ocea
n.pwn
2016-02-20 13:44 - 2016-02-20 13:56 - 96723839 _____ C:\Users\Rob\Downloads\LSFD
Official.zip
2016-02-17 15:14 - 2016-02-17 15:15 - 00973730 _____ C:\Users\Rob\Downloads\CLEO
4.4_custom and SAMPFUNCS 5.2.2.rar
_____ C:\WINDOWS\unins000.dat
_____ C:\WINDOWS\unins000.exe
_____ (Seemann, Deji, Alien ) C:\
_____ C:\Users\Rob\Downloads\name
_____ C:\Users\Rob\Desktop\Skin-A
_____ C:\Users\Rob\Downloads\sf_5
_____ C:\Users\Rob\Downloads\Icon
_____ C:\Users\Rob\Downloads\SA_H
_____ C:\Users\Rob\Downloads\TXDW
_____ C:\Users\Rob\Downloads\SKIN
_____ C:\Users\Rob\Downloads\modl
_____ C:\Users\Rob\Downloads\sile
C:\ProgramData\Microsoft\Wi
C:\ProgramData\Microsoft\Wi
C:\Users\Rob\AppData\Roamin
C:\ProgramData\Microsoft\Wi
C:\ProgramData\Microsoft\Wi
C:\ProgramData\Microsoft\Wi
C:\Users\Rob\AppData\Roamin
C:\ProgramData\Microsoft\Wi
C:\Users\Default.migrated
C:\WINDOWS\system32\Hotspot
C:\WINDOWS\system32\xlive
C:\WINDOWS\system32\WinBioP
C:\WINDOWS\system32\NDF
C:\WINDOWS\system32\IME
C:\WINDOWS\ShellNew
C:\WINDOWS\DigitalLocker
C:\ProgramData\Microsoft\Wi
C:\Program Files\Windows Si
C:\WINDOWS\schemas
C:\Program Files\Common Fil
C:\ProgramData\Microsoft\Wi
C:\ProgramData\Microsoft\Wi
C:\Program Files\Microsoft
C:\Program Files\DVD Maker
C:\Users\Rob\AppData\Roamin
C:\WINDOWS\system32\Sysprep
C:\WINDOWS\Help
C:\WINDOWS\system32\config\
C:\WINDOWS\system32\MUI
C:\WINDOWS\system32\inetsrv
(Microsoft Corporation) C:\
(Microsoft Corporation) C:\
(Microsoft Corporation) C:\
(Microsoft Corporation) C:\
(Microsoft Corporation) C:\
(Microsoft Corporation) C:\