Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Velmi zlý stav - z hodiny na hodinu

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
roki
Návštěvník
Návštěvník
Příspěvky: 101
Registrován: 29 zář 2005 13:16

Velmi zlý stav - z hodiny na hodinu

#1 Příspěvek od roki »

Pred chvilou som zapol počítač a prvé čo som si všimol: nefunguje sieť (komplet, nedalo sa pingnut ani router)
Druhá vec: nejde zvuk - vraj nebeží ovládač či čo.. už si to presne nepamätám.
Tretia vec: odmieta sa spustit task manager
Nešlo mi dokonca spustit ani RSIT - išiel som teda do safe módu a musel som ho spustit tam, potom log cez usb kluc do notebooku :(

Logfile of random's system information tool 1.09 (written by random/random)
Run by Roman at 2012-08-03 20:18:23
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 150 GB (63%) free of 238 GB
Total RAM: 8190 MB (84% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:18:23, on 3. 8. 2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16447)
Boot mode: Safe mode

Running processes:
C:\Program Files\trend micro\Roman.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: ˙ţ127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [AdobeCS6ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [RocketDock] "C:\Program Files (x86)\RocketDock\RocketDock.exe"
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O17 - HKLM\System\CCS\Services\Tcpip\..\{66862F92-2623-42EB-8328-40404692292B}: NameServer = 8.26.56.26,156.154.70.22
O17 - HKLM\System\CS1\Services\Tcpip\..\{66862F92-2623-42EB-8328-40404692292B}: NameServer = 8.26.56.26,156.154.70.22
O17 - HKLM\System\CS2\Services\Tcpip\..\{66862F92-2623-42EB-8328-40404692292B}: NameServer = 8.26.56.26,156.154.70.22
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~2\MICROS~1\Office12\GRA32A~1.DLL
O20 - AppInit_DLLs: C:\Windows\SysWOW64\guard32.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AppleChargerSrv - Unknown owner - C:\Windows\system32\AppleChargerSrv.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: COMODO Dragon Update Service (DragonUpdater) - Unknown owner - C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ES lite Service for program management. (ES lite Service) - Unknown owner - C:\Program Files (x86)\Gigabyte\EasySaver\ESSVR.EXE
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service 64 - Flexera Software, Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: mental ray 3.9 Satellite for Autodesk 3ds Max 2012 64-bit - English 64-bit (mi-raysat_3dsmax2012_64) - Unknown owner - C:\Program Files\Autodesk\3ds Max 2012\mentalimages\satellite\raysat_3dsmax2012_64server.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 7090 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\Explorer.EXE
ctfmon.exe
C:\Windows\System32\svchost.exe -k secsvcs
"C:\totalcmd8\TOTALCMD64.EXE"
C:\Windows\system32\wbem\wmiprvse.exe
"D:\Hijack this_RSIT\RSITx64.exe"

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2012-07-03 1387952]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2012-07-16 545264]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2012-07-16 193520]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2012-07-03 1387952]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2011-06-07 11858536]
"COMODO Internet Security"=C:\Program Files\COMODO\COMODO Internet Security\cfp.exe [2012-03-11 9569096]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04 446392]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2010-11-20 1475584]
"RocketDock"=C:\Program Files (x86)\RocketDock\RocketDock.exe [2007-09-02 495616]
"AdobeBridge"= []

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2012-07-03 4273976]
"AdobeCS6ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [2012-03-09 1073312]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" C:\Windows\system32\guard64.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office12\GR469A~1.DLL [2006-10-27 2210608]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=l3codecp.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"vidc.XVID"=xvidvfw.dll
"VIDC.FFDS"=ff_vfw.dll
"VIDC.LAGS"=lagarith.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2012-08-03 20:18:11 ----D---- C:\rsit
2012-08-03 20:14:15 ----A---- C:\Windows\ntbtlog.txt
2012-07-30 11:44:09 ----D---- C:\Users\Roman\AppData\Roaming\Media Player Classic
2012-07-30 11:32:49 ----A---- C:\Windows\system32\unrar.dll
2012-07-30 11:32:49 ----A---- C:\Windows\system32\lagarith.dll
2012-07-30 11:32:46 ----A---- C:\Windows\system32\ff_vfw.dll
2012-07-30 11:32:44 ----D---- C:\Program Files\K-Lite Codec Pack x64
2012-07-30 11:25:35 ----A---- C:\Windows\SYSWOW64\unrar.dll
2012-07-30 11:25:29 ----D---- C:\Program Files (x86)\K-Lite Codec Pack
2012-07-30 11:08:56 ----A---- C:\Windows\system32\xvidvfw.dll
2012-07-30 11:08:56 ----A---- C:\Windows\system32\xvidcore.dll
2012-07-30 11:08:55 ----D---- C:\Program Files (x86)\Xvid
2012-07-30 11:08:55 ----A---- C:\Windows\SYSWOW64\xvidvfw.dll
2012-07-30 11:08:55 ----A---- C:\Windows\SYSWOW64\xvidcore.dll
2012-07-30 10:39:55 ----D---- C:\Users\Roman\AppData\Roaming\Publish Providers
2012-07-30 10:33:31 ----D---- C:\ProgramData\Sony
2012-07-30 10:33:31 ----D---- C:\Program Files (x86)\Sony
2012-07-30 10:33:30 ----D---- C:\Program Files\Sony
2012-07-30 10:32:58 ----D---- C:\Users\Roman\AppData\Roaming\Sony
2012-07-29 20:35:01 ----D---- C:\Users\Roman\AppData\Roaming\LangSoft
2012-07-29 12:14:02 ----D---- C:\Users\Roman\AppData\Roaming\Adobe
2012-07-29 12:14:02 ----D---- C:\ProgramData\Adobe
2012-07-27 18:40:36 ----D---- C:\Users\Roman\AppData\Roaming\Xilisoft
2012-07-27 18:39:07 ----D---- C:\ProgramData\Xilisoft
2012-07-27 18:39:07 ----D---- C:\Program Files (x86)\Xilisoft
2012-07-26 13:15:44 ----D---- C:\Users\Roman\AppData\Roaming\ImgBurn
2012-07-26 13:14:37 ----D---- C:\Program Files (x86)\ImgBurn
2012-07-26 12:48:48 ----D---- C:\Users\Roman\AppData\Roaming\InfraRecorder
2012-07-25 15:35:01 ----D---- C:\Users\Roman\AppData\Roaming\Mp3tag
2012-07-25 15:34:48 ----D---- C:\Program Files (x86)\Mp3tag
2012-07-25 15:17:15 ----D---- C:\Users\Roman\AppData\Roaming\Notepad++
2012-07-25 15:17:15 ----D---- C:\Program Files (x86)\Notepad++
2012-07-25 12:08:52 ----A---- C:\Windows\SYSWOW64\perf-SQLAgent$SQLEXPRESS-sqlagtctr10.1.2531.0.dll
2012-07-25 12:08:52 ----A---- C:\Windows\system32\perf-SQLAgent$SQLEXPRESS-sqlagtctr10.1.2531.0.dll
2012-07-25 12:08:40 ----A---- C:\Windows\SYSWOW64\perf-MSSQL$SQLEXPRESS-sqlctr10.1.2531.0.dll
2012-07-25 12:08:40 ----A---- C:\Windows\system32\perf-MSSQL$SQLEXPRESS-sqlctr10.1.2531.0.dll
2012-07-25 12:07:56 ----D---- C:\Windows\system32\RsFx
2012-07-25 12:07:12 ----D---- C:\Program Files\Microsoft Visual Studio 9.0
2012-07-25 12:06:46 ----D---- C:\Program Files\Microsoft.NET
2012-07-25 12:02:25 ----D---- C:\Program Files\Microsoft SQL Server
2012-07-25 12:02:04 ----D---- C:\Program Files (x86)\Microsoft SQL Server
2012-07-25 12:01:37 ----D---- C:\Program Files\Microsoft Sync Framework
2012-07-25 12:01:25 ----D---- C:\Program Files\Microsoft Synchronization Services
2012-07-25 12:01:25 ----D---- C:\Program Files\Microsoft SQL Server Compact Edition
2012-07-25 12:01:13 ----D---- C:\Program Files (x86)\Microsoft Synchronization Services
2012-07-25 12:01:13 ----D---- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2012-07-25 12:00:20 ----D---- C:\ProgramData\PreEmptive Solutions
2012-07-25 11:58:07 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2012-07-25 11:56:43 ----D---- C:\Program Files (x86)\Microsoft ASP.NET
2012-07-25 11:56:38 ----D---- C:\Program Files\IIS
2012-07-25 11:56:38 ----D---- C:\Program Files (x86)\IIS
2012-07-25 11:50:50 ----D---- C:\Windows\SYSWOW64\1033
2012-07-25 11:50:30 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 10.0
2012-07-25 11:50:30 ----D---- C:\Program Files (x86)\Microsoft F#
2012-07-25 11:50:30 ----D---- C:\Program Files (x86)\HTML Help Workshop
2012-07-25 11:48:17 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 9.0
2012-07-25 11:48:00 ----D---- C:\Windows\system32\1033
2012-07-25 11:48:00 ----D---- C:\Windows\symbols
2012-07-25 11:48:00 ----D---- C:\Program Files\Microsoft Visual Studio 10.0
2012-07-25 11:48:00 ----D---- C:\Program Files\Microsoft Help Viewer
2012-07-25 11:48:00 ----D---- C:\Program Files (x86)\Microsoft SDKs
2012-07-23 14:26:09 ----D---- C:\Program Files\Adobe
2012-07-23 14:24:42 ----D---- C:\Program Files (x86)\Adobe
2012-07-23 14:01:07 ----D---- C:\Program Files (x86)\uTorrent2
2012-07-22 14:30:24 ----D---- C:\totalcmd8
2012-07-20 21:23:52 ----D---- C:\Users\Roman\AppData\Roaming\XWindows Dock
2012-07-20 18:28:32 ----SHD---- C:\$RECYCLE.BIN
2012-07-20 12:42:38 ----D---- C:\Program Files (x86)\Google
2012-07-19 10:54:31 ----D---- C:\Program Files (x86)\Mass Effect 3
2012-07-19 10:27:16 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2012-07-19 10:26:57 ----D---- C:\ProgramData\NVIDIA
2012-07-19 10:26:51 ----A---- C:\Windows\system32\nvshext.dll
2012-07-19 10:26:50 ----A---- C:\Windows\system32\nvvsvc.exe
2012-07-19 10:26:50 ----A---- C:\Windows\system32\nvsvc64.dll
2012-07-19 10:26:50 ----A---- C:\Windows\system32\nvmctray.dll
2012-07-19 10:26:50 ----A---- C:\Windows\system32\nvcpl.dll
2012-07-19 10:25:49 ----A---- C:\Windows\SYSWOW64\nvwgf2um.dll
2012-07-19 10:25:49 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2012-07-19 10:25:49 ----A---- C:\Windows\system32\nvoglv64.dll
2012-07-19 10:25:49 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2012-07-19 10:25:48 ----A---- C:\Windows\SYSWOW64\nvd3dum.dll
2012-07-19 10:25:48 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2012-07-19 10:25:48 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2012-07-19 10:25:48 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2012-07-19 10:25:48 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2012-07-19 10:25:48 ----A---- C:\Windows\SYSWOW64\nvapi.dll
2012-07-19 10:25:48 ----A---- C:\Windows\system32\nvcuvid.dll
2012-07-19 10:25:48 ----A---- C:\Windows\system32\nvcuvenc.dll
2012-07-19 10:25:48 ----A---- C:\Windows\system32\nvcuda.dll
2012-07-19 10:25:48 ----A---- C:\Windows\system32\nvcompiler.dll
2012-07-19 10:25:48 ----A---- C:\Windows\system32\nvapi64.dll
2012-07-19 09:41:07 ----D---- C:\Program Files (x86)\OCCTPT
2012-07-19 09:41:01 ----D---- C:\Windows\SYSWOW64\directx
2012-07-19 09:36:31 ----D---- C:\Program Files\Microsoft Games
2012-07-18 09:53:42 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2012-07-18 09:53:42 ----A---- C:\Windows\system32\qdvd.dll
2012-07-18 09:53:40 ----A---- C:\Windows\system32\FntCache.dll
2012-07-18 09:53:40 ----A---- C:\Windows\system32\d2d1.dll
2012-07-18 09:53:39 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2012-07-18 08:49:39 ----A---- C:\Windows\system32\browserchoice.exe
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\wininet.dll
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\wextract.exe
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\url.dll
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\occache.dll
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\msrating.dll
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\msls31.dll
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\mshta.exe
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\jscript.dll
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\inseng.dll
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\ieui.dll
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\ieakui.dll
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\ieaksie.dll
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\ieakeng.dll
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\ie4uinit.exe
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\icardie.dll
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2012-07-18 08:47:09 ----A---- C:\Windows\SYSWOW64\admparse.dll
2012-07-18 08:47:09 ----A---- C:\Windows\system32\wininet.dll
2012-07-18 08:47:09 ----A---- C:\Windows\system32\wextract.exe
2012-07-18 08:47:09 ----A---- C:\Windows\system32\webcheck.dll
2012-07-18 08:47:09 ----A---- C:\Windows\system32\vbscript.dll
2012-07-18 08:47:09 ----A---- C:\Windows\system32\urlmon.dll
2012-07-18 08:47:09 ----A---- C:\Windows\system32\url.dll
2012-07-18 08:47:09 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2012-07-18 08:47:09 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2012-07-18 08:47:09 ----A---- C:\Windows\system32\pngfilt.dll
2012-07-18 08:47:09 ----A---- C:\Windows\system32\occache.dll
2012-07-18 08:47:09 ----A---- C:\Windows\system32\msrating.dll
2012-07-18 08:47:09 ----A---- C:\Windows\system32\msls31.dll
2012-07-18 08:47:09 ----A---- C:\Windows\system32\mshtmler.dll
2012-07-18 08:47:09 ----A---- C:\Windows\system32\mshtmled.dll
2012-07-18 08:47:09 ----A---- C:\Windows\system32\mshtml.dll
2012-07-18 08:47:09 ----A---- C:\Windows\system32\mshta.exe
2012-07-18 08:47:09 ----A---- C:\Windows\system32\msfeedssync.exe
2012-07-18 08:47:09 ----A---- C:\Windows\system32\msfeedsbs.dll
2012-07-18 08:47:09 ----A---- C:\Windows\system32\msfeeds.dll
2012-07-18 08:47:09 ----A---- C:\Windows\system32\licmgr10.dll
2012-07-18 08:47:09 ----A---- C:\Windows\system32\jsproxy.dll
2012-07-18 08:47:09 ----A---- C:\Windows\system32\jscript9.dll
2012-07-18 08:47:09 ----A---- C:\Windows\system32\jscript.dll
2012-07-18 08:47:09 ----A---- C:\Windows\system32\inseng.dll
2012-07-18 08:47:09 ----A---- C:\Windows\system32\imgutil.dll
2012-07-18 08:47:09 ----A---- C:\Windows\system32\iexpress.exe
2012-07-18 08:47:09 ----A---- C:\Windows\system32\ieUnatt.exe
2012-07-18 08:47:09 ----A---- C:\Windows\system32\ieui.dll
2012-07-18 08:47:09 ----A---- C:\Windows\system32\iesysprep.dll
2012-07-18 08:47:09 ----A---- C:\Windows\system32\iesetup.dll
2012-07-18 08:47:09 ----A---- C:\Windows\system32\iertutil.dll
2012-07-18 08:47:09 ----A---- C:\Windows\system32\iernonce.dll
2012-07-18 08:47:09 ----A---- C:\Windows\system32\iepeers.dll
2012-07-18 08:47:09 ----A---- C:\Windows\system32\ieframe.dll
2012-07-18 08:47:09 ----A---- C:\Windows\system32\iedkcs32.dll
2012-07-18 08:47:09 ----A---- C:\Windows\system32\ieapfltr.dll
2012-07-18 08:47:09 ----A---- C:\Windows\system32\ieapfltr.dat
2012-07-18 08:47:09 ----A---- C:\Windows\system32\ieakui.dll
2012-07-18 08:47:09 ----A---- C:\Windows\system32\ieaksie.dll
2012-07-18 08:47:09 ----A---- C:\Windows\system32\ieakeng.dll
2012-07-18 08:47:09 ----A---- C:\Windows\system32\IEAdvpack.dll
2012-07-18 08:47:09 ----A---- C:\Windows\system32\ie4uinit.exe
2012-07-18 08:47:09 ----A---- C:\Windows\system32\icardie.dll
2012-07-18 08:47:09 ----A---- C:\Windows\system32\dxtrans.dll
2012-07-18 08:47:09 ----A---- C:\Windows\system32\dxtmsft.dll
2012-07-18 08:47:09 ----A---- C:\Windows\system32\admparse.dll
2012-07-18 08:40:48 ----A---- C:\Windows\system32\MRT.exe
2012-07-18 08:38:25 ----D---- C:\Windows\system32\SPReview
2012-07-18 08:37:59 ----D---- C:\Windows\system32\EventProviders
2012-07-18 08:18:59 ----A---- C:\Windows\system32\netfxperf.dll
2012-07-18 08:18:59 ----A---- C:\Windows\system32\dfshim.dll
2012-07-18 08:18:51 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2012-07-18 08:18:47 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2012-07-18 08:18:47 ----A---- C:\Windows\system32\mstscax.dll
2012-07-18 08:18:47 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2012-07-18 08:18:47 ----A---- C:\Windows\system32\d3d10warp.dll
2012-07-18 08:18:44 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2012-07-18 08:18:41 ----A---- C:\Windows\SYSWOW64\mfc40u.dll
2012-07-18 08:18:41 ----A---- C:\Windows\SYSWOW64\mfc40.dll
2012-07-18 08:18:41 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2012-07-18 08:18:40 ----A---- C:\Windows\system32\sysmain.dll
2012-07-18 08:18:39 ----A---- C:\Windows\SYSWOW64\pmcsnap.dll
2012-07-18 08:18:38 ----A---- C:\Windows\system32\MSVidCtl.dll
2012-07-18 08:18:37 ----A---- C:\Windows\system32\wmp.dll
2012-07-18 08:18:36 ----A---- C:\Windows\system32\mscoree.dll
2012-07-18 08:18:34 ----A---- C:\Windows\system32\secproc_isv.dll
2012-07-18 08:18:34 ----A---- C:\Windows\system32\mmcndmgr.dll
2012-07-18 08:18:33 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll
2012-07-18 08:18:33 ----A---- C:\Windows\system32\RMActivate_isv.exe
2012-07-18 08:18:33 ----A---- C:\Windows\system32\RMActivate.exe
2012-07-18 08:18:33 ----A---- C:\Windows\system32\mf.dll
2012-07-18 08:18:32 ----A---- C:\Windows\system32\xpsservices.dll
2012-07-18 08:18:32 ----A---- C:\Windows\system32\secproc.dll
2012-07-18 08:18:31 ----A---- C:\Windows\SYSWOW64\secproc.dll
2012-07-18 08:18:31 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe
2012-07-18 08:18:31 ----A---- C:\Windows\system32\rpcrt4.dll
2012-07-18 08:18:30 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2012-07-18 08:18:30 ----A---- C:\Windows\SYSWOW64\PushPrinterConnections.exe
2012-07-18 08:18:30 ----A---- C:\Windows\SYSWOW64\ppcsnap.dll
2012-07-18 08:18:30 ----A---- C:\Windows\system32\schedsvc.dll
2012-07-18 08:18:29 ----A---- C:\Windows\system32\ole32.dll
2012-07-18 08:18:28 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2012-07-18 08:18:28 ----A---- C:\Windows\system32\spwizui.dll
2012-07-18 08:18:27 ----A---- C:\Windows\SYSWOW64\mf.dll
2012-07-18 08:18:27 ----A---- C:\Windows\system32\wevtsvc.dll
2012-07-18 08:18:27 ----A---- C:\Windows\system32\taskschd.dll
2012-07-18 08:18:27 ----A---- C:\Windows\system32\RacEngn.dll
2012-07-18 08:18:27 ----A---- C:\Windows\system32\diagperf.dll
2012-07-18 08:18:26 ----A---- C:\Windows\SYSWOW64\CertEnroll.dll
2012-07-18 08:18:26 ----A---- C:\Windows\system32\vssapi.dll
2012-07-18 08:18:26 ----A---- C:\Windows\system32\ExplorerFrame.dll
2012-07-18 08:18:26 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2012-07-18 08:18:25 ----A---- C:\Windows\system32\UIRibbon.dll
2012-07-18 08:18:25 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2012-07-18 08:18:25 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2012-07-18 08:18:24 ----A---- C:\Windows\SYSWOW64\wmp.dll
2012-07-18 08:18:22 ----A---- C:\Windows\system32\WsmSvc.dll
2012-07-18 08:18:21 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2012-07-18 08:18:21 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2012-07-18 08:18:21 ----A---- C:\Windows\system32\WMVCORE.DLL
2012-07-18 08:18:21 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2012-07-18 08:18:21 ----A---- C:\Windows\system32\PresentationHost.exe
2012-07-18 08:18:20 ----A---- C:\Windows\system32\spreview.exe
2012-07-18 08:18:20 ----A---- C:\Windows\system32\spinstall.exe
2012-07-18 08:18:20 ----A---- C:\Windows\system32\rdpdd.dll
2012-07-18 08:18:20 ----A---- C:\Windows\system32\MPSSVC.dll
2012-07-18 08:18:20 ----A---- C:\Windows\system32\CertEnroll.dll
2012-07-18 08:18:19 ----A---- C:\Windows\system32\WMVDECOD.DLL
2012-07-18 08:18:19 ----A---- C:\Windows\system32\WinSAT.exe
2012-07-18 08:18:18 ----A---- C:\Windows\system32\d3d9.dll
2012-07-18 08:18:17 ----A---- C:\Windows\SYSWOW64\RacEngn.dll
2012-07-18 08:18:17 ----A---- C:\Windows\system32\IKEEXT.DLL
2012-07-18 08:18:16 ----A---- C:\Windows\SYSWOW64\AuthFWSnapin.dll
2012-07-18 08:18:16 ----A---- C:\Windows\system32\SearchFolder.dll
2012-07-18 08:18:16 ----A---- C:\Windows\system32\AuthFWSnapin.dll
2012-07-18 08:18:15 ----A---- C:\Windows\system32\VSSVC.exe
2012-07-18 08:18:15 ----A---- C:\Windows\system32\gpsvc.dll
2012-07-18 08:18:15 ----A---- C:\Windows\system32\dwmcore.dll
2012-07-18 08:18:15 ----A---- C:\Windows\system32\dbgeng.dll
2012-07-18 08:18:14 ----A---- C:\Windows\system32\drivers\ndis.sys
2012-07-18 08:18:14 ----A---- C:\Windows\system32\drivers\http.sys
2012-07-18 08:18:12 ----A---- C:\Windows\SYSWOW64\ole32.dll
2012-07-18 08:18:12 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2012-07-18 08:18:12 ----A---- C:\Windows\system32\TSWorkspace.dll
2012-07-18 08:18:12 ----A---- C:\Windows\system32\audiosrv.dll
2012-07-18 08:18:12 ----A---- C:\Windows\system32\actxprxy.dll
2012-07-18 08:18:11 ----A---- C:\Windows\system32\qmgr.dll
2012-07-18 08:18:11 ----A---- C:\Windows\system32\gpprefcl.dll
2012-07-18 08:18:10 ----A---- C:\Windows\system32\termsrv.dll
2012-07-18 08:18:10 ----A---- C:\Windows\system32\mstsc.exe
2012-07-18 08:18:08 ----A---- C:\Windows\SYSWOW64\vssapi.dll
2012-07-18 08:18:08 ----A---- C:\Windows\SYSWOW64\SearchFolder.dll
2012-07-18 08:18:08 ----A---- C:\Windows\SYSWOW64\d3d9.dll
2012-07-18 08:18:08 ----A---- C:\Windows\system32\winhttp.dll
2012-07-18 08:18:08 ----A---- C:\Windows\system32\netlogon.dll
2012-07-18 08:18:08 ----A---- C:\Windows\system32\imapi2fs.dll
2012-07-18 08:18:08 ----A---- C:\Windows\system32\d3d11.dll
2012-07-18 08:18:07 ----A---- C:\Windows\SYSWOW64\taskschd.dll
2012-07-18 08:18:07 ----A---- C:\Windows\system32\setupapi.dll
2012-07-18 08:18:07 ----A---- C:\Windows\system32\rpcss.dll
2012-07-18 08:18:07 ----A---- C:\Windows\system32\QAGENTRT.DLL
2012-07-18 08:18:07 ----A---- C:\Windows\system32\PushPrinterConnections.exe
2012-07-18 08:18:07 ----A---- C:\Windows\system32\propsys.dll
2012-07-18 08:18:07 ----A---- C:\Windows\system32\msv1_0.dll
2012-07-18 08:18:06 ----A---- C:\Windows\system32\werconcpl.dll
2012-07-18 08:18:06 ----A---- C:\Windows\system32\wbengine.exe
2012-07-18 08:18:06 ----A---- C:\Windows\system32\taskeng.exe
2012-07-18 08:18:06 ----A---- C:\Windows\system32\authui.dll
2012-07-18 08:18:05 ----A---- C:\Windows\system32\odbc32.dll
2012-07-18 08:18:04 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2012-07-18 08:18:04 ----A---- C:\Windows\system32\WSDApi.dll
2012-07-18 08:18:04 ----A---- C:\Windows\system32\user32.dll
2012-07-18 08:18:03 ----A---- C:\Windows\system32\drivers\netio.sys
2012-07-18 08:18:02 ----A---- C:\Windows\system32\umrdp.dll
2012-07-18 08:18:02 ----A---- C:\Windows\system32\scavengeui.dll
2012-07-18 08:18:02 ----A---- C:\Windows\system32\drivers\tdx.sys
2012-07-18 08:18:02 ----A---- C:\Windows\system32\drivers\netbt.sys
2012-07-18 08:18:02 ----A---- C:\Windows\system32\dhcpcore.dll
2012-07-18 08:18:02 ----A---- C:\Windows\system32\certmgr.dll
2012-07-18 08:18:01 ----A---- C:\Windows\SYSWOW64\wer.dll
2012-07-18 08:18:01 ----A---- C:\Windows\SYSWOW64\certcli.dll
2012-07-18 08:18:00 ----A---- C:\Windows\system32\tsmf.dll
2012-07-18 08:18:00 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2012-07-18 08:18:00 ----A---- C:\Windows\system32\ncsi.dll
2012-07-18 08:18:00 ----A---- C:\Windows\system32\msdrm.dll
2012-07-18 08:18:00 ----A---- C:\Windows\system32\localspl.dll
2012-07-18 08:17:59 ----A---- C:\Windows\SYSWOW64\dwmcore.dll
2012-07-18 08:17:59 ----A---- C:\Windows\system32\shlwapi.dll
2012-07-18 08:17:59 ----A---- C:\Windows\system32\netshell.dll
2012-07-18 08:17:59 ----A---- C:\Windows\system32\msdtctm.dll
2012-07-18 08:17:59 ----A---- C:\Windows\system32\framedynos.dll
2012-07-18 08:17:58 ----A---- C:\Windows\SYSWOW64\tcpmonui.dll
2012-07-18 08:17:58 ----A---- C:\Windows\SYSWOW64\odbc32.dll
2012-07-18 08:17:58 ----A---- C:\Windows\system32\wmicmiplugin.dll
2012-07-18 08:17:58 ----A---- C:\Windows\system32\winlogon.exe
2012-07-18 08:17:58 ----A---- C:\Windows\system32\netcfgx.dll
2012-07-18 08:17:58 ----A---- C:\Windows\system32\appmgr.dll
2012-07-18 08:17:57 ----A---- C:\Windows\system32\ws2_32.dll
2012-07-18 08:17:57 ----A---- C:\Windows\system32\usp10.dll
2012-07-18 08:17:57 ----A---- C:\Windows\system32\nlasvc.dll
2012-07-18 08:17:57 ----A---- C:\Windows\system32\lsm.exe
2012-07-18 08:17:57 ----A---- C:\Windows\system32\dxgi.dll
2012-07-18 08:17:57 ----A---- C:\Windows\system32\comdlg32.dll
2012-07-18 08:17:56 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll
2012-07-18 08:17:56 ----A---- C:\Windows\SYSWOW64\tsmf.dll
2012-07-18 08:17:56 ----A---- C:\Windows\SYSWOW64\dot3api.dll
2012-07-18 08:17:56 ----A---- C:\Windows\system32\wmpps.dll
2012-07-18 08:17:56 ----A---- C:\Windows\system32\Query.dll
2012-07-18 08:17:56 ----A---- C:\Windows\system32\mswsock.dll
2012-07-18 08:17:56 ----A---- C:\Windows\system32\drvstore.dll
2012-07-18 08:17:56 ----A---- C:\Windows\system32\drivers\csc.sys
2012-07-18 08:17:56 ----A---- C:\Windows\system32\apphelp.dll
2012-07-18 08:17:55 ----A---- C:\Windows\SYSWOW64\winhttp.dll
2012-07-18 08:17:55 ----A---- C:\Windows\system32\wpdshext.dll
2012-07-18 08:17:55 ----A---- C:\Windows\system32\QAGENT.DLL
2012-07-18 08:17:55 ----A---- C:\Windows\system32\azroles.dll
2012-07-18 08:17:54 ----A---- C:\Windows\SYSWOW64\setupapi.dll
2012-07-18 08:17:54 ----A---- C:\Windows\SYSWOW64\MSVidCtl.dll
2012-07-18 08:17:54 ----A---- C:\Windows\SYSWOW64\apphelp.dll
2012-07-18 08:17:54 ----A---- C:\Windows\system32\Vault.dll
2012-07-18 08:17:54 ----A---- C:\Windows\system32\samsrv.dll
2012-07-18 08:17:54 ----A---- C:\Windows\system32\DShowRdpFilter.dll
2012-07-18 08:17:54 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2012-07-18 08:17:54 ----A---- C:\Windows\system32\cmd.exe
2012-07-18 08:17:54 ----A---- C:\Windows\system32\BFE.DLL
2012-07-18 08:17:53 ----A---- C:\Windows\SYSWOW64\netlogon.dll
2012-07-18 08:17:53 ----A---- C:\Windows\SYSWOW64\dbgeng.dll
2012-07-18 08:17:53 ----A---- C:\Windows\system32\win32spl.dll
2012-07-18 08:17:53 ----A---- C:\Windows\system32\lpksetup.exe
2012-07-18 08:17:53 ----A---- C:\Windows\system32\cscsvc.dll
2012-07-18 08:17:52 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2012-07-18 08:17:52 ----A---- C:\Windows\SYSWOW64\netcfgx.dll
2012-07-18 08:17:52 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2012-07-18 08:17:52 ----A---- C:\Windows\system32\WebClnt.dll
2012-07-18 08:17:52 ----A---- C:\Windows\system32\rdpclip.exe
2012-07-18 08:17:51 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2012-07-18 08:17:51 ----A---- C:\Windows\SYSWOW64\Query.dll
2012-07-18 08:17:51 ----A---- C:\Windows\SYSWOW64\gpprefcl.dll
2012-07-18 08:17:51 ----A---- C:\Windows\system32\WindowsCodecs.dll
2012-07-18 08:17:51 ----A---- C:\Windows\system32\sxs.dll
2012-07-18 08:17:51 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2012-07-18 08:17:51 ----A---- C:\Windows\system32\cscobj.dll
2012-07-18 08:17:50 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll
2012-07-18 08:17:50 ----A---- C:\Windows\SYSWOW64\upnp.dll
2012-07-18 08:17:50 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2012-07-18 08:17:50 ----A---- C:\Windows\system32\Wldap32.dll
2012-07-18 08:17:50 ----A---- C:\Windows\system32\taskcomp.dll
2012-07-18 08:17:50 ----A---- C:\Windows\system32\mfds.dll
2012-07-18 08:17:50 ----A---- C:\Windows\system32\mcbuilder.exe
2012-07-18 08:17:49 ----A---- C:\Windows\SYSWOW64\DShowRdpFilter.dll
2012-07-18 08:17:49 ----A---- C:\Windows\system32\pnidui.dll
2012-07-18 08:17:49 ----A---- C:\Windows\system32\ipsmsnap.dll
2012-07-18 08:17:46 ----A---- C:\Windows\system32\hgprint.dll
2012-07-18 08:17:44 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2012-07-18 08:17:44 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2012-07-18 08:17:44 ----A---- C:\Windows\SYSWOW64\msdrm.dll
2012-07-18 08:17:44 ----A---- C:\Windows\SYSWOW64\mmcndmgr.dll
2012-07-18 08:17:44 ----A---- C:\Windows\SYSWOW64\imapi2fs.dll
2012-07-18 08:17:44 ----A---- C:\Windows\system32\webservices.dll
2012-07-18 08:17:44 ----A---- C:\Windows\system32\spoolsv.exe
2012-07-18 08:17:44 ----A---- C:\Windows\system32\SessEnv.dll
2012-07-18 08:17:44 ----A---- C:\Windows\system32\rdpendp.dll
2012-07-18 08:17:43 ----A---- C:\Windows\SYSWOW64\SessEnv.dll
2012-07-18 08:17:43 ----A---- C:\Windows\SYSWOW64\authui.dll
2012-07-18 08:17:43 ----A---- C:\Windows\system32\winsta.dll
2012-07-18 08:17:43 ----A---- C:\Windows\system32\sqlsrv32.dll
2012-07-18 08:17:43 ----A---- C:\Windows\system32\fveapi.dll
2012-07-18 08:17:43 ----A---- C:\Windows\system32\dot3api.dll
2012-07-18 08:17:42 ----A---- C:\Windows\SYSWOW64\usp10.dll
2012-07-18 08:17:42 ----A---- C:\Windows\SYSWOW64\shlwapi.dll
2012-07-18 08:17:42 ----A---- C:\Windows\SYSWOW64\PortableDeviceApi.dll
2012-07-18 08:17:42 ----A---- C:\Windows\SYSWOW64\mcbuilder.exe
2012-07-18 08:17:42 ----A---- C:\Windows\system32\prncache.dll
2012-07-18 08:17:42 ----A---- C:\Windows\system32\mcmde.dll
2012-07-18 08:17:42 ----A---- C:\Windows\system32\gdi32.dll
2012-07-18 08:17:42 ----A---- C:\Windows\system32\drivers\volsnap.sys
2012-07-18 08:17:42 ----A---- C:\Windows\system32\drivers\msrpc.sys
2012-07-18 08:17:41 ----A---- C:\Windows\SYSWOW64\userenv.dll
2012-07-18 08:17:41 ----A---- C:\Windows\SYSWOW64\certmgr.dll
2012-07-18 08:17:41 ----A---- C:\Windows\system32\WMNetMgr.dll
2012-07-18 08:17:41 ----A---- C:\Windows\system32\wlanpref.dll
2012-07-18 08:17:41 ----A---- C:\Windows\system32\vpnike.dll
2012-07-18 08:17:41 ----A---- C:\Windows\system32\schtasks.exe
2012-07-18 08:17:40 ----A---- C:\Windows\SYSWOW64\xpsservices.dll
2012-07-18 08:17:40 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2012-07-18 08:17:40 ----A---- C:\Windows\SYSWOW64\drvstore.dll
2012-07-18 08:17:40 ----A---- C:\Windows\SYSWOW64\comdlg32.dll
2012-07-18 08:17:40 ----A---- C:\Windows\system32\userenv.dll
2012-07-18 08:17:40 ----A---- C:\Windows\system32\photowiz.dll
2012-07-18 08:17:40 ----A---- C:\Windows\system32\evr.dll
2012-07-18 08:17:40 ----A---- C:\Windows\system32\drivers\rdbss.sys
2012-07-18 08:17:40 ----A---- C:\Windows\system32\drivers\1394ohci.sys
2012-07-18 08:17:39 ----A---- C:\Windows\system32\framedyn.dll
2012-07-18 08:17:38 ----A---- C:\Windows\SYSWOW64\cmd.exe
2012-07-18 08:17:38 ----A---- C:\Windows\system32\wmpmde.dll
2012-07-18 08:17:38 ----A---- C:\Windows\system32\WMPEncEn.dll
2012-07-18 08:17:38 ----A---- C:\Windows\system32\wmpeffects.dll
2012-07-18 08:17:38 ----A---- C:\Windows\system32\SyncCenter.dll
2012-07-18 08:17:38 ----A---- C:\Windows\system32\sppobjs.dll
2012-07-18 08:17:38 ----A---- C:\Windows\system32\mfreadwrite.dll
2012-07-18 08:17:38 ----A---- C:\Windows\system32\IPSECSVC.DLL
2012-07-18 08:17:38 ----A---- C:\Windows\system32\FXSSVC.exe
2012-07-18 08:17:38 ----A---- C:\Windows\system32\AudioSes.dll
2012-07-18 08:17:38 ----A---- C:\Windows\system32\aepdu.dll
2012-07-18 08:17:37 ----A---- C:\Windows\system32\tscfgwmi.dll
2012-07-18 08:17:37 ----A---- C:\Windows\system32\srvsvc.dll
2012-07-18 08:17:37 ----A---- C:\Windows\system32\shsvcs.dll
2012-07-18 08:17:37 ----A---- C:\Windows\system32\aeinv.dll
2012-07-18 08:17:36 ----A---- C:\Windows\SYSWOW64\Wldap32.dll
2012-07-18 08:17:36 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2012-07-18 08:17:36 ----A---- C:\Windows\SYSWOW64\propsys.dll
2012-07-18 08:17:36 ----A---- C:\Windows\SYSWOW64\mfds.dll
2012-07-18 08:17:36 ----A---- C:\Windows\SYSWOW64\framedynos.dll
2012-07-18 08:17:36 ----A---- C:\Windows\system32\WinSATAPI.dll
2012-07-18 08:17:36 ----A---- C:\Windows\system32\vmicsvc.exe
2012-07-18 08:17:36 ----A---- C:\Windows\system32\stobject.dll
2012-07-18 08:17:36 ----A---- C:\Windows\system32\imapi2.dll
2012-07-18 08:17:36 ----A---- C:\Windows\system32\fde.dll
2012-07-18 08:17:35 ----A---- C:\Windows\SYSWOW64\rdpendp.dll
2012-07-18 08:17:35 ----A---- C:\Windows\system32\netdiagfx.dll
2012-07-18 08:17:35 ----A---- C:\Windows\system32\localsec.dll
2012-07-18 08:17:35 ----A---- C:\Windows\system32\iphlpsvc.dll
2012-07-18 08:17:35 ----A---- C:\Windows\system32\drivers\vmbus.sys
2012-07-18 08:17:35 ----A---- C:\Windows\system32\drivers\udfs.sys
2012-07-18 08:17:35 ----A---- C:\Windows\system32\credui.dll
2012-07-18 08:17:35 ----A---- C:\Windows\system32\cdd.dll
2012-07-18 08:17:35 ----A---- C:\Windows\system32\bcryptprimitives.dll
2012-07-18 08:17:34 ----A---- C:\Windows\SYSWOW64\user32.dll
2012-07-18 08:17:34 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2012-07-18 08:17:34 ----A---- C:\Windows\SYSWOW64\azroles.dll
2012-07-18 08:17:34 ----A---- C:\Windows\system32\tcpipcfg.dll
2012-07-18 08:17:34 ----A---- C:\Windows\system32\spp.dll
2012-07-18 08:17:34 ----A---- C:\Windows\system32\QSHVHOST.DLL
2012-07-18 08:17:34 ----A---- C:\Windows\system32\netid.dll
2012-07-18 08:17:34 ----A---- C:\Windows\system32\inetpp.dll
2012-07-18 08:17:34 ----A---- C:\Windows\system32\drivers\fltMgr.sys
2012-07-18 08:17:34 ----A---- C:\Windows\system32\davclnt.dll
2012-07-18 08:17:33 ----A---- C:\Windows\SYSWOW64\appmgr.dll
2012-07-18 08:17:33 ----A---- C:\Windows\system32\msinfo32.exe
2012-07-18 08:17:33 ----A---- C:\Windows\system32\gameux.dll
2012-07-18 08:17:33 ----A---- C:\Windows\system32\cscui.dll
2012-07-18 08:17:33 ----A---- C:\Windows\system32\biocpl.dll
2012-07-18 08:17:32 ----A---- C:\Windows\SYSWOW64\themeui.dll
2012-07-18 08:17:32 ----A---- C:\Windows\SYSWOW64\credui.dll
2012-07-18 08:17:32 ----A---- C:\Windows\system32\scansetting.dll
2012-07-18 08:17:32 ----A---- C:\Windows\system32\printui.dll
2012-07-18 08:17:32 ----A---- C:\Windows\system32\pla.dll
2012-07-18 08:17:32 ----A---- C:\Windows\system32\mspbda.dll
2012-07-18 08:17:32 ----A---- C:\Windows\splwow64.exe
2012-07-18 08:17:31 ----A---- C:\Windows\SYSWOW64\taskeng.exe
2012-07-18 08:17:31 ----A---- C:\Windows\SYSWOW64\spp.dll
2012-07-18 08:17:31 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2012-07-18 08:17:31 ----A---- C:\Windows\SYSWOW64\dhcpcore.dll
2012-07-18 08:17:31 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2012-07-18 08:17:30 ----A---- C:\Windows\SYSWOW64\mfreadwrite.dll
2012-07-18 08:17:30 ----A---- C:\Windows\SYSWOW64\basecsp.dll
2012-07-18 08:17:30 ----A---- C:\Windows\system32\wusa.exe
2012-07-18 08:17:30 ----A---- C:\Windows\system32\wiaservc.dll
2012-07-18 08:17:30 ----A---- C:\Windows\system32\vds.exe
2012-07-18 08:17:30 ----A---- C:\Windows\system32\rpchttp.dll
2012-07-18 08:17:30 ----A---- C:\Windows\system32\msdri.dll
2012-07-18 08:17:30 ----A---- C:\Windows\system32\mscms.dll
2012-07-18 08:17:30 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2012-07-18 08:17:30 ----A---- C:\Windows\system32\drivers\pci.sys
2012-07-18 08:17:30 ----A---- C:\Windows\system32\aitagent.exe
2012-07-18 08:17:30 ----A---- C:\Windows\system32\AdmTmpl.dll
2012-07-18 08:17:29 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2012-07-18 08:17:28 ----A---- C:\Windows\SYSWOW64\taskcomp.dll
2012-07-18 08:17:28 ----A---- C:\Windows\SYSWOW64\NaturalLanguage6.dll
2012-07-18 08:17:28 ----A---- C:\Windows\SYSWOW64\evr.dll
2012-07-18 08:17:28 ----A---- C:\Windows\SYSWOW64\dbghelp.dll
2012-07-18 08:17:28 ----A---- C:\Windows\system32\XpsRasterService.dll
2012-07-18 08:17:28 ----A---- C:\Windows\system32\wisptis.exe
2012-07-18 08:17:28 ----A---- C:\Windows\system32\PkgMgr.exe
2012-07-18 08:17:28 ----A---- C:\Windows\system32\ocsetup.exe
2012-07-18 08:17:28 ----A---- C:\Windows\system32\FirewallControlPanel.dll
2012-07-18 08:17:28 ----A---- C:\Windows\system32\drivers\rasl2tp.sys
2012-07-18 08:17:28 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2012-07-18 08:17:27 ----A---- C:\Windows\SYSWOW64\WinSATAPI.dll
2012-07-18 08:17:27 ----A---- C:\Windows\SYSWOW64\calc.exe
2012-07-18 08:17:27 ----A---- C:\Windows\system32\sppwinob.dll
2012-07-18 08:17:27 ----A---- C:\Windows\system32\ocsetapi.dll
2012-07-18 08:17:27 ----A---- C:\Windows\system32\DXP.dll
2012-07-18 08:17:27 ----A---- C:\Windows\system32\drivers\volmgr.sys
2012-07-18 08:17:26 ----A---- C:\Windows\SYSWOW64\sqlsrv32.dll
2012-07-18 08:17:26 ----A---- C:\Windows\system32\wpdbusenum.dll
2012-07-18 08:17:26 ----A---- C:\Windows\system32\wcncsvc.dll
2012-07-18 08:17:26 ----A---- C:\Windows\system32\upnp.dll
2012-07-18 08:17:26 ----A---- C:\Windows\system32\Robocopy.exe
2012-07-18 08:17:26 ----A---- C:\Windows\system32\mprapi.dll
2012-07-18 08:17:26 ----A---- C:\Windows\system32\eapphost.dll
2012-07-18 08:17:26 ----A---- C:\Windows\system32\eapp3hst.dll
2012-07-18 08:17:26 ----A---- C:\Windows\system32\drivers\msdsm.sys
2012-07-18 08:17:26 ----A---- C:\Windows\system32\ci.dll
2012-07-18 08:17:25 ----A---- C:\Windows\SYSWOW64\UIRibbon.dll
2012-07-18 08:17:25 ----A---- C:\Windows\SYSWOW64\sxs.dll
2012-07-18 08:17:25 ----A---- C:\Windows\SYSWOW64\netshell.dll
2012-07-18 08:17:25 ----A---- C:\Windows\system32\thumbcache.dll
2012-07-18 08:17:25 ----A---- C:\Windows\system32\t2embed.dll
2012-07-18 08:17:25 ----A---- C:\Windows\system32\hal.dll
2012-07-18 08:17:25 ----A---- C:\Windows\system32\drivers\HpSAMD.sys


Hrúza no.. po relatívne čerstvej inštalačke windowsu :(

roki
Návštěvník
Návštěvník
Příspěvky: 101
Registrován: 29 zář 2005 13:16

Re: Velmi zlý stav - z hodiny na hodinu

#2 Příspěvek od roki »

zvyšok:

2012-07-18 08:17:24 ----A---- C:\Windows\SYSWOW64\ws2_32.dll
2012-07-18 08:17:24 ----A---- C:\Windows\SYSWOW64\stobject.dll
2012-07-18 08:17:24 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2012-07-18 08:17:24 ----A---- C:\Windows\system32\scecli.dll
2012-07-18 08:17:24 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2012-07-18 08:17:24 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2012-07-18 08:17:24 ----A---- C:\Windows\system32\DxpTaskSync.dll
2012-07-18 08:17:24 ----A---- C:\Windows\system32\dwmredir.dll
2012-07-18 08:17:24 ----A---- C:\Windows\system32\drivers\fvevol.sys
2012-07-18 08:17:23 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2012-07-18 08:17:23 ----A---- C:\Windows\system32\puiobj.dll
2012-07-18 08:17:23 ----A---- C:\Windows\system32\nlaapi.dll
2012-07-18 08:17:23 ----A---- C:\Windows\system32\msasn1.dll
2012-07-18 08:17:23 ----A---- C:\Windows\system32\iasrad.dll
2012-07-18 08:17:23 ----A---- C:\Windows\system32\drivers\ipfltdrv.sys
2012-07-18 08:17:23 ----A---- C:\Windows\system32\drivers\Classpnp.sys
2012-07-18 08:17:22 ----A---- C:\Windows\SYSWOW64\prncache.dll
2012-07-18 08:17:22 ----A---- C:\Windows\SYSWOW64\printui.dll
2012-07-18 08:17:22 ----A---- C:\Windows\system32\themeui.dll
2012-07-18 08:17:22 ----A---- C:\Windows\system32\scrptadm.dll
2012-07-18 08:17:22 ----A---- C:\Windows\system32\onex.dll
2012-07-18 08:17:22 ----A---- C:\Windows\system32\DXPTaskRingtone.dll
2012-07-18 08:17:21 ----A---- C:\Windows\SYSWOW64\WSDApi.dll
2012-07-18 08:17:21 ----A---- C:\Windows\SYSWOW64\wmpeffects.dll
2012-07-18 08:17:21 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2012-07-18 08:17:21 ----A---- C:\Windows\SYSWOW64\net1.exe
2012-07-18 08:17:21 ----A---- C:\Windows\system32\aaclient.dll
2012-07-18 08:17:20 ----A---- C:\Windows\SYSWOW64\scansetting.dll
2012-07-18 08:17:20 ----A---- C:\Windows\system32\wlangpui.dll
2012-07-18 08:17:20 ----A---- C:\Windows\system32\wdc.dll
2012-07-18 08:17:20 ----A---- C:\Windows\system32\scesrv.dll
2012-07-18 08:17:20 ----A---- C:\Windows\system32\rasmans.dll
2012-07-18 08:17:20 ----A---- C:\Windows\system32\msftedit.dll
2012-07-18 08:17:19 ----A---- C:\Windows\SYSWOW64\MMDevAPI.dll
2012-07-18 08:17:19 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2012-07-18 08:17:19 ----A---- C:\Windows\system32\wiadefui.dll
2012-07-18 08:17:19 ----A---- C:\Windows\system32\VAN.dll
2012-07-18 08:17:19 ----A---- C:\Windows\system32\StructuredQuery.dll
2012-07-18 08:17:19 ----A---- C:\Windows\system32\sdengin2.dll
2012-07-18 08:17:19 ----A---- C:\Windows\system32\samcli.dll
2012-07-18 08:17:19 ----A---- C:\Windows\system32\netcenter.dll
2012-07-18 08:17:19 ----A---- C:\Windows\system32\dskquoui.dll
2012-07-18 08:17:18 ----A---- C:\Windows\SYSWOW64\WMVCORE.DLL
2012-07-18 08:17:18 ----A---- C:\Windows\SYSWOW64\wlangpui.dll
2012-07-18 08:17:18 ----A---- C:\Windows\SYSWOW64\QSHVHOST.DLL
2012-07-18 08:17:18 ----A---- C:\Windows\SYSWOW64\aaclient.dll
2012-07-18 08:17:18 ----A---- C:\Windows\system32\wscapi.dll
2012-07-18 08:17:18 ----A---- C:\Windows\system32\srchadmin.dll
2012-07-18 08:17:18 ----A---- C:\Windows\system32\SndVol.exe
2012-07-18 08:17:18 ----A---- C:\Windows\system32\regapi.dll
2012-07-18 08:17:18 ----A---- C:\Windows\system32\QUTIL.DLL
2012-07-18 08:17:18 ----A---- C:\Windows\system32\iasacct.dll
2012-07-18 08:17:18 ----A---- C:\Windows\system32\drivers\termdd.sys
2012-07-18 08:17:18 ----A---- C:\Windows\system32\drivers\ndiswan.sys
2012-07-18 08:17:18 ----A---- C:\Windows\system32\consent.exe
2012-07-18 08:17:17 ----A---- C:\Windows\SYSWOW64\wpdshext.dll
2012-07-18 08:17:17 ----A---- C:\Windows\SYSWOW64\webservices.dll
2012-07-18 08:17:17 ----A---- C:\Windows\SYSWOW64\t2embed.dll
2012-07-18 08:17:17 ----A---- C:\Windows\SYSWOW64\scrptadm.dll
2012-07-18 08:17:17 ----A---- C:\Windows\SYSWOW64\pnidui.dll
2012-07-18 08:17:17 ----A---- C:\Windows\SYSWOW64\fde.dll
2012-07-18 08:17:17 ----A---- C:\Windows\system32\WUDFSvc.dll
2012-07-18 08:17:17 ----A---- C:\Windows\system32\wksprt.exe
2012-07-18 08:17:17 ----A---- C:\Windows\system32\TabSvc.dll
2012-07-18 08:17:17 ----A---- C:\Windows\system32\setupcl.exe
2012-07-18 08:17:17 ----A---- C:\Windows\system32\drivers\msahci.sys
2012-07-18 08:17:16 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2012-07-18 08:17:16 ----A---- C:\Windows\SYSWOW64\wscapi.dll
2012-07-18 08:17:16 ----A---- C:\Windows\SYSWOW64\SyncCenter.dll
2012-07-18 08:17:16 ----A---- C:\Windows\SYSWOW64\netdiagfx.dll
2012-07-18 08:17:16 ----A---- C:\Windows\system32\taskhost.exe
2012-07-18 08:17:16 ----A---- C:\Windows\system32\rastls.dll
2012-07-18 08:17:16 ----A---- C:\Windows\system32\drivers\acpi.sys
2012-07-18 08:17:15 ----A---- C:\Windows\SYSWOW64\cscobj.dll
2012-07-18 08:17:15 ----A---- C:\Windows\system32\tapisrv.dll
2012-07-18 08:17:15 ----A---- C:\Windows\system32\netiohlp.dll
2012-07-18 08:17:15 ----A---- C:\Windows\system32\msconfig.exe
2012-07-18 08:17:15 ----A---- C:\Windows\system32\mimefilt.dll
2012-07-18 08:17:15 ----A---- C:\Windows\system32\ListSvc.dll
2012-07-18 08:17:15 ----A---- C:\Windows\system32\drivers\raspptp.sys
2012-07-18 08:17:14 ----A---- C:\Windows\SYSWOW64\WinSCard.dll
2012-07-18 08:17:14 ----A---- C:\Windows\SYSWOW64\pla.dll
2012-07-18 08:17:14 ----A---- C:\Windows\SYSWOW64\MSMPEG2ENC.DLL
2012-07-18 08:17:14 ----A---- C:\Windows\SYSWOW64\msasn1.dll
2012-07-18 08:17:14 ----A---- C:\Windows\system32\lsmproxy.dll
2012-07-18 08:17:14 ----A---- C:\Windows\system32\hgcpl.dll
2012-07-18 08:17:14 ----A---- C:\Windows\system32\fdeploy.dll
2012-07-18 08:17:14 ----A---- C:\Windows\system32\drivers\sbp2port.sys
2012-07-18 08:17:14 ----A---- C:\Windows\system32\drivers\ks.sys
2012-07-18 08:17:14 ----A---- C:\Windows\system32\clusapi.dll
2012-07-18 08:17:14 ----A---- C:\Windows\system32\basecsp.dll
2012-07-18 08:17:13 ----A---- C:\Windows\SYSWOW64\winsta.dll
2012-07-18 08:17:13 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2012-07-18 08:17:13 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2012-07-18 08:17:12 ----A---- C:\Windows\SYSWOW64\imapi2.dll
2012-07-18 08:17:12 ----A---- C:\Windows\SYSWOW64\gameux.dll
2012-07-18 08:17:12 ----A---- C:\Windows\SYSWOW64\DXPTaskRingtone.dll
2012-07-18 08:17:12 ----A---- C:\Windows\system32\riched20.dll
2012-07-18 08:17:12 ----A---- C:\Windows\system32\mtxclu.dll
2012-07-18 08:17:12 ----A---- C:\Windows\system32\dnscmmc.dll
2012-07-18 08:17:11 ----A---- C:\Windows\SYSWOW64\WMPEncEn.dll
2012-07-18 08:17:11 ----A---- C:\Windows\SYSWOW64\shsvcs.dll
2012-07-18 08:17:11 ----A---- C:\Windows\SYSWOW64\onex.dll
2012-07-18 08:17:11 ----A---- C:\Windows\system32\sharemediacpl.dll
2012-07-18 08:17:11 ----A---- C:\Windows\system32\RpcRtRemote.dll
2012-07-18 08:17:11 ----A---- C:\Windows\system32\powercpl.dll
2012-07-18 08:17:11 ----A---- C:\Windows\system32\logoncli.dll
2012-07-18 08:17:10 ----A---- C:\Windows\SYSWOW64\winmm.dll
2012-07-18 08:17:10 ----A---- C:\Windows\SYSWOW64\samcli.dll
2012-07-18 08:17:10 ----A---- C:\Windows\SYSWOW64\netiohlp.dll
2012-07-18 08:17:10 ----A---- C:\Windows\SYSWOW64\IPHLPAPI.DLL
2012-07-18 08:17:10 ----A---- C:\Windows\SYSWOW64\hbaapi.dll
2012-07-18 08:17:10 ----A---- C:\Windows\SYSWOW64\autochk.exe
2012-07-18 08:17:10 ----A---- C:\Windows\SYSWOW64\autofmt.exe
2012-07-18 08:17:10 ----A---- C:\Windows\system32\wkssvc.dll
2012-07-18 08:17:10 ----A---- C:\Windows\system32\vpnikeapi.dll
2012-07-18 08:17:10 ----A---- C:\Windows\system32\themecpl.dll
2012-07-18 08:17:10 ----A---- C:\Windows\system32\SensorsCpl.dll
2012-07-18 08:17:10 ----A---- C:\Windows\system32\netjoin.dll
2012-07-18 08:17:10 ----A---- C:\Windows\system32\nci.dll
2012-07-18 08:17:10 ----A---- C:\Windows\system32\Narrator.exe
2012-07-18 08:17:10 ----A---- C:\Windows\system32\Faultrep.dll
2012-07-18 08:17:10 ----A---- C:\Windows\system32\eudcedit.exe
2012-07-18 08:17:10 ----A---- C:\Windows\system32\comctl32.dll
2012-07-18 08:17:09 ----A---- C:\Windows\SYSWOW64\thumbcache.dll
2012-07-18 08:17:09 ----A---- C:\Windows\SYSWOW64\regapi.dll
2012-07-18 08:17:09 ----A---- C:\Windows\SYSWOW64\proquota.exe
2012-07-18 08:17:09 ----A---- C:\Windows\SYSWOW64\msutb.dll
2012-07-18 08:17:09 ----A---- C:\Windows\SYSWOW64\msinfo32.exe
2012-07-18 08:17:09 ----A---- C:\Windows\SYSWOW64\mimefilt.dll
2012-07-18 08:17:09 ----A---- C:\Windows\SYSWOW64\ipsmsnap.dll
2012-07-18 08:17:09 ----A---- C:\Windows\SYSWOW64\autoconv.exe
2012-07-18 08:17:09 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2012-07-18 08:17:09 ----A---- C:\Windows\system32\sppcomapi.dll
2012-07-18 08:17:09 ----A---- C:\Windows\system32\nshipsec.dll
2012-07-18 08:17:09 ----A---- C:\Windows\system32\fms.dll
2012-07-18 08:17:09 ----A---- C:\Windows\system32\cabview.dll
2012-07-18 08:17:09 ----A---- C:\Windows\system32\autochk.exe
2012-07-18 08:17:09 ----A---- C:\Windows\system32\autofmt.exe
2012-07-18 08:17:09 ----A---- C:\Windows\system32\autoconv.exe
2012-07-18 08:17:08 ----A---- C:\Windows\SYSWOW64\wcncsvc.dll
2012-07-18 08:17:08 ----A---- C:\Windows\SYSWOW64\tcpipcfg.dll
2012-07-18 08:17:08 ----A---- C:\Windows\SYSWOW64\srchadmin.dll
2012-07-18 08:17:08 ----A---- C:\Windows\SYSWOW64\schtasks.exe
2012-07-18 08:17:08 ----A---- C:\Windows\SYSWOW64\powercpl.dll
2012-07-18 08:17:08 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2012-07-18 08:17:08 ----A---- C:\Windows\SYSWOW64\mscorier.dll
2012-07-18 08:17:08 ----A---- C:\Windows\SYSWOW64\framedyn.dll
2012-07-18 08:17:08 ----A---- C:\Windows\SYSWOW64\eapphost.dll
2012-07-18 08:17:08 ----A---- C:\Windows\system32\wwanconn.dll
2012-07-18 08:17:08 ----A---- C:\Windows\system32\wpd_ci.dll
2012-07-18 08:17:08 ----A---- C:\Windows\system32\wlanui.dll
2012-07-18 08:17:08 ----A---- C:\Windows\system32\shsetup.dll
2012-07-18 08:17:08 ----A---- C:\Windows\system32\sdclt.exe
2012-07-18 08:17:08 ----A---- C:\Windows\system32\prntvpt.dll
2012-07-18 08:17:08 ----A---- C:\Windows\system32\mscorier.dll
2012-07-18 08:17:08 ----A---- C:\Windows\system32\drivers\wanarp.sys
2012-07-18 08:17:08 ----A---- C:\Windows\system32\drivers\scsiport.sys
2012-07-18 08:17:08 ----A---- C:\Windows\system32\bcdsrv.dll
2012-07-18 08:17:08 ----A---- C:\Windows\system32\audiodg.exe
2012-07-18 08:17:07 ----A---- C:\Windows\SYSWOW64\QAGENT.DLL
2012-07-18 08:17:07 ----A---- C:\Windows\SYSWOW64\netid.dll
2012-07-18 08:17:07 ----A---- C:\Windows\SYSWOW64\AuxiliaryDisplayCpl.dll
2012-07-18 08:17:07 ----A---- C:\Windows\system32\SmiEngine.dll
2012-07-18 08:17:07 ----A---- C:\Windows\system32\fontext.dll
2012-07-18 08:17:07 ----A---- C:\Windows\system32\drivers\volmgrx.sys
2012-07-18 08:17:07 ----A---- C:\Windows\system32\dps.dll
2012-07-18 08:17:06 ----A---- C:\Windows\SYSWOW64\wdc.dll
2012-07-18 08:17:06 ----A---- C:\Windows\SYSWOW64\StructuredQuery.dll
2012-07-18 08:17:06 ----A---- C:\Windows\SYSWOW64\scesrv.dll
2012-07-18 08:17:06 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2012-07-18 08:17:06 ----A---- C:\Windows\system32\wmpsrcwp.dll
2012-07-18 08:17:06 ----A---- C:\Windows\system32\qedit.dll
2012-07-18 08:17:06 ----A---- C:\Windows\system32\mprddm.dll
2012-07-18 08:17:06 ----A---- C:\Windows\system32\mblctr.exe
2012-07-18 08:17:06 ----A---- C:\Windows\system32\drivers\hidclass.sys
2012-07-18 08:17:06 ----A---- C:\Windows\system32\Display.dll
2012-07-18 08:17:06 ----A---- C:\Windows\system32\credssp.dll
2012-07-18 08:17:06 ----A---- C:\Windows\system32\batmeter.dll
2012-07-18 08:17:06 ----A---- C:\Windows\system32\AxInstSv.dll
2012-07-18 08:17:05 ----A---- C:\Windows\SYSWOW64\WMNetMgr.dll
2012-07-18 08:17:05 ----A---- C:\Windows\SYSWOW64\wlanpref.dll
2012-07-18 08:17:05 ----A---- C:\Windows\SYSWOW64\Vault.dll
2012-07-18 08:17:05 ----A---- C:\Windows\SYSWOW64\untfs.dll
2012-07-18 08:17:05 ----A---- C:\Windows\SYSWOW64\RpcRtRemote.dll
2012-07-18 08:17:05 ----A---- C:\Windows\SYSWOW64\Robocopy.exe
2012-07-18 08:17:05 ----A---- C:\Windows\SYSWOW64\rastls.dll
2012-07-18 08:17:05 ----A---- C:\Windows\SYSWOW64\nci.dll
2012-07-18 08:17:05 ----A---- C:\Windows\system32\usercpl.dll
2012-07-18 08:17:05 ----A---- C:\Windows\system32\rtutils.dll
2012-07-18 08:17:05 ----A---- C:\Windows\system32\DiagCpl.dll
2012-07-18 08:17:05 ----A---- C:\Windows\system32\bootres.dll
2012-07-18 08:17:04 ----A---- C:\Windows\SYSWOW64\DxpTaskSync.dll
2012-07-18 08:17:04 ----A---- C:\Windows\system32\wpccpl.dll
2012-07-18 08:17:04 ----A---- C:\Windows\system32\sppsvc.exe
2012-07-18 08:17:04 ----A---- C:\Windows\system32\rasppp.dll
2012-07-18 08:17:04 ----A---- C:\Windows\system32\provsvc.dll
2012-07-18 08:17:04 ----A---- C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2012-07-18 08:17:04 ----A---- C:\Windows\system32\drivers\winhv.sys
2012-07-18 08:17:03 ----A---- C:\Windows\SYSWOW64\XpsRasterService.dll
2012-07-18 08:17:03 ----A---- C:\Windows\SYSWOW64\taskmgr.exe
2012-07-18 08:17:03 ----A---- C:\Windows\SYSWOW64\mtxclu.dll
2012-07-18 08:17:03 ----A---- C:\Windows\SYSWOW64\Display.dll
2012-07-18 08:17:03 ----A---- C:\Windows\system32\SndVolSSO.dll
2012-07-18 08:17:03 ----A---- C:\Windows\system32\shdocvw.dll
2012-07-18 08:17:03 ----A---- C:\Windows\system32\hbaapi.dll
2012-07-18 08:17:03 ----A---- C:\Windows\system32\dxdiagn.dll
2012-07-18 08:17:03 ----A---- C:\Windows\system32\drivers\rdyboost.sys
2012-07-18 08:17:03 ----A---- C:\Windows\system32\dot3cfg.dll
2012-07-18 08:17:02 ----A---- C:\Windows\SYSWOW64\userinit.exe
2012-07-18 08:17:02 ----A---- C:\Windows\SYSWOW64\termmgr.dll
2012-07-18 08:17:02 ----A---- C:\Windows\SYSWOW64\puiobj.dll
2012-07-18 08:17:02 ----A---- C:\Windows\SYSWOW64\eudcedit.exe
2012-07-18 08:17:02 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2012-07-18 08:17:02 ----A---- C:\Windows\system32\taskmgr.exe
2012-07-18 08:17:02 ----A---- C:\Windows\system32\proquota.exe
2012-07-18 08:17:02 ----A---- C:\Windows\system32\prnfldr.dll
2012-07-18 08:17:02 ----A---- C:\Windows\system32\pdh.dll
2012-07-18 08:17:02 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2012-07-18 08:17:02 ----A---- C:\Windows\system32\drivers\hwpolicy.sys
2012-07-18 08:17:01 ----A---- C:\Windows\system32\drivers\ataport.sys
2012-07-18 08:17:00 ----A---- C:\Windows\system32\MSAC3ENC.DLL
2012-07-18 08:16:58 ----A---- C:\Windows\SYSWOW64\wiadefui.dll
2012-07-18 08:16:58 ----A---- C:\Windows\SYSWOW64\sppcomapi.dll
2012-07-18 08:16:58 ----A---- C:\Windows\SYSWOW64\shsetup.dll
2012-07-18 08:16:58 ----A---- C:\Windows\SYSWOW64\rasppp.dll
2012-07-18 08:16:58 ----A---- C:\Windows\SYSWOW64\logoncli.dll
2012-07-18 08:16:58 ----A---- C:\Windows\SYSWOW64\cabview.dll
2012-07-18 08:16:58 ----A---- C:\Windows\system32\userinit.exe
2012-07-18 08:16:58 ----A---- C:\Windows\system32\untfs.dll
2012-07-18 08:16:58 ----A---- C:\Windows\system32\accessibilitycpl.dll
2012-07-18 08:16:57 ----A---- C:\Windows\SYSWOW64\themecpl.dll
2012-07-18 08:16:57 ----A---- C:\Windows\SYSWOW64\SensorsCpl.dll
2012-07-18 08:16:57 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2012-07-18 08:16:57 ----A---- C:\Windows\SYSWOW64\FirewallControlPanel.dll
2012-07-18 08:16:57 ----A---- C:\Windows\system32\slui.exe
2012-07-18 08:16:56 ----A---- C:\Windows\SYSWOW64\PhotoScreensaver.scr
2012-07-18 08:16:56 ----A---- C:\Windows\SYSWOW64\hgcpl.dll
2012-07-18 08:16:56 ----A---- C:\Windows\SYSWOW64\dnscmmc.dll
2012-07-18 08:16:56 ----A---- C:\Windows\system32\zipfldr.dll
2012-07-18 08:16:56 ----A---- C:\Windows\system32\msieftp.dll
2012-07-18 08:16:56 ----A---- C:\Windows\system32\drivers\storvsc.sys
2012-07-18 08:16:56 ----A---- C:\Windows\system32\defaultlocationcpl.dll
2012-07-18 08:16:55 ----A---- C:\Windows\SYSWOW64\tapisrv.dll
2012-07-18 08:16:55 ----A---- C:\Windows\SYSWOW64\scecli.dll
2012-07-18 08:16:55 ----A---- C:\Windows\SYSWOW64\mscories.dll
2012-07-18 08:16:55 ----A---- C:\Windows\SYSWOW64\mscms.dll
2012-07-18 08:16:55 ----A---- C:\Windows\SYSWOW64\localsec.dll
2012-07-18 08:16:55 ----A---- C:\Windows\SYSWOW64\fontext.dll
2012-07-18 08:16:55 ----A---- C:\Windows\system32\sud.dll
2012-07-18 08:16:55 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2012-07-18 08:16:55 ----A---- C:\Windows\system32\DeviceCenter.dll
2012-07-18 08:16:54 ----A---- C:\Windows\SYSWOW64\wlanui.dll
2012-07-18 08:16:54 ----A---- C:\Windows\SYSWOW64\usercpl.dll
2012-07-18 08:16:54 ----A---- C:\Windows\SYSWOW64\SndVolSSO.dll
2012-07-18 08:16:54 ----A---- C:\Windows\SYSWOW64\qedit.dll
2012-07-18 08:16:54 ----A---- C:\Windows\SYSWOW64\PerfCenterCPL.dll
2012-07-18 08:16:54 ----A---- C:\Windows\SYSWOW64\mprddm.dll
2012-07-18 08:16:54 ----A---- C:\Windows\SYSWOW64\iasacct.dll
2012-07-18 08:16:54 ----A---- C:\Windows\system32\twext.dll
2012-07-18 08:16:54 ----A---- C:\Windows\system32\taskbarcpl.dll
2012-07-18 08:16:54 ----A---- C:\Windows\system32\srcore.dll
2012-07-18 08:16:54 ----A---- C:\Windows\system32\OnLineIDCpl.dll
2012-07-18 08:16:54 ----A---- C:\Windows\system32\networkmap.dll
2012-07-18 08:16:54 ----A---- C:\Windows\system32\dot3svc.dll
2012-07-18 08:16:54 ----A---- C:\Windows\system32\cryptui.dll
2012-07-18 08:16:54 ----A---- C:\Windows\system32\ActionCenter.dll
2012-07-18 08:16:53 ----A---- C:\Windows\SYSWOW64\w32tm.exe
2012-07-18 08:16:53 ----A---- C:\Windows\SYSWOW64\VAN.dll
2012-07-18 08:16:53 ----A---- C:\Windows\SYSWOW64\SndVol.exe
2012-07-18 08:16:53 ----A---- C:\Windows\SYSWOW64\prntvpt.dll
2012-07-18 08:16:53 ----A---- C:\Windows\SYSWOW64\netcenter.dll
2012-07-18 08:16:53 ----A---- C:\Windows\SYSWOW64\batmeter.dll
2012-07-18 08:16:53 ----A---- C:\Windows\system32\uxlib.dll
2012-07-18 08:16:53 ----A---- C:\Windows\system32\recovery.dll
2012-07-18 08:16:53 ----A---- C:\Windows\system32\OobeFldr.dll
2012-07-18 08:16:53 ----A---- C:\Windows\system32\bcdedit.exe
2012-07-18 08:16:53 ----A---- C:\Windows\system32\azroleui.dll
2012-07-18 08:16:52 ----A---- C:\Windows\SYSWOW64\zipfldr.dll
2012-07-18 08:16:52 ----A---- C:\Windows\SYSWOW64\spwizeng.dll
2012-07-18 08:16:52 ----A---- C:\Windows\SYSWOW64\fdeploy.dll
2012-07-18 08:16:52 ----A---- C:\Windows\SYSWOW64\azroleui.dll
2012-07-18 08:16:52 ----A---- C:\Windows\SYSWOW64\accessibilitycpl.dll
2012-07-18 08:16:52 ----A---- C:\Windows\system32\tzutil.exe
2012-07-18 08:16:52 ----A---- C:\Windows\system32\syncui.dll
2012-07-18 08:16:52 ----A---- C:\Windows\system32\sisbkup.dll
2012-07-18 08:16:52 ----A---- C:\Windows\system32\sdcpl.dll
2012-07-18 08:16:52 ----A---- C:\Windows\system32\recdisc.exe
2012-07-18 08:16:52 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2012-07-18 08:16:52 ----A---- C:\Windows\system32\isoburn.exe
2012-07-18 08:16:52 ----A---- C:\Windows\system32\httpapi.dll
2012-07-18 08:16:52 ----A---- C:\Windows\system32\efscore.dll
2012-07-18 08:16:52 ----A---- C:\Windows\system32\dsuiext.dll
2012-07-18 08:16:52 ----A---- C:\Windows\system32\cca.dll
2012-07-18 08:16:52 ----A---- C:\Windows\system32\asycfilt.dll
2012-07-18 08:16:51 ----A---- C:\Windows\SYSWOW64\networkmap.dll
2012-07-18 08:16:51 ----A---- C:\Windows\SYSWOW64\netjoin.dll
2012-07-18 08:16:51 ----A---- C:\Windows\SYSWOW64\MSAC3ENC.DLL
2012-07-18 08:16:51 ----A---- C:\Windows\SYSWOW64\cryptui.dll
2012-07-18 08:16:51 ----A---- C:\Windows\SYSWOW64\adsldp.dll
2012-07-18 08:16:51 ----A---- C:\Windows\system32\systemcpl.dll
2012-07-18 08:16:51 ----A---- C:\Windows\system32\sysclass.dll
2012-07-18 08:16:51 ----A---- C:\Windows\system32\shwebsvc.dll
2012-07-18 08:16:51 ----A---- C:\Windows\system32\sdrsvc.dll
2012-07-18 08:16:51 ----A---- C:\Windows\system32\netplwiz.dll
2012-07-18 08:16:51 ----A---- C:\Windows\system32\ncryptui.dll
2012-07-18 08:16:51 ----A---- C:\Windows\system32\drivers\rdpdr.sys
2012-07-18 08:16:51 ----A---- C:\Windows\system32\drivers\mpio.sys
2012-07-18 08:16:51 ----A---- C:\Windows\system32\certcli.dll
2012-07-18 08:16:51 ----A---- C:\Windows\system32\autoplay.dll
2012-07-18 08:16:51 ----A---- C:\Windows\system32\appinfo.dll
2012-07-18 08:16:50 ----A---- C:\Windows\SYSWOW64\wusa.exe
2012-07-18 08:16:50 ----A---- C:\Windows\SYSWOW64\sud.dll
2012-07-18 08:16:50 ----A---- C:\Windows\SYSWOW64\prnfldr.dll
2012-07-18 08:16:50 ----A---- C:\Windows\SYSWOW64\OnLineIDCpl.dll
2012-07-18 08:16:50 ----A---- C:\Windows\SYSWOW64\MCEWMDRMNDBootstrap.dll
2012-07-18 08:16:50 ----A---- C:\Windows\SYSWOW64\Faultrep.dll
2012-07-18 08:16:50 ----A---- C:\Windows\SYSWOW64\ActionCenter.dll
2012-07-18 08:16:50 ----A---- C:\Windows\system32\wlanmsm.dll
2012-07-18 08:16:50 ----A---- C:\Windows\system32\spwizeng.dll
2012-07-18 08:16:50 ----A---- C:\Windows\system32\msvidc32.dll
2012-07-18 08:16:50 ----A---- C:\Windows\system32\MFPlay.dll
2012-07-18 08:16:50 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2012-07-18 08:16:50 ----A---- C:\Windows\system32\ActionCenterCPL.dll
2012-07-18 08:16:49 ----A---- C:\Windows\SYSWOW64\photowiz.dll
2012-07-18 08:16:49 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2012-07-18 08:16:49 ----A---- C:\Windows\SYSWOW64\MediaMetadataHandler.dll
2012-07-18 08:16:49 ----A---- C:\Windows\SYSWOW64\iprtrmgr.dll
2012-07-18 08:16:49 ----A---- C:\Windows\SYSWOW64\iasrad.dll
2012-07-18 08:16:49 ----A---- C:\Windows\SYSWOW64\credssp.dll
2012-07-18 08:16:49 ----A---- C:\Windows\system32\vdsutil.dll
2012-07-18 08:16:49 ----A---- C:\Windows\system32\termmgr.dll
2012-07-18 08:16:49 ----A---- C:\Windows\system32\sethc.exe
2012-07-18 08:16:49 ----A---- C:\Windows\system32\rstrui.exe
2012-07-18 08:16:49 ----A---- C:\Windows\system32\msscp.dll
2012-07-18 08:16:48 ----A---- C:\Windows\SYSWOW64\sisbkup.dll
2012-07-18 08:16:48 ----A---- C:\Windows\SYSWOW64\ifsutil.dll
2012-07-18 08:16:48 ----A---- C:\Windows\SYSWOW64\ftp.exe
2012-07-18 08:16:48 ----A---- C:\Windows\SYSWOW64\dot3cfg.dll
2012-07-18 08:16:48 ----A---- C:\Windows\SYSWOW64\defaultlocationcpl.dll
2012-07-18 08:16:48 ----A---- C:\Windows\system32\tsgqec.dll
2012-07-18 08:16:48 ----A---- C:\Windows\system32\sqlcese30.dll
2012-07-18 08:16:48 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2012-07-18 08:16:48 ----A---- C:\Windows\system32\ReAgent.dll
2012-07-18 08:16:48 ----A---- C:\Windows\system32\ntlanman.dll
2012-07-18 08:16:48 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2012-07-18 08:16:47 ----A---- C:\Windows\SYSWOW64\syncui.dll
2012-07-18 08:16:47 ----A---- C:\Windows\SYSWOW64\shwebsvc.dll
2012-07-18 08:16:47 ----A---- C:\Windows\SYSWOW64\efscore.dll
2012-07-18 08:16:47 ----A---- C:\Windows\SYSWOW64\autoplay.dll
2012-07-18 08:16:47 ----A---- C:\Windows\SYSWOW64\ActionCenterCPL.dll
2012-07-18 08:16:47 ----A---- C:\Windows\system32\wwanprotdim.dll
2012-07-18 08:16:47 ----A---- C:\Windows\system32\UserAccountControlSettings.dll
2012-07-18 08:16:47 ----A---- C:\Windows\system32\ssText3d.scr
2012-07-18 08:16:47 ----A---- C:\Windows\system32\rdpd3d.dll
2012-07-18 08:16:47 ----A---- C:\Windows\system32\iyuv_32.dll
2012-07-18 08:16:47 ----A---- C:\Windows\system32\iTVData.dll
2012-07-18 08:16:47 ----A---- C:\Windows\system32\iprtrmgr.dll
2012-07-18 08:16:47 ----A---- C:\Windows\system32\drivers\vmstorfl.sys
2012-07-18 08:16:46 ----A---- C:\Windows\SYSWOW64\wmpmde.dll
2012-07-18 08:16:46 ----A---- C:\Windows\SYSWOW64\rtutils.dll
2012-07-18 08:16:46 ----A---- C:\Windows\SYSWOW64\ntlanman.dll
2012-07-18 08:16:46 ----A---- C:\Windows\SYSWOW64\dskquoui.dll
2012-07-18 08:16:46 ----A---- C:\Windows\SYSWOW64\DeviceCenter.dll
2012-07-18 08:16:46 ----A---- C:\Windows\system32\wmdrmsdk.dll
2012-07-18 08:16:46 ----A---- C:\Windows\system32\srvcli.dll
2012-07-18 08:16:46 ----A---- C:\Windows\system32\slwga.dll
2012-07-18 08:16:46 ----A---- C:\Windows\system32\nslookup.exe
2012-07-18 08:16:46 ----A---- C:\Windows\system32\msiexec.exe
2012-07-18 08:16:46 ----A---- C:\Windows\system32\drmmgrtn.dll
2012-07-18 08:16:42 ----A---- C:\Windows\SYSWOW64\systemcpl.dll
2012-07-18 08:16:42 ----A---- C:\Windows\SYSWOW64\SmartcardCredentialProvider.dll
2012-07-18 08:16:42 ----A---- C:\Windows\SYSWOW64\OobeFldr.dll
2012-07-18 08:16:42 ----A---- C:\Windows\SYSWOW64\ntprint.dll
2012-07-18 08:16:42 ----A---- C:\Windows\system32\wavemsp.dll
2012-07-18 08:16:42 ----A---- C:\Windows\system32\ntprint.dll
2012-07-18 08:16:42 ----A---- C:\Windows\system32\NAPHLPR.DLL
2012-07-18 08:16:42 ----A---- C:\Windows\system32\DevicePairingFolder.dll
2012-07-18 08:16:42 ----A---- C:\Windows\system32\acppage.dll
2012-07-18 08:16:41 ----A---- C:\Windows\SYSWOW64\sethc.exe
2012-07-18 08:16:41 ----A---- C:\Windows\SYSWOW64\riched20.dll
2012-07-18 08:16:41 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2012-07-18 08:16:41 ----A---- C:\Windows\SYSWOW64\netplwiz.dll
2012-07-18 08:16:41 ----A---- C:\Windows\SYSWOW64\NAPHLPR.DLL
2012-07-18 08:16:41 ----A---- C:\Windows\SYSWOW64\blackbox.dll
2012-07-18 08:16:41 ----A---- C:\Windows\SYSWOW64\activeds.dll
2012-07-18 08:16:41 ----A---- C:\Windows\system32\TSpkg.dll
2012-07-18 08:16:41 ----A---- C:\Windows\system32\srrstr.dll
2012-07-18 08:16:41 ----A---- C:\Windows\system32\sppnp.dll
2012-07-18 08:16:41 ----A---- C:\Windows\system32\certprop.dll
2012-07-18 08:16:41 ----A---- C:\Windows\system32\bcdboot.exe
2012-07-18 08:16:40 ----A---- C:\Windows\SYSWOW64\wmpsrcwp.dll
2012-07-18 08:16:40 ----A---- C:\Windows\SYSWOW64\migisol.dll
2012-07-18 08:16:40 ----A---- C:\Windows\SYSWOW64\httpapi.dll
2012-07-18 08:16:40 ----A---- C:\Windows\SYSWOW64\fms.dll
2012-07-18 08:16:40 ----A---- C:\Windows\SYSWOW64\dpx.dll
2012-07-18 08:16:40 ----A---- C:\Windows\system32\wkscli.dll
2012-07-18 08:16:40 ----A---- C:\Windows\system32\remotepg.dll
2012-07-18 08:16:40 ----A---- C:\Windows\system32\networkexplorer.dll
2012-07-18 08:16:40 ----A---- C:\Windows\system32\cabinet.dll
2012-07-18 08:16:39 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2012-07-18 08:16:39 ----A---- C:\Windows\SYSWOW64\wlanmsm.dll
2012-07-18 08:16:39 ----A---- C:\Windows\SYSWOW64\wavemsp.dll
2012-07-18 08:16:39 ----A---- C:\Windows\SYSWOW64\ReAgent.dll
2012-07-18 08:16:39 ----A---- C:\Windows\SYSWOW64\provsvc.dll
2012-07-18 08:16:39 ----A---- C:\Windows\SYSWOW64\nshipsec.dll
2012-07-18 08:16:39 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2012-07-18 08:16:39 ----A---- C:\Windows\SYSWOW64\msftedit.dll
2012-07-18 08:16:39 ----A---- C:\Windows\SYSWOW64\isoburn.exe
2012-07-18 08:16:39 ----A---- C:\Windows\SYSWOW64\asycfilt.dll
2012-07-18 08:16:39 ----A---- C:\Windows\system32\wsnmp32.dll
2012-07-18 08:16:39 ----A---- C:\Windows\system32\wmpdxm.dll
2012-07-18 08:16:39 ----A---- C:\Windows\system32\WinSCard.dll
2012-07-18 08:16:39 ----A---- C:\Windows\system32\PresentationSettings.exe
2012-07-18 08:16:39 ----A---- C:\Windows\system32\ftp.exe
2012-07-18 08:16:39 ----A---- C:\Windows\system32\dfrgui.exe
2012-07-18 08:16:38 ----A---- C:\Windows\SYSWOW64\wvc.dll
2012-07-18 08:16:38 ----A---- C:\Windows\SYSWOW64\wtsapi32.dll
2012-07-18 08:16:38 ----A---- C:\Windows\SYSWOW64\wimgapi.dll
2012-07-18 08:16:38 ----A---- C:\Windows\SYSWOW64\tzutil.exe
2012-07-18 08:16:38 ----A---- C:\Windows\SYSWOW64\ocsetup.exe
2012-07-18 08:16:38 ----A---- C:\Windows\SYSWOW64\dsuiext.dll
2012-07-18 08:16:38 ----A---- C:\Windows\SYSWOW64\dot3ui.dll
2012-07-18 08:16:38 ----A---- C:\Windows\SYSWOW64\dfrgui.exe
2012-07-18 08:16:38 ----A---- C:\Windows\system32\wvc.dll
2012-07-18 08:16:38 ----A---- C:\Windows\system32\wsqmcons.exe
2012-07-18 08:16:38 ----A---- C:\Windows\system32\wmdrmdev.dll
2012-07-18 08:16:38 ----A---- C:\Windows\system32\WerFaultSecure.exe
2012-07-18 08:16:38 ----A---- C:\Windows\system32\net1.exe
2012-07-18 08:16:38 ----A---- C:\Windows\system32\blackbox.dll
2012-07-18 08:16:37 ----A---- C:\Windows\SYSWOW64\twext.dll
2012-07-18 08:16:37 ----A---- C:\Windows\SYSWOW64\PkgMgr.exe
2012-07-18 08:16:37 ----A---- C:\Windows\SYSWOW64\mstask.dll
2012-07-18 08:16:37 ----A---- C:\Windows\SYSWOW64\AdmTmpl.dll
2012-07-18 08:16:37 ----A---- C:\Windows\system32\msyuv.dll
2012-07-18 08:16:37 ----A---- C:\Windows\system32\mfps.dll
2012-07-18 08:16:37 ----A---- C:\Windows\system32\mapistub.dll
2012-07-18 08:16:37 ----A---- C:\Windows\system32\mapi32.dll
2012-07-18 08:16:37 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2012-07-18 08:16:36 ----A---- C:\Windows\twain_32.dll
2012-07-18 08:16:36 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2012-07-18 08:16:36 ----A---- C:\Windows\SYSWOW64\setupugc.exe
2012-07-18 08:16:36 ----A---- C:\Windows\SYSWOW64\qcap.dll
2012-07-18 08:16:36 ----A---- C:\Windows\SYSWOW64\qasf.dll
2012-07-18 08:16:36 ----A---- C:\Windows\system32\WUDFPlatform.dll
2012-07-18 08:16:36 ----A---- C:\Windows\system32\unimdmat.dll
2012-07-18 08:16:36 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2012-07-18 08:16:36 ----A---- C:\Windows\system32\OpcServices.dll
2012-07-18 08:16:36 ----A---- C:\Windows\system32\msrle32.dll
2012-07-18 08:16:36 ----A---- C:\Windows\system32\iscsium.dll
2012-07-18 08:16:36 ----A---- C:\Windows\system32\Bubbles.scr
2012-07-18 08:16:35 ----A---- C:\Windows\SYSWOW64\uxlib.dll
2012-07-18 08:16:35 ----A---- C:\Windows\SYSWOW64\ssText3d.scr
2012-07-18 08:16:35 ----A---- C:\Windows\SYSWOW64\slwga.dll
2012-07-18 08:16:35 ----A---- C:\Windows\SYSWOW64\msvfw32.dll
2012-07-18 08:16:35 ----A---- C:\Windows\system32\tsbyuv.dll
2012-07-18 08:16:35 ----A---- C:\Windows\system32\seclogon.dll
2012-07-18 08:16:35 ----A---- C:\Windows\system32\Ribbons.scr
2012-07-18 08:16:35 ----A---- C:\Windows\system32\Mystify.scr
2012-07-18 08:16:35 ----A---- C:\Windows\system32\ifsutil.dll
2012-07-18 08:16:35 ----A---- C:\Windows\system32\drivers\umbus.sys
2012-07-18 08:16:35 ----A---- C:\Windows\system32\diskraid.exe
2012-07-18 08:16:34 ----A---- C:\Windows\SYSWOW64\WPDShServiceObj.dll
2012-07-18 08:16:34 ----A---- C:\Windows\SYSWOW64\wmdrmsdk.dll
2012-07-18 08:16:34 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2012-07-18 08:16:34 ----A---- C:\Windows\SYSWOW64\nslookup.exe
2012-07-18 08:16:34 ----A---- C:\Windows\SYSWOW64\mciavi32.dll
2012-07-18 08:16:34 ----A---- C:\Windows\SYSWOW64\DevicePairingFolder.dll
2012-07-18 08:16:34 ----A---- C:\Windows\SYSWOW64\clusapi.dll
2012-07-18 08:16:34 ----A---- C:\Windows\SYSWOW64\audiodev.dll
2012-07-18 08:16:34 ----A---- C:\Windows\system32\wmpshell.dll
2012-07-18 08:16:34 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeResults.exe
2012-07-18 08:16:34 ----A---- C:\Windows\system32\rdpencom.dll
2012-07-18 08:16:34 ----A---- C:\Windows\system32\perfmon.exe
2012-07-18 08:16:34 ----A---- C:\Windows\system32\muifontsetup.dll
2012-07-18 08:16:34 ----A---- C:\Windows\system32\d3d10level9.dll
2012-07-18 08:16:33 ----A---- C:\Windows\SYSWOW64\wimserv.exe
2012-07-18 08:16:33 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2012-07-18 08:16:33 ----A---- C:\Windows\SYSWOW64\rdpencom.dll
2012-07-18 08:16:33 ----A---- C:\Windows\SYSWOW64\msscp.dll
2012-07-18 08:16:33 ----A---- C:\Windows\SYSWOW64\diskraid.exe
2012-07-18 08:16:33 ----A---- C:\Windows\SYSWOW64\acppage.dll
2012-07-18 08:16:33 ----A---- C:\Windows\system32\umb.dll
2012-07-18 08:16:33 ----A---- C:\Windows\system32\tlscsp.dll
2012-07-18 08:16:33 ----A---- C:\Windows\system32\qasf.dll
2012-07-18 08:16:33 ----A---- C:\Windows\system32\netutils.dll
2012-07-18 08:16:33 ----A---- C:\Windows\system32\NAPCRYPT.DLL
2012-07-18 08:16:33 ----A---- C:\Windows\system32\dbghelp.dll
2012-07-18 08:16:33 ----A---- C:\Windows\system32\AzSqlExt.dll
2012-07-18 08:16:33 ----A---- C:\Windows\system32\ActionQueue.dll
2012-07-18 08:16:32 ----A---- C:\Windows\SYSWOW64\remotepg.dll
2012-07-18 08:16:32 ----A---- C:\Windows\SYSWOW64\raschap.dll
2012-07-18 08:16:32 ----A---- C:\Windows\SYSWOW64\QUTIL.DLL
2012-07-18 08:16:32 ----A---- C:\Windows\SYSWOW64\perfmon.exe
2012-07-18 08:16:32 ----A---- C:\Windows\SYSWOW64\NAPCRYPT.DLL
2012-07-18 08:16:32 ----A---- C:\Windows\SYSWOW64\input.dll
2012-07-18 08:16:32 ----A---- C:\Windows\SYSWOW64\drmmgrtn.dll
2012-07-18 08:16:32 ----A---- C:\Windows\system32\wpdwcn.dll
2012-07-18 08:16:32 ----A---- C:\Windows\system32\wiavideo.dll
2012-07-18 08:16:32 ----A---- C:\Windows\system32\syssetup.dll
2012-07-18 08:16:32 ----A---- C:\Windows\system32\runonce.exe
2012-07-18 08:16:32 ----A---- C:\Windows\system32\raschap.dll
2012-07-18 08:16:32 ----A---- C:\Windows\system32\FXSAPI.dll
2012-07-18 08:16:32 ----A---- C:\Windows\system32\browser.dll
2012-07-18 08:16:32 ----A---- C:\Windows\bfsvc.exe
2012-07-18 08:16:31 ----A---- C:\Windows\SYSWOW64\wmpdxm.dll
2012-07-18 08:16:31 ----A---- C:\Windows\SYSWOW64\vpnikeapi.dll
2012-07-18 08:16:31 ----A---- C:\Windows\SYSWOW64\UserAccountControlSettings.dll
2012-07-18 08:16:31 ----A---- C:\Windows\SYSWOW64\olepro32.dll
2012-07-18 08:16:31 ----A---- C:\Windows\SYSWOW64\ocsetapi.dll
2012-07-18 08:16:31 ----A---- C:\Windows\SYSWOW64\networkexplorer.dll
2012-07-18 08:16:31 ----A---- C:\Windows\system32\WMVSDECD.DLL
2012-07-18 08:16:31 ----A---- C:\Windows\system32\WMADMOD.DLL
2012-07-18 08:16:31 ----A---- C:\Windows\system32\vdsbas.dll
2012-07-18 08:16:31 ----A---- C:\Windows\system32\PrintIsolationProxy.dll
2012-07-18 08:16:31 ----A---- C:\Windows\system32\MdSched.exe
2012-07-18 08:16:30 ----A---- C:\Windows\SYSWOW64\wpdwcn.dll
2012-07-18 08:16:30 ----A---- C:\Windows\SYSWOW64\vdsbas.dll
2012-07-18 08:16:30 ----A---- C:\Windows\SYSWOW64\runonce.exe
2012-07-18 08:16:30 ----A---- C:\Windows\SYSWOW64\onexui.dll
2012-07-18 08:16:30 ----A---- C:\Windows\SYSWOW64\logagent.exe
2012-07-18 08:16:30 ----A---- C:\Windows\SYSWOW64\iTVData.dll
2012-07-18 08:16:30 ----A---- C:\Windows\SYSWOW64\dxdiagn.dll
2012-07-18 08:16:30 ----A---- C:\Windows\system32\nltest.exe
2012-07-18 08:16:30 ----A---- C:\Windows\system32\mstask.dll
2012-07-18 08:16:30 ----A---- C:\Windows\system32\Mcx2Svc.dll
2012-07-18 08:16:30 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2012-07-18 08:16:30 ----A---- C:\Windows\system32\drivers\rmcast.sys
2012-07-18 08:16:30 ----A---- C:\Windows\system32\bitsadmin.exe
2012-07-18 08:16:29 ----A---- C:\Windows\SYSWOW64\msvidc32.dll
2012-07-18 08:16:29 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2012-07-18 08:16:29 ----A---- C:\Windows\SYSWOW64\MFPlay.dll
2012-07-18 08:16:29 ----A---- C:\Windows\SYSWOW64\eapp3hst.dll
2012-07-18 08:16:29 ----A---- C:\Windows\system32\shacct.dll
2012-07-18 08:16:29 ----A---- C:\Windows\system32\QSVRMGMT.DLL
2012-07-18 08:16:29 ----A---- C:\Windows\system32\cscapi.dll
2012-07-18 08:16:28 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2012-07-18 08:16:28 ----A---- C:\Windows\SYSWOW64\wmpshell.dll
2012-07-18 08:16:28 ----A---- C:\Windows\SYSWOW64\wmdrmdev.dll
2012-07-18 08:16:28 ----A---- C:\Windows\SYSWOW64\unimdmat.dll
2012-07-18 08:16:28 ----A---- C:\Windows\SYSWOW64\shacct.dll
2012-07-18 08:16:28 ----A---- C:\Windows\SYSWOW64\lsmproxy.dll
2012-07-18 08:16:28 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2012-07-18 08:16:28 ----A---- C:\Windows\SYSWOW64\bitsadmin.exe
2012-07-18 08:16:28 ----A---- C:\Windows\system32\WPDSp.dll
2012-07-18 08:16:28 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2012-07-18 08:16:28 ----A---- C:\Windows\system32\wmdrmnet.dll
2012-07-18 08:16:28 ----A---- C:\Windows\system32\vss_ps.dll
2012-07-18 08:16:28 ----A---- C:\Windows\system32\tabcal.exe
2012-07-18 08:16:28 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2012-07-18 08:16:28 ----A---- C:\Windows\system32\qcap.dll
2012-07-18 08:16:28 ----A---- C:\Windows\system32\msnetobj.dll
2012-07-18 08:16:28 ----A---- C:\Windows\system32\logman.exe
2012-07-18 08:16:28 ----A---- C:\Windows\system32\CscMig.dll
2012-07-18 08:16:27 ----A---- C:\Windows\SYSWOW64\WPDSp.dll
2012-07-18 08:16:27 ----A---- C:\Windows\SYSWOW64\srvcli.dll
2012-07-18 08:16:27 ----A---- C:\Windows\SYSWOW64\sqlcese30.dll
2012-07-18 08:16:27 ----A---- C:\Windows\SYSWOW64\rdpd3d.dll
2012-07-18 08:16:27 ----A---- C:\Windows\SYSWOW64\PortableDeviceSyncProvider.dll
2012-07-18 08:16:27 ----A---- C:\Windows\SYSWOW64\pdh.dll
2012-07-18 08:16:27 ----A---- C:\Windows\SYSWOW64\OpcServices.dll
2012-07-18 08:16:27 ----A---- C:\Windows\SYSWOW64\ncryptui.dll
2012-07-18 08:16:27 ----A---- C:\Windows\SYSWOW64\mprapi.dll
2012-07-18 08:16:27 ----A---- C:\Windows\SYSWOW64\logman.exe
2012-07-18 08:16:27 ----A---- C:\Windows\SYSWOW64\iscsium.dll
2012-07-18 08:16:27 ----A---- C:\Windows\SYSWOW64\cscapi.dll
2012-07-18 08:16:27 ----A---- C:\Windows\SYSWOW64\Bubbles.scr
2012-07-18 08:16:27 ----A---- C:\Windows\system32\vmictimeprovider.dll
2012-07-18 08:16:27 ----A---- C:\Windows\system32\spbcd.dll
2012-07-18 08:16:27 ----A---- C:\Windows\system32\secproc_ssp.dll
2012-07-18 08:16:27 ----A---- C:\Windows\system32\qdv.dll
2012-07-18 08:16:27 ----A---- C:\Windows\system32\PortableDeviceSyncProvider.dll
2012-07-18 08:16:27 ----A---- C:\Windows\system32\PortableDeviceStatus.dll
2012-07-18 08:16:26 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2012-07-18 08:16:26 ----A---- C:\Windows\SYSWOW64\WMADMOD.DLL
2012-07-18 08:16:26 ----A---- C:\Windows\SYSWOW64\utildll.dll
2012-07-18 08:16:26 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2012-07-18 08:16:26 ----A---- C:\Windows\SYSWOW64\Ribbons.scr
2012-07-18 08:16:26 ----A---- C:\Windows\SYSWOW64\QSVRMGMT.DLL
2012-07-18 08:16:26 ----A---- C:\Windows\SYSWOW64\PortableDeviceStatus.dll
2012-07-18 08:16:26 ----A---- C:\Windows\SYSWOW64\olethk32.dll
2012-07-18 08:16:26 ----A---- C:\Windows\SYSWOW64\Mystify.scr
2012-07-18 08:16:26 ----A---- C:\Windows\SYSWOW64\mapistub.dll
2012-07-18 08:16:26 ----A---- C:\Windows\SYSWOW64\mapi32.dll
2012-07-18 08:16:26 ----A---- C:\Windows\SYSWOW64\avifil32.dll
2012-07-18 08:16:26 ----A---- C:\Windows\system32\WMPhoto.dll
2012-07-18 08:16:26 ----A---- C:\Windows\system32\takeown.exe
2012-07-18 08:16:26 ----A---- C:\Windows\system32\PnPUnattend.exe
2012-07-18 08:16:26 ----A---- C:\Windows\system32\fphc.dll
2012-07-18 08:16:26 ----A---- C:\Windows\system32\drivers\ndisuio.sys
2012-07-18 08:16:26 ----A---- C:\Windows\system32\dot3ui.dll
2012-07-18 08:16:26 ----A---- C:\Windows\system32\amstream.dll
2012-07-18 08:16:25 ----A---- C:\Windows\SYSWOW64\WMVSDECD.DLL
2012-07-18 08:16:25 ----A---- C:\Windows\SYSWOW64\wmdrmnet.dll
2012-07-18 08:16:25 ----A---- C:\Windows\SYSWOW64\wiavideo.dll
2012-07-18 08:16:25 ----A---- C:\Windows\SYSWOW64\takeown.exe
2012-07-18 08:16:25 ----A---- C:\Windows\SYSWOW64\iyuv_32.dll
2012-07-18 08:16:25 ----A---- C:\Windows\SYSWOW64\fphc.dll
2012-07-18 08:16:25 ----A---- C:\Windows\SYSWOW64\dot3msm.dll
2012-07-18 08:16:25 ----A---- C:\Windows\system32\vfwwdm32.dll
2012-07-18 08:16:25 ----A---- C:\Windows\system32\shimgvw.dll
2012-07-18 08:16:25 ----A---- C:\Windows\system32\netapi32.dll
2012-07-18 08:16:25 ----A---- C:\Windows\system32\HotStartUserAgent.dll
2012-07-18 08:16:25 ----A---- C:\Windows\system32\EhStorAPI.dll
2012-07-18 08:16:24 ----A---- C:\Windows\SYSWOW64\sppinst.dll
2012-07-18 08:16:24 ----A---- C:\Windows\SYSWOW64\qdv.dll
2012-07-18 08:16:24 ----A---- C:\Windows\SYSWOW64\QCLIPROV.DLL
2012-07-18 08:16:24 ----A---- C:\Windows\SYSWOW64\msyuv.dll
2012-07-18 08:16:24 ----A---- C:\Windows\SYSWOW64\msrle32.dll
2012-07-18 08:16:24 ----A---- C:\Windows\SYSWOW64\msnetobj.dll
2012-07-18 08:16:24 ----A---- C:\Windows\SYSWOW64\EhStorAPI.dll
2012-07-18 08:16:24 ----A---- C:\Windows\SYSWOW64\cmstp.exe
2012-07-18 08:16:24 ----A---- C:\Windows\SYSWOW64\cca.dll
2012-07-18 08:16:24 ----A---- C:\Windows\system32\WUDFx.dll
2012-07-18 08:16:24 ----A---- C:\Windows\system32\WUDFHost.exe
2012-07-18 08:16:24 ----A---- C:\Windows\system32\WavDest.dll
2012-07-18 08:16:24 ----A---- C:\Windows\system32\QCLIPROV.DLL
2012-07-18 08:16:24 ----A---- C:\Windows\system32\nrpsrv.dll
2012-07-18 08:16:24 ----A---- C:\Windows\system32\iasrecst.dll
2012-07-18 08:16:24 ----A---- C:\Windows\system32\fdProxy.dll
2012-07-18 08:16:24 ----A---- C:\Windows\system32\djoin.exe
2012-07-18 08:16:24 ----A---- C:\Windows\system32\cmstp.exe
2012-07-18 08:16:24 ----A---- C:\Windows\system32\CertPolEng.dll
2012-07-18 08:16:23 ----A---- C:\Windows\SYSWOW64\wsnmp32.dll
2012-07-18 08:16:23 ----A---- C:\Windows\SYSWOW64\WMSPDMOD.DLL
2012-07-18 08:16:23 ----A---- C:\Windows\SYSWOW64\vfwwdm32.dll
2012-07-18 08:16:23 ----A---- C:\Windows\SYSWOW64\tsbyuv.dll
2012-07-18 08:16:23 ----A---- C:\Windows\SYSWOW64\setupcln.dll
2012-07-18 08:16:23 ----A---- C:\Windows\SYSWOW64\relog.exe
2012-07-18 08:16:23 ----A---- C:\Windows\SYSWOW64\pdhui.dll
2012-07-18 08:16:23 ----A---- C:\Windows\SYSWOW64\netiougc.exe
2012-07-18 08:16:23 ----A---- C:\Windows\SYSWOW64\MuiUnattend.exe
2012-07-18 08:16:23 ----A---- C:\Windows\SYSWOW64\msorcl32.dll
2012-07-18 08:16:23 ----A---- C:\Windows\SYSWOW64\iscsicli.exe
2012-07-18 08:16:23 ----A---- C:\Windows\SYSWOW64\iasrecst.dll
2012-07-18 08:16:23 ----A---- C:\Windows\SYSWOW64\AzSqlExt.dll
2012-07-18 08:16:23 ----A---- C:\Windows\system32\sscore.dll
2012-07-18 08:16:23 ----A---- C:\Windows\system32\relog.exe
2012-07-18 08:16:23 ----A---- C:\Windows\system32\mydocs.dll
2012-07-18 08:16:23 ----A---- C:\Windows\system32\MultiDigiMon.exe
2012-07-18 08:16:23 ----A---- C:\Windows\system32\mobsync.exe
2012-07-18 08:16:23 ----A---- C:\Windows\system32\KMSVC.DLL
2012-07-18 08:16:23 ----A---- C:\Windows\system32\iscsicli.exe
2012-07-18 08:16:23 ----A---- C:\Windows\system32\drivers\pacer.sys
2012-07-18 08:16:23 ----A---- C:\Windows\system32\diskpart.exe
2012-07-18 08:16:23 ----A---- C:\Windows\system32\BWUnpairElevated.dll
2012-07-18 08:16:22 ----A---- C:\Windows\SYSWOW64\wkscli.dll
2012-07-18 08:16:22 ----A---- C:\Windows\SYSWOW64\syssetup.dll
2012-07-18 08:16:22 ----A---- C:\Windows\SYSWOW64\spbcd.dll
2012-07-18 08:16:22 ----A---- C:\Windows\SYSWOW64\secproc_ssp_isv.dll
2012-07-18 08:16:22 ----A---- C:\Windows\SYSWOW64\secproc_ssp.dll
2012-07-18 08:16:22 ----A---- C:\Windows\SYSWOW64\resutils.dll
2012-07-18 08:16:22 ----A---- C:\Windows\SYSWOW64\rastapi.dll
2012-07-18 08:16:22 ----A---- C:\Windows\SYSWOW64\netbtugc.exe
2012-07-18 08:16:22 ----A---- C:\Windows\SYSWOW64\mydocs.dll
2012-07-18 08:16:22 ----A---- C:\Windows\SYSWOW64\itircl.dll
2012-07-18 08:16:22 ----A---- C:\Windows\SYSWOW64\diskpart.exe
2012-07-18 08:16:22 ----A---- C:\Windows\SYSWOW64\CertPolEng.dll
2012-07-18 08:16:22 ----A---- C:\Windows\SYSWOW64\amstream.dll
2012-07-18 08:16:22 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2012-07-18 08:16:22 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2012-07-18 08:16:22 ----A---- C:\Windows\system32\msdmo.dll
2012-07-18 08:16:22 ----A---- C:\Windows\system32\itircl.dll
2012-07-18 08:16:22 ----A---- C:\Windows\system32\FXSTIFF.dll
2012-07-18 08:16:22 ----A---- C:\Windows\system32\dot3msm.dll
2012-07-18 08:16:22 ----A---- C:\Windows\system32\browcli.dll
2012-07-18 08:16:21 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2012-07-18 08:16:21 ----A---- C:\Windows\SYSWOW64\wmpps.dll
2012-07-18 08:16:21 ----A---- C:\Windows\SYSWOW64\WerFaultSecure.exe
2012-07-18 08:16:21 ----A---- C:\Windows\SYSWOW64\tlscsp.dll
2012-07-18 08:16:21 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp_isv.exe
2012-07-18 08:16:21 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp.exe
2012-07-18 08:16:21 ----A---- C:\Windows\SYSWOW64\ReAgentc.exe
2012-07-18 08:16:21 ----A---- C:\Windows\SYSWOW64\netutils.dll
2012-07-18 08:16:21 ----A---- C:\Windows\SYSWOW64\netapi32.dll
2012-07-18 08:16:21 ----A---- C:\Windows\SYSWOW64\mobsync.exe
2012-07-18 08:16:21 ----A---- C:\Windows\SYSWOW64\mciqtz32.dll
2012-07-18 08:16:21 ----A---- C:\Windows\SYSWOW64\findstr.exe
2012-07-18 08:16:21 ----A---- C:\Windows\SYSWOW64\eappgnui.dll
2012-07-18 08:16:21 ----A---- C:\Windows\system32\sppc.dll
2012-07-18 08:16:21 ----A---- C:\Windows\system32\schedcli.dll
2012-07-18 08:16:21 ----A---- C:\Windows\system32\qprocess.exe
2012-07-18 08:16:21 ----A---- C:\Windows\system32\onexui.dll
2012-07-18 08:16:21 ----A---- C:\Windows\system32\mciqtz32.dll
2012-07-18 08:16:21 ----A---- C:\Windows\system32\luainstall.dll
2012-07-18 08:16:21 ----A---- C:\Windows\system32\choice.exe
2012-07-18 08:16:21 ----A---- C:\Windows\system32\chglogon.exe
2012-07-18 08:16:21 ----A---- C:\Windows\system32\findstr.exe
2012-07-18 08:16:21 ----A---- C:\Windows\system32\eappgnui.dll
2012-07-18 08:16:21 ----A---- C:\Windows\system32\drivers\tunnel.sys
2012-07-18 08:16:21 ----A---- C:\Windows\system32\drivers\dfsc.sys
2012-07-18 08:16:20 ----A---- C:\Windows\SYSWOW64\unlodctr.exe
2012-07-18 08:16:20 ----A---- C:\Windows\SYSWOW64\sppc.dll
2012-07-18 08:16:20 ----A---- C:\Windows\SYSWOW64\spopk.dll
2012-07-18 08:16:20 ----A---- C:\Windows\SYSWOW64\shimgvw.dll
2012-07-18 08:16:20 ----A---- C:\Windows\SYSWOW64\rdprefdrvapi.dll
2012-07-18 08:16:20 ----A---- C:\Windows\SYSWOW64\muifontsetup.dll
2012-07-18 08:16:20 ----A---- C:\Windows\SYSWOW64\msdmo.dll
2012-07-18 08:16:20 ----A---- C:\Windows\SYSWOW64\luainstall.dll
2012-07-18 08:16:20 ----A---- C:\Windows\SYSWOW64\inetmib1.dll
2012-07-18 08:16:20 ----A---- C:\Windows\SYSWOW64\iccvid.dll
2012-07-18 08:16:20 ----A---- C:\Windows\SYSWOW64\cabinet.dll
2012-07-18 08:16:20 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2012-07-18 08:16:20 ----A---- C:\Windows\system32\wdiasqmmodule.dll
2012-07-18 08:16:20 ----A---- C:\Windows\system32\vmstorfltres.dll
2012-07-18 08:16:20 ----A---- C:\Windows\system32\vmicres.dll
2012-07-18 08:16:20 ----A---- C:\Windows\system32\tskill.exe
2012-07-18 08:16:20 ----A---- C:\Windows\system32\tsdiscon.exe
2012-07-18 08:16:20 ----A---- C:\Windows\system32\tscon.exe
2012-07-18 08:16:20 ----A---- C:\Windows\system32\spopk.dll
2012-07-18 08:16:20 ----A---- C:\Windows\system32\rwinsta.exe
2012-07-18 08:16:20 ----A---- C:\Windows\system32\repair-bde.exe
2012-07-18 08:16:20 ----A---- C:\Windows\system32\RDPENCDD.dll
2012-07-18 08:16:20 ----A---- C:\Windows\system32\qappsrv.exe
2012-07-18 08:16:20 ----A---- C:\Windows\system32\odbcconf.dll
2012-07-18 08:16:20 ----A---- C:\Windows\system32\manage-bde.exe
2012-07-18 08:16:20 ----A---- C:\Windows\system32\logoff.exe
2012-07-18 08:16:20 ----A---- C:\Windows\system32\inetmib1.dll
2012-07-18 08:16:20 ----A---- C:\Windows\system32\chgusr.exe
2012-07-18 08:16:20 ----A---- C:\Windows\system32\chgport.exe
2012-07-18 08:16:20 ----A---- C:\Windows\system32\fixmapi.exe
2012-07-18 08:16:19 ----A---- C:\Windows\SYSWOW64\wups.dll
2012-07-18 08:16:19 ----A---- C:\Windows\SYSWOW64\UIRibbonRes.dll
2012-07-18 08:16:19 ----A---- C:\Windows\SYSWOW64\odbcconf.dll
2012-07-18 08:16:19 ----A---- C:\Windows\SYSWOW64\browcli.dll
2012-07-18 08:16:19 ----A---- C:\Windows\system32\wshbth.dll
2012-07-18 08:16:19 ----A---- C:\Windows\system32\vmbusres.dll
2012-07-18 08:16:19 ----A---- C:\Windows\system32\UIRibbonRes.dll
2012-07-18 08:16:19 ----A---- C:\Windows\system32\TRAPI.dll
2012-07-18 08:16:19 ----A---- C:\Windows\system32\shadow.exe
2012-07-18 08:16:19 ----A---- C:\Windows\system32\FXSMON.dll
2012-07-18 08:16:19 ----A---- C:\Windows\system32\elsTrans.dll
2012-07-18 08:16:19 ----A---- C:\Windows\system32\drivers\tdi.sys
2012-07-18 08:16:18 ----A---- C:\Windows\SYSWOW64\perfts.dll
2012-07-18 08:16:18 ----A---- C:\Windows\SYSWOW64\imm32.dll
2012-07-18 08:16:18 ----A---- C:\Windows\system32\LogonUI.exe
2012-07-18 08:16:16 ----A---- C:\Windows\system32\reset.exe
2012-07-18 08:16:16 ----A---- C:\Windows\system32\rdprefdrvapi.dll
2012-07-18 08:16:16 ----A---- C:\Windows\system32\query.exe
2012-07-18 08:16:16 ----A---- C:\Windows\system32\napdsnap.dll
2012-07-18 08:16:16 ----A---- C:\Windows\system32\change.exe
2012-07-18 08:16:16 ----A---- C:\Windows\system32\dsauth.dll
2012-07-18 08:16:15 ----A---- C:\Windows\SYSWOW64\wshbth.dll
2012-07-18 08:16:15 ----A---- C:\Windows\SYSWOW64\TRAPI.dll
2012-07-18 08:16:15 ----A---- C:\Windows\SYSWOW64\schedcli.dll
2012-07-18 08:16:15 ----A---- C:\Windows\SYSWOW64\napdsnap.dll
2012-07-18 08:16:15 ----A---- C:\Windows\SYSWOW64\elsTrans.dll
2012-07-18 08:16:15 ----A---- C:\Windows\SYSWOW64\dsauth.dll
2012-07-18 08:16:15 ----A---- C:\Windows\SYSWOW64\cscdll.dll
2012-07-18 08:16:15 ----A---- C:\Windows\SYSWOW64\bitsperf.dll
2012-07-18 08:16:15 ----A---- C:\Windows\system32\FXSUNATD.exe
2012-07-18 08:16:15 ----A---- C:\Windows\system32\drivers\usbrpm.sys
2012-07-18 08:16:15 ----A---- C:\Windows\system32\drivers\acpipmi.sys
2012-07-18 08:16:15 ----A---- C:\Windows\system32\cscdll.dll
2012-07-18 08:16:15 ----A---- C:\Windows\system32\bitsperf.dll
2012-07-18 08:16:14 ----A---- C:\Windows\SYSWOW64\sscore.dll
2012-07-18 08:16:14 ----A---- C:\Windows\system32\wsdchngr.dll
2012-07-18 08:16:14 ----A---- C:\Windows\system32\shgina.dll
2012-07-18 08:16:13 ----A---- C:\Windows\SYSWOW64\wsdchngr.dll
2012-07-18 08:16:13 ----A---- C:\Windows\SYSWOW64\shgina.dll
2012-07-18 08:16:13 ----A---- C:\Windows\SYSWOW64\riched32.dll
2012-07-18 08:16:13 ----A---- C:\Windows\system32\wshirda.dll
2012-07-18 08:16:13 ----A---- C:\Windows\system32\drivers\USBCAMD2.sys
2012-07-18 08:16:13 ----A---- C:\Windows\system32\drivers\CompositeBus.sys
2012-07-18 08:16:12 ----A---- C:\Windows\SYSWOW64\wshirda.dll
2012-07-18 08:16:12 ----A---- C:\Windows\system32\riched32.dll
2012-07-18 08:16:12 ----A---- C:\Windows\system32\rdpcfgex.dll
2012-07-18 08:16:12 ----A---- C:\Windows\system32\drivers\kbdhid.sys
2012-07-18 08:16:12 ----A---- C:\Windows\system32\drivers\hidusb.sys
2012-07-18 08:16:12 ----A---- C:\Windows\system32\drivers\appid.sys
2012-07-18 08:16:11 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2012-07-18 08:16:11 ----A---- C:\Windows\SYSWOW64\browseui.dll
2012-07-18 08:16:11 ----A---- C:\Windows\system32\VmdCoinstall.dll
2012-07-18 08:16:11 ----A---- C:\Windows\system32\vmbuspipe.dll
2012-07-18 08:16:11 ----A---- C:\Windows\system32\VmbusCoinstaller.dll
2012-07-18 08:16:11 ----A---- C:\Windows\system32\spwmp.dll
2012-07-18 08:16:11 ----A---- C:\Windows\system32\IcCoinstall.dll
2012-07-18 08:16:11 ----A---- C:\Windows\system32\drivers\IPMIDrv.sys
2012-07-18 08:16:11 ----A---- C:\Windows\system32\C_ISCII.DLL
2012-07-18 08:16:11 ----A---- C:\Windows\system32\browseui.dll
2012-07-18 08:16:10 ----AH---- C:\Windows\system32\api-ms-win-core-ums-l1-1-0.dll
2012-07-18 08:16:10 ----A---- C:\Windows\SYSWOW64\shunimpl.dll
2012-07-18 08:16:10 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2012-07-18 08:16:10 ----A---- C:\Windows\SYSWOW64\C_ISCII.DLL
2012-07-18 08:16:10 ----A---- C:\Windows\system32\shunimpl.dll
2012-07-18 08:16:10 ----A---- C:\Windows\system32\dxmasf.dll
2012-07-18 08:16:10 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2012-07-18 08:16:10 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2012-07-18 08:16:10 ----A---- C:\Windows\system32\drivers\sffp_sd.sys
2012-07-18 08:16:10 ----A---- C:\Windows\system32\drivers\scfilter.sys
2012-07-18 08:16:10 ----A---- C:\Windows\system32\drivers\HdAudio.sys
2012-07-18 08:16:10 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2012-07-18 08:16:10 ----A---- C:\Windows\system32\drivers\cdrom.sys
2012-07-18 08:16:09 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2012-07-18 08:16:09 ----A---- C:\Windows\SYSWOW64\KBDTUQ.DLL
2012-07-18 08:16:09 ----A---- C:\Windows\SYSWOW64\KBDTUF.DLL
2012-07-18 08:16:09 ----A---- C:\Windows\SYSWOW64\KBDSG.DLL
2012-07-18 08:16:09 ----A---- C:\Windows\SYSWOW64\kbdlk41a.dll
2012-07-18 08:16:09 ----A---- C:\Windows\SYSWOW64\KBDGR1.DLL
2012-07-18 08:16:09 ----A---- C:\Windows\SYSWOW64\KBDGKL.DLL
2012-07-18 08:16:09 ----A---- C:\Windows\system32\wmploc.DLL
2012-07-18 08:16:09 ----A---- C:\Windows\system32\KBDTUQ.DLL
2012-07-18 08:16:09 ----A---- C:\Windows\system32\KBDTUF.DLL
2012-07-18 08:16:09 ----A---- C:\Windows\system32\KBDSG.DLL
2012-07-18 08:16:09 ----A---- C:\Windows\system32\KBDSF.DLL
2012-07-18 08:16:09 ----A---- C:\Windows\system32\KBDPO.DLL
2012-07-18 08:16:09 ----A---- C:\Windows\system32\KBDNEPR.DLL
2012-07-18 08:16:09 ----A---- C:\Windows\system32\kbdlk41a.dll
2012-07-18 08:16:09 ----A---- C:\Windows\system32\KBDINTAM.DLL
2012-07-18 08:16:09 ----A---- C:\Windows\system32\KBDINBEN.DLL
2012-07-18 08:16:09 ----A---- C:\Windows\system32\KBDGR1.DLL
2012-07-18 08:16:09 ----A---- C:\Windows\system32\KBDGKL.DLL
2012-07-18 08:16:08 ----A---- C:\Windows\SYSWOW64\spwizres.dll
2012-07-18 08:16:08 ----A---- C:\Windows\SYSWOW64\pifmgr.dll
2012-07-18 08:16:08 ----A---- C:\Windows\SYSWOW64\nlsbres.dll
2012-07-18 08:16:08 ----A---- C:\Windows\SYSWOW64\KBDUS.DLL
2012-07-18 08:16:08 ----A---- C:\Windows\SYSWOW64\KBDUGHR1.DLL
2012-07-18 08:16:08 ----A---- C:\Windows\SYSWOW64\KBDTURME.DLL
2012-07-18 08:16:08 ----A---- C:\Windows\SYSWOW64\KBDTAJIK.DLL
2012-07-18 08:16:08 ----A---- C:\Windows\SYSWOW64\KBDSF.DLL
2012-07-18 08:16:08 ----A---- C:\Windows\SYSWOW64\KBDPO.DLL
2012-07-18 08:16:08 ----A---- C:\Windows\SYSWOW64\KBDNEPR.DLL
2012-07-18 08:16:08 ----A---- C:\Windows\SYSWOW64\KBDMON.DLL
2012-07-18 08:16:08 ----A---- C:\Windows\SYSWOW64\KBDMAORI.DLL
2012-07-18 08:16:08 ----A---- C:\Windows\SYSWOW64\KBDLT1.DLL
2012-07-18 08:16:08 ----A---- C:\Windows\SYSWOW64\KBDINTEL.DLL
2012-07-18 08:16:08 ----A---- C:\Windows\SYSWOW64\KBDINTAM.DLL
2012-07-18 08:16:08 ----A---- C:\Windows\SYSWOW64\KBDINORI.DLL
2012-07-18 08:16:08 ----A---- C:\Windows\SYSWOW64\KBDINMAR.DLL
2012-07-18 08:16:08 ----A---- C:\Windows\SYSWOW64\KBDINKAN.DLL
2012-07-18 08:16:08 ----A---- C:\Windows\SYSWOW64\KBDINHIN.DLL
2012-07-18 08:16:08 ----A---- C:\Windows\SYSWOW64\KBDINBEN.DLL
2012-07-18 08:16:08 ----A---- C:\Windows\SYSWOW64\KBDGEO.DLL
2012-07-18 08:16:08 ----A---- C:\Windows\SYSWOW64\KBDCZ1.DLL
2012-07-18 08:16:08 ----A---- C:\Windows\SYSWOW64\KBDBULG.DLL
2012-07-18 08:16:08 ----A---- C:\Windows\SYSWOW64\KBDBLR.DLL
2012-07-18 08:16:08 ----A---- C:\Windows\SYSWOW64\KBDBASH.DLL
2012-07-18 08:16:08 ----A---- C:\Windows\SYSWOW64\dpnaddr.dll
2012-07-18 08:16:08 ----A---- C:\Windows\system32\spwizres.dll
2012-07-18 08:16:08 ----A---- C:\Windows\system32\pifmgr.dll
2012-07-18 08:16:08 ----A---- C:\Windows\system32\nlsbres.dll
2012-07-18 08:16:08 ----A---- C:\Windows\system32\KBDUS.DLL
2012-07-18 08:16:08 ----A---- C:\Windows\system32\KBDUGHR1.DLL
2012-07-18 08:16:08 ----A---- C:\Windows\system32\KBDTURME.DLL
2012-07-18 08:16:08 ----A---- C:\Windows\system32\KBDTAJIK.DLL
2012-07-18 08:16:08 ----A---- C:\Windows\system32\KBDMON.DLL
2012-07-18 08:16:08 ----A---- C:\Windows\system32\KBDMAORI.DLL
2012-07-18 08:16:08 ----A---- C:\Windows\system32\KBDLT1.DLL
2012-07-18 08:16:08 ----A---- C:\Windows\system32\KBDINTEL.DLL
2012-07-18 08:16:08 ----A---- C:\Windows\system32\KBDINORI.DLL
2012-07-18 08:16:08 ----A---- C:\Windows\system32\KBDINMAR.DLL
2012-07-18 08:16:08 ----A---- C:\Windows\system32\KBDINKAN.DLL
2012-07-18 08:16:08 ----A---- C:\Windows\system32\KBDINHIN.DLL
2012-07-18 08:16:08 ----A---- C:\Windows\system32\KBDGEO.DLL
2012-07-18 08:16:08 ----A---- C:\Windows\system32\KBDCZ1.DLL
2012-07-18 08:16:08 ----A---- C:\Windows\system32\KBDBULG.DLL
2012-07-18 08:16:08 ----A---- C:\Windows\system32\KBDBLR.DLL
2012-07-18 08:16:08 ----A---- C:\Windows\system32\KBDBASH.DLL
2012-07-18 08:16:08 ----A---- C:\Windows\system32\drivers\vms3cap.sys
2012-07-18 08:16:08 ----A---- C:\Windows\system32\dpnaddr.dll
2012-07-18 08:16:07 ----A---- C:\Windows\system32\drivers\VMBusHID.sys
2012-07-18 08:16:07 ----A---- C:\Windows\system32\BlbEvents.dll
2012-07-18 08:16:00 ----A---- C:\Windows\SYSWOW64\wdscore.dll
2012-07-18 08:16:00 ----A---- C:\Windows\system32\dpx.dll
2012-07-18 08:15:51 ----A---- C:\Windows\SYSWOW64\sqmapi.dll
2012-07-18 08:15:50 ----A---- C:\Windows\SYSWOW64\printmanagement.msc
2012-07-18 08:15:46 ----A---- C:\Windows\SYSWOW64\wbemcomn.dll
2012-07-18 08:15:15 ----A---- C:\Windows\system32\wbemcomn.dll
2012-07-18 08:15:13 ----A---- C:\Windows\system32\sqmapi.dll
2012-07-18 08:13:41 ----A---- C:\Windows\system32\esent.dll
2012-07-18 08:13:41 ----A---- C:\Windows\system32\drivers\ntfs.sys
2012-07-18 08:13:40 ----A---- C:\Windows\SYSWOW64\esent.dll
2012-07-18 08:13:40 ----A---- C:\Windows\system32\drivers\nvstor.sys
2012-07-18 08:13:40 ----A---- C:\Windows\system32\drivers\nvraid.sys
2012-07-18 08:13:40 ----A---- C:\Windows\system32\drivers\amdsata.sys
2012-07-18 08:13:39 ----A---- C:\Windows\system32\fsutil.exe
2012-07-18 08:13:39 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2012-07-18 08:13:39 ----A---- C:\Windows\system32\drivers\storport.sys
2012-07-18 08:13:39 ----A---- C:\Windows\system32\drivers\iaStorV.sys
2012-07-18 08:13:39 ----A---- C:\Windows\system32\drivers\amdxata.sys
2012-07-18 08:13:38 ----A---- C:\Windows\SYSWOW64\fsutil.exe
2012-07-18 07:58:47 ----A---- C:\Windows\system32\drivers\usbport.sys
2012-07-18 07:58:47 ----A---- C:\Windows\system32\drivers\usbhub.sys
2012-07-18 07:58:47 ----A---- C:\Windows\system32\drivers\usbehci.sys
2012-07-18 07:58:46 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2012-07-18 07:58:46 ----A---- C:\Windows\system32\drivers\usbohci.sys
2012-07-18 07:58:46 ----A---- C:\Windows\system32\drivers\usbd.sys
2012-07-18 07:58:46 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2012-07-18 07:48:33 ----D---- C:\Windows\pss
2012-07-17 19:24:24 ----D---- C:\Windows\Sun
2012-07-17 18:41:29 ----D---- C:\Program Files (x86)\FIFA 12
2012-07-17 17:52:15 ----D---- C:\Program Files\trend micro
2012-07-17 17:50:44 ----D---- C:\Program Files (x86)\trend micro
2012-07-17 17:04:13 ----D---- C:\Program Files (x86)\uTorrent
2012-07-17 17:03:31 ----D---- C:\Users\Roman\AppData\Roaming\uTorrent
2012-07-17 16:25:56 ----D---- C:\Program Files (x86)\Microsoft Works
2012-07-17 16:25:39 ----D---- C:\Program Files (x86)\Microsoft Visual Studio
2012-07-17 16:25:19 ----D---- C:\Windows\PCHEALTH
2012-07-17 16:23:37 ----D---- C:\Program Files\Microsoft Office
2012-07-17 16:23:32 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2012-07-17 16:22:42 ----D---- C:\Program Files (x86)\Microsoft Office
2012-07-17 16:22:41 ----D---- C:\ProgramData\Microsoft Help
2012-07-17 16:22:05 ----RHD---- C:\MSOCache
2012-07-17 15:51:59 ----D---- C:\Program Files (x86)\foobar2000
2012-07-17 15:40:24 ----D---- C:\Users\Roman\AppData\Roaming\foobar2000
2012-07-17 15:35:49 ----D---- C:\ProgramData\boost_interprocess
2012-07-17 15:30:04 ----D---- C:\ProgramData\FLEXnet
2012-07-17 15:25:40 ----D---- C:\Program Files\Common Files\Macrovision Shared
2012-07-17 15:24:15 ----D---- C:\Program Files\Common Files\Autodesk Shared
2012-07-17 15:24:15 ----D---- C:\Program Files\Autodesk
2012-07-17 15:23:39 ----D---- C:\Program Files (x86)\Autodesk
2012-07-17 15:22:10 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2012-07-17 15:22:10 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2012-07-17 15:22:10 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
2012-07-17 15:22:10 ----A---- C:\Windows\system32\XAudio2_7.dll
2012-07-17 15:22:10 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2012-07-17 15:22:10 ----A---- C:\Windows\system32\xactengine3_7.dll
2012-07-17 15:22:09 ----A---- C:\Windows\SYSWOW64\D3DCompiler_43.dll
2012-07-17 15:22:09 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2012-07-17 15:22:08 ----A---- C:\Windows\SYSWOW64\d3dcsx_43.dll
2012-07-17 15:22:08 ----A---- C:\Windows\system32\d3dcsx_43.dll
2012-07-17 15:22:07 ----A---- C:\Windows\SYSWOW64\d3dx11_43.dll
2012-07-17 15:22:07 ----A---- C:\Windows\SYSWOW64\d3dx10_43.dll
2012-07-17 15:22:07 ----A---- C:\Windows\system32\d3dx11_43.dll
2012-07-17 15:22:07 ----A---- C:\Windows\system32\d3dx10_43.dll
2012-07-17 15:22:06 ----A---- C:\Windows\SYSWOW64\D3DX9_43.dll
2012-07-17 15:22:06 ----A---- C:\Windows\system32\D3DX9_43.dll
2012-07-17 15:22:05 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2012-07-17 15:22:05 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2012-07-17 15:22:05 ----A---- C:\Windows\system32\XAudio2_6.dll
2012-07-17 15:22:05 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2012-07-17 15:22:04 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2012-07-17 15:22:04 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2012-07-17 15:22:04 ----A---- C:\Windows\system32\xactengine3_6.dll
2012-07-17 15:22:04 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2012-07-17 15:22:03 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2012-07-17 15:22:03 ----A---- C:\Windows\system32\XAudio2_5.dll
2012-07-17 15:22:02 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2012-07-17 15:22:02 ----A---- C:\Windows\system32\xactengine3_5.dll
2012-07-17 15:22:01 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2012-07-17 15:22:01 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2012-07-17 15:21:58 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2012-07-17 15:21:58 ----A---- C:\Windows\system32\d3dcsx_42.dll
2012-07-17 15:21:57 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2012-07-17 15:21:57 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2012-07-17 15:21:57 ----A---- C:\Windows\system32\d3dx11_42.dll
2012-07-17 15:21:57 ----A---- C:\Windows\system32\d3dx10_42.dll
2012-07-17 15:21:56 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2012-07-17 15:21:56 ----A---- C:\Windows\system32\D3DX9_42.dll
2012-07-17 15:21:55 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2012-07-17 15:21:55 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2012-07-17 15:21:55 ----A---- C:\Windows\system32\d3dx10_41.dll
2012-07-17 15:21:55 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2012-07-17 15:21:54 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2012-07-17 15:21:54 ----A---- C:\Windows\system32\D3DX9_41.dll
2012-07-17 15:21:53 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2012-07-17 15:21:53 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2012-07-17 15:21:53 ----A---- C:\Windows\system32\XAudio2_4.dll
2012-07-17 15:21:53 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2012-07-17 15:21:52 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2012-07-17 15:21:52 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2012-07-17 15:21:52 ----A---- C:\Windows\system32\xactengine3_4.dll
2012-07-17 15:21:52 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2012-07-17 15:21:51 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2012-07-17 15:21:51 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2012-07-17 15:21:51 ----A---- C:\Windows\system32\d3dx10_40.dll
2012-07-17 15:21:51 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2012-07-17 15:21:50 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2012-07-17 15:21:50 ----A---- C:\Windows\system32\D3DX9_40.dll
2012-07-17 15:21:49 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2012-07-17 15:21:49 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2012-07-17 15:21:49 ----A---- C:\Windows\system32\XAudio2_3.dll
2012-07-17 15:21:49 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2012-07-17 15:21:48 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2012-07-17 15:21:48 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2012-07-17 15:21:48 ----A---- C:\Windows\system32\xactengine3_3.dll
2012-07-17 15:21:48 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2012-07-17 15:21:47 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2012-07-17 15:21:47 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2012-07-17 15:21:47 ----A---- C:\Windows\system32\XAudio2_2.dll
2012-07-17 15:21:47 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2012-07-17 15:21:46 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2012-07-17 15:21:46 ----A---- C:\Windows\system32\xactengine3_2.dll
2012-07-17 15:21:45 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2012-07-17 15:21:45 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2012-07-17 15:21:45 ----A---- C:\Windows\system32\d3dx10_39.dll
2012-07-17 15:21:45 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2012-07-17 15:21:44 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2012-07-17 15:21:44 ----A---- C:\Windows\system32\D3DX9_39.dll
2012-07-17 15:21:43 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2012-07-17 15:21:43 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2012-07-17 15:21:43 ----A---- C:\Windows\system32\XAudio2_1.dll
2012-07-17 15:21:43 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2012-07-17 15:21:42 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2012-07-17 15:21:42 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2012-07-17 15:21:42 ----A---- C:\Windows\system32\xactengine3_1.dll
2012-07-17 15:21:42 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2012-07-17 15:21:41 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2012-07-17 15:21:41 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2012-07-17 15:21:41 ----A---- C:\Windows\system32\d3dx10_38.dll
2012-07-17 15:21:41 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2012-07-17 15:21:40 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2012-07-17 15:21:40 ----A---- C:\Windows\system32\D3DX9_38.dll
2012-07-17 15:21:39 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2012-07-17 15:21:39 ----A---- C:\Windows\system32\XAudio2_0.dll
2012-07-17 15:21:38 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2012-07-17 15:21:38 ----A---- C:\Windows\system32\xactengine3_0.dll
2012-07-17 15:21:37 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2012-07-17 15:21:37 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2012-07-17 15:21:36 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2012-07-17 15:21:36 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2012-07-17 15:21:36 ----A---- C:\Windows\system32\d3dx10_37.dll
2012-07-17 15:21:36 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2012-07-17 15:21:35 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2012-07-17 15:21:35 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2012-07-17 15:21:35 ----A---- C:\Windows\system32\xactengine2_10.dll
2012-07-17 15:21:35 ----A---- C:\Windows\system32\D3DX9_37.dll
2012-07-17 15:21:33 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2012-07-17 15:21:33 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2012-07-17 15:21:33 ----A---- C:\Windows\system32\d3dx10_36.dll
2012-07-17 15:21:33 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2012-07-17 15:21:31 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2012-07-17 15:21:31 ----A---- C:\Windows\system32\d3dx9_36.dll
2012-07-17 15:21:30 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2012-07-17 15:21:30 ----A---- C:\Windows\system32\xactengine2_9.dll
2012-07-17 15:21:29 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2012-07-17 15:21:29 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2012-07-17 15:21:29 ----A---- C:\Windows\system32\d3dx10_35.dll
2012-07-17 15:21:29 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2012-07-17 15:21:28 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2012-07-17 15:21:28 ----A---- C:\Windows\system32\d3dx9_35.dll
2012-07-17 15:21:27 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2012-07-17 15:21:27 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2012-07-17 15:21:27 ----A---- C:\Windows\system32\xactengine2_8.dll
2012-07-17 15:21:27 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2012-07-17 15:21:26 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2012-07-17 15:21:26 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2012-07-17 15:21:26 ----A---- C:\Windows\system32\d3dx10_34.dll
2012-07-17 15:21:26 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2012-07-17 15:21:25 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2012-07-17 15:21:25 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2012-07-17 15:21:25 ----A---- C:\Windows\system32\xinput1_3.dll
2012-07-17 15:21:25 ----A---- C:\Windows\system32\d3dx9_34.dll
2012-07-17 15:21:23 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2012-07-17 15:21:23 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2012-07-17 15:21:23 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2012-07-17 15:21:23 ----A---- C:\Windows\system32\xactengine2_7.dll
2012-07-17 15:21:23 ----A---- C:\Windows\system32\d3dx10_33.dll
2012-07-17 15:21:23 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2012-07-17 15:21:22 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2012-07-17 15:21:22 ----A---- C:\Windows\system32\d3dx9_33.dll
2012-07-17 15:21:21 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2012-07-17 15:21:21 ----A---- C:\Windows\system32\xactengine2_6.dll
2012-07-17 15:21:19 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2012-07-17 15:21:19 ----A---- C:\Windows\system32\xactengine2_5.dll
2012-07-17 15:21:18 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2012-07-17 15:21:18 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2012-07-17 15:21:18 ----A---- C:\Windows\system32\d3dx9_32.dll
2012-07-17 15:21:18 ----A---- C:\Windows\system32\d3dx10.dll
2012-07-17 15:21:17 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2012-07-17 15:21:17 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2012-07-17 15:21:17 ----A---- C:\Windows\system32\xactengine2_4.dll
2012-07-17 15:21:17 ----A---- C:\Windows\system32\x3daudio1_1.dll
2012-07-17 15:21:16 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2012-07-17 15:21:16 ----A---- C:\Windows\system32\d3dx9_31.dll
2012-07-17 15:21:14 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2012-07-17 15:21:14 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2012-07-17 15:21:14 ----A---- C:\Windows\system32\xinput1_2.dll
2012-07-17 15:21:14 ----A---- C:\Windows\system32\xactengine2_3.dll
2012-07-17 15:21:12 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2012-07-17 15:21:12 ----A---- C:\Windows\system32\xactengine2_2.dll
2012-07-17 15:21:11 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2012-07-17 15:21:11 ----A---- C:\Windows\system32\xinput1_1.dll
2012-07-17 15:21:09 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2012-07-17 15:21:09 ----A---- C:\Windows\system32\xactengine2_1.dll
2012-07-17 15:21:04 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2012-07-17 15:21:04 ----A---- C:\Windows\system32\d3dx9_30.dll
2012-07-17 15:21:03 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2012-07-17 15:21:03 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2012-07-17 15:21:03 ----A---- C:\Windows\system32\xactengine2_0.dll
2012-07-17 15:21:03 ----A---- C:\Windows\system32\x3daudio1_0.dll
2012-07-17 15:21:02 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2012-07-17 15:21:02 ----A---- C:\Windows\system32\d3dx9_29.dll
2012-07-17 15:21:01 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2012-07-17 15:21:01 ----A---- C:\Windows\system32\d3dx9_28.dll
2012-07-17 15:21:00 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2012-07-17 15:21:00 ----A---- C:\Windows\system32\d3dx9_27.dll
2012-07-17 15:20:59 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2012-07-17 15:20:59 ----A---- C:\Windows\system32\d3dx9_26.dll
2012-07-17 15:20:58 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2012-07-17 15:20:58 ----A---- C:\Windows\system32\d3dx9_25.dll
2012-07-17 15:20:55 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2012-07-17 15:20:55 ----A---- C:\Windows\system32\d3dx9_24.dll
2012-07-17 15:19:51 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2012-07-17 15:17:39 ----D---- C:\Users\Roman\AppData\Roaming\Foxit Software
2012-07-17 15:16:18 ----D---- C:\Program Files (x86)\Microsoft.NET
2012-07-17 15:13:11 ----D---- C:\Users\Roman\AppData\Roaming\Autodesk
2012-07-17 15:13:11 ----D---- C:\ProgramData\Autodesk
2012-07-17 04:02:09 ----D---- C:\Windows\Panther
2012-07-17 04:01:56 ----RASH---- C:\BOOTSECT.BAK

roki
Návštěvník
Návštěvník
Příspěvky: 101
Registrován: 29 zář 2005 13:16

Re: Velmi zlý stav - z hodiny na hodinu

#3 Příspěvek od roki »

2012-07-17 04:01:55 ----SHD---- C:\Boot
2012-07-16 19:41:18 ----D---- C:\Windows\system32\appmgmt
2012-07-16 19:26:21 ----D---- C:\Program Files (x86)\MozBackup
2012-07-16 19:25:36 ----D---- C:\Users\Roman\AppData\Roaming\Thunderbird
2012-07-16 19:25:36 ----D---- C:\Users\Roman\AppData\Roaming\Mozilla
2012-07-16 19:25:32 ----D---- C:\Program Files (x86)\Mozilla Thunderbird
2012-07-16 19:21:34 ----A---- C:\Windows\system32\drivers\aswSP.sys
2012-07-16 19:21:34 ----A---- C:\Windows\system32\drivers\aswFsBlk.sys
2012-07-16 19:21:32 ----A---- C:\Windows\system32\drivers\aswTdi.sys
2012-07-16 19:21:32 ----A---- C:\Windows\system32\drivers\aswRdr2.sys
2012-07-16 19:21:31 ----A---- C:\Windows\system32\drivers\aswSnx.sys
2012-07-16 19:21:30 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2012-07-16 19:21:30 ----A---- C:\Windows\system32\aswBoot.exe
2012-07-16 19:20:54 ----A---- C:\Windows\SYSWOW64\aswBoot.exe
2012-07-16 19:20:54 ----A---- C:\Windows\avastSS.scr
2012-07-16 19:20:43 ----D---- C:\ProgramData\AVAST Software
2012-07-16 19:20:43 ----D---- C:\Program Files\AVAST Software
2012-07-16 18:57:44 ----N---- C:\Windows\system32\MpSigStub.exe
2012-07-16 18:55:17 ----D---- C:\Users\Roman\AppData\Roaming\KeePass
2012-07-16 18:55:04 ----D---- C:\Program Files (x86)\KeePass Password Safe
2012-07-16 18:51:58 ----D---- C:\Users\Roman\AppData\Roaming\Opera
2012-07-16 18:51:57 ----D---- C:\Program Files (x86)\Opera x64
2012-07-16 18:51:56 ----D---- C:\Program Files\Opera x64
2012-07-16 18:43:11 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2012-07-16 18:43:11 ----A---- C:\Windows\system32\rdpcore.dll
2012-07-16 18:43:11 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2012-07-16 18:40:28 ----A---- C:\Windows\gdrv.sys
2012-07-16 18:38:53 ----A---- C:\Windows\system32\wups2.dll
2012-07-16 18:38:53 ----A---- C:\Windows\system32\wuauclt.exe
2012-07-16 18:38:52 ----A---- C:\Windows\system32\wucltux.dll
2012-07-16 18:38:52 ----A---- C:\Windows\system32\wuaueng.dll
2012-07-16 18:38:46 ----A---- C:\Windows\system32\wups.dll
2012-07-16 18:38:46 ----A---- C:\Windows\system32\wudriver.dll
2012-07-16 18:38:46 ----A---- C:\Windows\system32\wuapi.dll
2012-07-16 18:38:39 ----A---- C:\Windows\system32\wuwebv.dll
2012-07-16 18:38:39 ----A---- C:\Windows\system32\wuapp.exe
2012-07-16 18:38:21 ----D---- C:\Program Files\GIGABYTE
2012-07-16 18:38:21 ----A---- C:\Windows\system32\drivers\AppleCharger.sys
2012-07-16 18:38:21 ----A---- C:\Windows\system32\AppleChargerSrv.exe
2012-07-16 18:37:28 ----D---- C:\Program Files\Realtek
2012-07-16 18:37:27 ----D---- C:\Windows\SYSWOW64\RTCOM
2012-07-16 18:37:23 ----A---- C:\Windows\system32\drivers\Rt64win7.sys
2012-07-16 18:37:22 ----A---- C:\Windows\system32\RTNUninst64.dll
2012-07-16 18:37:22 ----A---- C:\Windows\system32\RtNicProp64.dll
2012-07-16 18:37:12 ----A---- C:\Windows\system32\WavesGUILib.dll
2012-07-16 18:37:12 ----A---- C:\Windows\system32\SRSWOW64.dll
2012-07-16 18:37:12 ----A---- C:\Windows\system32\SRSTSX64.dll
2012-07-16 18:37:12 ----A---- C:\Windows\system32\SRSTSH64.dll
2012-07-16 18:37:12 ----A---- C:\Windows\system32\SRSHP64.dll
2012-07-16 18:37:11 ----A---- C:\Windows\system32\RtlCPAPI64.dll
2012-07-16 18:37:11 ----A---- C:\Windows\system32\RtkCfg64.dll
2012-07-16 18:37:10 ----A---- C:\Windows\system32\RtPgEx64.dll
2012-07-16 18:37:10 ----A---- C:\Windows\system32\RtkAPO64.dll
2012-07-16 18:37:10 ----A---- C:\Windows\system32\RtkApi64.dll
2012-07-16 18:37:10 ----A---- C:\Windows\system32\RTCOM64.dll
2012-07-16 18:37:09 ----A---- C:\Windows\system32\RTEEP64A.dll
2012-07-16 18:37:09 ----A---- C:\Windows\system32\RTEEL64A.dll
2012-07-16 18:37:09 ----A---- C:\Windows\system32\RTEEG64A.dll
2012-07-16 18:37:09 ----A---- C:\Windows\system32\RTEED64A.dll
2012-07-16 18:37:09 ----A---- C:\Windows\system32\RP3DHT64.dll
2012-07-16 18:37:09 ----A---- C:\Windows\system32\RP3DAA64.dll
2012-07-16 18:37:09 ----A---- C:\Windows\system32\RCoInst64.dll
2012-07-16 18:37:09 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2012-07-16 18:37:07 ----A---- C:\Windows\system32\MaxxAudioEQ.dll
2012-07-16 18:37:06 ----A---- C:\Windows\system32\MBWrp64.dll
2012-07-16 18:37:06 ----A---- C:\Windows\system32\MBppld64.dll
2012-07-16 18:37:06 ----A---- C:\Windows\system32\MaxxAudioAPO20.dll
2012-07-16 18:37:03 ----A---- C:\Windows\system32\MBPPCn64.dll
2012-07-16 18:37:03 ----A---- C:\Windows\system32\MBAPO64.dll
2012-07-16 18:37:02 ----A---- C:\Windows\SYSWOW64\MBAPO32.dll
2012-07-16 18:36:59 ----A---- C:\Windows\system32\FMAPO64.dll
2012-07-16 18:36:52 ----D---- C:\Program Files (x86)\Realtek
2012-07-16 18:36:52 ----A---- C:\Windows\system32\AERTAR64.dll
2012-07-16 18:36:52 ----A---- C:\Windows\system32\AERTAC64.dll
2012-07-16 18:36:51 ----HD---- C:\Program Files (x86)\Temp
2012-07-16 18:36:49 ----R---- C:\Windows\RtlExUpd.dll
2012-07-16 18:36:23 ----RA---- C:\Windows\SYSWOW64\CSVer.dll
2012-07-16 18:36:23 ----D---- C:\Program Files (x86)\Intel
2012-07-16 18:36:18 ----D---- C:\Intel
2012-07-16 18:35:52 ----A---- C:\ProgramData\NTUser.dat
2012-07-16 18:35:43 ----HD---- C:\ProgramData\{8533ADFA-85F0-4dc1-946A-2A0BA58E78E3}
2012-07-16 18:35:42 ----D---- C:\Users\Roman\AppData\Roaming\Splashtop
2012-07-16 18:35:34 ----D---- C:\Program Files (x86)\Splashtop
2012-07-16 18:35:23 ----SHD---- C:\Windows\Installer
2012-07-16 18:35:04 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2012-07-16 18:35:04 ----D---- C:\Program Files (x86)\Gigabyte
2012-07-16 18:34:20 ----A---- C:\Windows\GSetup.ini
2012-07-16 18:18:42 ----D---- C:\Users\Roman\AppData\Roaming\GHISLER
2012-07-16 18:18:42 ----D---- C:\totalcmd
2012-07-16 18:18:42 ----A---- C:\Windows\UC.PIF
2012-07-16 18:18:42 ----A---- C:\Windows\RAR.PIF
2012-07-16 18:18:42 ----A---- C:\Windows\PKZIP.PIF
2012-07-16 18:18:42 ----A---- C:\Windows\PKUNZIP.PIF
2012-07-16 18:18:42 ----A---- C:\Windows\NOCLOSE.PIF
2012-07-16 18:18:42 ----A---- C:\Windows\LHA.PIF
2012-07-16 18:18:42 ----A---- C:\Windows\ARJ.PIF
2012-07-16 18:08:56 ----D---- C:\Users\Roman\AppData\Roaming\Identities
2012-07-16 18:08:43 ----SD---- C:\Users\Roman\AppData\Roaming\Microsoft
2012-07-16 18:08:43 ----D---- C:\Users\Roman\AppData\Roaming\Media Center Programs
2012-07-16 18:08:35 ----SHD---- C:\Recovery
2012-07-16 18:08:31 ----D---- C:\Windows\SoftwareDistribution
2012-07-16 18:03:25 ----D---- C:\Windows\Prefetch
2012-07-16 18:02:50 ----ASH---- C:\pagefile.sys
2012-07-16 18:02:46 ----SHD---- C:\System Volume Information
2012-07-16 18:02:46 ----ASH---- C:\hiberfil.sys
2012-07-16 17:32:38 ----D---- C:\Program Files (x86)\Foxit Software
2012-07-16 17:18:42 ----D---- C:\Users\Roman\AppData\Roaming\calibre
2012-07-16 17:18:16 ----D---- C:\Program Files (x86)\Calibre2
2012-07-16 17:00:26 ----A---- C:\Windows\system32\npDeployJava1.dll
2012-07-16 17:00:26 ----A---- C:\Windows\system32\javaws.exe
2012-07-16 17:00:26 ----A---- C:\Windows\system32\deployJava1.dll
2012-07-16 17:00:18 ----A---- C:\Windows\system32\javaw.exe
2012-07-16 17:00:18 ----A---- C:\Windows\system32\java.exe
2012-07-16 17:00:11 ----D---- C:\Program Files\Java
2012-07-16 16:58:41 ----D---- C:\Users\Roman\AppData\Roaming\WinRAR
2012-07-16 16:58:06 ----D---- C:\Program Files (x86)\WinRAR
2012-07-16 16:36:53 ----D---- C:\Users\Roman\AppData\Roaming\PotPlayerMini64
2012-07-16 16:35:21 ----D---- C:\Program Files\DAUM
2012-07-16 16:29:25 ----D---- C:\Users\Roman\AppData\Roaming\NVIDIA
2012-07-16 16:15:58 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2012-07-16 16:11:32 ----D---- C:\Program Files\Common Files\Adobe
2012-07-16 16:08:25 ----D---- C:\ProgramData\Adobe.BackupByBridgePortable
2012-07-16 15:58:50 ----A---- C:\Windows\system32\drivers\dtsoftbus01.sys
2012-07-16 15:58:46 ----D---- C:\Users\Roman\AppData\Roaming\DAEMON Tools Lite
2012-07-16 15:58:33 ----D---- C:\Program Files (x86)\DAEMON Tools Lite
2012-07-16 15:57:33 ----D---- C:\ProgramData\DAEMON Tools Lite
2012-07-16 15:53:29 ----D---- C:\Users\Roman\AppData\Roaming\Sync App Settings
2012-07-16 15:53:07 ----D---- C:\ProgramData\Sync App Settings
2012-07-16 15:52:57 ----D---- C:\Program Files (x86)\Allway Sync
2012-07-16 15:50:02 ----D---- C:\Users\Roman\AppData\Roaming\TrueCrypt
2012-07-16 15:49:52 ----A---- C:\Windows\system32\drivers\truecrypt.sys
2012-07-16 15:49:51 ----D---- C:\Program Files\TrueCrypt
2012-07-16 15:40:46 ----D---- C:\Windows\SYSWOW64\Wat
2012-07-16 15:40:46 ----D---- C:\Windows\system32\Wat
2012-07-16 15:23:17 ----A---- C:\Windows\system32\win32k.sys
2012-07-16 15:02:47 ----D---- C:\ProgramData\NVIDIA Corporation
2012-07-16 15:02:41 ----D---- C:\Program Files\NVIDIA Corporation
2012-07-16 14:50:36 ----A---- C:\Windows\system32\imagehlp.dll
2012-07-16 14:50:36 ----A---- C:\Windows\system32\drivers\fs_rec.sys
2012-07-16 14:50:35 ----A---- C:\Windows\SYSWOW64\wmi.dll
2012-07-16 14:50:35 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2012-07-16 14:50:35 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2012-07-16 14:50:35 ----A---- C:\Windows\system32\wmi.dll
2012-07-16 14:50:35 ----A---- C:\Windows\system32\wintrust.dll
2012-07-16 14:47:10 ----D---- C:\Windows\system32\Macromed
2012-07-16 14:26:15 ----A---- C:\Windows\SYSWOW64\xmllite.dll
2012-07-16 14:26:15 ----A---- C:\Windows\system32\xmllite.dll
2012-07-16 14:26:14 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2012-07-16 14:26:14 ----A---- C:\Windows\system32\kerberos.dll
2012-07-16 14:26:11 ----A---- C:\Windows\system32\odbctrac.dll
2012-07-16 14:26:11 ----A---- C:\Windows\system32\odbccu32.dll
2012-07-16 14:26:11 ----A---- C:\Windows\system32\odbccr32.dll
2012-07-16 14:26:11 ----A---- C:\Windows\system32\odbccp32.dll
2012-07-16 14:26:10 ----A---- C:\Windows\SYSWOW64\odbctrac.dll
2012-07-16 14:26:10 ----A---- C:\Windows\SYSWOW64\odbcjt32.dll
2012-07-16 14:26:10 ----A---- C:\Windows\SYSWOW64\odbccu32.dll
2012-07-16 14:26:10 ----A---- C:\Windows\SYSWOW64\odbccr32.dll
2012-07-16 14:26:10 ----A---- C:\Windows\SYSWOW64\odbccp32.dll
2012-07-16 14:26:05 ----A---- C:\Windows\system32\DWrite.dll
2012-07-16 14:26:04 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2012-07-16 14:25:43 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2012-07-16 14:25:43 ----A---- C:\Windows\system32\poqexec.exe
2012-07-16 14:25:39 ----A---- C:\Windows\SYSWOW64\explorer.exe
2012-07-16 14:25:39 ----A---- C:\Windows\explorer.exe
2012-07-16 14:25:37 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2012-07-16 14:25:37 ----A---- C:\Windows\system32\CPFilters.dll
2012-07-16 14:25:36 ----A---- C:\Windows\SYSWOW64\sbe.dll
2012-07-16 14:25:36 ----A---- C:\Windows\system32\sbe.dll
2012-07-16 14:25:10 ----A---- C:\Windows\SYSWOW64\quartz.dll
2012-07-16 14:25:10 ----A---- C:\Windows\system32\quartz.dll
2012-07-16 14:25:04 ----A---- C:\Windows\SYSWOW64\ntshrui.dll
2012-07-16 14:25:04 ----A---- C:\Windows\system32\ntshrui.dll
2012-07-16 14:24:55 ----A---- C:\Windows\system32\tquery.dll
2012-07-16 14:24:55 ----A---- C:\Windows\system32\mssrch.dll
2012-07-16 14:24:54 ----A---- C:\Windows\SYSWOW64\tquery.dll
2012-07-16 14:24:54 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2012-07-16 14:24:54 ----A---- C:\Windows\system32\SearchIndexer.exe
2012-07-16 14:24:53 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2012-07-16 14:24:53 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2012-07-16 14:24:53 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2012-07-16 14:24:53 ----A---- C:\Windows\SYSWOW64\mssph.dll
2012-07-16 14:24:53 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2012-07-16 14:24:53 ----A---- C:\Windows\system32\SearchFilterHost.exe
2012-07-16 14:24:53 ----A---- C:\Windows\system32\mssvp.dll
2012-07-16 14:24:53 ----A---- C:\Windows\system32\mssph.dll
2012-07-16 14:24:52 ----A---- C:\Windows\SYSWOW64\SearchFilterHost.exe
2012-07-16 14:24:52 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2012-07-16 14:24:52 ----A---- C:\Windows\system32\mssphtb.dll
2012-07-16 14:24:51 ----A---- C:\Windows\SYSWOW64\msscntrs.dll
2012-07-16 14:24:51 ----A---- C:\Windows\system32\msscntrs.dll
2012-07-16 14:24:42 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2012-07-16 14:24:42 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2012-07-16 14:24:42 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2012-07-16 14:24:39 ----A---- C:\Windows\SYSWOW64\webio.dll
2012-07-16 14:24:39 ----A---- C:\Windows\system32\webio.dll
2012-07-16 14:24:19 ----A---- C:\Windows\system32\msxml6.dll
2012-07-16 14:24:19 ----A---- C:\Windows\system32\msxml3.dll
2012-07-16 14:24:18 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2012-07-16 14:24:18 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2012-07-16 14:24:18 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2012-07-16 14:24:18 ----A---- C:\Windows\system32\msxml3r.dll
2012-07-16 14:24:03 ----A---- C:\Windows\system32\csrsrv.dll
2012-07-16 14:23:57 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2012-07-16 14:23:57 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2012-07-16 14:23:32 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2012-07-16 14:23:32 ----A---- C:\Windows\system32\XpsPrint.dll
2012-07-16 14:23:24 ----A---- C:\Windows\system32\mfc42u.dll
2012-07-16 14:23:24 ----A---- C:\Windows\system32\mfc42.dll
2012-07-16 14:23:23 ----A---- C:\Windows\SYSWOW64\mfc42u.dll
2012-07-16 14:23:23 ----A---- C:\Windows\SYSWOW64\mfc42.dll
2012-07-16 14:23:21 ----A---- C:\Windows\system32\shell32.dll
2012-07-16 14:23:20 ----A---- C:\Windows\SYSWOW64\shell32.dll
2012-07-16 14:22:38 ----A---- C:\Windows\system32\rdrmemptylst.exe
2012-07-16 14:22:38 ----A---- C:\Windows\system32\rdpwsx.dll
2012-07-16 14:22:38 ----A---- C:\Windows\system32\rdpcorekmts.dll
2012-07-16 14:22:28 ----A---- C:\Windows\system32\schannel.dll
2012-07-16 14:22:27 ----A---- C:\Windows\SYSWOW64\schannel.dll
2012-07-16 14:22:27 ----A---- C:\Windows\system32\sspicli.dll
2012-07-16 14:22:27 ----A---- C:\Windows\system32\ncrypt.dll
2012-07-16 14:22:27 ----A---- C:\Windows\system32\lsasrv.dll
2012-07-16 14:22:27 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2012-07-16 14:22:27 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2012-07-16 14:22:27 ----A---- C:\Windows\system32\drivers\cng.sys
2012-07-16 14:22:26 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2012-07-16 14:22:26 ----A---- C:\Windows\SYSWOW64\secur32.dll
2012-07-16 14:22:26 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2012-07-16 14:22:26 ----A---- C:\Windows\system32\sspisrv.dll
2012-07-16 14:22:26 ----A---- C:\Windows\system32\secur32.dll
2012-07-16 14:22:26 ----A---- C:\Windows\system32\lsass.exe
2012-07-16 14:22:08 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2012-07-16 14:22:08 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2012-07-16 14:22:08 ----A---- C:\Windows\system32\fontsub.dll
2012-07-16 14:22:08 ----A---- C:\Windows\system32\atmlib.dll
2012-07-16 14:22:08 ----A---- C:\Windows\system32\atmfd.dll
2012-07-16 14:22:07 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2012-07-16 14:21:51 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2012-07-16 14:21:47 ----A---- C:\Windows\system32\profsvc.dll
2012-07-16 14:21:47 ----A---- C:\Windows\system32\profprov.dll
2012-07-16 14:21:46 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2012-07-16 14:21:46 ----A---- C:\Windows\system32\dnsrslvr.dll
2012-07-16 14:21:46 ----A---- C:\Windows\system32\dnsapi.dll
2012-07-16 14:21:45 ----A---- C:\Windows\SYSWOW64\dnscacheugc.exe
2012-07-16 14:21:45 ----A---- C:\Windows\system32\dnscacheugc.exe
2012-07-16 14:21:37 ----A---- C:\Windows\system32\ntoskrnl.exe
2012-07-16 14:21:35 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2012-07-16 14:21:34 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2012-07-16 14:21:29 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2012-07-16 14:21:29 ----A---- C:\Windows\system32\d3d10_1core.dll
2012-07-16 14:21:29 ----A---- C:\Windows\system32\d3d10_1.dll
2012-07-16 14:21:28 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2012-07-16 14:21:26 ----A---- C:\Windows\system32\drivers\srv2.sys
2012-07-16 14:21:26 ----A---- C:\Windows\system32\drivers\srv.sys
2012-07-16 14:21:25 ----A---- C:\Windows\system32\drivers\srvnet.sys
2012-07-16 14:21:22 ----A---- C:\Windows\SYSWOW64\psisdecd.dll
2012-07-16 14:21:22 ----A---- C:\Windows\system32\psisdecd.dll
2012-07-16 14:21:13 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2012-07-16 14:21:09 ----A---- C:\Windows\system32\drivers\afd.sys
2012-07-16 14:21:07 ----A---- C:\Windows\system32\drivers\partmgr.sys
2012-07-16 14:21:05 ----A---- C:\Windows\SYSWOW64\msi.dll
2012-07-16 14:21:05 ----A---- C:\Windows\system32\msi.dll
2012-07-16 14:20:48 ----A---- C:\Windows\system32\winresume.exe
2012-07-16 14:20:48 ----A---- C:\Windows\system32\winload.exe
2012-07-16 14:20:47 ----A---- C:\Windows\system32\setbcdlocale.dll
2012-07-16 14:20:47 ----A---- C:\Windows\system32\kdusb.dll
2012-07-16 14:20:47 ----A---- C:\Windows\system32\kdcom.dll
2012-07-16 14:20:47 ----A---- C:\Windows\system32\kd1394.dll
2012-07-16 14:20:32 ----A---- C:\Windows\system32\crypt32.dll
2012-07-16 14:20:31 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2012-07-16 14:20:31 ----A---- C:\Windows\system32\cryptsvc.dll
2012-07-16 14:20:31 ----A---- C:\Windows\system32\cryptnet.dll
2012-07-16 14:20:30 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2012-07-16 14:20:30 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2012-07-16 14:20:13 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2012-07-16 14:20:13 ----A---- C:\Windows\system32\KernelBase.dll
2012-07-16 14:20:13 ----A---- C:\Windows\system32\kernel32.dll
2012-07-16 14:20:13 ----A---- C:\Windows\system32\conhost.exe
2012-07-16 14:20:12 ----A---- C:\Windows\SYSWOW64\setup16.exe
2012-07-16 14:20:12 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2012-07-16 14:20:12 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2012-07-16 14:20:12 ----A---- C:\Windows\system32\wow64win.dll
2012-07-16 14:20:12 ----A---- C:\Windows\system32\wow64cpu.dll
2012-07-16 14:20:12 ----A---- C:\Windows\system32\wow64.dll
2012-07-16 14:20:12 ----A---- C:\Windows\system32\winsrv.dll
2012-07-16 14:20:12 ----A---- C:\Windows\system32\ntvdm64.dll
2012-07-16 14:20:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2012-07-16 14:20:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2012-07-16 14:20:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2012-07-16 14:20:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2012-07-16 14:20:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2012-07-16 14:20:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2012-07-16 14:20:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2012-07-16 14:20:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2012-07-16 14:20:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2012-07-16 14:20:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2012-07-16 14:20:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2012-07-16 14:20:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2012-07-16 14:20:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2012-07-16 14:20:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2012-07-16 14:20:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2012-07-16 14:20:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2012-07-16 14:20:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2012-07-16 14:20:11 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2012-07-16 14:20:11 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2012-07-16 14:20:11 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2012-07-16 14:20:11 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2012-07-16 14:20:11 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2012-07-16 14:20:11 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2012-07-16 14:20:11 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2012-07-16 14:20:11 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2012-07-16 14:20:11 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2012-07-16 14:20:11 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2012-07-16 14:20:11 ----A---- C:\Windows\SYSWOW64\wow32.dll
2012-07-16 14:20:11 ----A---- C:\Windows\SYSWOW64\instnm.exe
2012-07-16 14:20:10 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2012-07-16 14:20:10 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-07-16 14:20:10 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2012-07-16 14:20:10 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2012-07-16 14:20:10 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2012-07-16 14:20:10 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2012-07-16 14:20:10 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2012-07-16 14:20:10 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2012-07-16 14:20:10 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2012-07-16 14:20:10 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2012-07-16 14:20:10 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2012-07-16 14:20:10 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2012-07-16 14:20:10 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2012-07-16 14:20:10 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2012-07-16 14:20:10 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2012-07-16 14:20:10 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2012-07-16 14:20:10 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-07-16 14:20:10 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2012-07-16 14:20:10 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2012-07-16 14:20:10 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2012-07-16 14:20:10 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2012-07-16 14:20:10 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2012-07-16 14:20:10 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2012-07-16 14:20:10 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2012-07-16 14:20:10 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2012-07-16 14:20:10 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2012-07-16 14:20:10 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2012-07-16 14:20:10 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2012-07-16 14:20:10 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2012-07-16 14:20:10 ----A---- C:\Windows\SYSWOW64\user.exe
2012-07-16 14:19:52 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2012-07-16 14:19:52 ----A---- C:\Windows\SYSWOW64\devrtl.dll
2012-07-16 14:19:52 ----A---- C:\Windows\SYSWOW64\devobj.dll
2012-07-16 14:19:52 ----A---- C:\Windows\SYSWOW64\cfgmgr32.dll
2012-07-16 14:19:52 ----A---- C:\Windows\system32\umpnpmgr.dll
2012-07-16 14:19:52 ----A---- C:\Windows\system32\cfgmgr32.dll
2012-07-16 14:19:38 ----A---- C:\Windows\SYSWOW64\prevhost.exe
2012-07-16 14:19:38 ----A---- C:\Windows\system32\prevhost.exe
2012-07-16 14:19:37 ----A---- C:\Windows\system32\WFS.exe
2012-07-16 14:19:37 ----A---- C:\Windows\system32\FXSCOVER.exe
2012-07-16 14:19:34 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2012-07-16 14:19:34 ----A---- C:\Windows\system32\inetcomm.dll
2012-07-16 14:19:32 ----A---- C:\Windows\system32\msvcrt.dll
2012-07-16 14:19:31 ----A---- C:\Windows\SYSWOW64\msvcrt.dll
2012-07-16 14:19:29 ----A---- C:\Windows\system32\drivers\bowser.sys
2012-07-16 14:19:28 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2012-07-16 14:19:28 ----A---- C:\Windows\SYSWOW64\oleacc.dll
2012-07-16 14:19:28 ----A---- C:\Windows\system32\oleaut32.dll
2012-07-16 14:19:28 ----A---- C:\Windows\system32\oleacc.dll
2012-07-16 14:19:27 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2012-07-16 14:19:27 ----A---- C:\Windows\system32\EncDec.dll
2012-07-16 14:19:20 ----A---- C:\Windows\SYSWOW64\tzres.dll
2012-07-16 14:19:20 ----A---- C:\Windows\system32\tzres.dll
2012-07-16 14:19:09 ----A---- C:\Windows\system32\drivers\tcpip.sys
2012-07-16 14:19:09 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2012-07-16 14:18:56 ----A---- C:\Windows\SYSWOW64\cdosys.dll
2012-07-16 14:18:55 ----A---- C:\Windows\system32\cdosys.dll
2012-07-16 14:18:46 ----A---- C:\Windows\system32\ntdll.dll
2012-07-16 14:18:45 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2012-07-16 14:11:47 ----D---- C:\Users\Roman\AppData\Roaming\Macromedia
2012-07-16 14:11:47 ----D---- C:\Users\Roman\AppData\Roaming\Adobe.BackupByBridgePortable
2012-07-16 14:10:01 ----A---- C:\Windows\SYSWOW64\packager.dll
2012-07-16 14:10:01 ----A---- C:\Windows\system32\packager.dll
2012-07-16 14:01:31 ----D---- C:\ProgramData\CPA_VA
2012-07-16 13:56:36 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2012-07-16 13:56:35 ----D---- C:\Windows\SYSWOW64\Macromed
2012-07-16 13:56:17 ----D---- C:\Program Files (x86)\Comodo
2012-07-16 13:50:49 ----D---- C:\ProgramData\Comodo
2012-07-16 13:50:47 ----D---- C:\Program Files\COMODO
2012-07-16 13:50:47 ----A---- C:\Windows\SYSWOW64\msvcr71.dll
2012-07-16 13:50:47 ----A---- C:\Windows\SYSWOW64\mfc71.dll
2012-07-16 13:50:47 ----A---- C:\Windows\SYSWOW64\gdiplus.dll
2012-07-16 13:47:25 ----D---- C:\Program Files\CCleaner
2012-07-16 13:44:32 ----D---- C:\Program Files (x86)\RocketDock

======List of files/folders modified in the last 1 month======

2012-08-03 20:18:23 ----D---- C:\Windows\Temp
2012-08-03 20:14:15 ----D---- C:\Windows
2012-08-03 17:58:57 ----D---- C:\Windows\system32\wdi
2012-08-02 16:29:03 ----D---- C:\Windows\SysWOW64
2012-07-31 10:02:57 ----D---- C:\Windows\System32
2012-07-31 10:02:57 ----D---- C:\Windows\inf
2012-07-31 10:02:57 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-07-30 11:32:44 ----RD---- C:\Program Files
2012-07-30 11:25:29 ----RD---- C:\Program Files (x86)
2012-07-30 10:33:31 ----HD---- C:\ProgramData
2012-07-29 21:51:28 ----D---- C:\Windows\system32\config
2012-07-29 21:36:45 ----D---- C:\Windows\rescache
2012-07-29 21:34:17 ----D---- C:\Windows\Logs
2012-07-29 11:24:55 ----D---- C:\Windows\system32\catroot2
2012-07-27 18:39:55 ----D---- C:\Windows\winsxs
2012-07-27 18:39:09 ----D---- C:\Program Files (x86)\Common Files
2012-07-26 10:22:04 ----D---- C:\Windows\Microsoft.NET
2012-07-26 10:22:03 ----RSD---- C:\Windows\assembly
2012-07-25 12:07:56 ----D---- C:\Windows\system32\drivers
2012-07-25 12:07:09 ----D---- C:\Program Files\Common Files\Microsoft Shared
2012-07-25 11:59:17 ----D---- C:\Program Files\MSBuild
2012-07-25 11:55:49 ----SD---- C:\ProgramData\Microsoft
2012-07-25 11:50:30 ----D---- C:\Program Files (x86)\MSBuild
2012-07-23 14:25:41 ----RSD---- C:\Windows\Fonts
2012-07-20 21:17:21 ----D---- C:\Windows\debug
2012-07-20 18:27:00 ----D---- C:\Windows\Tasks
2012-07-20 18:25:08 ----D---- C:\Windows\system32\drivers\etc
2012-07-20 12:42:41 ----D---- C:\Windows\system32\Tasks
2012-07-19 10:28:08 ----D---- C:\Windows\system32\DriverStore
2012-07-19 10:28:08 ----D---- C:\Windows\system32\catroot
2012-07-19 10:26:49 ----D---- C:\Windows\Help
2012-07-19 09:36:32 ----D---- C:\Windows\system32\en-US
2012-07-18 10:21:26 ----D---- C:\Windows\system32\drivers\UMDF
2012-07-18 09:48:17 ----D---- C:\Windows\system32\LogFiles
2012-07-18 09:30:53 ----D---- C:\Program Files (x86)\Windows Sidebar
2012-07-18 09:30:53 ----D---- C:\Program Files (x86)\Windows Portable Devices
2012-07-18 09:30:53 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2012-07-18 09:30:53 ----D---- C:\Program Files (x86)\Windows Media Player
2012-07-18 09:30:53 ----D---- C:\Program Files (x86)\Windows Mail
2012-07-18 09:30:50 ----D---- C:\Program Files\Windows Sidebar
2012-07-18 09:30:50 ----D---- C:\Program Files\Windows Portable Devices
2012-07-18 09:30:50 ----D---- C:\Program Files\Windows Mail
2012-07-18 09:30:50 ----D---- C:\Program Files\DVD Maker
2012-07-18 09:30:49 ----D---- C:\Windows\servicing
2012-07-18 09:30:49 ----D---- C:\Program Files\Windows Photo Viewer
2012-07-18 09:30:49 ----D---- C:\Program Files\Windows Media Player
2012-07-18 09:30:49 ----D---- C:\Program Files\Windows Journal
2012-07-18 09:30:49 ----D---- C:\Program Files\Windows Defender
2012-07-18 09:30:49 ----D---- C:\Program Files\Common Files\System
2012-07-18 09:30:48 ----D---- C:\Windows\ehome
2012-07-18 09:30:46 ----D---- C:\Windows\SYSWOW64\oobe
2012-07-18 09:30:46 ----D---- C:\Windows\SYSWOW64\migration
2012-07-18 09:30:46 ----D---- C:\Windows\SYSWOW64\en-US
2012-07-18 09:30:46 ----D---- C:\Windows\SYSWOW64\da-DK
2012-07-18 09:30:45 ----D---- C:\Windows\SYSWOW64\wbem
2012-07-18 09:30:45 ----D---- C:\Windows\SYSWOW64\sppui
2012-07-18 09:30:45 ----D---- C:\Windows\SYSWOW64\Setup
2012-07-18 09:30:45 ----D---- C:\Windows\SYSWOW64\migwiz
2012-07-18 09:30:45 ----D---- C:\Windows\SYSWOW64\manifeststore
2012-07-18 09:30:45 ----D---- C:\Windows\SYSWOW64\es-ES
2012-07-18 09:30:45 ----D---- C:\Windows\SYSWOW64\en
2012-07-18 09:30:45 ----D---- C:\Windows\SYSWOW64\Dism
2012-07-18 09:30:45 ----D---- C:\Windows\SYSWOW64\cs-CZ
2012-07-18 09:30:45 ----D---- C:\Windows\SYSWOW64\AdvancedInstallers
2012-07-18 09:30:33 ----D---- C:\Windows\system32\oobe
2012-07-18 09:30:33 ----D---- C:\Windows\system32\da-DK
2012-07-18 09:30:33 ----D---- C:\Windows\PolicyDefinitions
2012-07-18 09:30:32 ----D---- C:\Windows\system32\migration
2012-07-18 09:30:27 ----D---- C:\Windows\system32\sppui
2012-07-18 09:30:27 ----D---- C:\Windows\system32\Setup
2012-07-18 09:30:27 ----D---- C:\Windows\system32\manifeststore
2012-07-18 09:30:27 ----D---- C:\Windows\system32\es-ES
2012-07-18 09:30:27 ----D---- C:\Windows\system32\cs-CZ
2012-07-18 09:30:27 ----D---- C:\Windows\system32\AdvancedInstallers
2012-07-18 09:30:26 ----D---- C:\Windows\system32\wbem
2012-07-18 09:30:26 ----D---- C:\Windows\system32\migwiz
2012-07-18 09:30:26 ----D---- C:\Windows\system32\drivers\en-US
2012-07-18 09:30:26 ----D---- C:\Windows\system32\Dism
2012-07-18 09:30:12 ----D---- C:\Windows\AppPatch
2012-07-18 09:30:02 ----D---- C:\Windows\system32\Boot
2012-07-18 09:26:47 ----A---- C:\Windows\SYSWOW64\msclmd.dll
2012-07-18 09:26:46 ----A---- C:\Windows\system32\msclmd.dll
2012-07-18 09:18:07 ----D---- C:\Program Files\Internet Explorer
2012-07-18 09:18:07 ----D---- C:\Program Files (x86)\Internet Explorer
2012-07-17 16:25:37 ----D---- C:\Windows\ShellNew
2012-07-17 16:23:11 ----A---- C:\Windows\win.ini
2012-07-17 15:25:40 ----D---- C:\Program Files\Common Files
2012-07-16 18:34:55 ----D---- C:\Windows\system32\restore
2012-07-16 18:25:24 ----D---- C:\Windows\system32\CodeIntegrity
2012-07-16 18:04:55 ----D---- C:\Windows\system32\sysprep
2012-07-16 18:03:20 ----D---- C:\Windows\CSC
2012-07-16 15:17:35 ----RD---- C:\Users

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R3 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2012-07-16 283200]
S1 AppleCharger;AppleCharger; C:\Windows\system32\DRIVERS\AppleCharger.sys [2011-01-10 21104]
S1 aswRdr;aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [2012-07-03 54072]
S1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2012-07-03 958400]
S1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2012-07-03 355856]
S1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2012-07-03 59728]
S1 cmdGuard;COMODO Internet Security Sandbox Driver; C:\Windows\System32\DRIVERS\cmdguard.sys [2012-03-11 577824]
S1 cmdHlp;COMODO Internet Security Helper Driver; C:\Windows\System32\DRIVERS\cmdhlp.sys [2012-03-11 43248]
S1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
S1 inspect;COMODO Internet Security Firewall Driver; C:\Windows\system32\DRIVERS\inspect.sys [2012-02-03 93200]
S1 truecrypt;truecrypt; C:\Windows\System32\drivers\truecrypt.sys [2012-07-16 231376]
S2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2012-07-03 25232]
S2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2012-07-03 71064]
S3 gdrv;gdrv; \??\C:\Windows\gdrv.sys [2012-08-03 25640]
S3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2011-06-07 2890984]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-05-16 533096]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S4 RsFx0103;RsFx0103 Driver; C:\Windows\system32\DRIVERS\RsFx0103.sys [2009-03-30 311656]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

S2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2012-07-03 44808]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 cmdAgent;COMODO Internet Security Helper Service; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2012-03-11 2815496]
S2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S2 DragonUpdater;COMODO Dragon Update Service; C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe [2012-07-17 469136]
S2 ES lite Service;ES lite Service for program management.; C:\Program Files (x86)\Gigabyte\EasySaver\ESSVR.EXE [2009-08-24 68136]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-07-20 116648]
S2 mi-raysat_3dsmax2012_64;mental ray 3.9 Satellite for Autodesk 3ds Max 2012 64-bit - English 64-bit; C:\Program Files\Autodesk\3ds Max 2012\mentalimages\satellite\raysat_3dsmax2012_64server.exe [2011-02-22 86016]
S2 MSSQL$SQLEXPRESS;SQL Server (SQLEXPRESS); C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [2009-03-30 57617752]
S2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2012-05-15 889664]
S2 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2008-07-10 157720]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-05-15 382272]
S3 AppleChargerSrv;AppleChargerSrv; C:\Windows\system32\AppleChargerSrv.exe [2010-04-06 31272]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 aspnet_state;ASP.NET State Service; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2012-07-17 1431888]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-07-20 116648]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2006-10-27 65824]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-07-16 1255736]
S4 MSSQLServerADHelper100;SQL Active Directory Helper Service; C:\Program Files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE [2009-07-22 61976]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 SQLAgent$SQLEXPRESS;SQL Server Agent (SQLEXPRESS); C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [2009-03-30 427880]
S4 SQLBrowser;SQL Server Browser; C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2009-03-30 254808]

-----------------EOF-----------------

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Velmi zlý stav - z hodiny na hodinu

#4 Příspěvek od motji »

Dobrý večer :)
Poprosím ještě o druhý log ze rsitu s názvem info.txt. :)
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

roki
Návštěvník
Návštěvník
Příspěvky: 101
Registrován: 29 zář 2005 13:16

Re: Velmi zlý stav - z hodiny na hodinu

#5 Příspěvek od roki »

info.txt logfile of random's system information tool 1.09 2012-08-03 20:18:27

======Uninstall list======

-->MsiExec /X{DA909E62-3B45-4BA1-8B58-FCAEBA4BCEC9}
µTorrent-->"C:\Program Files (x86)\uTorrent\uTorrent.exe" /UNINSTALL
Adobe Flash Player 11 Plugin-->C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_11_3_300_265_Plugin.exe -maintain plugin
Adobe Photoshop CS6-->C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\core\PDApp.exe --appletID="DWA_UI" --appletVersion="2.0" --mode="Uninstall" --mediaSignature="{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}"
Allway Sync version 12.1.1-->"C:\Program Files (x86)\Allway Sync\unins000.exe"
Autodesk 3ds Max 2012 64-bit - English-->C:\Program Files\Autodesk\3ds Max 2012\Setup\Setup.exe /P {723C8298-C7B0-0409-A1B6-C3BA6F3FFAB1} /M MAX /LANG en-US
Autodesk Backburner 2012.0.0-->MsiExec.exe /I{3D347E6D-5A03-4342-B5BA-6A771885F379}
Autodesk FBX Plug-in 2012.0 - 3ds Max 2012 64-bit-->C:\Program Files\Autodesk\FBX\FBXPlugins\2012.0\3ds Max 2012 64-bit\Uninstall.exe
Autodesk Material Library 2012-->MsiExec.exe /I{8F0837C2-EE09-4903-88F3-1976FE7FFF4E}
Autodesk Material Library Base Resolution Image Library 2012-->MsiExec.exe /I{65420DC9-306E-4371-905F-F4DC3B418E52}
Autodesk Material Library Medium Resolution Image Library 2012-->MsiExec.exe /I{B5751715-EC10-43D9-8C95-62E1368433EF}
avast! Free Antivirus-->C:\Program Files\AVAST Software\Avast\aswRunDll.exe "C:\Program Files\AVAST Software\Avast\Setup\setiface.dll" RunSetup
calibre-->MsiExec.exe /I{D574C6E1-2184-42E7-9C99-0224B17BAA3A}
CCleaner-->"C:\Program Files\CCleaner\uninst.exe"
Comodo Dragon-->"C:\Program Files (x86)\Comodo\Dragon\uninstall.exe"
COMODO Internet Security-->MsiExec.exe /I{D6AB1F5B-FED6-49A9-9747-327BD28FB3C7}
Composite 2012 64-bit-->MsiExec.exe /I{EA234BC3-39FE-4734-B72F-076086889F6D}
Crystal Reports for Visual Studio-->MsiExec.exe /I{AC41D924-8C68-4BD5-A7A1-0AE4176C31A6}
DAEMON Tools Lite-->C:\Program Files (x86)\DAEMON Tools Lite\uninst.exe
Daum PotPlayer 1.5.33820 x64 Edition-->C:\Program Files\DAUM\PotPlayer\Uninstall.exe
Dotfuscator Software Services - Community Edition-->MsiExec.exe /X{41B31ABE-5A6E-498A-8F28-3BA3B8779A41}
EasySaver B9.0904.1 -->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{07300F01-89CA-4CF8-92BD-2A605EB83C95}\setup.exe" -l0x9 -removeonly
FIFA 12 (c) EA version 1-->"C:\Program Files (x86)\FIFA 12\unins000.exe"
foobar2000 v1.1-->"C:\Program Files (x86)\foobar2000\uninstall.exe" _?=C:\Program Files (x86)\foobar2000
Foxit Reader-->"C:\Program Files (x86)\Foxit Software\Foxit Reader\unins000.exe"
Google Earth-->MsiExec.exe /X{28E82311-8616-11E1-BEB0-B8AC6F97B88E}
Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
HijackThis 2.0.2-->"C:\Program Files (x86)\trend micro\HijackThis.exe" /uninstall
ImgBurn-->"C:\Program Files (x86)\ImgBurn\uninstall.exe"
Java(TM) 7 Update 5 (64-bit)-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F86417005FF}
KeePass Password Safe 1.20-->"C:\Program Files (x86)\KeePass Password Safe\unins000.exe"
K-Lite Codec Pack 9.1.0 (64-bit)-->"C:\Program Files\K-Lite Codec Pack x64\unins000.exe"
K-Lite Codec Pack 9.1.0 (Full)-->"C:\Program Files (x86)\K-Lite Codec Pack\unins000.exe"
Microsoft .NET Framework 4 Client Profile-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\Setup.exe /repair /x86 /x64 /parameterfolder Client
Microsoft .NET Framework 4 Client Profile-->MsiExec.exe /X{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}
Microsoft .NET Framework 4 Extended-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Extended\Setup.exe /repair /x86 /x64 /parameterfolder Extended
Microsoft .NET Framework 4 Extended-->MsiExec.exe /X{8E34682C-8118-31F1-BC4C-98CD9675E1C2}
Microsoft .NET Framework 4 Multi-Targeting Pack-->MsiExec.exe /I{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}
Microsoft ASP.NET MVC 2 - Visual Studio 2010 Tools-->MsiExec.exe /X{40416836-56CC-4C0E-A6AF-5C34BADCE483}
Microsoft ASP.NET MVC 2-->MsiExec.exe /X{1803A630-3C38-4D2B-9B9A-0CB37243539C}
Microsoft Help Viewer 1.0-->C:\Program Files\Microsoft Help Viewer\v1.0\Microsoft Help Viewer 1.0\install.exe
Microsoft Help Viewer 1.0-->MsiExec.exe /X{FCADA26A-5672-31DD-BF0E-BA76ECF9B02D}
Microsoft Office Access MUI (English) 2007-->MsiExec.exe /X{90120000-0015-0409-0000-0000000FF1CE}
Microsoft Office Access Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0117-0409-0000-0000000FF1CE}
Microsoft Office Enterprise 2007-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall ENTERPRISE /dll OSETUP.DLL
Microsoft Office Enterprise 2007-->MsiExec.exe /X{90120000-0030-0000-0000-0000000FF1CE}
Microsoft Office Excel MUI (English) 2007-->MsiExec.exe /X{90120000-0016-0409-0000-0000000FF1CE}
Microsoft Office Groove MUI (English) 2007-->MsiExec.exe /X{90120000-00BA-0409-0000-0000000FF1CE}
Microsoft Office Groove Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0114-0409-0000-0000000FF1CE}
Microsoft Office InfoPath MUI (English) 2007-->MsiExec.exe /X{90120000-0044-0409-0000-0000000FF1CE}
Microsoft Office Office 64-bit Components 2007-->MsiExec.exe /X{90120000-002A-0000-1000-0000000FF1CE}
Microsoft Office OneNote MUI (English) 2007-->MsiExec.exe /X{90120000-00A1-0409-0000-0000000FF1CE}
Microsoft Office Outlook MUI (English) 2007-->MsiExec.exe /X{90120000-001A-0409-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (English) 2007-->MsiExec.exe /X{90120000-0018-0409-0000-0000000FF1CE}
Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
Microsoft Office Proofing (English) 2007-->MsiExec.exe /X{90120000-002C-0409-0000-0000000FF1CE}
Microsoft Office Publisher MUI (English) 2007-->MsiExec.exe /X{90120000-0019-0409-0000-0000000FF1CE}
Microsoft Office Shared 64-bit MUI (English) 2007-->MsiExec.exe /X{90120000-002A-0409-1000-0000000FF1CE}
Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0116-0409-1000-0000000FF1CE}
Microsoft Office Shared MUI (English) 2007-->MsiExec.exe /X{90120000-006E-0409-0000-0000000FF1CE}
Microsoft Office Shared Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0115-0409-0000-0000000FF1CE}
Microsoft Office Word MUI (English) 2007-->MsiExec.exe /X{90120000-001B-0409-0000-0000000FF1CE}
Microsoft Silverlight 3 SDK-->MsiExec.exe /X{2012098D-EEE9-4769-8DD3-B038050854D4}
Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft SQL Server 2008 (64-bit)-->"C:\Program Files\Microsoft SQL Server\100\Setup Bootstrap\Release\x64\SetupARP.exe"
Microsoft SQL Server 2008 (64-bit)-->"C:\Program Files\Microsoft SQL Server\100\Setup Bootstrap\Release\x64\SetupARP.exe"
Microsoft SQL Server 2008 Browser-->MsiExec.exe /X{C688457E-03FD-4941-923B-A27F4D42A7DD}
Microsoft SQL Server 2008 Common Files-->MsiExec.exe /I{5340A3B5-3853-4745-BED2-DD9FF5371331}
Microsoft SQL Server 2008 Common Files-->MsiExec.exe /I{893F27E6-D6BE-4B9F-80E6-0ADA694A31A8}
Microsoft SQL Server 2008 Database Engine Services-->MsiExec.exe /I{FA7394B8-CE65-4F9E-AC99-F372AD365424}
Microsoft SQL Server 2008 Database Engine Services-->MsiExec.exe /I{FBD367D1-642F-47CF-B79B-9BE48FB34007}
Microsoft SQL Server 2008 Database Engine Shared-->MsiExec.exe /I{CC8BA866-16A7-4667-BA0C-C494A1E7B2BF}
Microsoft SQL Server 2008 Database Engine Shared-->MsiExec.exe /I{DF167CE3-60E7-44EA-99EC-2507C51F37AE}
Microsoft SQL Server 2008 Native Client-->MsiExec.exe /I{BBDE8A3D-64A2-43A6-95F3-C27B87DF7AC1}
Microsoft SQL Server 2008 R2 Data-Tier Application Framework-->MsiExec.exe /I{0DDCEC37-369C-484B-B16D-B4413FD42FB9}
Microsoft SQL Server 2008 R2 Data-Tier Application Project-->MsiExec.exe /I{E5AE9031-79A5-4627-9641-BEFA82819B08}
Microsoft SQL Server 2008 R2 Management Objects (x64)-->MsiExec.exe /I{DA67488A-2689-4F10-B90F-D2F6977509D6}
Microsoft SQL Server 2008 R2 Management Objects-->MsiExec.exe /I{4E968D9C-21A7-4915-B698-F7AEB913541D}
Microsoft SQL Server 2008 R2 Transact-SQL Language Service-->MsiExec.exe /I{78C3657E-742C-40B1-9F53-E5A921D40F17}
Microsoft SQL Server 2008 RsFx Driver-->MsiExec.exe /I{7ACE202B-1B01-4B43-B6AE-03D66D621CDE}
Microsoft SQL Server 2008 Setup Support Files -->MsiExec.exe /X{B40EE88B-400A-4266-A17B-E3DE64E94431}
Microsoft SQL Server Compact 3.5 SP2 ENU-->MsiExec.exe /I{3A9FC03D-C685-4831-94CF-4EDFD3749497}
Microsoft SQL Server Compact 3.5 SP2 x64 ENU-->MsiExec.exe /I{D4AD39AD-091E-4D33-BB2B-59F6FCB8ADC3}
Microsoft SQL Server Database Publishing Wizard 1.4-->MsiExec.exe /I{ACE28263-76A4-4BF5-B6F4-8BD719595969}
Microsoft SQL Server System CLR Types (x64)-->MsiExec.exe /I{4A8CE6D7-4D52-43B9-970B-03FC75FAD667}
Microsoft SQL Server System CLR Types-->MsiExec.exe /I{2A2F3AE8-246A-4252-BB26-1BEB45627074}
Microsoft SQL Server VSS Writer-->MsiExec.exe /I{0826F9E4-787E-481D-83E0-BC6A57B056D5}
Microsoft Sync Framework Runtime v1.0 SP1 (x64)-->MsiExec.exe /I{8438EC02-B8A9-462D-AC72-1B521349C001}
Microsoft Sync Framework SDK v1.0 SP1-->MsiExec.exe /I{0E3DFC64-CC49-4BE2-8C9C-58EF129675DB}
Microsoft Sync Framework Services v1.0 SP1 (x64)-->MsiExec.exe /I{034106B5-54B7-467F-B477-5B7DBB492624}
Microsoft Sync Services for ADO.NET v2.0 SP1 (x64)-->MsiExec.exe /I{1D1CEEF8-3741-45BD-8E77-963E1DEBDDD3}
Microsoft Team Foundation Server 2010 Object Model - ENU-->MsiExec.exe /I{1AB7EDC5-D891-34C5-9FF1-BE6A85ACC44B}
Microsoft Team Foundation Server 2010 Object Model - ENU-->MsiExec.exe /X{1AB7EDC5-D891-34C5-9FF1-BE6A85ACC44B}
Microsoft Visual C++ 2005 Redistributable (x64)-->MsiExec.exe /X{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}
Microsoft Visual C++ 2005 Redistributable (x64)-->MsiExec.exe /X{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{837b34e3-7c30-493c-8f6a-2b0f04e2912c}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148-->MsiExec.exe /X{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022-->MsiExec.exe /X{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148-->MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4974-->MsiExec.exe /X{B7E38540-E355-3503-AFD7-635B2F2F76E1}
Microsoft Visual C++ 2010 x64 Designtime - 10.0.30319-->MsiExec.exe /X{F5079164-1DB9-3BDA-853B-F78AF67CE071}
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219-->MsiExec.exe /X{1D8E6291-B0D5-35EC-8441-6616F567A0F7}
Microsoft Visual C++ 2010 x64 Runtime - 10.0.30319-->MsiExec.exe /X{94D70749-4281-39AC-AD90-B56A0E0A402E}
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219-->MsiExec.exe /X{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}
Microsoft Visual C++ 2010 x86 Runtime - 10.0.30319-->MsiExec.exe /X{6A86554B-8928-30E4-A53C-D7337689134D}
Microsoft Visual F# 2.0 Runtime-->MsiExec.exe /X{729A3000-BC8A-3B74-BA5D-5068FE12D70C}
Microsoft Visual Studio 2010 ADO.NET Entity Framework Tools-->MsiExec.exe /X{14DD7530-CCD2-3798-B37D-3839ED6A441C}
Microsoft Visual Studio 2010 Office Developer Tools (x64)-->MsiExec.exe /X{1CB6C387-65A7-327F-B4A5-7DDC75A291AF}
Microsoft Visual Studio 2010 Professional - ENU-->C:\Program Files (x86)\Microsoft Visual Studio 10.0\Microsoft Visual Studio 2010 Professional - ENU\setup.exe
Microsoft Visual Studio 2010 SharePoint Developer Tools-->MsiExec.exe /X{2D9FEBEE-F1B7-344F-BFDF-760E18332D96}
Microsoft Visual Studio 2010 Tools for Office Runtime (x64)-->C:\Program Files\Common Files\Microsoft Shared\VSTO\10.0\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)\install.exe
Microsoft Visual Studio 2010 Tools for Office Runtime (x64)-->MsiExec.exe /X{5D068141-189F-39E2-A052-E40D4B561256}
Microsoft Visual Studio Macro Tools-->msiexec.exe /uninstall {6CDEAD7E-F8D8-37F7-AB6F-1E22716E30F3}
Microsoft Visual Studio Macro Tools-->MsiExec.exe /X{6CDEAD7E-F8D8-37F7-AB6F-1E22716E30F3}
Microsoft_VC80_CRT_x86-->MsiExec.exe /I{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}
Microsoft_VC90_CRT_x86-->MsiExec.exe /I{08D2E121-7F6A-43EB-97FD-629B44903403}
MozBackup 1.5.1-->C:\Program Files (x86)\MozBackup\Uninstall.exe
Mozilla Thunderbird 12.0.1 (x86 sk)-->C:\Program Files (x86)\Mozilla Thunderbird\uninstall\helper.exe
Mp3tag v2.52-->C:\Program Files (x86)\Mp3tag\Mp3tagUninstall.EXE
MSVCRT Redists-->MsiExec.exe /I{D4761C4F-5ED9-11E1-9202-F04DA23A5C58}
Notepad++-->C:\Program Files (x86)\Notepad++\uninstall.exe
NVIDIA 3D Vision Controller Driver 301.42-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.0\NVI2.DLL",UninstallPackage Display.NVIRUSB
NVIDIA 3D Vision Driver 301.42-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.0\NVI2.DLL",UninstallPackage Display.3DVision
NVIDIA Graphics Driver 301.42-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.0\NVI2.DLL",UninstallPackage Display.Driver
NVIDIA PhysX System Software 9.12.0213-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.0\NVI2.DLL",UninstallPackage Display.PhysX
NVIDIA PhysX-->MsiExec.exe /X{DA909E62-3B45-4BA1-8B58-FCAEBA4BCEC9}
NVIDIA Stereoscopic 3D Driver-->"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvStInst.exe" /uninstall /ask
OCCT 4.3.1-->C:\Program Files (x86)\OCCTPT\uninst.exe
ON_OFF Charge B11.0110.1-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{3DECD372-76A1-4483-BF10-B547790A3261}\setup.exe" -l0x9 -removeonly
Opera 12.00-->"C:\Program Files\Opera x64\Opera.exe" /uninstall
PDF Settings CS6-->MsiExec.exe /I{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}
Realtek Ethernet Controller Driver-->C:\Program Files (x86)\InstallShield Installation Information\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}\Setup.Exe -runfromtemp -removeonly
Realtek High Definition Audio Driver-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\SETUP.EXE" -removeonly
RocketDock 1.3.5-->"C:\Program Files (x86)\RocketDock\unins000.exe"
Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {6AF6C62E-4E3D-33BF-A591-9E4D53BDF22F} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {E59B2174-E924-311F-8549-AD714C14664D} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368v2)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {DA36C2E5-6B34-3A6A-9C0A-7D1CC1C5A768} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {7B82A51A-768B-3A7B-ADFA-F777097A8079} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Client Profile (KB2686827)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {E40184A4-4A61-3D2E-9035-CB6E1E610E07} /parameterfolder Client
Security Update for Microsoft .NET Framework 4 Extended (KB2487367)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Extended\setup.exe /uninstallpatch {9D621E6E-E010-3C80-A055-135891134750} /parameterfolder Extended
Security Update for Microsoft .NET Framework 4 Extended (KB2656351)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Extended\setup.exe /uninstallpatch {E59B2174-E924-311F-8549-AD714C14664D} /parameterfolder Extended
Service Pack 1 for SQL Server 2008 (KB968369) (64-bit)-->"C:\Program Files\Microsoft SQL Server\100\Setup Bootstrap\Update Cache\KB968369\ServicePack\setup.exe" /Action=RemovePatch /AllInstances
Sql Server Customer Experience Improvement Program-->MsiExec.exe /I{2F14965D-567B-4E59-ADEB-0A2CC1E3ADDF}
Total Commander (Remove or Repair)-->c:\totalcmd\tcuninst.exe
Total Commander 64-bit (Remove or Repair)-->c:\totalcmd8\tcunin64.exe
TrueCrypt-->"C:\Program Files\TrueCrypt\TrueCrypt Setup.exe" /u
Update for Microsoft .NET Framework 4 Client Profile (KB2468871)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {29C7BE97-DE59-37A2-A687-2ADD5321948A} /parameterfolder Client
Update for Microsoft .NET Framework 4 Client Profile (KB2533523)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {7D799A81-5661-3159-BF92-754161CED6E6} /parameterfolder Client
Update for Microsoft .NET Framework 4 Client Profile (KB2600217)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Client\setup.exe /uninstallpatch {4DFA8287-EA36-3469-99FE-F568FEC81653} /parameterfolder Client
Update for Microsoft .NET Framework 4 Extended (KB2468871)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Extended\setup.exe /uninstallpatch {29C7BE97-DE59-37A2-A687-2ADD5321948A} /parameterfolder Extended
Update for Microsoft .NET Framework 4 Extended (KB2533523)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Extended\setup.exe /uninstallpatch {7D799A81-5661-3159-BF92-754161CED6E6} /parameterfolder Extended
Update for Microsoft .NET Framework 4 Extended (KB2600217)-->C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SetupCache\Extended\setup.exe /uninstallpatch {4DFA8287-EA36-3469-99FE-F568FEC81653} /parameterfolder Extended
Vegas Pro 11.0 (64-bit)-->MsiExec.exe /X{CF411A4F-5ED9-11E1-B971-F04DA23A5C58}
Visual Studio 2010 Prerequisites - English-->MsiExec.exe /X{662014D2-0450-37ED-ABAE-157C88127BEB}
Visual Studio 2010 Tools for SQL Server Compact 3.5 SP2 ENU-->MsiExec.exe /X{112C23F2-C036-4D40-BED4-0CB47BF5555C}
Web Deployment Tool-->MsiExec.exe /I{0F37D969-1260-419E-B308-EF7D29ABDE20}
WinRAR archiver-->C:\Program Files (x86)\WinRAR\uninstall.exe
Xilisoft Video Converter Ultimate-->C:\Program Files (x86)\Xilisoft\Video Converter Ultimate\Uninstall.exe
Xvid Video Codec-->C:\Program Files (x86)\Xvid\uninstall.exe

======Hosts File======

::1 localhost

======System event log======

Computer Name: CENTURION
Event Code: 11
Message: Custom dynamic link libraries are being loaded for every application. The system administrator should review the list of libraries to ensure they are related to trusted applications.
Record Number: 1430
Source Name: Microsoft-Windows-Wininit
Time Written: 20120716134009.522443-000
Event Type: Warning
User: NT AUTHORITY\SYSTEM

Computer Name: CENTURION
Event Code: 1073
Message: The attempt by user CENTURION\Roman to restart/shutdown computer CENTURION failed
Record Number: 970
Source Name: USER32
Time Written: 20120716115823.000000-000
Event Type: Warning
User: CENTURION\Roman

Computer Name: CENTURION
Event Code: 7030
Message: The COMODO Internet Security Helper Service service is marked as an interactive service. However, the system is configured to not allow interactive services. This service may not function properly.
Record Number: 953
Source Name: Service Control Manager
Time Written: 20120716115148.156791-000
Event Type: Error
User:

Computer Name: CENTURION
Event Code: 7030
Message: The ES lite Service for program management. service is marked as an interactive service. However, the system is configured to not allow interactive services. This service may not function properly.
Record Number: 535
Source Name: Service Control Manager
Time Written: 20120716163504.963506-000
Event Type: Error
User:

Computer Name: CENTURION
Event Code: 7023
Message: The Windows Defender service terminated with the following error:
%%-2147024882
Record Number: 320
Source Name: Service Control Manager
Time Written: 20120716160536.407124-000
Event Type: Error
User:

=====Application event log=====

Computer Name: CENTURION
Event Code: 1530
Message: Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.

DETAIL -
1 user registry handles leaked from \Registry\User\S-1-5-21-2505349729-767391317-4086070477-1000:
Process 1748 (\Device\HarddiskVolume2\Windows\SysWOW64\wbem\WmiPrvSE.exe) has opened key \REGISTRY\USER\S-1-5-21-2505349729-767391317-4086070477-1000\Control Panel\International

Record Number: 276
Source Name: Microsoft-Windows-User Profiles Service
Time Written: 20120716163920.967956-000
Event Type: Warning
User: NT AUTHORITY\SYSTEM

Computer Name: CENTURION
Event Code: 11
Message: Possible Memory Leak. Application (C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted) (PID: 808) has passed a non-NULL pointer to RPC for an [out] parameter marked [allocate(all_nodes)]. [allocate(all_nodes)] parameters are always reallocated; if the original pointer contained the address of valid memory, that memory will be leaked. The call originated on the interface with UUID ({3F31C91E-2545-4B7B-9311-9529E8BFFEF6}), Method number (20). User Action: Contact your application vendor for an updated version of the application.
Record Number: 273
Source Name: Microsoft-Windows-RPC-Events
Time Written: 20120716163911.267539-000
Event Type: Warning
User: NT AUTHORITY\LOCAL SERVICE

Computer Name: CENTURION
Event Code: 1530
Message: Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.

DETAIL -
1 user registry handles leaked from \Registry\User\S-1-5-21-2505349729-767391317-4086070477-1000:
Process 448 (\Device\HarddiskVolume1\Windows\System32\winlogon.exe) has opened key \REGISTRY\USER\S-1-5-21-2505349729-767391317-4086070477-1000

Record Number: 224
Source Name: Microsoft-Windows-User Profiles Service
Time Written: 20120716161000.426583-000
Event Type: Warning
User: NT AUTHORITY\SYSTEM

Computer Name: CENTURION
Event Code: 1008
Message: The Windows Search Service is starting up and attempting to remove the old search index {Reason: Full Index Reset}.

Record Number: 126
Source Name: Microsoft-Windows-Search
Time Written: 20120716160835.000000-000
Event Type: Warning
User:

Computer Name: CENTURION
Event Code: 1017
Message: Installation of the Proof of Purchase failed. 0xC004F050
Partial Pkey=BBBBB
ACID=?
Detailed Error[?]

Record Number: 122
Source Name: Microsoft-Windows-Security-SPP
Time Written: 20120716160834.000000-000
Event Type: Error
User:

=====Security event log=====

Computer Name: 37L4247E29-32
Event Code: 4735
Message: A security-enabled local group was changed.

Subject:
Security ID: S-1-5-18
Account Name: 37L4247E29-32$
Account Domain: WORKGROUP
Logon ID: 0x3e7

Group:
Security ID: S-1-5-32-551
Group Name: Backup Operators
Group Domain: Builtin

Changed Attributes:
SAM Account Name: -
SID History: -

Additional Information:
Privileges: -
Record Number: 5
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20120716160305.180459-000
Event Type: Audit Success
User:

Computer Name: 37L4247E29-32
Event Code: 4731
Message: A security-enabled local group was created.

Subject:
Security ID: S-1-5-18
Account Name: 37L4247E29-32$
Account Domain: WORKGROUP
Logon ID: 0x3e7

New Group:
Security ID: S-1-5-32-551
Group Name: Backup Operators
Group Domain: Builtin

Attributes:
SAM Account Name: Backup Operators
SID History: -

Additional Information:
Privileges: -
Record Number: 4
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20120716160305.164859-000
Event Type: Audit Success
User:

Computer Name: 37L4247E29-32
Event Code: 4902
Message: The Per-user audit policy table was created.

Number of Elements: 0
Policy ID: 0x30fad
Record Number: 3
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20120716160304.915258-000
Event Type: Audit Success
User:

Computer Name: 37L4247E29-32
Event Code: 4624
Message: An account was successfully logged on.

Subject:
Security ID: S-1-0-0
Account Name: -
Account Domain: -
Logon ID: 0x0

Logon Type: 0

New Logon:
Security ID: S-1-5-18
Account Name: SYSTEM
Account Domain: NT AUTHORITY
Logon ID: 0x3e7
Logon GUID: {00000000-0000-0000-0000-000000000000}

Process Information:
Process ID: 0x4
Process Name:

Network Information:
Workstation Name: -
Source Network Address: -
Source Port: -

Detailed Authentication Information:
Logon Process: -
Authentication Package: -
Transited Services: -
Package Name (NTLM only): -
Key Length: 0

This event is generated when a logon session is created. It is generated on the computer that was accessed.

The subject fields indicate the account on the local system which requested the logon. This is most commonly a service such as the Server service, or a local process such as Winlogon.exe or Services.exe.

The logon type field indicates the kind of logon that occurred. The most common types are 2 (interactive) and 3 (network).

The New Logon fields indicate the account for whom the new logon was created, i.e. the account that was logged on.

The network fields indicate where a remote logon request originated. Workstation name is not always available and may be left blank in some cases.

The authentication information fields provide detailed information about this specific logon request.
- Logon GUID is a unique identifier that can be used to correlate this event with a KDC event.
- Transited services indicate which intermediate services have participated in this logon request.
- Package name indicates which sub-protocol was used among the NTLM protocols.
- Key length indicates the length of the generated session key. This will be 0 if no session key was requested.
Record Number: 2
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20120716160302.637654-000
Event Type: Audit Success
User:

Computer Name: 37L4247E29-32
Event Code: 4608
Message: Windows is starting up.

This event is logged when LSASS.EXE starts and the auditing subsystem is initialized.
Record Number: 1
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20120716160302.544054-000
Event Type: Audit Success
User:

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"Path"=C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Calibre2\;C:\Program Files (x86)\Autodesk\Backburner\;C:\Program Files\Common Files\Autodesk Shared\;C:\Program Files (x86)\Microsoft SQL Server\100\Tools\Binn\;C:\Program Files\Microsoft SQL Server\100\Tools\Binn\;C:\Program Files\Microsoft SQL Server\100\DTS\Binn\
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
"PROCESSOR_ARCHITECTURE"=AMD64
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"USERNAME"=SYSTEM
"windir"=%SystemRoot%
"PSModulePath"=%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules\
"NUMBER_OF_PROCESSORS"=4
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=Intel64 Family 6 Model 23 Stepping 7, GenuineIntel
"PROCESSOR_REVISION"=1707
"CM2012DIR"=C:\Program Files (x86)\Common Files\Autodesk Shared\Materials\
"ILBDIR"=C:\Program Files (x86)\Common Files\Autodesk Shared\Materials\
"ILMDIR"=C:\Program Files (x86)\Common Files\Autodesk Shared\Materials\
"ADSK_3DSMAX_x64_2012"=C:\Program Files\Autodesk\3ds Max 2012\
"VS100COMNTOOLS"=C:\Program Files (x86)\Microsoft Visual Studio 10.0\Common7\Tools\
"SAFEBOOT_OPTION"=MINIMAL

-----------------EOF-----------------

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Velmi zlý stav - z hodiny na hodinu

#6 Příspěvek od motji »

Já tam nic nevidím :( . Nezkoušel jste obnovu systému?

:arrow: Stáhněte TDSSKiller http://support.kaspersky.com/downloads/ ... killer.exe
- a uložte ho na plochu.
- 2x klikněte na ikonu programu a spusťte
- dejte volbu Spustit kontrolu - pak potvrdte start sken
- pokud program najde infikovaný soubor, ukáže se Vám předvolená akce Cure, v tom případě potvrdte tlačítko Continue
- pokud bude chtít program restartovat počítač, klikněte na tlačítko Reboot Now
- pokud si restart nevyžádá, klikněte na tlačítko Report. Měl vy na Vás vyskočit log, obsah logu zkopírujte do svého topicu.
- pokud se log nezobrazí, je uložený ve Vašem kořenovém adresáři.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

roki
Návštěvník
Návštěvník
Příspěvky: 101
Registrován: 29 zář 2005 13:16

Re: Velmi zlý stav - z hodiny na hodinu

#7 Příspěvek od roki »

Tak TDSS nic nenašlo, tu je log:
11:05:22.0081 1476 TDSS rootkit removing tool 2.7.48.0 Jul 24 2012 13:16:32
11:05:22.0408 1476 ============================================================
11:05:22.0408 1476 Current date / time: 2012/08/04 11:05:22.0408
11:05:22.0408 1476 SystemInfo:
11:05:22.0408 1476
11:05:22.0408 1476 OS Version: 6.1.7601 ServicePack: 1.0
11:05:22.0408 1476 Product type: Workstation
11:05:22.0408 1476 ComputerName: CENTURION
11:05:22.0408 1476 UserName: Roman
11:05:22.0408 1476 Windows directory: C:\Windows
11:05:22.0408 1476 System windows directory: C:\Windows
11:05:22.0408 1476 Running under WOW64
11:05:22.0408 1476 Processor architecture: Intel x64
11:05:22.0408 1476 Number of processors: 4
11:05:22.0408 1476 Page size: 0x1000
11:05:22.0408 1476 Boot type: Safe boot
11:05:22.0408 1476 ============================================================
11:05:31.0129 1476 Drive \Device\Harddisk0\DR0 - Size: 0x1D1C1116000 (1863.02 Gb), SectorSize: 0x200, Cylinders: 0x3B601, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
11:05:31.0160 1476 Drive \Device\Harddisk1\DR1 - Size: 0x3A38A25E00 (232.88 Gb), SectorSize: 0x200, Cylinders: 0x76C1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
11:05:36.0651 1476 Drive \Device\Harddisk2\DR2 - Size: 0x950AF4DE00 (596.17 Gb), SectorSize: 0x200, Cylinders: 0x12ED12, SectorsPerTrack: 0x3F, TracksPerCylinder: 0x10, Type 'K0', Flags 0x00000040
11:05:36.0651 1476 ============================================================
11:05:36.0651 1476 \Device\Harddisk0\DR0:
11:05:36.0682 1476 MBR partitions:
11:05:36.0682 1476 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xE8E07800
11:05:36.0682 1476 \Device\Harddisk1\DR1:
11:05:36.0698 1476 MBR partitions:
11:05:36.0698 1476 \Device\Harddisk1\DR1\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x1D1C4542
11:05:36.0698 1476 \Device\Harddisk2\DR2:
11:05:36.0698 1476 MBR partitions:
11:05:36.0698 1476 \Device\Harddisk2\DR2\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x4A8576A1
11:05:36.0698 1476 ============================================================
11:05:36.0729 1476 C: <-> \Device\Harddisk1\DR1\Partition0
11:05:36.0792 1476 V: <-> \Device\Harddisk0\DR0\Partition0
11:05:36.0807 1476 D: <-> \Device\Harddisk2\DR2\Partition0
11:05:36.0807 1476 ============================================================
11:05:36.0807 1476 Initialize success
11:05:36.0807 1476 ============================================================
11:05:52.0173 1436 ============================================================
11:05:52.0173 1436 Scan started
11:05:52.0173 1436 Mode: Manual;
11:05:52.0173 1436 ============================================================
11:05:52.0688 1436 1394ohci (a87d604aea360176311474c87a63bb88) C:\Windows\system32\drivers\1394ohci.sys
11:05:52.0688 1436 1394ohci - ok
11:05:52.0750 1436 ACPI (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\Windows\system32\drivers\ACPI.sys
11:05:52.0750 1436 ACPI - ok
11:05:52.0782 1436 AcpiPmi (99f8e788246d495ce3794d7e7821d2ca) C:\Windows\system32\drivers\acpipmi.sys
11:05:52.0782 1436 AcpiPmi - ok
11:05:52.0828 1436 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\DRIVERS\adp94xx.sys
11:05:52.0844 1436 adp94xx - ok
11:05:52.0875 1436 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\DRIVERS\adpahci.sys
11:05:52.0875 1436 adpahci - ok
11:05:52.0891 1436 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\DRIVERS\adpu320.sys
11:05:52.0906 1436 adpu320 - ok
11:05:52.0922 1436 AeLookupSvc (4b78b431f225fd8624c5655cb1de7b61) C:\Windows\System32\aelupsvc.dll
11:05:52.0922 1436 AeLookupSvc - ok
11:05:52.0984 1436 AFD (1c7857b62de5994a75b054a9fd4c3825) C:\Windows\system32\drivers\afd.sys
11:05:53.0000 1436 AFD - ok
11:05:53.0016 1436 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys
11:05:53.0031 1436 agp440 - ok
11:05:53.0047 1436 ALG (3290d6946b5e30e70414990574883ddb) C:\Windows\System32\alg.exe
11:05:53.0047 1436 ALG - ok
11:05:53.0062 1436 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys
11:05:53.0062 1436 aliide - ok
11:05:53.0078 1436 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys
11:05:53.0078 1436 amdide - ok
11:05:53.0094 1436 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\DRIVERS\amdk8.sys
11:05:53.0094 1436 AmdK8 - ok
11:05:53.0109 1436 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\DRIVERS\amdppm.sys
11:05:53.0109 1436 AmdPPM - ok
11:05:53.0125 1436 amdsata (d4121ae6d0c0e7e13aa221aa57ef2d49) C:\Windows\system32\drivers\amdsata.sys
11:05:53.0125 1436 amdsata - ok
11:05:53.0140 1436 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\DRIVERS\amdsbs.sys
11:05:53.0156 1436 amdsbs - ok
11:05:53.0172 1436 amdxata (540daf1cea6094886d72126fd7c33048) C:\Windows\system32\drivers\amdxata.sys
11:05:53.0172 1436 amdxata - ok
11:05:53.0218 1436 AppID (89a69c3f2f319b43379399547526d952) C:\Windows\system32\drivers\appid.sys
11:05:53.0218 1436 AppID - ok
11:05:53.0234 1436 AppIDSvc (0bc381a15355a3982216f7172f545de1) C:\Windows\System32\appidsvc.dll
11:05:53.0234 1436 AppIDSvc - ok
11:05:53.0265 1436 Appinfo (3977d4a871ca0d4f2ed1e7db46829731) C:\Windows\System32\appinfo.dll
11:05:53.0265 1436 Appinfo - ok
11:05:53.0312 1436 AppleCharger (6be11ad81d4527d299f0cb5f3731aabc) C:\Windows\system32\DRIVERS\AppleCharger.sys
11:05:53.0312 1436 AppleCharger - ok
11:05:53.0312 1436 AppleChargerSrv (95ef7247c50c7241fdae39a9b3aff4ae) C:\Windows\system32\AppleChargerSrv.exe
11:05:53.0312 1436 AppleChargerSrv - ok
11:05:53.0359 1436 AppMgmt (4aba3e75a76195a3e38ed2766c962899) C:\Windows\System32\appmgmts.dll
11:05:53.0374 1436 AppMgmt - ok
11:05:53.0406 1436 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\DRIVERS\arc.sys
11:05:53.0406 1436 arc - ok
11:05:53.0406 1436 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\DRIVERS\arcsas.sys
11:05:53.0421 1436 arcsas - ok
11:05:53.0655 1436 aspnet_state (9217d874131ae6ff8f642f124f00a555) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
11:05:53.0686 1436 aspnet_state - ok
11:05:53.0718 1436 aswFsBlk (df59b8e8df0bd2e0e303778a3806a17d) C:\Windows\system32\drivers\aswFsBlk.sys
11:05:53.0718 1436 aswFsBlk - ok
11:05:53.0733 1436 aswMonFlt (f8e6ab4f876feff69250f2e0c29ef004) C:\Windows\system32\drivers\aswMonFlt.sys
11:05:53.0733 1436 aswMonFlt - ok
11:05:53.0749 1436 aswRdr (aa92bc4bcba40ca3aa3ffd1be24f0c09) C:\Windows\System32\Drivers\aswrdr2.sys
11:05:53.0749 1436 aswRdr - ok
11:05:53.0796 1436 aswSnx (f06e230e1e8ca9437a6474b7b551cd37) C:\Windows\system32\drivers\aswSnx.sys
11:05:53.0811 1436 aswSnx - ok
11:05:53.0858 1436 aswSP (3610ca74a69e380424f0452dec5c1317) C:\Windows\system32\drivers\aswSP.sys
11:05:53.0874 1436 aswSP - ok
11:05:53.0889 1436 aswTdi (87de3e31cb0091d22351349869324065) C:\Windows\system32\drivers\aswTdi.sys
11:05:53.0889 1436 aswTdi - ok
11:05:53.0936 1436 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys
11:05:53.0936 1436 AsyncMac - ok
11:05:53.0967 1436 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys
11:05:53.0967 1436 atapi - ok
11:05:54.0030 1436 AudioEndpointBuilder (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll
11:05:54.0045 1436 AudioEndpointBuilder - ok
11:05:54.0045 1436 AudioSrv (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll
11:05:54.0045 1436 AudioSrv - ok
11:05:54.0186 1436 avast! Antivirus (2f7c0f3e39c45e0127fb78b2f18a41f3) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
11:05:54.0186 1436 avast! Antivirus - ok
11:05:54.0232 1436 AxInstSV (a6bf31a71b409dfa8cac83159e1e2aff) C:\Windows\System32\AxInstSV.dll
11:05:54.0232 1436 AxInstSV - ok
11:05:54.0295 1436 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\DRIVERS\bxvbda.sys
11:05:54.0310 1436 b06bdrv - ok
11:05:54.0342 1436 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys
11:05:54.0357 1436 b57nd60a - ok
11:05:54.0388 1436 BDESVC (fde360167101b4e45a96f939f388aeb0) C:\Windows\System32\bdesvc.dll
11:05:54.0388 1436 BDESVC - ok
11:05:54.0404 1436 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys
11:05:54.0404 1436 Beep - ok
11:05:54.0466 1436 BFE (82974d6a2fd19445cc5171fc378668a4) C:\Windows\System32\bfe.dll
11:05:54.0482 1436 BFE - ok
11:05:54.0544 1436 BITS (1ea7969e3271cbc59e1730697dc74682) C:\Windows\System32\qmgr.dll
11:05:54.0591 1436 BITS - ok
11:05:54.0700 1436 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\DRIVERS\blbdrive.sys
11:05:54.0700 1436 blbdrive - ok
11:05:54.0747 1436 bowser (6c02a83164f5cc0a262f4199f0871cf5) C:\Windows\system32\DRIVERS\bowser.sys
11:05:54.0747 1436 bowser - ok
11:05:54.0747 1436 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\DRIVERS\BrFiltLo.sys
11:05:54.0763 1436 BrFiltLo - ok
11:05:54.0763 1436 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\DRIVERS\BrFiltUp.sys
11:05:54.0763 1436 BrFiltUp - ok
11:05:54.0810 1436 Browser (8ef0d5c41ec907751b8429162b1239ed) C:\Windows\System32\browser.dll
11:05:54.0810 1436 Browser - ok
11:05:54.0841 1436 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys
11:05:54.0841 1436 Brserid - ok
11:05:54.0856 1436 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys
11:05:54.0856 1436 BrSerWdm - ok
11:05:54.0856 1436 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys
11:05:54.0856 1436 BrUsbMdm - ok
11:05:54.0856 1436 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys
11:05:54.0856 1436 BrUsbSer - ok
11:05:54.0872 1436 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\DRIVERS\bthmodem.sys
11:05:54.0872 1436 BTHMODEM - ok
11:05:54.0903 1436 bthserv (95f9c2976059462cbbf227f7aab10de9) C:\Windows\system32\bthserv.dll
11:05:54.0903 1436 bthserv - ok
11:05:54.0919 1436 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys
11:05:54.0934 1436 cdfs - ok
11:05:54.0981 1436 cdrom (f036ce71586e93d94dab220d7bdf4416) C:\Windows\system32\drivers\cdrom.sys
11:05:54.0981 1436 cdrom - ok
11:05:55.0028 1436 CertPropSvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll
11:05:55.0028 1436 CertPropSvc - ok
11:05:55.0044 1436 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\DRIVERS\circlass.sys
11:05:55.0044 1436 circlass - ok
11:05:55.0075 1436 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys
11:05:55.0090 1436 CLFS - ok
11:05:55.0168 1436 clr_optimization_v2.0.50727_32 (d88040f816fda31c3b466f0fa0918f29) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
11:05:55.0184 1436 clr_optimization_v2.0.50727_32 - ok
11:05:55.0262 1436 clr_optimization_v2.0.50727_64 (d1ceea2b47cb998321c579651ce3e4f8) C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
11:05:55.0262 1436 clr_optimization_v2.0.50727_64 - ok
11:05:55.0480 1436 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
11:05:55.0605 1436 clr_optimization_v4.0.30319_32 - ok
11:05:55.0777 1436 clr_optimization_v4.0.30319_64 (c6f9af94dcd58122a4d7e89db6bed29d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
11:05:55.0808 1436 clr_optimization_v4.0.30319_64 - ok
11:05:55.0855 1436 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\DRIVERS\CmBatt.sys
11:05:55.0855 1436 CmBatt - ok
11:05:56.0073 1436 cmdAgent (cee48ccc4d561ddb19c72f9fb55d28d5) C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
11:05:56.0151 1436 cmdAgent - ok
11:05:56.0432 1436 cmdGuard (0599d5a458d4e0e37ab84e9d1c5c73e5) C:\Windows\system32\DRIVERS\cmdguard.sys
11:05:56.0448 1436 cmdGuard - ok
11:05:56.0479 1436 cmdHlp (2d3e08c7106f748f9eff3dec14142d3e) C:\Windows\system32\DRIVERS\cmdhlp.sys
11:05:56.0479 1436 cmdHlp - ok
11:05:56.0510 1436 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys
11:05:56.0510 1436 cmdide - ok
11:05:56.0557 1436 CNG (9ac4f97c2d3e93367e2148ea940cd2cd) C:\Windows\system32\Drivers\cng.sys
11:05:56.0572 1436 CNG - ok
11:05:56.0604 1436 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\DRIVERS\compbatt.sys
11:05:56.0604 1436 Compbatt - ok
11:05:56.0635 1436 CompositeBus (03edb043586cceba243d689bdda370a8) C:\Windows\system32\drivers\CompositeBus.sys
11:05:56.0635 1436 CompositeBus - ok
11:05:56.0635 1436 COMSysApp - ok
11:05:56.0650 1436 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\DRIVERS\crcdisk.sys
11:05:56.0650 1436 crcdisk - ok
11:05:56.0682 1436 CryptSvc (4f5414602e2544a4554d95517948b705) C:\Windows\system32\cryptsvc.dll
11:05:56.0697 1436 CryptSvc - ok
11:05:56.0744 1436 CSC (54da3dfd29ed9f1619b6f53f3ce55e49) C:\Windows\system32\drivers\csc.sys
11:05:56.0760 1436 CSC - ok
11:05:56.0806 1436 CscService (3ab183ab4d2c79dcf459cd2c1266b043) C:\Windows\System32\cscsvc.dll
11:05:56.0822 1436 CscService - ok
11:05:56.0884 1436 DcomLaunch (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll
11:05:56.0900 1436 DcomLaunch - ok
11:05:56.0931 1436 defragsvc (3cec7631a84943677aa8fa8ee5b6b43d) C:\Windows\System32\defragsvc.dll
11:05:56.0947 1436 defragsvc - ok
11:05:57.0040 1436 DfsC (9bb2ef44eaa163b29c4a4587887a0fe4) C:\Windows\system32\Drivers\dfsc.sys
11:05:57.0040 1436 DfsC - ok
11:05:57.0087 1436 Dhcp (43d808f5d9e1a18e5eeb5ebc83969e4e) C:\Windows\system32\dhcpcore.dll
11:05:57.0103 1436 Dhcp - ok
11:05:57.0134 1436 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys
11:05:57.0134 1436 discache - ok
11:05:57.0150 1436 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\DRIVERS\disk.sys
11:05:57.0150 1436 Disk - ok
11:05:57.0181 1436 Dnscache (16835866aaa693c7d7fceba8fff706e4) C:\Windows\System32\dnsrslvr.dll
11:05:57.0196 1436 Dnscache - ok
11:05:57.0228 1436 dot3svc (b1fb3ddca0fdf408750d5843591afbc6) C:\Windows\System32\dot3svc.dll
11:05:57.0243 1436 dot3svc - ok
11:05:57.0259 1436 DPS (b26f4f737e8f9df4f31af6cf31d05820) C:\Windows\system32\dps.dll
11:05:57.0274 1436 DPS - ok
11:05:57.0462 1436 DragonUpdater (7b8ba06b85ae250df996dcee2b31dd74) C:\Program Files (x86)\Comodo\Dragon\dragon_updater.exe
11:05:57.0508 1436 DragonUpdater - ok
11:05:57.0540 1436 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys
11:05:57.0540 1436 drmkaud - ok
11:05:57.0586 1436 dtsoftbus01 (46571ed73ae84469dca53081d33cf3c8) C:\Windows\system32\DRIVERS\dtsoftbus01.sys
11:05:57.0586 1436 dtsoftbus01 - ok
11:05:57.0649 1436 DXGKrnl (f5bee30450e18e6b83a5012c100616fd) C:\Windows\System32\drivers\dxgkrnl.sys
11:05:57.0696 1436 DXGKrnl - ok
11:05:57.0727 1436 EapHost (e2dda8726da9cb5b2c4000c9018a9633) C:\Windows\System32\eapsvc.dll
11:05:57.0727 1436 EapHost - ok
11:05:57.0852 1436 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\DRIVERS\evbda.sys
11:05:57.0914 1436 ebdrv - ok
11:05:58.0101 1436 EFS (c118a82cd78818c29ab228366ebf81c3) C:\Windows\System32\lsass.exe
11:05:58.0101 1436 EFS - ok
11:05:58.0164 1436 ehRecvr (c4002b6b41975f057d98c439030cea07) C:\Windows\ehome\ehRecvr.exe
11:05:58.0179 1436 ehRecvr - ok
11:05:58.0210 1436 ehSched (4705e8ef9934482c5bb488ce28afc681) C:\Windows\ehome\ehsched.exe
11:05:58.0210 1436 ehSched - ok
11:05:58.0335 1436 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\DRIVERS\elxstor.sys
11:05:58.0351 1436 elxstor - ok
11:05:58.0366 1436 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\drivers\errdev.sys
11:05:58.0366 1436 ErrDev - ok
11:05:58.0460 1436 ES lite Service (b8fa96995726d1fa58476e352c02ad82) C:\Program Files (x86)\Gigabyte\EasySaver\ESSVR.EXE
11:05:58.0460 1436 ES lite Service - ok
11:05:58.0507 1436 EventSystem (4166f82be4d24938977dd1746be9b8a0) C:\Windows\system32\es.dll
11:05:58.0522 1436 EventSystem - ok
11:05:58.0538 1436 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys
11:05:58.0538 1436 exfat - ok
11:05:58.0554 1436 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys
11:05:58.0569 1436 fastfat - ok
11:05:58.0616 1436 Fax (dbefd454f8318a0ef691fdd2eaab44eb) C:\Windows\system32\fxssvc.exe
11:05:58.0632 1436 Fax - ok
11:05:58.0647 1436 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\DRIVERS\fdc.sys
11:05:58.0647 1436 fdc - ok
11:05:58.0663 1436 fdPHost (0438cab2e03f4fb61455a7956026fe86) C:\Windows\system32\fdPHost.dll
11:05:58.0663 1436 fdPHost - ok
11:05:58.0678 1436 FDResPub (802496cb59a30349f9a6dd22d6947644) C:\Windows\system32\fdrespub.dll
11:05:58.0678 1436 FDResPub - ok
11:05:58.0694 1436 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys
11:05:58.0694 1436 FileInfo - ok
11:05:58.0694 1436 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys
11:05:58.0694 1436 Filetrace - ok
11:05:58.0834 1436 FLEXnet Licensing Service 64 (5cee6cd43ae5844c49300ea0b1e557ee) C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
11:05:58.0881 1436 FLEXnet Licensing Service 64 - ok
11:05:59.0146 1436 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\DRIVERS\flpydisk.sys
11:05:59.0146 1436 flpydisk - ok
11:05:59.0178 1436 FltMgr (da6b67270fd9db3697b20fce94950741) C:\Windows\system32\drivers\fltmgr.sys
11:05:59.0193 1436 FltMgr - ok
11:05:59.0256 1436 FontCache (5c4cb4086fb83115b153e47add961a0c) C:\Windows\system32\FntCache.dll
11:05:59.0287 1436 FontCache - ok
11:05:59.0334 1436 FontCache3.0.0.0 (a8b7f3818ab65695e3a0bb3279f6dce6) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
11:05:59.0334 1436 FontCache3.0.0.0 - ok
11:05:59.0427 1436 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys
11:05:59.0427 1436 FsDepends - ok
11:05:59.0458 1436 Fs_Rec (6bd9295cc032dd3077c671fccf579a7b) C:\Windows\system32\drivers\Fs_Rec.sys
11:05:59.0458 1436 Fs_Rec - ok
11:05:59.0505 1436 fvevol (1f7b25b858fa27015169fe95e54108ed) C:\Windows\system32\DRIVERS\fvevol.sys
11:05:59.0521 1436 fvevol - ok
11:05:59.0536 1436 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\DRIVERS\gagp30kx.sys
11:05:59.0536 1436 gagp30kx - ok
11:05:59.0568 1436 gdrv (7907e14f9bcf3a4689c9a74a1a873cb6) C:\Windows\gdrv.sys
11:05:59.0568 1436 gdrv - ok
11:05:59.0614 1436 gpsvc (277bbc7e1aa1ee957f573a10eca7ef3a) C:\Windows\System32\gpsvc.dll
11:05:59.0630 1436 gpsvc - ok
11:05:59.0786 1436 gupdate (506708142bc63daba64f2d3ad1dcd5bf) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
11:05:59.0802 1436 gupdate - ok
11:05:59.0817 1436 gupdatem (506708142bc63daba64f2d3ad1dcd5bf) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
11:05:59.0817 1436 gupdatem - ok
11:05:59.0833 1436 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys
11:05:59.0833 1436 hcw85cir - ok
11:05:59.0895 1436 HdAudAddService (975761c778e33cd22498059b91e7373a) C:\Windows\system32\drivers\HdAudio.sys
11:05:59.0911 1436 HdAudAddService - ok
11:05:59.0942 1436 HDAudBus (97bfed39b6b79eb12cddbfeed51f56bb) C:\Windows\system32\drivers\HDAudBus.sys
11:05:59.0942 1436 HDAudBus - ok
11:05:59.0958 1436 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\DRIVERS\HidBatt.sys
11:05:59.0958 1436 HidBatt - ok
11:05:59.0958 1436 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\DRIVERS\hidbth.sys
11:05:59.0973 1436 HidBth - ok
11:05:59.0973 1436 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\DRIVERS\hidir.sys
11:05:59.0973 1436 HidIr - ok
11:05:59.0989 1436 hidserv (bd9eb3958f213f96b97b1d897dee006d) C:\Windows\system32\hidserv.dll
11:06:00.0004 1436 hidserv - ok
11:06:00.0051 1436 HidUsb (9592090a7e2b61cd582b612b6df70536) C:\Windows\system32\drivers\hidusb.sys
11:06:00.0051 1436 HidUsb - ok
11:06:00.0067 1436 hkmsvc (387e72e739e15e3d37907a86d9ff98e2) C:\Windows\system32\kmsvc.dll
11:06:00.0082 1436 hkmsvc - ok
11:06:00.0114 1436 HomeGroupListener (efdfb3dd38a4376f93e7985173813abd) C:\Windows\system32\ListSvc.dll
11:06:00.0129 1436 HomeGroupListener - ok
11:06:00.0176 1436 HomeGroupProvider (908acb1f594274965a53926b10c81e89) C:\Windows\system32\provsvc.dll
11:06:00.0176 1436 HomeGroupProvider - ok
11:06:00.0207 1436 HpSAMD (39d2abcd392f3d8a6dce7b60ae7b8efc) C:\Windows\system32\drivers\HpSAMD.sys
11:06:00.0223 1436 HpSAMD - ok
11:06:00.0270 1436 HTTP (0ea7de1acb728dd5a369fd742d6eee28) C:\Windows\system32\drivers\HTTP.sys
11:06:00.0301 1436 HTTP - ok
11:06:00.0332 1436 hwpolicy (a5462bd6884960c9dc85ed49d34ff392) C:\Windows\system32\drivers\hwpolicy.sys
11:06:00.0332 1436 hwpolicy - ok
11:06:00.0379 1436 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\drivers\i8042prt.sys
11:06:00.0379 1436 i8042prt - ok
11:06:00.0426 1436 iaStorV (aaaf44db3bd0b9d1fb6969b23ecc8366) C:\Windows\system32\drivers\iaStorV.sys
11:06:00.0426 1436 iaStorV - ok
11:06:00.0535 1436 idsvc (5988fc40f8db5b0739cd1e3a5d0d78bd) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
11:06:00.0550 1436 idsvc - ok
11:06:00.0582 1436 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\DRIVERS\iirsp.sys
11:06:00.0582 1436 iirsp - ok
11:06:00.0628 1436 IKEEXT (fcd84c381e0140af901e58d48882d26b) C:\Windows\System32\ikeext.dll
11:06:00.0660 1436 IKEEXT - ok
11:06:00.0722 1436 inspect (efff0afd27cc97bf0e5e0bab78419de7) C:\Windows\system32\DRIVERS\inspect.sys
11:06:00.0738 1436 inspect - ok
11:06:00.0847 1436 IntcAzAudAddService (392d5c87f282e8e36df5154418a7bb20) C:\Windows\system32\drivers\RTKVHD64.sys
11:06:00.0925 1436 IntcAzAudAddService - ok
11:06:01.0190 1436 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\drivers\intelide.sys
11:06:01.0190 1436 intelide - ok
11:06:01.0237 1436 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys
11:06:01.0237 1436 intelppm - ok
11:06:01.0252 1436 IPBusEnum (098a91c54546a3b878dad6a7e90a455b) C:\Windows\system32\ipbusenum.dll
11:06:01.0252 1436 IPBusEnum - ok
11:06:01.0284 1436 IpFilterDriver (c9f0e1bd74365a8771590e9008d22ab6) C:\Windows\system32\DRIVERS\ipfltdrv.sys
11:06:01.0284 1436 IpFilterDriver - ok
11:06:01.0330 1436 iphlpsvc (a34a587fffd45fa649fba6d03784d257) C:\Windows\System32\iphlpsvc.dll
11:06:01.0346 1436 iphlpsvc - ok
11:06:01.0377 1436 IPMIDRV (0fc1aea580957aa8817b8f305d18ca3a) C:\Windows\system32\drivers\IPMIDrv.sys
11:06:01.0377 1436 IPMIDRV - ok
11:06:01.0393 1436 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys
11:06:01.0393 1436 IPNAT - ok
11:06:01.0408 1436 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys
11:06:01.0408 1436 IRENUM - ok
11:06:01.0440 1436 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\drivers\isapnp.sys
11:06:01.0440 1436 isapnp - ok
11:06:01.0471 1436 iScsiPrt (d931d7309deb2317035b07c9f9e6b0bd) C:\Windows\system32\drivers\msiscsi.sys
11:06:01.0486 1436 iScsiPrt - ok
11:06:01.0502 1436 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\drivers\kbdclass.sys
11:06:01.0502 1436 kbdclass - ok
11:06:01.0533 1436 kbdhid (0705eff5b42a9db58548eec3b26bb484) C:\Windows\system32\drivers\kbdhid.sys
11:06:01.0533 1436 kbdhid - ok
11:06:01.0564 1436 KeyIso (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
11:06:01.0564 1436 KeyIso - ok
11:06:01.0580 1436 KSecDD (97a7070aea4c058b6418519e869a63b4) C:\Windows\system32\Drivers\ksecdd.sys
11:06:01.0580 1436 KSecDD - ok
11:06:01.0642 1436 KSecPkg (26c43a7c2862447ec59deda188d1da07) C:\Windows\system32\Drivers\ksecpkg.sys
11:06:01.0642 1436 KSecPkg - ok
11:06:01.0658 1436 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys
11:06:01.0658 1436 ksthunk - ok
11:06:01.0689 1436 KtmRm (6ab66e16aa859232f64deb66887a8c9c) C:\Windows\system32\msdtckrm.dll
11:06:01.0705 1436 KtmRm - ok
11:06:01.0736 1436 LanmanServer (d9f42719019740baa6d1c6d536cbdaa6) C:\Windows\system32\srvsvc.dll
11:06:01.0736 1436 LanmanServer - ok
11:06:01.0767 1436 LanmanWorkstation (851a1382eed3e3a7476db004f4ee3e1a) C:\Windows\System32\wkssvc.dll
11:06:01.0783 1436 LanmanWorkstation - ok
11:06:01.0814 1436 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys
11:06:01.0814 1436 lltdio - ok
11:06:01.0830 1436 lltdsvc (c1185803384ab3feed115f79f109427f) C:\Windows\System32\lltdsvc.dll
11:06:01.0845 1436 lltdsvc - ok
11:06:01.0845 1436 lmhosts (f993a32249b66c9d622ea5592a8b76b8) C:\Windows\System32\lmhsvc.dll
11:06:01.0845 1436 lmhosts - ok
11:06:01.0876 1436 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\DRIVERS\lsi_fc.sys
11:06:01.0876 1436 LSI_FC - ok
11:06:01.0892 1436 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\DRIVERS\lsi_sas.sys
11:06:01.0892 1436 LSI_SAS - ok
11:06:01.0892 1436 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\DRIVERS\lsi_sas2.sys
11:06:01.0908 1436 LSI_SAS2 - ok
11:06:01.0908 1436 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\DRIVERS\lsi_scsi.sys
11:06:01.0908 1436 LSI_SCSI - ok
11:06:01.0923 1436 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys
11:06:01.0923 1436 luafv - ok
11:06:01.0954 1436 Mcx2Svc (0be09cd858abf9df6ed259d57a1a1663) C:\Windows\system32\Mcx2Svc.dll
11:06:01.0970 1436 Mcx2Svc - ok
11:06:01.0970 1436 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\DRIVERS\megasas.sys
11:06:01.0970 1436 megasas - ok
11:06:02.0001 1436 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\DRIVERS\MegaSR.sys
11:06:02.0001 1436 MegaSR - ok
11:06:02.0298 1436 mi-raysat_3dsmax2012_64 (0af89452a8ce3928168f4e5b2208c68b) C:\Program Files\Autodesk\3ds Max 2012\mentalimages\satellite\raysat_3dsmax2012_64server.exe
11:06:02.0313 1436 mi-raysat_3dsmax2012_64 - ok
11:06:02.0547 1436 Microsoft Office Groove Audit Service (fafe367d032ed82e9332b4c741a20216) C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe
11:06:02.0547 1436 Microsoft Office Groove Audit Service - ok
11:06:02.0578 1436 MMCSS (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll
11:06:02.0594 1436 MMCSS - ok
11:06:02.0610 1436 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys
11:06:02.0610 1436 Modem - ok
11:06:02.0625 1436 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys
11:06:02.0625 1436 monitor - ok
11:06:02.0656 1436 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\drivers\mouclass.sys
11:06:02.0656 1436 mouclass - ok
11:06:02.0672 1436 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys
11:06:02.0672 1436 mouhid - ok
11:06:02.0703 1436 mountmgr (32e7a3d591d671a6df2db515a5cbe0fa) C:\Windows\system32\drivers\mountmgr.sys
11:06:02.0719 1436 mountmgr - ok
11:06:02.0734 1436 mpio (a44b420d30bd56e145d6a2bc8768ec58) C:\Windows\system32\drivers\mpio.sys
11:06:02.0734 1436 mpio - ok
11:06:02.0750 1436 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys
11:06:02.0750 1436 mpsdrv - ok
11:06:02.0797 1436 MpsSvc (54ffc9c8898113ace189d4aa7199d2c1) C:\Windows\system32\mpssvc.dll
11:06:02.0828 1436 MpsSvc - ok
11:06:02.0844 1436 MRxDAV (dc722758b8261e1abafd31a3c0a66380) C:\Windows\system32\drivers\mrxdav.sys
11:06:02.0859 1436 MRxDAV - ok
11:06:02.0890 1436 mrxsmb (a5d9106a73dc88564c825d317cac68ac) C:\Windows\system32\DRIVERS\mrxsmb.sys
11:06:02.0906 1436 mrxsmb - ok
11:06:02.0937 1436 mrxsmb10 (d711b3c1d5f42c0c2415687be09fc163) C:\Windows\system32\DRIVERS\mrxsmb10.sys
11:06:02.0937 1436 mrxsmb10 - ok
11:06:02.0953 1436 mrxsmb20 (9423e9d355c8d303e76b8cfbd8a5c30c) C:\Windows\system32\DRIVERS\mrxsmb20.sys
11:06:02.0968 1436 mrxsmb20 - ok
11:06:02.0984 1436 msahci (c25f0bafa182cbca2dd3c851c2e75796) C:\Windows\system32\drivers\msahci.sys
11:06:02.0984 1436 msahci - ok
11:06:03.0015 1436 msdsm (db801a638d011b9633829eb6f663c900) C:\Windows\system32\drivers\msdsm.sys
11:06:03.0015 1436 msdsm - ok
11:06:03.0046 1436 MSDTC (de0ece52236cfa3ed2dbfc03f28253a8) C:\Windows\System32\msdtc.exe
11:06:03.0046 1436 MSDTC - ok
11:06:03.0093 1436 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys
11:06:03.0093 1436 Msfs - ok
11:06:03.0109 1436 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys
11:06:03.0109 1436 mshidkmdf - ok
11:06:03.0124 1436 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\drivers\msisadrv.sys
11:06:03.0124 1436 msisadrv - ok
11:06:03.0171 1436 MSiSCSI (808e98ff49b155c522e6400953177b08) C:\Windows\system32\iscsiexe.dll
11:06:03.0171 1436 MSiSCSI - ok
11:06:03.0187 1436 msiserver - ok
11:06:03.0187 1436 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys
11:06:03.0202 1436 MSKSSRV - ok
11:06:03.0218 1436 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys
11:06:03.0218 1436 MSPCLOCK - ok
11:06:03.0218 1436 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys
11:06:03.0218 1436 MSPQM - ok
11:06:03.0265 1436 MsRPC (759a9eeb0fa9ed79da1fb7d4ef78866d) C:\Windows\system32\drivers\MsRPC.sys
11:06:03.0280 1436 MsRPC - ok
11:06:03.0327 1436 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\drivers\mssmbios.sys
11:06:03.0327 1436 mssmbios - ok
11:06:03.0468 1436 MSSQL$SQLEXPRESS - ok
11:06:03.0561 1436 MSSQLServerADHelper100 (7a2a8c975356858eb38466a6b1592e8d) C:\Program Files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE
11:06:03.0577 1436 MSSQLServerADHelper100 - ok
11:06:03.0608 1436 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys
11:06:03.0608 1436 MSTEE - ok
11:06:03.0608 1436 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\DRIVERS\MTConfig.sys
11:06:03.0608 1436 MTConfig - ok
11:06:03.0624 1436 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys
11:06:03.0624 1436 Mup - ok
11:06:03.0655 1436 napagent (582ac6d9873e31dfa28a4547270862dd) C:\Windows\system32\qagentRT.dll
11:06:03.0670 1436 napagent - ok
11:06:03.0717 1436 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys
11:06:03.0717 1436 NativeWifiP - ok
11:06:03.0780 1436 NDIS (79b47fd40d9a817e932f9d26fac0a81c) C:\Windows\system32\drivers\ndis.sys
11:06:03.0826 1436 NDIS - ok
11:06:03.0842 1436 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys
11:06:03.0842 1436 NdisCap - ok
11:06:03.0858 1436 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys
11:06:03.0858 1436 NdisTapi - ok
11:06:03.0873 1436 Ndisuio (136185f9fb2cc61e573e676aa5402356) C:\Windows\system32\DRIVERS\ndisuio.sys
11:06:03.0873 1436 Ndisuio - ok
11:06:03.0904 1436 NdisWan (53f7305169863f0a2bddc49e116c2e11) C:\Windows\system32\DRIVERS\ndiswan.sys
11:06:03.0920 1436 NdisWan - ok
11:06:03.0951 1436 NDProxy (015c0d8e0e0421b4cfd48cffe2825879) C:\Windows\system32\drivers\NDProxy.sys
11:06:03.0951 1436 NDProxy - ok
11:06:03.0967 1436 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys
11:06:03.0967 1436 NetBIOS - ok
11:06:03.0998 1436 NetBT (09594d1089c523423b32a4229263f068) C:\Windows\system32\DRIVERS\netbt.sys
11:06:03.0998 1436 NetBT - ok
11:06:04.0045 1436 Netlogon (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
11:06:04.0045 1436 Netlogon - ok
11:06:04.0092 1436 Netman (847d3ae376c0817161a14a82c8922a9e) C:\Windows\System32\netman.dll
11:06:04.0092 1436 Netman - ok
11:06:04.0341 1436 NetMsmqActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
11:06:04.0372 1436 NetMsmqActivator - ok
11:06:04.0372 1436 NetPipeActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
11:06:04.0372 1436 NetPipeActivator - ok
11:06:04.0404 1436 netprofm (5f28111c648f1e24f7dbc87cdeb091b8) C:\Windows\System32\netprofm.dll
11:06:04.0435 1436 netprofm - ok
11:06:04.0435 1436 NetTcpActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
11:06:04.0435 1436 NetTcpActivator - ok
11:06:04.0435 1436 NetTcpPortSharing (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
11:06:04.0435 1436 NetTcpPortSharing - ok
11:06:04.0575 1436 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\DRIVERS\nfrd960.sys
11:06:04.0575 1436 nfrd960 - ok
11:06:04.0622 1436 NlaSvc (1ee99a89cc788ada662441d1e9830529) C:\Windows\System32\nlasvc.dll
11:06:04.0638 1436 NlaSvc - ok
11:06:04.0638 1436 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys
11:06:04.0638 1436 Npfs - ok
11:06:04.0669 1436 nsi (d54bfdf3e0c953f823b3d0bfe4732528) C:\Windows\system32\nsisvc.dll
11:06:04.0669 1436 nsi - ok
11:06:04.0669 1436 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys
11:06:04.0669 1436 nsiproxy - ok
11:06:04.0747 1436 Ntfs (a2f74975097f52a00745f9637451fdd8) C:\Windows\system32\drivers\Ntfs.sys
11:06:04.0794 1436 Ntfs - ok
11:06:05.0059 1436 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys
11:06:05.0059 1436 Null - ok
11:06:05.0527 1436 nvlddmkm (ba0b4889c40380a01ecdf84c227a89c9) C:\Windows\system32\DRIVERS\nvlddmkm.sys
11:06:05.0792 1436 nvlddmkm - ok
11:06:06.0057 1436 nvraid (0a92cb65770442ed0dc44834632f66ad) C:\Windows\system32\drivers\nvraid.sys
11:06:06.0073 1436 nvraid - ok
11:06:06.0088 1436 nvstor (dab0e87525c10052bf65f06152f37e4a) C:\Windows\system32\drivers\nvstor.sys
11:06:06.0088 1436 nvstor - ok
11:06:06.0166 1436 nvsvc (06633cf95bea62164c3bfca24bce6b11) C:\Windows\system32\nvvsvc.exe
11:06:06.0182 1436 nvsvc - ok
11:06:06.0213 1436 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\drivers\nv_agp.sys
11:06:06.0213 1436 nv_agp - ok
11:06:06.0338 1436 odserv (84de1dd996b48b05ace31ad015fa108a) C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
11:06:06.0354 1436 odserv - ok
11:06:06.0369 1436 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\drivers\ohci1394.sys
11:06:06.0369 1436 ohci1394 - ok
11:06:06.0447 1436 ose (5a432a042dae460abe7199b758e8606c) C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
11:06:06.0447 1436 ose - ok
11:06:06.0478 1436 p2pimsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll
11:06:06.0494 1436 p2pimsvc - ok
11:06:06.0510 1436 p2psvc (927463ecb02179f88e4b9a17568c63c3) C:\Windows\system32\p2psvc.dll
11:06:06.0525 1436 p2psvc - ok
11:06:06.0556 1436 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\DRIVERS\parport.sys
11:06:06.0556 1436 Parport - ok
11:06:06.0572 1436 partmgr (e9766131eeade40a27dc27d2d68fba9c) C:\Windows\system32\drivers\partmgr.sys
11:06:06.0572 1436 partmgr - ok
11:06:06.0588 1436 PcaSvc (3aeaa8b561e63452c655dc0584922257) C:\Windows\System32\pcasvc.dll
11:06:06.0588 1436 PcaSvc - ok
11:06:06.0619 1436 pci (94575c0571d1462a0f70bde6bd6ee6b3) C:\Windows\system32\drivers\pci.sys
11:06:06.0619 1436 pci - ok
11:06:06.0634 1436 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\drivers\pciide.sys
11:06:06.0634 1436 pciide - ok
11:06:06.0650 1436 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\DRIVERS\pcmcia.sys
11:06:06.0666 1436 pcmcia - ok
11:06:06.0681 1436 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys
11:06:06.0681 1436 pcw - ok
11:06:06.0697 1436 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys
11:06:06.0728 1436 PEAUTH - ok
11:06:06.0775 1436 PeerDistSvc (b9b0a4299dd2d76a4243f75fd54dc680) C:\Windows\system32\peerdistsvc.dll
11:06:06.0806 1436 PeerDistSvc - ok
11:06:06.0993 1436 PerfHost (e495e408c93141e8fc72dc0c6046ddfa) C:\Windows\SysWow64\perfhost.exe
11:06:07.0024 1436 PerfHost - ok
11:06:07.0227 1436 pla (c7cf6a6e137463219e1259e3f0f0dd6c) C:\Windows\system32\pla.dll
11:06:07.0258 1436 pla - ok
11:06:07.0321 1436 PlugPlay (25fbdef06c4d92815b353f6e792c8129) C:\Windows\system32\umpnpmgr.dll
11:06:07.0336 1436 PlugPlay - ok
11:06:07.0352 1436 PNRPAutoReg (7195581cec9bb7d12abe54036acc2e38) C:\Windows\system32\pnrpauto.dll
11:06:07.0352 1436 PNRPAutoReg - ok
11:06:07.0383 1436 PNRPsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll
11:06:07.0383 1436 PNRPsvc - ok
11:06:07.0430 1436 PolicyAgent (4f15d75adf6156bf56eced6d4a55c389) C:\Windows\System32\ipsecsvc.dll
11:06:07.0446 1436 PolicyAgent - ok
11:06:07.0461 1436 Power (6ba9d927dded70bd1a9caded45f8b184) C:\Windows\system32\umpo.dll
11:06:07.0477 1436 Power - ok
11:06:07.0570 1436 PptpMiniport (f92a2c41117a11a00be01ca01a7fcde9) C:\Windows\system32\DRIVERS\raspptp.sys
11:06:07.0586 1436 PptpMiniport - ok
11:06:07.0602 1436 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\DRIVERS\processr.sys
11:06:07.0602 1436 Processor - ok
11:06:07.0648 1436 ProfSvc (53e83f1f6cf9d62f32801cf66d8352a8) C:\Windows\system32\profsvc.dll
11:06:07.0664 1436 ProfSvc - ok
11:06:07.0695 1436 ProtectedStorage (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
11:06:07.0695 1436 ProtectedStorage - ok
11:06:07.0742 1436 Psched (0557cf5a2556bd58e26384169d72438d) C:\Windows\system32\DRIVERS\pacer.sys
11:06:07.0742 1436 Psched - ok
11:06:07.0804 1436 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\DRIVERS\ql2300.sys
11:06:07.0836 1436 ql2300 - ok
11:06:08.0116 1436 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\DRIVERS\ql40xx.sys
11:06:08.0116 1436 ql40xx - ok
11:06:08.0148 1436 QWAVE (906191634e99aea92c4816150bda3732) C:\Windows\system32\qwave.dll
11:06:08.0163 1436 QWAVE - ok
11:06:08.0163 1436 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys
11:06:08.0163 1436 QWAVEdrv - ok
11:06:08.0163 1436 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys
11:06:08.0163 1436 RasAcd - ok
11:06:08.0194 1436 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys
11:06:08.0194 1436 RasAgileVpn - ok
11:06:08.0210 1436 RasAuto (8f26510c5383b8dbe976de1cd00fc8c7) C:\Windows\System32\rasauto.dll
11:06:08.0210 1436 RasAuto - ok
11:06:08.0241 1436 Rasl2tp (471815800ae33e6f1c32fb1b97c490ca) C:\Windows\system32\DRIVERS\rasl2tp.sys
11:06:08.0257 1436 Rasl2tp - ok
11:06:08.0288 1436 RasMan (ee867a0870fc9e4972ba9eaad35651e2) C:\Windows\System32\rasmans.dll
11:06:08.0304 1436 RasMan - ok
11:06:08.0319 1436 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys
11:06:08.0319 1436 RasPppoe - ok
11:06:08.0335 1436 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys
11:06:08.0335 1436 RasSstp - ok
11:06:08.0366 1436 rdbss (77f665941019a1594d887a74f301fa2f) C:\Windows\system32\DRIVERS\rdbss.sys
11:06:08.0382 1436 rdbss - ok
11:06:08.0397 1436 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\DRIVERS\rdpbus.sys
11:06:08.0397 1436 rdpbus - ok
11:06:08.0397 1436 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys
11:06:08.0397 1436 RDPCDD - ok
11:06:08.0428 1436 RDPDR (1b6163c503398b23ff8b939c67747683) C:\Windows\system32\drivers\rdpdr.sys
11:06:08.0444 1436 RDPDR - ok
11:06:08.0444 1436 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys
11:06:08.0460 1436 RDPENCDD - ok
11:06:08.0460 1436 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys
11:06:08.0460 1436 RDPREFMP - ok
11:06:08.0491 1436 RDPWD (e61608aa35e98999af9aaeeea6114b0a) C:\Windows\system32\drivers\RDPWD.sys
11:06:08.0506 1436 RDPWD - ok
11:06:08.0538 1436 rdyboost (34ed295fa0121c241bfef24764fc4520) C:\Windows\system32\drivers\rdyboost.sys
11:06:08.0553 1436 rdyboost - ok
11:06:08.0569 1436 RemoteAccess (254fb7a22d74e5511c73a3f6d802f192) C:\Windows\System32\mprdim.dll
11:06:08.0584 1436 RemoteAccess - ok
11:06:08.0600 1436 RemoteRegistry (e4d94f24081440b5fc5aa556c7c62702) C:\Windows\system32\regsvc.dll
11:06:08.0600 1436 RemoteRegistry - ok
11:06:08.0631 1436 RpcEptMapper (e4dc58cf7b3ea515ae917ff0d402a7bb) C:\Windows\System32\RpcEpMap.dll
11:06:08.0631 1436 RpcEptMapper - ok
11:06:08.0631 1436 RpcLocator (d5ba242d4cf8e384db90e6a8ed850b8c) C:\Windows\system32\locator.exe
11:06:08.0631 1436 RpcLocator - ok
11:06:08.0678 1436 RpcSs (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll
11:06:08.0678 1436 RpcSs - ok
11:06:08.0725 1436 RsFx0103 (cd553b8633466a6d1c115812f2619f1f) C:\Windows\system32\DRIVERS\RsFx0103.sys
11:06:08.0740 1436 RsFx0103 - ok
11:06:08.0772 1436 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys
11:06:08.0772 1436 rspndr - ok
11:06:08.0818 1436 RTL8167 (e50cfb92986dcab49de93788fd695813) C:\Windows\system32\DRIVERS\Rt64win7.sys
11:06:08.0834 1436 RTL8167 - ok
11:06:08.0865 1436 s3cap (e60c0a09f997826c7627b244195ab581) C:\Windows\system32\drivers\vms3cap.sys
11:06:08.0865 1436 s3cap - ok
11:06:08.0896 1436 SamSs (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
11:06:08.0896 1436 SamSs - ok
11:06:08.0943 1436 sbp2port (ac03af3329579fffb455aa2daabbe22b) C:\Windows\system32\drivers\sbp2port.sys
11:06:08.0943 1436 sbp2port - ok
11:06:08.0974 1436 SCardSvr (9b7395789e3791a3b6d000fe6f8b131e) C:\Windows\System32\SCardSvr.dll
11:06:08.0990 1436 SCardSvr - ok
11:06:09.0021 1436 scfilter (253f38d0d7074c02ff8deb9836c97d2b) C:\Windows\system32\DRIVERS\scfilter.sys
11:06:09.0021 1436 scfilter - ok
11:06:09.0099 1436 Schedule (262f6592c3299c005fd6bec90fc4463a) C:\Windows\system32\schedsvc.dll
11:06:09.0130 1436 Schedule - ok
11:06:09.0162 1436 SCPolicySvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll
11:06:09.0162 1436 SCPolicySvc - ok
11:06:09.0193 1436 SDRSVC (6ea4234dc55346e0709560fe7c2c1972) C:\Windows\System32\SDRSVC.dll
11:06:09.0208 1436 SDRSVC - ok
11:06:09.0318 1436 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys
11:06:09.0318 1436 secdrv - ok
11:06:09.0333 1436 seclogon (bc617a4e1b4fa8df523a061739a0bd87) C:\Windows\system32\seclogon.dll
11:06:09.0349 1436 seclogon - ok
11:06:09.0380 1436 SENS (c32ab8fa018ef34c0f113bd501436d21) C:\Windows\System32\sens.dll
11:06:09.0380 1436 SENS - ok
11:06:09.0380 1436 SensrSvc (0336cffafaab87a11541f1cf1594b2b2) C:\Windows\system32\sensrsvc.dll
11:06:09.0380 1436 SensrSvc - ok
11:06:09.0396 1436 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\DRIVERS\serenum.sys
11:06:09.0396 1436 Serenum - ok
11:06:09.0411 1436 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\DRIVERS\serial.sys
11:06:09.0411 1436 Serial - ok
11:06:09.0442 1436 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\DRIVERS\sermouse.sys
11:06:09.0442 1436 sermouse - ok
11:06:09.0474 1436 SessionEnv (0b6231bf38174a1628c4ac812cc75804) C:\Windows\system32\sessenv.dll
11:06:09.0489 1436 SessionEnv - ok
11:06:09.0505 1436 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\drivers\sffdisk.sys
11:06:09.0505 1436 sffdisk - ok
11:06:09.0520 1436 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\drivers\sffp_mmc.sys
11:06:09.0520 1436 sffp_mmc - ok
11:06:09.0536 1436 sffp_sd (dd85b78243a19b59f0637dcf284da63c) C:\Windows\system32\drivers\sffp_sd.sys
11:06:09.0536 1436 sffp_sd - ok
11:06:09.0536 1436 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\DRIVERS\sfloppy.sys
11:06:09.0536 1436 sfloppy - ok
11:06:09.0583 1436 SharedAccess (b95f6501a2f8b2e78c697fec401970ce) C:\Windows\System32\ipnathlp.dll
11:06:09.0583 1436 SharedAccess - ok
11:06:09.0645 1436 ShellHWDetection (aaf932b4011d14052955d4b212a4da8d) C:\Windows\System32\shsvcs.dll
11:06:09.0661 1436 ShellHWDetection - ok
11:06:09.0676 1436 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\DRIVERS\SiSRaid2.sys
11:06:09.0692 1436 SiSRaid2 - ok
11:06:09.0708 1436 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\DRIVERS\sisraid4.sys
11:06:09.0708 1436 SiSRaid4 - ok
11:06:09.0723 1436 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys
11:06:09.0739 1436 Smb - ok
11:06:09.0786 1436 SNMPTRAP (6313f223e817cc09aa41811daa7f541d) C:\Windows\System32\snmptrap.exe
11:06:09.0786 1436 SNMPTRAP - ok
11:06:09.0786 1436 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys
11:06:09.0786 1436 spldr - ok
11:06:09.0832 1436 Spooler (b96c17b5dc1424d56eea3a99e97428cd) C:\Windows\System32\spoolsv.exe
11:06:09.0848 1436 Spooler - ok
11:06:09.0988 1436 sppsvc (e17e0188bb90fae42d83e98707efa59c) C:\Windows\system32\sppsvc.exe
11:06:10.0082 1436 sppsvc - ok
11:06:10.0254 1436 sppuinotify (93d7d61317f3d4bc4f4e9f8a96a7de45) C:\Windows\system32\sppuinotify.dll
11:06:10.0254 1436 sppuinotify - ok
11:06:10.0410 1436 SQLAgent$SQLEXPRESS (12e6d95cde974b131defaa44bab8b056) C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE
11:06:10.0441 1436 SQLAgent$SQLEXPRESS - ok
11:06:10.0534 1436 SQLBrowser (b54b48f6d92423440c264e91225c5ff1) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe
11:06:10.0534 1436 SQLBrowser - ok
11:06:10.0612 1436 SQLWriter (6d65985945b03ca59b67d0b73702fc7b) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
11:06:10.0628 1436 SQLWriter - ok
11:06:10.0737 1436 srv (441fba48bff01fdb9d5969ebc1838f0b) C:\Windows\system32\DRIVERS\srv.sys
11:06:10.0753 1436 srv - ok
11:06:10.0784 1436 srv2 (b4adebbf5e3677cce9651e0f01f7cc28) C:\Windows\system32\DRIVERS\srv2.sys
11:06:10.0784 1436 srv2 - ok
11:06:10.0815 1436 srvnet (27e461f0be5bff5fc737328f749538c3) C:\Windows\system32\DRIVERS\srvnet.sys
11:06:10.0815 1436 srvnet - ok
11:06:10.0862 1436 SSDPSRV (51b52fbd583cde8aa9ba62b8b4298f33) C:\Windows\System32\ssdpsrv.dll
11:06:10.0878 1436 SSDPSRV - ok
11:06:10.0878 1436 SstpSvc (ab7aebf58dad8daab7a6c45e6a8885cb) C:\Windows\system32\sstpsvc.dll
11:06:10.0893 1436 SstpSvc - ok
11:06:11.0049 1436 Stereo Service (c354621b6b94e10ae7f5cdbe745feb86) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
11:06:11.0065 1436 Stereo Service - ok
11:06:11.0080 1436 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\DRIVERS\stexstor.sys
11:06:11.0080 1436 stexstor - ok
11:06:11.0127 1436 stisvc (8dd52e8e6128f4b2da92ce27402871c1) C:\Windows\System32\wiaservc.dll
11:06:11.0143 1436 stisvc - ok
11:06:11.0190 1436 storflt (7785dc213270d2fc066538daf94087e7) C:\Windows\system32\drivers\vmstorfl.sys
11:06:11.0190 1436 storflt - ok
11:06:11.0205 1436 StorSvc (c40841817ef57d491f22eb103da587cc) C:\Windows\system32\storsvc.dll
11:06:11.0205 1436 StorSvc - ok
11:06:11.0236 1436 storvsc (d34e4943d5ac096c8edeebfd80d76e23) C:\Windows\system32\drivers\storvsc.sys
11:06:11.0236 1436 storvsc - ok
11:06:11.0268 1436 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\drivers\swenum.sys
11:06:11.0268 1436 swenum - ok
11:06:11.0377 1436 SwitchBoard (f577910a133a592234ebaad3f3afa258) C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
11:06:11.0392 1436 SwitchBoard - ok
11:06:11.0455 1436 swprv (e08e46fdd841b7184194011ca1955a0b) C:\Windows\System32\swprv.dll
11:06:11.0470 1436 swprv - ok
11:06:11.0548 1436 SysMain (bf9ccc0bf39b418c8d0ae8b05cf95b7d) C:\Windows\system32\sysmain.dll
11:06:11.0611 1436 SysMain - ok
11:06:11.0798 1436 TabletInputService (e3c61fd7b7c2557e1f1b0b4cec713585) C:\Windows\System32\TabSvc.dll
11:06:11.0798 1436 TabletInputService - ok
11:06:11.0829 1436 TapiSrv (40f0849f65d13ee87b9a9ae3c1dd6823) C:\Windows\System32\tapisrv.dll
11:06:11.0845 1436 TapiSrv - ok
11:06:11.0876 1436 TBS (1be03ac720f4d302ea01d40f588162f6) C:\Windows\System32\tbssvc.dll
11:06:11.0876 1436 TBS - ok
11:06:12.0032 1436 Tcpip (acb82bda8f46c84f465c1afa517dc4b9) C:\Windows\system32\drivers\tcpip.sys
11:06:12.0079 1436 Tcpip - ok
11:06:12.0391 1436 TCPIP6 (acb82bda8f46c84f465c1afa517dc4b9) C:\Windows\system32\DRIVERS\tcpip.sys
11:06:12.0406 1436 TCPIP6 - ok
11:06:12.0656 1436 tcpipreg (df687e3d8836bfb04fcc0615bf15a519) C:\Windows\system32\drivers\tcpipreg.sys
11:06:12.0656 1436 tcpipreg - ok
11:06:12.0687 1436 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys
11:06:12.0687 1436 TDPIPE - ok
11:06:12.0703 1436 TDTCP (51c5eceb1cdee2468a1748be550cfbc8) C:\Windows\system32\drivers\tdtcp.sys
11:06:12.0703 1436 TDTCP - ok
11:06:12.0750 1436 tdx (ddad5a7ab24d8b65f8d724f5c20fd806) C:\Windows\system32\DRIVERS\tdx.sys
11:06:12.0765 1436 tdx - ok
11:06:12.0796 1436 TermDD (561e7e1f06895d78de991e01dd0fb6e5) C:\Windows\system32\drivers\termdd.sys
11:06:12.0796 1436 TermDD - ok
11:06:12.0843 1436 TermService (2e648163254233755035b46dd7b89123) C:\Windows\System32\termsrv.dll
11:06:12.0859 1436 TermService - ok
11:06:12.0890 1436 Themes (f0344071948d1a1fa732231785a0664c) C:\Windows\system32\themeservice.dll
11:06:12.0890 1436 Themes - ok
11:06:12.0921 1436 THREADORDER (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll
11:06:12.0921 1436 THREADORDER - ok
11:06:12.0921 1436 TrkWks (7e7afd841694f6ac397e99d75cead49d) C:\Windows\System32\trkwks.dll
11:06:12.0937 1436 TrkWks - ok
11:06:12.0968 1436 truecrypt (370a6907ddf79532a39319492b1fa38a) C:\Windows\system32\drivers\truecrypt.sys
11:06:12.0968 1436 truecrypt - ok
11:06:13.0015 1436 TrustedInstaller (773212b2aaa24c1e31f10246b15b276c) C:\Windows\servicing\TrustedInstaller.exe
11:06:13.0030 1436 TrustedInstaller - ok
11:06:13.0062 1436 tssecsrv (ce18b2cdfc837c99e5fae9ca6cba5d30) C:\Windows\system32\DRIVERS\tssecsrv.sys
11:06:13.0062 1436 tssecsrv - ok
11:06:13.0108 1436 TsUsbFlt (d11c783e3ef9a3c52c0ebe83cc5000e9) C:\Windows\system32\drivers\tsusbflt.sys
11:06:13.0108 1436 TsUsbFlt - ok
11:06:13.0155 1436 tunnel (3566a8daafa27af944f5d705eaa64894) C:\Windows\system32\DRIVERS\tunnel.sys
11:06:13.0155 1436 tunnel - ok
11:06:13.0186 1436 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\DRIVERS\uagp35.sys
11:06:13.0186 1436 uagp35 - ok
11:06:13.0218 1436 udfs (ff4232a1a64012baa1fd97c7b67df593) C:\Windows\system32\DRIVERS\udfs.sys
11:06:13.0233 1436 udfs - ok
11:06:13.0249 1436 UI0Detect (3cbdec8d06b9968aba702eba076364a1) C:\Windows\system32\UI0Detect.exe
11:06:13.0249 1436 UI0Detect - ok
11:06:13.0280 1436 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\drivers\uliagpkx.sys
11:06:13.0280 1436 uliagpkx - ok
11:06:13.0296 1436 umbus (dc54a574663a895c8763af0fa1ff7561) C:\Windows\system32\DRIVERS\umbus.sys
11:06:13.0311 1436 umbus - ok
11:06:13.0311 1436 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\DRIVERS\umpass.sys
11:06:13.0311 1436 UmPass - ok
11:06:13.0342 1436 UmRdpService (a293dcd756d04d8492a750d03b9a297c) C:\Windows\System32\umrdp.dll
11:06:13.0358 1436 UmRdpService - ok
11:06:13.0389 1436 upnphost (d47ec6a8e81633dd18d2436b19baf6de) C:\Windows\System32\upnphost.dll
11:06:13.0405 1436 upnphost - ok
11:06:13.0436 1436 usbccgp (6f1a3157a1c89435352ceb543cdb359c) C:\Windows\system32\DRIVERS\usbccgp.sys
11:06:13.0436 1436 usbccgp - ok
11:06:13.0467 1436 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\drivers\usbcir.sys
11:06:13.0483 1436 usbcir - ok
11:06:13.0514 1436 usbehci (c025055fe7b87701eb042095df1a2d7b) C:\Windows\system32\drivers\usbehci.sys
11:06:13.0514 1436 usbehci - ok
11:06:13.0545 1436 usbhub (287c6c9410b111b68b52ca298f7b8c24) C:\Windows\system32\DRIVERS\usbhub.sys
11:06:13.0561 1436 usbhub - ok
11:06:13.0592 1436 usbohci (9840fc418b4cbd632d3d0a667a725c31) C:\Windows\system32\drivers\usbohci.sys
11:06:13.0592 1436 usbohci - ok
11:06:13.0608 1436 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\DRIVERS\usbprint.sys
11:06:13.0608 1436 usbprint - ok
11:06:13.0639 1436 USBSTOR (fed648b01349a3c8395a5169db5fb7d6) C:\Windows\system32\DRIVERS\USBSTOR.SYS
11:06:13.0639 1436 USBSTOR - ok
11:06:13.0670 1436 usbuhci (62069a34518bcf9c1fd9e74b3f6db7cd) C:\Windows\system32\drivers\usbuhci.sys
11:06:13.0670 1436 usbuhci - ok
11:06:13.0686 1436 UxSms (edbb23cbcf2cdf727d64ff9b51a6070e) C:\Windows\System32\uxsms.dll
11:06:13.0686 1436 UxSms - ok
11:06:13.0717 1436 VaultSvc (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
11:06:13.0717 1436 VaultSvc - ok
11:06:13.0748 1436 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\drivers\vdrvroot.sys
11:06:13.0748 1436 vdrvroot - ok
11:06:13.0795 1436 vds (8d6b481601d01a456e75c3210f1830be) C:\Windows\System32\vds.exe
11:06:13.0810 1436 vds - ok
11:06:13.0842 1436 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys
11:06:13.0842 1436 vga - ok
11:06:13.0857 1436 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys
11:06:13.0857 1436 VgaSave - ok
11:06:13.0873 1436 vhdmp (2ce2df28c83aeaf30084e1b1eb253cbb) C:\Windows\system32\drivers\vhdmp.sys
11:06:13.0888 1436 vhdmp - ok
11:06:13.0920 1436 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\drivers\viaide.sys
11:06:13.0920 1436 viaide - ok
11:06:13.0935 1436 vmbus (86ea3e79ae350fea5331a1303054005f) C:\Windows\system32\drivers\vmbus.sys
11:06:13.0951 1436 vmbus - ok
11:06:13.0966 1436 VMBusHID (7de90b48f210d29649380545db45a187) C:\Windows\system32\drivers\VMBusHID.sys
11:06:13.0966 1436 VMBusHID - ok
11:06:13.0982 1436 volmgr (d2aafd421940f640b407aefaaebd91b0) C:\Windows\system32\drivers\volmgr.sys
11:06:13.0998 1436 volmgr - ok
11:06:14.0029 1436 volmgrx (a255814907c89be58b79ef2f189b843b) C:\Windows\system32\drivers\volmgrx.sys
11:06:14.0029 1436 volmgrx - ok
11:06:14.0076 1436 volsnap (0d08d2f3b3ff84e433346669b5e0f639) C:\Windows\system32\drivers\volsnap.sys
11:06:14.0091 1436 volsnap - ok
11:06:14.0138 1436 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\DRIVERS\vsmraid.sys
11:06:14.0138 1436 vsmraid - ok
11:06:14.0216 1436 VSS (b60ba0bc31b0cb414593e169f6f21cc2) C:\Windows\system32\vssvc.exe
11:06:14.0247 1436 VSS - ok
11:06:14.0512 1436 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\System32\drivers\vwifibus.sys
11:06:14.0512 1436 vwifibus - ok
11:06:14.0544 1436 W32Time (1c9d80cc3849b3788048078c26486e1a) C:\Windows\system32\w32time.dll
11:06:14.0559 1436 W32Time - ok
11:06:14.0559 1436 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\DRIVERS\wacompen.sys
11:06:14.0559 1436 WacomPen - ok
11:06:14.0606 1436 WANARP (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
11:06:14.0606 1436 WANARP - ok
11:06:14.0622 1436 Wanarpv6 (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
11:06:14.0622 1436 Wanarpv6 - ok
11:06:14.0715 1436 WatAdminSvc (3cec96de223e49eaae3651fcf8faea6c) C:\Windows\system32\Wat\WatAdminSvc.exe
11:06:14.0746 1436 WatAdminSvc - ok
11:06:14.0824 1436 wbengine (78f4e7f5c56cb9716238eb57da4b6a75) C:\Windows\system32\wbengine.exe
11:06:14.0856 1436 wbengine - ok
11:06:15.0058 1436 WbioSrvc (3aa101e8edab2db4131333f4325c76a3) C:\Windows\System32\wbiosrvc.dll
11:06:15.0074 1436 WbioSrvc - ok
11:06:15.0090 1436 wcncsvc (7368a2afd46e5a4481d1de9d14848edd) C:\Windows\System32\wcncsvc.dll
11:06:15.0105 1436 wcncsvc - ok
11:06:15.0121 1436 WcsPlugInService (20f7441334b18cee52027661df4a6129) C:\Windows\System32\WcsPlugInService.dll
11:06:15.0121 1436 WcsPlugInService - ok
11:06:15.0214 1436 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\DRIVERS\wd.sys
11:06:15.0214 1436 Wd - ok
11:06:15.0246 1436 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys
11:06:15.0261 1436 Wdf01000 - ok
11:06:15.0277 1436 WdiServiceHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll
11:06:15.0277 1436 WdiServiceHost - ok
11:06:15.0277 1436 WdiSystemHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll
11:06:15.0277 1436 WdiSystemHost - ok
11:06:15.0324 1436 WebClient (3db6d04e1c64272f8b14eb8bc4616280) C:\Windows\System32\webclnt.dll
11:06:15.0339 1436 WebClient - ok
11:06:15.0370 1436 Wecsvc (c749025a679c5103e575e3b48e092c43) C:\Windows\system32\wecsvc.dll
11:06:15.0386 1436 Wecsvc - ok
11:06:15.0402 1436 wercplsupport (7e591867422dc788b9e5bd337a669a08) C:\Windows\System32\wercplsupport.dll
11:06:15.0402 1436 wercplsupport - ok
11:06:15.0433 1436 WerSvc (6d137963730144698cbd10f202e9f251) C:\Windows\System32\WerSvc.dll
11:06:15.0433 1436 WerSvc - ok
11:06:15.0542 1436 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys
11:06:15.0542 1436 WfpLwf - ok
11:06:15.0542 1436 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys
11:06:15.0542 1436 WIMMount - ok
11:06:15.0604 1436 WinDefend - ok
11:06:15.0620 1436 WinHttpAutoProxySvc - ok
11:06:15.0698 1436 Winmgmt (19b07e7e8915d701225da41cb3877306) C:\Windows\system32\wbem\WMIsvc.dll
11:06:15.0714 1436 Winmgmt - ok
11:06:15.0792 1436 WinRM (bcb1310604aa415c4508708975b3931e) C:\Windows\system32\WsmSvc.dll
11:06:15.0838 1436 WinRM - ok
11:06:16.0057 1436 Wlansvc (4fada86e62f18a1b2f42ba18ae24e6aa) C:\Windows\System32\wlansvc.dll
11:06:16.0072 1436 Wlansvc - ok
11:06:16.0182 1436 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\drivers\wmiacpi.sys
11:06:16.0182 1436 WmiAcpi - ok
11:06:16.0260 1436 wmiApSrv (38b84c94c5a8af291adfea478ae54f93) C:\Windows\system32\wbem\WmiApSrv.exe
11:06:16.0260 1436 wmiApSrv - ok
11:06:16.0338 1436 WMPNetworkSvc - ok
11:06:16.0369 1436 WPCSvc (96c6e7100d724c69fcf9e7bf590d1dca) C:\Windows\System32\wpcsvc.dll
11:06:16.0369 1436 WPCSvc - ok
11:06:16.0384 1436 WPDBusEnum (93221146d4ebbf314c29b23cd6cc391d) C:\Windows\system32\wpdbusenum.dll
11:06:16.0400 1436 WPDBusEnum - ok
11:06:16.0416 1436 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys
11:06:16.0416 1436 ws2ifsl - ok
11:06:16.0431 1436 wscsvc (e8b1fe6669397d1772d8196df0e57a9e) C:\Windows\System32\wscsvc.dll
11:06:16.0431 1436 wscsvc - ok
11:06:16.0447 1436 WSearch - ok
11:06:16.0540 1436 wuauserv (d9ef901dca379cfe914e9fa13b73b4c4) C:\Windows\system32\wuaueng.dll
11:06:16.0603 1436 wuauserv - ok
11:06:16.0868 1436 WudfPf (d3381dc54c34d79b22cee0d65ba91b7c) C:\Windows\system32\drivers\WudfPf.sys
11:06:16.0868 1436 WudfPf - ok
11:06:16.0930 1436 WUDFRd (cf8d590be3373029d57af80914190682) C:\Windows\system32\DRIVERS\WUDFRd.sys
11:06:16.0930 1436 WUDFRd - ok
11:06:16.0977 1436 wudfsvc (7a95c95b6c4cf292d689106bcae49543) C:\Windows\System32\WUDFSvc.dll
11:06:16.0977 1436 wudfsvc - ok
11:06:17.0008 1436 WwanSvc (9a3452b3c2a46c073166c5cf49fad1ae) C:\Windows\System32\wwansvc.dll
11:06:17.0024 1436 WwanSvc - ok
11:06:17.0055 1436 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0
11:06:17.0055 1436 \Device\Harddisk0\DR0 - ok
11:06:17.0071 1436 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk1\DR1
11:06:17.0211 1436 \Device\Harddisk1\DR1 - ok
11:06:17.0227 1436 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk2\DR2
11:06:17.0523 1436 \Device\Harddisk2\DR2 - ok
11:06:17.0539 1436 Boot (0x1200) (beea101bd65c802441fbbf452f531027) \Device\Harddisk0\DR0\Partition0
11:06:17.0539 1436 \Device\Harddisk0\DR0\Partition0 - ok
11:06:17.0539 1436 Boot (0x1200) (82c19c4d9f9dc19f579dcd1fb1dab744) \Device\Harddisk1\DR1\Partition0
11:06:17.0539 1436 \Device\Harddisk1\DR1\Partition0 - ok
11:06:17.0539 1436 Boot (0x1200) (04a5ef78bab1cd7f4decb75660338d26) \Device\Harddisk2\DR2\Partition0
11:06:17.0539 1436 \Device\Harddisk2\DR2\Partition0 - ok
11:06:17.0539 1436 ============================================================
11:06:17.0539 1436 Scan finished
11:06:17.0539 1436 ============================================================
11:06:17.0554 1552 Detected object count: 0
11:06:17.0554 1552 Actual detected object count: 0
11:06:47.0865 0300 Deinitialize success

Obnovu som zatial neskúšal ale dám ju teda.. mám ju spustit zo safe módu, ano?

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Velmi zlý stav - z hodiny na hodinu

#8 Příspěvek od motji »

Ano, dejte. Já tu budu zase až večer.
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

roki
Návštěvník
Návštěvník
Příspěvky: 101
Registrován: 29 zář 2005 13:16

Re: Velmi zlý stav - z hodiny na hodinu

#9 Příspěvek od roki »

Tak som to skúsil.. nepomohlo. Potom som skúsil starší bod obnovy ale stále to blbne.
Reinštalujem windows - to bude asi najjednoduchšie a najistejšie riešenie
Mohla to spôsobiť aj hardvérová chyba? Nedávno som menil základnu dosku..

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Velmi zlý stav - z hodiny na hodinu

#10 Příspěvek od motji »

Popravdě netuším :(
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

roki
Návštěvník
Návštěvník
Příspěvky: 101
Registrován: 29 zář 2005 13:16

Re: Velmi zlý stav - z hodiny na hodinu

#11 Příspěvek od roki »

Nevadí.. aj tak dakujem za pomoc :)

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Velmi zlý stav - z hodiny na hodinu

#12 Příspěvek od motji »

Pak mi aspon napište, zda je po reinstalu vše ok :)
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Uživatelský avatar
motji
VIP
VIP
Příspěvky: 23302
Registrován: 23 říj 2008 08:02

Re: Velmi zlý stav - z hodiny na hodinu

#13 Příspěvek od motji »

Dobrý den,
pro neaktivitu je toto téma uzamknuto.
Pokud ho budete chtít odemknout, kontaktujte mě na email nebo některého z mých kolegů.
Děkujeme za pochopení :)
Nepoužívejte COMBOFIX bez doporučení rádce, může dojít k poškození systému!
Vždy před odvirováním počítače zazálohujte důležitá data :!:
Chcete podpořit naše forum? Informace zde

Obrázek

K zastižení jsem spíše v noci, mezi 21.-23. hodinou
Pokud máte nějaké dotazy, můžete mi napsat na email Motji(zavináč)forum.viry.cz.

Zamčeno