ISeekDeal.dll paranoia

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz


Vážení uživaterlé!
Ve dnech 4. - 6-9.2026 budou někteříí naši členové na každoročním srazu fóra. Žádáme vás, abyste měli strpení, nemusí se na na řešení vašeho problému dostat hned. Děkujeme za pochopení.
Zamčeno
Zpráva
Autor
FNj
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 28 Črv 2008 13:51

ISeekDeal.dll paranoia

#1 Příspěvek od FNj »

Instaloval jsem si IOBit Uninstaller (nevíte někdo BTW něco lepšího krom REVO?) a objevila se mi podzřelá složka C:\ProgramData\Plugin s pár souborama včetně ISeekDeal.dll. Celý jsem to smazal a projel jsem i nějaký registrový klíče s tím spojený a promazal je. Bojím se ovšem, že mi v kompu zůstaly nějaký sračky.

FNj
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 28 Črv 2008 13:51

Re: ISeekDeal.dll paranoia

#2 Příspěvek od FNj »


FNj
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 28 Črv 2008 13:51

Re: ISeekDeal.dll paranoia

#3 Příspěvek od FNj »

MBAM čistej:

Kód: Vybrat vše

Malwarebytes Anti-Malware (Zkušební verze Malwarebytes Anti-Malware) 1.65.1.1000
www.malwarebytes.org

Verze databáze: v2012.12.17.04

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
FNj :: FNJ-DENEB [administrátor]

Ochrana: Povolena

18.12.2012 14:00:32
mbam-log-2012-12-18 (14-00-32).txt

Typ: Rychlá kontrola
Nastavení kontroly povoleno: Paměť | Po spuštění | Registr | Systémové soubory | Heuristická analýza Extra | Heuristická analýza Shuriken | PUP | PUM
Nastavení kontroly zakázáno: P2P
Kontrolované objekty: 201174
Uplynulý čas: 1 minut, 6 sekund

Nalezené procesy v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené moduly v paměti: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené klíče v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené hodnoty v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené datové položky v registru: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené složky: 0
(Žádné škodlivé položky nebyly zjištěny)

Nalezené soubory: 0
(Žádné škodlivé položky nebyly zjištěny)

(konec)

FNj
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 28 Črv 2008 13:51

Re: ISeekDeal.dll paranoia

#4 Příspěvek od FNj »

Teď už mám čas: tak do tohodle a dalších dvou příspěvků vyhodim výstup RSIT, abyste se nemuseli dívat na pastebin... Pokud budete chtít přehodit i výstup z DDS, tak řekněte.

Logfile of random's system information tool 1.09 (written by random/random)
Run by FNj at 2012-12-18 14:28:10
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 164 GB (82%) free of 200 GB
Total RAM: 4094 MB (49% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 14:28:12, on 18.12.2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16457)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Users\FNj\Local Settings\Apps\F.lux\flux.exe
C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Windows\SysWOW64\NOTEPAD.EXE
C:\Windows\SysWOW64\NOTEPAD.EXE
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\FNj.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [F.lux] "C:\Users\FNj\Local Settings\Apps\F.lux\flux.exe" /noshow
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: Advanced SystemCare Service 6 (AdvancedSystemCareService6) - IObit - C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: Alcohol Virtual Drive Auto-mount Service (AxAutoMntSrv) - Alcohol Soft Development Team - C:\Program Files (x86)\Alcohol Soft\Alcohol 52\AxAutoMntSrv.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\Windows\system32\PnkBstrB.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Secunia PSI Agent - Secunia - C:\Program Files (x86)\Secunia\PSI\PSIA.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: StarWind AE Service (StarWindServiceAE) - StarWind Software - C:\Program Files (x86)\Alcohol Soft\Alcohol 52\StarWind\StarWindServiceAE.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 8328 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCService.exe"
C:\Windows\system32\svchost.exe -k RPCSS
"C:\Program Files\Microsoft Security Client\MsMpEng.exe"
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k LocalService
atieclxx
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
"C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe"
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe"
C:\Windows\SysWOW64\PnkBstrA.exe
C:\Windows\SysWOW64\PnkBstrB.exe
"C:\Program Files (x86)\Alcohol Soft\Alcohol 52\StarWind\StarWindServiceAE.exe"
"C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Users\FNj\Local Settings\Apps\F.lux\flux.exe" /noshow
"C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files\Microsoft Security Client\NisSrv.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\svchost.exe -k SDRSVC
C:\Windows\System32\spoolsv.exe
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="2956.1.1055094846\1661566398" --gpu-vendor-id=0x1002 --gpu-device-id=0x6739 --gpu-driver-vendor="Advanced Micro Devices, Inc." --gpu-driver-version=9.2.0.0 --ignored=" --type=renderer " /prefetch:12
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AsyncDns/disabled/ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/EnableStage3D/enabled_default/ForceCompositingMode/disable/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/InfiniteCache/No/NewTabButton/default/OmniboxDisallowInlineHQP/Standard/OmniboxSearchSuggest/6/OneClickSignIn/Standard/Prerender/PrerenderEnabled/ProxyConnectionImpact/proxy_connections_32/SBInterstitial/V2/SpeculativePrefetchingLearning/SpeculativePrefetchingDisabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_09/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/default/WarmSocketImpact/warmest_socket/ --extension-process --renderer-print-preview --channel="2956.2.1903894517\200284999" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials=AsyncDns/disabled/ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/EnableStage3D/enabled_default/ForceCompositingMode/disable/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/InfiniteCache/No/NewTabButton/default/OmniboxDisallowInlineHQP/Standard/OmniboxSearchSuggest/6/OneClickSignIn/Standard/Prerender/PrerenderEnabled/ProxyConnectionImpact/proxy_connections_32/SBInterstitial/V2/SpeculativePrefetchingLearning/SpeculativePrefetchingDisabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_09/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/default/WarmSocketImpact/warmest_socket/ --extension-process --renderer-print-preview --channel="2956.3.1336097001\868644893" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --disable-databases --lang=cs --force-fieldtrials=AsyncDns/disabled/ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/EnableStage3D/enabled_default/ForceCompositingMode/disable/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/InfiniteCache/No/NewTabButton/default/OmniboxDisallowInlineHQP/Standard/OmniboxHQPNewScoring/Standard/OmniboxSearchSuggest/6/OneClickSignIn/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ProxyConnectionImpact/proxy_connections_32/SBInterstitial/V2/SpdyCwnd/cwndDynamic/SpeculativePrefetchingLearning/SpeculativePrefetchingDisabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_09/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/default/WarmSocketImpact/warmest_socket/ --renderer-print-preview --channel="2956.5.1917401925\875925083" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --disable-databases --lang=cs --force-fieldtrials=AsyncDns/disabled/ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/EnableStage3D/enabled_default/ForceCompositingMode/disable/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/InfiniteCache/No/NewTabButton/default/OmniboxDisallowInlineHQP/Standard/OmniboxHQPNewScoring/Standard/OmniboxSearchSuggest/6/OneClickSignIn/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ProxyConnectionImpact/proxy_connections_32/SBInterstitial/V2/SpdyCwnd/cwndDynamic/SpeculativePrefetchingLearning/SpeculativePrefetchingDisabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_09/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/default/WarmSocketImpact/warmest_socket/ --renderer-print-preview --channel="2956.9.629939553\1626007121" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --disable-databases --lang=cs --force-fieldtrials=AsyncDns/disabled/ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/EnableStage3D/enabled_default/ForceCompositingMode/disable/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/InfiniteCache/No/NewTabButton/default/OmniboxDisallowInlineHQP/Standard/OmniboxHQPNewScoring/Standard/OmniboxSearchSuggest/6/OneClickSignIn/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ProxyConnectionImpact/proxy_connections_32/SBInterstitial/V2/SpdyCwnd/cwndDynamic/SpeculativePrefetchingLearning/SpeculativePrefetchingDisabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_09/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/default/WarmSocketImpact/warmest_socket/ --renderer-print-preview --channel="2956.11.787561270\871520316" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi --channel="2956.12.1781358276\548936784" --lang=cs --ignored=" --type=renderer " /prefetch:13
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=service --lang=cs
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=ppapi-broker --channel="2956.18.2125269303\1678441011" --lang=cs /prefetch:14
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --disable-databases --lang=cs --force-fieldtrials=AsyncDns/disabled/ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/EnableStage3D/enabled_default/ForceCompositingMode/disable/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/InfiniteCache/No/NewTabButton/default/OmniboxDisallowInlineHQP/Standard/OmniboxHQPNewScoring/Standard/OmniboxSearchSuggest/6/OneClickSignIn/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ProxyConnectionImpact/proxy_connections_32/SBInterstitial/V2/SpdyCwnd/cwndDynamic/SpeculativePrefetchingLearning/SpeculativePrefetchingDisabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_09/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/default/WarmSocketImpact/warmest_socket/ --renderer-print-preview --channel="2956.20.1811693403\44377699" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --disable-databases --lang=cs --force-fieldtrials=AsyncDns/disabled/ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/EnableStage3D/enabled_default/ForceCompositingMode/disable/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/InfiniteCache/No/NewTabButton/default/OmniboxDisallowInlineHQP/Standard/OmniboxHQPNewScoring/Standard/OmniboxSearchSuggest/6/OneClickSignIn/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ProxyConnectionImpact/proxy_connections_32/SBInterstitial/V2/SpdyCwnd/cwndDynamic/SpeculativePrefetchingLearning/SpeculativePrefetchingDisabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_09/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/default/WarmSocketImpact/warmest_socket/ --renderer-print-preview --channel="2956.21.987558207\825507895" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --disable-databases --lang=cs --force-fieldtrials=AsyncDns/disabled/ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/EnableStage3D/enabled_default/ForceCompositingMode/disable/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/InfiniteCache/No/NewTabButton/default/OmniboxDisallowInlineHQP/Standard/OmniboxHQPNewScoring/Standard/OmniboxSearchSuggest/6/OneClickSignIn/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ProxyConnectionImpact/proxy_connections_32/SBInterstitial/V2/SpdyCwnd/cwndDynamic/SpeculativePrefetchingLearning/SpeculativePrefetchingDisabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_09/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/default/WarmSocketImpact/warmest_socket/ --renderer-print-preview --channel="2956.22.588926671\1871037238" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --disable-databases --lang=cs --force-fieldtrials=AsyncDns/disabled/ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/EnableStage3D/enabled_default/ForceCompositingMode/disable/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/InfiniteCache/No/NewTabButton/default/OmniboxDisallowInlineHQP/Standard/OmniboxHQPNewScoring/Standard/OmniboxSearchSuggest/6/OneClickSignIn/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ProxyConnectionImpact/proxy_connections_32/SBInterstitial/V2/SpdyCwnd/cwndDynamic/SpeculativePrefetchingLearning/SpeculativePrefetchingDisabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_09/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/default/WarmSocketImpact/warmest_socket/ --renderer-print-preview --channel="2956.25.1746179451\874412207" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --disable-databases --lang=cs --force-fieldtrials=AsyncDns/disabled/ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/EnableStage3D/enabled_default/ForceCompositingMode/disable/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/InfiniteCache/No/NewTabButton/default/OmniboxDisallowInlineHQP/Standard/OmniboxHQPNewScoring/Standard/OmniboxSearchSuggest/6/OneClickSignIn/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ProxyConnectionImpact/proxy_connections_32/SBInterstitial/V2/SpdyCwnd/cwndDynamic/SpeculativePrefetchingLearning/SpeculativePrefetchingDisabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_09/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/default/WarmSocketImpact/warmest_socket/ --renderer-print-preview --channel="2956.30.528901974\1815407881" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --disable-databases --lang=cs --force-fieldtrials=AsyncDns/disabled/ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/EnableStage3D/enabled_default/ForceCompositingMode/disable/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/InfiniteCache/No/NewTabButton/default/OmniboxDisallowInlineHQP/Standard/OmniboxHQPNewScoring/Standard/OmniboxSearchSuggest/6/OneClickSignIn/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ProxyConnectionImpact/proxy_connections_32/SBInterstitial/V2/SpdyCwnd/cwndDynamic/SpeculativePrefetchingLearning/SpeculativePrefetchingDisabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_09/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/default/WarmSocketImpact/warmest_socket/ --renderer-print-preview --channel="2956.32.669374350\2033210405" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --disable-databases --lang=cs --force-fieldtrials=AsyncDns/disabled/ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/EnableStage3D/enabled_default/ForceCompositingMode/disable/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/InfiniteCache/No/NewTabButton/default/OmniboxDisallowInlineHQP/Standard/OmniboxHQPNewScoring/Standard/OmniboxSearchSuggest/6/OneClickSignIn/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ProxyConnectionImpact/proxy_connections_32/SBInterstitial/V2/SpdyCwnd/cwndDynamic/SpeculativePrefetchingLearning/SpeculativePrefetchingDisabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_09/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/default/WarmSocketImpact/warmest_socket/ --renderer-print-preview --channel="2956.35.311140662\185095326" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --disable-databases --lang=cs --force-fieldtrials=AsyncDns/disabled/ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/EnableStage3D/enabled_default/ForceCompositingMode/disable/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/InfiniteCache/No/NewTabButton/default/OmniboxDisallowInlineHQP/Standard/OmniboxHQPNewScoring/Standard/OmniboxSearchSuggest/6/OneClickSignIn/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ProxyConnectionImpact/proxy_connections_32/SBInterstitial/V2/SpdyCwnd/cwndDynamic/SpeculativePrefetchingLearning/SpeculativePrefetchingDisabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_09/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/default/WarmSocketImpact/warmest_socket/ --renderer-print-preview --channel="2956.36.1826731128\872433979" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --disable-databases --lang=cs --force-fieldtrials=AsyncDns/disabled/ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/EnableStage3D/enabled_default/ForceCompositingMode/disable/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/InfiniteCache/No/NewTabButton/default/OmniboxDisallowInlineHQP/Standard/OmniboxHQPNewScoring/Standard/OmniboxSearchSuggest/6/OneClickSignIn/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ProxyConnectionImpact/proxy_connections_32/SBInterstitial/V2/SpdyCwnd/cwndDynamic/SpeculativePrefetchingLearning/SpeculativePrefetchingDisabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_09/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/default/WarmSocketImpact/warmest_socket/ --renderer-print-preview --channel="2956.37.267496202\196830639" /prefetch:3
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --disable-databases --lang=cs --force-fieldtrials=AsyncDns/disabled/ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/EnableStage3D/enabled_default/ForceCompositingMode/disable/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/InfiniteCache/No/NewTabButton/default/OmniboxDisallowInlineHQP/Standard/OmniboxHQPNewScoring/Standard/OmniboxSearchSuggest/6/OneClickSignIn/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ProxyConnectionImpact/proxy_connections_32/SBInterstitial/V2/SpdyCwnd/cwndDynamic/SpeculativePrefetchingLearning/SpeculativePrefetchingDisabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_09/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/default/WarmSocketImpact/warmest_socket/ --renderer-print-preview --channel="2956.38.1508913078\1395993338" /prefetch:3
C:\Windows\System32\svchost.exe -k swprv
"C:\Windows\system32\NOTEPAD.EXE" C:\Users\FNj\AppData\Local\Temp\attach.txt
"C:\Windows\system32\NOTEPAD.EXE" C:\Users\FNj\AppData\Local\Temp\dds.txt
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --disable-databases --lang=cs --force-fieldtrials=AsyncDns/disabled/ConnCountImpact/conn_count_6/ConnnectBackupJobs/ConnectBackupJobsEnabled/DnsImpact/default_enabled_prefetch/EnableStage3D/enabled_default/ForceCompositingMode/disable/GlobalSdch/global_enable_sdch/IdleSktToImpact/idle_timeout_10/InfiniteCache/No/NewTabButton/default/OmniboxDisallowInlineHQP/Standard/OmniboxHQPNewScoring/Standard/OmniboxSearchSuggest/6/OneClickSignIn/Standard/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/ProxyConnectionImpact/proxy_connections_32/SBInterstitial/V2/SpdyCwnd/cwndDynamic/SpeculativePrefetchingLearning/SpeculativePrefetchingDisabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_06/UMA-Uniformity-Trial-1-Percent/group_09/UMA-Uniformity-Trial-10-Percent/group_02/UMA-Uniformity-Trial-20-Percent/group_02/UMA-Uniformity-Trial-5-Percent/group_14/UMA-Uniformity-Trial-50-Percent/default/WarmSocketImpact/warmest_socket/ --renderer-print-preview --channel="2956.39.1445829341\460745052" /prefetch:3
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe10_ Global\UsGthrCtrlFltPipeMssGthrPipe10 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\Windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"D:\Cool\Install\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2012-12-10 537576]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2012-12-10 193512]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2012-12-11 449512]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2012-12-11 155384]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"MSC"=C:\Program Files\Microsoft Security Client\msseces.exe [2012-09-12 1289704]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"F.lux"=C:\Users\FNj\Local Settings\Apps\F.lux\flux.exe [2009-08-29 966656]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Advanced SystemCare 6]
C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCTray.exe [2012-09-24 490880]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AlcoholAutomount]
C:\Program Files (x86)\Alcohol Soft\Alcohol 52\AxAutoMntSrv.exe [2012-01-05 75624]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2012-09-28 642728]
"NUSB3MON"=C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [2010-11-17 113288]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2012-07-03 252848]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsMpSvc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

FNj
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 28 Črv 2008 13:51

Re: ISeekDeal.dll paranoia

#5 Příspěvek od FNj »

======List of files/folders created in the last 1 month======

2012-12-18 14:10:04 ----D---- C:\Program Files\trend micro
2012-12-18 14:10:03 ----D---- C:\rsit
2012-12-18 13:24:27 ----D---- C:\Program Files (x86)\Secunia
2012-12-17 19:42:31 ----D---- C:\ProgramData\IObit
2012-12-17 19:42:24 ----D---- C:\Program Files (x86)\IObit
2012-12-17 19:27:40 ----D---- C:\Users\FNj\AppData\Roaming\IObit
2012-12-17 16:33:23 ----D---- C:\ProgramData\Digipen
2012-12-17 16:08:34 ----D---- C:\Users\FNj\AppData\Roaming\Unity
2012-12-17 15:13:30 ----D---- C:\Users\FNj\AppData\Roaming\deluge
2012-12-16 21:03:24 ----D---- C:\Users\FNj\AppData\Roaming\LibreOffice
2012-12-16 19:29:12 ----D---- C:\Program Files (x86)\LibreOffice 3.6
2012-12-15 13:29:45 ----D---- C:\Program Files (x86)\Alcohol Soft
2012-12-15 13:27:41 ----A---- C:\Windows\system32\drivers\sptd.sys
2012-12-15 13:21:54 ----D---- C:\Users\FNj\AppData\Roaming\WinRAR
2012-12-12 17:13:35 ----D---- C:\Users\FNj\AppData\Roaming\vlc
2012-12-12 10:26:00 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2012-12-12 10:26:00 ----A---- C:\Windows\system32\mshtmled.dll
2012-12-12 10:25:59 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2012-12-12 10:25:59 ----A---- C:\Windows\SYSWOW64\ieui.dll
2012-12-12 10:25:59 ----A---- C:\Windows\system32\ieUnatt.exe
2012-12-12 10:25:59 ----A---- C:\Windows\system32\ieui.dll
2012-12-12 10:25:58 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2012-12-12 10:25:58 ----A---- C:\Windows\SYSWOW64\url.dll
2012-12-12 10:25:58 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2012-12-12 10:25:58 ----A---- C:\Windows\system32\url.dll
2012-12-12 10:25:57 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2012-12-12 10:25:57 ----A---- C:\Windows\system32\urlmon.dll
2012-12-12 10:25:57 ----A---- C:\Windows\system32\msfeeds.dll
2012-12-12 10:25:57 ----A---- C:\Windows\system32\jscript9.dll
2012-12-12 10:25:56 ----A---- C:\Windows\SYSWOW64\wininet.dll
2012-12-12 10:25:56 ----A---- C:\Windows\system32\wininet.dll
2012-12-12 10:25:56 ----A---- C:\Windows\system32\jsproxy.dll
2012-12-12 10:25:55 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2012-12-12 10:25:55 ----A---- C:\Windows\SYSWOW64\jscript.dll
2012-12-12 10:25:55 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2012-12-12 10:25:55 ----A---- C:\Windows\system32\vbscript.dll
2012-12-12 10:25:55 ----A---- C:\Windows\system32\jscript.dll
2012-12-12 10:25:55 ----A---- C:\Windows\system32\iertutil.dll
2012-12-12 10:25:54 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2012-12-12 10:25:51 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2012-12-12 10:25:50 ----A---- C:\Windows\system32\mshtml.dll
2012-12-12 10:25:50 ----A---- C:\Windows\system32\ieframe.dll
2012-12-12 10:25:49 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2012-12-12 10:25:21 ----A---- C:\Windows\system32\KernelBase.dll
2012-12-12 10:25:20 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2012-12-12 10:25:20 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2012-12-12 10:25:20 ----A---- C:\Windows\system32\winsrv.dll
2012-12-12 10:25:20 ----A---- C:\Windows\system32\kernel32.dll
2012-12-12 10:25:20 ----A---- C:\Windows\system32\conhost.exe
2012-12-12 10:25:19 ----A---- C:\Windows\SYSWOW64\wow32.dll
2012-12-12 10:25:19 ----A---- C:\Windows\SYSWOW64\setup16.exe
2012-12-12 10:25:19 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2012-12-12 10:25:19 ----A---- C:\Windows\system32\wow64win.dll
2012-12-12 10:25:19 ----A---- C:\Windows\system32\wow64cpu.dll
2012-12-12 10:25:19 ----A---- C:\Windows\system32\wow64.dll
2012-12-12 10:25:19 ----A---- C:\Windows\system32\ntvdm64.dll
2012-12-12 10:25:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2012-12-12 10:25:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2012-12-12 10:25:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2012-12-12 10:25:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-12-12 10:25:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2012-12-12 10:25:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2012-12-12 10:25:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2012-12-12 10:25:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2012-12-12 10:25:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2012-12-12 10:25:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2012-12-12 10:25:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2012-12-12 10:25:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2012-12-12 10:25:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2012-12-12 10:25:18 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2012-12-12 10:25:18 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2012-12-12 10:25:18 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2012-12-12 10:25:18 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2012-12-12 10:25:18 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2012-12-12 10:25:18 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2012-12-12 10:25:18 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2012-12-12 10:25:18 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2012-12-12 10:25:18 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2012-12-12 10:25:18 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2012-12-12 10:25:18 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2012-12-12 10:25:18 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2012-12-12 10:25:18 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2012-12-12 10:25:18 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2012-12-12 10:25:18 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2012-12-12 10:25:18 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2012-12-12 10:25:18 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2012-12-12 10:25:18 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2012-12-12 10:25:18 ----A---- C:\Windows\SYSWOW64\instnm.exe
2012-12-12 10:25:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2012-12-12 10:25:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2012-12-12 10:25:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2012-12-12 10:25:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2012-12-12 10:25:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2012-12-12 10:25:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2012-12-12 10:25:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2012-12-12 10:25:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2012-12-12 10:25:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2012-12-12 10:25:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2012-12-12 10:25:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2012-12-12 10:25:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2012-12-12 10:25:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2012-12-12 10:25:17 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2012-12-12 10:25:17 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2012-12-12 10:25:17 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2012-12-12 10:25:17 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2012-12-12 10:25:17 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2012-12-12 10:25:17 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2012-12-12 10:25:17 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2012-12-12 10:25:17 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2012-12-12 10:25:17 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2012-12-12 10:25:17 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2012-12-12 10:25:17 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2012-12-12 10:25:17 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2012-12-12 10:25:17 ----A---- C:\Windows\SYSWOW64\user.exe
2012-12-12 10:25:09 ----A---- C:\Windows\SYSWOW64\tzres.dll
2012-12-12 10:25:09 ----A---- C:\Windows\system32\tzres.dll
2012-12-12 10:25:07 ----A---- C:\Windows\SYSWOW64\dpnet.dll
2012-12-12 10:25:07 ----A---- C:\Windows\system32\dpnet.dll
2012-12-12 10:25:06 ----A---- C:\Windows\system32\win32k.sys
2012-12-12 10:25:04 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2012-12-12 10:25:04 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2012-12-12 10:25:04 ----A---- C:\Windows\system32\atmlib.dll
2012-12-12 10:25:04 ----A---- C:\Windows\system32\atmfd.dll
2012-12-11 19:51:50 ----A---- C:\Windows\SYSWOW64\PnkBstrB.exe
2012-12-11 19:51:49 ----A---- C:\Windows\SYSWOW64\PnkBstrA.exe
2012-12-11 19:51:10 ----A---- C:\Windows\SYSWOW64\d3dx10_40.dll
2012-12-11 19:51:10 ----A---- C:\Windows\SYSWOW64\D3DCompiler_40.dll
2012-12-11 19:51:10 ----A---- C:\Windows\system32\d3dx10_40.dll
2012-12-11 19:51:10 ----A---- C:\Windows\system32\D3DCompiler_40.dll
2012-12-11 19:51:08 ----A---- C:\Windows\SYSWOW64\D3DX9_40.dll
2012-12-11 19:51:08 ----A---- C:\Windows\system32\D3DX9_40.dll
2012-12-11 19:41:57 ----D---- C:\Users\FNj\AppData\Roaming\Origin
2012-12-11 19:41:56 ----D---- C:\Program Files (x86)\Origin Games
2012-12-11 19:29:30 ----D---- C:\ProgramData\Origin
2012-12-11 19:29:30 ----D---- C:\ProgramData\Electronic Arts
2012-12-11 15:03:49 ----D---- C:\ProgramData\Sun
2012-12-11 15:03:35 ----A---- C:\Windows\SYSWOW64\deployJava1.dll
2012-12-11 15:03:34 ----A---- C:\Windows\SYSWOW64\npDeployJava1.dll
2012-12-11 15:03:34 ----A---- C:\Windows\SYSWOW64\javaws.exe
2012-12-11 15:03:23 ----A---- C:\Windows\SYSWOW64\WindowsAccessBridge-32.dll
2012-12-11 15:03:23 ----A---- C:\Windows\SYSWOW64\javaw.exe
2012-12-11 15:03:23 ----A---- C:\Windows\SYSWOW64\java.exe
2012-12-11 15:03:10 ----D---- C:\Program Files (x86)\Java
2012-12-10 21:42:40 ----D---- C:\Program Files\CCleaner
2012-12-10 14:27:29 ----A---- C:\Windows\SYSWOW64\XAudio2_7.dll
2012-12-10 14:27:29 ----A---- C:\Windows\SYSWOW64\XAPOFX1_5.dll
2012-12-10 14:27:29 ----A---- C:\Windows\system32\XAudio2_7.dll
2012-12-10 14:27:29 ----A---- C:\Windows\system32\XAPOFX1_5.dll
2012-12-10 14:27:28 ----A---- C:\Windows\SYSWOW64\xactengine3_7.dll
2012-12-10 14:27:28 ----A---- C:\Windows\SYSWOW64\d3dcsx_43.dll
2012-12-10 14:27:28 ----A---- C:\Windows\system32\xactengine3_7.dll
2012-12-10 14:27:28 ----A---- C:\Windows\system32\d3dx11_43.dll
2012-12-10 14:27:28 ----A---- C:\Windows\system32\d3dcsx_43.dll
2012-12-10 14:27:28 ----A---- C:\Windows\system32\D3DCompiler_43.dll
2012-12-10 14:27:27 ----A---- C:\Windows\system32\d3dx10_43.dll
2012-12-10 14:27:26 ----A---- C:\Windows\system32\D3DX9_43.dll
2012-12-10 14:27:25 ----A---- C:\Windows\SYSWOW64\XAudio2_6.dll
2012-12-10 14:27:25 ----A---- C:\Windows\SYSWOW64\XAPOFX1_4.dll
2012-12-10 14:27:25 ----A---- C:\Windows\system32\XAudio2_6.dll
2012-12-10 14:27:25 ----A---- C:\Windows\system32\XAPOFX1_4.dll
2012-12-10 14:27:24 ----A---- C:\Windows\SYSWOW64\xactengine3_6.dll
2012-12-10 14:27:24 ----A---- C:\Windows\SYSWOW64\X3DAudio1_7.dll
2012-12-10 14:27:24 ----A---- C:\Windows\system32\xactengine3_6.dll
2012-12-10 14:27:24 ----A---- C:\Windows\system32\X3DAudio1_7.dll
2012-12-10 14:27:23 ----A---- C:\Windows\SYSWOW64\XAudio2_5.dll
2012-12-10 14:27:23 ----A---- C:\Windows\system32\XAudio2_5.dll
2012-12-10 14:27:22 ----A---- C:\Windows\SYSWOW64\xactengine3_5.dll
2012-12-10 14:27:22 ----A---- C:\Windows\SYSWOW64\D3DCompiler_42.dll
2012-12-10 14:27:22 ----A---- C:\Windows\system32\xactengine3_5.dll
2012-12-10 14:27:22 ----A---- C:\Windows\system32\D3DCompiler_42.dll
2012-12-10 14:27:21 ----A---- C:\Windows\SYSWOW64\d3dx11_42.dll
2012-12-10 14:27:21 ----A---- C:\Windows\SYSWOW64\d3dcsx_42.dll
2012-12-10 14:27:21 ----A---- C:\Windows\system32\d3dx11_42.dll
2012-12-10 14:27:21 ----A---- C:\Windows\system32\d3dcsx_42.dll
2012-12-10 14:27:20 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2012-12-10 14:27:20 ----A---- C:\Windows\SYSWOW64\d3dx10_42.dll
2012-12-10 14:27:20 ----A---- C:\Windows\system32\D3DX9_42.dll
2012-12-10 14:27:20 ----A---- C:\Windows\system32\d3dx10_42.dll
2012-12-10 14:27:19 ----A---- C:\Windows\SYSWOW64\d3dx10_41.dll
2012-12-10 14:27:19 ----A---- C:\Windows\SYSWOW64\D3DCompiler_41.dll
2012-12-10 14:27:19 ----A---- C:\Windows\system32\d3dx10_41.dll
2012-12-10 14:27:19 ----A---- C:\Windows\system32\D3DCompiler_41.dll
2012-12-10 14:27:18 ----A---- C:\Windows\SYSWOW64\XAudio2_4.dll
2012-12-10 14:27:18 ----A---- C:\Windows\SYSWOW64\XAPOFX1_3.dll
2012-12-10 14:27:18 ----A---- C:\Windows\SYSWOW64\D3DX9_41.dll
2012-12-10 14:27:18 ----A---- C:\Windows\system32\XAudio2_4.dll
2012-12-10 14:27:18 ----A---- C:\Windows\system32\XAPOFX1_3.dll
2012-12-10 14:27:18 ----A---- C:\Windows\system32\D3DX9_41.dll
2012-12-10 14:27:17 ----A---- C:\Windows\SYSWOW64\xactengine3_4.dll
2012-12-10 14:27:17 ----A---- C:\Windows\SYSWOW64\X3DAudio1_6.dll
2012-12-10 14:27:17 ----A---- C:\Windows\system32\xactengine3_4.dll
2012-12-10 14:27:17 ----A---- C:\Windows\system32\X3DAudio1_6.dll
2012-12-10 14:27:14 ----A---- C:\Windows\SYSWOW64\XAudio2_3.dll
2012-12-10 14:27:14 ----A---- C:\Windows\SYSWOW64\XAPOFX1_2.dll
2012-12-10 14:27:14 ----A---- C:\Windows\SYSWOW64\xactengine3_3.dll
2012-12-10 14:27:14 ----A---- C:\Windows\system32\XAudio2_3.dll
2012-12-10 14:27:14 ----A---- C:\Windows\system32\XAPOFX1_2.dll
2012-12-10 14:27:14 ----A---- C:\Windows\system32\xactengine3_3.dll
2012-12-10 14:27:13 ----A---- C:\Windows\SYSWOW64\X3DAudio1_5.dll
2012-12-10 14:27:13 ----A---- C:\Windows\system32\X3DAudio1_5.dll
2012-12-10 14:27:12 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2012-12-10 14:27:12 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2012-12-10 14:27:12 ----A---- C:\Windows\SYSWOW64\xactengine3_2.dll
2012-12-10 14:27:12 ----A---- C:\Windows\system32\XAudio2_2.dll
2012-12-10 14:27:12 ----A---- C:\Windows\system32\XAPOFX1_1.dll
2012-12-10 14:27:12 ----A---- C:\Windows\system32\xactengine3_2.dll
2012-12-10 14:27:11 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2012-12-10 14:27:11 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2012-12-10 14:27:11 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2012-12-10 14:27:11 ----A---- C:\Windows\system32\D3DX9_39.dll
2012-12-10 14:27:11 ----A---- C:\Windows\system32\d3dx10_39.dll
2012-12-10 14:27:11 ----A---- C:\Windows\system32\D3DCompiler_39.dll
2012-12-10 14:27:10 ----A---- C:\Windows\SYSWOW64\XAudio2_1.dll
2012-12-10 14:27:10 ----A---- C:\Windows\SYSWOW64\XAPOFX1_0.dll
2012-12-10 14:27:10 ----A---- C:\Windows\system32\XAudio2_1.dll
2012-12-10 14:27:10 ----A---- C:\Windows\system32\XAPOFX1_0.dll
2012-12-10 14:27:09 ----A---- C:\Windows\SYSWOW64\xactengine3_1.dll
2012-12-10 14:27:09 ----A---- C:\Windows\SYSWOW64\X3DAudio1_4.dll
2012-12-10 14:27:09 ----A---- C:\Windows\system32\xactengine3_1.dll
2012-12-10 14:27:09 ----A---- C:\Windows\system32\X3DAudio1_4.dll
2012-12-10 14:27:08 ----A---- C:\Windows\SYSWOW64\D3DX9_38.dll
2012-12-10 14:27:08 ----A---- C:\Windows\SYSWOW64\d3dx10_38.dll
2012-12-10 14:27:08 ----A---- C:\Windows\SYSWOW64\D3DCompiler_38.dll
2012-12-10 14:27:08 ----A---- C:\Windows\system32\D3DX9_38.dll
2012-12-10 14:27:08 ----A---- C:\Windows\system32\d3dx10_38.dll
2012-12-10 14:27:08 ----A---- C:\Windows\system32\D3DCompiler_38.dll
2012-12-10 14:27:07 ----A---- C:\Windows\SYSWOW64\XAudio2_0.dll
2012-12-10 14:27:07 ----A---- C:\Windows\system32\XAudio2_0.dll
2012-12-10 14:27:05 ----A---- C:\Windows\SYSWOW64\xactengine3_0.dll
2012-12-10 14:27:05 ----A---- C:\Windows\SYSWOW64\X3DAudio1_3.dll
2012-12-10 14:27:05 ----A---- C:\Windows\system32\xactengine3_0.dll
2012-12-10 14:27:05 ----A---- C:\Windows\system32\X3DAudio1_3.dll
2012-12-10 14:27:04 ----A---- C:\Windows\SYSWOW64\xactengine2_10.dll
2012-12-10 14:27:04 ----A---- C:\Windows\SYSWOW64\D3DX9_37.dll
2012-12-10 14:27:04 ----A---- C:\Windows\SYSWOW64\d3dx10_37.dll
2012-12-10 14:27:04 ----A---- C:\Windows\SYSWOW64\D3DCompiler_37.dll
2012-12-10 14:27:04 ----A---- C:\Windows\system32\xactengine2_10.dll
2012-12-10 14:27:04 ----A---- C:\Windows\system32\D3DX9_37.dll
2012-12-10 14:27:04 ----A---- C:\Windows\system32\d3dx10_37.dll
2012-12-10 14:27:04 ----A---- C:\Windows\system32\D3DCompiler_37.dll
2012-12-10 14:27:02 ----A---- C:\Windows\SYSWOW64\d3dx9_36.dll
2012-12-10 14:27:02 ----A---- C:\Windows\SYSWOW64\d3dx10_36.dll
2012-12-10 14:27:02 ----A---- C:\Windows\SYSWOW64\D3DCompiler_36.dll
2012-12-10 14:27:02 ----A---- C:\Windows\system32\d3dx9_36.dll
2012-12-10 14:27:02 ----A---- C:\Windows\system32\d3dx10_36.dll
2012-12-10 14:27:02 ----A---- C:\Windows\system32\D3DCompiler_36.dll
2012-12-10 14:27:00 ----A---- C:\Windows\SYSWOW64\xactengine2_9.dll
2012-12-10 14:27:00 ----A---- C:\Windows\SYSWOW64\d3dx10_35.dll
2012-12-10 14:27:00 ----A---- C:\Windows\system32\xactengine2_9.dll
2012-12-10 14:27:00 ----A---- C:\Windows\system32\d3dx10_35.dll
2012-12-10 14:26:59 ----A---- C:\Windows\SYSWOW64\d3dx9_35.dll
2012-12-10 14:26:59 ----A---- C:\Windows\SYSWOW64\D3DCompiler_35.dll
2012-12-10 14:26:59 ----A---- C:\Windows\system32\d3dx9_35.dll
2012-12-10 14:26:59 ----A---- C:\Windows\system32\D3DCompiler_35.dll
2012-12-10 14:26:58 ----A---- C:\Windows\SYSWOW64\xactengine2_8.dll
2012-12-10 14:26:58 ----A---- C:\Windows\SYSWOW64\X3DAudio1_2.dll
2012-12-10 14:26:58 ----A---- C:\Windows\SYSWOW64\d3dx9_34.dll
2012-12-10 14:26:58 ----A---- C:\Windows\SYSWOW64\d3dx10_34.dll
2012-12-10 14:26:58 ----A---- C:\Windows\SYSWOW64\D3DCompiler_34.dll
2012-12-10 14:26:58 ----A---- C:\Windows\system32\xactengine2_8.dll
2012-12-10 14:26:58 ----A---- C:\Windows\system32\X3DAudio1_2.dll
2012-12-10 14:26:58 ----A---- C:\Windows\system32\d3dx9_34.dll
2012-12-10 14:26:58 ----A---- C:\Windows\system32\d3dx10_34.dll
2012-12-10 14:26:58 ----A---- C:\Windows\system32\D3DCompiler_34.dll
2012-12-10 14:26:57 ----A---- C:\Windows\SYSWOW64\xinput1_3.dll
2012-12-10 14:26:57 ----A---- C:\Windows\system32\xinput1_3.dll
2012-12-10 14:26:56 ----A---- C:\Windows\SYSWOW64\xactengine2_7.dll
2012-12-10 14:26:56 ----A---- C:\Windows\SYSWOW64\d3dx10_33.dll
2012-12-10 14:26:56 ----A---- C:\Windows\SYSWOW64\D3DCompiler_33.dll
2012-12-10 14:26:56 ----A---- C:\Windows\system32\xactengine2_7.dll
2012-12-10 14:26:56 ----A---- C:\Windows\system32\d3dx10_33.dll
2012-12-10 14:26:56 ----A---- C:\Windows\system32\D3DCompiler_33.dll
2012-12-10 14:26:55 ----A---- C:\Windows\SYSWOW64\d3dx9_33.dll
2012-12-10 14:26:55 ----A---- C:\Windows\system32\d3dx9_33.dll
2012-12-10 14:26:53 ----A---- C:\Windows\SYSWOW64\xactengine2_6.dll
2012-12-10 14:26:53 ----A---- C:\Windows\system32\xactengine2_6.dll
2012-12-10 14:26:52 ----A---- C:\Windows\SYSWOW64\xactengine2_5.dll
2012-12-10 14:26:52 ----A---- C:\Windows\system32\xactengine2_5.dll
2012-12-10 14:26:51 ----A---- C:\Windows\SYSWOW64\d3dx10.dll
2012-12-10 14:26:51 ----A---- C:\Windows\system32\d3dx10.dll
2012-12-10 14:26:50 ----A---- C:\Windows\SYSWOW64\xactengine2_4.dll
2012-12-10 14:26:50 ----A---- C:\Windows\SYSWOW64\x3daudio1_1.dll
2012-12-10 14:26:50 ----A---- C:\Windows\SYSWOW64\d3dx9_32.dll
2012-12-10 14:26:50 ----A---- C:\Windows\system32\xactengine2_4.dll
2012-12-10 14:26:50 ----A---- C:\Windows\system32\x3daudio1_1.dll
2012-12-10 14:26:50 ----A---- C:\Windows\system32\d3dx9_32.dll
2012-12-10 14:26:49 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2012-12-10 14:26:49 ----A---- C:\Windows\system32\d3dx9_31.dll
2012-12-10 14:26:48 ----A---- C:\Windows\SYSWOW64\xinput1_2.dll
2012-12-10 14:26:48 ----A---- C:\Windows\SYSWOW64\xactengine2_3.dll
2012-12-10 14:26:48 ----A---- C:\Windows\SYSWOW64\xactengine2_2.dll
2012-12-10 14:26:48 ----A---- C:\Windows\system32\xinput1_2.dll
2012-12-10 14:26:48 ----A---- C:\Windows\system32\xactengine2_3.dll
2012-12-10 14:26:48 ----A---- C:\Windows\system32\xactengine2_2.dll
2012-12-10 14:26:47 ----A---- C:\Windows\SYSWOW64\xinput1_1.dll
2012-12-10 14:26:47 ----A---- C:\Windows\SYSWOW64\xactengine2_1.dll
2012-12-10 14:26:47 ----A---- C:\Windows\system32\xinput1_1.dll
2012-12-10 14:26:47 ----A---- C:\Windows\system32\xactengine2_1.dll
2012-12-10 14:26:39 ----A---- C:\Windows\SYSWOW64\d3dx9_30.dll
2012-12-10 14:26:39 ----A---- C:\Windows\system32\d3dx9_30.dll
2012-12-10 14:26:38 ----A---- C:\Windows\SYSWOW64\xactengine2_0.dll
2012-12-10 14:26:38 ----A---- C:\Windows\system32\xactengine2_0.dll
2012-12-10 14:26:37 ----A---- C:\Windows\SYSWOW64\x3daudio1_0.dll
2012-12-10 14:26:37 ----A---- C:\Windows\SYSWOW64\d3dx9_29.dll
2012-12-10 14:26:37 ----A---- C:\Windows\SYSWOW64\d3dx9_28.dll
2012-12-10 14:26:37 ----A---- C:\Windows\system32\x3daudio1_0.dll
2012-12-10 14:26:37 ----A---- C:\Windows\system32\d3dx9_29.dll
2012-12-10 14:26:37 ----A---- C:\Windows\system32\d3dx9_28.dll
2012-12-10 14:26:36 ----A---- C:\Windows\SYSWOW64\d3dx9_27.dll
2012-12-10 14:26:36 ----A---- C:\Windows\system32\d3dx9_27.dll
2012-12-10 14:26:35 ----A---- C:\Windows\SYSWOW64\d3dx9_26.dll
2012-12-10 14:26:35 ----A---- C:\Windows\system32\d3dx9_26.dll
2012-12-10 14:26:34 ----A---- C:\Windows\SYSWOW64\d3dx9_25.dll
2012-12-10 14:26:34 ----A---- C:\Windows\SYSWOW64\d3dx9_24.dll
2012-12-10 14:26:34 ----A---- C:\Windows\system32\d3dx9_25.dll
2012-12-10 14:26:34 ----A---- C:\Windows\system32\d3dx9_24.dll
2012-12-10 14:24:19 ----D---- C:\Windows\SYSWOW64\directx
2012-12-10 14:17:11 ----D---- C:\ProgramData\Razer
2012-12-10 14:17:11 ----D---- C:\Program Files (x86)\Razer
2012-12-10 14:05:35 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2012-12-10 13:52:42 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2012-12-10 13:52:42 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2012-12-10 13:52:42 ----A---- C:\Windows\system32\RdpGroupPolicyExtension.dll
2012-12-10 13:52:41 ----A---- C:\Windows\system32\wksprtPS.dll
2012-12-10 13:52:41 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2012-12-10 13:52:41 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys
2012-12-10 13:52:40 ----A---- C:\Windows\SYSWOW64\wksprtPS.dll
2012-12-10 13:52:40 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2012-12-10 13:52:40 ----A---- C:\Windows\SYSWOW64\rdpendp_winip.dll
2012-12-10 13:52:40 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2012-12-10 13:52:40 ----A---- C:\Windows\SYSWOW64\MsRdpWebAccess.dll
2012-12-10 13:52:40 ----A---- C:\Windows\SYSWOW64\aaclient.dll
2012-12-10 13:52:40 ----A---- C:\Windows\system32\wksprt.exe
2012-12-10 13:52:40 ----A---- C:\Windows\system32\TSWbPrxy.exe
2012-12-10 13:52:40 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2012-12-10 13:52:40 ----A---- C:\Windows\system32\tsgqec.dll
2012-12-10 13:52:40 ----A---- C:\Windows\system32\rdpudd.dll
2012-12-10 13:52:40 ----A---- C:\Windows\system32\rdpendp_winip.dll
2012-12-10 13:52:40 ----A---- C:\Windows\system32\rdpcorets.dll
2012-12-10 13:52:40 ----A---- C:\Windows\system32\mstsc.exe
2012-12-10 13:52:40 ----A---- C:\Windows\system32\MsRdpWebAccess.dll
2012-12-10 13:52:40 ----A---- C:\Windows\system32\aaclient.dll
2012-12-10 13:52:39 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2012-12-10 13:52:39 ----A---- C:\Windows\system32\mstscax.dll
2012-12-10 13:50:35 ----A---- C:\Windows\system32\OxpsConverter.exe
2012-12-10 13:50:28 ----A---- C:\Windows\SYSWOW64\dhcpcsvc6.dll
2012-12-10 13:50:28 ----A---- C:\Windows\SYSWOW64\dhcpcore6.dll
2012-12-10 13:50:28 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2012-12-10 13:50:28 ----A---- C:\Windows\system32\dhcpcore6.dll
2012-12-10 13:50:18 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2012-12-10 13:50:18 ----A---- C:\Windows\SYSWOW64\schannel.dll
2012-12-10 13:50:18 ----A---- C:\Windows\SYSWOW64\secur32.dll
2012-12-10 13:50:18 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2012-12-10 13:50:18 ----A---- C:\Windows\system32\schannel.dll
2012-12-10 13:50:18 ----A---- C:\Windows\system32\ncrypt.dll
2012-12-10 13:50:18 ----A---- C:\Windows\system32\lsasrv.dll
2012-12-10 13:50:18 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2012-12-10 13:50:18 ----A---- C:\Windows\system32\drivers\cng.sys
2012-12-10 13:50:15 ----A---- C:\Windows\system32\drivers\tcpip.sys
2012-12-10 13:50:14 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2012-12-10 13:50:14 ----A---- C:\Windows\SYSWOW64\netevent.dll
2012-12-10 13:50:14 ----A---- C:\Windows\SYSWOW64\netcorehc.dll
2012-12-10 13:50:14 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2012-12-10 13:50:14 ----A---- C:\Windows\system32\nlasvc.dll
2012-12-10 13:50:14 ----A---- C:\Windows\system32\nlaapi.dll
2012-12-10 13:50:14 ----A---- C:\Windows\system32\netevent.dll
2012-12-10 13:50:14 ----A---- C:\Windows\system32\netcorehc.dll
2012-12-10 13:50:14 ----A---- C:\Windows\system32\ncsi.dll
2012-12-10 13:50:14 ----A---- C:\Windows\system32\iphlpsvc.dll
2012-12-10 13:50:14 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2012-12-10 13:50:14 ----A---- C:\Windows\system32\drivers\netio.sys
2012-12-10 13:50:14 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2012-12-10 13:50:09 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2012-12-10 13:50:09 ----A---- C:\Windows\system32\qdvd.dll
2012-12-10 13:50:09 ----A---- C:\Windows\system32\drivers\RNDISMP.sys
2012-12-10 13:50:09 ----A---- C:\Windows\system32\drivers\ndis.sys
2012-12-10 13:24:18 ----D---- C:\Windows\system32\SPReview
2012-12-10 13:24:01 ----D---- C:\Windows\system32\EventProviders
2012-12-10 13:22:02 ----A---- C:\Windows\system32\netfxperf.dll
2012-12-10 13:22:02 ----A---- C:\Windows\system32\dfshim.dll
2012-12-10 13:21:58 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2012-12-10 13:21:55 ----A---- C:\Windows\system32\d3d10warp.dll
2012-12-10 13:21:51 ----A---- C:\Windows\SYSWOW64\mfc40u.dll
2012-12-10 13:21:51 ----A---- C:\Windows\SYSWOW64\mfc40.dll
2012-12-10 13:21:51 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2012-12-10 13:21:51 ----A---- C:\Windows\system32\sysmain.dll
2012-12-10 13:21:49 ----A---- C:\Windows\system32\MSVidCtl.dll
2012-12-10 13:21:48 ----A---- C:\Windows\system32\wmp.dll
2012-12-10 13:21:48 ----A---- C:\Windows\system32\mscoree.dll
2012-12-10 13:21:47 ----A---- C:\Windows\system32\secproc_isv.dll
2012-12-10 13:21:47 ----A---- C:\Windows\system32\RMActivate_isv.exe
2012-12-10 13:21:47 ----A---- C:\Windows\system32\mmcndmgr.dll
2012-12-10 13:21:47 ----A---- C:\Windows\system32\mf.dll
2012-12-10 13:21:46 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll
2012-12-10 13:21:46 ----A---- C:\Windows\SYSWOW64\secproc.dll
2012-12-10 13:21:46 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe
2012-12-10 13:21:46 ----A---- C:\Windows\system32\xpsservices.dll
2012-12-10 13:21:46 ----A---- C:\Windows\system32\secproc.dll
2012-12-10 13:21:46 ----A---- C:\Windows\system32\rpcrt4.dll
2012-12-10 13:21:46 ----A---- C:\Windows\system32\RMActivate.exe
2012-12-10 13:21:45 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2012-12-10 13:21:45 ----A---- C:\Windows\system32\schedsvc.dll
2012-12-10 13:21:44 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2012-12-10 13:21:44 ----A---- C:\Windows\system32\spwizui.dll
2012-12-10 13:21:44 ----A---- C:\Windows\system32\ole32.dll
2012-12-10 13:21:43 ----A---- C:\Windows\SYSWOW64\mf.dll
2012-12-10 13:21:43 ----A---- C:\Windows\system32\wevtsvc.dll
2012-12-10 13:21:43 ----A---- C:\Windows\system32\taskschd.dll
2012-12-10 13:21:43 ----A---- C:\Windows\system32\RacEngn.dll
2012-12-10 13:21:43 ----A---- C:\Windows\system32\ExplorerFrame.dll
2012-12-10 13:21:43 ----A---- C:\Windows\system32\diagperf.dll
2012-12-10 13:21:42 ----A---- C:\Windows\SYSWOW64\CertEnroll.dll
2012-12-10 13:21:42 ----A---- C:\Windows\system32\vssapi.dll
2012-12-10 13:21:42 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2012-12-10 13:21:42 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2012-12-10 13:21:41 ----A---- C:\Windows\SYSWOW64\wmp.dll
2012-12-10 13:21:41 ----A---- C:\Windows\system32\UIRibbon.dll
2012-12-10 13:21:41 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2012-12-10 13:21:40 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2012-12-10 13:21:40 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2012-12-10 13:21:40 ----A---- C:\Windows\system32\WsmSvc.dll
2012-12-10 13:21:40 ----A---- C:\Windows\system32\WMVCORE.DLL
2012-12-10 13:21:40 ----A---- C:\Windows\system32\rdpdd.dll
2012-12-10 13:21:40 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2012-12-10 13:21:40 ----A---- C:\Windows\system32\PresentationHost.exe
2012-12-10 13:21:40 ----A---- C:\Windows\system32\MPSSVC.dll
2012-12-10 13:21:39 ----A---- C:\Windows\system32\WMVDECOD.DLL
2012-12-10 13:21:39 ----A---- C:\Windows\system32\WinSAT.exe
2012-12-10 13:21:39 ----A---- C:\Windows\system32\spreview.exe
2012-12-10 13:21:39 ----A---- C:\Windows\system32\spinstall.exe
2012-12-10 13:21:39 ----A---- C:\Windows\system32\CertEnroll.dll
2012-12-10 13:21:38 ----A---- C:\Windows\SYSWOW64\RacEngn.dll
2012-12-10 13:21:38 ----A---- C:\Windows\system32\SearchFolder.dll
2012-12-10 13:21:38 ----A---- C:\Windows\system32\IKEEXT.DLL
2012-12-10 13:21:38 ----A---- C:\Windows\system32\d3d9.dll
2012-12-10 13:21:38 ----A---- C:\Windows\system32\AuthFWSnapin.dll
2012-12-10 13:21:37 ----A---- C:\Windows\SYSWOW64\AuthFWSnapin.dll
2012-12-10 13:21:37 ----A---- C:\Windows\system32\VSSVC.exe
2012-12-10 13:21:37 ----A---- C:\Windows\system32\gpsvc.dll
2012-12-10 13:21:37 ----A---- C:\Windows\system32\dwmcore.dll
2012-12-10 13:21:37 ----A---- C:\Windows\system32\drivers\http.sys
2012-12-10 13:21:37 ----A---- C:\Windows\system32\dbgeng.dll
2012-12-10 13:21:35 ----A---- C:\Windows\SYSWOW64\ole32.dll
2012-12-10 13:21:35 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2012-12-10 13:21:35 ----A---- C:\Windows\system32\TSWorkspace.dll
2012-12-10 13:21:35 ----A---- C:\Windows\system32\qmgr.dll
2012-12-10 13:21:35 ----A---- C:\Windows\system32\audiosrv.dll
2012-12-10 13:21:35 ----A---- C:\Windows\system32\actxprxy.dll
2012-12-10 13:21:34 ----A---- C:\Windows\system32\termsrv.dll
2012-12-10 13:21:34 ----A---- C:\Windows\system32\imapi2fs.dll
2012-12-10 13:21:33 ----A---- C:\Windows\SYSWOW64\vssapi.dll
2012-12-10 13:21:33 ----A---- C:\Windows\SYSWOW64\SearchFolder.dll
2012-12-10 13:21:33 ----A---- C:\Windows\SYSWOW64\d3d9.dll
2012-12-10 13:21:33 ----A---- C:\Windows\system32\winhttp.dll
2012-12-10 13:21:33 ----A---- C:\Windows\system32\QAGENTRT.DLL
2012-12-10 13:21:33 ----A---- C:\Windows\system32\propsys.dll
2012-12-10 13:21:33 ----A---- C:\Windows\system32\netlogon.dll
2012-12-10 13:21:33 ----A---- C:\Windows\system32\msv1_0.dll
2012-12-10 13:21:33 ----A---- C:\Windows\system32\d3d11.dll
2012-12-10 13:21:32 ----A---- C:\Windows\SYSWOW64\taskschd.dll
2012-12-10 13:21:32 ----A---- C:\Windows\system32\werconcpl.dll
2012-12-10 13:21:32 ----A---- C:\Windows\system32\wbengine.exe
2012-12-10 13:21:32 ----A---- C:\Windows\system32\taskeng.exe
2012-12-10 13:21:32 ----A---- C:\Windows\system32\setupapi.dll
2012-12-10 13:21:32 ----A---- C:\Windows\system32\rpcss.dll
2012-12-10 13:21:32 ----A---- C:\Windows\system32\odbc32.dll
2012-12-10 13:21:32 ----A---- C:\Windows\system32\authui.dll
2012-12-10 13:21:31 ----A---- C:\Windows\system32\WSDApi.dll
2012-12-10 13:21:31 ----A---- C:\Windows\system32\user32.dll
2012-12-10 13:21:31 ----A---- C:\Windows\system32\drivers\tdx.sys
2012-12-10 13:21:31 ----A---- C:\Windows\system32\dhcpcore.dll
2012-12-10 13:21:31 ----A---- C:\Windows\system32\certmgr.dll
2012-12-10 13:21:30 ----A---- C:\Windows\SYSWOW64\wer.dll
2012-12-10 13:21:30 ----A---- C:\Windows\SYSWOW64\certcli.dll
2012-12-10 13:21:30 ----A---- C:\Windows\system32\tsmf.dll
2012-12-10 13:21:30 ----A---- C:\Windows\system32\scavengeui.dll
2012-12-10 13:21:30 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2012-12-10 13:21:30 ----A---- C:\Windows\system32\msdrm.dll
2012-12-10 13:21:30 ----A---- C:\Windows\system32\drivers\netbt.sys
2012-12-10 13:21:29 ----A---- C:\Windows\SYSWOW64\dwmcore.dll
2012-12-10 13:21:29 ----A---- C:\Windows\system32\shlwapi.dll
2012-12-10 13:21:29 ----A---- C:\Windows\system32\netshell.dll
2012-12-10 13:21:29 ----A---- C:\Windows\system32\msdtctm.dll
2012-12-10 13:21:29 ----A---- C:\Windows\system32\framedynos.dll
2012-12-10 13:21:28 ----A---- C:\Windows\SYSWOW64\odbc32.dll
2012-12-10 13:21:26 ----A---- C:\Windows\SYSWOW64\tcpmonui.dll
2012-12-10 13:21:26 ----A---- C:\Windows\system32\ws2_32.dll
2012-12-10 13:21:26 ----A---- C:\Windows\system32\wmpps.dll
2012-12-10 13:21:26 ----A---- C:\Windows\system32\wmicmiplugin.dll
2012-12-10 13:21:26 ----A---- C:\Windows\system32\winlogon.exe
2012-12-10 13:21:26 ----A---- C:\Windows\system32\usp10.dll
2012-12-10 13:21:26 ----A---- C:\Windows\system32\netcfgx.dll
2012-12-10 13:21:26 ----A---- C:\Windows\system32\lsm.exe
2012-12-10 13:21:26 ----A---- C:\Windows\system32\dxgi.dll
2012-12-10 13:21:26 ----A---- C:\Windows\system32\comdlg32.dll
2012-12-10 13:21:26 ----A---- C:\Windows\system32\apphelp.dll
2012-12-10 13:21:25 ----A---- C:\Windows\SYSWOW64\winhttp.dll
2012-12-10 13:21:25 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll
2012-12-10 13:21:25 ----A---- C:\Windows\SYSWOW64\tsmf.dll
2012-12-10 13:21:25 ----A---- C:\Windows\SYSWOW64\dot3api.dll
2012-12-10 13:21:25 ----A---- C:\Windows\system32\wpdshext.dll
2012-12-10 13:21:25 ----A---- C:\Windows\system32\Query.dll
2012-12-10 13:21:25 ----A---- C:\Windows\system32\QAGENT.DLL
2012-12-10 13:21:25 ----A---- C:\Windows\system32\mswsock.dll
2012-12-10 13:21:25 ----A---- C:\Windows\system32\drvstore.dll
2012-12-10 13:21:25 ----A---- C:\Windows\system32\azroles.dll
2012-12-10 13:21:24 ----A---- C:\Windows\SYSWOW64\setupapi.dll
2012-12-10 13:21:24 ----A---- C:\Windows\SYSWOW64\MSVidCtl.dll
2012-12-10 13:21:24 ----A---- C:\Windows\SYSWOW64\dbgeng.dll
2012-12-10 13:21:24 ----A---- C:\Windows\SYSWOW64\apphelp.dll
2012-12-10 13:21:24 ----A---- C:\Windows\system32\Vault.dll
2012-12-10 13:21:24 ----A---- C:\Windows\system32\samsrv.dll
2012-12-10 13:21:24 ----A---- C:\Windows\system32\lpksetup.exe
2012-12-10 13:21:24 ----A---- C:\Windows\system32\DShowRdpFilter.dll
2012-12-10 13:21:24 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2012-12-10 13:21:24 ----A---- C:\Windows\system32\cmd.exe
2012-12-10 13:21:24 ----A---- C:\Windows\system32\BFE.DLL
2012-12-10 13:21:23 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2012-12-10 13:21:23 ----A---- C:\Windows\SYSWOW64\netlogon.dll
2012-12-10 13:21:23 ----A---- C:\Windows\SYSWOW64\netcfgx.dll
2012-12-10 13:21:23 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2012-12-10 13:21:22 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll
2012-12-10 13:21:22 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2012-12-10 13:21:22 ----A---- C:\Windows\SYSWOW64\Query.dll
2012-12-10 13:21:22 ----A---- C:\Windows\system32\Wldap32.dll
2012-12-10 13:21:22 ----A---- C:\Windows\system32\WindowsCodecs.dll
2012-12-10 13:21:22 ----A---- C:\Windows\system32\WebClnt.dll
2012-12-10 13:21:22 ----A---- C:\Windows\system32\taskcomp.dll
2012-12-10 13:21:22 ----A---- C:\Windows\system32\sxs.dll
2012-12-10 13:21:22 ----A---- C:\Windows\system32\mfds.dll
2012-12-10 13:21:22 ----A---- C:\Windows\system32\mcbuilder.exe
2012-12-10 13:21:22 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2012-12-10 13:21:21 ----A---- C:\Windows\SYSWOW64\upnp.dll
2012-12-10 13:21:21 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2012-12-10 13:21:21 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2012-12-10 13:21:21 ----A---- C:\Windows\SYSWOW64\mmcndmgr.dll
2012-12-10 13:21:21 ----A---- C:\Windows\SYSWOW64\DShowRdpFilter.dll
2012-12-10 13:21:21 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2012-12-10 13:21:21 ----A---- C:\Windows\system32\webservices.dll
2012-12-10 13:21:21 ----A---- C:\Windows\system32\pnidui.dll
2012-12-10 13:21:21 ----A---- C:\Windows\system32\ipsmsnap.dll
2012-12-10 13:21:21 ----A---- C:\Windows\system32\hgprint.dll
2012-12-10 13:21:20 ----A---- C:\Windows\SYSWOW64\SessEnv.dll
2012-12-10 13:21:20 ----A---- C:\Windows\SYSWOW64\PortableDeviceApi.dll
2012-12-10 13:21:20 ----A---- C:\Windows\SYSWOW64\msdrm.dll
2012-12-10 13:21:20 ----A---- C:\Windows\SYSWOW64\imapi2fs.dll
2012-12-10 13:21:20 ----A---- C:\Windows\SYSWOW64\authui.dll
2012-12-10 13:21:20 ----A---- C:\Windows\system32\winsta.dll
2012-12-10 13:21:20 ----A---- C:\Windows\system32\sqlsrv32.dll
2012-12-10 13:21:20 ----A---- C:\Windows\system32\SessEnv.dll
2012-12-10 13:21:20 ----A---- C:\Windows\system32\fveapi.dll
2012-12-10 13:21:20 ----A---- C:\Windows\system32\dot3api.dll
2012-12-10 13:21:19 ----A---- C:\Windows\SYSWOW64\usp10.dll
2012-12-10 13:21:19 ----A---- C:\Windows\SYSWOW64\shlwapi.dll
2012-12-10 13:21:19 ----A---- C:\Windows\SYSWOW64\mcbuilder.exe
2012-12-10 13:21:19 ----A---- C:\Windows\system32\schtasks.exe
2012-12-10 13:21:19 ----A---- C:\Windows\system32\prncache.dll
2012-12-10 13:21:19 ----A---- C:\Windows\system32\mcmde.dll
2012-12-10 13:21:19 ----A---- C:\Windows\system32\gdi32.dll
2012-12-10 13:21:19 ----A---- C:\Windows\system32\drivers\volsnap.sys
2012-12-10 13:21:19 ----A---- C:\Windows\system32\drivers\msrpc.sys
2012-12-10 13:21:18 ----A---- C:\Windows\SYSWOW64\xpsservices.dll
2012-12-10 13:21:18 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2012-12-10 13:21:18 ----A---- C:\Windows\SYSWOW64\userenv.dll
2012-12-10 13:21:18 ----A---- C:\Windows\SYSWOW64\drvstore.dll
2012-12-10 13:21:18 ----A---- C:\Windows\SYSWOW64\certmgr.dll
2012-12-10 13:21:18 ----A---- C:\Windows\system32\WMNetMgr.dll
2012-12-10 13:21:18 ----A---- C:\Windows\system32\wlanpref.dll
2012-12-10 13:21:18 ----A---- C:\Windows\system32\vpnike.dll
2012-12-10 13:21:18 ----A---- C:\Windows\system32\userenv.dll
2012-12-10 13:21:18 ----A---- C:\Windows\system32\photowiz.dll
2012-12-10 13:21:18 ----A---- C:\Windows\system32\evr.dll
2012-12-10 13:21:18 ----A---- C:\Windows\system32\drivers\rdbss.sys
2012-12-10 13:21:18 ----A---- C:\Windows\system32\drivers\1394ohci.sys
2012-12-10 13:21:17 ----A---- C:\Windows\SYSWOW64\comdlg32.dll
2012-12-10 13:21:17 ----A---- C:\Windows\system32\IPSECSVC.DLL
2012-12-10 13:21:17 ----A---- C:\Windows\system32\framedyn.dll
2012-12-10 13:21:17 ----A---- C:\Windows\system32\AudioSes.dll
2012-12-10 13:21:16 ----A---- C:\Windows\SYSWOW64\cmd.exe
2012-12-10 13:21:16 ----A---- C:\Windows\system32\wmpmde.dll
2012-12-10 13:21:16 ----A---- C:\Windows\system32\WMPEncEn.dll
2012-12-10 13:21:16 ----A---- C:\Windows\system32\wmpeffects.dll
2012-12-10 13:21:16 ----A---- C:\Windows\system32\SyncCenter.dll
2012-12-10 13:21:16 ----A---- C:\Windows\system32\srvsvc.dll
2012-12-10 13:21:16 ----A---- C:\Windows\system32\sppobjs.dll
2012-12-10 13:21:16 ----A---- C:\Windows\system32\mfreadwrite.dll
2012-12-10 13:21:16 ----A---- C:\Windows\system32\FXSSVC.exe
2012-12-10 13:21:16 ----A---- C:\Windows\system32\aepdu.dll
2012-12-10 13:21:15 ----A---- C:\Windows\SYSWOW64\propsys.dll
2012-12-10 13:21:15 ----A---- C:\Windows\SYSWOW64\framedynos.dll
2012-12-10 13:21:15 ----A---- C:\Windows\system32\shsvcs.dll
2012-12-10 13:21:15 ----A---- C:\Windows\system32\fde.dll
2012-12-10 13:21:15 ----A---- C:\Windows\system32\aeinv.dll
2012-12-10 13:21:14 ----A---- C:\Windows\SYSWOW64\Wldap32.dll
2012-12-10 13:21:14 ----A---- C:\Windows\SYSWOW64\user32.dll
2012-12-10 13:21:14 ----A---- C:\Windows\SYSWOW64\mfds.dll
2012-12-10 13:21:14 ----A---- C:\Windows\system32\WinSATAPI.dll
2012-12-10 13:21:14 ----A---- C:\Windows\system32\stobject.dll
2012-12-10 13:21:14 ----A---- C:\Windows\system32\QSHVHOST.DLL
2012-12-10 13:21:14 ----A---- C:\Windows\system32\netid.dll
2012-12-10 13:21:14 ----A---- C:\Windows\system32\netdiagfx.dll
2012-12-10 13:21:14 ----A---- C:\Windows\system32\localsec.dll
2012-12-10 13:21:14 ----A---- C:\Windows\system32\inetpp.dll
2012-12-10 13:21:14 ----A---- C:\Windows\system32\imapi2.dll
2012-12-10 13:21:14 ----A---- C:\Windows\system32\drivers\udfs.sys
2012-12-10 13:21:14 ----A---- C:\Windows\system32\drivers\fltMgr.sys
2012-12-10 13:21:14 ----A---- C:\Windows\system32\credui.dll
2012-12-10 13:21:14 ----A---- C:\Windows\system32\cdd.dll
2012-12-10 13:21:14 ----A---- C:\Windows\system32\bcryptprimitives.dll
2012-12-10 13:21:13 ----A---- C:\Windows\SYSWOW64\azroles.dll
2012-12-10 13:21:13 ----A---- C:\Windows\system32\tcpipcfg.dll
2012-12-10 13:21:13 ----A---- C:\Windows\system32\spp.dll
2012-12-10 13:21:13 ----A---- C:\Windows\system32\msinfo32.exe
2012-12-10 13:21:13 ----A---- C:\Windows\system32\gameux.dll
2012-12-10 13:21:13 ----A---- C:\Windows\system32\davclnt.dll
2012-12-10 13:21:13 ----A---- C:\Windows\system32\biocpl.dll
2012-12-10 13:21:12 ----A---- C:\Windows\SYSWOW64\themeui.dll
2012-12-10 13:21:12 ----A---- C:\Windows\SYSWOW64\taskeng.exe
2012-12-10 13:21:12 ----A---- C:\Windows\SYSWOW64\spp.dll
2012-12-10 13:21:12 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2012-12-10 13:21:12 ----A---- C:\Windows\SYSWOW64\dhcpcore.dll
2012-12-10 13:21:12 ----A---- C:\Windows\SYSWOW64\credui.dll
2012-12-10 13:21:12 ----A---- C:\Windows\system32\scansetting.dll
2012-12-10 13:21:12 ----A---- C:\Windows\system32\printui.dll
2012-12-10 13:21:12 ----A---- C:\Windows\system32\pla.dll
2012-12-10 13:21:12 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2012-12-10 13:21:12 ----A---- C:\Windows\system32\mspbda.dll
2012-12-10 13:21:11 ----A---- C:\Windows\SYSWOW64\basecsp.dll
2012-12-10 13:21:11 ----A---- C:\Windows\system32\wusa.exe
2012-12-10 13:21:11 ----A---- C:\Windows\system32\wiaservc.dll
2012-12-10 13:21:11 ----A---- C:\Windows\system32\vds.exe
2012-12-10 13:21:11 ----A---- C:\Windows\system32\rpchttp.dll
2012-12-10 13:21:11 ----A---- C:\Windows\system32\msdri.dll
2012-12-10 13:21:11 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2012-12-10 13:21:11 ----A---- C:\Windows\system32\drivers\pci.sys
2012-12-10 13:21:11 ----A---- C:\Windows\system32\aitagent.exe
2012-12-10 13:21:10 ----A---- C:\Windows\SYSWOW64\taskcomp.dll
2012-12-10 13:21:10 ----A---- C:\Windows\SYSWOW64\NaturalLanguage6.dll
2012-12-10 13:21:10 ----A---- C:\Windows\SYSWOW64\mfreadwrite.dll
2012-12-10 13:21:10 ----A---- C:\Windows\SYSWOW64\evr.dll
2012-12-10 13:21:10 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2012-12-10 13:21:10 ----A---- C:\Windows\SYSWOW64\dbghelp.dll
2012-12-10 13:21:10 ----A---- C:\Windows\system32\XpsRasterService.dll
2012-12-10 13:21:10 ----A---- C:\Windows\system32\wisptis.exe
2012-12-10 13:21:10 ----A---- C:\Windows\system32\PkgMgr.exe
2012-12-10 13:21:10 ----A---- C:\Windows\system32\ocsetup.exe
2012-12-10 13:21:10 ----A---- C:\Windows\system32\mscms.dll
2012-12-10 13:21:10 ----A---- C:\Windows\system32\FirewallControlPanel.dll
2012-12-10 13:21:10 ----A---- C:\Windows\system32\drivers\rasl2tp.sys
2012-12-10 13:21:10 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2012-12-10 13:21:09 ----A---- C:\Windows\SYSWOW64\WinSATAPI.dll
2012-12-10 13:21:09 ----A---- C:\Windows\SYSWOW64\calc.exe
2012-12-10 13:21:09 ----A---- C:\Windows\system32\wpdbusenum.dll
2012-12-10 13:21:09 ----A---- C:\Windows\system32\sppwinob.dll
2012-12-10 13:21:09 ----A---- C:\Windows\system32\ocsetapi.dll
2012-12-10 13:21:09 ----A---- C:\Windows\system32\eapp3hst.dll
2012-12-10 13:21:09 ----A---- C:\Windows\system32\DXP.dll
2012-12-10 13:21:09 ----A---- C:\Windows\system32\drivers\volmgr.sys
2012-12-10 13:21:08 ----A---- C:\Windows\SYSWOW64\UIRibbon.dll
2012-12-10 13:21:08 ----A---- C:\Windows\SYSWOW64\sxs.dll
2012-12-10 13:21:08 ----A---- C:\Windows\SYSWOW64\sqlsrv32.dll
2012-12-10 13:21:08 ----A---- C:\Windows\system32\wcncsvc.dll
2012-12-10 13:21:08 ----A---- C:\Windows\system32\upnp.dll
2012-12-10 13:21:08 ----A---- C:\Windows\system32\thumbcache.dll
2012-12-10 13:21:08 ----A---- C:\Windows\system32\t2embed.dll
2012-12-10 13:21:08 ----A---- C:\Windows\system32\Robocopy.exe
2012-12-10 13:21:08 ----A---- C:\Windows\system32\mprapi.dll
2012-12-10 13:21:08 ----A---- C:\Windows\system32\eapphost.dll
2012-12-10 13:21:08 ----A---- C:\Windows\system32\drivers\msdsm.sys
2012-12-10 13:21:08 ----A---- C:\Windows\system32\drivers\HpSAMD.sys
2012-12-10 13:21:08 ----A---- C:\Windows\system32\ci.dll
2012-12-10 13:21:07 ----A---- C:\Windows\SYSWOW64\ws2_32.dll
2012-12-10 13:21:07 ----A---- C:\Windows\SYSWOW64\stobject.dll
2012-12-10 13:21:07 ----A---- C:\Windows\SYSWOW64\netshell.dll
2012-12-10 13:21:07 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2012-12-10 13:21:07 ----A---- C:\Windows\system32\hal.dll
2012-12-10 13:21:07 ----A---- C:\Windows\system32\DxpTaskSync.dll
2012-12-10 13:21:07 ----A---- C:\Windows\system32\drivers\fvevol.sys
2012-12-10 13:21:06 ----A---- C:\Windows\SYSWOW64\prncache.dll
2012-12-10 13:21:06 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2012-12-10 13:21:06 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2012-12-10 13:21:06 ----A---- C:\Windows\system32\themeui.dll
2012-12-10 13:21:06 ----A---- C:\Windows\system32\scecli.dll
2012-12-10 13:21:06 ----A---- C:\Windows\system32\puiobj.dll
2012-12-10 13:21:06 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2012-12-10 13:21:06 ----A---- C:\Windows\system32\msasn1.dll
2012-12-10 13:21:06 ----A---- C:\Windows\system32\iasrad.dll
2012-12-10 13:21:06 ----A---- C:\Windows\system32\dwmredir.dll
2012-12-10 13:21:06 ----A---- C:\Windows\system32\drivers\ipfltdrv.sys
2012-12-10 13:21:06 ----A---- C:\Windows\system32\drivers\Classpnp.sys
2012-12-10 13:21:05 ----A---- C:\Windows\SYSWOW64\WSDApi.dll
2012-12-10 13:21:05 ----A---- C:\Windows\SYSWOW64\wmpeffects.dll
2012-12-10 13:21:05 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2012-12-10 13:21:05 ----A---- C:\Windows\SYSWOW64\printui.dll
2012-12-10 13:21:05 ----A---- C:\Windows\SYSWOW64\net1.exe
2012-12-10 13:21:05 ----A---- C:\Windows\system32\onex.dll
2012-12-10 13:21:05 ----A---- C:\Windows\system32\DXPTaskRingtone.dll
2012-12-10 13:21:04 ----A---- C:\Windows\SYSWOW64\scansetting.dll
2012-12-10 13:21:04 ----A---- C:\Windows\system32\wlangpui.dll
2012-12-10 13:21:04 ----A---- C:\Windows\system32\wdc.dll
2012-12-10 13:21:04 ----A---- C:\Windows\system32\sdengin2.dll
2012-12-10 13:21:04 ----A---- C:\Windows\system32\scesrv.dll
2012-12-10 13:21:04 ----A---- C:\Windows\system32\rasmans.dll
2012-12-10 13:21:04 ----A---- C:\Windows\system32\msftedit.dll
2012-12-10 13:21:03 ----A---- C:\Windows\SYSWOW64\WMVCORE.DLL
2012-12-10 13:21:03 ----A---- C:\Windows\SYSWOW64\wlangpui.dll
2012-12-10 13:21:03 ----A---- C:\Windows\SYSWOW64\MMDevAPI.dll
2012-12-10 13:21:03 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2012-12-10 13:21:03 ----A---- C:\Windows\system32\wscapi.dll
2012-12-10 13:21:03 ----A---- C:\Windows\system32\wiadefui.dll
2012-12-10 13:21:03 ----A---- C:\Windows\system32\VAN.dll
2012-12-10 13:21:03 ----A---- C:\Windows\system32\StructuredQuery.dll
2012-12-10 13:21:03 ----A---- C:\Windows\system32\SndVol.exe
2012-12-10 13:21:03 ----A---- C:\Windows\system32\samcli.dll
2012-12-10 13:21:03 ----A---- C:\Windows\system32\regapi.dll
2012-12-10 13:21:03 ----A---- C:\Windows\system32\netcenter.dll
2012-12-10 13:21:03 ----A---- C:\Windows\system32\iasacct.dll
2012-12-10 13:21:03 ----A---- C:\Windows\system32\dskquoui.dll
2012-12-10 13:21:03 ----A---- C:\Windows\system32\drivers\termdd.sys
2012-12-10 13:21:03 ----A---- C:\Windows\system32\drivers\ndiswan.sys
2012-12-10 13:21:02 ----A---- C:\Windows\SYSWOW64\wpdshext.dll
2012-12-10 13:21:02 ----A---- C:\Windows\SYSWOW64\webservices.dll
2012-12-10 13:21:02 ----A---- C:\Windows\SYSWOW64\t2embed.dll
2012-12-10 13:21:02 ----A---- C:\Windows\SYSWOW64\QSHVHOST.DLL
2012-12-10 13:21:02 ----A---- C:\Windows\SYSWOW64\pnidui.dll
2012-12-10 13:21:02 ----A---- C:\Windows\SYSWOW64\netdiagfx.dll
2012-12-10 13:21:02 ----A---- C:\Windows\SYSWOW64\fde.dll
2012-12-10 13:21:02 ----A---- C:\Windows\system32\taskhost.exe
2012-12-10 13:21:02 ----A---- C:\Windows\system32\TabSvc.dll
2012-12-10 13:21:02 ----A---- C:\Windows\system32\srchadmin.dll
2012-12-10 13:21:02 ----A---- C:\Windows\system32\setupcl.exe
2012-12-10 13:21:02 ----A---- C:\Windows\system32\QUTIL.DLL
2012-12-10 13:21:02 ----A---- C:\Windows\system32\drivers\msahci.sys
2012-12-10 13:21:02 ----A---- C:\Windows\system32\consent.exe
2012-12-10 13:21:01 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2012-12-10 13:21:01 ----A---- C:\Windows\SYSWOW64\wscapi.dll
2012-12-10 13:21:01 ----A---- C:\Windows\SYSWOW64\SyncCenter.dll
2012-12-10 13:21:01 ----A---- C:\Windows\system32\tapisrv.dll
2012-12-10 13:21:01 ----A---- C:\Windows\system32\rastls.dll
2012-12-10 13:21:01 ----A---- C:\Windows\system32\netiohlp.dll
2012-12-10 13:21:01 ----A---- C:\Windows\system32\drivers\acpi.sys
2012-12-10 13:21:00 ----A---- C:\Windows\SYSWOW64\winsta.dll
2012-12-10 13:21:00 ----A---- C:\Windows\SYSWOW64\WinSCard.dll
2012-12-10 13:21:00 ----A---- C:\Windows\SYSWOW64\pla.dll
2012-12-10 13:21:00 ----A---- C:\Windows\SYSWOW64\MSMPEG2ENC.DLL
2012-12-10 13:21:00 ----A---- C:\Windows\SYSWOW64\msasn1.dll
2012-12-10 13:21:00 ----A---- C:\Windows\system32\msconfig.exe
2012-12-10 13:21:00 ----A---- C:\Windows\system32\mimefilt.dll
2012-12-10 13:21:00 ----A---- C:\Windows\system32\lsmproxy.dll
2012-12-10 13:21:00 ----A---- C:\Windows\system32\ListSvc.dll
2012-12-10 13:21:00 ----A---- C:\Windows\system32\hgcpl.dll
2012-12-10 13:21:00 ----A---- C:\Windows\system32\fdeploy.dll
2012-12-10 13:21:00 ----A---- C:\Windows\system32\drivers\sbp2port.sys
2012-12-10 13:21:00 ----A---- C:\Windows\system32\drivers\raspptp.sys
2012-12-10 13:21:00 ----A---- C:\Windows\system32\drivers\ks.sys
2012-12-10 13:21:00 ----A---- C:\Windows\system32\clusapi.dll
2012-12-10 13:21:00 ----A---- C:\Windows\system32\basecsp.dll
2012-12-10 13:21:00 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2012-12-10 13:20:59 ----A---- C:\Windows\SYSWOW64\imapi2.dll
2012-12-10 13:20:59 ----A---- C:\Windows\SYSWOW64\gameux.dll
2012-12-10 13:20:59 ----A---- C:\Windows\SYSWOW64\DXPTaskRingtone.dll
2012-12-10 13:20:59 ----A---- C:\Windows\system32\riched20.dll
2012-12-10 13:20:59 ----A---- C:\Windows\system32\mtxclu.dll
2012-12-10 13:20:59 ----A---- C:\Windows\system32\dnscmmc.dll
2012-12-10 13:20:58 ----A---- C:\Windows\SYSWOW64\WMPEncEn.dll
2012-12-10 13:20:58 ----A---- C:\Windows\SYSWOW64\winmm.dll
2012-12-10 13:20:58 ----A---- C:\Windows\SYSWOW64\shsvcs.dll
2012-12-10 13:20:58 ----A---- C:\Windows\SYSWOW64\onex.dll
2012-12-10 13:20:58 ----A---- C:\Windows\system32\themecpl.dll
2012-12-10 13:20:58 ----A---- C:\Windows\system32\sharemediacpl.dll
2012-12-10 13:20:58 ----A---- C:\Windows\system32\SensorsCpl.dll
2012-12-10 13:20:58 ----A---- C:\Windows\system32\RpcRtRemote.dll
2012-12-10 13:20:58 ----A---- C:\Windows\system32\powercpl.dll
2012-12-10 13:20:58 ----A---- C:\Windows\system32\nci.dll
2012-12-10 13:20:58 ----A---- C:\Windows\system32\logoncli.dll
2012-12-10 13:20:58 ----A---- C:\Windows\system32\eudcedit.exe
2012-12-10 13:20:57 ----A---- C:\Windows\SYSWOW64\samcli.dll
2012-12-10 13:20:57 ----A---- C:\Windows\SYSWOW64\netiohlp.dll
2012-12-10 13:20:57 ----A---- C:\Windows\SYSWOW64\IPHLPAPI.DLL
2012-12-10 13:20:57 ----A---- C:\Windows\SYSWOW64\hbaapi.dll
2012-12-10 13:20:57 ----A---- C:\Windows\SYSWOW64\autochk.exe
2012-12-10 13:20:57 ----A---- C:\Windows\SYSWOW64\autofmt.exe
2012-12-10 13:20:57 ----A---- C:\Windows\system32\wkssvc.dll
2012-12-10 13:20:57 ----A---- C:\Windows\system32\vpnikeapi.dll
2012-12-10 13:20:57 ----A---- C:\Windows\system32\netjoin.dll
2012-12-10 13:20:57 ----A---- C:\Windows\system32\Narrator.exe
2012-12-10 13:20:57 ----A---- C:\Windows\system32\Faultrep.dll
2012-12-10 13:20:57 ----A---- C:\Windows\system32\comctl32.dll
2012-12-10 13:20:56 ----A---- C:\Windows\SYSWOW64\thumbcache.dll
2012-12-10 13:20:56 ----A---- C:\Windows\SYSWOW64\tcpipcfg.dll
2012-12-10 13:20:56 ----A---- C:\Windows\SYSWOW64\srchadmin.dll
2012-12-10 13:20:56 ----A---- C:\Windows\SYSWOW64\schtasks.exe
2012-12-10 13:20:56 ----A---- C:\Windows\SYSWOW64\regapi.dll
2012-12-10 13:20:56 ----A---- C:\Windows\SYSWOW64\proquota.exe
2012-12-10 13:20:56 ----A---- C:\Windows\SYSWOW64\msutb.dll
2012-12-10 13:20:56 ----A---- C:\Windows\SYSWOW64\msinfo32.exe
2012-12-10 13:20:56 ----A---- C:\Windows\SYSWOW64\mimefilt.dll
2012-12-10 13:20:56 ----A---- C:\Windows\SYSWOW64\ipsmsnap.dll
2012-12-10 13:20:56 ----A---- C:\Windows\SYSWOW64\autoconv.exe
2012-12-10 13:20:56 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2012-12-10 13:20:56 ----A---- C:\Windows\system32\sppcomapi.dll
2012-12-10 13:20:56 ----A---- C:\Windows\system32\shsetup.dll
2012-12-10 13:20:56 ----A---- C:\Windows\system32\nshipsec.dll
2012-12-10 13:20:56 ----A---- C:\Windows\system32\fms.dll
2012-12-10 13:20:56 ----A---- C:\Windows\system32\cabview.dll
2012-12-10 13:20:56 ----A---- C:\Windows\system32\autochk.exe
2012-12-10 13:20:56 ----A---- C:\Windows\system32\autofmt.exe
2012-12-10 13:20:56 ----A---- C:\Windows\system32\autoconv.exe
2012-12-10 13:20:56 ----A---- C:\Windows\system32\audiodg.exe
2012-12-10 13:20:55 ----A---- C:\Windows\SYSWOW64\wcncsvc.dll
2012-12-10 13:20:55 ----A---- C:\Windows\SYSWOW64\powercpl.dll
2012-12-10 13:20:55 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2012-12-10 13:20:55 ----A---- C:\Windows\SYSWOW64\mscorier.dll
2012-12-10 13:20:55 ----A---- C:\Windows\SYSWOW64\framedyn.dll
2012-12-10 13:20:55 ----A---- C:\Windows\SYSWOW64\eapphost.dll
2012-12-10 13:20:55 ----A---- C:\Windows\SYSWOW64\AuxiliaryDisplayCpl.dll
2012-12-10 13:20:55 ----A---- C:\Windows\system32\wwanconn.dll
2012-12-10 13:20:55 ----A---- C:\Windows\system32\wpd_ci.dll
2012-12-10 13:20:55 ----A---- C:\Windows\system32\wlanui.dll
2012-12-10 13:20:55 ----A---- C:\Windows\system32\sdclt.exe
2012-12-10 13:20:55 ----A---- C:\Windows\system32\prntvpt.dll
2012-12-10 13:20:55 ----A---- C:\Windows\system32\mscorier.dll
2012-12-10 13:20:55 ----A---- C:\Windows\system32\drivers\wanarp.sys
2012-12-10 13:20:55 ----A---- C:\Windows\system32\drivers\scsiport.sys
2012-12-10 13:20:55 ----A---- C:\Windows\system32\bcdsrv.dll
2012-12-10 13:20:54 ----A---- C:\Windows\SYSWOW64\wdc.dll
2012-12-10 13:20:54 ----A---- C:\Windows\SYSWOW64\StructuredQuery.dll
2012-12-10 13:20:54 ----A---- C:\Windows\SYSWOW64\scesrv.dll
2012-12-10 13:20:54 ----A---- C:\Windows\SYSWOW64\QAGENT.DLL
2012-12-10 13:20:54 ----A---- C:\Windows\SYSWOW64\netid.dll
2012-12-10 13:20:54 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2012-12-10 13:20:54 ----A---- C:\Windows\system32\SmiEngine.dll
2012-12-10 13:20:54 ----A---- C:\Windows\system32\qedit.dll
2012-12-10 13:20:54 ----A---- C:\Windows\system32\mprddm.dll
2012-12-10 13:20:54 ----A---- C:\Windows\system32\mblctr.exe
2012-12-10 13:20:54 ----A---- C:\Windows\system32\fontext.dll
2012-12-10 13:20:54 ----A---- C:\Windows\system32\drivers\volmgrx.sys
2012-12-10 13:20:54 ----A---- C:\Windows\system32\drivers\hidclass.sys
2012-12-10 13:20:54 ----A---- C:\Windows\system32\dps.dll
2012-12-10 13:20:54 ----A---- C:\Windows\system32\Display.dll
2012-12-10 13:20:54 ----A---- C:\Windows\system32\credssp.dll
2012-12-10 13:20:54 ----A---- C:\Windows\system32\batmeter.dll
2012-12-10 13:20:54 ----A---- C:\Windows\system32\AxInstSv.dll
2012-12-10 13:20:53 ----A---- C:\Windows\SYSWOW64\WMNetMgr.dll
2012-12-10 13:20:53 ----A---- C:\Windows\SYSWOW64\wlanpref.dll
2012-12-10 13:20:53 ----A---- C:\Windows\SYSWOW64\Vault.dll
2012-12-10 13:20:53 ----A---- C:\Windows\SYSWOW64\untfs.dll
2012-12-10 13:20:53 ----A---- C:\Windows\SYSWOW64\RpcRtRemote.dll
2012-12-10 13:20:53 ----A---- C:\Windows\SYSWOW64\rastls.dll
2012-12-10 13:20:53 ----A---- C:\Windows\SYSWOW64\nci.dll
2012-12-10 13:20:53 ----A---- C:\Windows\system32\wmpsrcwp.dll
2012-12-10 13:20:53 ----A---- C:\Windows\system32\rtutils.dll
2012-12-10 13:20:53 ----A---- C:\Windows\system32\DiagCpl.dll
2012-12-10 13:20:52 ----A---- C:\Windows\SYSWOW64\taskmgr.exe
2012-12-10 13:20:52 ----A---- C:\Windows\SYSWOW64\Robocopy.exe
2012-12-10 13:20:52 ----A---- C:\Windows\SYSWOW64\DxpTaskSync.dll
2012-12-10 13:20:52 ----A---- C:\Windows\system32\wpccpl.dll
2012-12-10 13:20:52 ----A---- C:\Windows\system32\usercpl.dll
2012-12-10 13:20:52 ----A---- C:\Windows\system32\sppsvc.exe
2012-12-10 13:20:52 ----A---- C:\Windows\system32\SndVolSSO.dll
2012-12-10 13:20:52 ----A---- C:\Windows\system32\rasppp.dll
2012-12-10 13:20:52 ----A---- C:\Windows\system32\provsvc.dll
2012-12-10 13:20:52 ----A---- C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2012-12-10 13:20:52 ----A---- C:\Windows\system32\bootres.dll
2012-12-10 13:20:51 ----A---- C:\Windows\SYSWOW64\XpsRasterService.dll
2012-12-10 13:20:51 ----A---- C:\Windows\SYSWOW64\userinit.exe
2012-12-10 13:20:51 ----A---- C:\Windows\SYSWOW64\puiobj.dll
2012-12-10 13:20:51 ----A---- C:\Windows\SYSWOW64\mtxclu.dll
2012-12-10 13:20:51 ----A---- C:\Windows\SYSWOW64\Display.dll
2012-12-10 13:20:51 ----A---- C:\Windows\system32\taskmgr.exe
2012-12-10 13:20:51 ----A---- C:\Windows\system32\shdocvw.dll
2012-12-10 13:20:51 ----A---- C:\Windows\system32\prnfldr.dll
2012-12-10 13:20:51 ----A---- C:\Windows\system32\hbaapi.dll
2012-12-10 13:20:51 ----A---- C:\Windows\system32\dxdiagn.dll
2012-12-10 13:20:51 ----A---- C:\Windows\system32\drivers\rdyboost.sys
2012-12-10 13:20:51 ----A---- C:\Windows\system32\dot3cfg.dll
2012-12-10 13:20:50 ----A---- C:\Windows\SYSWOW64\wiadefui.dll
2012-12-10 13:20:50 ----A---- C:\Windows\SYSWOW64\termmgr.dll
2012-12-10 13:20:50 ----A---- C:\Windows\SYSWOW64\sppcomapi.dll
2012-12-10 13:20:50 ----A---- C:\Windows\SYSWOW64\shsetup.dll
2012-12-10 13:20:50 ----A---- C:\Windows\SYSWOW64\rasppp.dll
2012-12-10 13:20:50 ----A---- C:\Windows\SYSWOW64\logoncli.dll
2012-12-10 13:20:50 ----A---- C:\Windows\SYSWOW64\eudcedit.exe
2012-12-10 13:20:50 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2012-12-10 13:20:50 ----A---- C:\Windows\system32\untfs.dll
2012-12-10 13:20:50 ----A---- C:\Windows\system32\proquota.exe
2012-12-10 13:20:50 ----A---- C:\Windows\system32\pdh.dll
2012-12-10 13:20:50 ----A---- C:\Windows\system32\MSAC3ENC.DLL
2012-12-10 13:20:50 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2012-12-10 13:20:50 ----A---- C:\Windows\system32\drivers\hwpolicy.sys
2012-12-10 13:20:50 ----A---- C:\Windows\system32\drivers\ataport.sys
2012-12-10 13:20:49 ----A---- C:\Windows\SYSWOW64\themecpl.dll
2012-12-10 13:20:49 ----A---- C:\Windows\SYSWOW64\SensorsCpl.dll
2012-12-10 13:20:49 ----A---- C:\Windows\SYSWOW64\FirewallControlPanel.dll
2012-12-10 13:20:49 ----A---- C:\Windows\SYSWOW64\cabview.dll
2012-12-10 13:20:49 ----A---- C:\Windows\system32\userinit.exe
2012-12-10 13:20:49 ----A---- C:\Windows\system32\accessibilitycpl.dll
2012-12-10 13:20:48 ----A---- C:\Windows\SYSWOW64\PhotoScreensaver.scr
2012-12-10 13:20:48 ----A---- C:\Windows\SYSWOW64\hgcpl.dll
2012-12-10 13:20:48 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2012-12-10 13:20:48 ----A---- C:\Windows\SYSWOW64\dnscmmc.dll
2012-12-10 13:20:48 ----A---- C:\Windows\system32\zipfldr.dll
2012-12-10 13:20:48 ----A---- C:\Windows\system32\slui.exe
2012-12-10 13:20:48 ----A---- C:\Windows\system32\msieftp.dll
2012-12-10 13:20:48 ----A---- C:\Windows\system32\defaultlocationcpl.dll
2012-12-10 13:20:47 ----A---- C:\Windows\SYSWOW64\tapisrv.dll
2012-12-10 13:20:47 ----A---- C:\Windows\SYSWOW64\scecli.dll
2012-12-10 13:20:47 ----A---- C:\Windows\SYSWOW64\mscories.dll
2012-12-10 13:20:47 ----A---- C:\Windows\SYSWOW64\mscms.dll
2012-12-10 13:20:47 ----A---- C:\Windows\SYSWOW64\mprddm.dll
2012-12-10 13:20:47 ----A---- C:\Windows\SYSWOW64\localsec.dll
2012-12-10 13:20:47 ----A---- C:\Windows\SYSWOW64\fontext.dll
2012-12-10 13:20:47 ----A---- C:\Windows\system32\sud.dll
2012-12-10 13:20:47 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2012-12-10 13:20:47 ----A---- C:\Windows\system32\dot3svc.dll

FNj
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 28 Črv 2008 13:51

Re: ISeekDeal.dll paranoia

#6 Příspěvek od FNj »

2012-12-10 13:20:47 ----A---- C:\Windows\system32\DeviceCenter.dll
2012-12-10 13:20:46 ----A---- C:\Windows\SYSWOW64\wlanui.dll
2012-12-10 13:20:46 ----A---- C:\Windows\SYSWOW64\VAN.dll
2012-12-10 13:20:46 ----A---- C:\Windows\SYSWOW64\usercpl.dll
2012-12-10 13:20:46 ----A---- C:\Windows\SYSWOW64\SndVolSSO.dll
2012-12-10 13:20:46 ----A---- C:\Windows\SYSWOW64\SndVol.exe
2012-12-10 13:20:46 ----A---- C:\Windows\SYSWOW64\qedit.dll
2012-12-10 13:20:46 ----A---- C:\Windows\SYSWOW64\prntvpt.dll
2012-12-10 13:20:46 ----A---- C:\Windows\SYSWOW64\PerfCenterCPL.dll
2012-12-10 13:20:46 ----A---- C:\Windows\SYSWOW64\netcenter.dll
2012-12-10 13:20:46 ----A---- C:\Windows\SYSWOW64\iasacct.dll
2012-12-10 13:20:46 ----A---- C:\Windows\SYSWOW64\batmeter.dll
2012-12-10 13:20:46 ----A---- C:\Windows\system32\twext.dll
2012-12-10 13:20:46 ----A---- C:\Windows\system32\taskbarcpl.dll
2012-12-10 13:20:46 ----A---- C:\Windows\system32\OobeFldr.dll
2012-12-10 13:20:46 ----A---- C:\Windows\system32\OnLineIDCpl.dll
2012-12-10 13:20:46 ----A---- C:\Windows\system32\networkmap.dll
2012-12-10 13:20:46 ----A---- C:\Windows\system32\cryptui.dll
2012-12-10 13:20:46 ----A---- C:\Windows\system32\ActionCenter.dll
2012-12-10 13:20:45 ----A---- C:\Windows\SYSWOW64\w32tm.exe
2012-12-10 13:20:45 ----A---- C:\Windows\SYSWOW64\spwizeng.dll
2012-12-10 13:20:45 ----A---- C:\Windows\SYSWOW64\azroleui.dll
2012-12-10 13:20:45 ----A---- C:\Windows\SYSWOW64\accessibilitycpl.dll
2012-12-10 13:20:45 ----A---- C:\Windows\system32\uxlib.dll
2012-12-10 13:20:45 ----A---- C:\Windows\system32\tzutil.exe
2012-12-10 13:20:45 ----A---- C:\Windows\system32\sisbkup.dll
2012-12-10 13:20:45 ----A---- C:\Windows\system32\recovery.dll
2012-12-10 13:20:45 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2012-12-10 13:20:45 ----A---- C:\Windows\system32\isoburn.exe
2012-12-10 13:20:45 ----A---- C:\Windows\system32\efscore.dll
2012-12-10 13:20:45 ----A---- C:\Windows\system32\dsuiext.dll
2012-12-10 13:20:45 ----A---- C:\Windows\system32\cca.dll
2012-12-10 13:20:45 ----A---- C:\Windows\system32\bcdedit.exe
2012-12-10 13:20:45 ----A---- C:\Windows\system32\azroleui.dll
2012-12-10 13:20:45 ----A---- C:\Windows\system32\asycfilt.dll
2012-12-10 13:20:44 ----A---- C:\Windows\SYSWOW64\zipfldr.dll
2012-12-10 13:20:44 ----A---- C:\Windows\SYSWOW64\netjoin.dll
2012-12-10 13:20:44 ----A---- C:\Windows\SYSWOW64\MSAC3ENC.DLL
2012-12-10 13:20:44 ----A---- C:\Windows\SYSWOW64\fdeploy.dll
2012-12-10 13:20:44 ----A---- C:\Windows\SYSWOW64\cryptui.dll
2012-12-10 13:20:44 ----A---- C:\Windows\SYSWOW64\adsldp.dll
2012-12-10 13:20:44 ----A---- C:\Windows\system32\systemcpl.dll
2012-12-10 13:20:44 ----A---- C:\Windows\system32\syncui.dll
2012-12-10 13:20:44 ----A---- C:\Windows\system32\shwebsvc.dll
2012-12-10 13:20:44 ----A---- C:\Windows\system32\sdcpl.dll
2012-12-10 13:20:44 ----A---- C:\Windows\system32\recdisc.exe
2012-12-10 13:20:44 ----A---- C:\Windows\system32\netplwiz.dll
2012-12-10 13:20:44 ----A---- C:\Windows\system32\httpapi.dll
2012-12-10 13:20:44 ----A---- C:\Windows\system32\drivers\mpio.sys
2012-12-10 13:20:44 ----A---- C:\Windows\system32\autoplay.dll
2012-12-10 13:20:43 ----A---- C:\Windows\SYSWOW64\wusa.exe
2012-12-10 13:20:43 ----A---- C:\Windows\SYSWOW64\networkmap.dll
2012-12-10 13:20:43 ----A---- C:\Windows\SYSWOW64\MCEWMDRMNDBootstrap.dll
2012-12-10 13:20:43 ----A---- C:\Windows\SYSWOW64\Faultrep.dll
2012-12-10 13:20:43 ----A---- C:\Windows\system32\wlanmsm.dll
2012-12-10 13:20:43 ----A---- C:\Windows\system32\sysclass.dll
2012-12-10 13:20:43 ----A---- C:\Windows\system32\sdrsvc.dll
2012-12-10 13:20:43 ----A---- C:\Windows\system32\ncryptui.dll
2012-12-10 13:20:43 ----A---- C:\Windows\system32\msvidc32.dll
2012-12-10 13:20:43 ----A---- C:\Windows\system32\certcli.dll
2012-12-10 13:20:43 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2012-12-10 13:20:43 ----A---- C:\Windows\system32\appinfo.dll
2012-12-10 13:20:43 ----A---- C:\Windows\system32\ActionCenterCPL.dll
2012-12-10 13:20:42 ----A---- C:\Windows\SYSWOW64\sud.dll
2012-12-10 13:20:42 ----A---- C:\Windows\SYSWOW64\prnfldr.dll
2012-12-10 13:20:42 ----A---- C:\Windows\SYSWOW64\photowiz.dll
2012-12-10 13:20:42 ----A---- C:\Windows\SYSWOW64\OnLineIDCpl.dll
2012-12-10 13:20:42 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2012-12-10 13:20:42 ----A---- C:\Windows\SYSWOW64\ActionCenter.dll
2012-12-10 13:20:42 ----A---- C:\Windows\system32\vdsutil.dll
2012-12-10 13:20:42 ----A---- C:\Windows\system32\spwizeng.dll
2012-12-10 13:20:42 ----A---- C:\Windows\system32\MFPlay.dll
2012-12-10 13:20:41 ----A---- C:\Windows\SYSWOW64\MediaMetadataHandler.dll
2012-12-10 13:20:41 ----A---- C:\Windows\SYSWOW64\iprtrmgr.dll
2012-12-10 13:20:41 ----A---- C:\Windows\SYSWOW64\iasrad.dll
2012-12-10 13:20:41 ----A---- C:\Windows\SYSWOW64\dot3cfg.dll
2012-12-10 13:20:41 ----A---- C:\Windows\SYSWOW64\defaultlocationcpl.dll
2012-12-10 13:20:41 ----A---- C:\Windows\SYSWOW64\credssp.dll
2012-12-10 13:20:41 ----A---- C:\Windows\system32\termmgr.dll
2012-12-10 13:20:41 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2012-12-10 13:20:41 ----A---- C:\Windows\system32\sethc.exe
2012-12-10 13:20:41 ----A---- C:\Windows\system32\ReAgent.dll
2012-12-10 13:20:41 ----A---- C:\Windows\system32\ntlanman.dll
2012-12-10 13:20:41 ----A---- C:\Windows\system32\msscp.dll
2012-12-10 13:20:40 ----A---- C:\Windows\SYSWOW64\sisbkup.dll
2012-12-10 13:20:40 ----A---- C:\Windows\SYSWOW64\shwebsvc.dll
2012-12-10 13:20:40 ----A---- C:\Windows\SYSWOW64\ifsutil.dll
2012-12-10 13:20:40 ----A---- C:\Windows\SYSWOW64\ftp.exe
2012-12-10 13:20:40 ----A---- C:\Windows\SYSWOW64\efscore.dll
2012-12-10 13:20:40 ----A---- C:\Windows\system32\wwanprotdim.dll
2012-12-10 13:20:40 ----A---- C:\Windows\system32\sqlcese30.dll
2012-12-10 13:20:40 ----A---- C:\Windows\system32\rdpd3d.dll
2012-12-10 13:20:40 ----A---- C:\Windows\system32\iprtrmgr.dll
2012-12-10 13:20:40 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2012-12-10 13:20:39 ----A---- C:\Windows\SYSWOW64\syncui.dll
2012-12-10 13:20:39 ----A---- C:\Windows\SYSWOW64\autoplay.dll
2012-12-10 13:20:39 ----A---- C:\Windows\SYSWOW64\ActionCenterCPL.dll
2012-12-10 13:20:39 ----A---- C:\Windows\system32\UserAccountControlSettings.dll
2012-12-10 13:20:39 ----A---- C:\Windows\system32\ssText3d.scr
2012-12-10 13:20:39 ----A---- C:\Windows\system32\slwga.dll
2012-12-10 13:20:39 ----A---- C:\Windows\system32\iyuv_32.dll
2012-12-10 13:20:39 ----A---- C:\Windows\system32\iTVData.dll
2012-12-10 13:20:38 ----A---- C:\Windows\SYSWOW64\wmpmde.dll
2012-12-10 13:20:38 ----A---- C:\Windows\SYSWOW64\rtutils.dll
2012-12-10 13:20:38 ----A---- C:\Windows\SYSWOW64\OobeFldr.dll
2012-12-10 13:20:38 ----A---- C:\Windows\SYSWOW64\ntlanman.dll
2012-12-10 13:20:38 ----A---- C:\Windows\SYSWOW64\dskquoui.dll
2012-12-10 13:20:38 ----A---- C:\Windows\SYSWOW64\DeviceCenter.dll
2012-12-10 13:20:38 ----A---- C:\Windows\system32\wmdrmsdk.dll
2012-12-10 13:20:38 ----A---- C:\Windows\system32\wavemsp.dll
2012-12-10 13:20:38 ----A---- C:\Windows\system32\srvcli.dll
2012-12-10 13:20:38 ----A---- C:\Windows\system32\nslookup.exe
2012-12-10 13:20:38 ----A---- C:\Windows\system32\msiexec.exe
2012-12-10 13:20:38 ----A---- C:\Windows\system32\drmmgrtn.dll
2012-12-10 13:20:37 ----A---- C:\Windows\SYSWOW64\systemcpl.dll
2012-12-10 13:20:37 ----A---- C:\Windows\SYSWOW64\SmartcardCredentialProvider.dll
2012-12-10 13:20:37 ----A---- C:\Windows\SYSWOW64\sethc.exe
2012-12-10 13:20:37 ----A---- C:\Windows\SYSWOW64\riched20.dll
2012-12-10 13:20:37 ----A---- C:\Windows\SYSWOW64\ntprint.dll
2012-12-10 13:20:37 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2012-12-10 13:20:37 ----A---- C:\Windows\system32\srrstr.dll
2012-12-10 13:20:37 ----A---- C:\Windows\system32\ntprint.dll
2012-12-10 13:20:37 ----A---- C:\Windows\system32\NAPHLPR.DLL
2012-12-10 13:20:37 ----A---- C:\Windows\system32\DevicePairingFolder.dll
2012-12-10 13:20:37 ----A---- C:\Windows\system32\bcdboot.exe
2012-12-10 13:20:37 ----A---- C:\Windows\system32\acppage.dll
2012-12-10 13:20:36 ----A---- C:\Windows\SYSWOW64\wmpsrcwp.dll
2012-12-10 13:20:36 ----A---- C:\Windows\SYSWOW64\netplwiz.dll
2012-12-10 13:20:36 ----A---- C:\Windows\SYSWOW64\NAPHLPR.DLL
2012-12-10 13:20:36 ----A---- C:\Windows\SYSWOW64\migisol.dll
2012-12-10 13:20:36 ----A---- C:\Windows\SYSWOW64\fms.dll
2012-12-10 13:20:36 ----A---- C:\Windows\SYSWOW64\dpx.dll
2012-12-10 13:20:36 ----A---- C:\Windows\SYSWOW64\blackbox.dll
2012-12-10 13:20:36 ----A---- C:\Windows\SYSWOW64\activeds.dll
2012-12-10 13:20:36 ----A---- C:\Windows\system32\TSpkg.dll
2012-12-10 13:20:36 ----A---- C:\Windows\system32\sppnp.dll
2012-12-10 13:20:36 ----A---- C:\Windows\system32\networkexplorer.dll
2012-12-10 13:20:36 ----A---- C:\Windows\system32\certprop.dll
2012-12-10 13:20:36 ----A---- C:\Windows\system32\cabinet.dll
2012-12-10 13:20:35 ----A---- C:\Windows\SYSWOW64\wavemsp.dll
2012-12-10 13:20:35 ----A---- C:\Windows\SYSWOW64\ReAgent.dll
2012-12-10 13:20:35 ----A---- C:\Windows\SYSWOW64\nshipsec.dll
2012-12-10 13:20:35 ----A---- C:\Windows\SYSWOW64\msftedit.dll
2012-12-10 13:20:35 ----A---- C:\Windows\SYSWOW64\isoburn.exe
2012-12-10 13:20:35 ----A---- C:\Windows\SYSWOW64\httpapi.dll
2012-12-10 13:20:35 ----A---- C:\Windows\SYSWOW64\asycfilt.dll
2012-12-10 13:20:35 ----A---- C:\Windows\system32\wkscli.dll
2012-12-10 13:20:35 ----A---- C:\Windows\system32\WinSCard.dll
2012-12-10 13:20:35 ----A---- C:\Windows\system32\remotepg.dll
2012-12-10 13:20:35 ----A---- C:\Windows\system32\ftp.exe
2012-12-10 13:20:35 ----A---- C:\Windows\system32\dfrgui.exe
2012-12-10 13:20:34 ----A---- C:\Windows\SYSWOW64\wvc.dll
2012-12-10 13:20:34 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2012-12-10 13:20:34 ----A---- C:\Windows\SYSWOW64\wtsapi32.dll
2012-12-10 13:20:34 ----A---- C:\Windows\SYSWOW64\wlanmsm.dll
2012-12-10 13:20:34 ----A---- C:\Windows\SYSWOW64\wimgapi.dll
2012-12-10 13:20:34 ----A---- C:\Windows\SYSWOW64\tzutil.exe
2012-12-10 13:20:34 ----A---- C:\Windows\SYSWOW64\provsvc.dll
2012-12-10 13:20:34 ----A---- C:\Windows\SYSWOW64\ocsetup.exe
2012-12-10 13:20:34 ----A---- C:\Windows\SYSWOW64\dsuiext.dll
2012-12-10 13:20:34 ----A---- C:\Windows\SYSWOW64\dot3ui.dll
2012-12-10 13:20:34 ----A---- C:\Windows\SYSWOW64\dfrgui.exe
2012-12-10 13:20:34 ----A---- C:\Windows\system32\wvc.dll
2012-12-10 13:20:34 ----A---- C:\Windows\system32\wsqmcons.exe
2012-12-10 13:20:34 ----A---- C:\Windows\system32\wsnmp32.dll
2012-12-10 13:20:34 ----A---- C:\Windows\system32\wmpdxm.dll
2012-12-10 13:20:34 ----A---- C:\Windows\system32\wmdrmdev.dll
2012-12-10 13:20:34 ----A---- C:\Windows\system32\WerFaultSecure.exe
2012-12-10 13:20:34 ----A---- C:\Windows\system32\net1.exe
2012-12-10 13:20:34 ----A---- C:\Windows\system32\blackbox.dll
2012-12-10 13:20:33 ----A---- C:\Windows\twain_32.dll
2012-12-10 13:20:33 ----A---- C:\Windows\SYSWOW64\twext.dll
2012-12-10 13:20:33 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2012-12-10 13:20:33 ----A---- C:\Windows\SYSWOW64\setupugc.exe
2012-12-10 13:20:33 ----A---- C:\Windows\SYSWOW64\qcap.dll
2012-12-10 13:20:33 ----A---- C:\Windows\SYSWOW64\PkgMgr.exe
2012-12-10 13:20:33 ----A---- C:\Windows\SYSWOW64\mstask.dll
2012-12-10 13:20:33 ----A---- C:\Windows\system32\unimdmat.dll
2012-12-10 13:20:33 ----A---- C:\Windows\system32\OpcServices.dll
2012-12-10 13:20:33 ----A---- C:\Windows\system32\msyuv.dll
2012-12-10 13:20:33 ----A---- C:\Windows\system32\msrle32.dll
2012-12-10 13:20:33 ----A---- C:\Windows\system32\mfps.dll
2012-12-10 13:20:33 ----A---- C:\Windows\system32\mapistub.dll
2012-12-10 13:20:33 ----A---- C:\Windows\system32\mapi32.dll
2012-12-10 13:20:33 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2012-12-10 13:20:33 ----A---- C:\Windows\system32\Bubbles.scr
2012-12-10 13:20:32 ----A---- C:\Windows\SYSWOW64\uxlib.dll
2012-12-10 13:20:32 ----A---- C:\Windows\SYSWOW64\ssText3d.scr
2012-12-10 13:20:32 ----A---- C:\Windows\SYSWOW64\slwga.dll
2012-12-10 13:20:32 ----A---- C:\Windows\SYSWOW64\qasf.dll
2012-12-10 13:20:32 ----A---- C:\Windows\system32\tsbyuv.dll
2012-12-10 13:20:32 ----A---- C:\Windows\system32\seclogon.dll
2012-12-10 13:20:32 ----A---- C:\Windows\system32\Ribbons.scr
2012-12-10 13:20:32 ----A---- C:\Windows\system32\Mystify.scr
2012-12-10 13:20:32 ----A---- C:\Windows\system32\iscsium.dll
2012-12-10 13:20:32 ----A---- C:\Windows\system32\ifsutil.dll
2012-12-10 13:20:32 ----A---- C:\Windows\system32\diskraid.exe
2012-12-10 13:20:31 ----A---- C:\Windows\SYSWOW64\msvfw32.dll
2012-12-10 13:20:31 ----A---- C:\Windows\SYSWOW64\mciavi32.dll
2012-12-10 13:20:31 ----A---- C:\Windows\system32\drivers\umbus.sys
2012-12-10 13:20:30 ----A---- C:\Windows\SYSWOW64\wmdrmsdk.dll
2012-12-10 13:20:30 ----A---- C:\Windows\SYSWOW64\nslookup.exe
2012-12-10 13:20:30 ----A---- C:\Windows\SYSWOW64\DevicePairingFolder.dll
2012-12-10 13:20:30 ----A---- C:\Windows\SYSWOW64\clusapi.dll
2012-12-10 13:20:30 ----A---- C:\Windows\SYSWOW64\audiodev.dll
2012-12-10 13:20:30 ----A---- C:\Windows\system32\wmpshell.dll
2012-12-10 13:20:30 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeResults.exe
2012-12-10 13:20:30 ----A---- C:\Windows\system32\rdpencom.dll
2012-12-10 13:20:30 ----A---- C:\Windows\system32\perfmon.exe
2012-12-10 13:20:30 ----A---- C:\Windows\system32\muifontsetup.dll
2012-12-10 13:20:27 ----A---- C:\Windows\SYSWOW64\WPDShServiceObj.dll
2012-12-10 13:20:27 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2012-12-10 13:20:27 ----A---- C:\Windows\SYSWOW64\msscp.dll
2012-12-10 13:20:27 ----A---- C:\Windows\SYSWOW64\diskraid.exe
2012-12-10 13:20:27 ----A---- C:\Windows\system32\netutils.dll
2012-12-10 13:20:27 ----A---- C:\Windows\system32\AzSqlExt.dll
2012-12-10 13:20:26 ----A---- C:\Windows\SYSWOW64\wimserv.exe
2012-12-10 13:20:26 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2012-12-10 13:20:26 ----A---- C:\Windows\SYSWOW64\rdpencom.dll
2012-12-10 13:20:26 ----A---- C:\Windows\SYSWOW64\acppage.dll
2012-12-10 13:20:26 ----A---- C:\Windows\system32\umb.dll
2012-12-10 13:20:26 ----A---- C:\Windows\system32\tlscsp.dll
2012-12-10 13:20:26 ----A---- C:\Windows\system32\qasf.dll
2012-12-10 13:20:26 ----A---- C:\Windows\system32\NAPCRYPT.DLL
2012-12-10 13:20:26 ----A---- C:\Windows\system32\dbghelp.dll
2012-12-10 13:20:26 ----A---- C:\Windows\system32\ActionQueue.dll
2012-12-10 13:20:25 ----A---- C:\Windows\SYSWOW64\remotepg.dll
2012-12-10 13:20:25 ----A---- C:\Windows\SYSWOW64\raschap.dll
2012-12-10 13:20:25 ----A---- C:\Windows\SYSWOW64\perfmon.exe
2012-12-10 13:20:25 ----A---- C:\Windows\SYSWOW64\drmmgrtn.dll
2012-12-10 13:20:25 ----A---- C:\Windows\system32\runonce.exe
2012-12-10 13:20:25 ----A---- C:\Windows\system32\raschap.dll
2012-12-10 13:20:25 ----A---- C:\Windows\system32\FXSAPI.dll
2012-12-10 13:20:25 ----A---- C:\Windows\bfsvc.exe
2012-12-10 13:20:24 ----A---- C:\Windows\SYSWOW64\UserAccountControlSettings.dll
2012-12-10 13:20:24 ----A---- C:\Windows\SYSWOW64\QUTIL.DLL
2012-12-10 13:20:24 ----A---- C:\Windows\SYSWOW64\ocsetapi.dll
2012-12-10 13:20:24 ----A---- C:\Windows\SYSWOW64\networkexplorer.dll
2012-12-10 13:20:24 ----A---- C:\Windows\SYSWOW64\NAPCRYPT.DLL
2012-12-10 13:20:24 ----A---- C:\Windows\SYSWOW64\input.dll
2012-12-10 13:20:24 ----A---- C:\Windows\system32\wpdwcn.dll
2012-12-10 13:20:24 ----A---- C:\Windows\system32\WMADMOD.DLL
2012-12-10 13:20:24 ----A---- C:\Windows\system32\wiavideo.dll
2012-12-10 13:20:24 ----A---- C:\Windows\system32\syssetup.dll
2012-12-10 13:20:24 ----A---- C:\Windows\system32\MdSched.exe
2012-12-10 13:20:23 ----A---- C:\Windows\SYSWOW64\wpdwcn.dll
2012-12-10 13:20:23 ----A---- C:\Windows\SYSWOW64\wmpdxm.dll
2012-12-10 13:20:23 ----A---- C:\Windows\SYSWOW64\vpnikeapi.dll
2012-12-10 13:20:23 ----A---- C:\Windows\SYSWOW64\vdsbas.dll
2012-12-10 13:20:23 ----A---- C:\Windows\SYSWOW64\onexui.dll
2012-12-10 13:20:23 ----A---- C:\Windows\SYSWOW64\olepro32.dll
2012-12-10 13:20:23 ----A---- C:\Windows\SYSWOW64\iTVData.dll
2012-12-10 13:20:23 ----A---- C:\Windows\system32\WMVSDECD.DLL
2012-12-10 13:20:23 ----A---- C:\Windows\system32\vdsbas.dll
2012-12-10 13:20:23 ----A---- C:\Windows\system32\PrintIsolationProxy.dll
2012-12-10 13:20:23 ----A---- C:\Windows\system32\Mcx2Svc.dll
2012-12-10 13:20:22 ----A---- C:\Windows\SYSWOW64\runonce.exe
2012-12-10 13:20:22 ----A---- C:\Windows\SYSWOW64\msvidc32.dll
2012-12-10 13:20:22 ----A---- C:\Windows\SYSWOW64\logagent.exe
2012-12-10 13:20:22 ----A---- C:\Windows\SYSWOW64\dxdiagn.dll
2012-12-10 13:20:22 ----A---- C:\Windows\system32\nltest.exe
2012-12-10 13:20:22 ----A---- C:\Windows\system32\mstask.dll
2012-12-10 13:20:22 ----A---- C:\Windows\system32\drivers\rmcast.sys
2012-12-10 13:20:22 ----A---- C:\Windows\system32\bitsadmin.exe
2012-12-10 13:20:21 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2012-12-10 13:20:21 ----A---- C:\Windows\SYSWOW64\MFPlay.dll
2012-12-10 13:20:21 ----A---- C:\Windows\SYSWOW64\eapp3hst.dll
2012-12-10 13:20:21 ----A---- C:\Windows\system32\shacct.dll
2012-12-10 13:20:21 ----A---- C:\Windows\system32\cscapi.dll
2012-12-10 13:20:20 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2012-12-10 13:20:20 ----A---- C:\Windows\SYSWOW64\wmpshell.dll
2012-12-10 13:20:20 ----A---- C:\Windows\SYSWOW64\wmdrmdev.dll
2012-12-10 13:20:20 ----A---- C:\Windows\SYSWOW64\unimdmat.dll
2012-12-10 13:20:20 ----A---- C:\Windows\SYSWOW64\shacct.dll
2012-12-10 13:20:20 ----A---- C:\Windows\SYSWOW64\lsmproxy.dll
2012-12-10 13:20:20 ----A---- C:\Windows\SYSWOW64\bitsadmin.exe
2012-12-10 13:20:20 ----A---- C:\Windows\system32\WPDSp.dll
2012-12-10 13:20:20 ----A---- C:\Windows\system32\wmdrmnet.dll
2012-12-10 13:20:20 ----A---- C:\Windows\system32\vss_ps.dll
2012-12-10 13:20:20 ----A---- C:\Windows\system32\tabcal.exe
2012-12-10 13:20:20 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2012-12-10 13:20:20 ----A---- C:\Windows\system32\QSVRMGMT.DLL
2012-12-10 13:20:20 ----A---- C:\Windows\system32\qcap.dll
2012-12-10 13:20:20 ----A---- C:\Windows\system32\msnetobj.dll
2012-12-10 13:20:20 ----A---- C:\Windows\system32\logman.exe
2012-12-10 13:20:19 ----A---- C:\Windows\SYSWOW64\srvcli.dll
2012-12-10 13:20:19 ----A---- C:\Windows\SYSWOW64\sqlcese30.dll
2012-12-10 13:20:19 ----A---- C:\Windows\SYSWOW64\rdpd3d.dll
2012-12-10 13:20:19 ----A---- C:\Windows\SYSWOW64\PortableDeviceSyncProvider.dll
2012-12-10 13:20:19 ----A---- C:\Windows\SYSWOW64\pdh.dll
2012-12-10 13:20:19 ----A---- C:\Windows\SYSWOW64\OpcServices.dll
2012-12-10 13:20:19 ----A---- C:\Windows\SYSWOW64\ncryptui.dll
2012-12-10 13:20:19 ----A---- C:\Windows\SYSWOW64\mprapi.dll
2012-12-10 13:20:19 ----A---- C:\Windows\SYSWOW64\logman.exe
2012-12-10 13:20:19 ----A---- C:\Windows\SYSWOW64\iscsium.dll
2012-12-10 13:20:19 ----A---- C:\Windows\SYSWOW64\cscapi.dll
2012-12-10 13:20:19 ----A---- C:\Windows\SYSWOW64\Bubbles.scr
2012-12-10 13:20:19 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2012-12-10 13:20:19 ----A---- C:\Windows\system32\spbcd.dll
2012-12-10 13:20:19 ----A---- C:\Windows\system32\secproc_ssp.dll
2012-12-10 13:20:19 ----A---- C:\Windows\system32\qdv.dll
2012-12-10 13:20:19 ----A---- C:\Windows\system32\PortableDeviceSyncProvider.dll
2012-12-10 13:20:19 ----A---- C:\Windows\system32\PortableDeviceStatus.dll
2012-12-10 13:20:18 ----A---- C:\Windows\SYSWOW64\WPDSp.dll
2012-12-10 13:20:18 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2012-12-10 13:20:18 ----A---- C:\Windows\SYSWOW64\WMADMOD.DLL
2012-12-10 13:20:18 ----A---- C:\Windows\SYSWOW64\utildll.dll
2012-12-10 13:20:18 ----A---- C:\Windows\SYSWOW64\Ribbons.scr
2012-12-10 13:20:18 ----A---- C:\Windows\SYSWOW64\QSVRMGMT.DLL
2012-12-10 13:20:18 ----A---- C:\Windows\SYSWOW64\PortableDeviceStatus.dll
2012-12-10 13:20:18 ----A---- C:\Windows\SYSWOW64\olethk32.dll
2012-12-10 13:20:18 ----A---- C:\Windows\SYSWOW64\Mystify.scr
2012-12-10 13:20:18 ----A---- C:\Windows\SYSWOW64\mapistub.dll
2012-12-10 13:20:18 ----A---- C:\Windows\SYSWOW64\mapi32.dll
2012-12-10 13:20:18 ----A---- C:\Windows\SYSWOW64\fphc.dll
2012-12-10 13:20:18 ----A---- C:\Windows\SYSWOW64\dot3msm.dll
2012-12-10 13:20:18 ----A---- C:\Windows\SYSWOW64\avifil32.dll
2012-12-10 13:20:18 ----A---- C:\Windows\system32\WMPhoto.dll
2012-12-10 13:20:18 ----A---- C:\Windows\system32\takeown.exe
2012-12-10 13:20:18 ----A---- C:\Windows\system32\PnPUnattend.exe
2012-12-10 13:20:18 ----A---- C:\Windows\system32\fphc.dll
2012-12-10 13:20:18 ----A---- C:\Windows\system32\drivers\ndisuio.sys
2012-12-10 13:20:18 ----A---- C:\Windows\system32\dot3ui.dll
2012-12-10 13:20:18 ----A---- C:\Windows\system32\amstream.dll
2012-12-10 13:20:17 ----A---- C:\Windows\SYSWOW64\WMVSDECD.DLL
2012-12-10 13:20:17 ----A---- C:\Windows\SYSWOW64\wmdrmnet.dll
2012-12-10 13:20:17 ----A---- C:\Windows\SYSWOW64\wiavideo.dll
2012-12-10 13:20:17 ----A---- C:\Windows\SYSWOW64\takeown.exe
2012-12-10 13:20:17 ----A---- C:\Windows\SYSWOW64\qdv.dll
2012-12-10 13:20:17 ----A---- C:\Windows\SYSWOW64\iyuv_32.dll
2012-12-10 13:20:17 ----A---- C:\Windows\SYSWOW64\EhStorAPI.dll
2012-12-10 13:20:17 ----A---- C:\Windows\system32\vfwwdm32.dll
2012-12-10 13:20:17 ----A---- C:\Windows\system32\shimgvw.dll
2012-12-10 13:20:17 ----A---- C:\Windows\system32\QCLIPROV.DLL
2012-12-10 13:20:17 ----A---- C:\Windows\system32\nrpsrv.dll
2012-12-10 13:20:17 ----A---- C:\Windows\system32\HotStartUserAgent.dll
2012-12-10 13:20:17 ----A---- C:\Windows\system32\EhStorAPI.dll
2012-12-10 13:20:17 ----A---- C:\Windows\system32\djoin.exe
2012-12-10 13:20:17 ----A---- C:\Windows\system32\cmstp.exe
2012-12-10 13:20:17 ----A---- C:\Windows\system32\CertPolEng.dll
2012-12-10 13:20:16 ----A---- C:\Windows\SYSWOW64\wsnmp32.dll
2012-12-10 13:20:16 ----A---- C:\Windows\SYSWOW64\WMSPDMOD.DLL
2012-12-10 13:20:16 ----A---- C:\Windows\SYSWOW64\vfwwdm32.dll
2012-12-10 13:20:16 ----A---- C:\Windows\SYSWOW64\sppinst.dll
2012-12-10 13:20:16 ----A---- C:\Windows\SYSWOW64\QCLIPROV.DLL
2012-12-10 13:20:16 ----A---- C:\Windows\SYSWOW64\pdhui.dll
2012-12-10 13:20:16 ----A---- C:\Windows\SYSWOW64\MuiUnattend.exe
2012-12-10 13:20:16 ----A---- C:\Windows\SYSWOW64\msyuv.dll
2012-12-10 13:20:16 ----A---- C:\Windows\SYSWOW64\msrle32.dll
2012-12-10 13:20:16 ----A---- C:\Windows\SYSWOW64\msnetobj.dll
2012-12-10 13:20:16 ----A---- C:\Windows\SYSWOW64\cmstp.exe
2012-12-10 13:20:16 ----A---- C:\Windows\SYSWOW64\cca.dll
2012-12-10 13:20:16 ----A---- C:\Windows\system32\WavDest.dll
2012-12-10 13:20:16 ----A---- C:\Windows\system32\MultiDigiMon.exe
2012-12-10 13:20:16 ----A---- C:\Windows\system32\KMSVC.DLL
2012-12-10 13:20:16 ----A---- C:\Windows\system32\iasrecst.dll
2012-12-10 13:20:16 ----A---- C:\Windows\system32\fdProxy.dll
2012-12-10 13:20:16 ----A---- C:\Windows\system32\drivers\pacer.sys
2012-12-10 13:20:15 ----A---- C:\Windows\SYSWOW64\tsbyuv.dll
2012-12-10 13:20:15 ----A---- C:\Windows\SYSWOW64\setupcln.dll
2012-12-10 13:20:15 ----A---- C:\Windows\SYSWOW64\relog.exe
2012-12-10 13:20:15 ----A---- C:\Windows\SYSWOW64\netiougc.exe
2012-12-10 13:20:15 ----A---- C:\Windows\SYSWOW64\msorcl32.dll
2012-12-10 13:20:15 ----A---- C:\Windows\SYSWOW64\iasrecst.dll
2012-12-10 13:20:15 ----A---- C:\Windows\SYSWOW64\AzSqlExt.dll
2012-12-10 13:20:15 ----A---- C:\Windows\system32\sscore.dll
2012-12-10 13:20:15 ----A---- C:\Windows\system32\relog.exe
2012-12-10 13:20:15 ----A---- C:\Windows\system32\mydocs.dll
2012-12-10 13:20:15 ----A---- C:\Windows\system32\mobsync.exe
2012-12-10 13:20:15 ----A---- C:\Windows\system32\iscsicli.exe
2012-12-10 13:20:15 ----A---- C:\Windows\system32\diskpart.exe
2012-12-10 13:20:15 ----A---- C:\Windows\system32\BWUnpairElevated.dll
2012-12-10 13:20:14 ----A---- C:\Windows\SYSWOW64\wkscli.dll
2012-12-10 13:20:14 ----A---- C:\Windows\SYSWOW64\syssetup.dll
2012-12-10 13:20:14 ----A---- C:\Windows\SYSWOW64\spbcd.dll
2012-12-10 13:20:14 ----A---- C:\Windows\SYSWOW64\secproc_ssp_isv.dll
2012-12-10 13:20:14 ----A---- C:\Windows\SYSWOW64\secproc_ssp.dll
2012-12-10 13:20:14 ----A---- C:\Windows\SYSWOW64\resutils.dll
2012-12-10 13:20:14 ----A---- C:\Windows\SYSWOW64\rastapi.dll
2012-12-10 13:20:14 ----A---- C:\Windows\SYSWOW64\netbtugc.exe
2012-12-10 13:20:14 ----A---- C:\Windows\SYSWOW64\mydocs.dll
2012-12-10 13:20:14 ----A---- C:\Windows\SYSWOW64\itircl.dll
2012-12-10 13:20:14 ----A---- C:\Windows\SYSWOW64\iscsicli.exe
2012-12-10 13:20:14 ----A---- C:\Windows\SYSWOW64\diskpart.exe
2012-12-10 13:20:14 ----A---- C:\Windows\SYSWOW64\CertPolEng.dll
2012-12-10 13:20:14 ----A---- C:\Windows\SYSWOW64\amstream.dll
2012-12-10 13:20:14 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2012-12-10 13:20:14 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2012-12-10 13:20:14 ----A---- C:\Windows\system32\msdmo.dll
2012-12-10 13:20:14 ----A---- C:\Windows\system32\itircl.dll
2012-12-10 13:20:14 ----A---- C:\Windows\system32\dot3msm.dll
2012-12-10 13:20:13 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2012-12-10 13:20:13 ----A---- C:\Windows\SYSWOW64\wmpps.dll
2012-12-10 13:20:13 ----A---- C:\Windows\SYSWOW64\WerFaultSecure.exe
2012-12-10 13:20:13 ----A---- C:\Windows\SYSWOW64\tlscsp.dll
2012-12-10 13:20:13 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp_isv.exe
2012-12-10 13:20:13 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp.exe
2012-12-10 13:20:13 ----A---- C:\Windows\SYSWOW64\ReAgentc.exe
2012-12-10 13:20:13 ----A---- C:\Windows\SYSWOW64\netutils.dll
2012-12-10 13:20:13 ----A---- C:\Windows\SYSWOW64\findstr.exe
2012-12-10 13:20:13 ----A---- C:\Windows\SYSWOW64\eappgnui.dll
2012-12-10 13:20:13 ----A---- C:\Windows\system32\sppc.dll
2012-12-10 13:20:13 ----A---- C:\Windows\system32\onexui.dll
2012-12-10 13:20:13 ----A---- C:\Windows\system32\mciqtz32.dll
2012-12-10 13:20:13 ----A---- C:\Windows\system32\luainstall.dll
2012-12-10 13:20:13 ----A---- C:\Windows\system32\choice.exe
2012-12-10 13:20:13 ----A---- C:\Windows\system32\FXSTIFF.dll
2012-12-10 13:20:13 ----A---- C:\Windows\system32\findstr.exe
2012-12-10 13:20:13 ----A---- C:\Windows\system32\eappgnui.dll
2012-12-10 13:20:13 ----A---- C:\Windows\system32\drivers\tunnel.sys
2012-12-10 13:20:12 ----A---- C:\Windows\SYSWOW64\sppc.dll
2012-12-10 13:20:12 ----A---- C:\Windows\SYSWOW64\spopk.dll
2012-12-10 13:20:12 ----A---- C:\Windows\SYSWOW64\shimgvw.dll
2012-12-10 13:20:12 ----A---- C:\Windows\SYSWOW64\muifontsetup.dll
2012-12-10 13:20:12 ----A---- C:\Windows\SYSWOW64\mobsync.exe
2012-12-10 13:20:12 ----A---- C:\Windows\SYSWOW64\mciqtz32.dll
2012-12-10 13:20:12 ----A---- C:\Windows\SYSWOW64\luainstall.dll
2012-12-10 13:20:12 ----A---- C:\Windows\SYSWOW64\iccvid.dll
2012-12-10 13:20:12 ----A---- C:\Windows\SYSWOW64\cabinet.dll
2012-12-10 13:20:12 ----A---- C:\Windows\system32\wdiasqmmodule.dll
2012-12-10 13:20:12 ----A---- C:\Windows\system32\spopk.dll
2012-12-10 13:20:12 ----A---- C:\Windows\system32\schedcli.dll
2012-12-10 13:20:12 ----A---- C:\Windows\system32\repair-bde.exe
2012-12-10 13:20:12 ----A---- C:\Windows\system32\RDPENCDD.dll
2012-12-10 13:20:12 ----A---- C:\Windows\system32\manage-bde.exe
2012-12-10 13:20:12 ----A---- C:\Windows\system32\inetmib1.dll
2012-12-10 13:20:12 ----A---- C:\Windows\system32\drivers\dfsc.sys
2012-12-10 13:20:11 ----A---- C:\Windows\SYSWOW64\unlodctr.exe
2012-12-10 13:20:11 ----A---- C:\Windows\SYSWOW64\rdprefdrvapi.dll
2012-12-10 13:20:11 ----A---- C:\Windows\SYSWOW64\msdmo.dll
2012-12-10 13:20:11 ----A---- C:\Windows\SYSWOW64\inetmib1.dll
2012-12-10 13:20:11 ----A---- C:\Windows\system32\odbcconf.dll
2012-12-10 13:20:11 ----A---- C:\Windows\system32\FXSMON.dll
2012-12-10 13:20:11 ----A---- C:\Windows\system32\fixmapi.exe
2012-12-10 13:20:10 ----A---- C:\Windows\SYSWOW64\wups.dll
2012-12-10 13:20:10 ----A---- C:\Windows\SYSWOW64\UIRibbonRes.dll
2012-12-10 13:20:10 ----A---- C:\Windows\SYSWOW64\perfts.dll
2012-12-10 13:20:10 ----A---- C:\Windows\SYSWOW64\odbcconf.dll
2012-12-10 13:20:10 ----A---- C:\Windows\system32\wshbth.dll
2012-12-10 13:20:10 ----A---- C:\Windows\system32\UIRibbonRes.dll
2012-12-10 13:20:10 ----A---- C:\Windows\system32\TRAPI.dll
2012-12-10 13:20:10 ----A---- C:\Windows\system32\elsTrans.dll
2012-12-10 13:20:10 ----A---- C:\Windows\system32\drivers\tdi.sys
2012-12-10 13:20:09 ----A---- C:\Windows\SYSWOW64\imm32.dll
2012-12-10 13:20:09 ----A---- C:\Windows\system32\rdprefdrvapi.dll
2012-12-10 13:20:09 ----A---- C:\Windows\system32\napdsnap.dll
2012-12-10 13:20:09 ----A---- C:\Windows\system32\LogonUI.exe
2012-12-10 13:20:09 ----A---- C:\Windows\system32\dsauth.dll
2012-12-10 13:20:08 ----A---- C:\Windows\SYSWOW64\elsTrans.dll
2012-12-10 13:20:08 ----A---- C:\Windows\system32\FXSUNATD.exe
2012-12-10 13:20:07 ----A---- C:\Windows\SYSWOW64\wshbth.dll
2012-12-10 13:20:07 ----A---- C:\Windows\SYSWOW64\TRAPI.dll
2012-12-10 13:20:07 ----A---- C:\Windows\SYSWOW64\schedcli.dll
2012-12-10 13:20:07 ----A---- C:\Windows\SYSWOW64\napdsnap.dll
2012-12-10 13:20:07 ----A---- C:\Windows\SYSWOW64\dsauth.dll
2012-12-10 13:20:07 ----A---- C:\Windows\SYSWOW64\cscdll.dll
2012-12-10 13:20:07 ----A---- C:\Windows\SYSWOW64\bitsperf.dll
2012-12-10 13:20:07 ----A---- C:\Windows\system32\drivers\usbrpm.sys
2012-12-10 13:20:07 ----A---- C:\Windows\system32\drivers\acpipmi.sys
2012-12-10 13:20:07 ----A---- C:\Windows\system32\cscdll.dll
2012-12-10 13:20:07 ----A---- C:\Windows\system32\bitsperf.dll
2012-12-10 13:20:06 ----A---- C:\Windows\SYSWOW64\wsdchngr.dll
2012-12-10 13:20:06 ----A---- C:\Windows\SYSWOW64\sscore.dll
2012-12-10 13:20:06 ----A---- C:\Windows\SYSWOW64\shgina.dll
2012-12-10 13:20:06 ----A---- C:\Windows\SYSWOW64\riched32.dll
2012-12-10 13:20:06 ----A---- C:\Windows\system32\wsdchngr.dll
2012-12-10 13:20:06 ----A---- C:\Windows\system32\shgina.dll
2012-12-10 13:20:06 ----A---- C:\Windows\system32\drivers\USBCAMD2.sys
2012-12-10 13:20:06 ----A---- C:\Windows\system32\drivers\CompositeBus.sys
2012-12-10 13:20:05 ----A---- C:\Windows\SYSWOW64\wshirda.dll
2012-12-10 13:20:05 ----A---- C:\Windows\system32\wshirda.dll
2012-12-10 13:20:05 ----A---- C:\Windows\system32\rdpcfgex.dll
2012-12-10 13:20:05 ----A---- C:\Windows\system32\drivers\hidusb.sys
2012-12-10 13:20:05 ----A---- C:\Windows\system32\drivers\appid.sys
2012-12-10 13:20:04 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2012-12-10 13:20:04 ----A---- C:\Windows\SYSWOW64\C_ISCII.DLL
2012-12-10 13:20:04 ----A---- C:\Windows\SYSWOW64\browseui.dll
2012-12-10 13:20:04 ----A---- C:\Windows\system32\spwmp.dll
2012-12-10 13:20:04 ----A---- C:\Windows\system32\riched32.dll
2012-12-10 13:20:04 ----A---- C:\Windows\system32\drivers\kbdhid.sys
2012-12-10 13:20:04 ----A---- C:\Windows\system32\drivers\IPMIDrv.sys
2012-12-10 13:20:04 ----A---- C:\Windows\system32\drivers\HdAudio.sys
2012-12-10 13:20:04 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2012-12-10 13:20:04 ----A---- C:\Windows\system32\drivers\cdrom.sys
2012-12-10 13:20:04 ----A---- C:\Windows\system32\C_ISCII.DLL
2012-12-10 13:20:04 ----A---- C:\Windows\system32\browseui.dll
2012-12-10 13:20:03 ----AH---- C:\Windows\system32\api-ms-win-core-ums-l1-1-0.dll
2012-12-10 13:20:03 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2012-12-10 13:20:03 ----A---- C:\Windows\SYSWOW64\shunimpl.dll
2012-12-10 13:20:03 ----A---- C:\Windows\SYSWOW64\KBDUS.DLL
2012-12-10 13:20:03 ----A---- C:\Windows\SYSWOW64\KBDUGHR1.DLL
2012-12-10 13:20:03 ----A---- C:\Windows\SYSWOW64\KBDTURME.DLL
2012-12-10 13:20:03 ----A---- C:\Windows\SYSWOW64\KBDTUQ.DLL
2012-12-10 13:20:03 ----A---- C:\Windows\SYSWOW64\KBDTUF.DLL
2012-12-10 13:20:03 ----A---- C:\Windows\SYSWOW64\KBDTAJIK.DLL
2012-12-10 13:20:03 ----A---- C:\Windows\SYSWOW64\KBDSG.DLL
2012-12-10 13:20:03 ----A---- C:\Windows\SYSWOW64\KBDMON.DLL
2012-12-10 13:20:03 ----A---- C:\Windows\SYSWOW64\kbdlk41a.dll
2012-12-10 13:20:03 ----A---- C:\Windows\SYSWOW64\KBDINTEL.DLL
2012-12-10 13:20:03 ----A---- C:\Windows\SYSWOW64\KBDINHIN.DLL
2012-12-10 13:20:03 ----A---- C:\Windows\SYSWOW64\KBDGR1.DLL
2012-12-10 13:20:03 ----A---- C:\Windows\SYSWOW64\KBDGKL.DLL
2012-12-10 13:20:03 ----A---- C:\Windows\SYSWOW64\KBDGEO.DLL
2012-12-10 13:20:03 ----A---- C:\Windows\SYSWOW64\KBDCZ1.DLL
2012-12-10 13:20:03 ----A---- C:\Windows\SYSWOW64\KBDBLR.DLL
2012-12-10 13:20:03 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2012-12-10 13:20:03 ----A---- C:\Windows\system32\wmploc.DLL
2012-12-10 13:20:03 ----A---- C:\Windows\system32\shunimpl.dll
2012-12-10 13:20:03 ----A---- C:\Windows\system32\KBDUS.DLL
2012-12-10 13:20:03 ----A---- C:\Windows\system32\KBDUGHR1.DLL
2012-12-10 13:20:03 ----A---- C:\Windows\system32\KBDTUQ.DLL
2012-12-10 13:20:03 ----A---- C:\Windows\system32\KBDTUF.DLL
2012-12-10 13:20:03 ----A---- C:\Windows\system32\KBDTAJIK.DLL
2012-12-10 13:20:03 ----A---- C:\Windows\system32\KBDSG.DLL
2012-12-10 13:20:03 ----A---- C:\Windows\system32\KBDSF.DLL
2012-12-10 13:20:03 ----A---- C:\Windows\system32\KBDPO.DLL
2012-12-10 13:20:03 ----A---- C:\Windows\system32\KBDNEPR.DLL
2012-12-10 13:20:03 ----A---- C:\Windows\system32\KBDMON.DLL
2012-12-10 13:20:03 ----A---- C:\Windows\system32\kbdlk41a.dll
2012-12-10 13:20:03 ----A---- C:\Windows\system32\KBDINTAM.DLL
2012-12-10 13:20:03 ----A---- C:\Windows\system32\KBDINBEN.DLL
2012-12-10 13:20:03 ----A---- C:\Windows\system32\KBDGR1.DLL
2012-12-10 13:20:03 ----A---- C:\Windows\system32\KBDGKL.DLL
2012-12-10 13:20:03 ----A---- C:\Windows\system32\KBDGEO.DLL
2012-12-10 13:20:03 ----A---- C:\Windows\system32\KBDCZ1.DLL
2012-12-10 13:20:03 ----A---- C:\Windows\system32\dxmasf.dll
2012-12-10 13:20:03 ----A---- C:\Windows\system32\drivers\sffp_sd.sys
2012-12-10 13:20:03 ----A---- C:\Windows\system32\drivers\scfilter.sys
2012-12-10 13:20:02 ----A---- C:\Windows\SYSWOW64\spwizres.dll
2012-12-10 13:20:02 ----A---- C:\Windows\SYSWOW64\pifmgr.dll
2012-12-10 13:20:02 ----A---- C:\Windows\SYSWOW64\nlsbres.dll
2012-12-10 13:20:02 ----A---- C:\Windows\SYSWOW64\KBDSF.DLL
2012-12-10 13:20:02 ----A---- C:\Windows\SYSWOW64\KBDPO.DLL
2012-12-10 13:20:02 ----A---- C:\Windows\SYSWOW64\KBDNEPR.DLL
2012-12-10 13:20:02 ----A---- C:\Windows\SYSWOW64\KBDMAORI.DLL
2012-12-10 13:20:02 ----A---- C:\Windows\SYSWOW64\KBDLT1.DLL
2012-12-10 13:20:02 ----A---- C:\Windows\SYSWOW64\KBDINTAM.DLL
2012-12-10 13:20:02 ----A---- C:\Windows\SYSWOW64\KBDINORI.DLL
2012-12-10 13:20:02 ----A---- C:\Windows\SYSWOW64\KBDINMAR.DLL
2012-12-10 13:20:02 ----A---- C:\Windows\SYSWOW64\KBDINKAN.DLL
2012-12-10 13:20:02 ----A---- C:\Windows\SYSWOW64\KBDINBEN.DLL
2012-12-10 13:20:02 ----A---- C:\Windows\SYSWOW64\KBDBULG.DLL
2012-12-10 13:20:02 ----A---- C:\Windows\SYSWOW64\KBDBASH.DLL
2012-12-10 13:20:02 ----A---- C:\Windows\SYSWOW64\dpnaddr.dll
2012-12-10 13:20:02 ----A---- C:\Windows\system32\spwizres.dll
2012-12-10 13:20:02 ----A---- C:\Windows\system32\pifmgr.dll
2012-12-10 13:20:02 ----A---- C:\Windows\system32\nlsbres.dll
2012-12-10 13:20:02 ----A---- C:\Windows\system32\KBDTURME.DLL
2012-12-10 13:20:02 ----A---- C:\Windows\system32\KBDMAORI.DLL
2012-12-10 13:20:02 ----A---- C:\Windows\system32\KBDLT1.DLL
2012-12-10 13:20:02 ----A---- C:\Windows\system32\KBDINTEL.DLL
2012-12-10 13:20:02 ----A---- C:\Windows\system32\KBDINORI.DLL
2012-12-10 13:20:02 ----A---- C:\Windows\system32\KBDINMAR.DLL
2012-12-10 13:20:02 ----A---- C:\Windows\system32\KBDINKAN.DLL
2012-12-10 13:20:02 ----A---- C:\Windows\system32\KBDINHIN.DLL
2012-12-10 13:20:02 ----A---- C:\Windows\system32\KBDBULG.DLL
2012-12-10 13:20:02 ----A---- C:\Windows\system32\KBDBLR.DLL
2012-12-10 13:20:02 ----A---- C:\Windows\system32\KBDBASH.DLL
2012-12-10 13:20:02 ----A---- C:\Windows\system32\dpnaddr.dll
2012-12-10 13:20:02 ----A---- C:\Windows\system32\BlbEvents.dll
2012-12-10 13:19:55 ----A---- C:\Windows\SYSWOW64\wdscore.dll
2012-12-10 13:19:55 ----A---- C:\Windows\system32\dpx.dll
2012-12-10 13:19:52 ----A---- C:\Windows\SYSWOW64\sqmapi.dll
2012-12-10 13:19:49 ----A---- C:\Windows\SYSWOW64\wbemcomn.dll
2012-12-10 13:19:01 ----A---- C:\Windows\system32\wbemcomn.dll
2012-12-10 13:18:56 ----A---- C:\Windows\system32\sqmapi.dll
2012-12-10 13:17:45 ----A---- C:\Windows\SYSWOW64\esent.dll
2012-12-10 13:17:45 ----A---- C:\Windows\system32\esent.dll
2012-12-10 13:17:45 ----A---- C:\Windows\system32\drivers\nvstor.sys
2012-12-10 13:17:44 ----A---- C:\Windows\SYSWOW64\fsutil.exe
2012-12-10 13:17:44 ----A---- C:\Windows\system32\fsutil.exe
2012-12-10 13:17:44 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2012-12-10 13:17:44 ----A---- C:\Windows\system32\drivers\storport.sys
2012-12-10 13:17:44 ----A---- C:\Windows\system32\drivers\nvraid.sys
2012-12-10 13:17:44 ----A---- C:\Windows\system32\drivers\iaStorV.sys
2012-12-10 13:17:44 ----A---- C:\Windows\system32\drivers\amdxata.sys
2012-12-10 13:17:44 ----A---- C:\Windows\system32\drivers\amdsata.sys
2012-12-10 13:17:40 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2012-12-10 13:17:40 ----A---- C:\Windows\system32\drivers\usbport.sys
2012-12-10 13:17:40 ----A---- C:\Windows\system32\drivers\usbohci.sys
2012-12-10 13:17:40 ----A---- C:\Windows\system32\drivers\usbhub.sys
2012-12-10 13:17:40 ----A---- C:\Windows\system32\drivers\usbehci.sys
2012-12-10 13:17:40 ----A---- C:\Windows\system32\drivers\usbd.sys
2012-12-10 13:17:40 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2012-12-10 12:52:28 ----D---- C:\Windows\SYSWOW64\Wat
2012-12-10 12:52:28 ----D---- C:\Windows\system32\Wat
2012-12-10 12:13:54 ----A---- C:\Windows\system32\Wdfres.dll
2012-12-10 12:13:54 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2012-12-10 12:13:54 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2012-12-10 12:12:57 ----A---- C:\Windows\system32\npDeployJava1.dll
2012-12-10 12:12:57 ----A---- C:\Windows\system32\javaws.exe
2012-12-10 12:12:57 ----A---- C:\Windows\system32\deployJava1.dll
2012-12-10 12:12:49 ----A---- C:\Windows\system32\WindowsAccessBridge-64.dll
2012-12-10 12:12:49 ----A---- C:\Windows\system32\javaw.exe
2012-12-10 12:12:49 ----A---- C:\Windows\system32\java.exe
2012-12-10 12:12:20 ----D---- C:\Program Files\Java
2012-12-10 11:57:33 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2012-12-10 11:57:32 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2012-12-10 11:57:32 ----A---- C:\Windows\SYSWOW64\msrating.dll
2012-12-10 11:57:32 ----A---- C:\Windows\SYSWOW64\msls31.dll
2012-12-10 11:57:32 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2012-12-10 11:57:32 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2012-12-10 11:57:32 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2012-12-10 11:57:32 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2012-12-10 11:57:32 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2012-12-10 11:57:32 ----A---- C:\Windows\SYSWOW64\ieakeng.dll
2012-12-10 11:57:32 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2012-12-10 11:57:31 ----A---- C:\Windows\SYSWOW64\wextract.exe
2012-12-10 11:57:31 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2012-12-10 11:57:31 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2012-12-10 11:57:31 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2012-12-10 11:57:31 ----A---- C:\Windows\SYSWOW64\inseng.dll
2012-12-10 11:57:31 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2012-12-10 11:57:31 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2012-12-10 11:57:31 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2012-12-10 11:57:31 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2012-12-10 11:57:31 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2012-12-10 11:57:31 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2012-12-10 11:57:31 ----A---- C:\Windows\SYSWOW64\ie4uinit.exe
2012-12-10 11:57:31 ----A---- C:\Windows\SYSWOW64\icardie.dll
2012-12-10 11:57:31 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2012-12-10 11:57:31 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2012-12-10 11:57:30 ----A---- C:\Windows\SYSWOW64\occache.dll
2012-12-10 11:57:30 ----A---- C:\Windows\SYSWOW64\mshta.exe
2012-12-10 11:57:30 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2012-12-10 11:57:30 ----A---- C:\Windows\SYSWOW64\ieakui.dll
2012-12-10 11:57:30 ----A---- C:\Windows\SYSWOW64\ieaksie.dll
2012-12-10 11:57:30 ----A---- C:\Windows\SYSWOW64\admparse.dll
2012-12-10 11:57:30 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2012-12-10 11:57:30 ----A---- C:\Windows\system32\msls31.dll
2012-12-10 11:57:29 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2012-12-10 11:57:29 ----A---- C:\Windows\system32\pngfilt.dll
2012-12-10 11:57:29 ----A---- C:\Windows\system32\occache.dll
2012-12-10 11:57:29 ----A---- C:\Windows\system32\msrating.dll
2012-12-10 11:57:29 ----A---- C:\Windows\system32\mshtmler.dll
2012-12-10 11:57:29 ----A---- C:\Windows\system32\mshta.exe
2012-12-10 11:57:29 ----A---- C:\Windows\system32\msfeedssync.exe
2012-12-10 11:57:29 ----A---- C:\Windows\system32\msfeedsbs.dll
2012-12-10 11:57:29 ----A---- C:\Windows\system32\imgutil.dll
2012-12-10 11:57:29 ----A---- C:\Windows\system32\iesysprep.dll
2012-12-10 11:57:29 ----A---- C:\Windows\system32\iepeers.dll
2012-12-10 11:57:29 ----A---- C:\Windows\system32\ieakui.dll
2012-12-10 11:57:29 ----A---- C:\Windows\system32\ieaksie.dll
2012-12-10 11:57:29 ----A---- C:\Windows\system32\ieakeng.dll
2012-12-10 11:57:29 ----A---- C:\Windows\system32\IEAdvpack.dll
2012-12-10 11:57:29 ----A---- C:\Windows\system32\admparse.dll
2012-12-10 11:57:28 ----A---- C:\Windows\system32\wextract.exe
2012-12-10 11:57:28 ----A---- C:\Windows\system32\webcheck.dll
2012-12-10 11:57:28 ----A---- C:\Windows\system32\licmgr10.dll
2012-12-10 11:57:28 ----A---- C:\Windows\system32\inseng.dll
2012-12-10 11:57:28 ----A---- C:\Windows\system32\iexpress.exe
2012-12-10 11:57:28 ----A---- C:\Windows\system32\iesetup.dll
2012-12-10 11:57:28 ----A---- C:\Windows\system32\iernonce.dll
2012-12-10 11:57:28 ----A---- C:\Windows\system32\iedkcs32.dll
2012-12-10 11:57:28 ----A---- C:\Windows\system32\ieapfltr.dll
2012-12-10 11:57:28 ----A---- C:\Windows\system32\ieapfltr.dat
2012-12-10 11:57:28 ----A---- C:\Windows\system32\ie4uinit.exe
2012-12-10 11:57:28 ----A---- C:\Windows\system32\icardie.dll
2012-12-10 11:57:28 ----A---- C:\Windows\system32\dxtrans.dll
2012-12-10 11:57:28 ----A---- C:\Windows\system32\dxtmsft.dll
2012-12-10 11:45:14 ----A---- C:\Windows\system32\MRT.exe
2012-12-10 11:44:33 ----A---- C:\Windows\system32\WUDFSvc.dll
2012-12-10 11:44:33 ----A---- C:\Windows\system32\WUDFPlatform.dll
2012-12-10 11:44:33 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2012-12-10 11:44:33 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2012-12-10 11:44:33 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2012-12-10 11:44:32 ----A---- C:\Windows\system32\WUDFx.dll
2012-12-10 11:44:32 ----A---- C:\Windows\system32\WUDFHost.exe
2012-12-10 11:41:35 ----A---- C:\Windows\SYSWOW64\wmi.dll
2012-12-10 11:41:35 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2012-12-10 11:41:35 ----A---- C:\Windows\system32\wmi.dll
2012-12-10 11:41:35 ----A---- C:\Windows\system32\imagehlp.dll
2012-12-10 11:41:35 ----A---- C:\Windows\system32\drivers\fs_rec.sys
2012-12-10 11:26:19 ----A---- C:\Windows\SYSWOW64\xmllite.dll
2012-12-10 11:26:19 ----A---- C:\Windows\system32\xmllite.dll
2012-12-10 11:26:18 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2012-12-10 11:26:18 ----A---- C:\Windows\system32\DWrite.dll
2012-12-10 11:26:06 ----A---- C:\Windows\SYSWOW64\explorer.exe
2012-12-10 11:26:06 ----A---- C:\Windows\explorer.exe
2012-12-10 11:26:02 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2012-12-10 11:26:02 ----A---- C:\Windows\system32\CPFilters.dll
2012-12-10 11:26:01 ----A---- C:\Windows\SYSWOW64\sbe.dll
2012-12-10 11:26:01 ----A---- C:\Windows\system32\sbe.dll
2012-12-10 11:25:58 ----A---- C:\Windows\SYSWOW64\quartz.dll
2012-12-10 11:25:58 ----A---- C:\Windows\system32\quartz.dll
2012-12-10 11:25:49 ----A---- C:\Windows\system32\msxml6.dll
2012-12-10 11:25:49 ----A---- C:\Windows\system32\msxml3.dll
2012-12-10 11:25:48 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2012-12-10 11:25:48 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2012-12-10 11:25:48 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2012-12-10 11:25:48 ----A---- C:\Windows\system32\msxml3r.dll
2012-12-10 11:25:36 ----A---- C:\Windows\system32\csrsrv.dll
2012-12-10 11:25:27 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2012-12-10 11:25:26 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2012-12-10 11:25:21 ----A---- C:\Windows\system32\ntoskrnl.exe
2012-12-10 11:25:20 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2012-12-10 11:25:20 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2012-12-10 11:25:14 ----A---- C:\Windows\system32\d3d10level9.dll
2012-12-10 11:25:13 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2012-12-10 11:25:11 ----A---- C:\Windows\system32\rdrmemptylst.exe
2012-12-10 11:25:11 ----A---- C:\Windows\system32\rdpwsx.dll
2012-12-10 11:25:11 ----A---- C:\Windows\system32\rdpcorekmts.dll
2012-12-10 11:25:05 ----A---- C:\Windows\system32\profsvc.dll
2012-12-10 11:25:04 ----A---- C:\Windows\system32\profprov.dll
2012-12-10 11:25:02 ----A---- C:\Windows\SYSWOW64\dnscacheugc.exe
2012-12-10 11:25:02 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2012-12-10 11:25:02 ----A---- C:\Windows\system32\dnsrslvr.dll
2012-12-10 11:25:02 ----A---- C:\Windows\system32\dnscacheugc.exe
2012-12-10 11:25:02 ----A---- C:\Windows\system32\dnsapi.dll
2012-12-10 11:24:59 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2012-12-10 11:24:59 ----A---- C:\Windows\system32\wintrust.dll
2012-12-10 11:24:56 ----A---- C:\Windows\system32\drivers\srvnet.sys
2012-12-10 11:24:56 ----A---- C:\Windows\system32\drivers\srv2.sys
2012-12-10 11:24:56 ----A---- C:\Windows\system32\drivers\srv.sys
2012-12-10 11:24:53 ----A---- C:\Windows\system32\psisdecd.dll
2012-12-10 11:24:52 ----A---- C:\Windows\SYSWOW64\psisdecd.dll
2012-12-10 11:24:45 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2012-12-10 11:24:25 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2012-12-10 11:24:25 ----A---- C:\Windows\SYSWOW64\devrtl.dll
2012-12-10 11:24:25 ----A---- C:\Windows\SYSWOW64\devobj.dll
2012-12-10 11:24:25 ----A---- C:\Windows\SYSWOW64\cfgmgr32.dll
2012-12-10 11:24:25 ----A---- C:\Windows\system32\umpnpmgr.dll
2012-12-10 11:24:25 ----A---- C:\Windows\system32\cfgmgr32.dll
2012-12-10 11:24:18 ----A---- C:\Windows\SYSWOW64\prevhost.exe
2012-12-10 11:24:18 ----A---- C:\Windows\system32\prevhost.exe
2012-12-10 11:24:16 ----A---- C:\Windows\SYSWOW64\msvcrt.dll
2012-12-10 11:24:16 ----A---- C:\Windows\system32\msvcrt.dll
2012-12-10 11:24:10 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2012-12-10 11:24:10 ----A---- C:\Windows\SYSWOW64\oleacc.dll
2012-12-10 11:24:10 ----A---- C:\Windows\system32\oleaut32.dll
2012-12-10 11:24:10 ----A---- C:\Windows\system32\oleacc.dll
2012-12-10 11:24:07 ----A---- C:\Windows\system32\EncDec.dll
2012-12-10 11:24:06 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2012-12-10 11:24:02 ----A---- C:\Windows\SYSWOW64\cdosys.dll
2012-12-10 11:24:02 ----A---- C:\Windows\system32\cdosys.dll
2012-12-10 11:23:42 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2012-12-10 11:23:42 ----A---- C:\Windows\system32\ntdll.dll
2012-12-10 11:02:25 ----A---- C:\Windows\system32\drivers\ntfs.sys
2012-12-10 11:02:24 ----A---- C:\Windows\SYSWOW64\odbcjt32.dll
2012-12-10 11:02:24 ----A---- C:\Windows\system32\odbctrac.dll
2012-12-10 11:02:24 ----A---- C:\Windows\system32\odbccu32.dll
2012-12-10 11:02:24 ----A---- C:\Windows\system32\odbccr32.dll
2012-12-10 11:02:24 ----A---- C:\Windows\system32\odbccp32.dll
2012-12-10 11:02:23 ----A---- C:\Windows\SYSWOW64\odbctrac.dll
2012-12-10 11:02:23 ----A---- C:\Windows\SYSWOW64\odbccu32.dll
2012-12-10 11:02:23 ----A---- C:\Windows\SYSWOW64\odbccr32.dll
2012-12-10 11:02:23 ----A---- C:\Windows\SYSWOW64\odbccp32.dll
2012-12-10 11:01:26 ----A---- C:\Windows\SYSWOW64\tquery.dll
2012-12-10 11:01:26 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2012-12-10 11:01:26 ----A---- C:\Windows\system32\tquery.dll
2012-12-10 11:01:26 ----A---- C:\Windows\system32\SearchIndexer.exe
2012-12-10 11:01:26 ----A---- C:\Windows\system32\mssrch.dll
2012-12-10 11:01:25 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2012-12-10 11:01:25 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2012-12-10 11:01:25 ----A---- C:\Windows\SYSWOW64\mssph.dll
2012-12-10 11:01:25 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2012-12-10 11:01:25 ----A---- C:\Windows\system32\mssvp.dll
2012-12-10 11:01:25 ----A---- C:\Windows\system32\mssph.dll
2012-12-10 11:01:24 ----A---- C:\Windows\SYSWOW64\SearchFilterHost.exe
2012-12-10 11:01:24 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2012-12-10 11:01:24 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2012-12-10 11:01:24 ----A---- C:\Windows\SYSWOW64\msscntrs.dll
2012-12-10 11:01:24 ----A---- C:\Windows\system32\SearchFilterHost.exe
2012-12-10 11:01:24 ----A---- C:\Windows\system32\mssphtb.dll
2012-12-10 11:01:24 ----A---- C:\Windows\system32\msscntrs.dll
2012-12-10 11:01:20 ----A---- C:\Windows\system32\shell32.dll
2012-12-10 11:01:19 ----A---- C:\Windows\SYSWOW64\shell32.dll
2012-12-10 11:01:08 ----A---- C:\Windows\SYSWOW64\ntshrui.dll
2012-12-10 11:01:08 ----A---- C:\Windows\system32\ntshrui.dll
2012-12-10 11:00:49 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2012-12-10 11:00:49 ----A---- C:\Windows\system32\FntCache.dll
2012-12-10 11:00:49 ----A---- C:\Windows\system32\d2d1.dll
2012-12-10 11:00:39 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2012-12-10 11:00:39 ----A---- C:\Windows\system32\kerberos.dll
2012-12-10 11:00:37 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2012-12-10 11:00:37 ----A---- C:\Windows\system32\poqexec.exe
2012-12-10 11:00:36 ----A---- C:\Windows\system32\win32spl.dll
2012-12-10 11:00:36 ----A---- C:\Windows\system32\spoolsv.exe
2012-12-10 11:00:35 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2012-12-10 11:00:35 ----A---- C:\Windows\splwow64.exe
2012-12-10 11:00:29 ----A---- C:\Windows\system32\XpsPrint.dll
2012-12-10 11:00:28 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2012-12-10 11:00:18 ----A---- C:\Windows\SYSWOW64\webio.dll
2012-12-10 11:00:18 ----A---- C:\Windows\system32\webio.dll
2012-12-10 11:00:06 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2012-12-10 11:00:06 ----A---- C:\Windows\system32\drivers\afd.sys
2012-12-10 11:00:05 ----A---- C:\Windows\system32\msi.dll
2012-12-10 11:00:04 ----A---- C:\Windows\SYSWOW64\msi.dll
2012-12-10 11:00:03 ----A---- C:\Windows\SYSWOW64\mfc42u.dll
2012-12-10 11:00:03 ----A---- C:\Windows\SYSWOW64\mfc42.dll
2012-12-10 11:00:03 ----A---- C:\Windows\system32\mfc42u.dll
2012-12-10 11:00:03 ----A---- C:\Windows\system32\mfc42.dll
2012-12-10 11:00:01 ----A---- C:\Windows\system32\drivers\bowser.sys
2012-12-10 10:59:57 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2012-12-10 10:59:57 ----A---- C:\Windows\system32\fontsub.dll
2012-12-10 10:59:55 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2012-12-10 10:59:55 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2012-12-10 10:59:55 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2012-12-10 10:59:50 ----A---- C:\Windows\system32\sspicli.dll
2012-12-10 10:59:49 ----A---- C:\Windows\system32\sspisrv.dll
2012-12-10 10:59:49 ----A---- C:\Windows\system32\secur32.dll
2012-12-10 10:59:49 ----A---- C:\Windows\system32\lsass.exe
2012-12-10 10:59:49 ----A---- C:\Windows\system32\drivers\partmgr.sys
2012-12-10 10:59:49 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2012-12-10 10:59:48 ----A---- C:\Windows\system32\winload.exe
2012-12-10 10:59:47 ----A---- C:\Windows\system32\winresume.exe
2012-12-10 10:59:47 ----A---- C:\Windows\system32\setbcdlocale.dll
2012-12-10 10:59:47 ----A---- C:\Windows\system32\kdusb.dll
2012-12-10 10:59:47 ----A---- C:\Windows\system32\kdcom.dll
2012-12-10 10:59:47 ----A---- C:\Windows\system32\kd1394.dll
2012-12-10 10:59:43 ----A---- C:\Windows\SYSWOW64\srclient.dll
2012-12-10 10:59:43 ----A---- C:\Windows\system32\srcore.dll
2012-12-10 10:59:43 ----A---- C:\Windows\system32\rstrui.exe
2012-12-10 10:59:41 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2012-12-10 10:59:41 ----A---- C:\Windows\system32\inetcomm.dll
2012-12-10 10:59:40 ----A---- C:\Windows\system32\localspl.dll
2012-12-10 10:59:38 ----A---- C:\Windows\SYSWOW64\netapi32.dll
2012-12-10 10:59:38 ----A---- C:\Windows\SYSWOW64\browcli.dll
2012-12-10 10:59:38 ----A---- C:\Windows\system32\netapi32.dll
2012-12-10 10:59:38 ----A---- C:\Windows\system32\browser.dll
2012-12-10 10:59:38 ----A---- C:\Windows\system32\browcli.dll
2012-12-10 10:59:35 ----A---- C:\Windows\SYSWOW64\synceng.dll
2012-12-10 10:59:35 ----A---- C:\Windows\system32\synceng.dll
2012-12-10 10:55:15 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2012-12-10 10:55:15 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2012-12-10 10:55:15 ----A---- C:\Windows\system32\d3d10_1core.dll
2012-12-10 10:55:15 ----A---- C:\Windows\system32\d3d10_1.dll
2012-12-10 10:53:18 ----A---- C:\Windows\system32\WFS.exe
2012-12-10 10:53:18 ----A---- C:\Windows\system32\FXSCOVER.exe
2012-12-10 10:52:15 ----A---- C:\Windows\system32\browserchoice.exe
2012-12-09 23:33:43 ----A---- C:\Windows\system32\crypt32.dll
2012-12-09 23:33:42 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2012-12-09 23:33:42 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2012-12-09 23:33:42 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2012-12-09 23:33:42 ----A---- C:\Windows\system32\cryptsvc.dll
2012-12-09 23:33:42 ----A---- C:\Windows\system32\cryptnet.dll
2012-12-09 23:32:26 ----A---- C:\Windows\SYSWOW64\packager.dll
2012-12-09 23:32:26 ----A---- C:\Windows\system32\packager.dll
2012-12-09 23:19:23 ----D---- C:\Program Files (x86)\InstallShield Installation Information
2012-12-09 23:19:10 ----D---- C:\Program Files (x86)\Renesas Electronics
2012-12-09 23:17:43 ----D---- C:\Program Files (x86)\Google
2012-12-09 23:15:15 ----D---- C:\Program Files\PeerBlock
2012-12-09 23:14:47 ----D---- C:\Users\FNj\AppData\Roaming\SumatraPDF
2012-12-09 23:14:45 ----D---- C:\Program Files (x86)\SumatraPDF
2012-12-09 23:14:37 ----D---- C:\Program Files\CPUID
2012-12-09 23:13:05 ----D---- C:\Users\FNj\AppData\Roaming\Malwarebytes
2012-12-09 23:12:55 ----D---- C:\ProgramData\Malwarebytes
2012-12-09 23:12:54 ----D---- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2012-12-09 23:12:54 ----A---- C:\Windows\system32\drivers\mbam.sys
2012-12-09 23:11:56 ----D---- C:\Users\FNj\AppData\Roaming\Macromedia
2012-12-09 23:11:56 ----D---- C:\Users\FNj\AppData\Roaming\Adobe
2012-12-09 23:11:47 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2012-12-09 23:11:45 ----D---- C:\Windows\SYSWOW64\Macromed
2012-12-09 23:11:43 ----D---- C:\Windows\system32\Macromed
2012-12-09 23:08:30 ----D---- C:\Users\FNj\AppData\Roaming\ATI
2012-12-09 23:08:30 ----D---- C:\ProgramData\ATI
2012-12-09 23:05:03 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2012-12-09 23:05:03 ----A---- C:\Windows\system32\rdpcore.dll
2012-12-09 23:05:03 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2012-12-09 23:03:05 ----D---- C:\Program Files (x86)\AMD AVT
2012-12-09 23:03:02 ----D---- C:\Program Files (x86)\AMD APP
2012-12-09 23:02:56 ----D---- C:\Program Files\Common Files\ATI Technologies
2012-12-09 23:02:22 ----D---- C:\ProgramData\AMD
2012-12-09 23:01:53 ----D---- C:\Program Files (x86)\ATI Technologies
2012-12-09 22:56:44 ----D---- C:\Program Files (x86)\Microsoft.NET
2012-12-09 22:54:56 ----D---- C:\AMD
2012-12-09 22:54:13 ----N---- C:\Windows\system32\MpSigStub.exe
2012-12-09 22:53:52 ----D---- C:\Program Files\DIFX
2012-12-09 22:53:49 ----DC---- C:\Windows\system32\DRVSTORE
2012-12-09 22:53:49 ----D---- C:\Program Files (x86)\AMD
2012-12-09 22:53:49 ----A---- C:\Windows\system32\drivers\usbfilter.sys
2012-12-09 22:53:45 ----D---- C:\Program Files\ATI
2012-12-09 22:53:35 ----D---- C:\Program Files\ATI Technologies
2012-12-09 22:52:56 ----D---- C:\Program Files (x86)\Microsoft Security Client
2012-12-09 22:52:43 ----SHD---- C:\Windows\Installer
2012-12-09 22:52:43 ----D---- C:\Program Files\Microsoft Security Client
2012-12-09 22:52:03 ----A---- C:\Windows\system32\wups2.dll
2012-12-09 22:52:03 ----A---- C:\Windows\system32\wucltux.dll
2012-12-09 22:52:03 ----A---- C:\Windows\system32\wuaueng.dll
2012-12-09 22:52:03 ----A---- C:\Windows\system32\wuauclt.exe
2012-12-09 22:51:58 ----A---- C:\Windows\system32\wups.dll
2012-12-09 22:51:58 ----A---- C:\Windows\system32\wudriver.dll
2012-12-09 22:51:58 ----A---- C:\Windows\system32\wuapi.dll
2012-12-09 22:51:53 ----A---- C:\Windows\system32\wuwebv.dll
2012-12-09 22:51:53 ----A---- C:\Windows\system32\wuapp.exe
2012-12-09 22:50:03 ----D---- C:\Users\FNj\AppData\Roaming\Identities
2012-12-09 22:49:53 ----SD---- C:\Users\FNj\AppData\Roaming\Microsoft
2012-12-09 22:49:53 ----D---- C:\Users\FNj\AppData\Roaming\Media Center Programs
2012-12-09 22:49:47 ----SHD---- C:\Recovery
2012-12-09 22:49:47 ----SHD---- C:\ProgramData\Šablony
2012-12-09 22:49:47 ----SHD---- C:\ProgramData\Plocha
2012-12-09 22:49:47 ----SHD---- C:\ProgramData\Oblíbené položky
2012-12-09 22:49:47 ----SHD---- C:\ProgramData\Nabídka Start
2012-12-09 22:49:47 ----SHD---- C:\ProgramData\Dokumenty
2012-12-09 22:49:47 ----SHD---- C:\ProgramData\Data aplikací
2012-12-09 22:49:44 ----D---- C:\Windows\SoftwareDistribution
2012-12-09 22:44:56 ----D---- C:\Windows\Prefetch
2012-12-09 22:44:42 ----SHD---- C:\System Volume Information
2012-12-09 22:44:42 ----ASH---- C:\pagefile.sys
2012-12-09 22:44:42 ----ASH---- C:\hiberfil.sys
2012-12-09 22:43:40 ----D---- C:\Windows\Panther

======List of files/folders modified in the last 1 month======

2012-12-18 14:28:12 ----D---- C:\Windows\Temp
2012-12-18 14:10:04 ----RD---- C:\Program Files
2012-12-18 14:00:18 ----D---- C:\Windows\system32\config
2012-12-18 13:50:55 ----D---- C:\Windows\inf
2012-12-18 13:50:55 ----D---- C:\Windows
2012-12-18 13:24:28 ----D---- C:\Windows\system32\drivers
2012-12-18 13:24:27 ----RD---- C:\Program Files (x86)
2012-12-18 13:14:27 ----D---- C:\Windows\System32
2012-12-18 13:14:27 ----A---- C:\Windows\system32\PerfStringBackup.INI
2012-12-18 13:01:58 ----HD---- C:\ProgramData
2012-12-18 12:48:02 ----D---- C:\Windows\debug
2012-12-17 20:28:29 ----D---- C:\Windows\Logs
2012-12-17 20:05:31 ----D---- C:\Windows\system32\Tasks
2012-12-17 19:57:09 ----D---- C:\Windows\Tasks
2012-12-16 19:30:57 ----RSD---- C:\Windows\assembly
2012-12-16 19:30:46 ----D---- C:\Windows\ShellNew
2012-12-16 19:29:45 ----RSD---- C:\Windows\Fonts
2012-12-16 17:37:50 ----D---- C:\Windows\rescache
2012-12-12 22:45:59 ----D---- C:\Windows\winsxs
2012-12-12 10:51:35 ----D---- C:\Windows\SYSWOW64\cs-CZ
2012-12-12 10:51:35 ----D---- C:\Windows\SysWOW64
2012-12-12 10:51:35 ----D---- C:\Windows\system32\cs-CZ
2012-12-12 10:31:16 ----D---- C:\Windows\SYSWOW64\migration
2012-12-12 10:31:16 ----D---- C:\Windows\system32\migration
2012-12-12 10:31:16 ----D---- C:\Windows\AppPatch
2012-12-12 10:31:16 ----D---- C:\Program Files (x86)\Internet Explorer
2012-12-12 10:31:15 ----D---- C:\Program Files\Internet Explorer
2012-12-12 10:26:38 ----D---- C:\Windows\system32\catroot
2012-12-12 10:26:37 ----D---- C:\Windows\system32\catroot2
2012-12-11 19:52:19 ----D---- C:\Program Files (x86)\Common Files
2012-12-11 19:51:48 ----D---- C:\Windows\system32\LogFiles
2012-12-11 16:07:38 ----D---- C:\Windows\Microsoft.NET
2012-12-10 21:19:11 ----SD---- C:\ProgramData\Microsoft
2012-12-10 21:19:09 ----D---- C:\Windows\system32\drivers\UMDF
2012-12-10 13:54:27 ----D---- C:\Windows\SYSWOW64\wbem
2012-12-10 13:54:27 ----D---- C:\Windows\SYSWOW64\en-US
2012-12-10 13:54:27 ----D---- C:\Windows\system32\wbem
2012-12-10 13:54:27 ----D---- C:\Windows\system32\en-US
2012-12-10 13:54:27 ----D---- C:\Windows\system32\drivers\en-US
2012-12-10 13:54:27 ----D---- C:\Windows\PolicyDefinitions
2012-12-10 13:54:26 ----D---- C:\Windows\system32\DriverStore
2012-12-10 13:38:48 ----D---- C:\Program Files\Windows Sidebar
2012-12-10 13:38:48 ----D---- C:\Program Files\Windows Portable Devices
2012-12-10 13:38:48 ----D---- C:\Program Files\Windows Mail
2012-12-10 13:38:48 ----D---- C:\Program Files\DVD Maker
2012-12-10 13:38:48 ----D---- C:\Program Files (x86)\Windows Sidebar
2012-12-10 13:38:48 ----D---- C:\Program Files (x86)\Windows Portable Devices
2012-12-10 13:38:48 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2012-12-10 13:38:48 ----D---- C:\Program Files (x86)\Windows Media Player
2012-12-10 13:38:48 ----D---- C:\Program Files (x86)\Windows Mail
2012-12-10 13:38:47 ----D---- C:\Windows\servicing
2012-12-10 13:38:47 ----D---- C:\Windows\ehome
2012-12-10 13:38:47 ----D---- C:\Program Files\Windows Photo Viewer
2012-12-10 13:38:47 ----D---- C:\Program Files\Windows Media Player
2012-12-10 13:38:47 ----D---- C:\Program Files\Windows Journal
2012-12-10 13:38:47 ----D---- C:\Program Files\Windows Defender
2012-12-10 13:38:47 ----D---- C:\Program Files\Common Files\System
2012-12-10 13:38:46 ----D---- C:\Windows\SYSWOW64\Setup
2012-12-10 13:38:46 ----D---- C:\Windows\SYSWOW64\oobe
2012-12-10 13:38:46 ----D---- C:\Windows\SYSWOW64\da-DK
2012-12-10 13:38:46 ----D---- C:\Windows\SYSWOW64\cs
2012-12-10 13:38:46 ----D---- C:\Windows\SYSWOW64\AdvancedInstallers
2012-12-10 13:38:44 ----D---- C:\Windows\SYSWOW64\sppui
2012-12-10 13:38:44 ----D---- C:\Windows\SYSWOW64\migwiz
2012-12-10 13:38:44 ----D---- C:\Windows\SYSWOW64\manifeststore
2012-12-10 13:38:44 ----D---- C:\Windows\SYSWOW64\es-ES
2012-12-10 13:38:44 ----D---- C:\Windows\SYSWOW64\Dism
2012-12-10 13:38:35 ----D---- C:\Windows\system32\Setup
2012-12-10 13:38:35 ----D---- C:\Windows\system32\oobe
2012-12-10 13:38:35 ----D---- C:\Windows\system32\da-DK
2012-12-10 13:38:35 ----D---- C:\Windows\system32\AdvancedInstallers
2012-12-10 13:38:34 ----D---- C:\Windows\system32\sppui
2012-12-10 13:38:34 ----D---- C:\Windows\system32\manifeststore
2012-12-10 13:38:34 ----D---- C:\Windows\system32\es-ES
2012-12-10 13:38:34 ----D---- C:\Windows\system32\drivers\cs-CZ
2012-12-10 13:38:34 ----D---- C:\Windows\system32\cs
2012-12-10 13:38:33 ----D---- C:\Windows\system32\migwiz
2012-12-10 13:38:33 ----D---- C:\Windows\system32\Dism
2012-12-10 13:38:17 ----D---- C:\Windows\system32\Boot
2012-12-10 13:38:08 ----D---- C:\Windows\system32\wdi
2012-12-10 13:33:58 ----A---- C:\Windows\SYSWOW64\msclmd.dll
2012-12-10 13:33:58 ----A---- C:\Windows\system32\msclmd.dll
2012-12-09 23:11:56 ----D---- C:\Windows\Downloaded Program Files
2012-12-09 23:02:56 ----D---- C:\Program Files\Common Files
2012-12-09 23:01:51 ----D---- C:\Program Files\Common Files\Microsoft Shared
2012-12-09 22:58:16 ----D---- C:\Windows\system32\CodeIntegrity
2012-12-09 22:50:55 ----D---- C:\Windows\system32\restore
2012-12-09 22:50:01 ----SHD---- C:\$Recycle.Bin
2012-12-09 22:49:53 ----RD---- C:\Users
2012-12-09 22:49:47 ----D---- C:\Program Files\Windows NT
2012-12-09 22:47:32 ----D---- C:\Windows\system32\sysprep

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 AtiPcie;AMD PCI Express (3GIO) Filter; C:\Windows\system32\DRIVERS\AtiPcie.sys [2009-05-05 16440]
R0 MpFilter;Microsoft Malware Protection Driver; C:\Windows\system32\DRIVERS\MpFilter.sys [2012-08-30 228768]
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2012-12-15 564824]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 AODDriver4.2;AODDriver4.2; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2012-04-09 57472]
R2 NisDrv;Microsoft Network Inspection System; C:\Windows\system32\DRIVERS\NisDrvWFP.sys [2012-08-30 128456]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2012-09-28 10697216]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2012-09-28 460288]
R3 athr;NDIS6 Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2009-09-21 1537024]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2012-05-14 96896]
R3 MBAMProtector;MBAMProtector; \??\C:\Windows\system32\drivers\mbam.sys [2012-09-29 25928]
R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver; C:\Windows\system32\DRIVERS\nusb3hub.sys [2010-11-19 80384]
R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver; C:\Windows\system32\DRIVERS\nusb3xhc.sys [2010-11-19 181248]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2009-03-01 187392]
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2009-12-22 38456]
R3 WinRing0_1_2_0;WinRing0_1_2_0; \??\C:\Program Files (x86)\Razer\Razer Game Booster\Driver\WinRing0x64.sys [2012-09-17 14544]
S3 agi0d5x7;agi0d5x7; C:\Windows\system32\drivers\agi0d5x7.sys []
S3 aswMBR;aswMBR; \??\C:\Users\FNj\AppData\Local\Temp\aswMBR.sys []
S3 PSI;PSI; C:\Windows\system32\DRIVERS\psi_mf.sys [2010-09-01 17976]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2012-08-23 57856]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdvancedSystemCareService6;Advanced SystemCare Service 6; C:\Program Files (x86)\IObit\Advanced SystemCare 6\ASCService.exe [2012-10-31 464256]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2012-09-28 239616]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2012-09-28 361984]
R2 MBAMService;MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2012-09-29 676936]
R2 MBAMScheduler;MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2012-09-29 399432]
R2 MsMpSvc;Microsoft Antimalware Service; C:\Program Files\Microsoft Security Client\MsMpEng.exe [2012-09-12 22072]
R2 PnkBstrA;PnkBstrA; C:\Windows\syswow64\PnkBstrA.exe [2012-12-11 75136]
R2 PnkBstrB;PnkBstrB; C:\Windows\syswow64\PnkBstrB.exe [2012-12-11 189248]
R2 StarWindServiceAE;StarWind AE Service; C:\Program Files (x86)\Alcohol Soft\Alcohol 52\StarWind\StarWindServiceAE.exe [2009-12-23 370688]
R3 NisSrv;@C:\Program Files\Microsoft Security Client\MpAsDesc.dll,-243; C:\Program Files\Microsoft Security Client\NisSrv.exe [2012-09-12 368896]
S2 AxAutoMntSrv;Alcohol Virtual Drive Auto-mount Service; C:\Program Files (x86)\Alcohol Soft\Alcohol 52\AxAutoMntSrv.exe [2012-01-05 75624]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-12-09 116648]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-12-09 116648]
S3 Secunia PSI Agent;Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [2012-11-26 1225312]
S3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2012-12-16 541168]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2012-12-10 1255736]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]

-----------------EOF-----------------

FNj
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 28 Črv 2008 13:51

Re: ISeekDeal.dll paranoia

#7 Příspěvek od FNj »

Zjistil jsem zdroj tý havěti: http://www.freenew.net/windows/iobit-un ... /68873.htm Našel jsem to podle podpisu souboru - bylo to od stejnýho autora, co ten .dll soubor.

Ono to nejdřív potahalo nějakou stahovací miniaplikaci, a ta to celý způsobila(stáhla jak požadovanou aplikaci, tak nějakou tu havěť navíc). Možná kdyby někdo zjistil, co to přesně dělá, tak by se s tou havětí dalo bez problémů zatočit.

Pozn.: Ne, nebyl jsem vůl a nezaškrtával jsem, že tu kravinu chci nainstalovat.

Avatar uživatele
JaRon
Moderátor
Moderátor
Příspěvky: 15924
Registrován: 29 Bře 2005 13:39
Místo/Bydliště: BB-SK

Re: ISeekDeal.dll paranoia

#8 Příspěvek od JaRon »

najprv vycisti PC s CCleanerom a potom zvysky skus vycistit cez regedit >> klucove slovo pre vyhladavanie = IObit
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

FNj
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 28 Črv 2008 13:51

Re: ISeekDeal.dll paranoia

#9 Příspěvek od FNj »

Registr jsem promazal. Pomocí OTL jsem prohledal i filesystem:

OTL logfile created on: 19.12.2012 16:41:45 - Run 4
OTL by OldTimer - Version 3.2.69.0 Folder = D:\Cool\Install
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

4,00 Gb Total Physical Memory | 2,17 Gb Available Physical Memory | 54,28% Memory free
7,99 Gb Paging File | 5,93 Gb Available in Paging File | 74,13% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 195,21 Gb Total Space | 159,43 Gb Free Space | 81,67% Space Free | Partition Type: NTFS
Drive D: | 736,20 Gb Total Space | 192,86 Gb Free Space | 26,20% Space Free | Partition Type: NTFS

Computer Name: FNJ-DENEB | User Name: FNj | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days

========== Custom Scans ==========

< c:\|iobit;true;true;true /FP >
[2012.12.18 22:27:06 | 000,000,000 | ---D | M] -- c:\Program Files (x86)\IObit
[2012.12.17 19:43:05 | 000,000,000 | ---D | M] -- c:\ProgramData\IObit
[2012.12.17 19:52:54 | 000,000,000 | ---D | M] -- c:\ProgramData\IObit\Advanced SystemCare V6
[2012.12.17 19:43:05 | 000,000,000 | ---D | M] -- c:\Users\All Users\IObit
[2012.12.17 19:52:54 | 000,000,000 | ---D | M] -- c:\Users\All Users\IObit\Advanced SystemCare V6
[2012.12.17 20:02:05 | 000,819,200 | ---- | M] () -- c:\Users\FNj\NTUSER.DAT.iobit
[2012.12.17 20:02:05 | 001,142,784 | ---- | M] () -- c:\Users\FNj\AppData\Local\Microsoft\Windows\UsrClass.dat.iobit
[2012.12.17 19:49:51 | 000,000,000 | ---D | M] -- c:\Users\FNj\AppData\LocalLow\IObit
[2012.12.17 19:49:51 | 000,000,000 | ---D | M] -- c:\Users\FNj\AppData\LocalLow\IObit\Advanced SystemCare V6
[2012.12.17 19:42:29 | 000,000,000 | ---D | M] -- c:\Users\FNj\AppData\Roaming\IObit
[2012.12.17 20:01:20 | 000,000,000 | ---D | M] -- c:\Users\FNj\AppData\Roaming\IObit\Advanced SystemCare V6
[2012.12.17 19:34:46 | 000,000,000 | ---D | M] -- c:\Users\FNj\AppData\Roaming\IObit\IObit Uninstaller
[2012.12.17 19:27:40 | 000,000,000 | ---D | M] -- c:\Users\FNj\AppData\Roaming\IObit\IObit Uninstaller\Language
[2012.12.17 19:34:46 | 000,000,000 | ---D | M] -- c:\Users\FNj\AppData\Roaming\IObit\IObit Uninstaller\Log
[2012.12.17 19:28:19 | 000,040,124 | ---- | M] () -- c:\Windows\Prefetch\FREENEWDOWNLOADER_FOR_IOBIT_U-D260C00B.pf
[2012.12.17 19:32:54 | 000,074,924 | ---- | M] () -- c:\Windows\Prefetch\IOBIT UNINSTALLER.EXE-13775B1C.pf
[2012.12.17 19:32:12 | 000,116,020 | ---- | M] () -- c:\Windows\Prefetch\IOBIT-UNINSTALLER.EXE-C78245A1.pf
[2012.12.17 20:02:05 | 000,245,760 | ---- | M] () -- c:\Windows\ServiceProfiles\LocalService\NTUSER.DAT.iobit
[2012.12.17 20:02:04 | 000,253,952 | ---- | M] () -- c:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT.iobit
[2012.12.18 12:48:28 | 000,000,000 | ---D | M] -- C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\IObit
[2012.12.18 12:52:15 | 000,000,000 | ---D | M] -- C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\IObit\Advanced SystemCare V6

< c:\|iseekdeal;true;true;true /FP >

< d:\|iobit;true;true;true /FP >

< d:\|iseekdeal;true;true;true /FP >

< End of report >

Mám/můžu to všechno vymazat?

FNj
Návštěvník
Návštěvník
Příspěvky: 12
Registrován: 28 Črv 2008 13:51

Re: ISeekDeal.dll paranoia

#10 Příspěvek od FNj »

FNj napsal:Registr jsem promazal. Pomocí OTL jsem prohledal i filesystem:

OTL logfile created on: 19.12.2012 16:41:45 - Run 4
OTL by OldTimer - Version 3.2.69.0 Folder = D:\Cool\Install
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000405 | Country: Česká republika | Language: CSY | Date Format: d.M.yyyy

4,00 Gb Total Physical Memory | 2,17 Gb Available Physical Memory | 54,28% Memory free
7,99 Gb Paging File | 5,93 Gb Available in Paging File | 74,13% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 195,21 Gb Total Space | 159,43 Gb Free Space | 81,67% Space Free | Partition Type: NTFS
Drive D: | 736,20 Gb Total Space | 192,86 Gb Free Space | 26,20% Space Free | Partition Type: NTFS

Computer Name: FNJ-DENEB | User Name: FNj | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days

========== Custom Scans ==========

< c:\|iobit;true;true;true /FP >
[2012.12.18 22:27:06 | 000,000,000 | ---D | M] -- c:\Program Files (x86)\IObit
[2012.12.17 19:43:05 | 000,000,000 | ---D | M] -- c:\ProgramData\IObit
[2012.12.17 19:52:54 | 000,000,000 | ---D | M] -- c:\ProgramData\IObit\Advanced SystemCare V6
[2012.12.17 19:43:05 | 000,000,000 | ---D | M] -- c:\Users\All Users\IObit
[2012.12.17 19:52:54 | 000,000,000 | ---D | M] -- c:\Users\All Users\IObit\Advanced SystemCare V6
[2012.12.17 20:02:05 | 000,819,200 | ---- | M] () -- c:\Users\FNj\NTUSER.DAT.iobit
[2012.12.17 20:02:05 | 001,142,784 | ---- | M] () -- c:\Users\FNj\AppData\Local\Microsoft\Windows\UsrClass.dat.iobit
[2012.12.17 19:49:51 | 000,000,000 | ---D | M] -- c:\Users\FNj\AppData\LocalLow\IObit
[2012.12.17 19:49:51 | 000,000,000 | ---D | M] -- c:\Users\FNj\AppData\LocalLow\IObit\Advanced SystemCare V6
[2012.12.17 19:42:29 | 000,000,000 | ---D | M] -- c:\Users\FNj\AppData\Roaming\IObit
[2012.12.17 20:01:20 | 000,000,000 | ---D | M] -- c:\Users\FNj\AppData\Roaming\IObit\Advanced SystemCare V6
[2012.12.17 19:34:46 | 000,000,000 | ---D | M] -- c:\Users\FNj\AppData\Roaming\IObit\IObit Uninstaller
[2012.12.17 19:27:40 | 000,000,000 | ---D | M] -- c:\Users\FNj\AppData\Roaming\IObit\IObit Uninstaller\Language
[2012.12.17 19:34:46 | 000,000,000 | ---D | M] -- c:\Users\FNj\AppData\Roaming\IObit\IObit Uninstaller\Log
[2012.12.17 19:28:19 | 000,040,124 | ---- | M] () -- c:\Windows\Prefetch\FREENEWDOWNLOADER_FOR_IOBIT_U-D260C00B.pf
[2012.12.17 19:32:54 | 000,074,924 | ---- | M] () -- c:\Windows\Prefetch\IOBIT UNINSTALLER.EXE-13775B1C.pf
[2012.12.17 19:32:12 | 000,116,020 | ---- | M] () -- c:\Windows\Prefetch\IOBIT-UNINSTALLER.EXE-C78245A1.pf
[2012.12.17 20:02:05 | 000,245,760 | ---- | M] () -- c:\Windows\ServiceProfiles\LocalService\NTUSER.DAT.iobit
[2012.12.17 20:02:04 | 000,253,952 | ---- | M] () -- c:\Windows\ServiceProfiles\NetworkService\NTUSER.DAT.iobit
[2012.12.18 12:48:28 | 000,000,000 | ---D | M] -- C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\IObit
[2012.12.18 12:52:15 | 000,000,000 | ---D | M] -- C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\IObit\Advanced SystemCare V6

< c:\|iseekdeal;true;true;true /FP >

< d:\|iobit;true;true;true /FP >

< d:\|iseekdeal;true;true;true /FP >

< End of report >

Mám/můžu to všechno vymazat?
Jako bych se neptal - všechno jsou to s***ky.

Avatar uživatele
JaRon
Moderátor
Moderátor
Příspěvky: 15924
Registrován: 29 Bře 2005 13:39
Místo/Bydliště: BB-SK

Re: ISeekDeal.dll paranoia

#11 Příspěvek od JaRon »

hlavne ZMAZ adresare:
[2012.12.18 22:27:06 | 000,000,000 | ---D | M] -- c:\Program Files (x86)\IObit
[2012.12.17 19:43:05 | 000,000,000 | ---D | M] -- c:\ProgramData\IObit
[2012.12.17 19:52:54 | 000,000,000 | ---D | M] -- c:\ProgramData\IObit\Advanced SystemCare V6
[2012.12.17 19:43:05 | 000,000,000 | ---D | M] -- c:\Users\All Users\IObit
[2012.12.17 19:52:54 | 000,000,000 | ---D | M] -- c:\Users\All Users\IObit\Advanced SystemCare V6

,,, a najblizsich 5 rokov tam uz nic od IObit nedavaj :!: :D
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Zamčeno