
DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 10.0.9200.16521 BrowserJavaVersion: 10.17.2
Run by wazzir at 18:15:30 on 2013-03-27
Microsoft Windows 7 Ultimate 6.1.7601.1.1250.420.1029.18.2975.835 [GMT 1:00]
.
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ================
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\Program Files\AVAST Software\Avast\afwServ.exe
C:\Windows\System32\spoolsv.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files\Realtek\Audio\HDA\AERTSrv.exe
C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
C:\Windows\system32\taskhost.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
C:\Windows\system32\PnkBstrA.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files\Realtek\Audio\HDA\RtkNGUI.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Users\wazzir\AppData\Local\Facebook\Update\FacebookUpdate.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\System Explorer\SystemExplorer.exe
C:\Users\wazzir\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe
C:\Program Files\System Explorer\service\SystemExplorerService.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\DllHost.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_6_602_180.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_6_602_180.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Program Files\Realtek\Realtek USB 2.0 Card Reader\RIconMan.exe
C:\Windows\system32\wuauclt.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\wbem\WmiPrvSE.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
.
============== Pseudo HJT Report ===============
.
uStart Page = about:blank
uSearch Page = hxxp://www.google.com
mSearch Page = hxxp://www.google.com
mDefault_Search_URL = hxxp://www.google.com
mSearchAssistant = hxxp://www.google.com/ie
BHO: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - c:\program files\avast software\avast\aswWebRepIE.dll
TB: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - c:\program files\avast software\avast\aswWebRepIE.dll
uRun: [Facebook Update] "c:\users\wazzir\appdata\local\facebook\update\FacebookUpdate.exe" /c /nocrashserver
uRun: [Skype] "c:\program files\skype\phone\Skype.exe" /minimized /regrun
uRun: [DAEMON Tools Lite] "c:\program files\daemon tools lite\DTLite.exe" -autorun
uRun: [SystemExplorerAutoStart] "c:\program files\system explorer\SystemExplorer.exe" /TRAY
mRun: [RTHDVCPL] c:\program files\realtek\audio\hda\RtkNGUI.exe -s
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [avast] "c:\program files\avast software\avast\avastUI.exe" /nogui
mRun: [AdobeAAMUpdater-1.0] "c:\program files\common files\adobe\oobe\pdapp\uwa\UpdaterStartupUtility.exe"
StartupFolder: c:\users\wazzir\appdata\roaming\micros~1\windows\startm~1\programs\startup\facebo~1.lnk - c:\users\wazzir\appdata\local\facebook\messenger\2.1.4814.0\FacebookMessenger.exe
uPolicies-Explorer: NoDriveTypeAutoRun = dword:221
uPolicies-Explorer: NoResolveTrack = dword:1
mPolicies-Explorer: NoDriveTypeAutoRun = dword:153
mPolicies-Explorer: MemCheckBoxInRunDlg = dword:1
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableLUA = dword:0
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: E&xport to Microsoft Excel - c:\progra~1\mif5ba~1\office14\EXCEL.EXE/3000
IE: E&xportovat do aplikace Microsoft Excel - c:\progra~1\mif5ba~1\office12\EXCEL.EXE/3000
.
INFO: HKCU has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
.
INFO: HKLM has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
TCP: Interfaces\{8429620B-D013-41B1-93BB-4086B7872A6D} : DHCPNameServer = 10.0.0.138
TCP: Interfaces\{8429620B-D013-41B1-93BB-4086B7872A6D}\3484144514D49425 : DHCPNameServer = 192.168.1.1
TCP: Interfaces\{8429620B-D013-41B1-93BB-4086B7872A6D}\7697D6465787 : DHCPNameServer = 192.168.1.250
TCP: Interfaces\{8429620B-D013-41B1-93BB-4086B7872A6D}\B657C647572716 : DHCPNameServer = 192.168.1.1
Handler: AutorunsDisabled - <Clsid value has no data>
Handler: belarc - {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - c:\program files\belarc\advisor\system\BAVoilaX.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll
Notify: igfxcui - igfxdev.dll
AppInit_DLLs=
SSODL: WebCheck - <orphaned>
SEH: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - <orphaned>
LSA: Notification Packages = scecli c:\program files\widcomm\bluetooth software\BtwProximityCP.dll
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "c:\program files\google\chrome\application\25.0.1364.172\installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\wazzir\appdata\roaming\mozilla\firefox\profiles\l8y45beo.default-1357922519814\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.cz/ig
FF - prefs.js: network.proxy.type - 0
FF - plugin: c:\program files\adobe\reader 10.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\google\update\1.3.21.135\npGoogleUpdate3.dll
FF - plugin: c:\program files\java\jre7\bin\plugin2\npjp2.dll
FF - plugin: c:\program files\microsoft silverlight\5.1.20125.0\npctrlui.dll
FF - plugin: c:\program files\windows live\photo gallery\NPWLPG.dll
FF - plugin: c:\users\wazzir\appdata\local\facebook\messenger\2.1.4814.0\npFbDesktopPlugin.dll
FF - plugin: c:\users\wazzir\appdata\locallow\unity\webplayer\loader\npUnity3D32.dll
FF - plugin: c:\windows\system32\adobe\director\np32dsw_1200112.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_6_602_180.dll
FF - plugin: c:\windows\system32\npDeployJava1.dll
FF - plugin: c:\windows\system32\npmproxy.dll
FF - ExtSQL: 2013-02-23 16:44; {46551EC9-40F0-4e47-8E18-8E5CF550CFB8}; c:\users\wazzir\appdata\roaming\mozilla\firefox\profiles\l8y45beo.default-1357922519814\extensions\{46551EC9-40F0-4e47-8E18-8E5CF550CFB8}.xpi
FF - ExtSQL: 2013-03-08 20:00; firefox@mega.co.nz; c:\users\wazzir\appdata\roaming\mozilla\firefox\profiles\l8y45beo.default-1357922519814\extensions\firefox@mega.co.nz.xpi
FF - ExtSQL: 2013-03-23 18:46; wrc@avast.com; c:\program files\avast software\avast\webrep\FF
FF - ExtSQL: 2013-03-25 07:26; bartap@philikon.de; c:\users\wazzir\appdata\roaming\mozilla\firefox\profiles\l8y45beo.default-1357922519814\extensions\bartap@philikon.de.xpi
.
============= SERVICES / DRIVERS ===============
.
R0 aswNdis;avast! Firewall NDIS Filter Service;c:\windows\system32\drivers\aswNdis.sys [2013-3-24 12112]
R0 aswNdis2;avast! Firewall Core Firewall Service;c:\windows\system32\drivers\aswNdis2.sys [2013-3-24 199384]
R0 aswRvrt;aswRvrt;c:\windows\system32\drivers\aswRvrt.sys [2013-3-23 49248]
R0 iaStorA;iaStorA;c:\windows\system32\drivers\iaStorA.sys [2012-9-11 530752]
R0 iaStorF;iaStorF;c:\windows\system32\drivers\iaStorF.sys [2012-9-11 24896]
R0 sfdrv01a;StarForce Protection Environment Driver (version 1.x.a);c:\windows\system32\drivers\sfdrv01a.sys [2009-2-3 63096]
R1 aswFW;avast! TDI Firewall Driver;c:\windows\system32\drivers\aswFW.sys [2013-3-24 101656]
R1 aswKbd;aswKbd;c:\windows\system32\drivers\aswKbd.sys [2013-3-24 21576]
R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [2013-3-23 765736]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2013-3-23 368176]
R1 VD_FileDisk;VD_FileDisk;c:\windows\system32\drivers\vd_filedisk.sys [2011-1-26 24680]
R2 AERTFilters;Andrea RT Filters Service;c:\program files\realtek\audio\hda\AERTSrv.exe [2012-6-23 87968]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2013-3-23 29816]
R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2013-3-23 66336]
R2 avast! Antivirus;avast! Antivirus;c:\program files\avast software\avast\AvastSvc.exe [2013-3-23 45248]
R2 avast! Firewall;avast! Firewall;c:\program files\avast software\avast\afwServ.exe [2013-3-24 136912]
R2 HPWMISVC;HPWMISVC;c:\program files\hewlett-packard\hp quick launch\HPWMISVC.exe [2010-1-18 17920]
R2 IconMan_R;IconMan_R;c:\program files\realtek\realtek usb 2.0 card reader\RIconMan.exe [2012-12-4 1828496]
R2 MBAMService;MBAMService;c:\program files\malwarebytes' anti-malware\mbamservice.exe [2012-9-11 682344]
R2 MBAMScheduler;MBAMScheduler;c:\program files\malwarebytes' anti-malware\mbamscheduler.exe [2012-9-11 398184]
R3 IntcHdmiAddService;Intel(R) High Definition Audio HDMI;c:\windows\system32\drivers\IntcHdmi.sys [2010-3-15 127488]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2012-6-23 21104]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\system32\drivers\RtsUStor.sys [2012-12-4 190976]
R3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\drivers\Rt86win7.sys [2012-12-4 585872]
R3 rtl8192se;Realtek Wireless LAN 802.11n PCI-E NIC NT Driver;c:\windows\system32\drivers\rtl8192se.sys [2011-9-8 1117800]
R3 tap0901t;TAP-Win32 Adapter V9 (Tunngle);c:\windows\system32\drivers\tap0901t.sys [2012-8-31 27136]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S3 androidusb;SAMSUNG Android Composite ADB Interface Driver;c:\windows\system32\drivers\ssadadb.sys [2012-6-27 30312]
S3 aswVmm;aswVmm;c:\windows\system32\drivers\aswVmm.sys [2013-3-23 164736]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-13 229888]
S3 btwampfl;btwampfl Bluetooth filter driver;c:\windows\system32\drivers\btwampfl.sys [2012-10-18 504360]
S3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\drivers\btwl2cap.sys [2012-10-18 33832]
S3 Com4QLBEx;Com4QLBEx;c:\program files\hewlett-packard\hp quick launch buttons\Com4QLBEx.exe [2012-6-23 227896]
S3 pneteth;PdaNet Broadband;c:\windows\system32\drivers\pneteth.sys [2012-12-31 13440]
S3 pwdrvio;pwdrvio;c:\windows\system32\pwdrvio.sys [2013-1-1 15576]
S3 pwdspio;pwdspio;c:\windows\system32\pwdspio.sys [2013-1-1 10200]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2012-11-27 14848]
S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM);c:\windows\system32\drivers\ssadbus.sys [2012-6-27 121064]
S3 ssadmdfl;SAMSUNG Android USB Modem (Filter);c:\windows\system32\drivers\ssadmdfl.sys [2012-6-27 12776]
S3 ssadmdm;SAMSUNG Android USB Modem Drivers;c:\windows\system32\drivers\ssadmdm.sys [2012-6-27 136808]
S3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM);c:\windows\system32\drivers\ssadserd.sys [2012-6-27 114280]
S3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\TsUsbFlt.sys [2012-11-27 49664]
S3 WinRing0_1_2_0;WinRing0_1_2_0;c:\program files\razer\razer game booster\driver\WinRing0.sys [2012-11-13 14416]
S4 DAUpdaterSvc;Dragon Age: Prameny - aktualizace obsahu;d:\program files\dragon age\bin_ship\daupdatersvc.service.exe [2009-12-15 25832]
S4 HPDrvMntSvc.exe;HP Quick Synchronization Service;c:\program files\hewlett-packard\shared\HPDrvMntSvc.exe [2011-3-28 94264]
S4 IAStorDataMgrSvc;Úložná technologie Intel® Rapid;c:\program files\intel\intel(r) rapid storage technology\IAStorDataMgrSvc.exe [2012-9-21 7168]
.
=============== Created Last 30 ================
.
2013-03-27 15:49:42 7108640 ----a-w- c:\programdata\microsoft\windows defender\definition updates\{80c2905e-923b-4374-b610-d34aaf08a238}\mpengine.dll
2013-03-25 17:08:33 -------- d-----w- c:\windows\system32\catroot2
2013-03-25 16:49:25 1536 ----a-w- c:\windows\system32\wbem\WMIObjectsMigration.bin
2013-03-25 16:45:02 -------- d-----w- C:\RegBackup
2013-03-25 16:35:45 -------- d-----w- c:\program files\Tweaking.com
2013-03-25 16:34:55 -------- d-----w- C:\Tweaking.com_Windows_Repair_Logs
2013-03-25 15:03:29 22288 ----a-w- c:\windows\system32\temp.004
2013-03-25 15:03:27 492304 ----a-w- c:\windows\system32\temp.001
2013-03-25 15:03:27 16896 ----a-w- c:\windows\system32\temp.003
2013-03-25 15:03:27 1347344 ----a-w- c:\windows\system32\MSVBVM50.DLL
2013-03-25 15:03:27 118544 ----a-w- c:\windows\system32\temp.000
2013-03-25 15:03:27 114960 ----a-w- c:\windows\system32\temp.002
2013-03-25 15:03:27 109056 ----a-w- c:\windows\system32\UNINSTAL.EXE
2013-03-25 15:03:27 -------- d-----w- c:\windows\system32\BACKUP
2013-03-25 15:03:09 935632 ----a-w- c:\windows\system32\Vb40016.dll
2013-03-25 15:03:09 722192 ----a-w- c:\windows\system32\Vb40032.dll
2013-03-25 15:02:58 935632 ----a-w- c:\windows\system\Vb40016.dll
2013-03-25 15:02:58 722192 ----a-w- c:\windows\system\Vb40032.dll
2013-03-24 15:55:04 -------- d-----w- c:\users\wazzir\appdata\roaming\Unity
2013-03-24 14:22:08 -------- d-----w- c:\users\wazzir\appdata\local\Unity
2013-03-24 12:13:42 199384 ----a-w- c:\windows\system32\drivers\aswNdis2.sys
2013-03-24 12:13:41 101656 ----a-w- c:\windows\system32\drivers\aswFW.sys
2013-03-24 12:13:40 21576 ----a-w- c:\windows\system32\drivers\aswKbd.sys
2013-03-24 12:13:29 12112 ----a-w- c:\windows\system32\drivers\aswNdis.sys
2013-03-23 20:50:37 -------- d-----w- c:\programdata\SystemExplorer
2013-03-23 20:50:33 -------- d-----w- c:\program files\System Explorer
2013-03-23 20:24:53 -------- d-----w- c:\users\wazzir\appdata\local\GHISLER
2013-03-23 20:24:38 305152 ----a-w- c:\windows\IsUninst.exe
2013-03-23 17:47:15 -------- d-----w- c:\users\wazzir\appdata\local\Google
2013-03-23 17:47:05 60656 ----a-w- c:\windows\system32\drivers\aswRdr2.sys
2013-03-23 17:47:01 765736 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2013-03-23 17:46:59 164736 ----a-w- c:\windows\system32\drivers\aswVmm.sys
2013-03-23 17:46:58 49248 ----a-w- c:\windows\system32\drivers\aswRvrt.sys
2013-03-23 17:46:56 66336 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2013-03-23 17:46:44 41664 ----a-w- c:\windows\avastSS.scr
2013-03-23 17:46:29 -------- d-----w- c:\program files\AVAST Software
2013-03-23 17:43:47 343456 ----a-w- c:\windows\system32\drivers\trufos.sys
2013-03-23 17:43:41 632064 ----a-w- c:\windows\system32\msvcr80.dll
2013-03-23 17:43:40 554240 ----a-w- c:\windows\system32\msvcp80.dll
2013-03-23 17:43:39 572928 ----a-w- c:\windows\system32\msvcp90.dll
2013-03-23 17:43:38 655872 ----a-w- c:\windows\system32\msvcr90.dll
2013-03-23 17:43:37 34048 ----a-w- c:\windows\system32\eEmpty.exe
2013-03-23 17:43:31 -------- d-----w- c:\program files\common files\MicroWorld
2013-03-23 17:43:18 -------- d-----w- c:\programdata\MicroWorld
2013-03-23 15:14:54 -------- d-----w- c:\program files\ESET
2013-03-23 13:46:58 229224 ----a-w- c:\windows\system32\drivers\VMM.sys
2013-03-23 13:35:34 -------- d-----w- c:\program files\Microsoft Virtual PC
2013-03-21 16:40:27 468056 ----a-w- C:\procdump.exe
2013-03-21 16:34:33 2820744 ----a-w- C:\SysInspector.exe
2013-03-21 16:34:19 -------- d-----w- c:\program files\Belarc
2013-03-19 12:12:27 72781824 ----a-w- C:\ess_nt32_csy.msi
2013-03-16 18:07:51 -------- d-----w- c:\programdata\SoftSafe
2013-03-16 18:06:01 -------- d-----w- c:\programdata\InstallMate
2013-03-15 02:03:38 -------- d-sh--w- c:\windows\system32\%APPDATA%
2013-03-13 05:15:40 15872 ----a-w- c:\windows\system32\drivers\usb8023.sys
2013-03-13 05:15:39 15872 ----a-w- c:\windows\system32\drivers\usb8023x.sys
2013-03-08 05:48:39 693976 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-03-06 15:21:26 94112 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
2013-03-04 13:11:36 -------- d-----w- C:\ESET
2013-03-01 20:09:19 -------- d-----w- c:\programdata\AVAST Software
2013-02-28 08:33:20 512 ----a-w- C:\PhysicalMBR.bin
2013-02-27 22:02:36 53966 ----a-w- c:\windows\system32\epfwdata.bin
2013-02-26 11:45:22 -------- d-----w- c:\programdata\[Manufacturer]
2013-02-26 11:44:19 -------- d-----w- c:\users\wazzir\appdata\roaming\4GF.CZ
2013-02-26 10:22:24 -------- d-----w- c:\program files\trend micro
2013-02-26 08:15:44 -------- d-sh--w- C:\$RECYCLE.BIN
.
==================== Find3M ====================
.
2013-03-23 12:41:59 139832 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2013-03-23 12:41:36 281768 ----a-w- c:\windows\system32\PnkBstrB.xtr
2013-03-23 12:41:36 281768 ----a-w- c:\windows\system32\PnkBstrB.exe
2013-03-20 18:09:59 281768 ----a-w- c:\windows\system32\PnkBstrB.ex0
2013-03-13 18:30:33 73432 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-03-06 15:21:17 861088 ----a-w- c:\windows\system32\npDeployJava1.dll
2013-03-06 15:21:17 782240 ----a-w- c:\windows\system32\deployJava1.dll
2013-02-23 21:49:23 44544 ----a-w- c:\windows\system32\Gif89.dll
2013-02-13 00:26:34 42880 ----a-w- c:\windows\system32\xfcodec.dll
2013-02-12 04:48:31 474112 ----a-w- c:\windows\apppatch\AcSpecfc.dll
2013-02-12 04:48:26 2176512 ----a-w- c:\windows\apppatch\AcGenral.dll
2013-01-17 00:28:58 232336 ------w- c:\windows\system32\MpSigStub.exe
2013-01-13 21:17:03 9728 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-01-13 21:17:02 2560 ---ha-w- c:\windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-01-13 21:16:42 10752 ---ha-w- c:\windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-01-13 21:12:46 3584 ---ha-w- c:\windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-01-13 21:11:21 4096 ---ha-w- c:\windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-01-13 21:11:08 5632 ---ha-w- c:\windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-01-13 21:11:07 5632 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-01-13 21:11:07 3072 ---ha-w- c:\windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-01-13 21:11:07 3072 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-01-13 20:31:00 1247744 ----a-w- c:\windows\system32\DWrite.dll
2013-01-13 20:30:34 906240 ----a-w- c:\windows\system32\FntCache.dll
2013-01-13 20:22:22 1988096 ----a-w- c:\windows\system32\d3d10warp.dll
2013-01-13 20:20:31 293376 ----a-w- c:\windows\system32\dxgi.dll
2013-01-13 20:09:00 249856 ----a-w- c:\windows\system32\d3d10_1core.dll
2013-01-13 20:08:43 220160 ----a-w- c:\windows\system32\d3d10core.dll
2013-01-13 20:08:35 1504768 ----a-w- c:\windows\system32\d3d11.dll
2013-01-13 19:54:01 604160 ----a-w- c:\windows\system32\d3d10level9.dll
2013-01-13 19:53:58 207872 ----a-w- c:\windows\system32\WindowsCodecsExt.dll
2013-01-13 19:53:14 187392 ----a-w- c:\windows\system32\UIAnimation.dll
2013-01-13 19:48:47 161792 ----a-w- c:\windows\system32\d3d10_1.dll
2013-01-13 19:46:25 1080832 ----a-w- c:\windows\system32\d3d10.dll
2013-01-13 19:43:21 1230336 ----a-w- c:\windows\system32\WindowsCodecs.dll
2013-01-13 19:37:57 3419136 ----a-w- c:\windows\system32\d2d1.dll
2013-01-13 19:02:06 417792 ----a-w- c:\windows\system32\WMPhoto.dll
2013-01-13 18:34:58 364544 ----a-w- c:\windows\system32\XpsGdiConverter.dll
2013-01-13 17:26:42 1158144 ----a-w- c:\windows\system32\XpsPrint.dll
2013-01-11 16:11:56 107888 ----a-w- c:\windows\system32\CmdLineExt.dll
2013-01-11 16:10:05 22328 ----a-w- c:\users\wazzir\appdata\roaming\PnkBstrK.sys
2013-01-11 16:09:27 2250024 ----a-w- c:\windows\system32\pbsvc.exe
2013-01-10 08:25:20 46056 ----a-w- c:\windows\system32\drivers\EpfwLWF.sys
2013-01-05 05:00:15 3967848 ----a-w- c:\windows\system32\ntkrnlpa.exe
2013-01-05 05:00:11 3913064 ----a-w- c:\windows\system32\ntoskrnl.exe
2013-01-04 06:11:21 2284544 ----a-w- c:\windows\system32\msmpeg2vdec.dll
2013-01-04 04:50:52 169984 ----a-w- c:\windows\system32\winsrv.dll
2013-01-04 03:00:29 2347008 ----a-w- c:\windows\system32\win32k.sys
2013-01-03 05:05:20 1293672 ----a-w- c:\windows\system32\drivers\tcpip.sys
2013-01-03 05:04:43 187752 ----a-w- c:\windows\system32\drivers\FWPKCLNT.SYS
2012-12-29 20:59:38 24184 ----a-w- c:\windows\system32\speedfan.sys
.
============= FINISH: 18:17:28,81 ===============