Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Dropbox nahrává virus win32:evo-gen

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
martin_f
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 31 črc 2013 07:12

Dropbox nahrává virus win32:evo-gen

#1 Příspěvek od martin_f »

Mám problém s tím, že dropbox mi zkouší nakopírovat do PC jakýsi soubor, který avast vyhodnocuje jako vir. Vir přesune do truhly, ale jelikož dropbox není spokojen, tak ho snaží nahrát znovu a znovu ... a znovu ... až do doby, než vypnu synchronizaci.

log z rsit

Logfile of random's system information tool 1.09 (written by random/random)
Run by Martin at 2013-07-30 13:33:43
Microsoft Windows 7 Ultimate Service Pack 1
System drive C: has 23 GB (47%) free of 50 GB
Total RAM: 1790 MB (30% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 13:34:00, on 30.7.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16635)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\TeamViewer\Version8\TeamViewer.exe
C:\Program Files (x86)\MyPhoneExplorer\MyPhoneExplorer.exe
C:\Program Files (x86)\TechSmith\Snagit 9\Snagit32.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Citrix\ICA Client\concentr.exe
C:\Users\Martin\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files (x86)\DynamicUSBTool\DynamicUSB.exe
C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe
C:\Program Files (x86)\TechSmith\Snagit 9\TSCHelp.exe
C:\Program Files (x86)\TechSmith\Snagit 9\SnagPriv.exe
C:\Program Files (x86)\MyPhoneExplorer\DLL\adb.exe
C:\Program Files (x86)\TechSmith\Snagit 9\snagiteditor.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\visionapp OneTimePass\vOTP.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe
D:\ČP\Program\Česká pojišťovna.exe
C:\PROGRA~2\Citrix\ICACLI~1\WFICA32.EXE
C:\Program Files\totalcmd\TOTALCMD.EXE
C:\Program Files\trend micro\Martin.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://extranet.cpas.cz/CookieAuth.dll ... &formdir=3
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: SnagIt Toolbar Loader - {00C6482D-C502-44C8-8409-FCE54AD9C208} - C:\Program Files (x86)\TechSmith\Snagit 9\SnagitBHO.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: Snagit - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - C:\Program Files (x86)\TechSmith\Snagit 9\SnagitIEAddin.dll
O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKLM\..\Run: [ConnectionCenter] "C:\Program Files (x86)\Citrix\ICA Client\concentr.exe" /startup
O4 - HKLM\..\Run: [DynamicUSB] "C:\Program Files (x86)\DynamicUSBTool\DynamicUSB.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [MyPhoneExplorer] "C:\Program Files (x86)\MyPhoneExplorer\MyPhoneExplorer.exe" autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Dropbox.lnk = Martin\AppData\Roaming\Dropbox\bin\Dropbox.exe
O4 - Global Startup: Snagit 9.lnk = C:\Program Files (x86)\TechSmith\Snagit 9\Snagit32.exe
O4 - Global Startup: SRS Premium Sound.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~2\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Filter: application/x-ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter hijack: ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O20 - AppInit_DLLs: ,C:\PROGRA~2\Citrix\ICACLI~1\RSHook.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: avast! Firewall - AVAST Software - C:\Program Files\AVAST Software\Avast\afwServ.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: TeamViewer 8 (TeamViewer8) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 11943 bytes

======Listing Processes======

\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
atieclxx
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\atibtmon.exe Global\Ati_VariBrightMonitorEvent
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
"C:\Program Files\AVAST Software\Avast\afwServ.exe"
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe"
"taskhost.exe"
taskeng.exe {0D035FB2-F439-467A-A34A-A75A4731DE30}
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
"C:\Program Files (x86)\TeamViewer\Version8\TeamViewer.exe"
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\TeamViewer\Version8\tv_w32.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\Version8\TeamViewer8_Logfile.log
"C:\Program Files (x86)\TeamViewer\Version8\tv_x64.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\Version8\TeamViewer8_Logfile.log
ATKOSD.exe
WDC.exe
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files (x86)\MyPhoneExplorer\MyPhoneExplorer.exe" autorun
"C:\Program Files (x86)\TechSmith\Snagit 9\Snagit32.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files\SRS Labs\SRS Premium Sound Control Panel\SRSPremiumPanel_64.exe" /f=srs_premium_sound_nopreset.zip /h
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\Citrix\ICA Client\concentr.exe" /startup
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Users\Martin\AppData\Roaming\Dropbox\bin\Dropbox.exe" /systemstartup
"C:\Program Files (x86)\DynamicUSBTool\DynamicUSB.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Citrix\ICA Client\wfcrun32.exe" -Embedding
"C:\Program Files (x86)\TechSmith\Snagit 9\TSCHelp.exe"
"C:\Program Files (x86)\TechSmith\Snagit 9\SnagPriv.exe"
adb fork-server server
"C:\Program Files (x86)\TechSmith\Snagit 9\snagiteditor.exe" /X
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
C:\Windows\splwow64.exe 12288
"C:\Program Files\Internet Explorer\iexplore.exe"
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:4560 CREDAT:144385 /prefetch:2
"C:\Program Files (x86)\visionapp OneTimePass\vOTP.exe"
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe"
"C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe" --channel=4216.fefda00.551983889 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll" -greomni "C:\Program Files (x86)\Mozilla Firefox\omni.ja" -appomni "C:\Program Files (x86)\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files (x86)\Mozilla Firefox\browser" E7CF176E110C211B 4216 "\\.\pipe\gecko-crash-server-pipe.4216" plugin
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe" --proxy-stub-channel=Flash3680.6304D910.7035 --host-broker-channel=Flash3680.6304D910.1158 --host-pid=3680 --host-npapi-version=27 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll"
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe" --channel=2752.004CF6C0.959304125 --proxy-stub-channel=Flash3680.6304D910.7035 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll" --host-npapi-version=27 --type=renderer
"D:\ČP\Program\Česká pojišťovna.exe"
"C:\Windows\system32\calc.exe"
"C:\PROGRA~2\Citrix\ICACLI~1\WFICA32.EXE" MFService000105D4999
"C:\Program Files\totalcmd\TOTALCMD.EXE"
C:\Windows\System32\svchost.exe -k WerSvcGroup
"D:\download\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job

=========Mozilla firefox=========

ProfilePath - C:\Users\Martin\AppData\Roaming\Mozilla\Firefox\Profiles\87esaofg.default

prefs.js - "browser.startup.homepage" - "http://www.centrum.cz/"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.8.800.94 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Citrix.com/npican]
"Description"=Citrix ICA Client Plugin
"Path"=C:\Program Files (x86)\Citrix\ICA Client\npicaN.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.7]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.8.800.94 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=10.25.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\system32\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=10.25.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll


======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00C6482D-C502-44C8-8409-FCE54AD9C208}]
SnagIt Toolbar Loader - C:\Program Files (x86)\TechSmith\Snagit 9\DLLx64\SnagitBHO64.dll [2009-10-15 82248]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-05-09 242496]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2013-07-06 553896]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2013-07-06 211880]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00C6482D-C502-44C8-8409-FCE54AD9C208}]
SnagIt Toolbar Loader - C:\Program Files (x86)\TechSmith\Snagit 9\SnagitBHO.dll [2009-10-15 68936]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-05-09 198688]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - Snagit - C:\Program Files (x86)\TechSmith\Snagit 9\DLLx64\SnagitIEAddin64.dll [2009-10-15 458056]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-05-09 242496]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - Snagit - C:\Program Files (x86)\TechSmith\Snagit 9\SnagitIEAddin.dll [2009-10-15 211272]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-05-09 198688]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2010-04-13 10144288]
"ETDWare"=C:\Program Files\Elantech\ETDCtrl.exe [2010-06-10 649608]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-07-03 3673184]
"MyPhoneExplorer"=C:\Program Files (x86)\MyPhoneExplorer\MyPhoneExplorer.exe [2012-08-10 4853464]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"ATKMEDIA"=C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [2010-10-07 170624]
"HControlUser"=C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [2009-06-19 105016]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-09-21 98304]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-05-11 958576]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2013-05-09 4858968]
"ConnectionCenter"=C:\Program Files (x86)\Citrix\ICA Client\concentr.exe [2012-12-14 383544]
"DynamicUSB"=C:\Program Files (x86)\DynamicUSBTool\DynamicUSB.exe [2007-03-02 94208]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Snagit 9.lnk - C:\Program Files (x86)\TechSmith\Snagit 9\Snagit32.exe
SRS Premium Sound.lnk - C:\Windows\Installer\{E5CF6B9C-3ABE-43C9-9413-AD5FFC98F049}\NewShortcut5_21C7B668029A47458B27645FE6E4A715.exe

C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\Martin\AppData\Roaming\Dropbox\bin\Dropbox.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

martin_f
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 31 črc 2013 07:12

Re: Dropbox nahrává virus win32:evo-gen

#2 Příspěvek od martin_f »

pokračování logu

======List of files/folders created in the last 1 month======

2013-07-30 13:33:46 ----D---- C:\Program Files\trend micro
2013-07-30 13:33:43 ----D---- C:\rsit
2013-07-30 06:37:30 ----A---- C:\Windows\system32\drivers\aswNdis2.sys
2013-07-30 06:37:29 ----A---- C:\Windows\system32\drivers\aswFW.sys
2013-07-30 06:37:26 ----A---- C:\Windows\system32\drivers\aswKbd.sys
2013-07-30 06:37:23 ----A---- C:\Windows\system32\drivers\aswNdis.sys
2013-07-24 10:00:36 ----D---- C:\Windows\system32\MRT
2013-07-12 07:41:27 ----A---- C:\Windows\system32\DWrite.dll
2013-07-12 07:41:26 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2013-07-12 07:39:28 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-07-12 07:39:28 ----A---- C:\Windows\system32\ieui.dll
2013-07-12 07:39:25 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2013-07-12 07:39:25 ----A---- C:\Windows\system32\iesetup.dll
2013-07-12 07:39:24 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2013-07-12 07:39:24 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2013-07-12 07:39:24 ----A---- C:\Windows\system32\iernonce.dll
2013-07-12 07:39:24 ----A---- C:\Windows\system32\ie4uinit.exe
2013-07-12 07:39:23 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2013-07-12 07:39:23 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-07-12 07:39:22 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-07-12 07:39:22 ----A---- C:\Windows\system32\iesysprep.dll
2013-07-12 07:39:21 ----A---- C:\Windows\system32\iertutil.dll
2013-07-12 07:39:18 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-07-12 07:39:18 ----A---- C:\Windows\system32\msfeeds.dll
2013-07-12 07:39:17 ----A---- C:\Windows\system32\jscript.dll
2013-07-12 07:39:16 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-07-12 07:39:14 ----A---- C:\Windows\system32\jscript9.dll
2013-07-12 07:39:12 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-07-12 07:39:11 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-07-12 07:39:09 ----A---- C:\Windows\system32\urlmon.dll
2013-07-12 07:39:05 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-07-12 07:39:05 ----A---- C:\Windows\system32\jsproxy.dll
2013-07-12 07:39:01 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-07-12 07:38:58 ----A---- C:\Windows\system32\wininet.dll
2013-07-12 07:38:53 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-07-12 07:38:47 ----A---- C:\Windows\system32\ieframe.dll
2013-07-12 07:38:44 ----A---- C:\Windows\system32\mshtml.dll
2013-07-12 07:38:36 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-07-10 10:25:17 ----A---- C:\Windows\system32\qedit.dll
2013-07-10 10:25:16 ----A---- C:\Windows\SYSWOW64\qedit.dll
2013-07-10 10:25:15 ----A---- C:\Windows\system32\WMVDECOD.DLL
2013-07-10 10:25:14 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2013-07-10 10:22:30 ----A---- C:\Windows\system32\win32k.sys
2013-07-10 10:22:17 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2013-07-10 10:22:17 ----A---- C:\Windows\system32\WindowsCodecs.dll
2013-07-09 09:46:00 ----A---- C:\cpiPortalLocation.txt
2013-07-09 09:43:34 ----D---- C:\DATA_CPC
2013-07-09 07:30:15 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2013-07-09 07:30:13 ----A---- C:\Windows\SYSWOW64\wextract.exe
2013-07-09 07:30:13 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2013-07-09 07:30:13 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2013-07-09 07:30:13 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2013-07-09 07:30:13 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2013-07-09 07:30:13 ----A---- C:\Windows\SYSWOW64\occache.dll
2013-07-09 07:30:13 ----A---- C:\Windows\SYSWOW64\msrating.dll
2013-07-09 07:30:13 ----A---- C:\Windows\SYSWOW64\msls31.dll
2013-07-09 07:30:13 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2013-07-09 07:30:13 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2013-07-09 07:30:13 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2013-07-09 07:30:13 ----A---- C:\Windows\SYSWOW64\mshta.exe
2013-07-09 07:30:13 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2013-07-09 07:30:13 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2013-07-09 07:30:13 ----A---- C:\Windows\SYSWOW64\inseng.dll
2013-07-09 07:30:13 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2013-07-09 07:30:13 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2013-07-09 07:30:13 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2013-07-09 07:30:13 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2013-07-09 07:30:13 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2013-07-09 07:30:13 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2013-07-09 07:30:13 ----A---- C:\Windows\system32\elshyph.dll
2013-07-09 07:30:12 ----A---- C:\Windows\SYSWOW64\url.dll
2013-07-09 07:30:12 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2013-07-09 07:30:12 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2013-07-09 07:30:12 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2013-07-09 07:30:12 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2013-07-09 07:30:12 ----A---- C:\Windows\SYSWOW64\icardie.dll
2013-07-09 07:30:12 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2013-07-09 07:30:12 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2013-07-09 07:30:12 ----A---- C:\Windows\system32\url.dll
2013-07-09 07:30:12 ----A---- C:\Windows\system32\msrating.dll
2013-07-09 07:30:12 ----A---- C:\Windows\system32\msls31.dll
2013-07-09 07:30:12 ----A---- C:\Windows\system32\mshtmlmedia.dll
2013-07-09 07:30:12 ----A---- C:\Windows\system32\iedkcs32.dll
2013-07-09 07:30:12 ----A---- C:\Windows\system32\ieapfltr.dll
2013-07-09 07:30:12 ----A---- C:\Windows\system32\ieapfltr.dat
2013-07-09 07:30:12 ----A---- C:\Windows\system32\icardie.dll
2013-07-09 07:30:12 ----A---- C:\Windows\system32\dxtrans.dll
2013-07-09 07:30:12 ----A---- C:\Windows\system32\dxtmsft.dll
2013-07-09 07:30:11 ----A---- C:\Windows\system32\wextract.exe
2013-07-09 07:30:11 ----A---- C:\Windows\system32\webcheck.dll
2013-07-09 07:30:11 ----A---- C:\Windows\system32\vbscript.dll
2013-07-09 07:30:11 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2013-07-09 07:30:11 ----A---- C:\Windows\system32\pngfilt.dll
2013-07-09 07:30:11 ----A---- C:\Windows\system32\occache.dll
2013-07-09 07:30:11 ----A---- C:\Windows\system32\mshtmler.dll
2013-07-09 07:30:11 ----A---- C:\Windows\system32\mshtmled.dll
2013-07-09 07:30:11 ----A---- C:\Windows\system32\mshta.exe
2013-07-09 07:30:11 ----A---- C:\Windows\system32\msfeedssync.exe
2013-07-09 07:30:11 ----A---- C:\Windows\system32\msfeedsbs.dll
2013-07-09 07:30:11 ----A---- C:\Windows\system32\licmgr10.dll
2013-07-09 07:30:11 ----A---- C:\Windows\system32\inseng.dll
2013-07-09 07:30:11 ----A---- C:\Windows\system32\imgutil.dll
2013-07-09 07:30:11 ----A---- C:\Windows\system32\iexpress.exe
2013-07-09 07:30:11 ----A---- C:\Windows\system32\ieUnatt.exe
2013-07-09 07:30:11 ----A---- C:\Windows\system32\iepeers.dll
2013-07-09 07:30:11 ----A---- C:\Windows\system32\IEAdvpack.dll
2013-07-09 07:27:04 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2013-07-09 07:27:04 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2013-07-09 07:27:04 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-07-09 07:27:04 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-07-09 07:27:04 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-07-09 07:27:04 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-07-09 07:27:04 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-07-09 07:27:04 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-07-09 07:27:04 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-07-09 07:27:04 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-07-09 07:27:04 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-07-09 07:27:04 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-07-09 07:27:04 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-07-09 07:27:04 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-07-09 07:27:04 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-07-09 07:27:04 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-07-09 07:27:04 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-07-09 07:27:04 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-07-09 07:27:04 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2013-07-09 07:27:04 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2013-07-09 07:27:03 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2013-07-09 07:27:03 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2013-07-09 07:27:03 ----A---- C:\Windows\system32\XpsPrint.dll
2013-07-09 07:27:03 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2013-07-09 07:27:03 ----A---- C:\Windows\system32\WMPhoto.dll
2013-07-09 07:27:03 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2013-07-09 07:27:03 ----A---- C:\Windows\system32\d2d1.dll
2013-07-09 07:27:02 ----A---- C:\Windows\SYSWOW64\d3d10core.dll
2013-07-09 07:27:02 ----A---- C:\Windows\SYSWOW64\d3d10.dll
2013-07-09 07:27:02 ----A---- C:\Windows\system32\dxgi.dll
2013-07-09 07:27:02 ----A---- C:\Windows\system32\d3d10warp.dll
2013-07-09 07:27:01 ----A---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll
2013-07-09 07:27:01 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2013-07-09 07:27:01 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2013-07-09 07:27:01 ----A---- C:\Windows\system32\FntCache.dll
2013-07-09 07:27:00 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2013-07-09 07:27:00 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2013-07-09 07:27:00 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2013-07-09 07:27:00 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2013-07-09 07:27:00 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2013-07-09 07:27:00 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2013-07-09 07:27:00 ----A---- C:\Windows\system32\UIAnimation.dll
2013-07-09 07:27:00 ----A---- C:\Windows\system32\d3d10level9.dll
2013-07-09 07:27:00 ----A---- C:\Windows\system32\d3d10core.dll
2013-07-09 07:27:00 ----A---- C:\Windows\system32\d3d10_1core.dll
2013-07-09 07:27:00 ----A---- C:\Windows\system32\d3d10_1.dll
2013-07-09 07:27:00 ----A---- C:\Windows\system32\d3d10.dll
2013-07-08 13:55:29 ----D---- C:\Users\Martin\AppData\Roaming\MyPhoneExplorer
2013-07-08 13:52:20 ----D---- C:\Program Files (x86)\MyPhoneExplorer
2013-07-08 09:11:44 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2013-07-08 09:11:43 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2013-07-08 09:11:43 ----A---- C:\Windows\system32\cdd.dll
2013-07-08 09:11:20 ----A---- C:\Windows\SYSWOW64\dhcpcsvc6.dll
2013-07-08 09:11:20 ----A---- C:\Windows\SYSWOW64\dhcpcore6.dll
2013-07-08 09:11:20 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2013-07-08 09:11:20 ----A---- C:\Windows\system32\dhcpcore6.dll
2013-07-08 09:11:12 ----A---- C:\Windows\system32\drivers\tcpip.sys
2013-07-08 09:10:57 ----A---- C:\Windows\system32\shell32.dll
2013-07-08 09:10:53 ----A---- C:\Windows\system32\authui.dll
2013-07-08 09:10:52 ----A---- C:\Windows\SYSWOW64\shell32.dll
2013-07-08 09:10:52 ----A---- C:\Windows\system32\shdocvw.dll
2013-07-08 09:10:50 ----A---- C:\Windows\system32\consent.exe
2013-07-08 09:10:49 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2013-07-08 09:10:49 ----A---- C:\Windows\SYSWOW64\authui.dll
2013-07-08 09:10:48 ----A---- C:\Windows\system32\appinfo.dll
2013-07-08 09:10:32 ----A---- C:\Windows\system32\wwansvc.dll
2013-07-08 09:10:32 ----A---- C:\Windows\system32\wwanprotdim.dll
2013-07-08 09:10:30 ----A---- C:\Windows\system32\drivers\RNDISMP.sys
2013-07-08 09:10:30 ----A---- C:\Windows\system32\drivers\ndis.sys
2013-07-08 09:10:18 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2013-07-08 09:10:18 ----A---- C:\Windows\system32\netcorehc.dll
2013-07-08 09:10:18 ----A---- C:\Windows\system32\ncsi.dll
2013-07-08 09:10:17 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2013-07-08 09:10:17 ----A---- C:\Windows\SYSWOW64\netcorehc.dll
2013-07-08 09:10:17 ----A---- C:\Windows\system32\nlasvc.dll
2013-07-08 09:10:17 ----A---- C:\Windows\system32\iphlpsvc.dll
2013-07-08 09:10:16 ----A---- C:\Windows\system32\nlaapi.dll
2013-07-08 09:10:16 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2013-07-08 09:10:15 ----A---- C:\Windows\SYSWOW64\netevent.dll
2013-07-08 09:10:15 ----A---- C:\Windows\system32\netevent.dll
2013-07-08 09:10:02 ----A---- C:\Windows\system32\OxpsConverter.exe
2013-07-08 09:07:27 ----A---- C:\Windows\system32\win32spl.dll
2013-07-08 09:07:26 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2013-07-08 09:07:13 ----A---- C:\Windows\system32\taskhost.exe
2013-07-08 09:07:05 ----A---- C:\Windows\SYSWOW64\cryptdlg.dll
2013-07-08 09:07:05 ----A---- C:\Windows\system32\cryptdlg.dll
2013-07-08 09:06:20 ----A---- C:\Windows\system32\certutil.exe
2013-07-08 09:06:19 ----A---- C:\Windows\SYSWOW64\certutil.exe
2013-07-08 09:06:18 ----A---- C:\Windows\system32\crypt32.dll
2013-07-08 09:06:16 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2013-07-08 09:06:16 ----A---- C:\Windows\system32\cryptsvc.dll
2013-07-08 09:06:16 ----A---- C:\Windows\system32\cryptnet.dll
2013-07-08 09:06:15 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2013-07-08 09:06:15 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2013-07-08 09:06:15 ----A---- C:\Windows\system32\certenc.dll
2013-07-08 09:06:14 ----A---- C:\Windows\SYSWOW64\certenc.dll
2013-07-08 09:05:48 ----A---- C:\Windows\system32\d3d11.dll
2013-07-08 09:05:47 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2013-07-08 08:31:16 ----D---- C:\Users\Martin\AppData\Roaming\TeamViewer
2013-07-07 14:13:58 ----D---- C:\Program Files (x86)\Microsoft CAPICOM 2.1.0.2
2013-07-07 14:05:33 ----D---- C:\Windows\system32\SPReview
2013-07-07 14:04:29 ----D---- C:\Windows\system32\EventProviders
2013-07-07 14:02:21 ----A---- C:\Windows\system32\MRT.exe
2013-07-07 13:34:47 ----D---- C:\ProgramData\CPC
2013-07-07 13:34:47 ----D---- C:\Program Files (x86)\CPC
2013-07-07 13:27:39 ----D---- C:\ProgramData\firebird
2013-07-07 13:26:40 ----D---- C:\WEPOS
2013-07-07 13:25:03 ----D---- C:\ProgramData\Sync App Settings
2013-07-07 13:24:35 ----D---- C:\Program Files (x86)\Allway Sync
2013-07-07 13:21:19 ----A---- C:\Windows\system32\netfxperf.dll
2013-07-07 13:21:19 ----A---- C:\Windows\system32\dfshim.dll
2013-07-07 13:21:08 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2013-07-07 13:21:02 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2013-07-07 13:21:02 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2013-07-07 13:20:47 ----A---- C:\Windows\SYSWOW64\mfc40.dll
2013-07-07 13:20:46 ----A---- C:\Windows\SYSWOW64\mfc40u.dll
2013-07-07 13:20:46 ----A---- C:\Windows\system32\tssrvlic.dll
2013-07-07 13:20:46 ----A---- C:\Windows\system32\sysmain.dll
2013-07-07 13:20:45 ----A---- C:\Windows\system32\RDVGHelper.exe
2013-07-07 13:20:43 ----D---- C:\Users\Martin\AppData\Roaming\RadioMaximus
2013-07-07 13:20:41 ----A---- C:\Windows\SYSWOW64\pmcsnap.dll
2013-07-07 13:20:40 ----A---- C:\Windows\system32\MSVidCtl.dll
2013-07-07 13:20:37 ----A---- C:\Windows\system32\wmp.dll
2013-07-07 13:20:33 ----A---- C:\Windows\system32\mscoree.dll
2013-07-07 13:20:32 ----A---- C:\Windows\system32\mmcndmgr.dll
2013-07-07 13:20:31 ----A---- C:\Windows\system32\secproc_isv.dll
2013-07-07 13:20:30 ----A---- C:\Windows\system32\mf.dll
2013-07-07 13:20:29 ----A---- C:\Windows\system32\RMActivate_isv.exe
2013-07-07 13:20:28 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll
2013-07-07 13:20:28 ----A---- C:\Windows\system32\xpsservices.dll
2013-07-07 13:20:28 ----A---- C:\Windows\system32\secproc.dll
2013-07-07 13:20:28 ----A---- C:\Windows\system32\RMActivate.exe
2013-07-07 13:20:26 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe
2013-07-07 13:20:25 ----A---- C:\Windows\SYSWOW64\secproc.dll
2013-07-07 13:20:25 ----A---- C:\Windows\system32\rpcrt4.dll
2013-07-07 13:20:23 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2013-07-07 13:20:23 ----A---- C:\Windows\SYSWOW64\PushPrinterConnections.exe
2013-07-07 13:20:23 ----A---- C:\Windows\SYSWOW64\ppcsnap.dll
2013-07-07 13:20:21 ----A---- C:\Windows\system32\schedsvc.dll
2013-07-07 13:20:21 ----A---- C:\Windows\system32\ole32.dll
2013-07-07 13:20:18 ----A---- C:\Windows\system32\spwizui.dll
2013-07-07 13:20:13 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2013-07-07 13:20:12 ----A---- C:\Windows\system32\taskschd.dll
2013-07-07 13:20:11 ----A---- C:\Windows\system32\RacEngn.dll
2013-07-07 13:20:10 ----A---- C:\Windows\system32\wevtsvc.dll
2013-07-07 13:20:10 ----A---- C:\Windows\system32\diagperf.dll
2013-07-07 13:20:09 ----A---- C:\Windows\SYSWOW64\mf.dll
2013-07-07 13:20:08 ----A---- C:\Windows\system32\ExplorerFrame.dll
2013-07-07 13:20:06 ----A---- C:\Windows\system32\vssapi.dll
2013-07-07 13:20:05 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2013-07-07 13:20:04 ----A---- C:\Windows\SYSWOW64\CertEnroll.dll
2013-07-07 13:20:04 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2013-07-07 13:20:02 ----A---- C:\Windows\system32\UIRibbon.dll
2013-07-07 13:20:02 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2013-07-07 13:19:58 ----A---- C:\Windows\SYSWOW64\wmp.dll
2013-07-07 13:19:54 ----A---- C:\Windows\system32\WsmSvc.dll
2013-07-07 13:19:54 ----A---- C:\Windows\system32\WMVCORE.DLL
2013-07-07 13:19:53 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2013-07-07 13:19:53 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2013-07-07 13:19:52 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2013-07-07 13:19:52 ----A---- C:\Windows\system32\PresentationHost.exe
2013-07-07 13:19:51 ----A---- C:\Windows\system32\rdpdd.dll
2013-07-07 13:19:49 ----A---- C:\Windows\system32\spreview.exe
2013-07-07 13:19:49 ----A---- C:\Windows\system32\spinstall.exe
2013-07-07 13:19:49 ----A---- C:\Windows\system32\MPSSVC.dll
2013-07-07 13:19:49 ----A---- C:\Windows\system32\CertEnroll.dll
2013-07-07 13:19:48 ----A---- C:\Windows\system32\WinSAT.exe
2013-07-07 13:19:45 ----A---- C:\Windows\system32\d3d9.dll
2013-07-07 13:19:43 ----A---- C:\Windows\system32\IKEEXT.DLL
2013-07-07 13:19:42 ----A---- C:\Windows\SYSWOW64\RacEngn.dll
2013-07-07 13:19:42 ----A---- C:\Windows\system32\SearchFolder.dll
2013-07-07 13:19:40 ----A---- C:\Windows\SYSWOW64\AuthFWSnapin.dll
2013-07-07 13:19:40 ----A---- C:\Windows\system32\AuthFWSnapin.dll
2013-07-07 13:19:39 ----A---- C:\Windows\system32\gpsvc.dll
2013-07-07 13:19:38 ----A---- C:\Windows\system32\VSSVC.exe
2013-07-07 13:19:37 ----A---- C:\Windows\system32\dwmcore.dll
2013-07-07 13:19:36 ----A---- C:\Windows\system32\dbgeng.dll
2013-07-07 13:19:35 ----A---- C:\Windows\system32\drivers\http.sys
2013-07-07 13:19:33 ----A---- C:\Windows\SYSWOW64\rdvgumd32.dll
2013-07-07 13:19:29 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2013-07-07 13:19:27 ----A---- C:\Windows\system32\actxprxy.dll
2013-07-07 13:19:26 ----A---- C:\Windows\SYSWOW64\ole32.dll
2013-07-07 13:19:26 ----A---- C:\Windows\system32\TSWorkspace.dll
2013-07-07 13:19:24 ----A---- C:\Windows\system32\qmgr.dll
2013-07-07 13:19:24 ----A---- C:\Windows\system32\audiosrv.dll
2013-07-07 13:19:22 ----A---- C:\Windows\system32\termsrv.dll
2013-07-07 13:19:22 ----A---- C:\Windows\system32\gpprefcl.dll
2013-07-07 13:19:20 ----A---- C:\Windows\system32\mstsc.exe
2013-07-07 13:19:19 ----A---- C:\Windows\system32\netlogon.dll
2013-07-07 13:19:19 ----A---- C:\Windows\system32\imapi2fs.dll
2013-07-07 13:19:18 ----A---- C:\Windows\SYSWOW64\vssapi.dll
2013-07-07 13:19:18 ----A---- C:\Windows\SYSWOW64\SearchFolder.dll
2013-07-07 13:19:18 ----A---- C:\Windows\system32\winhttp.dll
2013-07-07 13:19:17 ----A---- C:\Windows\SYSWOW64\d3d9.dll
2013-07-07 13:19:17 ----A---- C:\Windows\system32\msv1_0.dll
2013-07-07 13:19:16 ----A---- C:\Windows\system32\setupapi.dll
2013-07-07 13:19:16 ----A---- C:\Windows\system32\QAGENTRT.DLL
2013-07-07 13:19:16 ----A---- C:\Windows\system32\propsys.dll
2013-07-07 13:19:15 ----A---- C:\Windows\SYSWOW64\taskschd.dll
2013-07-07 13:19:15 ----A---- C:\Windows\system32\wbengine.exe
2013-07-07 13:19:15 ----A---- C:\Windows\system32\rpcss.dll
2013-07-07 13:19:15 ----A---- C:\Windows\system32\PushPrinterConnections.exe
2013-07-07 13:19:13 ----A---- C:\Windows\system32\werconcpl.dll
2013-07-07 13:19:13 ----A---- C:\Windows\system32\taskeng.exe
2013-07-07 13:19:13 ----A---- C:\Windows\system32\odbc32.dll
2013-07-07 13:19:11 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2013-07-07 13:19:11 ----A---- C:\Windows\system32\WSDApi.dll
2013-07-07 13:19:11 ----A---- C:\Windows\system32\user32.dll
2013-07-07 13:19:10 ----A---- C:\Windows\system32\dhcpcore.dll
2013-07-07 13:19:10 ----A---- C:\Windows\system32\certmgr.dll
2013-07-07 13:19:09 ----A---- C:\Windows\system32\umrdp.dll
2013-07-07 13:19:09 ----A---- C:\Windows\system32\LSCSHostPolicy.dll
2013-07-07 13:19:09 ----A---- C:\Windows\system32\drivers\tdx.sys
2013-07-07 13:19:08 ----A---- C:\Windows\SYSWOW64\wer.dll
2013-07-07 13:19:08 ----A---- C:\Windows\system32\scavengeui.dll
2013-07-07 13:19:08 ----A---- C:\Windows\system32\drivers\netbt.sys
2013-07-07 13:19:07 ----A---- C:\Windows\SYSWOW64\certcli.dll
2013-07-07 13:19:06 ----A---- C:\Windows\system32\tsmf.dll
2013-07-07 13:19:06 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2013-07-07 13:19:05 ----A---- C:\Windows\system32\msdrm.dll
2013-07-07 13:19:04 ----A---- C:\Windows\SYSWOW64\dwmcore.dll
2013-07-07 13:19:04 ----A---- C:\Windows\system32\shlwapi.dll
2013-07-07 13:19:04 ----A---- C:\Windows\system32\msdtctm.dll
2013-07-07 13:19:03 ----A---- C:\Windows\system32\rdpshell.exe
2013-07-07 13:19:03 ----A---- C:\Windows\system32\netshell.dll
2013-07-07 13:19:03 ----A---- C:\Windows\system32\framedynos.dll
2013-07-07 13:19:02 ----A---- C:\Windows\SYSWOW64\odbc32.dll
2013-07-07 13:19:01 ----A---- C:\Windows\SYSWOW64\tcpmonui.dll
2013-07-07 13:19:00 ----A---- C:\Windows\system32\wmicmiplugin.dll
2013-07-07 13:19:00 ----A---- C:\Windows\system32\winlogon.exe
2013-07-07 13:19:00 ----A---- C:\Windows\system32\netcfgx.dll
2013-07-07 13:19:00 ----A---- C:\Windows\system32\appmgr.dll
2013-07-07 13:18:59 ----A---- C:\Windows\system32\ws2_32.dll
2013-07-07 13:18:58 ----A---- C:\Windows\system32\lsm.exe
2013-07-07 13:18:58 ----A---- C:\Windows\system32\comdlg32.dll
2013-07-07 13:18:57 ----A---- C:\Windows\system32\wmpps.dll
2013-07-07 13:18:57 ----A---- C:\Windows\system32\drivers\csc.sys
2013-07-07 13:18:57 ----A---- C:\Windows\system32\apphelp.dll
2013-07-07 13:18:56 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll
2013-07-07 13:18:56 ----A---- C:\Windows\system32\Query.dll
2013-07-07 13:18:56 ----A---- C:\Windows\system32\mswsock.dll
2013-07-07 13:18:56 ----A---- C:\Windows\system32\drvstore.dll
2013-07-07 13:18:55 ----A---- C:\Windows\SYSWOW64\tsmf.dll
2013-07-07 13:18:55 ----A---- C:\Windows\SYSWOW64\dot3api.dll
2013-07-07 13:18:55 ----A---- C:\Windows\system32\wpdshext.dll
2013-07-07 13:18:54 ----A---- C:\Windows\SYSWOW64\winhttp.dll
2013-07-07 13:18:54 ----A---- C:\Windows\system32\QAGENT.DLL
2013-07-07 13:18:54 ----A---- C:\Windows\system32\azroles.dll
2013-07-07 13:18:53 ----A---- C:\Windows\SYSWOW64\setupapi.dll
2013-07-07 13:18:53 ----A---- C:\Windows\system32\BFE.DLL
2013-07-07 13:18:52 ----A---- C:\Windows\SYSWOW64\apphelp.dll
2013-07-07 13:18:52 ----A---- C:\Windows\system32\Vault.dll
2013-07-07 13:18:52 ----A---- C:\Windows\system32\samsrv.dll
2013-07-07 13:18:52 ----A---- C:\Windows\system32\cmd.exe
2013-07-07 13:18:51 ----A---- C:\Windows\SYSWOW64\MSVidCtl.dll
2013-07-07 13:18:51 ----A---- C:\Windows\system32\DShowRdpFilter.dll
2013-07-07 13:18:50 ----A---- C:\Windows\SYSWOW64\dbgeng.dll
2013-07-07 13:18:50 ----A---- C:\Windows\system32\lpksetup.exe
2013-07-07 13:18:49 ----A---- C:\Windows\SYSWOW64\netlogon.dll
2013-07-07 13:18:49 ----A---- C:\Windows\system32\cscsvc.dll
2013-07-07 13:18:48 ----A---- C:\Windows\system32\rdpclip.exe
2013-07-07 13:18:47 ----A---- C:\Windows\SYSWOW64\netcfgx.dll
2013-07-07 13:18:46 ----A---- C:\Windows\system32\WebClnt.dll
2013-07-07 13:18:45 ----A---- C:\Windows\SYSWOW64\Query.dll
2013-07-07 13:18:45 ----A---- C:\Windows\system32\sxs.dll
2013-07-07 13:18:45 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2013-07-07 13:18:44 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll
2013-07-07 13:18:44 ----A---- C:\Windows\SYSWOW64\gpprefcl.dll
2013-07-07 13:18:44 ----A---- C:\Windows\system32\Wldap32.dll
2013-07-07 13:18:44 ----A---- C:\Windows\system32\taskcomp.dll
2013-07-07 13:18:44 ----A---- C:\Windows\system32\mcbuilder.exe
2013-07-07 13:18:44 ----A---- C:\Windows\system32\cscobj.dll
2013-07-07 13:18:43 ----A---- C:\Windows\SYSWOW64\upnp.dll
2013-07-07 13:18:43 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2013-07-07 13:18:43 ----A---- C:\Windows\system32\mfds.dll
2013-07-07 13:18:42 ----A---- C:\Windows\SYSWOW64\mmcndmgr.dll
2013-07-07 13:18:42 ----A---- C:\Windows\SYSWOW64\DShowRdpFilter.dll
2013-07-07 13:18:42 ----A---- C:\Windows\system32\pnidui.dll
2013-07-07 13:18:42 ----A---- C:\Windows\system32\ipsmsnap.dll
2013-07-07 13:18:42 ----A---- C:\Windows\system32\hgprint.dll
2013-07-07 13:18:41 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2013-07-07 13:18:41 ----A---- C:\Windows\system32\webservices.dll
2013-07-07 13:18:41 ----A---- C:\Windows\system32\rdpendp.dll
2013-07-07 13:18:40 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2013-07-07 13:18:40 ----A---- C:\Windows\SYSWOW64\imapi2fs.dll
2013-07-07 13:18:40 ----A---- C:\Windows\system32\SessEnv.dll
2013-07-07 13:18:39 ----A---- C:\Windows\SYSWOW64\msdrm.dll
2013-07-07 13:18:39 ----A---- C:\Windows\system32\winsta.dll
2013-07-07 13:18:38 ----A---- C:\Windows\SYSWOW64\SessEnv.dll
2013-07-07 13:18:38 ----A---- C:\Windows\system32\sqlsrv32.dll
2013-07-07 13:18:38 ----A---- C:\Windows\system32\fveapi.dll
2013-07-07 13:18:38 ----A---- C:\Windows\system32\dot3api.dll
2013-07-07 13:18:37 ----A---- C:\Windows\SYSWOW64\shlwapi.dll
2013-07-07 13:18:37 ----A---- C:\Windows\SYSWOW64\PortableDeviceApi.dll
2013-07-07 13:18:36 ----A---- C:\Windows\SYSWOW64\mcbuilder.exe
2013-07-07 13:18:36 ----A---- C:\Windows\system32\gdi32.dll
2013-07-07 13:18:36 ----A---- C:\Windows\system32\drivers\volsnap.sys
2013-07-07 13:18:36 ----A---- C:\Windows\system32\drivers\msrpc.sys
2013-07-07 13:18:35 ----A---- C:\Windows\system32\prncache.dll
2013-07-07 13:18:35 ----A---- C:\Windows\system32\mcmde.dll
2013-07-07 13:18:33 ----A---- C:\Windows\system32\schtasks.exe
2013-07-07 13:18:32 ----A---- C:\Windows\SYSWOW64\certmgr.dll
2013-07-07 13:18:32 ----A---- C:\Windows\system32\WMNetMgr.dll
2013-07-07 13:18:31 ----A---- C:\Windows\SYSWOW64\userenv.dll
2013-07-07 13:18:31 ----A---- C:\Windows\system32\wlanpref.dll
2013-07-07 13:18:30 ----A---- C:\Windows\SYSWOW64\drvstore.dll
2013-07-07 13:18:30 ----A---- C:\Windows\system32\vpnike.dll
2013-07-07 13:18:30 ----A---- C:\Windows\system32\userenv.dll
2013-07-07 13:18:30 ----A---- C:\Windows\system32\drivers\rdbss.sys
2013-07-07 13:18:29 ----A---- C:\Windows\SYSWOW64\xpsservices.dll
2013-07-07 13:18:29 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2013-07-07 13:18:29 ----A---- C:\Windows\system32\tspubwmi.dll
2013-07-07 13:18:29 ----A---- C:\Windows\system32\evr.dll
2013-07-07 13:18:29 ----A---- C:\Windows\system32\drivers\1394ohci.sys
2013-07-07 13:18:28 ----A---- C:\Windows\SYSWOW64\comdlg32.dll
2013-07-07 13:18:28 ----A---- C:\Windows\system32\photowiz.dll
2013-07-07 13:18:27 ----A---- C:\Windows\system32\framedyn.dll
2013-07-07 13:18:26 ----A---- C:\Windows\system32\wmpmde.dll
2013-07-07 13:18:26 ----A---- C:\Windows\system32\IPSECSVC.DLL
2013-07-07 13:18:26 ----A---- C:\Windows\system32\FXSSVC.exe
2013-07-07 13:18:26 ----A---- C:\Windows\system32\AudioSes.dll
2013-07-07 13:18:26 ----A---- C:\Windows\system32\aepdu.dll
2013-07-07 13:18:25 ----A---- C:\Windows\SYSWOW64\cmd.exe
2013-07-07 13:18:25 ----A---- C:\Windows\system32\wmpeffects.dll
2013-07-07 13:18:25 ----A---- C:\Windows\system32\SyncCenter.dll
2013-07-07 13:18:25 ----A---- C:\Windows\system32\sppobjs.dll
2013-07-07 13:18:24 ----A---- C:\Windows\system32\WMPEncEn.dll
2013-07-07 13:18:24 ----A---- C:\Windows\system32\tscfgwmi.dll
2013-07-07 13:18:24 ----A---- C:\Windows\system32\srvsvc.dll
2013-07-07 13:18:24 ----A---- C:\Windows\system32\mfreadwrite.dll
2013-07-07 13:18:23 ----A---- C:\Windows\system32\shsvcs.dll
2013-07-07 13:18:23 ----A---- C:\Windows\system32\rdpinit.exe
2013-07-07 13:18:23 ----A---- C:\Windows\system32\aeinv.dll
2013-07-07 13:18:21 ----A---- C:\Windows\SYSWOW64\propsys.dll
2013-07-07 13:18:21 ----A---- C:\Windows\SYSWOW64\framedynos.dll
2013-07-07 13:18:21 ----A---- C:\Windows\system32\vmicsvc.exe
2013-07-07 13:18:21 ----A---- C:\Windows\system32\fde.dll
2013-07-07 13:18:20 ----A---- C:\Windows\SYSWOW64\Wldap32.dll
2013-07-07 13:18:20 ----A---- C:\Windows\SYSWOW64\mfds.dll
2013-07-07 13:18:20 ----A---- C:\Windows\system32\WinSATAPI.dll
2013-07-07 13:18:20 ----A---- C:\Windows\system32\stobject.dll
2013-07-07 13:18:19 ----A---- C:\Windows\system32\netdiagfx.dll
2013-07-07 13:18:19 ----A---- C:\Windows\system32\localsec.dll
2013-07-07 13:18:19 ----A---- C:\Windows\system32\imapi2.dll
2013-07-07 13:18:19 ----A---- C:\Windows\system32\credui.dll
2013-07-07 13:18:18 ----A---- C:\Windows\SYSWOW64\rdpendp.dll
2013-07-07 13:18:18 ----A---- C:\Windows\system32\drivers\vmbus.sys
2013-07-07 13:18:18 ----A---- C:\Windows\system32\drivers\udfs.sys
2013-07-07 13:18:18 ----A---- C:\Windows\system32\bcryptprimitives.dll
2013-07-07 13:18:17 ----A---- C:\Windows\SYSWOW64\user32.dll
2013-07-07 13:18:17 ----A---- C:\Windows\system32\inetpp.dll
2013-07-07 13:18:16 ----A---- C:\Windows\system32\netid.dll
2013-07-07 13:18:16 ----A---- C:\Windows\system32\drivers\fltMgr.sys
2013-07-07 13:18:15 ----A---- C:\Windows\system32\QSHVHOST.DLL
2013-07-07 13:18:14 ----A---- C:\Windows\system32\tcpipcfg.dll
2013-07-07 13:18:14 ----A---- C:\Windows\system32\davclnt.dll
2013-07-07 13:18:13 ----A---- C:\Windows\SYSWOW64\azroles.dll
2013-07-07 13:18:13 ----A---- C:\Windows\system32\spp.dll
2013-07-07 13:18:13 ----A---- C:\Windows\system32\cscui.dll
2013-07-07 13:18:12 ----A---- C:\Windows\SYSWOW64\appmgr.dll
2013-07-07 13:18:12 ----A---- C:\Windows\system32\biocpl.dll
2013-07-07 13:18:10 ----A---- C:\Windows\system32\msinfo32.exe
2013-07-07 13:18:09 ----A---- C:\Windows\system32\scansetting.dll
2013-07-07 13:18:09 ----A---- C:\Windows\system32\printui.dll
2013-07-07 13:18:08 ----A---- C:\Windows\system32\mspbda.dll
2013-07-07 13:18:07 ----A---- C:\Windows\SYSWOW64\themeui.dll
2013-07-07 13:18:06 ----A---- C:\Windows\SYSWOW64\credui.dll
2013-07-07 13:18:06 ----A---- C:\Windows\system32\pla.dll
2013-07-07 13:18:04 ----A---- C:\Windows\SYSWOW64\taskeng.exe
2013-07-07 13:18:04 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2013-07-07 13:18:03 ----A---- C:\Windows\SYSWOW64\spp.dll
2013-07-07 13:18:03 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2013-07-07 13:18:03 ----A---- C:\Windows\SYSWOW64\dhcpcore.dll
2013-07-07 13:18:01 ----A---- C:\Windows\system32\wusa.exe
2013-07-07 13:18:01 ----A---- C:\Windows\system32\msdri.dll
2013-07-07 13:18:00 ----A---- C:\Windows\system32\vds.exe
2013-07-07 13:18:00 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2013-07-07 13:18:00 ----A---- C:\Windows\system32\aitagent.exe
2013-07-07 13:17:58 ----A---- C:\Windows\system32\wiaservc.dll
2013-07-07 13:17:57 ----A---- C:\Windows\system32\drivers\pci.sys
2013-07-07 13:17:57 ----A---- C:\Windows\system32\AdmTmpl.dll
2013-07-07 13:17:56 ----A---- C:\Windows\SYSWOW64\basecsp.dll
2013-07-07 13:17:56 ----A---- C:\Windows\system32\rpchttp.dll
2013-07-07 13:17:55 ----D---- C:\Program Files (x86)\RadioMaximus
2013-07-07 13:17:55 ----A---- C:\Windows\SYSWOW64\mfreadwrite.dll
2013-07-07 13:17:55 ----A---- C:\Windows\system32\mscms.dll
2013-07-07 13:17:54 ----A---- C:\Windows\SYSWOW64\NaturalLanguage6.dll
2013-07-07 13:17:54 ----A---- C:\Windows\SYSWOW64\dbghelp.dll
2013-07-07 13:17:54 ----A---- C:\Windows\system32\PkgMgr.exe
2013-07-07 13:17:53 ----A---- C:\Windows\system32\XpsRasterService.dll
2013-07-07 13:17:53 ----A---- C:\Windows\system32\wisptis.exe
2013-07-07 13:17:53 ----A---- C:\Windows\system32\FirewallControlPanel.dll
2013-07-07 13:17:53 ----A---- C:\Windows\system32\drivers\rasl2tp.sys
2013-07-07 13:17:52 ----A---- C:\Windows\SYSWOW64\taskcomp.dll
2013-07-07 13:17:52 ----A---- C:\Windows\system32\ocsetup.exe
2013-07-07 13:17:51 ----A---- C:\Windows\SYSWOW64\evr.dll
2013-07-07 13:17:50 ----A---- C:\Windows\system32\sppwinob.dll
2013-07-07 13:17:50 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2013-07-07 13:17:49 ----A---- C:\Windows\SYSWOW64\WinSATAPI.dll
2013-07-07 13:17:49 ----A---- C:\Windows\SYSWOW64\calc.exe
2013-07-07 13:17:49 ----A---- C:\Windows\system32\ocsetapi.dll
2013-07-07 13:17:49 ----A---- C:\Windows\system32\DXP.dll
2013-07-07 13:17:49 ----A---- C:\Windows\system32\drivers\volmgr.sys
2013-07-07 13:17:47 ----A---- C:\Windows\SYSWOW64\sqlsrv32.dll
2013-07-07 13:17:47 ----A---- C:\Windows\system32\wpdbusenum.dll
2013-07-07 13:17:47 ----A---- C:\Windows\system32\eapp3hst.dll
2013-07-07 13:17:47 ----A---- C:\Windows\system32\drivers\msdsm.sys
2013-07-07 13:17:47 ----A---- C:\Windows\system32\ci.dll
2013-07-07 13:17:46 ----A---- C:\Windows\system32\wcncsvc.dll
2013-07-07 13:17:46 ----A---- C:\Windows\system32\upnp.dll
2013-07-07 13:17:46 ----A---- C:\Windows\system32\Robocopy.exe
2013-07-07 13:17:46 ----A---- C:\Windows\system32\mprapi.dll
2013-07-07 13:17:46 ----A---- C:\Windows\system32\eapphost.dll
2013-07-07 13:17:45 ----A---- C:\Windows\SYSWOW64\UIRibbon.dll
2013-07-07 13:17:45 ----A---- C:\Windows\system32\t2embed.dll
2013-07-07 13:17:45 ----A---- C:\Windows\system32\drivers\HpSAMD.sys
2013-07-07 13:17:44 ----A---- C:\Windows\SYSWOW64\sxs.dll
2013-07-07 13:17:44 ----A---- C:\Windows\system32\thumbcache.dll
2013-07-07 13:17:44 ----A---- C:\Windows\system32\hal.dll
2013-07-07 13:17:43 ----A---- C:\Windows\SYSWOW64\ws2_32.dll
2013-07-07 13:17:43 ----A---- C:\Windows\SYSWOW64\netshell.dll
2013-07-07 13:17:42 ----A---- C:\Windows\SYSWOW64\stobject.dll
2013-07-07 13:17:42 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2013-07-07 13:17:42 ----A---- C:\Windows\system32\DxpTaskSync.dll
2013-07-07 13:17:41 ----A---- C:\Windows\system32\scecli.dll
2013-07-07 13:17:41 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2013-07-07 13:17:40 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2013-07-07 13:17:40 ----A---- C:\Windows\system32\dwmredir.dll
2013-07-07 13:17:39 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2013-07-07 13:17:39 ----A---- C:\Windows\system32\drivers\Classpnp.sys
2013-07-07 13:17:38 ----A---- C:\Windows\system32\puiobj.dll
2013-07-07 13:17:38 ----A---- C:\Windows\system32\msasn1.dll
2013-07-07 13:17:38 ----A---- C:\Windows\system32\iasrad.dll
2013-07-07 13:17:37 ----A---- C:\Windows\SYSWOW64\prncache.dll
2013-07-07 13:17:37 ----A---- C:\Windows\system32\drivers\ipfltdrv.sys
2013-07-07 13:17:36 ----A---- C:\Windows\system32\themeui.dll
2013-07-07 13:17:36 ----A---- C:\Windows\system32\scrptadm.dll
2013-07-07 13:17:36 ----A---- C:\Windows\system32\onex.dll
2013-07-07 13:17:35 ----A---- C:\Windows\system32\DXPTaskRingtone.dll
2013-07-07 13:17:34 ----A---- C:\Windows\SYSWOW64\printui.dll
2013-07-07 13:17:31 ----A---- C:\Windows\SYSWOW64\wmpeffects.dll
2013-07-07 13:17:30 ----A---- C:\Windows\SYSWOW64\WSDApi.dll
2013-07-07 13:17:30 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2013-07-07 13:17:30 ----A---- C:\Windows\SYSWOW64\net1.exe
2013-07-07 13:17:27 ----A---- C:\Windows\system32\wdc.dll
2013-07-07 13:17:25 ----A---- C:\Windows\SYSWOW64\scansetting.dll
2013-07-07 13:17:24 ----A---- C:\Windows\system32\scesrv.dll
2013-07-07 13:17:24 ----A---- C:\Windows\system32\rasmans.dll
2013-07-07 13:17:23 ----A---- C:\Windows\system32\wlangpui.dll
2013-07-07 13:17:22 ----A---- C:\Windows\system32\msftedit.dll
2013-07-07 13:17:21 ----A---- C:\Windows\system32\sdengin2.dll
2013-07-07 13:17:20 ----A---- C:\Windows\system32\wiadefui.dll
2013-07-07 13:17:20 ----A---- C:\Windows\system32\VAN.dll
2013-07-07 13:17:20 ----A---- C:\Windows\system32\StructuredQuery.dll
2013-07-07 13:17:20 ----A---- C:\Windows\system32\dskquoui.dll
2013-07-07 13:17:19 ----A---- C:\Windows\SYSWOW64\MMDevAPI.dll
2013-07-07 13:17:19 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2013-07-07 13:17:19 ----A---- C:\Windows\system32\netcenter.dll
2013-07-07 13:17:18 ----A---- C:\Windows\system32\wscapi.dll
2013-07-07 13:17:18 ----A---- C:\Windows\system32\SndVol.exe
2013-07-07 13:17:18 ----A---- C:\Windows\system32\samcli.dll
2013-07-07 13:17:18 ----A---- C:\Windows\system32\iasacct.dll
2013-07-07 13:17:18 ----A---- C:\Windows\system32\drivers\ndiswan.sys
2013-07-07 13:17:17 ----A---- C:\Windows\SYSWOW64\WMVCORE.DLL
2013-07-07 13:17:17 ----A---- C:\Windows\SYSWOW64\wlangpui.dll
2013-07-07 13:17:17 ----A---- C:\Windows\system32\regapi.dll
2013-07-07 13:17:17 ----A---- C:\Windows\system32\drivers\termdd.sys
2013-07-07 13:17:16 ----A---- C:\Windows\SYSWOW64\QSHVHOST.DLL
2013-07-07 13:17:16 ----A---- C:\Windows\system32\QUTIL.DLL
2013-07-07 13:17:15 ----A---- C:\Windows\system32\TabSvc.dll
2013-07-07 13:17:15 ----A---- C:\Windows\system32\srchadmin.dll
2013-07-07 13:17:14 ----A---- C:\Windows\SYSWOW64\pnidui.dll
2013-07-07 13:17:13 ----A---- C:\Windows\SYSWOW64\t2embed.dll
2013-07-07 13:17:12 ----A---- C:\Windows\SYSWOW64\wpdshext.dll
2013-07-07 13:17:12 ----A---- C:\Windows\SYSWOW64\webservices.dll
2013-07-07 13:17:12 ----A---- C:\Windows\SYSWOW64\scrptadm.dll
2013-07-07 13:17:11 ----A---- C:\Windows\SYSWOW64\fde.dll
2013-07-07 13:17:10 ----A---- C:\Windows\system32\wksprt.exe
2013-07-07 13:17:10 ----A---- C:\Windows\system32\setupcl.exe
2013-07-07 13:17:10 ----A---- C:\Windows\system32\drivers\msahci.sys
2013-07-07 13:17:09 ----A---- C:\Windows\SYSWOW64\netdiagfx.dll
2013-07-07 13:17:08 ----A---- C:\Windows\system32\rastls.dll
2013-07-07 13:17:07 ----A---- C:\Windows\SYSWOW64\SyncCenter.dll
2013-07-07 13:17:04 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2013-07-07 13:17:04 ----A---- C:\Windows\SYSWOW64\wscapi.dll
2013-07-07 13:17:04 ----A---- C:\Windows\system32\drivers\acpi.sys
2013-07-07 13:17:02 ----A---- C:\Windows\system32\tapisrv.dll
2013-07-07 13:17:01 ----A---- C:\Windows\SYSWOW64\cscobj.dll
2013-07-07 13:17:01 ----A---- C:\Windows\system32\netiohlp.dll
2013-07-07 13:17:01 ----A---- C:\Windows\system32\mimefilt.dll
2013-07-07 13:17:01 ----A---- C:\Windows\system32\ListSvc.dll
2013-07-07 13:17:01 ----A---- C:\Windows\system32\drivers\raspptp.sys
2013-07-07 13:17:00 ----A---- C:\Windows\SYSWOW64\WinSCard.dll
2013-07-07 13:17:00 ----A---- C:\Windows\SYSWOW64\pla.dll
2013-07-07 13:17:00 ----A---- C:\Windows\system32\msconfig.exe
2013-07-07 13:17:00 ----A---- C:\Windows\system32\hgcpl.dll
2013-07-07 13:16:59 ----A---- C:\Windows\SYSWOW64\msasn1.dll
2013-07-07 13:16:58 ----A---- C:\Windows\system32\lsmproxy.dll
2013-07-07 13:16:58 ----A---- C:\Windows\system32\drivers\ks.sys
2013-07-07 13:16:58 ----A---- C:\Windows\system32\clusapi.dll
2013-07-07 13:16:58 ----A---- C:\Windows\system32\basecsp.dll
2013-07-07 13:16:57 ----A---- C:\Windows\system32\fdeploy.dll
2013-07-07 13:16:57 ----A---- C:\Windows\system32\drivers\sbp2port.sys
2013-07-07 13:16:56 ----A---- C:\Windows\SYSWOW64\winsta.dll
2013-07-07 13:16:56 ----A---- C:\Windows\SYSWOW64\MSMPEG2ENC.DLL
2013-07-07 13:16:56 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2013-07-07 13:16:54 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2013-07-07 13:16:54 ----A---- C:\Windows\system32\mtxclu.dll
2013-07-07 13:16:52 ----A---- C:\Windows\SYSWOW64\imapi2.dll
2013-07-07 13:16:52 ----A---- C:\Windows\system32\riched20.dll
2013-07-07 13:16:50 ----A---- C:\Windows\SYSWOW64\DXPTaskRingtone.dll
2013-07-07 13:16:50 ----A---- C:\Windows\system32\dnscmmc.dll
2013-07-07 13:16:48 ----A---- C:\Windows\system32\RpcRtRemote.dll
2013-07-07 13:16:48 ----A---- C:\Windows\system32\logoncli.dll
2013-07-07 13:16:47 ----A---- C:\Windows\SYSWOW64\WMPEncEn.dll
2013-07-07 13:16:47 ----A---- C:\Windows\SYSWOW64\onex.dll
2013-07-07 13:16:47 ----A---- C:\Windows\system32\powercpl.dll
2013-07-07 13:16:46 ----A---- C:\Windows\system32\sharemediacpl.dll
2013-07-07 13:16:45 ----A---- C:\Windows\SYSWOW64\winmm.dll
2013-07-07 13:16:45 ----A---- C:\Windows\SYSWOW64\shsvcs.dll
2013-07-07 13:16:45 ----A---- C:\Windows\system32\themecpl.dll
2013-07-07 13:16:45 ----A---- C:\Windows\system32\nci.dll
2013-07-07 13:16:44 ----A---- C:\Windows\system32\SensorsCpl.dll
2013-07-07 13:16:44 ----A---- C:\Windows\system32\eudcedit.exe
2013-07-07 13:16:43 ----A---- C:\Windows\SYSWOW64\hbaapi.dll
2013-07-07 13:16:42 ----A---- C:\Windows\SYSWOW64\autofmt.exe
2013-07-07 13:16:42 ----A---- C:\Windows\system32\netjoin.dll
2013-07-07 13:16:42 ----A---- C:\Windows\system32\Faultrep.dll
2013-07-07 13:16:41 ----A---- C:\Windows\system32\Narrator.exe
2013-07-07 13:16:40 ----A---- C:\Windows\SYSWOW64\netiohlp.dll
2013-07-07 13:16:39 ----A---- C:\Windows\SYSWOW64\autochk.exe
2013-07-07 13:16:38 ----A---- C:\Windows\system32\wkssvc.dll
2013-07-07 13:16:37 ----A---- C:\Windows\SYSWOW64\samcli.dll
2013-07-07 13:16:37 ----A---- C:\Windows\system32\vpnikeapi.dll
2013-07-07 13:16:36 ----A---- C:\Windows\SYSWOW64\proquota.exe
2013-07-07 13:16:36 ----A---- C:\Windows\SYSWOW64\IPHLPAPI.DLL
2013-07-07 13:16:36 ----A---- C:\Windows\system32\comctl32.dll
2013-07-07 13:16:35 ----A---- C:\Windows\system32\sppcomapi.dll
2013-07-07 13:16:35 ----A---- C:\Windows\system32\cabview.dll
2013-07-07 13:16:33 ----A---- C:\Windows\system32\autochk.exe
2013-07-07 13:16:32 ----A---- C:\Windows\SYSWOW64\msutb.dll
2013-07-07 13:16:32 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2013-07-07 13:16:31 ----A---- C:\Windows\SYSWOW64\thumbcache.dll
2013-07-07 13:16:31 ----A---- C:\Windows\SYSWOW64\msinfo32.exe
2013-07-07 13:16:31 ----A---- C:\Windows\SYSWOW64\autoconv.exe
2013-07-07 13:16:31 ----A---- C:\Windows\system32\autofmt.exe
2013-07-07 13:16:30 ----A---- C:\Windows\SYSWOW64\regapi.dll
2013-07-07 13:16:30 ----A---- C:\Windows\SYSWOW64\mimefilt.dll
2013-07-07 13:16:29 ----A---- C:\Windows\SYSWOW64\ipsmsnap.dll
2013-07-07 13:16:29 ----A---- C:\Windows\system32\autoconv.exe
2013-07-07 13:16:28 ----A---- C:\Windows\system32\nshipsec.dll
2013-07-07 13:16:27 ----A---- C:\Windows\system32\fms.dll
2013-07-07 13:16:26 ----A---- C:\Windows\SYSWOW64\srchadmin.dll
2013-07-07 13:16:26 ----A---- C:\Windows\system32\shsetup.dll
2013-07-07 13:16:26 ----A---- C:\Windows\system32\audiodg.exe
2013-07-07 13:16:25 ----A---- C:\Windows\SYSWOW64\tcpipcfg.dll
2013-07-07 13:16:25 ----A---- C:\Windows\SYSWOW64\schtasks.exe
2013-07-07 13:16:25 ----A---- C:\Windows\SYSWOW64\powercpl.dll
2013-07-07 13:16:25 ----A---- C:\Windows\system32\wpd_ci.dll
2013-07-07 13:16:24 ----A---- C:\Windows\SYSWOW64\wcncsvc.dll
2013-07-07 13:16:24 ----A---- C:\Windows\SYSWOW64\framedyn.dll
2013-07-07 13:16:24 ----A---- C:\Windows\SYSWOW64\eapphost.dll
2013-07-07 13:16:24 ----A---- C:\Windows\system32\sdclt.exe
2013-07-07 13:16:24 ----A---- C:\Windows\system32\bcdsrv.dll
2013-07-07 13:16:23 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2013-07-07 13:16:23 ----A---- C:\Windows\system32\wwanconn.dll
2013-07-07 13:16:23 ----A---- C:\Windows\system32\wlanui.dll
2013-07-07 13:16:23 ----A---- C:\Windows\system32\prntvpt.dll
2013-07-07 13:16:23 ----A---- C:\Windows\system32\drivers\wanarp.sys
2013-07-07 13:16:22 ----A---- C:\Windows\system32\drivers\scsiport.sys
2013-07-07 13:16:21 ----A---- C:\Windows\SYSWOW64\mscorier.dll
2013-07-07 13:16:21 ----A---- C:\Windows\system32\mscorier.dll
2013-07-07 13:16:21 ----A---- C:\Windows\system32\drivers\winusb.sys
2013-07-07 13:16:21 ----A---- C:\Windows\system32\drivers\usbvideo.sys
2013-07-07 13:16:19 ----A---- C:\Windows\SYSWOW64\AuxiliaryDisplayCpl.dll
2013-07-07 13:16:19 ----A---- C:\Windows\system32\drivers\volmgrx.sys
2013-07-07 13:16:19 ----A---- C:\Windows\system32\dps.dll
2013-07-07 13:16:18 ----A---- C:\Windows\system32\SmiEngine.dll
2013-07-07 13:16:17 ----A---- C:\Windows\SYSWOW64\QAGENT.DLL
2013-07-07 13:16:17 ----A---- C:\Windows\system32\rdpsign.exe
2013-07-07 13:16:16 ----A---- C:\Windows\SYSWOW64\netid.dll
2013-07-07 13:16:16 ----A---- C:\Windows\system32\mprddm.dll
2013-07-07 13:16:16 ----A---- C:\Windows\system32\fontext.dll
2013-07-07 13:16:15 ----A---- C:\Windows\system32\Display.dll
2013-07-07 13:16:15 ----A---- C:\Windows\system32\AxInstSv.dll
2013-07-07 13:16:14 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2013-07-07 13:16:14 ----A---- C:\Windows\system32\drivers\hidclass.sys
2013-07-07 13:16:14 ----A---- C:\Windows\system32\credssp.dll
2013-07-07 13:16:13 ----A---- C:\Windows\system32\batmeter.dll
2013-07-07 13:16:12 ----A---- C:\Windows\SYSWOW64\wdc.dll
2013-07-07 13:16:12 ----A---- C:\Windows\system32\mblctr.exe
2013-07-07 13:16:11 ----A---- C:\Windows\SYSWOW64\StructuredQuery.dll
2013-07-07 13:16:10 ----A---- C:\Windows\SYSWOW64\scesrv.dll
2013-07-07 13:16:09 ----A---- C:\Windows\system32\wmpsrcwp.dll
2013-07-07 13:16:06 ----A---- C:\Windows\SYSWOW64\untfs.dll
2013-07-07 13:16:06 ----A---- C:\Windows\SYSWOW64\rastls.dll
2013-07-07 13:16:05 ----A---- C:\Windows\SYSWOW64\Vault.dll
2013-07-07 13:16:05 ----A---- C:\Windows\SYSWOW64\nci.dll
2013-07-07 13:16:04 ----A---- C:\Windows\SYSWOW64\wlanpref.dll
2013-07-07 13:16:04 ----A---- C:\Windows\SYSWOW64\RpcRtRemote.dll
2013-07-07 13:16:04 ----A---- C:\Windows\system32\DiagCpl.dll
2013-07-07 13:16:03 ----A---- C:\Windows\SYSWOW64\WMNetMgr.dll
2013-07-07 13:16:03 ----A---- C:\Windows\system32\rtutils.dll
2013-07-07 13:16:02 ----A---- C:\Windows\SYSWOW64\Robocopy.exe
2013-07-07 13:16:02 ----A---- C:\Windows\system32\usercpl.dll
2013-07-07 13:16:02 ----A---- C:\Windows\system32\provsvc.dll
2013-07-07 13:16:02 ----A---- C:\Windows\system32\bootres.dll
2013-07-07 13:16:00 ----A---- C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2013-07-07 13:15:59 ----A---- C:\Windows\system32\wpccpl.dll
2013-07-07 13:15:58 ----A---- C:\Windows\system32\sppsvc.exe
2013-07-07 13:15:56 ----A---- C:\Windows\SYSWOW64\DxpTaskSync.dll
2013-07-07 13:15:55 ----A---- C:\Windows\system32\rasppp.dll
2013-07-07 13:15:54 ----A---- C:\Windows\SYSWOW64\taskmgr.exe
2013-07-07 13:15:54 ----A---- C:\Windows\system32\drivers\winhv.sys
2013-07-07 13:15:53 ----A---- C:\Windows\system32\SndVolSSO.dll
2013-07-07 13:15:53 ----A---- C:\Windows\system32\dot3cfg.dll
2013-07-07 13:15:52 ----A---- C:\Windows\SYSWOW64\mtxclu.dll
2013-07-07 13:15:52 ----A---- C:\Windows\SYSWOW64\Display.dll
2013-07-07 13:15:52 ----A---- C:\Windows\system32\drivers\rdyboost.sys
2013-07-07 13:15:51 ----A---- C:\Windows\system32\dxdiagn.dll
2013-07-07 13:15:49 ----A---- C:\Windows\SYSWOW64\XpsRasterService.dll
2013-07-07 13:15:49 ----A---- C:\Windows\SYSWOW64\userinit.exe
2013-07-07 13:15:49 ----A---- C:\Windows\system32\hbaapi.dll
2013-07-07 13:15:48 ----A---- C:\Windows\SYSWOW64\puiobj.dll
2013-07-07 13:15:48 ----A---- C:\Windows\system32\taskmgr.exe
2013-07-07 13:15:47 ----A---- C:\Windows\SYSWOW64\termmgr.dll
2013-07-07 13:15:47 ----A---- C:\Windows\SYSWOW64\eudcedit.exe
2013-07-07 13:15:47 ----A---- C:\Windows\system32\prnfldr.dll
2013-07-07 13:15:46 ----A---- C:\Windows\system32\proquota.exe
2013-07-07 13:15:46 ----A---- C:\Windows\system32\pdh.dll
2013-07-07 13:15:45 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2013-07-07 13:15:45 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2013-07-07 13:15:44 ----A---- C:\Windows\system32\drivers\ataport.sys
2013-07-07 13:15:43 ----A---- C:\Windows\system32\MSAC3ENC.DLL
2013-07-07 13:15:42 ----A---- C:\Windows\SYSWOW64\shsetup.dll
2013-07-07 13:15:42 ----A---- C:\Windows\SYSWOW64\rasppp.dll
2013-07-07 13:15:42 ----A---- C:\Windows\SYSWOW64\logoncli.dll
2013-07-07 13:15:42 ----A---- C:\Windows\system32\untfs.dll
2013-07-07 13:15:41 ----A---- C:\Windows\SYSWOW64\wiadefui.dll
2013-07-07 13:15:41 ----A---- C:\Windows\SYSWOW64\sppcomapi.dll
2013-07-07 13:15:41 ----A---- C:\Windows\SYSWOW64\cabview.dll
2013-07-07 13:15:40 ----A---- C:\Windows\system32\userinit.exe
2013-07-07 13:15:39 ----A---- C:\Windows\SYSWOW64\FirewallControlPanel.dll
2013-07-07 13:15:39 ----A---- C:\Windows\system32\accessibilitycpl.dll
2013-07-07 13:15:37 ----A---- C:\Windows\SYSWOW64\themecpl.dll
2013-07-07 13:15:37 ----A---- C:\Windows\SYSWOW64\SensorsCpl.dll
2013-07-07 13:15:35 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2013-07-07 13:15:35 ----A---- C:\Windows\SYSWOW64\dnscmmc.dll
2013-07-07 13:15:35 ----A---- C:\Windows\system32\zipfldr.dll
2013-07-07 13:15:35 ----A---- C:\Windows\system32\slui.exe
2013-07-07 13:15:35 ----A---- C:\Windows\system32\drivers\storvsc.sys
2013-07-07 13:15:34 ----A---- C:\Windows\SYSWOW64\PhotoScreensaver.scr
2013-07-07 13:15:34 ----A---- C:\Windows\SYSWOW64\hgcpl.dll
2013-07-07 13:15:34 ----A---- C:\Windows\system32\msieftp.dll
2013-07-07 13:15:34 ----A---- C:\Windows\system32\defaultlocationcpl.dll
2013-07-07 13:15:32 ----A---- C:\Windows\SYSWOW64\scecli.dll
2013-07-07 13:15:32 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2013-07-07 13:15:31 ----A---- C:\Windows\SYSWOW64\tapisrv.dll
2013-07-07 13:15:31 ----A---- C:\Windows\SYSWOW64\mscories.dll
2013-07-07 13:15:31 ----A---- C:\Windows\SYSWOW64\fontext.dll
2013-07-07 13:15:31 ----A---- C:\Windows\system32\sud.dll
2013-07-07 13:15:30 ----A---- C:\Windows\SYSWOW64\mscms.dll
2013-07-07 13:15:30 ----A---- C:\Windows\SYSWOW64\mprddm.dll
2013-07-07 13:15:30 ----A---- C:\Windows\SYSWOW64\localsec.dll
2013-07-07 13:15:30 ----A---- C:\Windows\system32\dot3svc.dll
2013-07-07 13:15:30 ----A---- C:\Windows\system32\DeviceCenter.dll
2013-07-07 13:15:29 ----A---- C:\Windows\SYSWOW64\iasacct.dll
2013-07-07 13:15:29 ----A---- C:\Windows\system32\OnLineIDCpl.dll
2013-07-07 13:15:29 ----A---- C:\Windows\system32\networkmap.dll
2013-07-07 13:15:28 ----A---- C:\Windows\SYSWOW64\SndVolSSO.dll
2013-07-07 13:15:28 ----A---- C:\Windows\system32\taskbarcpl.dll
2013-07-07 13:15:28 ----A---- C:\Windows\system32\cryptui.dll
2013-07-07 13:15:28 ----A---- C:\Windows\system32\ActionCenter.dll
2013-07-07 13:15:27 ----A---- C:\Windows\SYSWOW64\usercpl.dll
2013-07-07 13:15:27 ----A---- C:\Windows\SYSWOW64\PerfCenterCPL.dll
2013-07-07 13:15:27 ----A---- C:\Windows\system32\twext.dll
2013-07-07 13:15:26 ----A---- C:\Windows\SYSWOW64\wlanui.dll
2013-07-07 13:15:26 ----A---- C:\Windows\SYSWOW64\VAN.dll
2013-07-07 13:15:26 ----A---- C:\Windows\SYSWOW64\prntvpt.dll
2013-07-07 13:15:26 ----A---- C:\Windows\SYSWOW64\netcenter.dll
2013-07-07 13:15:26 ----A---- C:\Windows\SYSWOW64\batmeter.dll
2013-07-07 13:15:25 ----A---- C:\Windows\SYSWOW64\w32tm.exe
2013-07-07 13:15:25 ----A---- C:\Windows\SYSWOW64\SndVol.exe
2013-07-07 13:15:25 ----A---- C:\Windows\system32\uxlib.dll
2013-07-07 13:15:25 ----A---- C:\Windows\system32\recovery.dll
2013-07-07 13:15:25 ----A---- C:\Windows\system32\OobeFldr.dll
2013-07-07 13:15:25 ----A---- C:\Windows\system32\drivers\hwpolicy.sys
2013-07-07 13:15:25 ----A---- C:\Windows\system32\bcdedit.exe
2013-07-07 13:15:24 ----A---- C:\Windows\system32\dsuiext.dll
2013-07-07 13:15:24 ----A---- C:\Windows\system32\cca.dll
2013-07-07 13:15:24 ----A---- C:\Windows\system32\azroleui.dll
2013-07-07 13:15:23 ----A---- C:\Windows\SYSWOW64\spwizeng.dll
2013-07-07 13:15:23 ----A---- C:\Windows\SYSWOW64\azroleui.dll
2013-07-07 13:15:23 ----A---- C:\Windows\SYSWOW64\accessibilitycpl.dll
2013-07-07 13:15:23 ----A---- C:\Windows\system32\sisbkup.dll
2013-07-07 13:15:23 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2013-07-07 13:15:23 ----A---- C:\Windows\system32\isoburn.exe
2013-07-07 13:15:23 ----A---- C:\Windows\system32\asycfilt.dll
2013-07-07 13:15:22 ----A---- C:\Windows\system32\tzutil.exe
2013-07-07 13:15:22 ----A---- C:\Windows\system32\efscore.dll
2013-07-07 13:15:21 ----A---- C:\Windows\SYSWOW64\zipfldr.dll
2013-07-07 13:15:21 ----A---- C:\Windows\SYSWOW64\fdeploy.dll
2013-07-07 13:15:21 ----A---- C:\Windows\system32\syncui.dll
2013-07-07 13:15:21 ----A---- C:\Windows\system32\sdcpl.dll
2013-07-07 13:15:21 ----A---- C:\Windows\system32\recdisc.exe
2013-07-07 13:15:21 ----A---- C:\Windows\system32\drivers\sdbus.sys
2013-07-07 13:15:20 ----A---- C:\Windows\SYSWOW64\MSAC3ENC.DLL
2013-07-07 13:15:20 ----A---- C:\Windows\system32\systemcpl.dll
2013-07-07 13:15:20 ----A---- C:\Windows\system32\netplwiz.dll
2013-07-07 13:15:20 ----A---- C:\Windows\system32\httpapi.dll
2013-07-07 13:15:19 ----A---- C:\Windows\SYSWOW64\cryptui.dll
2013-07-07 13:15:19 ----A---- C:\Windows\system32\shwebsvc.dll
2013-07-07 13:15:19 ----A---- C:\Windows\system32\fvecpl.dll
2013-07-07 13:15:19 ----A---- C:\Windows\system32\drivers\mpio.sys
2013-07-07 13:15:19 ----A---- C:\Windows\system32\autoplay.dll
2013-07-07 13:15:18 ----A---- C:\Windows\SYSWOW64\netjoin.dll
2013-07-07 13:15:17 ----A---- C:\Windows\SYSWOW64\adsldp.dll
2013-07-07 13:15:17 ----A---- C:\Windows\system32\certcli.dll
2013-07-07 13:15:16 ----A---- C:\Windows\SYSWOW64\networkmap.dll
2013-07-07 13:15:16 ----A---- C:\Windows\system32\sysclass.dll
2013-07-07 13:15:16 ----A---- C:\Windows\system32\ncryptui.dll
2013-07-07 13:15:16 ----A---- C:\Windows\system32\drivers\rdpdr.sys
2013-07-07 13:15:15 ----A---- C:\Windows\system32\wlanmsm.dll
2013-07-07 13:15:15 ----A---- C:\Windows\system32\sdrsvc.dll
2013-07-07 13:15:15 ----A---- C:\Windows\system32\ActionCenterCPL.dll
2013-07-07 13:15:14 ----A---- C:\Windows\SYSWOW64\wusa.exe
2013-07-07 13:15:14 ----A---- C:\Windows\SYSWOW64\Faultrep.dll
2013-07-07 13:15:14 ----A---- C:\Windows\system32\msvidc32.dll
2013-07-07 13:15:13 ----A---- C:\Windows\SYSWOW64\MCEWMDRMNDBootstrap.dll
2013-07-07 13:15:13 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2013-07-07 13:15:12 ----A---- C:\Windows\SYSWOW64\prnfldr.dll
2013-07-07 13:15:12 ----A---- C:\Windows\SYSWOW64\OnLineIDCpl.dll
2013-07-07 13:15:12 ----A---- C:\Windows\system32\spwizeng.dll
2013-07-07 13:15:11 ----A---- C:\Windows\SYSWOW64\sud.dll
2013-07-07 13:15:11 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2013-07-07 13:15:11 ----A---- C:\Windows\SYSWOW64\ActionCenter.dll
2013-07-07 13:15:11 ----A---- C:\Windows\system32\vdsutil.dll
2013-07-07 13:15:11 ----A---- C:\Windows\system32\MFPlay.dll
2013-07-07 13:15:10 ----A---- C:\Windows\SYSWOW64\photowiz.dll
2013-07-07 13:15:10 ----A---- C:\Windows\SYSWOW64\MediaMetadataHandler.dll
2013-07-07 13:15:09 ----A---- C:\Windows\SYSWOW64\credssp.dll
2013-07-07 13:15:09 ----A---- C:\Windows\system32\termmgr.dll
2013-07-07 13:15:07 ----A---- C:\Windows\SYSWOW64\iasrad.dll
2013-07-07 13:15:07 ----A---- C:\Windows\system32\sethc.exe
2013-07-07 13:15:07 ----A---- C:\Windows\system32\msscp.dll
2013-07-07 13:15:06 ----A---- C:\Windows\SYSWOW64\iprtrmgr.dll
2013-07-07 13:15:06 ----A---- C:\Windows\SYSWOW64\defaultlocationcpl.dll
2013-07-07 13:15:06 ----A---- C:\Windows\system32\ntlanman.dll
2013-07-07 13:15:05 ----A---- C:\Windows\SYSWOW64\ftp.exe
2013-07-07 13:15:05 ----A---- C:\Windows\SYSWOW64\dot3cfg.dll
2013-07-07 13:15:05 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2013-07-07 13:15:05 ----A---- C:\Windows\system32\ReAgent.dll
2013-07-07 13:15:03 ----A---- C:\Windows\SYSWOW64\sisbkup.dll
2013-07-07 13:15:03 ----A---- C:\Windows\SYSWOW64\ifsutil.dll
2013-07-07 13:15:03 ----A---- C:\Windows\system32\sqlcese30.dll
2013-07-07 13:15:03 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2013-07-07 13:15:02 ----A---- C:\Windows\SYSWOW64\shwebsvc.dll
2013-07-07 13:15:02 ----A---- C:\Windows\system32\rdpd3d.dll
2013-07-07 13:15:02 ----A---- C:\Windows\system32\iprtrmgr.dll
2013-07-07 13:15:01 ----A---- C:\Windows\SYSWOW64\efscore.dll
2013-07-07 13:15:01 ----A---- C:\Windows\system32\UserAccountControlSettings.dll
2013-07-07 13:14:59 ----A---- C:\Windows\system32\ssText3d.scr
2013-07-07 13:14:59 ----A---- C:\Windows\system32\iTVData.dll
2013-07-07 13:14:58 ----A---- C:\Windows\SYSWOW64\ActionCenterCPL.dll
2013-07-07 13:14:58 ----A---- C:\Windows\system32\iyuv_32.dll
2013-07-07 13:14:58 ----A---- C:\Windows\system32\drivers\vmstorfl.sys
2013-07-07 13:14:57 ----A---- C:\Windows\SYSWOW64\syncui.dll
2013-07-07 13:14:57 ----A---- C:\Windows\SYSWOW64\autoplay.dll
2013-07-07 13:14:57 ----A---- C:\Windows\system32\wmdrmsdk.dll
2013-07-07 13:14:57 ----A---- C:\Windows\system32\slwga.dll
2013-07-07 13:14:56 ----A---- C:\Windows\SYSWOW64\ntlanman.dll
2013-07-07 13:14:56 ----A---- C:\Windows\SYSWOW64\DeviceCenter.dll
2013-07-07 13:14:56 ----A---- C:\Windows\system32\srvcli.dll
2013-07-07 13:14:56 ----A---- C:\Windows\system32\drmmgrtn.dll
2013-07-07 13:14:55 ----A---- C:\Windows\SYSWOW64\wmpmde.dll
2013-07-07 13:14:55 ----A---- C:\Windows\SYSWOW64\rtutils.dll
2013-07-07 13:14:55 ----A---- C:\Windows\SYSWOW64\dskquoui.dll
2013-07-07 13:14:55 ----A---- C:\Windows\system32\nslookup.exe
2013-07-07 13:14:55 ----A---- C:\Windows\system32\msiexec.exe
2013-07-07 13:14:54 ----A---- C:\Windows\SYSWOW64\OobeFldr.dll
2013-07-07 13:14:54 ----A---- C:\Windows\system32\wavemsp.dll
2013-07-07 13:14:54 ----A---- C:\Windows\system32\ntprint.dll
2013-07-07 13:14:54 ----A---- C:\Windows\system32\NAPHLPR.DLL
2013-07-07 13:14:54 ----A---- C:\Windows\system32\DevicePairingFolder.dll
2013-07-07 13:14:54 ----A---- C:\Windows\system32\acppage.dll
2013-07-07 13:14:53 ----A---- C:\Windows\SYSWOW64\systemcpl.dll
2013-07-07 13:14:53 ----A---- C:\Windows\SYSWOW64\SmartcardCredentialProvider.dll
2013-07-07 13:14:53 ----A---- C:\Windows\SYSWOW64\ntprint.dll
2013-07-07 13:14:52 ----A---- C:\Windows\SYSWOW64\sethc.exe
2013-07-07 13:14:52 ----A---- C:\Windows\SYSWOW64\riched20.dll
2013-07-07 13:14:52 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2013-07-07 13:14:52 ----A---- C:\Windows\system32\srrstr.dll
2013-07-07 13:14:52 ----A---- C:\Windows\system32\bcdboot.exe
2013-07-07 13:14:51 ----A---- C:\Windows\SYSWOW64\blackbox.dll
2013-07-07 13:14:51 ----A---- C:\Windows\system32\sppnp.dll
2013-07-07 13:14:50 ----A---- C:\Windows\SYSWOW64\netplwiz.dll
2013-07-07 13:14:50 ----A---- C:\Windows\SYSWOW64\NAPHLPR.DLL
2013-07-07 13:14:50 ----A---- C:\Windows\SYSWOW64\activeds.dll
2013-07-07 13:14:50 ----A---- C:\Windows\system32\TSpkg.dll
2013-07-07 13:14:50 ----A---- C:\Windows\system32\certprop.dll
2013-07-07 13:14:49 ----A---- C:\Windows\SYSWOW64\wmpsrcwp.dll
2013-07-07 13:14:49 ----A---- C:\Windows\SYSWOW64\migisol.dll
2013-07-07 13:14:49 ----A---- C:\Windows\SYSWOW64\fms.dll
2013-07-07 13:14:48 ----A---- C:\Windows\SYSWOW64\httpapi.dll
2013-07-07 13:14:48 ----A---- C:\Windows\SYSWOW64\dpx.dll
2013-07-07 13:14:48 ----A---- C:\Windows\system32\remotepg.dll
2013-07-07 13:14:48 ----A---- C:\Windows\system32\networkexplorer.dll
2013-07-07 13:14:48 ----A---- C:\Windows\system32\cabinet.dll
2013-07-07 13:14:47 ----A---- C:\Windows\SYSWOW64\nshipsec.dll
2013-07-07 13:14:47 ----A---- C:\Windows\SYSWOW64\asycfilt.dll
2013-07-07 13:14:47 ----A---- C:\Windows\system32\wkscli.dll
2013-07-07 13:14:47 ----A---- C:\Windows\system32\PresentationSettings.exe
2013-07-07 13:14:46 ----A---- C:\Windows\SYSWOW64\isoburn.exe
2013-07-07 13:14:46 ----A---- C:\Windows\system32\dfrgui.exe
2013-07-07 13:14:45 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2013-07-07 13:14:45 ----A---- C:\Windows\SYSWOW64\wlanmsm.dll
2013-07-07 13:14:45 ----A---- C:\Windows\SYSWOW64\wavemsp.dll
2013-07-07 13:14:45 ----A---- C:\Windows\SYSWOW64\ReAgent.dll
2013-07-07 13:14:45 ----A---- C:\Windows\SYSWOW64\msftedit.dll
2013-07-07 13:14:45 ----A---- C:\Windows\system32\WinSCard.dll
2013-07-07 13:14:45 ----A---- C:\Windows\system32\ftp.exe
2013-07-07 13:14:44 ----A---- C:\Windows\SYSWOW64\provsvc.dll
2013-07-07 13:14:44 ----A---- C:\Windows\SYSWOW64\dot3ui.dll
2013-07-07 13:14:44 ----A---- C:\Windows\system32\wsnmp32.dll
2013-07-07 13:14:44 ----A---- C:\Windows\system32\wmpdxm.dll
2013-07-07 13:14:44 ----A---- C:\Windows\system32\net1.exe
2013-07-07 13:14:43 ----A---- C:\Windows\SYSWOW64\dsuiext.dll
2013-07-07 13:14:43 ----A---- C:\Windows\SYSWOW64\dfrgui.exe
2013-07-07 13:14:43 ----A---- C:\Windows\system32\wvc.dll
2013-07-07 13:14:42 ----A---- C:\Windows\SYSWOW64\tzutil.exe
2013-07-07 13:14:42 ----A---- C:\Windows\SYSWOW64\ocsetup.exe
2013-07-07 13:14:42 ----A---- C:\Windows\system32\wsqmcons.exe
2013-07-07 13:14:42 ----A---- C:\Windows\system32\wmdrmdev.dll
2013-07-07 13:14:42 ----A---- C:\Windows\system32\WerFaultSecure.exe
2013-07-07 13:14:42 ----A---- C:\Windows\system32\blackbox.dll
2013-07-07 13:14:41 ----A---- C:\Windows\SYSWOW64\wtsapi32.dll
2013-07-07 13:14:40 ----A---- C:\Windows\SYSWOW64\wvc.dll
2013-07-07 13:14:40 ----A---- C:\Windows\SYSWOW64\wimgapi.dll
2013-07-07 13:14:40 ----A---- C:\Windows\SYSWOW64\AdmTmpl.dll
2013-07-07 13:14:40 ----A---- C:\Windows\system32\mfps.dll
2013-07-07 13:14:39 ----A---- C:\Windows\SYSWOW64\PkgMgr.exe
2013-07-07 13:14:39 ----A---- C:\Windows\SYSWOW64\mstask.dll
2013-07-07 13:14:39 ----A---- C:\Windows\system32\msyuv.dll
2013-07-07 13:14:38 ----A---- C:\Windows\SYSWOW64\twext.dll
2013-07-07 13:14:37 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2013-07-07 13:14:37 ----A---- C:\Windows\system32\mapistub.dll
2013-07-07 13:14:37 ----A---- C:\Windows\system32\mapi32.dll
2013-07-07 13:14:37 ----A---- C:\Windows\system32\Bubbles.scr
2013-07-07 13:14:36 ----A---- C:\Windows\twain_32.dll
2013-07-07 13:14:36 ----A---- C:\Windows\system32\OpcServices.dll
2013-07-07 13:14:35 ----A---- C:\Windows\SYSWOW64\setupugc.exe
2013-07-07 13:14:35 ----A---- C:\Windows\SYSWOW64\qcap.dll
2013-07-07 13:14:35 ----A---- C:\Windows\system32\unimdmat.dll
2013-07-07 13:14:35 ----A---- C:\Windows\system32\msrle32.dll
2013-07-07 13:14:34 ----A---- C:\Windows\SYSWOW64\qasf.dll
2013-07-07 13:14:34 ----A---- C:\Windows\system32\iscsium.dll
2013-07-07 13:14:32 ----A---- C:\Windows\SYSWOW64\uxlib.dll
2013-07-07 13:14:32 ----A---- C:\Windows\SYSWOW64\slwga.dll
2013-07-07 13:14:32 ----A---- C:\Windows\system32\tsbyuv.dll
2013-07-07 13:14:32 ----A---- C:\Windows\system32\seclogon.dll
2013-07-07 13:14:32 ----A---- C:\Windows\system32\ifsutil.dll
2013-07-07 13:14:32 ----A---- C:\Windows\system32\diskraid.exe
2013-07-07 13:14:31 ----A---- C:\Windows\SYSWOW64\ssText3d.scr
2013-07-07 13:14:31 ----A---- C:\Windows\system32\Ribbons.scr
2013-07-07 13:14:31 ----A---- C:\Windows\system32\Mystify.scr
2013-07-07 13:14:30 ----A---- C:\Windows\SYSWOW64\msvfw32.dll
2013-07-07 13:14:30 ----A---- C:\Windows\system32\drivers\umbus.sys
2013-07-07 13:14:29 ----A---- C:\Windows\SYSWOW64\nslookup.exe
2013-07-07 13:14:29 ----A---- C:\Windows\SYSWOW64\mciavi32.dll
2013-07-07 13:14:29 ----A---- C:\Windows\SYSWOW64\audiodev.dll
2013-07-07 13:14:29 ----A---- C:\Windows\system32\muifontsetup.dll
2013-07-07 13:14:28 ----A---- C:\Windows\SYSWOW64\wmdrmsdk.dll
2013-07-07 13:14:28 ----A---- C:\Windows\SYSWOW64\clusapi.dll
2013-07-07 13:14:28 ----A---- C:\Windows\system32\wmpshell.dll
2013-07-07 13:14:28 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeResults.exe
2013-07-07 13:14:28 ----A---- C:\Windows\system32\perfmon.exe
2013-07-07 13:14:27 ----A---- C:\Windows\SYSWOW64\DevicePairingFolder.dll
2013-07-07 13:14:27 ----A---- C:\Windows\system32\rdpencom.dll
2013-07-07 13:14:26 ----A---- C:\Windows\SYSWOW64\WPDShServiceObj.dll
2013-07-07 13:14:26 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2013-07-07 13:14:25 ----A---- C:\Windows\SYSWOW64\msscp.dll
2013-07-07 13:14:25 ----A---- C:\Windows\SYSWOW64\diskraid.exe
2013-07-07 13:14:25 ----A---- C:\Windows\system32\netutils.dll
2013-07-07 13:14:25 ----A---- C:\Windows\system32\AzSqlExt.dll
2013-07-07 13:14:24 ----A---- C:\Windows\SYSWOW64\wimserv.exe
2013-07-07 13:14:24 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2013-07-07 13:14:24 ----A---- C:\Windows\SYSWOW64\rdpencom.dll
2013-07-07 13:14:24 ----A---- C:\Windows\SYSWOW64\acppage.dll
2013-07-07 13:14:24 ----A---- C:\Windows\system32\umb.dll
2013-07-07 13:14:24 ----A---- C:\Windows\system32\tlscsp.dll
2013-07-07 13:14:24 ----A---- C:\Windows\system32\qasf.dll
2013-07-07 13:14:24 ----A---- C:\Windows\system32\NAPCRYPT.DLL
2013-07-07 13:14:24 ----A---- C:\Windows\system32\dbghelp.dll
2013-07-07 13:14:24 ----A---- C:\Windows\system32\ActionQueue.dll
2013-07-07 13:14:23 ----A---- C:\Windows\SYSWOW64\remotepg.dll
2013-07-07 13:14:23 ----A---- C:\Windows\SYSWOW64\perfmon.exe
2013-07-07 13:14:23 ----A---- C:\Windows\system32\runonce.exe
2013-07-07 13:14:23 ----A---- C:\Windows\system32\FXSAPI.dll
2013-07-07 13:14:22 ----A---- C:\Windows\SYSWOW64\raschap.dll
2013-07-07 13:14:22 ----A---- C:\Windows\SYSWOW64\drmmgrtn.dll
2013-07-07 13:14:22 ----A---- C:\Windows\system32\raschap.dll
2013-07-07 13:14:22 ----A---- C:\Windows\bfsvc.exe
2013-07-07 13:14:21 ----A---- C:\Windows\SYSWOW64\QUTIL.DLL
2013-07-07 13:14:21 ----A---- C:\Windows\SYSWOW64\NAPCRYPT.DLL
2013-07-07 13:14:21 ----A---- C:\Windows\SYSWOW64\input.dll
2013-07-07 13:14:21 ----A---- C:\Windows\system32\wpdwcn.dll
2013-07-07 13:14:21 ----A---- C:\Windows\system32\wiavideo.dll
2013-07-07 13:14:20 ----A---- C:\Windows\SYSWOW64\networkexplorer.dll
2013-07-07 13:14:20 ----A---- C:\Windows\system32\WMADMOD.DLL
2013-07-07 13:14:20 ----A---- C:\Windows\system32\syssetup.dll
2013-07-07 13:14:19 ----A---- C:\Windows\SYSWOW64\vpnikeapi.dll
2013-07-07 13:14:19 ----A---- C:\Windows\SYSWOW64\UserAccountControlSettings.dll
2013-07-07 13:14:19 ----A---- C:\Windows\SYSWOW64\olepro32.dll
2013-07-07 13:14:19 ----A---- C:\Windows\SYSWOW64\ocsetapi.dll
2013-07-07 13:14:19 ----A---- C:\Windows\system32\PrintIsolationProxy.dll
2013-07-07 13:14:19 ----A---- C:\Windows\system32\MdSched.exe
2013-07-07 13:14:18 ----A---- C:\Windows\SYSWOW64\wmpdxm.dll
2013-07-07 13:14:18 ----A---- C:\Windows\SYSWOW64\onexui.dll
2013-07-07 13:14:18 ----A---- C:\Windows\SYSWOW64\iTVData.dll
2013-07-07 13:14:18 ----A---- C:\Windows\system32\WMVSDECD.DLL
2013-07-07 13:14:18 ----A---- C:\Windows\system32\vdsbas.dll
2013-07-07 13:14:17 ----A---- C:\Windows\SYSWOW64\wpdwcn.dll
2013-07-07 13:14:17 ----A---- C:\Windows\SYSWOW64\vdsbas.dll
2013-07-07 13:14:17 ----A---- C:\Windows\SYSWOW64\runonce.exe
2013-07-07 13:14:17 ----A---- C:\Windows\SYSWOW64\dxdiagn.dll
2013-07-07 13:14:17 ----A---- C:\Windows\system32\mstask.dll
2013-07-07 13:14:17 ----A---- C:\Windows\system32\Mcx2Svc.dll
2013-07-07 13:14:17 ----A---- C:\Windows\system32\drivers\rmcast.sys
2013-07-07 13:14:16 ----A---- C:\Windows\SYSWOW64\logagent.exe
2013-07-07 13:14:16 ----A---- C:\Windows\system32\nltest.exe
2013-07-07 13:14:16 ----A---- C:\Windows\system32\bitsadmin.exe
2013-07-07 13:14:15 ----A---- C:\Windows\SYSWOW64\msvidc32.dll
2013-07-07 13:14:15 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2013-07-07 13:14:15 ----A---- C:\Windows\SYSWOW64\MFPlay.dll
2013-07-07 13:14:15 ----A---- C:\Windows\SYSWOW64\eapp3hst.dll
2013-07-07 13:14:15 ----A---- C:\Windows\system32\shacct.dll
2013-07-07 13:14:15 ----A---- C:\Windows\system32\cscapi.dll
2013-07-07 13:14:14 ----A---- C:\Windows\SYSWOW64\wmdrmdev.dll
2013-07-07 13:14:14 ----A---- C:\Windows\SYSWOW64\shacct.dll
2013-07-07 13:14:14 ----A---- C:\Windows\system32\wmdrmnet.dll
2013-07-07 13:14:14 ----A---- C:\Windows\system32\vss_ps.dll
2013-07-07 13:14:14 ----A---- C:\Windows\system32\tabcal.exe
2013-07-07 13:14:14 ----A---- C:\Windows\system32\QSVRMGMT.DLL
2013-07-07 13:14:14 ----A---- C:\Windows\system32\logman.exe
2013-07-07 13:14:13 ----A---- C:\Windows\SYSWOW64\wmpshell.dll
2013-07-07 13:14:13 ----A---- C:\Windows\SYSWOW64\bitsadmin.exe
2013-07-07 13:14:13 ----A---- C:\Windows\system32\WPDSp.dll
2013-07-07 13:14:13 ----A---- C:\Windows\system32\qcap.dll
2013-07-07 13:14:12 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2013-07-07 13:14:12 ----A---- C:\Windows\SYSWOW64\unimdmat.dll
2013-07-07 13:14:12 ----A---- C:\Windows\SYSWOW64\lsmproxy.dll
2013-07-07 13:14:12 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2013-07-07 13:14:12 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2013-07-07 13:14:12 ----A---- C:\Windows\system32\msnetobj.dll
2013-07-07 13:14:12 ----A---- C:\Windows\system32\CscMig.dll
2013-07-07 13:14:11 ----A---- C:\Windows\SYSWOW64\sqlcese30.dll
2013-07-07 13:14:11 ----A---- C:\Windows\SYSWOW64\rdpd3d.dll
2013-07-07 13:14:11 ----A---- C:\Windows\SYSWOW64\mprapi.dll
2013-07-07 13:14:11 ----A---- C:\Windows\SYSWOW64\iscsium.dll
2013-07-07 13:14:11 ----A---- C:\Windows\SYSWOW64\Bubbles.scr
2013-07-07 13:14:11 ----A---- C:\Windows\system32\vmictimeprovider.dll
2013-07-07 13:14:11 ----A---- C:\Windows\system32\secproc_ssp.dll
2013-07-07 13:14:11 ----A---- C:\Windows\system32\qdv.dll
2013-07-07 13:14:11 ----A---- C:\Windows\system32\PortableDeviceSyncProvider.dll
2013-07-07 13:14:10 ----A---- C:\Windows\SYSWOW64\PortableDeviceSyncProvider.dll
2013-07-07 13:14:10 ----A---- C:\Windows\SYSWOW64\pdh.dll
2013-07-07 13:14:10 ----A---- C:\Windows\SYSWOW64\OpcServices.dll
2013-07-07 13:14:10 ----A---- C:\Windows\SYSWOW64\cscapi.dll
2013-07-07 13:14:10 ----A---- C:\Windows\system32\spbcd.dll
2013-07-07 13:14:09 ----A---- C:\Windows\SYSWOW64\WPDSp.dll
2013-07-07 13:14:09 ----A---- C:\Windows\SYSWOW64\srvcli.dll
2013-07-07 13:14:09 ----A---- C:\Windows\SYSWOW64\PortableDeviceStatus.dll
2013-07-07 13:14:09 ----A---- C:\Windows\SYSWOW64\olethk32.dll
2013-07-07 13:14:09 ----A---- C:\Windows\SYSWOW64\ncryptui.dll
2013-07-07 13:14:09 ----A---- C:\Windows\SYSWOW64\logman.exe
2013-07-07 13:14:09 ----A---- C:\Windows\system32\PortableDeviceStatus.dll
2013-07-07 13:14:09 ----A---- C:\Windows\system32\fphc.dll
2013-07-07 13:14:09 ----A---- C:\Windows\system32\drivers\ndisuio.sys
2013-07-07 13:14:09 ----A---- C:\Windows\system32\dot3ui.dll
2013-07-07 13:14:08 ----A---- C:\Windows\SYSWOW64\Ribbons.scr
2013-07-07 13:14:08 ----A---- C:\Windows\SYSWOW64\QSVRMGMT.DLL
2013-07-07 13:14:08 ----A---- C:\Windows\SYSWOW64\Mystify.scr
2013-07-07 13:14:08 ----A---- C:\Windows\system32\takeown.exe
2013-07-07 13:14:08 ----A---- C:\Windows\system32\PnPUnattend.exe
2013-07-07 13:14:07 ----A---- C:\Windows\SYSWOW64\WMADMOD.DLL
2013-07-07 13:14:07 ----A---- C:\Windows\SYSWOW64\utildll.dll
2013-07-07 13:14:07 ----A---- C:\Windows\SYSWOW64\mapistub.dll
2013-07-07 13:14:07 ----A---- C:\Windows\SYSWOW64\mapi32.dll
2013-07-07 13:14:07 ----A---- C:\Windows\system32\amstream.dll
2013-07-07 13:14:06 ----A---- C:\Windows\SYSWOW64\wiavideo.dll
2013-07-07 13:14:06 ----A---- C:\Windows\SYSWOW64\takeown.exe
2013-07-07 13:14:06 ----A---- C:\Windows\SYSWOW64\fphc.dll
2013-07-07 13:14:06 ----A---- C:\Windows\SYSWOW64\dot3msm.dll
2013-07-07 13:14:06 ----A---- C:\Windows\SYSWOW64\avifil32.dll
2013-07-07 13:14:06 ----A---- C:\Windows\system32\EhStorAPI.dll
2013-07-07 13:14:05 ----A---- C:\Windows\SYSWOW64\WMVSDECD.DLL
2013-07-07 13:14:05 ----A---- C:\Windows\SYSWOW64\iyuv_32.dll
2013-07-07 13:14:05 ----A---- C:\Windows\system32\vfwwdm32.dll
2013-07-07 13:14:04 ----A---- C:\Windows\SYSWOW64\wmdrmnet.dll
2013-07-07 13:14:04 ----A---- C:\Windows\system32\shimgvw.dll
2013-07-07 13:14:04 ----A---- C:\Windows\system32\QCLIPROV.DLL
2013-07-07 13:14:04 ----A---- C:\Windows\system32\nrpsrv.dll
2013-07-07 13:14:04 ----A---- C:\Windows\system32\HotStartUserAgent.dll
2013-07-07 13:14:04 ----A---- C:\Windows\system32\djoin.exe
2013-07-07 13:14:04 ----A---- C:\Windows\system32\cmstp.exe
2013-07-07 13:14:03 ----A---- C:\Windows\SYSWOW64\qdv.dll
2013-07-07 13:14:03 ----A---- C:\Windows\SYSWOW64\EhStorAPI.dll
2013-07-07 13:14:03 ----A---- C:\Windows\system32\iasrecst.dll
2013-07-07 13:14:03 ----A---- C:\Windows\system32\CertPolEng.dll
2013-07-07 13:14:02 ----A---- C:\Windows\SYSWOW64\sppinst.dll
2013-07-07 13:14:02 ----A---- C:\Windows\SYSWOW64\QCLIPROV.DLL
2013-07-07 13:14:02 ----A---- C:\Windows\SYSWOW64\msyuv.dll
2013-07-07 13:14:02 ----A---- C:\Windows\SYSWOW64\msnetobj.dll
2013-07-07 13:14:02 ----A---- C:\Windows\system32\WavDest.dll
2013-07-07 13:14:01 ----A---- C:\Windows\SYSWOW64\vfwwdm32.dll
2013-07-07 13:14:01 ----A---- C:\Windows\SYSWOW64\MuiUnattend.exe
2013-07-07 13:14:01 ----A---- C:\Windows\SYSWOW64\msrle32.dll
2013-07-07 13:14:01 ----A---- C:\Windows\SYSWOW64\cmstp.exe
2013-07-07 13:14:01 ----A---- C:\Windows\SYSWOW64\cca.dll
2013-07-07 13:14:01 ----A---- C:\Windows\system32\KMSVC.DLL
2013-07-07 13:14:01 ----A---- C:\Windows\system32\fdProxy.dll
2013-07-07 13:14:01 ----A---- C:\Windows\system32\drivers\pacer.sys
2013-07-07 13:14:00 ----A---- C:\Windows\SYSWOW64\wsnmp32.dll
2013-07-07 13:14:00 ----A---- C:\Windows\SYSWOW64\WMSPDMOD.DLL
2013-07-07 13:14:00 ----A---- C:\Windows\SYSWOW64\setupcln.dll
2013-07-07 13:14:00 ----A---- C:\Windows\SYSWOW64\pdhui.dll
2013-07-07 13:14:00 ----A---- C:\Windows\system32\relog.exe
2013-07-07 13:14:00 ----A---- C:\Windows\system32\mydocs.dll
2013-07-07 13:14:00 ----A---- C:\Windows\system32\MultiDigiMon.exe
2013-07-07 13:13:59 ----A---- C:\Windows\SYSWOW64\tsbyuv.dll
2013-07-07 13:13:59 ----A---- C:\Windows\SYSWOW64\msorcl32.dll
2013-07-07 13:13:59 ----A---- C:\Windows\SYSWOW64\iasrecst.dll
2013-07-07 13:13:59 ----A---- C:\Windows\SYSWOW64\AzSqlExt.dll
2013-07-07 13:13:59 ----A---- C:\Windows\system32\sscore.dll
2013-07-07 13:13:59 ----A---- C:\Windows\system32\mobsync.exe
2013-07-07 13:13:59 ----A---- C:\Windows\system32\iscsicli.exe
2013-07-07 13:13:59 ----A---- C:\Windows\system32\diskpart.exe
2013-07-07 13:13:58 ----A---- C:\Windows\SYSWOW64\wkscli.dll
2013-07-07 13:13:58 ----A---- C:\Windows\SYSWOW64\spbcd.dll
2013-07-07 13:13:58 ----A---- C:\Windows\SYSWOW64\relog.exe
2013-07-07 13:13:58 ----A---- C:\Windows\SYSWOW64\netiougc.exe
2013-07-07 13:13:58 ----A---- C:\Windows\SYSWOW64\iscsicli.exe
2013-07-07 13:13:58 ----A---- C:\Windows\system32\itircl.dll
2013-07-07 13:13:58 ----A---- C:\Windows\system32\BWUnpairElevated.dll
2013-07-07 13:13:58 ----A---- C:\Windows\system32\BdeHdCfg.exe
2013-07-07 13:13:57 ----A---- C:\Windows\SYSWOW64\rastapi.dll
2013-07-07 13:13:57 ----A---- C:\Windows\SYSWOW64\mydocs.dll
2013-07-07 13:13:57 ----A---- C:\Windows\SYSWOW64\diskpart.exe
2013-07-07 13:13:57 ----A---- C:\Windows\SYSWOW64\amstream.dll
2013-07-07 13:13:57 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2013-07-07 13:13:57 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2013-07-07 13:13:57 ----A---- C:\Windows\system32\msdmo.dll
2013-07-07 13:13:57 ----A---- C:\Windows\system32\dot3msm.dll
2013-07-07 13:13:56 ----A---- C:\Windows\SYSWOW64\secproc_ssp_isv.dll
2013-07-07 13:13:56 ----A---- C:\Windows\SYSWOW64\secproc_ssp.dll
2013-07-07 13:13:56 ----A---- C:\Windows\SYSWOW64\resutils.dll
2013-07-07 13:13:56 ----A---- C:\Windows\SYSWOW64\netbtugc.exe
2013-07-07 13:13:56 ----A---- C:\Windows\SYSWOW64\itircl.dll
2013-07-07 13:13:55 ----A---- C:\Windows\SYSWOW64\syssetup.dll
2013-07-07 13:13:55 ----A---- C:\Windows\SYSWOW64\CertPolEng.dll
2013-07-07 13:13:54 ----A---- C:\Windows\SYSWOW64\wmpps.dll
2013-07-07 13:13:54 ----A---- C:\Windows\system32\qprocess.exe
2013-07-07 13:13:54 ----A---- C:\Windows\system32\FXSTIFF.dll
2013-07-07 13:13:53 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2013-07-07 13:13:53 ----A---- C:\Windows\SYSWOW64\WerFaultSecure.exe
2013-07-07 13:13:53 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp_isv.exe
2013-07-07 13:13:53 ----A---- C:\Windows\system32\mciqtz32.dll
2013-07-07 13:13:53 ----A---- C:\Windows\system32\choice.exe
2013-07-07 13:13:53 ----A---- C:\Windows\system32\findstr.exe
2013-07-07 13:13:53 ----A---- C:\Windows\system32\eappgnui.dll
2013-07-07 13:13:52 ----A---- C:\Windows\SYSWOW64\tlscsp.dll
2013-07-07 13:13:52 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp.exe
2013-07-07 13:13:52 ----A---- C:\Windows\SYSWOW64\ReAgentc.exe
2013-07-07 13:13:52 ----A---- C:\Windows\SYSWOW64\netutils.dll
2013-07-07 13:13:52 ----A---- C:\Windows\SYSWOW64\mciqtz32.dll
2013-07-07 13:13:52 ----A---- C:\Windows\SYSWOW64\findstr.exe
2013-07-07 13:13:52 ----A---- C:\Windows\SYSWOW64\eappgnui.dll
2013-07-07 13:13:52 ----A---- C:\Windows\system32\sppc.dll
2013-07-07 13:13:52 ----A---- C:\Windows\system32\onexui.dll
2013-07-07 13:13:52 ----A---- C:\Windows\system32\luainstall.dll
2013-07-07 13:13:52 ----A---- C:\Windows\system32\drivers\tunnel.sys
2013-07-07 13:13:51 ----A---- C:\Windows\SYSWOW64\mobsync.exe
2013-07-07 13:13:51 ----A---- C:\Windows\system32\chglogon.exe
2013-07-07 13:13:50 ----A---- C:\Windows\SYSWOW64\sppc.dll
2013-07-07 13:13:50 ----A---- C:\Windows\SYSWOW64\muifontsetup.dll
2013-07-07 13:13:50 ----A---- C:\Windows\SYSWOW64\iccvid.dll
2013-07-07 13:13:50 ----A---- C:\Windows\SYSWOW64\cabinet.dll
2013-07-07 13:13:50 ----A---- C:\Windows\system32\wdiasqmmodule.dll
2013-07-07 13:13:50 ----A---- C:\Windows\system32\schedcli.dll
2013-07-07 13:13:50 ----A---- C:\Windows\system32\repair-bde.exe
2013-07-07 13:13:50 ----A---- C:\Windows\system32\qappsrv.exe
2013-07-07 13:13:50 ----A---- C:\Windows\system32\manage-bde.exe
2013-07-07 13:13:50 ----A---- C:\Windows\system32\inetmib1.dll
2013-07-07 13:13:50 ----A---- C:\Windows\system32\drivers\dfsc.sys
2013-07-07 13:13:49 ----A---- C:\Windows\SYSWOW64\spopk.dll
2013-07-07 13:13:49 ----A---- C:\Windows\SYSWOW64\shimgvw.dll
2013-07-07 13:13:49 ----A---- C:\Windows\SYSWOW64\luainstall.dll
2013-07-07 13:13:49 ----A---- C:\Windows\system32\spopk.dll
2013-07-07 13:13:49 ----A---- C:\Windows\system32\RDPENCDD.dll
2013-07-07 13:13:48 ----A---- C:\Windows\SYSWOW64\unlodctr.exe
2013-07-07 13:13:48 ----A---- C:\Windows\SYSWOW64\msdmo.dll
2013-07-07 13:13:48 ----A---- C:\Windows\system32\odbcconf.dll
2013-07-07 13:13:48 ----A---- C:\Windows\system32\chgport.exe
2013-07-07 13:13:47 ----A---- C:\Windows\SYSWOW64\rdprefdrvapi.dll
2013-07-07 13:13:47 ----A---- C:\Windows\system32\vmstorfltres.dll
2013-07-07 13:13:47 ----A---- C:\Windows\system32\vmicres.dll
2013-07-07 13:13:47 ----A---- C:\Windows\system32\tscon.exe
2013-07-07 13:13:47 ----A---- C:\Windows\system32\logoff.exe
2013-07-07 13:13:47 ----A---- C:\Windows\system32\chgusr.exe
2013-07-07 13:13:47 ----A---- C:\Windows\system32\fixmapi.exe
2013-07-07 13:13:46 ----A---- C:\Windows\SYSWOW64\inetmib1.dll
2013-07-07 13:13:46 ----A---- C:\Windows\system32\tsdiscon.exe
2013-07-07 13:13:46 ----A---- C:\Windows\system32\rwinsta.exe
2013-07-07 13:13:45 ----A---- C:\Windows\system32\tskill.exe
2013-07-07 13:13:44 ----A---- C:\Windows\SYSWOW64\odbcconf.dll
2013-07-07 13:13:44 ----A---- C:\Windows\system32\vmbusres.dll
2013-07-07 13:13:44 ----A---- C:\Windows\system32\UIRibbonRes.dll
2013-07-07 13:13:44 ----A---- C:\Windows\system32\shadow.exe
2013-07-07 13:13:44 ----A---- C:\Windows\system32\FXSMON.dll
2013-07-07 13:13:44 ----A---- C:\Windows\system32\elsTrans.dll
2013-07-07 13:13:43 ----A---- C:\Windows\SYSWOW64\wups.dll
2013-07-07 13:13:43 ----A---- C:\Windows\SYSWOW64\UIRibbonRes.dll

martin_f
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 31 črc 2013 07:12

Re: Dropbox nahrává virus win32:evo-gen

#3 Příspěvek od martin_f »

pokračování

2013-07-07 13:13:43 ----A---- C:\Windows\SYSWOW64\UIRibbonRes.dll
2013-07-07 13:13:43 ----A---- C:\Windows\system32\TRAPI.dll
2013-07-07 13:13:43 ----A---- C:\Windows\system32\drivers\tdi.sys
2013-07-07 13:13:42 ----A---- C:\Windows\SYSWOW64\perfts.dll
2013-07-07 13:13:42 ----A---- C:\Windows\SYSWOW64\imm32.dll
2013-07-07 13:13:42 ----A---- C:\Windows\system32\wshbth.dll
2013-07-07 13:13:42 ----A---- C:\Windows\system32\LogonUI.exe
2013-07-07 13:13:41 ----A---- C:\Windows\system32\reset.exe
2013-07-07 13:13:41 ----A---- C:\Windows\system32\query.exe
2013-07-07 13:13:41 ----A---- C:\Windows\system32\napdsnap.dll
2013-07-07 13:13:41 ----A---- C:\Windows\system32\change.exe
2013-07-07 13:13:41 ----A---- C:\Windows\system32\dsauth.dll
2013-07-07 13:13:40 ----A---- C:\Windows\SYSWOW64\elsTrans.dll
2013-07-07 13:13:40 ----A---- C:\Windows\system32\rdprefdrvapi.dll
2013-07-07 13:13:40 ----A---- C:\Windows\system32\FXSUNATD.exe
2013-07-07 13:13:38 ----A---- C:\Windows\SYSWOW64\TRAPI.dll
2013-07-07 13:13:38 ----A---- C:\Windows\SYSWOW64\schedcli.dll
2013-07-07 13:13:38 ----A---- C:\Windows\SYSWOW64\bitsperf.dll
2013-07-07 13:13:38 ----A---- C:\Windows\system32\drivers\usbrpm.sys
2013-07-07 13:13:38 ----A---- C:\Windows\system32\cscdll.dll
2013-07-07 13:13:38 ----A---- C:\Windows\system32\bitsperf.dll
2013-07-07 13:13:37 ----A---- C:\Windows\SYSWOW64\wshbth.dll
2013-07-07 13:13:37 ----A---- C:\Windows\SYSWOW64\napdsnap.dll
2013-07-07 13:13:37 ----A---- C:\Windows\SYSWOW64\dsauth.dll
2013-07-07 13:13:37 ----A---- C:\Windows\SYSWOW64\cscdll.dll
2013-07-07 13:13:36 ----A---- C:\Windows\system32\drivers\acpipmi.sys
2013-07-07 13:13:35 ----A---- C:\Windows\system32\wsdchngr.dll
2013-07-07 13:13:34 ----A---- C:\Windows\SYSWOW64\sscore.dll
2013-07-07 13:13:34 ----A---- C:\Windows\system32\shgina.dll
2013-07-07 13:13:33 ----A---- C:\Windows\SYSWOW64\wsdchngr.dll
2013-07-07 13:13:33 ----A---- C:\Windows\SYSWOW64\shgina.dll
2013-07-07 13:13:33 ----A---- C:\Windows\SYSWOW64\riched32.dll
2013-07-07 13:13:31 ----A---- C:\Windows\system32\wshirda.dll
2013-07-07 13:13:31 ----A---- C:\Windows\system32\drivers\USBCAMD2.sys
2013-07-07 13:13:31 ----A---- C:\Windows\system32\drivers\CompositeBus.sys
2013-07-07 13:13:29 ----A---- C:\Windows\system32\drivers\hidusb.sys
2013-07-07 13:13:29 ----A---- C:\Windows\system32\drivers\appid.sys
2013-07-07 13:13:28 ----A---- C:\Windows\SYSWOW64\wshirda.dll
2013-07-07 13:13:28 ----A---- C:\Windows\system32\rdpcfgex.dll
2013-07-07 13:13:27 ----A---- C:\Windows\system32\vmbuspipe.dll
2013-07-07 13:13:27 ----A---- C:\Windows\system32\riched32.dll
2013-07-07 13:13:27 ----A---- C:\Windows\system32\drivers\kbdhid.sys
2013-07-07 13:13:26 ----A---- C:\Windows\system32\spwmp.dll
2013-07-07 13:13:26 ----A---- C:\Windows\system32\drivers\IPMIDrv.sys
2013-07-07 13:13:26 ----A---- C:\Windows\system32\browseui.dll
2013-07-07 13:13:25 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2013-07-07 13:13:25 ----A---- C:\Windows\SYSWOW64\browseui.dll
2013-07-07 13:13:25 ----A---- C:\Windows\system32\VmdCoinstall.dll
2013-07-07 13:13:25 ----A---- C:\Windows\system32\VmbusCoinstaller.dll
2013-07-07 13:13:25 ----A---- C:\Windows\system32\IcCoinstall.dll
2013-07-07 13:13:25 ----A---- C:\Windows\system32\C_ISCII.DLL
2013-07-07 13:13:23 ----AH---- C:\Windows\system32\api-ms-win-core-ums-l1-1-0.dll
2013-07-07 13:13:23 ----A---- C:\Windows\SYSWOW64\C_ISCII.DLL
2013-07-07 13:13:23 ----A---- C:\Windows\system32\dxmasf.dll
2013-07-07 13:13:23 ----A---- C:\Windows\system32\drivers\sffp_sd.sys
2013-07-07 13:13:23 ----A---- C:\Windows\system32\drivers\scfilter.sys
2013-07-07 13:13:23 ----A---- C:\Windows\system32\drivers\HdAudio.sys
2013-07-07 13:13:23 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2013-07-07 13:13:23 ----A---- C:\Windows\system32\drivers\cdrom.sys
2013-07-07 13:13:22 ----A---- C:\Windows\SYSWOW64\shunimpl.dll
2013-07-07 13:13:22 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2013-07-07 13:13:22 ----A---- C:\Windows\system32\shunimpl.dll
2013-07-07 13:13:20 ----A---- C:\Windows\SYSWOW64\KBDTUF.DLL
2013-07-07 13:13:20 ----A---- C:\Windows\SYSWOW64\KBDSG.DLL
2013-07-07 13:13:20 ----A---- C:\Windows\system32\KBDTUF.DLL
2013-07-07 13:13:20 ----A---- C:\Windows\system32\KBDSF.DLL
2013-07-07 13:13:19 ----A---- C:\Windows\SYSWOW64\KBDTUQ.DLL
2013-07-07 13:13:19 ----A---- C:\Windows\SYSWOW64\kbdlk41a.dll
2013-07-07 13:13:19 ----A---- C:\Windows\SYSWOW64\KBDGR1.DLL
2013-07-07 13:13:19 ----A---- C:\Windows\system32\KBDTUQ.DLL
2013-07-07 13:13:19 ----A---- C:\Windows\system32\KBDSG.DLL
2013-07-07 13:13:19 ----A---- C:\Windows\system32\KBDPO.DLL
2013-07-07 13:13:19 ----A---- C:\Windows\system32\KBDNEPR.DLL
2013-07-07 13:13:19 ----A---- C:\Windows\system32\kbdlk41a.dll
2013-07-07 13:13:19 ----A---- C:\Windows\system32\KBDINTAM.DLL
2013-07-07 13:13:19 ----A---- C:\Windows\system32\KBDINBEN.DLL
2013-07-07 13:13:18 ----A---- C:\Windows\SYSWOW64\KBDGKL.DLL
2013-07-07 13:13:18 ----A---- C:\Windows\system32\KBDGKL.DLL
2013-07-07 13:13:17 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2013-07-07 13:13:17 ----A---- C:\Windows\system32\KBDGR1.DLL
2013-07-07 13:13:16 ----A---- C:\Windows\system32\wmploc.DLL
2013-07-07 13:13:15 ----A---- C:\Windows\SYSWOW64\KBDUS.DLL
2013-07-07 13:13:15 ----A---- C:\Windows\SYSWOW64\KBDTURME.DLL
2013-07-07 13:13:15 ----A---- C:\Windows\SYSWOW64\KBDTAJIK.DLL
2013-07-07 13:13:15 ----A---- C:\Windows\SYSWOW64\KBDMON.DLL
2013-07-07 13:13:15 ----A---- C:\Windows\SYSWOW64\KBDINTEL.DLL
2013-07-07 13:13:15 ----A---- C:\Windows\SYSWOW64\KBDINHIN.DLL
2013-07-07 13:13:15 ----A---- C:\Windows\SYSWOW64\KBDGEO.DLL
2013-07-07 13:13:15 ----A---- C:\Windows\SYSWOW64\KBDCZ1.DLL
2013-07-07 13:13:15 ----A---- C:\Windows\SYSWOW64\KBDBLR.DLL
2013-07-07 13:13:15 ----A---- C:\Windows\system32\KBDGEO.DLL
2013-07-07 13:13:15 ----A---- C:\Windows\system32\KBDCZ1.DLL
2013-07-07 13:13:15 ----A---- C:\Windows\system32\drivers\vms3cap.sys
2013-07-07 13:13:14 ----A---- C:\Windows\SYSWOW64\KBDUGHR1.DLL
2013-07-07 13:13:14 ----A---- C:\Windows\SYSWOW64\KBDMAORI.DLL
2013-07-07 13:13:14 ----A---- C:\Windows\SYSWOW64\KBDLT1.DLL
2013-07-07 13:13:14 ----A---- C:\Windows\SYSWOW64\KBDINTAM.DLL
2013-07-07 13:13:14 ----A---- C:\Windows\SYSWOW64\KBDINORI.DLL
2013-07-07 13:13:14 ----A---- C:\Windows\SYSWOW64\KBDINMAR.DLL
2013-07-07 13:13:14 ----A---- C:\Windows\SYSWOW64\KBDINKAN.DLL
2013-07-07 13:13:14 ----A---- C:\Windows\SYSWOW64\KBDINBEN.DLL
2013-07-07 13:13:14 ----A---- C:\Windows\system32\KBDUS.DLL
2013-07-07 13:13:14 ----A---- C:\Windows\system32\KBDUGHR1.DLL
2013-07-07 13:13:14 ----A---- C:\Windows\system32\KBDTAJIK.DLL
2013-07-07 13:13:14 ----A---- C:\Windows\system32\KBDMON.DLL
2013-07-07 13:13:14 ----A---- C:\Windows\system32\KBDLT1.DLL
2013-07-07 13:13:13 ----A---- C:\Windows\SYSWOW64\KBDSF.DLL
2013-07-07 13:13:13 ----A---- C:\Windows\SYSWOW64\KBDPO.DLL
2013-07-07 13:13:13 ----A---- C:\Windows\SYSWOW64\KBDNEPR.DLL
2013-07-07 13:13:13 ----A---- C:\Windows\SYSWOW64\KBDBULG.DLL
2013-07-07 13:13:13 ----A---- C:\Windows\SYSWOW64\KBDBASH.DLL
2013-07-07 13:13:13 ----A---- C:\Windows\system32\KBDTURME.DLL
2013-07-07 13:13:13 ----A---- C:\Windows\system32\KBDMAORI.DLL
2013-07-07 13:13:13 ----A---- C:\Windows\system32\KBDINTEL.DLL
2013-07-07 13:13:13 ----A---- C:\Windows\system32\KBDINORI.DLL
2013-07-07 13:13:13 ----A---- C:\Windows\system32\KBDBULG.DLL
2013-07-07 13:13:13 ----A---- C:\Windows\system32\KBDBLR.DLL
2013-07-07 13:13:13 ----A---- C:\Windows\system32\KBDBASH.DLL
2013-07-07 13:13:12 ----A---- C:\Windows\SYSWOW64\spwizres.dll
2013-07-07 13:13:12 ----A---- C:\Windows\SYSWOW64\pifmgr.dll
2013-07-07 13:13:12 ----A---- C:\Windows\SYSWOW64\nlsbres.dll
2013-07-07 13:13:12 ----A---- C:\Windows\system32\spwizres.dll
2013-07-07 13:13:12 ----A---- C:\Windows\system32\pifmgr.dll
2013-07-07 13:13:12 ----A---- C:\Windows\system32\nlsbres.dll
2013-07-07 13:13:12 ----A---- C:\Windows\system32\KBDINMAR.DLL
2013-07-07 13:13:12 ----A---- C:\Windows\system32\KBDINKAN.DLL
2013-07-07 13:13:12 ----A---- C:\Windows\system32\KBDINHIN.DLL
2013-07-07 13:13:11 ----A---- C:\Windows\system32\drivers\VMBusHID.sys
2013-07-07 13:13:11 ----A---- C:\Windows\system32\BlbEvents.dll
2013-07-07 13:12:24 ----A---- C:\Windows\SYSWOW64\wdscore.dll
2013-07-07 13:12:24 ----A---- C:\Windows\system32\dpx.dll
2013-07-07 13:12:00 ----A---- C:\Windows\SYSWOW64\sqmapi.dll
2013-07-07 13:11:47 ----A---- C:\Windows\SYSWOW64\printmanagement.msc
2013-07-07 13:11:29 ----A---- C:\Windows\SYSWOW64\wbemcomn.dll
2013-07-07 13:08:58 ----A---- C:\Windows\system32\wbemcomn.dll
2013-07-07 13:08:46 ----A---- C:\Windows\system32\sqmapi.dll
2013-07-07 12:48:27 ----D---- C:\ProgramData\IcaClient
2013-07-07 12:48:26 ----D---- C:\Program Files (x86)\DynamicUSBTool
2013-07-07 12:48:26 ----D---- C:\CitrixUSBStore
2013-07-07 12:48:13 ----D---- C:\ProgramData\Citrix
2013-07-07 12:47:28 ----D---- C:\Users\Martin\AppData\Roaming\ICAClient
2013-07-07 12:46:17 ----D---- C:\Program Files (x86)\Citrix
2013-07-07 12:43:50 ----D---- C:\Program Files (x86)\visionapp OneTimePass
2013-07-07 12:20:32 ----A---- C:\Windows\system32\esent.dll
2013-07-07 12:20:30 ----A---- C:\Windows\SYSWOW64\esent.dll
2013-07-07 12:20:29 ----A---- C:\Windows\system32\drivers\nvstor.sys
2013-07-07 12:20:28 ----A---- C:\Windows\system32\drivers\nvraid.sys
2013-07-07 12:20:28 ----A---- C:\Windows\system32\drivers\amdsata.sys
2013-07-07 12:20:27 ----A---- C:\Windows\system32\drivers\storport.sys
2013-07-07 12:20:27 ----A---- C:\Windows\system32\drivers\amdxata.sys
2013-07-07 12:20:26 ----A---- C:\Windows\system32\drivers\iaStorV.sys
2013-07-07 12:20:25 ----A---- C:\Windows\system32\fsutil.exe
2013-07-07 12:20:25 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2013-07-07 12:20:24 ----A---- C:\Windows\SYSWOW64\fsutil.exe
2013-07-07 12:20:12 ----A---- C:\Windows\system32\drivers\usbport.sys
2013-07-07 12:20:12 ----A---- C:\Windows\system32\drivers\usbhub.sys
2013-07-07 12:20:12 ----A---- C:\Windows\system32\drivers\usbehci.sys
2013-07-07 12:20:11 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2013-07-07 12:20:10 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2013-07-07 12:20:10 ----A---- C:\Windows\system32\drivers\usbohci.sys
2013-07-07 12:20:10 ----A---- C:\Windows\system32\drivers\usbd.sys
2013-07-07 11:50:42 ----D---- C:\Program Files (x86)\Microsoft Works
2013-07-07 11:49:38 ----D---- C:\Program Files (x86)\Microsoft Visual Studio
2013-07-07 11:48:20 ----D---- C:\Windows\PCHEALTH
2013-07-07 11:48:19 ----D---- C:\Program Files (x86)\Microsoft.NET
2013-07-07 11:45:09 ----D---- C:\Program Files\Microsoft Office
2013-07-07 11:44:36 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2013-07-07 11:43:16 ----D---- C:\Program Files (x86)\Microsoft Office
2013-07-07 11:41:32 ----RHD---- C:\MSOCache
2013-07-07 07:06:29 ----D---- C:\Windows\SYSWOW64\Wat
2013-07-07 07:06:29 ----D---- C:\Windows\system32\Wat
2013-07-07 00:48:01 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2013-07-07 00:47:59 ----A---- C:\Windows\system32\Wdfres.dll
2013-07-07 00:47:59 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2013-07-07 00:37:08 ----A---- C:\Windows\system32\browserchoice.exe
2013-07-07 00:22:20 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2013-07-07 00:22:20 ----A---- C:\Windows\system32\atmlib.dll
2013-07-07 00:22:19 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2013-07-07 00:22:19 ----A---- C:\Windows\system32\fontsub.dll
2013-07-07 00:22:19 ----A---- C:\Windows\system32\atmfd.dll
2013-07-07 00:22:18 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2013-07-07 00:20:46 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2013-07-07 00:20:46 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2013-07-07 00:20:44 ----A---- C:\Windows\system32\WUDFSvc.dll
2013-07-07 00:20:44 ----A---- C:\Windows\system32\WUDFPlatform.dll
2013-07-07 00:20:42 ----A---- C:\Windows\system32\WUDFx.dll
2013-07-07 00:20:42 ----A---- C:\Windows\system32\WUDFHost.exe
2013-07-07 00:20:42 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2013-07-07 00:14:06 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2013-07-07 00:14:06 ----A---- C:\Windows\system32\imagehlp.dll
2013-07-07 00:14:06 ----A---- C:\Windows\system32\drivers\fs_rec.sys
2013-07-07 00:14:05 ----A---- C:\Windows\SYSWOW64\wmi.dll
2013-07-07 00:14:05 ----A---- C:\Windows\system32\wmi.dll
2013-07-07 00:10:27 ----A---- C:\Windows\SYSWOW64\xmllite.dll
2013-07-07 00:10:27 ----A---- C:\Windows\system32\xmllite.dll
2013-07-07 00:10:20 ----A---- C:\Windows\system32\odbccu32.dll
2013-07-07 00:10:19 ----A---- C:\Windows\system32\odbccr32.dll
2013-07-07 00:10:19 ----A---- C:\Windows\system32\odbccp32.dll
2013-07-07 00:10:18 ----A---- C:\Windows\SYSWOW64\odbcjt32.dll
2013-07-07 00:10:18 ----A---- C:\Windows\SYSWOW64\odbccp32.dll
2013-07-07 00:10:18 ----A---- C:\Windows\system32\odbctrac.dll
2013-07-07 00:10:17 ----A---- C:\Windows\SYSWOW64\odbccu32.dll
2013-07-07 00:10:17 ----A---- C:\Windows\SYSWOW64\odbccr32.dll
2013-07-07 00:10:16 ----A---- C:\Windows\SYSWOW64\odbctrac.dll
2013-07-07 00:09:54 ----A---- C:\Windows\system32\poqexec.exe
2013-07-07 00:09:53 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2013-07-07 00:09:14 ----A---- C:\Windows\SYSWOW64\tzres.dll
2013-07-07 00:09:14 ----A---- C:\Windows\system32\tzres.dll
2013-07-07 00:08:53 ----A---- C:\Windows\explorer.exe
2013-07-07 00:08:52 ----A---- C:\Windows\SYSWOW64\explorer.exe
2013-07-07 00:08:42 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2013-07-07 00:08:42 ----A---- C:\Windows\system32\mstscax.dll
2013-07-07 00:08:35 ----A---- C:\Windows\system32\aaclient.dll
2013-07-07 00:08:34 ----A---- C:\Windows\SYSWOW64\aaclient.dll
2013-07-07 00:08:34 ----A---- C:\Windows\system32\tsgqec.dll
2013-07-07 00:08:32 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2013-07-07 00:08:08 ----A---- C:\Windows\system32\CPFilters.dll
2013-07-07 00:08:07 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2013-07-07 00:08:05 ----A---- C:\Windows\system32\sbe.dll
2013-07-07 00:08:03 ----A---- C:\Windows\SYSWOW64\sbe.dll
2013-07-07 00:06:26 ----A---- C:\Windows\system32\quartz.dll
2013-07-07 00:06:25 ----A---- C:\Windows\SYSWOW64\quartz.dll
2013-07-07 00:06:24 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2013-07-07 00:06:23 ----A---- C:\Windows\system32\qdvd.dll
2013-07-07 00:06:08 ----A---- C:\Windows\SYSWOW64\ntshrui.dll
2013-07-07 00:06:08 ----A---- C:\Windows\system32\ntshrui.dll
2013-07-07 00:05:40 ----A---- C:\Windows\system32\tquery.dll
2013-07-07 00:05:39 ----A---- C:\Windows\system32\mssrch.dll
2013-07-07 00:05:37 ----A---- C:\Windows\SYSWOW64\tquery.dll
2013-07-07 00:05:37 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2013-07-07 00:05:36 ----A---- C:\Windows\system32\SearchIndexer.exe
2013-07-07 00:05:35 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2013-07-07 00:05:35 ----A---- C:\Windows\system32\mssvp.dll
2013-07-07 00:05:34 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2013-07-07 00:05:34 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2013-07-07 00:05:34 ----A---- C:\Windows\SYSWOW64\mssph.dll
2013-07-07 00:05:33 ----A---- C:\Windows\system32\mssph.dll
2013-07-07 00:05:32 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2013-07-07 00:05:32 ----A---- C:\Windows\system32\SearchFilterHost.exe
2013-07-07 00:05:32 ----A---- C:\Windows\system32\mssphtb.dll
2013-07-07 00:05:30 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2013-07-07 00:05:27 ----A---- C:\Windows\SYSWOW64\SearchFilterHost.exe
2013-07-07 00:05:26 ----A---- C:\Windows\system32\msscntrs.dll
2013-07-07 00:05:21 ----A---- C:\Windows\SYSWOW64\msscntrs.dll
2013-07-07 00:04:23 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2013-07-07 00:04:23 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2013-07-07 00:04:22 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2013-07-07 00:04:10 ----A---- C:\Windows\system32\webio.dll
2013-07-07 00:04:07 ----A---- C:\Windows\SYSWOW64\webio.dll
2013-07-07 00:02:52 ----D---- C:\Program Files (x86)\Optimizer Pro
2013-07-07 00:02:35 ----A---- C:\Windows\system32\drivers\ntfs.sys
2013-07-06 23:58:21 ----A---- C:\Windows\system32\drivers\dtsoftbus01.sys
2013-07-06 23:58:04 ----D---- C:\Users\Martin\AppData\Roaming\DAEMON Tools Lite
2013-07-06 23:57:55 ----D---- C:\Program Files (x86)\DAEMON Tools Lite
2013-07-06 23:57:42 ----A---- C:\Windows\system32\mfc42u.dll
2013-07-06 23:57:41 ----A---- C:\Windows\system32\mfc42.dll
2013-07-06 23:57:39 ----A---- C:\Windows\SYSWOW64\mfc42.dll
2013-07-06 23:57:37 ----A---- C:\Windows\SYSWOW64\mfc42u.dll
2013-07-06 23:57:05 ----A---- C:\Windows\system32\drivers\usb8023.sys
2013-07-06 23:56:54 ----A---- C:\Windows\system32\rdrmemptylst.exe
2013-07-06 23:56:53 ----A---- C:\Windows\system32\rdpwsx.dll
2013-07-06 23:56:53 ----A---- C:\Windows\system32\rdpcorekmts.dll
2013-07-06 23:56:44 ----A---- C:\Windows\system32\schannel.dll
2013-07-06 23:56:44 ----A---- C:\Windows\system32\lsasrv.dll
2013-07-06 23:56:43 ----A---- C:\Windows\system32\drivers\cng.sys
2013-07-06 23:56:42 ----A---- C:\Windows\SYSWOW64\schannel.dll
2013-07-06 23:56:41 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2013-07-06 23:56:40 ----A---- C:\Windows\system32\sspicli.dll
2013-07-06 23:56:40 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2013-07-06 23:56:39 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2013-07-06 23:56:39 ----A---- C:\Windows\system32\sspisrv.dll
2013-07-06 23:56:39 ----A---- C:\Windows\system32\secur32.dll
2013-07-06 23:56:39 ----A---- C:\Windows\system32\lsass.exe
2013-07-06 23:56:38 ----A---- C:\Windows\SYSWOW64\secur32.dll
2013-07-06 23:55:41 ----D---- C:\ProgramData\DAEMON Tools Lite
2013-07-06 23:54:23 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-07-06 23:54:20 ----D---- C:\Windows\SYSWOW64\Macromed
2013-07-06 23:54:16 ----D---- C:\Windows\system32\Macromed
2013-07-06 23:54:08 ----A---- C:\Windows\system32\msxml3.dll
2013-07-06 23:54:06 ----A---- C:\Windows\system32\msxml6.dll
2013-07-06 23:54:02 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2013-07-06 23:54:00 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2013-07-06 23:54:00 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2013-07-06 23:54:00 ----A---- C:\Windows\system32\msxml3r.dll
2013-07-06 23:53:49 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2013-07-06 23:53:41 ----A---- C:\Windows\system32\profsvc.dll
2013-07-06 23:53:40 ----A---- C:\Windows\system32\profprov.dll
2013-07-06 23:53:28 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2013-07-06 23:53:28 ----A---- C:\Windows\system32\dnsrslvr.dll
2013-07-06 23:53:28 ----A---- C:\Windows\system32\dnsapi.dll
2013-07-06 23:53:27 ----A---- C:\Windows\SYSWOW64\dnscacheugc.exe
2013-07-06 23:53:27 ----A---- C:\Windows\system32\dnscacheugc.exe
2013-07-06 23:52:01 ----A---- C:\Windows\SYSWOW64\dpnet.dll
2013-07-06 23:52:01 ----A---- C:\Windows\SYSWOW64\dpnaddr.dll
2013-07-06 23:52:01 ----A---- C:\Windows\system32\dpnet.dll
2013-07-06 23:52:01 ----A---- C:\Windows\system32\dpnaddr.dll
2013-07-06 23:51:52 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2013-07-06 23:51:52 ----A---- C:\Windows\system32\ncrypt.dll
2013-07-06 23:51:50 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2013-07-06 23:51:50 ----A---- C:\Windows\system32\wintrust.dll
2013-07-06 23:51:42 ----A---- C:\Windows\system32\winsrv.dll
2013-07-06 23:51:41 ----A---- C:\Windows\SYSWOW64\setup16.exe
2013-07-06 23:51:40 ----A---- C:\Windows\SYSWOW64\wow32.dll
2013-07-06 23:51:40 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2013-07-06 23:51:40 ----A---- C:\Windows\SYSWOW64\instnm.exe
2013-07-06 23:51:39 ----A---- C:\Windows\SYSWOW64\user.exe
2013-07-06 23:51:14 ----A---- C:\Windows\system32\drivers\srv2.sys
2013-07-06 23:51:14 ----A---- C:\Windows\system32\drivers\srv.sys
2013-07-06 23:51:13 ----A---- C:\Windows\system32\drivers\srvnet.sys
2013-07-06 23:51:08 ----A---- C:\Windows\SYSWOW64\usp10.dll
2013-07-06 23:51:08 ----A---- C:\Windows\system32\usp10.dll
2013-07-06 23:51:01 ----A---- C:\Windows\system32\drivers\netio.sys
2013-07-06 23:51:01 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2013-07-06 23:50:44 ----A---- C:\Windows\system32\Wpc.dll
2013-07-06 23:50:44 ----A---- C:\Windows\system32\gameux.dll
2013-07-06 23:50:43 ----A---- C:\Windows\SYSWOW64\Wpc.dll
2013-07-06 23:50:43 ----A---- C:\Windows\SYSWOW64\gameux.dll
2013-07-06 23:50:07 ----D---- C:\Program Files (x86)\Google
2013-07-06 23:49:59 ----A---- C:\Windows\system32\psisdecd.dll
2013-07-06 23:49:58 ----A---- C:\Windows\SYSWOW64\psisdecd.dll
2013-07-06 23:49:58 ----A---- C:\Windows\system32\drivers\aswFsBlk.sys
2013-07-06 23:49:57 ----A---- C:\Windows\system32\drivers\aswSP.sys
2013-07-06 23:49:54 ----A---- C:\Windows\system32\drivers\aswRdr2.sys
2013-07-06 23:49:53 ----A---- C:\Windows\system32\drivers\aswTdi.sys
2013-07-06 23:49:52 ----A---- C:\Windows\system32\drivers\aswSnx.sys
2013-07-06 23:49:50 ----A---- C:\Windows\system32\drivers\aswVmm.sys
2013-07-06 23:49:48 ----A---- C:\Windows\system32\drivers\aswRvrt.sys
2013-07-06 23:49:41 ----A---- C:\Windows\system32\drivers\aswMonFlt.sys
2013-07-06 23:49:39 ----A---- C:\Windows\system32\aswBoot.exe
2013-07-06 23:49:36 ----A---- C:\Windows\system32\rdpcorets.dll
2013-07-06 23:49:35 ----A---- C:\Windows\system32\rdpudd.dll
2013-07-06 23:49:35 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2013-07-06 23:49:35 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys
2013-07-06 23:48:57 ----A---- C:\Windows\system32\drivers\afd.sys
2013-07-06 23:48:53 ----A---- C:\Windows\system32\drivers\partmgr.sys
2013-07-06 23:48:49 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2013-07-06 23:48:49 ----A---- C:\Windows\system32\kerberos.dll
2013-07-06 23:48:46 ----A---- C:\Windows\system32\msi.dll
2013-07-06 23:48:45 ----A---- C:\Windows\SYSWOW64\msi.dll
2013-07-06 23:48:07 ----A---- C:\Windows\system32\KernelBase.dll
2013-07-06 23:48:07 ----A---- C:\Windows\system32\kernel32.dll
2013-07-06 23:48:06 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2013-07-06 23:48:06 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2013-07-06 23:48:06 ----A---- C:\Windows\system32\wow64win.dll
2013-07-06 23:48:06 ----A---- C:\Windows\system32\wow64.dll
2013-07-06 23:48:06 ----A---- C:\Windows\system32\conhost.exe
2013-07-06 23:48:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-07-06 23:48:05 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-07-06 23:48:05 ----A---- C:\Windows\system32\wow64cpu.dll
2013-07-06 23:48:05 ----A---- C:\Windows\system32\ntvdm64.dll
2013-07-06 23:47:44 ----A---- C:\Windows\avastSS.scr
2013-07-06 23:47:24 ----D---- C:\Program Files\AVAST Software
2013-07-06 23:46:49 ----D---- C:\ProgramData\AVAST Software
2013-07-06 23:46:24 ----A---- C:\Windows\SYSWOW64\synceng.dll
2013-07-06 23:46:24 ----A---- C:\Windows\system32\synceng.dll
2013-07-06 23:46:23 ----A---- C:\Windows\system32\winresume.exe
2013-07-06 23:46:23 ----A---- C:\Windows\system32\winload.exe
2013-07-06 23:46:23 ----A---- C:\Windows\system32\setbcdlocale.dll
2013-07-06 23:46:23 ----A---- C:\Windows\system32\kdusb.dll
2013-07-06 23:46:23 ----A---- C:\Windows\system32\kdcom.dll
2013-07-06 23:46:23 ----A---- C:\Windows\system32\kd1394.dll
2013-07-06 23:44:47 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2013-07-06 23:44:47 ----A---- C:\Windows\SYSWOW64\devrtl.dll
2013-07-06 23:44:47 ----A---- C:\Windows\SYSWOW64\devobj.dll
2013-07-06 23:44:47 ----A---- C:\Windows\SYSWOW64\cfgmgr32.dll
2013-07-06 23:44:47 ----A---- C:\Windows\system32\umpnpmgr.dll
2013-07-06 23:44:47 ----A---- C:\Windows\system32\cfgmgr32.dll
2013-07-06 23:44:41 ----A---- C:\Windows\SYSWOW64\netapi32.dll
2013-07-06 23:44:41 ----A---- C:\Windows\SYSWOW64\browcli.dll
2013-07-06 23:44:41 ----A---- C:\Windows\system32\netapi32.dll
2013-07-06 23:44:41 ----A---- C:\Windows\system32\browser.dll
2013-07-06 23:44:41 ----A---- C:\Windows\system32\browcli.dll
2013-07-06 23:44:26 ----A---- C:\Windows\SYSWOW64\prevhost.exe
2013-07-06 23:44:26 ----A---- C:\Windows\system32\prevhost.exe
2013-07-06 23:44:24 ----A---- C:\Windows\system32\WFS.exe
2013-07-06 23:44:24 ----A---- C:\Windows\system32\FXSCOVER.exe
2013-07-06 23:44:22 ----A---- C:\Windows\SYSWOW64\srclient.dll
2013-07-06 23:44:22 ----A---- C:\Windows\system32\srcore.dll
2013-07-06 23:44:22 ----A---- C:\Windows\system32\rstrui.exe
2013-07-06 23:44:19 ----A---- C:\Windows\system32\drivers\fvevol.sys
2013-07-06 23:44:17 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2013-07-06 23:44:17 ----A---- C:\Windows\system32\inetcomm.dll
2013-07-06 23:44:13 ----A---- C:\Windows\SYSWOW64\msvcrt.dll
2013-07-06 23:44:13 ----A---- C:\Windows\system32\msvcrt.dll
2013-07-06 23:44:00 ----A---- C:\Windows\system32\localspl.dll
2013-07-06 23:43:55 ----A---- C:\Windows\system32\drivers\bowser.sys
2013-07-06 23:43:52 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2013-07-06 23:43:52 ----A---- C:\Windows\SYSWOW64\oleacc.dll
2013-07-06 23:43:52 ----A---- C:\Windows\system32\oleaut32.dll
2013-07-06 23:43:52 ----A---- C:\Windows\system32\oleacc.dll
2013-07-06 23:43:47 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2013-07-06 23:43:47 ----A---- C:\Windows\system32\EncDec.dll
2013-07-06 23:43:33 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-07-06 23:43:31 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2013-07-06 23:43:30 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2013-07-06 23:43:27 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2013-07-06 23:43:27 ----A---- C:\Windows\system32\smss.exe
2013-07-06 23:43:27 ----A---- C:\Windows\system32\csrsrv.dll
2013-07-06 23:43:17 ----A---- C:\Windows\SYSWOW64\cdosys.dll
2013-07-06 23:43:17 ----A---- C:\Windows\system32\cdosys.dll
2013-07-06 23:43:07 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2013-07-06 23:43:07 ----A---- C:\Windows\system32\ntdll.dll
2013-07-06 23:43:03 ----A---- C:\Windows\system32\spoolsv.exe
2013-07-06 23:43:03 ----A---- C:\Windows\splwow64.exe
2013-07-06 23:42:00 ----A---- C:\Windows\SYSWOW64\packager.dll
2013-07-06 23:42:00 ----A---- C:\Windows\system32\packager.dll
2013-07-06 23:40:49 ----D---- C:\ProgramData\Microsoft Help
2013-07-06 23:25:53 ----D---- C:\Users\Martin\AppData\Roaming\Dropbox
2013-07-06 23:25:29 ----D---- C:\Program Files (x86)\VideoLAN
2013-07-06 23:25:06 ----D---- C:\Windows\Panther
2013-07-06 23:25:00 ----D---- C:\Users\Martin\AppData\Roaming\pdfforge
2013-07-06 23:24:56 ----A---- C:\Windows\system32\pdfcmon.dll
2013-07-06 23:24:53 ----A---- C:\Windows\SYSWOW64\MSMPIDE.DLL
2013-07-06 23:24:52 ----D---- C:\Program Files (x86)\PDFCreator
2013-07-06 23:24:27 ----D---- C:\Users\Martin\AppData\Roaming\Zoner
2013-07-06 23:23:51 ----D---- C:\Program Files (x86)\Zoner
2013-07-06 23:23:32 ----D---- C:\Program Files (x86)\TeamViewer
2013-07-06 23:23:24 ----D---- C:\Users\Martin\AppData\Roaming\IrfanView
2013-07-06 23:23:23 ----D---- C:\Program Files (x86)\IrfanView
2013-07-06 23:23:21 ----D---- C:\Program Files\7-Zip
2013-07-06 23:23:13 ----D---- C:\Users\Martin\AppData\Roaming\uTorrent
2013-07-06 23:23:05 ----A---- C:\Windows\system32\npDeployJava1.dll
2013-07-06 23:23:05 ----A---- C:\Windows\system32\javaws.exe
2013-07-06 23:23:05 ----A---- C:\Windows\system32\deployJava1.dll
2013-07-06 23:23:01 ----A---- C:\Windows\system32\WindowsAccessBridge-64.dll
2013-07-06 23:23:01 ----A---- C:\Windows\system32\javaw.exe
2013-07-06 23:23:01 ----A---- C:\Windows\system32\java.exe
2013-07-06 23:22:51 ----D---- C:\Program Files\Java
2013-07-06 23:21:57 ----D---- C:\ProgramData\TechSmith
2013-07-06 23:21:56 ----D---- C:\Program Files (x86)\TechSmith
2013-07-06 23:21:03 ----D---- C:\ProgramData\Adobe
2013-07-06 23:21:02 ----D---- C:\Program Files (x86)\Adobe
2013-07-06 23:20:57 ----D---- C:\Users\Martin\AppData\Roaming\Macromedia
2013-07-06 23:20:56 ----D---- C:\Users\Martin\AppData\Roaming\Adobe
2013-07-06 23:18:29 ----D---- C:\Program Files\Microsoft Silverlight
2013-07-06 23:18:29 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2013-07-06 23:12:16 ----D---- C:\Users\Martin\AppData\Roaming\Mozilla
2013-07-06 23:11:53 ----D---- C:\ProgramData\Mozilla
2013-07-06 23:11:52 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2013-07-06 23:11:49 ----D---- C:\Program Files (x86)\Mozilla Firefox
2013-07-06 23:08:46 ----N---- C:\Windows\system32\MpSigStub.exe
2013-07-06 23:08:05 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2013-07-06 23:08:05 ----A---- C:\Windows\system32\rdpcore.dll
2013-07-06 23:08:05 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2013-07-06 23:05:11 ----D---- C:\Program Files\totalcmd
2013-07-06 23:05:11 ----A---- C:\Windows\wincmd.ini
2013-07-06 23:05:11 ----A---- C:\Windows\UC.PIF
2013-07-06 23:05:11 ----A---- C:\Windows\RAR.PIF
2013-07-06 23:05:11 ----A---- C:\Windows\PKZIP.PIF
2013-07-06 23:05:11 ----A---- C:\Windows\PKUNZIP.PIF
2013-07-06 23:05:11 ----A---- C:\Windows\NOCLOSE.PIF
2013-07-06 23:05:11 ----A---- C:\Windows\LHA.PIF
2013-07-06 23:05:11 ----A---- C:\Windows\ARJ.PIF
2013-07-06 23:01:26 ----D---- C:\Program Files (x86)\Atheros
2013-07-06 23:01:09 ----A---- C:\Windows\system32\athrx.sys
2013-07-06 23:00:46 ----D---- C:\ProgramData\Atheros
2013-07-06 23:00:41 ----D---- C:\Users\Martin\AppData\Roaming\InstallShield
2013-07-06 22:57:55 ----D---- C:\Program Files\Elantech
2013-07-06 22:56:28 ----D---- C:\Users\Martin\AppData\Roaming\ATI
2013-07-06 22:56:28 ----D---- C:\ProgramData\ATI
2013-07-06 22:54:45 ----DC---- C:\Windows\system32\DRVSTORE
2013-07-06 22:54:45 ----A---- C:\Windows\system32\drivers\usbfilter.sys
2013-07-06 22:53:15 ----D---- C:\Program Files (x86)\ATI Technologies
2013-07-06 22:53:10 ----D---- C:\Program Files\ATI
2013-07-06 22:52:09 ----D---- C:\Program Files\ATI Technologies
2013-07-06 22:51:10 ----D---- C:\Program Files (x86)\JMicron
2013-07-06 22:50:45 ----D---- C:\Program Files\DIFX
2013-07-06 22:47:55 ----D---- C:\Program Files\SRS Labs
2013-07-06 22:47:28 ----D---- C:\Windows\system32\SRSLabs
2013-07-06 22:47:27 ----D---- C:\Windows\SYSWOW64\RTCOM
2013-07-06 22:47:27 ----D---- C:\Program Files\Realtek
2013-07-06 22:47:16 ----A---- C:\Windows\system32\drivers\SamSfPa.dat
2013-07-06 22:47:13 ----A---- C:\Windows\system32\RtPgEx64.dll
2013-07-06 22:47:13 ----A---- C:\Windows\system32\RtlCPAPI64.dll
2013-07-06 22:47:13 ----A---- C:\Windows\system32\RtkCfg64.dll
2013-07-06 22:47:13 ----A---- C:\Windows\system32\RtkAPO64.dll
2013-07-06 22:47:13 ----A---- C:\Windows\system32\drivers\RTKVHD64.sys
2013-07-06 22:47:12 ----A---- C:\Windows\system32\RtkApi64.dll
2013-07-06 22:47:12 ----A---- C:\Windows\system32\RTEEP64A.dll
2013-07-06 22:47:12 ----A---- C:\Windows\system32\RTEEL64A.dll
2013-07-06 22:47:12 ----A---- C:\Windows\system32\RTEEG64A.dll
2013-07-06 22:47:12 ----A---- C:\Windows\system32\RTEED64A.dll
2013-07-06 22:47:12 ----A---- C:\Windows\system32\RTCOM64.dll
2013-07-06 22:47:12 ----A---- C:\Windows\system32\RP3DHT64.dll
2013-07-06 22:47:12 ----A---- C:\Windows\system32\RP3DAA64.dll
2013-07-06 22:47:12 ----A---- C:\Windows\system32\RCoInst64.dll
2013-07-06 22:47:11 ----D---- C:\Program Files (x86)\Realtek
2013-07-06 22:47:11 ----A---- C:\Windows\system32\FMAPO64.dll
2013-07-06 22:47:11 ----A---- C:\Windows\system32\AERTAR64.dll
2013-07-06 22:47:11 ----A---- C:\Windows\system32\AERTAC64.dll
2013-07-06 22:47:10 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2013-07-06 22:47:03 ----HD---- C:\Program Files (x86)\Temp
2013-07-06 22:47:03 ----A---- C:\Windows\RtlExUpd.dll
2013-07-06 22:46:11 ----D---- C:\Program Files (x86)\ASUS
2013-07-06 22:45:46 ----A---- C:\Windows\system32\wups2.dll
2013-07-06 22:45:46 ----A---- C:\Windows\system32\wucltux.dll
2013-07-06 22:45:46 ----A---- C:\Windows\system32\wuaueng.dll
2013-07-06 22:45:46 ----A---- C:\Windows\system32\wuauclt.exe
2013-07-06 22:45:43 ----SHD---- C:\Windows\Installer
2013-07-06 22:45:35 ----A---- C:\Windows\system32\wups.dll
2013-07-06 22:45:35 ----A---- C:\Windows\system32\wudriver.dll
2013-07-06 22:45:34 ----A---- C:\Windows\system32\wuapi.dll
2013-07-06 22:45:30 ----A---- C:\Windows\system32\wuwebv.dll
2013-07-06 22:45:30 ----A---- C:\Windows\system32\wuapp.exe
2013-07-06 22:44:10 ----D---- C:\Users\Martin\AppData\Roaming\Identities
2013-07-06 22:40:21 ----SD---- C:\Users\Martin\AppData\Roaming\Microsoft
2013-07-06 22:40:21 ----D---- C:\Users\Martin\AppData\Roaming\Media Center Programs
2013-07-06 22:39:43 ----SHD---- C:\Recovery
2013-07-06 22:39:43 ----SHD---- C:\ProgramData\Šablony
2013-07-06 22:39:43 ----SHD---- C:\ProgramData\Plocha
2013-07-06 22:39:43 ----SHD---- C:\ProgramData\Oblíbené položky
2013-07-06 22:39:43 ----SHD---- C:\ProgramData\Nabídka Start
2013-07-06 22:39:43 ----SHD---- C:\ProgramData\Dokumenty
2013-07-06 22:39:43 ----SHD---- C:\ProgramData\Data aplikací
2013-07-06 22:28:55 ----D---- C:\Windows\SoftwareDistribution
2013-07-06 22:25:46 ----D---- C:\Windows\Prefetch
2013-07-06 22:25:41 ----ASH---- C:\pagefile.sys
2013-07-06 22:25:38 ----SHD---- C:\System Volume Information
2013-07-06 22:25:38 ----ASH---- C:\hiberfil.sys
2013-07-06 13:57:56 ----A---- C:\Windows\system32\drivers\ETD.sys
2013-07-06 13:57:35 ----A---- C:\Windows\system32\drivers\JME.sys
2013-07-06 13:57:20 ----A---- C:\Windows\system32\drivers\AtihdW76.sys
2013-07-06 13:57:18 ----A---- C:\Windows\SYSWOW64\Oemdspif.dll
2013-07-06 13:57:18 ----A---- C:\Windows\SYSWOW64\atiuxpag.dll
2013-07-06 13:57:18 ----A---- C:\Windows\SYSWOW64\atiumdva.dll
2013-07-06 13:57:18 ----A---- C:\Windows\system32\coinst.dll
2013-07-06 13:57:18 ----A---- C:\Windows\system32\atiuxp64.dll
2013-07-06 13:57:17 ----A---- C:\Windows\SYSWOW64\atiumdag.dll
2013-07-06 13:57:16 ----A---- C:\Windows\system32\atiumd6a.dll
2013-07-06 13:57:16 ----A---- C:\Windows\system32\atiumd64.dll
2013-07-06 13:57:15 ----A---- C:\Windows\SYSWOW64\atiu9pag.dll
2013-07-06 13:57:15 ----A---- C:\Windows\SYSWOW64\atipdlxx.dll
2013-07-06 13:57:15 ----A---- C:\Windows\SYSWOW64\atipblag.dat
2013-07-06 13:57:15 ----A---- C:\Windows\system32\atiu9p64.dll
2013-07-06 13:57:15 ----A---- C:\Windows\system32\atitmm64.dll
2013-07-06 13:57:15 ----A---- C:\Windows\system32\atipdl64.dll
2013-07-06 13:57:15 ----A---- C:\Windows\system32\atipblag.dat
2013-07-06 13:57:14 ----A---- C:\Windows\SYSWOW64\atioglxx.dll
2013-07-06 13:57:12 ----A---- C:\Windows\SYSWOW64\atimpc32.dll
2013-07-06 13:57:12 ----A---- C:\Windows\SYSWOW64\atiglpxx.dll
2013-07-06 13:57:12 ----A---- C:\Windows\SYSWOW64\atigktxx.dll
2013-07-06 13:57:12 ----A---- C:\Windows\SYSWOW64\amdpcom32.dll
2013-07-06 13:57:12 ----A---- C:\Windows\system32\drivers\atikmpag.sys
2013-07-06 13:57:12 ----A---- C:\Windows\system32\drivers\atikmdag.sys
2013-07-06 13:57:12 ----A---- C:\Windows\system32\atio6axx.dll
2013-07-06 13:57:12 ----A---- C:\Windows\system32\atimuixx.dll
2013-07-06 13:57:12 ----A---- C:\Windows\system32\atimpc64.dll
2013-07-06 13:57:12 ----A---- C:\Windows\system32\atiicdxx.dat
2013-07-06 13:57:12 ----A---- C:\Windows\system32\atiglpxx.dll
2013-07-06 13:57:12 ----A---- C:\Windows\system32\atig6txx.dll
2013-07-06 13:57:12 ----A---- C:\Windows\system32\atig6pxx.dll
2013-07-06 13:57:12 ----A---- C:\Windows\system32\atiesrxx.exe
2013-07-06 13:57:12 ----A---- C:\Windows\system32\atiedu64.dll
2013-07-06 13:57:12 ----A---- C:\Windows\system32\atieclxx.exe
2013-07-06 13:57:12 ----A---- C:\Windows\system32\amdpcom64.dll
2013-07-06 13:57:11 ----A---- C:\Windows\SYSWOW64\atidxx32.dll
2013-07-06 13:57:11 ----A---- C:\Windows\SYSWOW64\aticfx32.dll
2013-07-06 13:57:11 ----A---- C:\Windows\SYSWOW64\aticalrt.dll
2013-07-06 13:57:11 ----A---- C:\Windows\system32\atidxx64.dll
2013-07-06 13:57:11 ----A---- C:\Windows\system32\ATIDEMGX.dll
2013-07-06 13:57:11 ----A---- C:\Windows\system32\aticfx64.dll
2013-07-06 13:57:11 ----A---- C:\Windows\system32\aticalrt64.dll
2013-07-06 13:57:10 ----A---- C:\Windows\system32\aticaldd64.dll
2013-07-06 13:57:09 ----A---- C:\Windows\SYSWOW64\aticaldd.dll
2013-07-06 13:57:09 ----A---- C:\Windows\SYSWOW64\aticalcl.dll
2013-07-06 13:57:09 ----A---- C:\Windows\SYSWOW64\atiadlxy.dll
2013-07-06 13:57:09 ----A---- C:\Windows\SYSWOW64\ati2edxx.dll
2013-07-06 13:57:09 ----A---- C:\Windows\system32\drivers\ati2erec.dll
2013-07-06 13:57:09 ----A---- C:\Windows\system32\aticalcl64.dll
2013-07-06 13:57:09 ----A---- C:\Windows\system32\atibtmon.exe
2013-07-06 13:57:09 ----A---- C:\Windows\system32\atiapfxx.exe
2013-07-06 13:57:09 ----A---- C:\Windows\system32\atiadlxx.dll
2013-07-06 13:56:23 ----A---- C:\Windows\system32\drivers\AtiHdmi.sys
2013-07-06 13:55:19 ----A---- C:\Windows\system32\jmcricon.dll
2013-07-06 13:55:19 ----A---- C:\Windows\system32\drivers\jmcr.sys

======List of files/folders modified in the last 1 month======

2013-07-30 13:33:52 ----D---- C:\Windows\Temp
2013-07-30 13:33:46 ----RD---- C:\Program Files
2013-07-30 12:48:17 ----D---- C:\Windows\system32\config
2013-07-30 10:03:41 ----D---- C:\Windows\System32
2013-07-30 10:03:41 ----D---- C:\Windows\inf
2013-07-30 10:03:41 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-07-30 06:37:46 ----D---- C:\Windows\system32\drivers
2013-07-30 06:37:43 ----D---- C:\Windows\system32\DriverStore
2013-07-30 06:37:43 ----D---- C:\Windows\system32\catroot
2013-07-30 06:37:30 ----D---- C:\Windows\system32\Tasks
2013-07-22 12:14:53 ----D---- C:\Windows\rescache
2013-07-21 20:29:37 ----D---- C:\Windows\system32\catroot2
2013-07-15 11:38:46 ----D---- C:\Windows\Microsoft.NET
2013-07-15 11:38:44 ----RSD---- C:\Windows\assembly
2013-07-12 23:33:05 ----D---- C:\Windows\winsxs
2013-07-12 23:28:04 ----D---- C:\Windows\SysWOW64
2013-07-12 21:24:51 ----D---- C:\Windows\system32\wdi
2013-07-12 18:13:17 ----D---- C:\Program Files\Windows Defender
2013-07-12 18:13:17 ----D---- C:\Program Files (x86)\Windows Defender
2013-07-12 18:13:17 ----D---- C:\Program Files (x86)\Internet Explorer
2013-07-12 18:12:19 ----D---- C:\Program Files\Internet Explorer
2013-07-12 18:12:18 ----D---- C:\Program Files\Windows Journal
2013-07-09 09:25:35 ----D---- C:\Windows\system32\drivers\UMDF
2013-07-09 07:50:16 ----D---- C:\Windows\SYSWOW64\cs-CZ
2013-07-09 07:50:16 ----D---- C:\Windows\system32\cs-CZ
2013-07-09 07:50:16 ----D---- C:\Windows\AppPatch
2013-07-09 07:50:15 ----D---- C:\Windows\SYSWOW64\migration
2013-07-09 07:50:15 ----D---- C:\Windows\SYSWOW64\en-US
2013-07-09 07:50:14 ----D---- C:\Windows\system32\migration
2013-07-09 07:50:14 ----D---- C:\Windows\system32\en-US
2013-07-09 07:50:14 ----D---- C:\Windows\PolicyDefinitions
2013-07-09 07:50:12 ----D---- C:\Windows\SYSWOW64\zh-HK
2013-07-09 07:50:12 ----D---- C:\Windows\SYSWOW64\pt-PT
2013-07-09 07:50:12 ----D---- C:\Windows\SYSWOW64\pt-BR
2013-07-09 07:50:12 ----D---- C:\Windows\SYSWOW64\pl-PL
2013-07-09 07:50:12 ----D---- C:\Windows\SYSWOW64\ko-KR
2013-07-09 07:50:12 ----D---- C:\Windows\SYSWOW64\it-IT
2013-07-09 07:50:12 ----D---- C:\Windows\SYSWOW64\hu-HU
2013-07-09 07:50:11 ----D---- C:\Windows\SYSWOW64\zh-TW
2013-07-09 07:50:11 ----D---- C:\Windows\SYSWOW64\zh-CN
2013-07-09 07:50:11 ----D---- C:\Windows\SYSWOW64\tr-TR
2013-07-09 07:50:11 ----D---- C:\Windows\SYSWOW64\sv-SE
2013-07-09 07:50:11 ----D---- C:\Windows\SYSWOW64\ru-RU
2013-07-09 07:50:11 ----D---- C:\Windows\SYSWOW64\nl-NL
2013-07-09 07:50:11 ----D---- C:\Windows\SYSWOW64\nb-NO
2013-07-09 07:50:11 ----D---- C:\Windows\SYSWOW64\ja-JP
2013-07-09 07:50:11 ----D---- C:\Windows\SYSWOW64\fr-FR
2013-07-09 07:50:11 ----D---- C:\Windows\SYSWOW64\fi-FI
2013-07-09 07:50:11 ----D---- C:\Windows\SYSWOW64\es-ES
2013-07-09 07:50:11 ----D---- C:\Windows\SYSWOW64\el-GR
2013-07-09 07:50:11 ----D---- C:\Windows\SYSWOW64\de-DE
2013-07-09 07:50:11 ----D---- C:\Windows\SYSWOW64\da-DK
2013-07-09 07:50:10 ----D---- C:\Windows\system32\zh-TW
2013-07-09 07:50:10 ----D---- C:\Windows\system32\zh-HK
2013-07-09 07:50:10 ----D---- C:\Windows\system32\zh-CN
2013-07-09 07:50:10 ----D---- C:\Windows\system32\tr-TR
2013-07-09 07:50:10 ----D---- C:\Windows\system32\sv-SE
2013-07-09 07:50:10 ----D---- C:\Windows\system32\ru-RU
2013-07-09 07:50:10 ----D---- C:\Windows\system32\pt-PT
2013-07-09 07:50:10 ----D---- C:\Windows\system32\pt-BR
2013-07-09 07:50:10 ----D---- C:\Windows\system32\pl-PL
2013-07-09 07:50:10 ----D---- C:\Windows\system32\nl-NL
2013-07-09 07:50:10 ----D---- C:\Windows\system32\nb-NO
2013-07-09 07:50:10 ----D---- C:\Windows\system32\ko-KR
2013-07-09 07:50:10 ----D---- C:\Windows\system32\ja-JP
2013-07-09 07:50:10 ----D---- C:\Windows\system32\it-IT
2013-07-09 07:50:10 ----D---- C:\Windows\system32\hu-HU
2013-07-09 07:50:10 ----D---- C:\Windows\system32\fr-FR
2013-07-09 07:50:10 ----D---- C:\Windows\system32\fi-FI
2013-07-09 07:50:10 ----D---- C:\Windows\system32\es-ES
2013-07-09 07:50:10 ----D---- C:\Windows\system32\el-GR
2013-07-09 07:50:10 ----D---- C:\Windows\system32\de-DE
2013-07-09 07:50:10 ----D---- C:\Windows\system32\da-DK
2013-07-09 07:38:28 ----D---- C:\Windows\Logs
2013-07-09 07:10:13 ----A---- C:\Windows\win.ini
2013-07-08 13:52:20 ----RD---- C:\Program Files (x86)
2013-07-08 12:36:37 ----SD---- C:\ProgramData\Microsoft
2013-07-07 21:36:32 ----D---- C:\Windows
2013-07-07 15:33:12 ----RSD---- C:\Windows\Fonts
2013-07-07 14:52:18 ----D---- C:\Program Files (x86)\Windows Sidebar
2013-07-07 14:52:18 ----D---- C:\Program Files (x86)\Windows Portable Devices
2013-07-07 14:52:18 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2013-07-07 14:52:18 ----D---- C:\Program Files (x86)\Windows Media Player
2013-07-07 14:52:18 ----D---- C:\Program Files (x86)\Windows Mail
2013-07-07 14:52:17 ----D---- C:\Program Files\Windows Sidebar
2013-07-07 14:52:16 ----D---- C:\Program Files\Windows Portable Devices
2013-07-07 14:52:16 ----D---- C:\Program Files\Windows Photo Viewer
2013-07-07 14:52:16 ----D---- C:\Program Files\Windows Media Player
2013-07-07 14:52:16 ----D---- C:\Program Files\Windows Mail
2013-07-07 14:52:16 ----D---- C:\Program Files\DVD Maker
2013-07-07 14:52:13 ----D---- C:\Program Files\Common Files\System
2013-07-07 14:52:08 ----D---- C:\Windows\servicing
2013-07-07 14:52:08 ----D---- C:\Windows\ehome
2013-07-07 14:52:04 ----SHD---- C:\Windows\BitLockerDiscoveryVolumeContents
2013-07-07 14:52:04 ----D---- C:\Windows\SYSWOW64\Setup
2013-07-07 14:52:04 ----D---- C:\Windows\SYSWOW64\oobe
2013-07-07 14:52:04 ----D---- C:\Windows\SYSWOW64\cs
2013-07-07 14:52:04 ----D---- C:\Windows\SYSWOW64\AdvancedInstallers
2013-07-07 14:52:03 ----D---- C:\Windows\SYSWOW64\wbem
2013-07-07 14:52:03 ----D---- C:\Windows\SYSWOW64\sppui
2013-07-07 14:52:03 ----D---- C:\Windows\SYSWOW64\manifeststore
2013-07-07 14:52:02 ----D---- C:\Windows\SYSWOW64\migwiz
2013-07-07 14:52:02 ----D---- C:\Windows\SYSWOW64\Dism
2013-07-07 14:51:46 ----D---- C:\Windows\system32\Setup
2013-07-07 14:51:46 ----D---- C:\Windows\system32\oobe
2013-07-07 14:51:46 ----D---- C:\Windows\system32\cs
2013-07-07 14:51:46 ----D---- C:\Windows\system32\AdvancedInstallers
2013-07-07 14:51:44 ----D---- C:\Windows\system32\sppui
2013-07-07 14:51:44 ----D---- C:\Windows\system32\manifeststore
2013-07-07 14:51:43 ----D---- C:\Windows\system32\wbem
2013-07-07 14:51:43 ----D---- C:\Windows\system32\drivers\cs-CZ
2013-07-07 14:51:42 ----D---- C:\Windows\system32\migwiz
2013-07-07 14:51:42 ----D---- C:\Windows\system32\Dism
2013-07-07 14:51:15 ----D---- C:\Windows\system32\Boot
2013-07-07 14:46:04 ----A---- C:\Windows\SYSWOW64\msclmd.dll
2013-07-07 14:46:02 ----A---- C:\Windows\system32\msclmd.dll
2013-07-07 14:02:26 ----D---- C:\Windows\debug
2013-07-07 13:34:47 ----HD---- C:\ProgramData
2013-07-07 11:50:10 ----D---- C:\Program Files (x86)\MSBuild
2013-07-07 11:49:37 ----D---- C:\Program Files (x86)\Common Files
2013-07-07 11:49:33 ----D---- C:\Windows\ShellNew
2013-07-07 11:46:53 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-07-06 23:54:25 ----D---- C:\Windows\Tasks
2013-07-06 23:24:36 ----D---- C:\Windows\Setup
2013-07-06 22:47:23 ----D---- C:\Windows\system32\LogFiles
2013-07-06 22:44:06 ----SHD---- C:\$Recycle.Bin
2013-07-06 22:40:17 ----RD---- C:\Users
2013-07-06 22:40:14 ----D---- C:\Windows\system32\CodeIntegrity
2013-07-06 22:40:08 ----D---- C:\Windows\system32\restore
2013-07-06 22:39:43 ----D---- C:\Windows\system32\Recovery
2013-07-06 22:39:43 ----D---- C:\Program Files\Windows NT
2013-07-06 22:28:55 ----D---- C:\Windows\system32\sysprep
2013-07-06 22:26:28 ----D---- C:\Windows\CSC

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswNdis;avast! Firewall NDIS Filter Service; C:\Windows\system32\DRIVERS\aswNdis.sys [2013-03-13 12368]
R0 aswNdis2;avast! Firewall Core Firewall Service; C:\Windows\system32\drivers\aswNdis2.sys [2013-05-09 270824]
R0 aswRvrt;aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [2013-05-09 65336]
R0 aswVmm;aswVmm; C:\Windows\system32\drivers\aswVmm.sys [2013-07-06 189936]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 aswFW;avast! TDI Firewall Driver; \??\C:\Windows\system32\drivers\aswFW.sys [2013-05-09 131232]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2013-05-09 22600]
R1 aswRdr;aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [2013-05-09 72016]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2013-07-06 1030952]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2013-07-06 378944]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2013-05-09 64288]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 ctxusbm;Citrix USB Monitor Driver; C:\Windows\system32\DRIVERS\ctxusbm.sys [2012-12-05 98888]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2013-07-06 283064]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-02 15416]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [2013-05-09 33400]
R2 aswMonFlt;aswMonFlt; \??\C:\Windows\system32\drivers\aswMonFlt.sys [2013-05-09 80816]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2010-09-22 7883264]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2010-09-22 285696]
R3 athr;Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athrx.sys [2011-06-27 2753536]
R3 AtiHDAudioService;ATI Function Driver for HD Audio Service; C:\Windows\system32\drivers\AtihdW76.sys [2010-09-24 116752]
R3 ETD;ELAN PS/2 Port Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2010-09-08 129024]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2010-04-13 2345760]
R3 JMCR;JMCR; C:\Windows\system32\DRIVERS\jmcr.sys [2009-08-19 143472]
R3 JME;JMicron Ethernet Adapter NDIS6.20 Driver (Amd64 Bits); C:\Windows\system32\DRIVERS\JME.sys [2010-10-12 131552]
R3 MTsensor;ATK0100 ACPI UTILITY; C:\Windows\system32\DRIVERS\ATK64AMD.sys [2009-05-13 15928]
R3 usbfilter;AMD USB Filter Driver; C:\Windows\system32\DRIVERS\usbfilter.sys [2010-04-29 38528]
S3 androidusb;SAMSUNG Android Composite ADB Interface Driver; C:\Windows\System32\Drivers\ssadadb.sys [2011-05-13 36328]
S3 AtiHdmiService;ATI Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\AtiHdmi.sys [2010-04-08 124944]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2010-11-20 20992]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 sdbus;sdbus; C:\Windows\system32\drivers\sdbus.sys [2010-11-20 109056]
S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM); C:\Windows\system32\DRIVERS\ssadbus.sys [2011-05-13 157672]
S3 ssadmdfl;SAMSUNG Android USB Modem (Filter); C:\Windows\system32\DRIVERS\ssadmdfl.sys [2011-05-13 16872]
S3 ssadmdm;SAMSUNG Android USB Modem Drivers; C:\Windows\system32\DRIVERS\ssadmdm.sys [2011-05-13 177640]
S3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM); C:\Windows\system32\DRIVERS\ssadserd.sys [2011-05-13 146920]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 Synth3dVsc;Synth3dVsc; C:\Windows\System32\drivers\synth3dvsc.sys []
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
S3 tsusbhub;@%SystemRoot%\system32\drivers\tsusbhub.sys,-1; C:\Windows\system32\drivers\tsusbhub.sys []
S3 VGPU;VGPU; C:\Windows\System32\drivers\rdvgkmd.sys []
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]
S3 WinUSB;ASUS Android USB Driver; C:\Windows\system32\DRIVERS\WinUSB.sys [2010-11-20 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-05-11 65640]
R2 AMD External Events Utility;AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [2010-09-22 203264]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2009-06-15 84536]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2009-12-15 96896]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-05-09 46808]
R2 avast! Firewall;avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [2013-05-09 137960]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 MDM;Machine Debug Manager; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [2006-10-26 335872]
R2 TeamViewer8;TeamViewer 8; C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe [2013-07-08 4153184]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-07-30 257416]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-06-18 117144]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-07-07 1255736]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119529
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Dropbox nahrává virus win32:evo-gen

#4 Příspěvek od Rudy »

Zdravím!
Váš oper. systém je legální?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

martin_f
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 31 črc 2013 07:12

Re: Dropbox nahrává virus win32:evo-gen

#5 Příspěvek od martin_f »

není :-/

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119529
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Dropbox nahrává virus win32:evo-gen

#6 Příspěvek od Rudy »

martin_f píše:není :-/
Jistě. Poznal jsem to z logu. Pak lituji, ale pomoc vám poskytnuta nebude, toto fórum nepodporuje softwarové pirátství.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

martin_f
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: 31 črc 2013 07:12

Re: Dropbox nahrává virus win32:evo-gen

#7 Příspěvek od martin_f »

ok, chápu a rozumím tomu, každopádně děkuji za Váš čas.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119529
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Dropbox nahrává virus win32:evo-gen

#8 Příspěvek od Rudy »

Není zač!
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno