Tak vše provedeno. Stav se nezměnil. Strašně dlouhý start, HDD led ani nezhasíná - trvalý svit. Po naběhnutí systému a přihlášení k netu se ještě spouští pomalu aplikace v liště. Pokud chci spustit Chrome, čekám ještě asi 30 vteřin na otevření okna s prohlížačem.
Po cca 5 minutách se HDD led uklidní a ntb začne fungovat.
Logfile of random's system information tool 1.08 (written by random/random)
Run by Ondra at 2013-09-10 18:32:23
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 506 GB (86%) free of 588 GB
Total RAM: 4030 MB (43% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:32:25, on 10.9.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16502)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\Program Files (x86)\HP HD Webcam [Fixed]\Monitor.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\SDKCOMServer.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Ondra.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [PDF Complete] C:\Program Files (x86)\PDF Complete\pdfsty.exe
O4 - HKLM\..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe /start
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [NUSB3MON] "c:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
O4 - HKLM\..\Run: [HP HD Webcam [Fixed]_Monitor] C:\Program Files (x86)\HP HD Webcam [Fixed]\monitor.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (file missing)
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (file missing)
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Program Files\IDT\WDM\AESTSr64.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\windows\system32\atiesrxx.exe (file missing)
O23 - Service: AtherosSvc - Qualcomm Atheros Commnucations - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: COMODO Virtual Service Manager (cmdvirth) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe
O23 - Service: DraftSight API Service - Dassault Systemes - C:\Program Files\Dassault Systemes\DraftSight\bin\dsHttpApiService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: HP Power Assistant Service - Hewlett-Packard Company - C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe
O23 - Service: hpHotkeyMonitor - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: HP Service (hpsrv) - Unknown owner - C:\windows\system32\Hpservice.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files (x86)\PDF Complete\pdfsvc.exe
O23 - Service: Portrait Displays SDK Service (PdiService) - Portrait Displays, Inc. - C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10122 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: ArcCapture (uArcCapture) - ArcSoft, Inc. - C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: Vodafone Mobile Connect Service (VMCService) - Vodafone - C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: XobniService - Xobni Corporation - C:\Program Files (x86)\Xobni\XobniService.exe
O23 - Service: ZAtheros Bt&Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
--
End of file - 10177 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\windows\system32\services.exe
C:\windows\system32\lsass.exe
C:\windows\system32\lsm.exe
winlogon.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
"C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe"
C:\windows\system32\svchost.exe -k NetworkService
C:\windows\system32\atiesrxx.exe
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k netsvcs
"C:\Program Files\IDT\WDM\STacSV64.exe"
C:\windows\system32\svchost.exe -k GPSvcGroup
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\Hpservice.exe
atieclxx
C:\windows\system32\vcsFPService.exe
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\windows\System32\spoolsv.exe
taskeng.exe {620F87DA-1777-4D7C-AE09-8EB9D3A9DE10}
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\IDT\WDM\AESTSr64.exe"
"C:\Program Files (x86)\Bluetooth Suite\adminservice.exe"
"taskhost.exe"
"C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /c
"C:\windows\system32\Dwm.exe"
C:\windows\Explorer.EXE
"C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HpHotkeyMonitor.exe"
"C:\Program Files (x86)\PDF Complete\pdfsvc.exe" /startedbyscm:66B66708-40E2BE4D-pdfcService
"C:\Windows\System32\igfxtray.exe"
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe"
"C:\Program Files (x86)\Bluetooth Suite\BtTray.exe"
C:\windows\SysWOW64\PnkBstrA.exe
C:\windows\system32\svchost.exe -k imgsvc
C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe
"C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE"
C:\windows\system32\wbem\unsecapp.exe -Embedding
C:\windows\system32\wbem\wmiprvse.exe
WLIDSvcM.exe 3172
C:\windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe" /ModeAvMonitor -Embedding
"C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe"
"C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\VMCService.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\COMODO\COMODO Internet Security\cistray.exe"
C:\windows\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe" /start
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
"C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
"C:\Program Files (x86)\HP HD Webcam [Fixed]\Monitor.exe"
C:\windows\system32\svchost.exe -k bthsvcs
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\windows\servicing\TrustedInstaller.exe
"C:\Program Files\COMODO\COMODO Internet Security\cis.exe" --alertsUI
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe" /hidden
C:\windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe"
C:\windows\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\SDKCOMServer.exe" -Embedding
C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdiSdkHelperx64.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="5464.0.1478916104\1285018503" --supports-dual-gpus=false --gpu-driver-bug-workarounds=0,9,19 --disable-image-transport-surface --reduce-gpu-sandbox --gpu-vendor-id=0x8086 --gpu-device-id=0x0116 --gpu-driver-vendor="ATI Technologies Inc." --gpu-driver-version=8.840.7.0 --ignored=" --type=renderer " /prefetch:822062411
C:\windows\system32\igfxext.exe -Embedding
C:\windows\system32\igfxsrvc.exe -Embedding
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="D3D11Experiment/Enabled/ForceCompositingMode/thread/InfiniteCache/No/InstantExtended/Control13 pct:10c m29stable:pp2/NewMenuStyle/Compact2/OmniboxStopTimer/UseStopTimer/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictor/Disabled/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_16/UMA-Uniformity-Trial-1-Percent/group_47/UMA-Uniformity-Trial-10-Percent/group_08/UMA-Uniformity-Trial-20-Percent/group_03/UMA-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-50-Percent/group_01/" --renderer-print-preview --enable-threaded-compositing --disable-html-notifications --channel="5464.2.1708290133\1379467830" /prefetch:673131151
taskeng.exe {1B7930D4-453E-43CC-A481-FBBBBEB77949}
C:\windows\System32\svchost.exe -k WerSvcGroup
C:\windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
C:\windows\system32\DllHost.exe /Processid:{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}
"C:\Users\Ondra\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\windows\tasks\HPCeeScheduleForONDRA-HP$.job
C:\windows\tasks\HPCeeScheduleForOndra.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-05-09 242496]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}]
CIESpeechBHO Class - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2012-08-19 64640]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live ID Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21 529280]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-05-09 198688]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2013-05-09 242496]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - avast! WebRep - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2013-05-09 198688]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"HPPowerAssistant"=C:\Program Files\Hewlett-Packard\HP Power Assistant\DelayedAppStarter.exe [2011-01-27 13880]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2011-01-27 167960]
"HotKeysCmds"=C:\windows\system32\hkcmd.exe [2011-01-27 391704]
"Persistence"=C:\windows\system32\igfxpers.exe [2011-01-27 418328]
"BtTray"=C:\Program Files (x86)\Bluetooth Suite\BtTray.exe [2012-08-19 764032]
"BtvStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2012-08-19 127616]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2013-08-04 1664000]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2013-08-04 3011824]
"COMODO Internet Security"=C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [2013-07-08 1502424]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"PDF Complete"=C:\Program Files (x86)\PDF Complete\pdfsty.exe [2011-02-01 656920]
"QLBController"=C:\Program Files (x86)\Hewlett-Packard\HP HotKey Support\QLBController.exe [2011-01-29 299576]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2011-01-26 283160]
"NUSB3MON"=c:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [2010-11-17 113288]
"HP HD Webcam [Fixed]_Monitor"=C:\Program Files (x86)\HP HD Webcam [Fixed]\monitor.exe [2010-11-26 267128]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2011-03-28 336384]
"avast"=C:\Program Files\AVAST Software\Avast\avastUI.exe [2013-05-09 4858968]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\windows\system32\igfxdev.dll [2011-01-27 385024]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"DisableCAD"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 months======
2013-09-10 18:26:58 ----D---- C:\rsit
2013-09-10 15:47:28 ----D---- C:\Program Files\Defraggler
2013-09-10 15:19:27 ----SHD---- C:\$RECYCLE.BIN
2013-09-08 17:15:26 ----D---- C:\ProgramData\boost_interprocess
2013-09-08 16:53:05 ----SHD---- C:\Config.Msi
2013-09-08 16:29:43 ----D---- C:\Program Files (x86)\VS Revo Group
2013-09-08 16:01:38 ----D---- C:\windows\temp
2013-09-06 14:06:01 ----D---- C:\Program Files\trend micro
2013-09-06 13:05:32 ----D---- C:\Program Files\Blender Foundation
2013-09-06 12:57:06 ----D---- C:\Users\Ondra\AppData\Roaming\DraftSight
2013-09-06 12:56:51 ----D---- C:\ProgramData\Dassault Systemes
2013-09-06 12:56:51 ----D---- C:\Program Files\Dassault Systemes
2013-09-06 11:13:28 ----SD---- C:\ProgramData\Shared Space
2013-09-06 11:13:19 ----D---- C:\Program Files\COMODO
2013-09-06 11:13:15 ----D---- C:\ProgramData\Comodo
2013-09-06 11:13:12 ----D---- C:\ProgramData\Comodo Downloader
2013-09-06 10:50:13 ----A---- C:\windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2013-09-06 10:50:13 ----A---- C:\windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2013-09-06 10:50:12 ----A---- C:\windows\system32\RdpGroupPolicyExtension.dll
2013-09-06 10:50:05 ----A---- C:\windows\system32\drivers\rdpvideominiport.sys
2013-09-06 10:50:04 ----A---- C:\windows\system32\drivers\TsUsbFlt.sys
2013-09-06 10:49:58 ----A---- C:\windows\SYSWOW64\wksprtPS.dll
2013-09-06 10:49:58 ----A---- C:\windows\SYSWOW64\tsgqec.dll
2013-09-06 10:49:58 ----A---- C:\windows\SYSWOW64\rdpendp_winip.dll
2013-09-06 10:49:58 ----A---- C:\windows\SYSWOW64\MsRdpWebAccess.dll
2013-09-06 10:49:58 ----A---- C:\windows\SYSWOW64\aaclient.dll
2013-09-06 10:49:58 ----A---- C:\windows\system32\wksprtPS.dll
2013-09-06 10:49:58 ----A---- C:\windows\system32\TsUsbGDCoInstaller.dll
2013-09-06 10:49:58 ----A---- C:\windows\system32\tsgqec.dll
2013-09-06 10:49:58 ----A---- C:\windows\system32\MsRdpWebAccess.dll
2013-09-06 10:49:58 ----A---- C:\windows\system32\aaclient.dll
2013-09-06 10:49:57 ----A---- C:\windows\SYSWOW64\mstsc.exe
2013-09-06 10:49:57 ----A---- C:\windows\system32\wksprt.exe
2013-09-06 10:49:57 ----A---- C:\windows\system32\TSWbPrxy.exe
2013-09-06 10:49:57 ----A---- C:\windows\system32\rdpudd.dll
2013-09-06 10:49:57 ----A---- C:\windows\system32\rdpendp_winip.dll
2013-09-06 10:49:56 ----A---- C:\windows\system32\rdpcorets.dll
2013-09-06 10:49:56 ----A---- C:\windows\system32\mstsc.exe
2013-09-06 10:49:55 ----A---- C:\windows\SYSWOW64\mstscax.dll
2013-09-06 10:49:55 ----A---- C:\windows\system32\mstscax.dll
2013-09-06 10:49:29 ----A---- C:\windows\SYSWOW64\schannel.dll
2013-09-06 10:49:29 ----A---- C:\windows\system32\schannel.dll
2013-09-06 10:49:29 ----A---- C:\windows\system32\lsasrv.dll
2013-09-06 10:49:29 ----A---- C:\windows\system32\drivers\ksecpkg.sys
2013-09-06 10:49:29 ----A---- C:\windows\system32\drivers\cng.sys
2013-09-06 10:49:28 ----A---- C:\windows\SYSWOW64\sspicli.dll
2013-09-06 10:49:28 ----A---- C:\windows\SYSWOW64\secur32.dll
2013-09-06 10:49:27 ----A---- C:\windows\SYSWOW64\qdvd.dll
2013-09-06 10:49:27 ----A---- C:\windows\system32\qdvd.dll
2013-09-06 10:30:30 ----A---- C:\windows\SYSWOW64\ntoskrnl.exe
2013-09-06 10:30:29 ----A---- C:\windows\SYSWOW64\ntkrnlpa.exe
2013-09-06 10:30:29 ----A---- C:\windows\system32\ntoskrnl.exe
2013-09-06 10:30:29 ----A---- C:\windows\system32\ntdll.dll
2013-09-06 10:30:28 ----A---- C:\windows\SYSWOW64\ntdll.dll
2013-09-06 10:30:28 ----A---- C:\windows\system32\wow64.dll
2013-09-06 10:30:27 ----A---- C:\windows\SYSWOW64\ntvdm64.dll
2013-09-06 10:30:25 ----A---- C:\windows\SYSWOW64\wow32.dll
2013-09-06 10:30:25 ----A---- C:\windows\SYSWOW64\setup16.exe
2013-09-06 10:30:24 ----A---- C:\windows\SYSWOW64\user.exe
2013-09-06 10:30:24 ----A---- C:\windows\SYSWOW64\instnm.exe
2013-09-06 09:11:15 ----A---- C:\windows\SYSWOW64\mshtmled.dll
2013-09-06 09:11:15 ----A---- C:\windows\system32\mshtmled.dll
2013-09-06 09:11:12 ----A---- C:\windows\SYSWOW64\vbscript.dll
2013-09-06 09:11:11 ----A---- C:\windows\SYSWOW64\ieui.dll
2013-09-06 09:11:11 ----A---- C:\windows\system32\ieui.dll
2013-09-06 09:11:10 ----A---- C:\windows\SYSWOW64\ieUnatt.exe
2013-09-06 09:11:10 ----A---- C:\windows\system32\ieUnatt.exe
2013-09-06 09:11:09 ----A---- C:\windows\SYSWOW64\wininet.dll
2013-09-06 09:11:09 ----A---- C:\windows\SYSWOW64\url.dll
2013-09-06 09:11:09 ----A---- C:\windows\system32\url.dll
2013-09-06 09:11:08 ----A---- C:\windows\system32\wininet.dll
2013-09-06 09:11:06 ----A---- C:\windows\SYSWOW64\urlmon.dll
2013-09-06 09:11:06 ----A---- C:\windows\system32\urlmon.dll
2013-09-06 09:11:04 ----A---- C:\windows\system32\msfeeds.dll
2013-09-06 09:11:04 ----A---- C:\windows\system32\jscript9.dll
2013-09-06 09:11:02 ----A---- C:\windows\SYSWOW64\msfeeds.dll
2013-09-06 09:11:01 ----A---- C:\windows\system32\jsproxy.dll
2013-09-06 09:11:00 ----A---- C:\windows\SYSWOW64\jscript9.dll
2013-09-06 09:11:00 ----A---- C:\windows\SYSWOW64\jscript.dll
2013-09-06 09:11:00 ----A---- C:\windows\system32\vbscript.dll
2013-09-06 09:10:59 ----A---- C:\windows\system32\jscript.dll
2013-09-06 09:10:58 ----A---- C:\windows\SYSWOW64\iertutil.dll
2013-09-06 09:10:58 ----A---- C:\windows\system32\iertutil.dll
2013-09-06 09:10:55 ----A---- C:\windows\SYSWOW64\jsproxy.dll
2013-09-06 09:10:52 ----A---- C:\windows\SYSWOW64\mshtml.dll
2013-09-06 09:10:48 ----A---- C:\windows\system32\mshtml.dll
2013-09-06 09:10:42 ----A---- C:\windows\SYSWOW64\ieframe.dll
2013-09-06 09:10:42 ----A---- C:\windows\system32\ieframe.dll
2013-09-06 09:09:39 ----A---- C:\windows\SYSWOW64\ncsi.dll
2013-09-06 09:09:39 ----A---- C:\windows\system32\nlasvc.dll
2013-09-06 09:09:39 ----A---- C:\windows\system32\netcorehc.dll
2013-09-06 09:09:39 ----A---- C:\windows\system32\ncsi.dll
2013-09-06 09:09:39 ----A---- C:\windows\system32\iphlpsvc.dll
2013-09-06 09:09:38 ----A---- C:\windows\SYSWOW64\nlaapi.dll
2013-09-06 09:09:38 ----A---- C:\windows\SYSWOW64\netevent.dll
2013-09-06 09:09:38 ----A---- C:\windows\SYSWOW64\netcorehc.dll
2013-09-06 09:09:38 ----A---- C:\windows\system32\nlaapi.dll
2013-09-06 09:09:38 ----A---- C:\windows\system32\netevent.dll
2013-09-06 09:09:38 ----A---- C:\windows\system32\drivers\tcpipreg.sys
2013-09-06 09:06:24 ----A---- C:\windows\system32\WMVDECOD.DLL
2013-09-06 09:06:23 ----A---- C:\windows\SYSWOW64\WMVDECOD.DLL
2013-09-06 09:06:19 ----A---- C:\windows\system32\shell32.dll
2013-09-06 09:06:18 ----A---- C:\windows\system32\authui.dll
2013-09-06 09:06:17 ----A---- C:\windows\SYSWOW64\shell32.dll
2013-09-06 09:06:17 ----A---- C:\windows\system32\shdocvw.dll
2013-09-06 09:06:16 ----A---- C:\windows\SYSWOW64\authui.dll
2013-09-06 09:06:16 ----A---- C:\windows\system32\consent.exe
2013-09-06 09:06:15 ----A---- C:\windows\SYSWOW64\shdocvw.dll
2013-09-06 09:06:15 ----A---- C:\windows\system32\appinfo.dll
2013-09-06 09:05:39 ----A---- C:\windows\SYSWOW64\wintrust.dll
2013-09-06 09:05:39 ----A---- C:\windows\SYSWOW64\cryptsvc.dll
2013-09-06 09:05:39 ----A---- C:\windows\SYSWOW64\cryptnet.dll
2013-09-06 09:05:39 ----A---- C:\windows\SYSWOW64\crypt32.dll
2013-09-06 09:05:39 ----A---- C:\windows\system32\wintrust.dll
2013-09-06 09:05:39 ----A---- C:\windows\system32\cryptsvc.dll
2013-09-06 09:05:39 ----A---- C:\windows\system32\cryptnet.dll
2013-09-06 09:05:39 ----A---- C:\windows\system32\crypt32.dll
2013-09-06 09:05:35 ----A---- C:\windows\system32\drivers\tssecsrv.sys
2013-09-06 09:05:24 ----A---- C:\windows\system32\OxpsConverter.exe
2013-09-06 09:05:19 ----A---- C:\windows\system32\drivers\ndis.sys
2013-09-06 09:05:18 ----A---- C:\windows\system32\drivers\RNDISMP.sys
2013-09-06 09:05:15 ----A---- C:\windows\system32\win32spl.dll
2013-09-06 09:05:15 ----A---- C:\windows\system32\drivers\dxgmms1.sys
2013-09-06 09:05:15 ----A---- C:\windows\system32\drivers\dxgkrnl.sys
2013-09-06 09:05:14 ----A---- C:\windows\SYSWOW64\win32spl.dll
2013-09-06 09:05:14 ----A---- C:\windows\system32\rpcrt4.dll
2013-09-06 09:05:13 ----A---- C:\windows\SYSWOW64\rpcrt4.dll
2013-09-06 09:05:11 ----A---- C:\windows\system32\win32k.sys
2013-09-06 09:05:10 ----A---- C:\windows\SYSWOW64\dhcpcsvc6.dll
2013-09-06 09:05:10 ----A---- C:\windows\SYSWOW64\dhcpcore6.dll
2013-09-06 09:05:10 ----A---- C:\windows\system32\dhcpcsvc6.dll
2013-09-06 09:05:10 ----A---- C:\windows\system32\dhcpcore6.dll
2013-09-06 09:05:04 ----A---- C:\windows\SYSWOW64\tzres.dll
2013-09-06 09:05:04 ----A---- C:\windows\system32\tzres.dll
2013-09-06 09:05:01 ----A---- C:\windows\SYSWOW64\qedit.dll
2013-09-06 09:05:01 ----A---- C:\windows\system32\taskhost.exe
2013-09-06 09:05:01 ----A---- C:\windows\system32\qedit.dll
2013-09-06 09:05:00 ----A---- C:\windows\system32\wwansvc.dll
2013-09-06 09:05:00 ----A---- C:\windows\system32\wwanprotdim.dll
2013-09-06 09:04:22 ----A---- C:\windows\system32\certutil.exe
2013-09-06 09:04:21 ----A---- C:\windows\SYSWOW64\certutil.exe
2013-09-06 09:04:20 ----A---- C:\windows\SYSWOW64\certenc.dll
2013-09-06 09:04:20 ----A---- C:\windows\system32\certenc.dll
2013-09-06 09:03:59 ----A---- C:\windows\SYSWOW64\cryptdlg.dll
2013-09-06 09:03:59 ----A---- C:\windows\system32\cryptdlg.dll
2013-09-06 09:03:53 ----A---- C:\windows\system32\DWrite.dll
2013-09-06 09:03:52 ----A---- C:\windows\SYSWOW64\DWrite.dll
2013-09-06 09:00:16 ----A---- C:\windows\system32\drivers\tcpip.sys
2013-09-05 23:48:56 ----D---- C:\windows\system32\MRT
2013-09-05 23:48:53 ----A---- C:\windows\system32\MRT.exe
2013-09-05 23:44:00 ----D---- C:\windows\system32\SPReview
2013-09-05 23:43:33 ----D---- C:\windows\system32\EventProviders
2013-09-05 23:35:35 ----A---- C:\windows\system32\netfxperf.dll
2013-09-05 23:35:35 ----A---- C:\windows\system32\dfshim.dll
2013-09-05 23:35:30 ----A---- C:\windows\SYSWOW64\dfshim.dll
2013-09-05 23:35:26 ----A---- C:\windows\system32\d3d10warp.dll
2013-09-05 23:35:21 ----A---- C:\windows\SYSWOW64\d3d10warp.dll
2013-09-05 23:35:20 ----A---- C:\windows\SYSWOW64\mfc40u.dll
2013-09-05 23:35:20 ----A---- C:\windows\SYSWOW64\mfc40.dll
2013-09-05 23:35:20 ----A---- C:\windows\system32\sysmain.dll
2013-09-05 23:35:18 ----A---- C:\windows\system32\MSVidCtl.dll
2013-09-05 23:35:16 ----A---- C:\windows\system32\wmp.dll
2013-09-05 23:35:15 ----A---- C:\windows\system32\mscoree.dll
2013-09-05 23:35:15 ----A---- C:\windows\system32\mmcndmgr.dll
2013-09-05 23:35:14 ----A---- C:\windows\system32\secproc_isv.dll
2013-09-05 23:35:14 ----A---- C:\windows\system32\RMActivate_isv.exe
2013-09-05 23:35:14 ----A---- C:\windows\system32\mf.dll
2013-09-05 23:35:13 ----A---- C:\windows\SYSWOW64\secproc_isv.dll
2013-09-05 23:35:13 ----A---- C:\windows\system32\xpsservices.dll
2013-09-05 23:35:13 ----A---- C:\windows\system32\secproc.dll
2013-09-05 23:35:13 ----A---- C:\windows\system32\RMActivate.exe
2013-09-05 23:35:12 ----A---- C:\windows\SYSWOW64\secproc.dll
2013-09-05 23:35:12 ----A---- C:\windows\SYSWOW64\RMActivate_isv.exe
2013-09-05 23:35:11 ----A---- C:\windows\SYSWOW64\RMActivate.exe
2013-09-05 23:35:11 ----A---- C:\windows\system32\schedsvc.dll
2013-09-05 23:35:11 ----A---- C:\windows\system32\ole32.dll
2013-09-05 23:35:10 ----A---- C:\windows\SYSWOW64\mscoree.dll
2013-09-05 23:35:10 ----A---- C:\windows\system32\spwizui.dll
2013-09-05 23:35:09 ----A---- C:\windows\system32\taskschd.dll
2013-09-05 23:35:09 ----A---- C:\windows\system32\RacEngn.dll
2013-09-05 23:35:09 ----A---- C:\windows\system32\diagperf.dll
2013-09-05 23:35:08 ----A---- C:\windows\SYSWOW64\mf.dll
2013-09-05 23:35:08 ----A---- C:\windows\system32\wevtsvc.dll
2013-09-05 23:35:08 ----A---- C:\windows\system32\ExplorerFrame.dll
2013-09-05 23:35:07 ----A---- C:\windows\SYSWOW64\CertEnroll.dll
2013-09-05 23:35:07 ----A---- C:\windows\system32\vssapi.dll
2013-09-05 23:35:07 ----A---- C:\windows\system32\NaturalLanguage6.dll
2013-09-05 23:35:07 ----A---- C:\windows\system32\drivers\msiscsi.sys
2013-09-05 23:35:06 ----A---- C:\windows\system32\UIRibbon.dll
2013-09-05 23:35:06 ----A---- C:\windows\system32\mcupdate_GenuineIntel.dll
2013-09-05 23:35:05 ----A---- C:\windows\SYSWOW64\wmp.dll
2013-09-05 23:35:04 ----A---- C:\windows\SYSWOW64\PresentationHostProxy.dll
2013-09-05 23:35:04 ----A---- C:\windows\SYSWOW64\PresentationHost.exe
2013-09-05 23:35:04 ----A---- C:\windows\system32\WsmSvc.dll
2013-09-05 23:35:04 ----A---- C:\windows\system32\WMVCORE.DLL
2013-09-05 23:35:03 ----A---- C:\windows\system32\spreview.exe
2013-09-05 23:35:03 ----A---- C:\windows\system32\spinstall.exe
2013-09-05 23:35:03 ----A---- C:\windows\system32\rdpdd.dll
2013-09-05 23:35:03 ----A---- C:\windows\system32\PresentationHostProxy.dll
2013-09-05 23:35:03 ----A---- C:\windows\system32\PresentationHost.exe
2013-09-05 23:35:03 ----A---- C:\windows\system32\MPSSVC.dll
2013-09-05 23:35:02 ----A---- C:\windows\system32\WinSAT.exe
2013-09-05 23:35:02 ----A---- C:\windows\system32\CertEnroll.dll
2013-09-05 23:35:01 ----A---- C:\windows\system32\d3d9.dll
2013-09-05 23:35:00 ----A---- C:\windows\SYSWOW64\RacEngn.dll
2013-09-05 23:35:00 ----A---- C:\windows\SYSWOW64\AuthFWSnapin.dll
2013-09-05 23:35:00 ----A---- C:\windows\system32\SearchFolder.dll
2013-09-05 23:35:00 ----A---- C:\windows\system32\IKEEXT.DLL
2013-09-05 23:35:00 ----A---- C:\windows\system32\AuthFWSnapin.dll
2013-09-05 23:34:59 ----A---- C:\windows\system32\VSSVC.exe
2013-09-05 23:34:59 ----A---- C:\windows\system32\gpsvc.dll
2013-09-05 23:34:59 ----A---- C:\windows\system32\dwmcore.dll
2013-09-05 23:34:58 ----A---- C:\windows\system32\drivers\http.sys
2013-09-05 23:34:58 ----A---- C:\windows\system32\dbgeng.dll
2013-09-05 23:34:57 ----A---- C:\windows\SYSWOW64\ExplorerFrame.dll
2013-09-05 23:34:56 ----A---- C:\windows\SYSWOW64\ole32.dll
2013-09-05 23:34:56 ----A---- C:\windows\system32\TSWorkspace.dll
2013-09-05 23:34:56 ----A---- C:\windows\system32\qmgr.dll
2013-09-05 23:34:56 ----A---- C:\windows\system32\audiosrv.dll
2013-09-05 23:34:56 ----A---- C:\windows\system32\actxprxy.dll
2013-09-05 23:34:55 ----A---- C:\windows\system32\termsrv.dll
2013-09-05 23:34:54 ----A---- C:\windows\SYSWOW64\vssapi.dll
2013-09-05 23:34:54 ----A---- C:\windows\system32\netlogon.dll
2013-09-05 23:34:54 ----A---- C:\windows\system32\imapi2fs.dll
2013-09-05 23:34:54 ----A---- C:\windows\system32\d3d11.dll
2013-09-05 23:34:53 ----A---- C:\windows\SYSWOW64\SearchFolder.dll
2013-09-05 23:34:53 ----A---- C:\windows\SYSWOW64\d3d9.dll
2013-09-05 23:34:53 ----A---- C:\windows\system32\winhttp.dll
2013-09-05 23:34:53 ----A---- C:\windows\system32\QAGENTRT.DLL
2013-09-05 23:34:53 ----A---- C:\windows\system32\propsys.dll
2013-09-05 23:34:53 ----A---- C:\windows\system32\msv1_0.dll
2013-09-05 23:34:52 ----A---- C:\windows\SYSWOW64\taskschd.dll
2013-09-05 23:34:52 ----A---- C:\windows\system32\wbengine.exe
2013-09-05 23:34:52 ----A---- C:\windows\system32\setupapi.dll
2013-09-05 23:34:52 ----A---- C:\windows\system32\rpcss.dll
2013-09-05 23:34:51 ----A---- C:\windows\system32\werconcpl.dll
2013-09-05 23:34:51 ----A---- C:\windows\system32\taskeng.exe
2013-09-05 23:34:51 ----A---- C:\windows\system32\odbc32.dll
2013-09-05 23:34:50 ----A---- C:\windows\system32\WSDApi.dll
2013-09-05 23:34:50 ----A---- C:\windows\system32\user32.dll
2013-09-05 23:34:50 ----A---- C:\windows\system32\dhcpcore.dll
2013-09-05 23:34:50 ----A---- C:\windows\system32\certmgr.dll
2013-09-05 23:34:49 ----A---- C:\windows\SYSWOW64\wer.dll
2013-09-05 23:34:49 ----A---- C:\windows\SYSWOW64\certcli.dll
2013-09-05 23:34:49 ----A---- C:\windows\system32\scavengeui.dll
2013-09-05 23:34:49 ----A---- C:\windows\system32\drivers\tdx.sys
2013-09-05 23:34:49 ----A---- C:\windows\system32\drivers\netbt.sys
2013-09-05 23:34:48 ----A---- C:\windows\SYSWOW64\dwmcore.dll
2013-09-05 23:34:48 ----A---- C:\windows\system32\tsmf.dll
2013-09-05 23:34:48 ----A---- C:\windows\system32\shlwapi.dll
2013-09-05 23:34:48 ----A---- C:\windows\system32\PortableDeviceApi.dll
2013-09-05 23:34:48 ----A---- C:\windows\system32\msdrm.dll
2013-09-05 23:34:47 ----A---- C:\windows\SYSWOW64\odbc32.dll
2013-09-05 23:34:47 ----A---- C:\windows\system32\netshell.dll
2013-09-05 23:34:47 ----A---- C:\windows\system32\msdtctm.dll
2013-09-05 23:34:47 ----A---- C:\windows\system32\framedynos.dll
2013-09-05 23:34:46 ----A---- C:\windows\SYSWOW64\tcpmonui.dll
2013-09-05 23:34:46 ----A---- C:\windows\system32\ws2_32.dll
2013-09-05 23:34:46 ----A---- C:\windows\system32\winlogon.exe
2013-09-05 23:34:46 ----A---- C:\windows\system32\netcfgx.dll
2013-09-05 23:34:46 ----A---- C:\windows\system32\lsm.exe
2013-09-05 23:34:46 ----A---- C:\windows\system32\dxgi.dll
2013-09-05 23:34:46 ----A---- C:\windows\system32\comdlg32.dll
2013-09-05 23:34:45 ----A---- C:\windows\SYSWOW64\TSWorkspace.dll
2013-09-05 23:34:45 ----A---- C:\windows\SYSWOW64\tsmf.dll
2013-09-05 23:34:45 ----A---- C:\windows\SYSWOW64\dot3api.dll
2013-09-05 23:34:45 ----A---- C:\windows\system32\wpdshext.dll
2013-09-05 23:34:45 ----A---- C:\windows\system32\wmpps.dll
2013-09-05 23:34:45 ----A---- C:\windows\system32\Query.dll
2013-09-05 23:34:45 ----A---- C:\windows\system32\mswsock.dll
2013-09-05 23:34:45 ----A---- C:\windows\system32\azroles.dll
2013-09-05 23:34:45 ----A---- C:\windows\system32\apphelp.dll
2013-09-05 23:34:44 ----A---- C:\windows\SYSWOW64\winhttp.dll
2013-09-05 23:34:44 ----A---- C:\windows\SYSWOW64\setupapi.dll
2013-09-05 23:34:44 ----A---- C:\windows\SYSWOW64\apphelp.dll
2013-09-05 23:34:44 ----A---- C:\windows\system32\Vault.dll
2013-09-05 23:34:44 ----A---- C:\windows\system32\samsrv.dll
2013-09-05 23:34:44 ----A---- C:\windows\system32\QAGENT.DLL
2013-09-05 23:34:44 ----A---- C:\windows\system32\cmd.exe
2013-09-05 23:34:44 ----A---- C:\windows\system32\BFE.DLL