
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Ovládá mi někdo pc na dálku
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Ovládá mi někdo pc na dálku
Dobrý den,
dovolte mi, abych vám sdělil velmi netradiční problém. Někdo se mi dostal do PC. V tom by ovšem nebylo nic zvláštního, avšak jakým způsobem.
Hrál jsem hru League of Legends a během ní mi někdo klikal random klávesy (vzdáleně) a pak dokonce napsal do chatu, když jsem sděloval mojím spoluhráčům, že nemůžu hrát, tak on napsal do chatu "že mám bordel v pc (v češtině)".
Tak že si stáhnu hijackthis, naběhne mi firefox a do vyhledávajícího okénka se mi sama napíše věta, kterou jsem psal jedné osobě na skype před měsícem.
Log z hijackthis se zdál v podstatě čistý, tak jsem nelenil a přeinstaloval windows. Avšas na skype se mi zase samo od sebe oddělala ta sama osoba (v reálném čaše) z oblíbených do "normálních kontaktů".
Přikládám log z RSIT
Nezdá se mi tam tady toto - C:\Windows\SysWOW64\rundll32.exe
Mám 64 bitový win 7.
Logfile of random's system information tool 1.09 (written by random/random)
Run by Kuba at 2013-09-18 07:10:00
Microsoft Windows 7 Home Premium
System drive C: has 382 GB (93%) free of 410 GB
Total RAM: 4093 MB (33% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 7:10:10, on 18.9.2013
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWelcome.exe
E:\SiRonnie\Hry\League Of Legends\League of Legends\RADS\system\rads_user_kernel.exe
E:\SiRonnie\Hry\League Of Legends\League of Legends\RADS\projects\lol_launcher\releases\0.0.0.185\deploy\LoLLauncher.exe
E:\SiRonnie\Hry\League Of Legends\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.47\deploy\LolClient.exe
C:\Programy\Mozilla Firefox\firefox.exe
C:\Users\Kuba\Downloads\ProcessExplorer\procexp.exe
C:\Programy\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_168.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_168.exe
C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe
C:\Users\Kuba\Downloads\HiJackThis.exe
C:\Windows\SysWOW64\NOTEPAD.EXE
C:\Program Files\trend micro\Kuba.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = localhost:21320
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\coIEPlg.dll
O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\IPS\IPSBHO.DLL
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\coIEPlg.dll
O4 - HKLM\..\Run: [Razer Synapse] "C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe"
O4 - HKLM\..\Run: [SDTray] "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-2671917893-706360513-2285705896-1003\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-2671917893-706360513-2285705896-1003\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: SDWinLogon - SDWinLogon.dll (file missing)
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Spybot-S&D 2 Scanner Service (SDScannerService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
O23 - Service: Spybot-S&D 2 Updating Service (SDUpdateService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
O23 - Service: Spybot-S&D 2 Security Center Service (SDWSCService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8111 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe" /s "NIS" /m "C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\diMaster.dll" /prefetch:1
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
"taskhost.exe"
"C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe" /c /a /s UserSession2
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Windows\SysWOW64\rundll32.exe" C:\Windows\Syswow64\cm108.dll,CMICtrlWnd
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe"
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
C:\Windows\system32\sppsvc.exe
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWelcome.exe"
"E:\SiRonnie\Hry\League Of Legends\League of Legends\RADS\system\rads_user_kernel.exe" updateandrun lol_launcher LoLLauncher.exe
LoLLauncher.exe
"E:/SiRonnie/Hry/League Of Legends/League of Legends/RADS/projects/lol_air_client/releases/0.0.1.47/deploy/LolClient.exe" -runtime .\ -nodebug META-INF\AIR\application.xml .\ -- 8393
"C:\Programy\Mozilla Firefox\firefox.exe"
"taskhost.exe"
"C:\Programy\totalcmd\TOTALCMD64.EXE"
"C:\Users\Kuba\Downloads\ProcessExplorer\procexp.exe"
"C:\Users\Kuba\Downloads\ProcessExplorer\procexp.exe"
"C:\Programy\Mozilla Firefox\plugin-container.exe" --channel=2788.f3e8c00.422821404 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_168.dll" -greomni "C:\Programy\Mozilla Firefox\omni.ja" -appomni "C:\Programy\Mozilla Firefox\browser\omni.ja" -appdir "C:\Programy\Mozilla Firefox\browser" B21B215F267D7725 2788 "\\.\pipe\gecko-crash-server-pipe.2788" plugin
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_168.exe" --proxy-stub-channel=Flash4944.6191F308.9266 --host-broker-channel=Flash4944.6191F308.13678 --host-pid=4944 --host-npapi-version=27 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_168.dll"
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_168.exe" --channel=2232.003CF770.1591304281 --proxy-stub-channel=Flash4944.6191F308.9266 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_168.dll" --host-npapi-version=27 --type=renderer
"C:\Windows\system32\cmd.exe"
\??\C:\Windows\system32\conhost.exe
"C:\Windows\system32\taskmgr.exe" /1
"C:\Windows\system32\notepad.exe"
"C:\Windows\system32\NOTEPAD.EXE" C:\ProgramData\Spybot - Search & Destroy\Logs\Checks.130918-0634.txt
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe" -launch
"C:\Users\Kuba\Downloads\HiJackThis.exe"
"C:\Windows\system32\NOTEPAD.EXE" C:\Users\Kuba\Downloads\hijackthis.log
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe12_ Global\UsGthrCtrlFltPipeMssGthrPipe12 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
"C:\Users\Kuba\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
=========Mozilla firefox=========
ProfilePath - C:\Users\Kuba\AppData\Roaming\Mozilla\Firefox\Profiles\b3rnf8e0.default
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.8.800.168 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_168.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.8]
"Description"=VLC Multimedia Plugin
"Path"=C:\Programy\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.8.800.168 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_168.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
Norton Identity Protection - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\coIEPlg.dll [2013-08-15 526160]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Norton Vulnerability Protection - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\IPS\IPSBHO.DLL [2013-08-06 388512]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\coIEPlg.dll [2013-08-15 526160]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Cm108Sound"=C:\Windows\syswow64\RunDll32.exe [2009-07-14 44544]
"Nvtmru"=C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [2013-05-16 1012000]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2013-07-25 20684656]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
""= []
"Razer Synapse"=C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [2013-08-15 606040]
"SDTray"=C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [2013-05-16 3830224]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot-S&D 2 Tray Icon"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2013-09-18 07:10:00 ----D---- C:\rsit
2013-09-18 07:10:00 ----D---- C:\Program Files\trend micro
2013-09-18 06:08:51 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-09-18 06:08:50 ----D---- C:\Windows\SYSWOW64\Macromed
2013-09-18 06:08:48 ----D---- C:\Windows\system32\Macromed
2013-09-18 05:48:01 ----D---- C:\ProgramData\Spybot - Search & Destroy
2013-09-18 05:47:41 ----A---- C:\Windows\system32\sdnclean64.exe
2013-09-18 05:47:37 ----D---- C:\Program Files (x86)\Spybot - Search & Destroy 2
2013-09-18 05:45:43 ----D---- C:\Program Files\CCleaner
2013-09-18 05:13:24 ----D---- C:\ProgramData\Razer
2013-09-18 05:13:24 ----D---- C:\Program Files (x86)\Razer
2013-09-18 05:06:14 ----D---- C:\Program Files\Common Files\Symantec Shared
2013-09-18 05:06:14 ----A---- C:\Windows\system32\drivers\SYMEVENT64x86.SYS
2013-09-18 05:05:25 ----D---- C:\Windows\system32\drivers\NISx64
2013-09-18 05:05:23 ----D---- C:\Program Files (x86)\Norton Internet Security
2013-09-18 05:05:22 ----D---- C:\ProgramData\Norton
2013-09-18 05:03:18 ----D---- C:\ProgramData\NortonInstaller
2013-09-18 05:03:18 ----D---- C:\Program Files (x86)\NortonInstaller
2013-09-18 04:54:15 ----D---- C:\Program Files (x86)\AGEIA Technologies
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvopencl.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvoglv64.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\NvIFR64.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\NvFBC64.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvdispgenco6432049.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvdispco6432049.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvd3dumx.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvcuvid.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvcuvenc.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvcuda.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvcompiler.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2013-09-17 22:36:14 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2013-09-17 22:34:45 ----D---- C:\Program Files (x86)\Microsoft.NET
2013-09-17 22:34:20 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2013-09-17 22:34:20 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2013-09-17 22:34:20 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2013-09-17 22:34:20 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2013-09-17 22:34:20 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2013-09-17 22:34:20 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2013-09-17 22:34:20 ----A---- C:\Windows\system32\PresentationHost.exe
2013-09-17 22:34:20 ----A---- C:\Windows\system32\netfxperf.dll
2013-09-17 22:34:20 ----A---- C:\Windows\system32\mscoree.dll
2013-09-17 22:34:20 ----A---- C:\Windows\system32\dfshim.dll
2013-09-17 22:33:14 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2013-09-17 22:33:01 ----N---- C:\Windows\Vmix108.dll
2013-09-17 22:33:01 ----N---- C:\Windows\SYSWOW64\cmpa108.dll
2013-09-17 22:33:01 ----N---- C:\Windows\SYSWOW64\CM108.dll
2013-09-17 22:33:01 ----N---- C:\Windows\system32\Cmeau108.exe
2013-09-17 22:32:41 ----N---- C:\Windows\system32\CmiInstallResAll64.dll
2013-09-17 22:32:41 ----N---- C:\Windows\cm108.ini
2013-09-17 22:32:41 ----A---- C:\Windows\difxapi.dll
2013-09-17 22:32:04 ----A---- C:\Windows\system32\drivers\CM10864.sys
2013-09-17 22:27:24 ----D---- C:\Users\Kuba\AppData\Roaming\LolClient
2013-09-17 22:27:22 ----D---- C:\Users\Kuba\AppData\Roaming\Macromedia
2013-09-17 22:27:21 ----D---- C:\Users\Kuba\AppData\Roaming\Adobe
2013-09-17 22:19:22 ----D---- C:\Windows\Panther
2013-09-17 21:49:15 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2013-09-17 21:49:15 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2013-09-17 21:49:15 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2013-09-17 21:49:15 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2013-09-17 21:49:14 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2013-09-17 21:47:41 ----SHD---- C:\Windows\SYSWOW64\AI_RecycleBin
2013-09-17 21:46:17 ----N---- C:\Windows\system32\MpSigStub.exe
2013-09-17 21:45:24 ----D---- C:\ProgramData\PMB Files
2013-09-17 21:45:22 ----D---- C:\Program Files (x86)\Pando Networks
2013-09-17 21:44:46 ----D---- C:\Users\Kuba\AppData\Roaming\Riot Games
2013-09-17 21:41:27 ----D---- C:\Users\Kuba\AppData\Roaming\Skype
2013-09-17 21:41:24 ----RD---- C:\Program Files (x86)\Skype
2013-09-17 21:41:20 ----SHD---- C:\Windows\Installer
2013-09-17 21:41:20 ----D---- C:\ProgramData\Skype
2013-09-17 21:39:32 ----D---- C:\Users\Kuba\AppData\Roaming\Mozilla
2013-09-17 21:39:25 ----D---- C:\ProgramData\Mozilla
2013-09-17 21:39:25 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2013-09-17 21:36:32 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2013-09-17 21:36:29 ----D---- C:\ProgramData\NVIDIA
2013-09-17 21:36:25 ----A---- C:\Windows\system32\nvvsvc.exe
2013-09-17 21:36:25 ----A---- C:\Windows\system32\nvsvcr.dll
2013-09-17 21:36:25 ----A---- C:\Windows\system32\nvsvc64.dll
2013-09-17 21:36:25 ----A---- C:\Windows\system32\nvshext.dll
2013-09-17 21:36:25 ----A---- C:\Windows\system32\nvmctray.dll
2013-09-17 21:36:25 ----A---- C:\Windows\system32\nvcpl.dll
2013-09-17 21:36:11 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2013-09-17 21:36:11 ----A---- C:\Windows\system32\OpenCL.dll
2013-09-17 21:35:53 ----D---- C:\ProgramData\NVIDIA Corporation
2013-09-17 21:35:49 ----D---- C:\Program Files\NVIDIA Corporation
2013-09-17 21:35:46 ----D---- C:\Users\Kuba\AppData\Roaming\GHISLER
2013-09-17 21:35:19 ----D---- C:\Programy
2013-09-17 21:34:33 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2013-09-17 21:34:33 ----A---- C:\Windows\SYSWOW64\cabview.dll
2013-09-17 21:34:33 ----A---- C:\Windows\system32\rdpcore.dll
2013-09-17 21:34:33 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2013-09-17 21:34:33 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2013-09-17 21:34:33 ----A---- C:\Windows\system32\cabview.dll
2013-09-17 21:31:17 ----A---- C:\Windows\system32\wups2.dll
2013-09-17 21:31:17 ----A---- C:\Windows\system32\wucltux.dll
2013-09-17 21:31:17 ----A---- C:\Windows\system32\wuauclt.exe
2013-09-17 21:31:16 ----A---- C:\Windows\system32\wuaueng.dll
2013-09-17 21:31:09 ----A---- C:\Windows\system32\wups.dll
2013-09-17 21:31:09 ----A---- C:\Windows\system32\wudriver.dll
2013-09-17 21:31:09 ----A---- C:\Windows\system32\wuapi.dll
2013-09-17 21:30:57 ----A---- C:\Windows\system32\wuwebv.dll
2013-09-17 21:30:57 ----A---- C:\Windows\system32\wuapp.exe
2013-09-17 21:30:45 ----D---- C:\Users\Kuba\AppData\Roaming\Identities
2013-09-17 21:30:38 ----SD---- C:\Users\Kuba\AppData\Roaming\Microsoft
2013-09-17 21:30:38 ----D---- C:\Users\Kuba\AppData\Roaming\Media Center Programs
2013-09-17 21:30:27 ----SHD---- C:\Recovery
2013-09-17 21:30:27 ----SHD---- C:\ProgramData\Šablony
2013-09-17 21:30:27 ----SHD---- C:\ProgramData\Plocha
2013-09-17 21:30:27 ----SHD---- C:\ProgramData\Oblíbené položky
2013-09-17 21:30:27 ----SHD---- C:\ProgramData\Nabídka Start
2013-09-17 21:30:27 ----SHD---- C:\ProgramData\Dokumenty
2013-09-17 21:30:27 ----SHD---- C:\ProgramData\Data aplikací
2013-09-17 21:30:24 ----D---- C:\Windows\SoftwareDistribution
2013-09-17 21:20:24 ----D---- C:\Windows\Prefetch
2013-09-17 21:20:10 ----ASH---- C:\pagefile.sys
2013-09-17 21:20:09 ----SHD---- C:\System Volume Information
2013-09-17 21:20:09 ----ASH---- C:\hiberfil.sys
2013-08-29 06:29:54 ----A---- C:\Windows\SYSWOW64\rzdevicedll.dll
2013-08-21 09:34:32 ----A---- C:\Windows\system32\drivers\rzudd.sys
2013-08-20 10:41:58 ----A---- C:\Windows\system32\drivers\rzdaendpt.sys
2013-08-20 10:41:56 ----A---- C:\Windows\system32\drivers\rzvkeyboard.sys
2013-08-20 10:41:44 ----A---- C:\Windows\system32\drivers\rzendpt.sys
2013-08-20 10:35:02 ----A---- C:\Windows\SYSWOW64\rztouchdll.dll
2013-08-20 10:35:02 ----A---- C:\Windows\SYSWOW64\rzdevinfo.dll
2013-08-20 10:34:58 ----A---- C:\Windows\SYSWOW64\rzdisplaydll.dll
2013-08-20 10:34:56 ----A---- C:\Windows\SYSWOW64\rzaudiodll.dll
======List of files/folders modified in the last 1 month======
2013-09-18 07:10:00 ----RD---- C:\Program Files
2013-09-18 07:09:39 ----D---- C:\Windows\Temp
2013-09-18 06:08:52 ----D---- C:\Windows\Tasks
2013-09-18 06:08:52 ----D---- C:\Windows\system32\Tasks
2013-09-18 06:08:51 ----D---- C:\Windows\SysWOW64
2013-09-18 06:08:48 ----D---- C:\Windows\System32
2013-09-18 06:04:22 ----D---- C:\Windows\system32\catroot2
2013-09-18 05:56:53 ----D---- C:\Windows\system32\drivers\etc
2013-09-18 05:48:19 ----D---- C:\Windows\system32\config
2013-09-18 05:48:12 ----D---- C:\Windows\winsxs
2013-09-18 05:48:01 ----HD---- C:\ProgramData
2013-09-18 05:47:45 ----SD---- C:\ProgramData\Microsoft
2013-09-18 05:47:39 ----D---- C:\Windows\Logs
2013-09-18 05:47:39 ----D---- C:\Windows\inf
2013-09-18 05:47:39 ----D---- C:\Windows\debug
2013-09-18 05:47:39 ----D---- C:\Windows
2013-09-18 05:47:37 ----RD---- C:\Program Files (x86)
2013-09-18 05:47:21 ----D---- C:\Windows\system32\catroot
2013-09-18 05:35:40 ----D---- C:\Windows\system32\drivers
2013-09-18 05:35:33 ----D---- C:\Windows\system32\DriverStore
2013-09-18 05:33:24 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-09-18 05:33:15 ----RSD---- C:\Windows\assembly
2013-09-18 05:33:15 ----D---- C:\Windows\Microsoft.NET
2013-09-18 05:23:38 ----D---- C:\Program Files (x86)\Common Files
2013-09-18 05:23:36 ----D---- C:\Windows\system32\cs-CZ
2013-09-18 05:06:14 ----D---- C:\Program Files\Common Files
2013-09-18 04:48:26 ----D---- C:\Windows\system32\wdi
2013-09-17 22:36:45 ----D---- C:\Windows\SYSWOW64\cs-CZ
2013-09-17 22:34:48 ----D---- C:\Windows\SYSWOW64\en-US
2013-09-17 22:34:48 ----D---- C:\Windows\system32\en-US
2013-09-17 22:33:01 ----D---- C:\Windows\system
2013-09-17 22:31:34 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-09-17 21:36:36 ----RD---- C:\Users
2013-09-17 21:36:20 ----D---- C:\Windows\Help
2013-09-17 21:34:55 ----D---- C:\Windows\system32\CodeIntegrity
2013-09-17 21:30:45 ----D---- C:\Windows\system32\restore
2013-09-17 21:30:44 ----SHD---- C:\$Recycle.Bin
2013-09-17 21:30:27 ----D---- C:\Windows\system32\Recovery
2013-09-17 21:30:27 ----D---- C:\Program Files\Windows NT
2013-09-17 21:29:20 ----D---- C:\Windows\rescache
2013-09-17 21:23:40 ----D---- C:\Windows\system32\sysprep
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 214096]
R0 SymDS;Symantec Data Store; C:\Windows\system32\drivers\NISx64\1500010.003\SYMDS64.SYS [2013-08-01 493656]
R0 SymEFA;Symantec Extended File Attributes; C:\Windows\system32\drivers\NISx64\1500010.003\SYMEFA64.SYS [2013-08-05 1147480]
R1 BHDrvx64;BHDrvx64; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\BASHDefs\20130903.002\BHDrvx64.sys [2013-09-04 1525336]
R1 ccSet_NIS;NIS Settings Manager; C:\Windows\system32\drivers\NISx64\1500010.003\ccSetx64.sys [2013-07-30 150104]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [2013-09-18 484952]
R1 IDSVia64;IDSVia64; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\IPSDefs\20130917.001\IDSvia64.sys [2013-09-17 520280]
R1 SRTSPX;Symantec Real Time Storage Protection (PEL) x64; C:\Windows\system32\drivers\NISx64\1500010.003\SRTSPX64.SYS [2013-07-31 36952]
R1 SymIRON;Symantec Iron Driver; C:\Windows\system32\drivers\NISx64\1500010.003\Ironx64.SYS [2013-07-31 264280]
R1 SymNetS;Symantec Network Security WFP Driver; C:\Windows\system32\drivers\NISx64\1500010.003\SYMNETS.SYS [2013-07-31 590424]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2013-09-18 140376]
R3 NAVENG;NAVENG; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\VirusDefs\20130917.019\ENG64.SYS [2013-09-18 126040]
R3 NAVEX15;NAVEX15; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\VirusDefs\20130917.019\EX64.SYS [2013-09-18 2099288]
R3 RTL8167;Ovladač Realtek 8167 NT; C:\Windows\system32\DRIVERS\Rt64win7.sys [2009-06-10 187392]
R3 rzdaendpt;Razer DeathAdder end point; C:\Windows\system32\DRIVERS\rzdaendpt.sys [2013-08-20 33464]
R3 rzendpt;rzendpt; C:\Windows\system32\DRIVERS\rzendpt.sys [2013-08-20 39096]
R3 rzudd;Razer Mouse Driver; C:\Windows\system32\DRIVERS\rzudd.sys [2013-08-21 141496]
R3 rzvkeyboard;Razer Virtual Keyboard Driver; C:\Windows\system32\DRIVERS\rzvkeyboard.sys [2013-08-20 30904]
R3 SRTSP;Symantec Real Time Storage Protection x64; C:\Windows\system32\drivers\NISx64\1500010.003\SRTSP64.SYS [2013-07-31 854616]
R3 SymEvent;SymEvent; \??\C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [2013-09-18 177752]
R3 USBPNPA;USB PnP Sound Device Interface; C:\Windows\system32\drivers\CM10864.sys [2013-01-16 1310720]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 NIS;Norton Internet Security; C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe [2013-08-31 275696]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-06-21 884512]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-05-16 1826592]
R2 SDScannerService;Spybot-S&D 2 Scanner Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [2013-05-16 1817560]
R2 SDUpdateService;Spybot-S&D 2 Updating Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2013-05-16 1033688]
R2 SDWSCService;Spybot-S&D 2 Security Center Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [2013-05-15 171928]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-06-21 413472]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-07-25 162672]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-09-18 257416]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-09-11 118680]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
-----------------EOF-----------------
dovolte mi, abych vám sdělil velmi netradiční problém. Někdo se mi dostal do PC. V tom by ovšem nebylo nic zvláštního, avšak jakým způsobem.
Hrál jsem hru League of Legends a během ní mi někdo klikal random klávesy (vzdáleně) a pak dokonce napsal do chatu, když jsem sděloval mojím spoluhráčům, že nemůžu hrát, tak on napsal do chatu "že mám bordel v pc (v češtině)".
Tak že si stáhnu hijackthis, naběhne mi firefox a do vyhledávajícího okénka se mi sama napíše věta, kterou jsem psal jedné osobě na skype před měsícem.
Log z hijackthis se zdál v podstatě čistý, tak jsem nelenil a přeinstaloval windows. Avšas na skype se mi zase samo od sebe oddělala ta sama osoba (v reálném čaše) z oblíbených do "normálních kontaktů".
Přikládám log z RSIT
Nezdá se mi tam tady toto - C:\Windows\SysWOW64\rundll32.exe
Mám 64 bitový win 7.
Logfile of random's system information tool 1.09 (written by random/random)
Run by Kuba at 2013-09-18 07:10:00
Microsoft Windows 7 Home Premium
System drive C: has 382 GB (93%) free of 410 GB
Total RAM: 4093 MB (33% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 7:10:10, on 18.9.2013
Platform: Windows 7 (WinNT 6.00.3504)
MSIE: Internet Explorer v8.00 (8.00.7600.16385)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWelcome.exe
E:\SiRonnie\Hry\League Of Legends\League of Legends\RADS\system\rads_user_kernel.exe
E:\SiRonnie\Hry\League Of Legends\League of Legends\RADS\projects\lol_launcher\releases\0.0.0.185\deploy\LoLLauncher.exe
E:\SiRonnie\Hry\League Of Legends\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.47\deploy\LolClient.exe
C:\Programy\Mozilla Firefox\firefox.exe
C:\Users\Kuba\Downloads\ProcessExplorer\procexp.exe
C:\Programy\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_168.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_168.exe
C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe
C:\Users\Kuba\Downloads\HiJackThis.exe
C:\Windows\SysWOW64\NOTEPAD.EXE
C:\Program Files\trend micro\Kuba.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = localhost:21320
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\coIEPlg.dll
O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\IPS\IPSBHO.DLL
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\coIEPlg.dll
O4 - HKLM\..\Run: [Razer Synapse] "C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe"
O4 - HKLM\..\Run: [SDTray] "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-2671917893-706360513-2285705896-1003\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-2671917893-706360513-2285705896-1003\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: SDWinLogon - SDWinLogon.dll (file missing)
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Spybot-S&D 2 Scanner Service (SDScannerService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
O23 - Service: Spybot-S&D 2 Updating Service (SDUpdateService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
O23 - Service: Spybot-S&D 2 Security Center Service (SDWSCService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8111 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe" /s "NIS" /m "C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\diMaster.dll" /prefetch:1
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
"taskhost.exe"
"C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe" /c /a /s UserSession2
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Windows\SysWOW64\rundll32.exe" C:\Windows\Syswow64\cm108.dll,CMICtrlWnd
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe"
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
C:\Windows\system32\sppsvc.exe
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWelcome.exe"
"E:\SiRonnie\Hry\League Of Legends\League of Legends\RADS\system\rads_user_kernel.exe" updateandrun lol_launcher LoLLauncher.exe
LoLLauncher.exe
"E:/SiRonnie/Hry/League Of Legends/League of Legends/RADS/projects/lol_air_client/releases/0.0.1.47/deploy/LolClient.exe" -runtime .\ -nodebug META-INF\AIR\application.xml .\ -- 8393
"C:\Programy\Mozilla Firefox\firefox.exe"
"taskhost.exe"
"C:\Programy\totalcmd\TOTALCMD64.EXE"
"C:\Users\Kuba\Downloads\ProcessExplorer\procexp.exe"
"C:\Users\Kuba\Downloads\ProcessExplorer\procexp.exe"
"C:\Programy\Mozilla Firefox\plugin-container.exe" --channel=2788.f3e8c00.422821404 "C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_168.dll" -greomni "C:\Programy\Mozilla Firefox\omni.ja" -appomni "C:\Programy\Mozilla Firefox\browser\omni.ja" -appdir "C:\Programy\Mozilla Firefox\browser" B21B215F267D7725 2788 "\\.\pipe\gecko-crash-server-pipe.2788" plugin
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_168.exe" --proxy-stub-channel=Flash4944.6191F308.9266 --host-broker-channel=Flash4944.6191F308.13678 --host-pid=4944 --host-npapi-version=27 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_168.dll"
"C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_168.exe" --channel=2232.003CF770.1591304281 --proxy-stub-channel=Flash4944.6191F308.9266 --plugin-path="C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_168.dll" --host-npapi-version=27 --type=renderer
"C:\Windows\system32\cmd.exe"
\??\C:\Windows\system32\conhost.exe
"C:\Windows\system32\taskmgr.exe" /1
"C:\Windows\system32\notepad.exe"
"C:\Windows\system32\NOTEPAD.EXE" C:\ProgramData\Spybot - Search & Destroy\Logs\Checks.130918-0634.txt
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe" -launch
"C:\Users\Kuba\Downloads\HiJackThis.exe"
"C:\Windows\system32\NOTEPAD.EXE" C:\Users\Kuba\Downloads\hijackthis.log
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe12_ Global\UsGthrCtrlFltPipeMssGthrPipe12 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 516 520 528 65536 524
"C:\Users\Kuba\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
=========Mozilla firefox=========
ProfilePath - C:\Users\Kuba\AppData\Roaming\Mozilla\Firefox\Profiles\b3rnf8e0.default
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.8.800.168 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_168.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.8]
"Description"=VLC Multimedia Plugin
"Path"=C:\Programy\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.8.800.168 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_168.dll
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
Norton Identity Protection - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\coIEPlg.dll [2013-08-15 526160]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Norton Vulnerability Protection - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\IPS\IPSBHO.DLL [2013-08-06 388512]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\coIEPlg.dll [2013-08-15 526160]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Cm108Sound"=C:\Windows\syswow64\RunDll32.exe [2009-07-14 44544]
"Nvtmru"=C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [2013-05-16 1012000]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2013-07-25 20684656]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
""= []
"Razer Synapse"=C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [2013-08-15 606040]
"SDTray"=C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [2013-05-16 3830224]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot-S&D 2 Tray Icon"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2013-09-18 07:10:00 ----D---- C:\rsit
2013-09-18 07:10:00 ----D---- C:\Program Files\trend micro
2013-09-18 06:08:51 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-09-18 06:08:50 ----D---- C:\Windows\SYSWOW64\Macromed
2013-09-18 06:08:48 ----D---- C:\Windows\system32\Macromed
2013-09-18 05:48:01 ----D---- C:\ProgramData\Spybot - Search & Destroy
2013-09-18 05:47:41 ----A---- C:\Windows\system32\sdnclean64.exe
2013-09-18 05:47:37 ----D---- C:\Program Files (x86)\Spybot - Search & Destroy 2
2013-09-18 05:45:43 ----D---- C:\Program Files\CCleaner
2013-09-18 05:13:24 ----D---- C:\ProgramData\Razer
2013-09-18 05:13:24 ----D---- C:\Program Files (x86)\Razer
2013-09-18 05:06:14 ----D---- C:\Program Files\Common Files\Symantec Shared
2013-09-18 05:06:14 ----A---- C:\Windows\system32\drivers\SYMEVENT64x86.SYS
2013-09-18 05:05:25 ----D---- C:\Windows\system32\drivers\NISx64
2013-09-18 05:05:23 ----D---- C:\Program Files (x86)\Norton Internet Security
2013-09-18 05:05:22 ----D---- C:\ProgramData\Norton
2013-09-18 05:03:18 ----D---- C:\ProgramData\NortonInstaller
2013-09-18 05:03:18 ----D---- C:\Program Files (x86)\NortonInstaller
2013-09-18 04:54:15 ----D---- C:\Program Files (x86)\AGEIA Technologies
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvopencl.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvoglv64.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\NvIFR64.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\NvFBC64.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvdispgenco6432049.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvdispco6432049.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvd3dumx.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvcuvid.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvcuvenc.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvcuda.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvcompiler.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2013-09-17 22:36:14 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2013-09-17 22:34:45 ----D---- C:\Program Files (x86)\Microsoft.NET
2013-09-17 22:34:20 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2013-09-17 22:34:20 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2013-09-17 22:34:20 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2013-09-17 22:34:20 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2013-09-17 22:34:20 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2013-09-17 22:34:20 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2013-09-17 22:34:20 ----A---- C:\Windows\system32\PresentationHost.exe
2013-09-17 22:34:20 ----A---- C:\Windows\system32\netfxperf.dll
2013-09-17 22:34:20 ----A---- C:\Windows\system32\mscoree.dll
2013-09-17 22:34:20 ----A---- C:\Windows\system32\dfshim.dll
2013-09-17 22:33:14 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2013-09-17 22:33:01 ----N---- C:\Windows\Vmix108.dll
2013-09-17 22:33:01 ----N---- C:\Windows\SYSWOW64\cmpa108.dll
2013-09-17 22:33:01 ----N---- C:\Windows\SYSWOW64\CM108.dll
2013-09-17 22:33:01 ----N---- C:\Windows\system32\Cmeau108.exe
2013-09-17 22:32:41 ----N---- C:\Windows\system32\CmiInstallResAll64.dll
2013-09-17 22:32:41 ----N---- C:\Windows\cm108.ini
2013-09-17 22:32:41 ----A---- C:\Windows\difxapi.dll
2013-09-17 22:32:04 ----A---- C:\Windows\system32\drivers\CM10864.sys
2013-09-17 22:27:24 ----D---- C:\Users\Kuba\AppData\Roaming\LolClient
2013-09-17 22:27:22 ----D---- C:\Users\Kuba\AppData\Roaming\Macromedia
2013-09-17 22:27:21 ----D---- C:\Users\Kuba\AppData\Roaming\Adobe
2013-09-17 22:19:22 ----D---- C:\Windows\Panther
2013-09-17 21:49:15 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2013-09-17 21:49:15 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2013-09-17 21:49:15 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2013-09-17 21:49:15 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2013-09-17 21:49:14 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2013-09-17 21:47:41 ----SHD---- C:\Windows\SYSWOW64\AI_RecycleBin
2013-09-17 21:46:17 ----N---- C:\Windows\system32\MpSigStub.exe
2013-09-17 21:45:24 ----D---- C:\ProgramData\PMB Files
2013-09-17 21:45:22 ----D---- C:\Program Files (x86)\Pando Networks
2013-09-17 21:44:46 ----D---- C:\Users\Kuba\AppData\Roaming\Riot Games
2013-09-17 21:41:27 ----D---- C:\Users\Kuba\AppData\Roaming\Skype
2013-09-17 21:41:24 ----RD---- C:\Program Files (x86)\Skype
2013-09-17 21:41:20 ----SHD---- C:\Windows\Installer
2013-09-17 21:41:20 ----D---- C:\ProgramData\Skype
2013-09-17 21:39:32 ----D---- C:\Users\Kuba\AppData\Roaming\Mozilla
2013-09-17 21:39:25 ----D---- C:\ProgramData\Mozilla
2013-09-17 21:39:25 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2013-09-17 21:36:32 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2013-09-17 21:36:29 ----D---- C:\ProgramData\NVIDIA
2013-09-17 21:36:25 ----A---- C:\Windows\system32\nvvsvc.exe
2013-09-17 21:36:25 ----A---- C:\Windows\system32\nvsvcr.dll
2013-09-17 21:36:25 ----A---- C:\Windows\system32\nvsvc64.dll
2013-09-17 21:36:25 ----A---- C:\Windows\system32\nvshext.dll
2013-09-17 21:36:25 ----A---- C:\Windows\system32\nvmctray.dll
2013-09-17 21:36:25 ----A---- C:\Windows\system32\nvcpl.dll
2013-09-17 21:36:11 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2013-09-17 21:36:11 ----A---- C:\Windows\system32\OpenCL.dll
2013-09-17 21:35:53 ----D---- C:\ProgramData\NVIDIA Corporation
2013-09-17 21:35:49 ----D---- C:\Program Files\NVIDIA Corporation
2013-09-17 21:35:46 ----D---- C:\Users\Kuba\AppData\Roaming\GHISLER
2013-09-17 21:35:19 ----D---- C:\Programy
2013-09-17 21:34:33 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2013-09-17 21:34:33 ----A---- C:\Windows\SYSWOW64\cabview.dll
2013-09-17 21:34:33 ----A---- C:\Windows\system32\rdpcore.dll
2013-09-17 21:34:33 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2013-09-17 21:34:33 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2013-09-17 21:34:33 ----A---- C:\Windows\system32\cabview.dll
2013-09-17 21:31:17 ----A---- C:\Windows\system32\wups2.dll
2013-09-17 21:31:17 ----A---- C:\Windows\system32\wucltux.dll
2013-09-17 21:31:17 ----A---- C:\Windows\system32\wuauclt.exe
2013-09-17 21:31:16 ----A---- C:\Windows\system32\wuaueng.dll
2013-09-17 21:31:09 ----A---- C:\Windows\system32\wups.dll
2013-09-17 21:31:09 ----A---- C:\Windows\system32\wudriver.dll
2013-09-17 21:31:09 ----A---- C:\Windows\system32\wuapi.dll
2013-09-17 21:30:57 ----A---- C:\Windows\system32\wuwebv.dll
2013-09-17 21:30:57 ----A---- C:\Windows\system32\wuapp.exe
2013-09-17 21:30:45 ----D---- C:\Users\Kuba\AppData\Roaming\Identities
2013-09-17 21:30:38 ----SD---- C:\Users\Kuba\AppData\Roaming\Microsoft
2013-09-17 21:30:38 ----D---- C:\Users\Kuba\AppData\Roaming\Media Center Programs
2013-09-17 21:30:27 ----SHD---- C:\Recovery
2013-09-17 21:30:27 ----SHD---- C:\ProgramData\Šablony
2013-09-17 21:30:27 ----SHD---- C:\ProgramData\Plocha
2013-09-17 21:30:27 ----SHD---- C:\ProgramData\Oblíbené položky
2013-09-17 21:30:27 ----SHD---- C:\ProgramData\Nabídka Start
2013-09-17 21:30:27 ----SHD---- C:\ProgramData\Dokumenty
2013-09-17 21:30:27 ----SHD---- C:\ProgramData\Data aplikací
2013-09-17 21:30:24 ----D---- C:\Windows\SoftwareDistribution
2013-09-17 21:20:24 ----D---- C:\Windows\Prefetch
2013-09-17 21:20:10 ----ASH---- C:\pagefile.sys
2013-09-17 21:20:09 ----SHD---- C:\System Volume Information
2013-09-17 21:20:09 ----ASH---- C:\hiberfil.sys
2013-08-29 06:29:54 ----A---- C:\Windows\SYSWOW64\rzdevicedll.dll
2013-08-21 09:34:32 ----A---- C:\Windows\system32\drivers\rzudd.sys
2013-08-20 10:41:58 ----A---- C:\Windows\system32\drivers\rzdaendpt.sys
2013-08-20 10:41:56 ----A---- C:\Windows\system32\drivers\rzvkeyboard.sys
2013-08-20 10:41:44 ----A---- C:\Windows\system32\drivers\rzendpt.sys
2013-08-20 10:35:02 ----A---- C:\Windows\SYSWOW64\rztouchdll.dll
2013-08-20 10:35:02 ----A---- C:\Windows\SYSWOW64\rzdevinfo.dll
2013-08-20 10:34:58 ----A---- C:\Windows\SYSWOW64\rzdisplaydll.dll
2013-08-20 10:34:56 ----A---- C:\Windows\SYSWOW64\rzaudiodll.dll
======List of files/folders modified in the last 1 month======
2013-09-18 07:10:00 ----RD---- C:\Program Files
2013-09-18 07:09:39 ----D---- C:\Windows\Temp
2013-09-18 06:08:52 ----D---- C:\Windows\Tasks
2013-09-18 06:08:52 ----D---- C:\Windows\system32\Tasks
2013-09-18 06:08:51 ----D---- C:\Windows\SysWOW64
2013-09-18 06:08:48 ----D---- C:\Windows\System32
2013-09-18 06:04:22 ----D---- C:\Windows\system32\catroot2
2013-09-18 05:56:53 ----D---- C:\Windows\system32\drivers\etc
2013-09-18 05:48:19 ----D---- C:\Windows\system32\config
2013-09-18 05:48:12 ----D---- C:\Windows\winsxs
2013-09-18 05:48:01 ----HD---- C:\ProgramData
2013-09-18 05:47:45 ----SD---- C:\ProgramData\Microsoft
2013-09-18 05:47:39 ----D---- C:\Windows\Logs
2013-09-18 05:47:39 ----D---- C:\Windows\inf
2013-09-18 05:47:39 ----D---- C:\Windows\debug
2013-09-18 05:47:39 ----D---- C:\Windows
2013-09-18 05:47:37 ----RD---- C:\Program Files (x86)
2013-09-18 05:47:21 ----D---- C:\Windows\system32\catroot
2013-09-18 05:35:40 ----D---- C:\Windows\system32\drivers
2013-09-18 05:35:33 ----D---- C:\Windows\system32\DriverStore
2013-09-18 05:33:24 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-09-18 05:33:15 ----RSD---- C:\Windows\assembly
2013-09-18 05:33:15 ----D---- C:\Windows\Microsoft.NET
2013-09-18 05:23:38 ----D---- C:\Program Files (x86)\Common Files
2013-09-18 05:23:36 ----D---- C:\Windows\system32\cs-CZ
2013-09-18 05:06:14 ----D---- C:\Program Files\Common Files
2013-09-18 04:48:26 ----D---- C:\Windows\system32\wdi
2013-09-17 22:36:45 ----D---- C:\Windows\SYSWOW64\cs-CZ
2013-09-17 22:34:48 ----D---- C:\Windows\SYSWOW64\en-US
2013-09-17 22:34:48 ----D---- C:\Windows\system32\en-US
2013-09-17 22:33:01 ----D---- C:\Windows\system
2013-09-17 22:31:34 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-09-17 21:36:36 ----RD---- C:\Users
2013-09-17 21:36:20 ----D---- C:\Windows\Help
2013-09-17 21:34:55 ----D---- C:\Windows\system32\CodeIntegrity
2013-09-17 21:30:45 ----D---- C:\Windows\system32\restore
2013-09-17 21:30:44 ----SHD---- C:\$Recycle.Bin
2013-09-17 21:30:27 ----D---- C:\Windows\system32\Recovery
2013-09-17 21:30:27 ----D---- C:\Program Files\Windows NT
2013-09-17 21:29:20 ----D---- C:\Windows\rescache
2013-09-17 21:23:40 ----D---- C:\Windows\system32\sysprep
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 pciide;pciide; C:\Windows\system32\DRIVERS\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2009-07-14 214096]
R0 SymDS;Symantec Data Store; C:\Windows\system32\drivers\NISx64\1500010.003\SYMDS64.SYS [2013-08-01 493656]
R0 SymEFA;Symantec Extended File Attributes; C:\Windows\system32\drivers\NISx64\1500010.003\SYMEFA64.SYS [2013-08-05 1147480]
R1 BHDrvx64;BHDrvx64; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\BASHDefs\20130903.002\BHDrvx64.sys [2013-09-04 1525336]
R1 ccSet_NIS;NIS Settings Manager; C:\Windows\system32\drivers\NISx64\1500010.003\ccSetx64.sys [2013-07-30 150104]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [2013-09-18 484952]
R1 IDSVia64;IDSVia64; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\IPSDefs\20130917.001\IDSvia64.sys [2013-09-17 520280]
R1 SRTSPX;Symantec Real Time Storage Protection (PEL) x64; C:\Windows\system32\drivers\NISx64\1500010.003\SRTSPX64.SYS [2013-07-31 36952]
R1 SymIRON;Symantec Iron Driver; C:\Windows\system32\drivers\NISx64\1500010.003\Ironx64.SYS [2013-07-31 264280]
R1 SymNetS;Symantec Network Security WFP Driver; C:\Windows\system32\drivers\NISx64\1500010.003\SYMNETS.SYS [2013-07-31 590424]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2013-09-18 140376]
R3 NAVENG;NAVENG; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\VirusDefs\20130917.019\ENG64.SYS [2013-09-18 126040]
R3 NAVEX15;NAVEX15; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\VirusDefs\20130917.019\EX64.SYS [2013-09-18 2099288]
R3 RTL8167;Ovladač Realtek 8167 NT; C:\Windows\system32\DRIVERS\Rt64win7.sys [2009-06-10 187392]
R3 rzdaendpt;Razer DeathAdder end point; C:\Windows\system32\DRIVERS\rzdaendpt.sys [2013-08-20 33464]
R3 rzendpt;rzendpt; C:\Windows\system32\DRIVERS\rzendpt.sys [2013-08-20 39096]
R3 rzudd;Razer Mouse Driver; C:\Windows\system32\DRIVERS\rzudd.sys [2013-08-21 141496]
R3 rzvkeyboard;Razer Virtual Keyboard Driver; C:\Windows\system32\DRIVERS\rzvkeyboard.sys [2013-08-20 30904]
R3 SRTSP;Symantec Real Time Storage Protection x64; C:\Windows\system32\drivers\NISx64\1500010.003\SRTSP64.SYS [2013-07-31 854616]
R3 SymEvent;SymEvent; \??\C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [2013-09-18 177752]
R3 USBPNPA;USB PnP Sound Device Interface; C:\Windows\system32\drivers\CM10864.sys [2013-01-16 1310720]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 NIS;Norton Internet Security; C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe [2013-08-31 275696]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-06-21 884512]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-05-16 1826592]
R2 SDScannerService;Spybot-S&D 2 Scanner Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [2013-05-16 1817560]
R2 SDUpdateService;Spybot-S&D 2 Updating Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2013-05-16 1033688]
R2 SDWSCService;Spybot-S&D 2 Security Center Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [2013-05-15 171928]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-06-21 413472]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-07-25 162672]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-09-18 257416]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-09-11 118680]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
-----------------EOF-----------------
- Rudy
- Site Admin
- Příspěvky: 119531
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Ovládá mi někdo pc na dálku
Zdravím!
Dejte log ComboFix:
Dejte log ComboFix:
Stahnete a ulozte nejlepe na plochu ComboFix: http://download.bleepingcomputer.com/sUBs/ComboFix.exe
pote spustte aplikaci pod uctem s administratorskym opravnenim
hned po startu se zobrazi obrazovka s licencnimi podminkami, pokracujte kliknutim na tlacitko Ano.
v klidu si postavte na kafe (cela akce trva cca. 5-10 minut, nekdy i dele - dle toho, o jak rychly stroj se
jedna a kolika soubory se skener bude muset prodirat), behem skenu se nepokousejte spoustet zadne jine
aplikace ani nic jineho
behem skenovani nepropadejte panice, vas stroj muze byt restartovan (predevsim pri prvni aplikaci skeneru)
upozorneni: pokud pouzivate antispyware s rezidentnim stitem, prepnete jeho rezidentni stit do Install Mode,
pripadne jej po dobu skenu uplne deaktivujte, protoze dochazi pri skenu a vymazu pripadneho malware k
nezadoucim kolizim s rezidentem antispyware.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Ovládá mi někdo pc na dálku
ComboFix 13-09-17.01 - Kuba 19.09.2013 2:58.1.4 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.4093.2409 [GMT 2:00]
Spuštěný z: c:\users\Kuba\Desktop\ComboFix.exe
AV: Norton Internet Security *Disabled/Updated* {63DF5164-9100-186D-2187-8DC619EFD8BF}
FW: Norton Internet Security *Enabled* {5BE4D041-DB6F-1935-0AD8-24F3E73C9FC4}
SP: Norton Internet Security *Enabled/Updated* {D8BEB080-B73A-17E3-1B37-B6B462689202}
SP: Spybot - Search and Destroy *Enabled/Updated* {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-08-19 do 2013-09-19 )))))))))))))))))))))))))))))))
.
.
2013-09-19 01:07 . 2013-09-19 01:07 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-09-18 13:03 . 2013-09-18 13:03 -------- d-----w- c:\windows\system32\SPReview
2013-09-18 13:02 . 2013-09-18 13:02 -------- d-----w- c:\windows\system32\EventProviders
2013-09-18 12:56 . 2013-09-18 12:56 -------- d-----w- c:\users\Default\AppData\Local\Microsoft Help
2013-09-18 12:47 . 2013-09-18 12:47 -------- d-sh--w- c:\windows\system32\%APPDATA%
2013-09-18 12:38 . 2013-09-18 12:38 -------- d-sh--w- c:\windows\SysWow64\%APPDATA%
2013-09-18 12:22 . 2009-03-17 08:07 14848 ----a-w- c:\windows\system32\Spool\prtprocs\x64\MIMFPR0H.DLL
2013-09-18 12:20 . 2013-09-18 12:20 -------- d-----w- c:\program files\KONICA MINOLTA
2013-09-18 12:12 . 2010-11-20 13:33 299392 ----a-w- c:\windows\system32\mcupdate_GenuineIntel.dll
2013-09-18 12:11 . 2010-11-20 13:27 1911808 ----a-w- c:\windows\system32\OpcServices.dll
2013-09-18 12:09 . 2010-11-20 13:27 529408 ----a-w- c:\windows\system32\wbemcomn.dll
2013-09-18 12:09 . 2010-11-20 13:27 244736 ----a-w- c:\program files\Windows Portable Devices\sqmapi.dll
2013-09-18 12:09 . 2010-11-20 13:27 244736 ----a-w- c:\windows\system32\sqmapi.dll
2013-09-18 11:35 . 2013-09-19 00:05 -------- d-----w- c:\program files (x86)\Microsoft Works
2013-09-18 11:35 . 2013-09-18 11:35 -------- d-----w- c:\windows\PCHEALTH
2013-09-18 11:31 . 2013-09-18 11:31 -------- d-----w- c:\program files\Microsoft Office
2013-09-18 11:30 . 2013-09-19 00:06 -------- d-----w- c:\programdata\Microsoft Help
2013-09-18 11:29 . 2013-09-18 11:29 -------- d-----r- C:\MSOCache
2013-09-18 09:54 . 2013-09-19 00:46 -------- d-----w- C:\Download
2013-09-18 09:01 . 2013-09-18 09:01 -------- d-----w- c:\windows\SysWow64\Wat
2013-09-18 09:01 . 2013-09-18 09:01 -------- d-----w- c:\windows\system32\Wat
2013-09-18 08:24 . 2011-02-19 12:05 1139200 ----a-w- c:\windows\system32\FntCache.dll
2013-09-18 08:24 . 2011-02-19 12:04 902656 ----a-w- c:\windows\system32\d2d1.dll
2013-09-18 08:24 . 2011-02-19 06:30 739840 ----a-w- c:\windows\SysWow64\d2d1.dll
2013-09-18 06:31 . 2013-09-18 06:34 -------- d-----w- c:\windows\system32\MRT
2013-09-18 06:10 . 2000-01-01 00:00 74344 ----a-w- c:\windows\system32\RtNicProp64.dll
2013-09-18 06:10 . 2000-01-01 00:00 685672 ----a-w- c:\windows\system32\drivers\Rt64win7.sys
2013-09-18 06:10 . 2000-01-01 00:00 107552 ----a-w- c:\windows\system32\RTNUninst64.dll
2013-09-18 06:10 . 2013-09-18 06:10 -------- d-----w- c:\program files (x86)\Realtek
2013-09-18 06:09 . 2013-09-18 06:08 45856 ----a-w- c:\windows\system32\drivers\avgtpx64.sys
2013-09-18 06:09 . 2013-09-18 06:10 -------- d-----w- c:\programdata\AVG SafeGuard toolbar
2013-09-18 06:09 . 2013-09-18 06:09 -------- d-----w- c:\program files (x86)\Common Files\AVG Secure Search
2013-09-18 06:09 . 2013-09-18 06:09 -------- d-----w- c:\program files (x86)\AVG SafeGuard toolbar
2013-09-18 06:09 . 2012-07-26 07:40 2560 ----a-w- c:\windows\system32\drivers\cs-CZ\wdf01000.sys.mui
2013-09-18 06:09 . 2012-07-26 04:55 785512 ----a-w- c:\windows\system32\drivers\Wdf01000.sys
2013-09-18 06:09 . 2012-07-26 04:55 54376 ----a-w- c:\windows\system32\drivers\WdfLdr.sys
2013-09-18 06:09 . 2012-07-26 02:36 9728 ----a-w- c:\windows\system32\Wdfres.dll
2013-09-18 06:08 . 2013-09-19 00:24 16152 ----a-w- c:\windows\system32\drivers\SWDUMon.sys
2013-09-18 06:08 . 2013-09-18 06:08 -------- d--h--w- c:\programdata\Common Files
2013-09-18 06:08 . 2013-09-18 06:08 -------- d-----w- c:\program files (x86)\SlimDrivers
2013-09-18 05:56 . 2010-02-23 08:16 294912 ----a-w- c:\windows\system32\browserchoice.exe
2013-09-18 05:40 . 2012-12-16 17:11 46080 ----a-w- c:\windows\system32\atmlib.dll
2013-09-18 05:40 . 2012-12-16 14:45 367616 ----a-w- c:\windows\system32\atmfd.dll
2013-09-18 05:40 . 2012-12-16 14:13 295424 ----a-w- c:\windows\SysWow64\atmfd.dll
2013-09-18 05:40 . 2012-12-16 14:13 34304 ----a-w- c:\windows\SysWow64\atmlib.dll
2013-09-18 05:40 . 2010-09-30 10:41 100864 ----a-w- c:\windows\system32\fontsub.dll
2013-09-18 05:40 . 2010-09-30 06:47 70656 ----a-w- c:\windows\SysWow64\fontsub.dll
2013-09-18 05:39 . 2012-07-26 02:26 87040 ----a-w- c:\windows\system32\drivers\WUDFPf.sys
2013-09-18 05:39 . 2012-07-26 02:26 198656 ----a-w- c:\windows\system32\drivers\WUDFRd.sys
2013-09-18 05:39 . 2012-07-26 03:08 229888 ----a-w- c:\windows\system32\WUDFHost.exe
2013-09-18 05:39 . 2012-07-26 03:08 84992 ----a-w- c:\windows\system32\WUDFSvc.dll
2013-09-18 05:39 . 2012-07-26 03:08 744448 ----a-w- c:\windows\system32\WUDFx.dll
2013-09-18 05:39 . 2012-07-26 03:08 45056 ----a-w- c:\windows\system32\WUDFCoinstaller.dll
2013-09-18 05:39 . 2012-07-26 03:08 194048 ----a-w- c:\windows\system32\WUDFPlatform.dll
2013-09-18 05:35 . 2009-09-04 15:29 1892184 ----a-w- c:\windows\SysWow64\D3DX9_42.dll
2013-09-18 05:35 . 2006-09-28 14:05 2414360 ----a-w- c:\windows\SysWow64\d3dx9_31.dll
2013-09-18 05:35 . 2013-09-18 05:35 -------- d-----w- c:\program files (x86)\Winamp Detect
2013-09-18 05:35 . 2013-09-18 05:35 -------- d-----w- c:\program files (x86)\Common Files\PX Storage Engine
2013-09-18 05:35 . 2013-09-18 05:35 -------- d-----w- c:\program files (x86)\Winamp
2013-09-18 05:33 . 2012-03-01 06:46 23408 ----a-w- c:\windows\system32\drivers\fs_rec.sys
2013-09-18 05:33 . 2012-03-01 06:33 81408 ----a-w- c:\windows\system32\imagehlp.dll
2013-09-18 05:33 . 2012-03-01 06:28 5120 ----a-w- c:\windows\system32\wmi.dll
2013-09-18 05:33 . 2012-03-01 05:33 159232 ----a-w- c:\windows\SysWow64\imagehlp.dll
2013-09-18 05:33 . 2012-03-01 05:29 5120 ----a-w- c:\windows\SysWow64\wmi.dll
2013-09-18 05:10 . 2013-09-18 05:10 -------- d-----w- C:\rsit
2013-09-18 05:10 . 2013-09-18 05:10 -------- d-----w- c:\program files\trend micro
2013-09-18 04:08 . 2013-09-18 04:08 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2013-09-18 04:08 . 2013-09-18 04:08 692616 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2013-09-18 04:08 . 2013-09-18 04:08 -------- d-----w- c:\windows\SysWow64\Macromed
2013-09-18 04:08 . 2013-09-18 04:08 -------- d-----w- c:\windows\system32\Macromed
2013-09-18 03:48 . 2013-09-18 05:40 -------- d-----w- c:\programdata\Spybot - Search & Destroy
2013-09-18 03:47 . 2009-01-25 11:14 17272 ----a-w- c:\windows\system32\sdnclean64.exe
2013-09-18 03:47 . 2013-09-18 03:58 -------- d-----w- c:\program files (x86)\Spybot - Search & Destroy 2
2013-09-18 03:45 . 2013-09-18 03:45 -------- d-----w- c:\program files\CCleaner
2013-09-18 03:23 . 2013-09-18 03:23 -------- d-----w- c:\program files (x86)\Common Files\Symantec Shared
2013-09-18 03:20 . 2011-02-25 06:19 2871808 ----a-w- c:\windows\explorer.exe
2013-09-18 03:19 . 2011-05-04 05:25 2315776 ----a-w- c:\windows\system32\tquery.dll
2013-09-18 03:18 . 2011-03-12 12:08 1465344 ----a-w- c:\windows\system32\XpsPrint.dll
2013-09-18 03:17 . 2012-08-24 18:05 220160 ----a-w- c:\windows\system32\wintrust.dll
2013-09-18 03:16 . 2012-04-07 12:31 3216384 ----a-w- c:\windows\system32\msi.dll
2013-09-18 03:15 . 2011-05-24 11:42 404480 ----a-w- c:\windows\system32\umpnpmgr.dll
2013-09-18 03:14 . 2012-05-05 08:36 503808 ----a-w- c:\windows\system32\srcore.dll
2013-09-18 03:13 . 2013-03-19 06:04 5550424 ----a-w- c:\windows\system32\ntoskrnl.exe
2013-09-18 03:12 . 2012-06-02 05:41 184320 ----a-w- c:\windows\system32\cryptsvc.dll
2013-09-18 03:12 . 2012-06-02 05:41 140288 ----a-w- c:\windows\system32\cryptnet.dll
2013-09-18 03:12 . 2012-06-02 05:41 1464320 ----a-w- c:\windows\system32\crypt32.dll
2013-09-18 03:12 . 2012-06-02 04:36 140288 ----a-w- c:\windows\SysWow64\cryptsvc.dll
2013-09-18 03:12 . 2012-06-02 04:36 1159680 ----a-w- c:\windows\SysWow64\crypt32.dll
2013-09-18 03:12 . 2012-06-02 04:36 103936 ----a-w- c:\windows\SysWow64\cryptnet.dll
2013-09-18 03:06 . 2013-09-18 03:06 177752 ----a-w- c:\windows\system32\drivers\SYMEVENT64x86.SYS
2013-09-18 03:06 . 2013-09-18 03:06 -------- d-----w- c:\program files\Common Files\Symantec Shared
2013-09-18 03:05 . 2013-09-18 03:05 -------- d-----w- c:\windows\system32\drivers\NISx64
2013-09-18 03:05 . 2013-09-18 03:05 -------- d-----w- c:\program files (x86)\Norton Internet Security
2013-09-18 03:05 . 2013-09-18 03:06 -------- d-----w- c:\programdata\Norton
2013-09-18 03:03 . 2013-09-18 03:03 -------- d-----w- c:\program files (x86)\NortonInstaller
2013-09-18 02:56 . 2011-11-19 14:58 77312 ----a-w- c:\windows\system32\packager.dll
2013-09-18 02:56 . 2011-11-19 14:01 67072 ----a-w- c:\windows\SysWow64\packager.dll
2013-09-18 02:54 . 2013-09-18 02:54 -------- d-----w- c:\program files (x86)\AGEIA Technologies
2013-09-17 20:34 . 2013-09-18 11:35 -------- d-----w- c:\program files (x86)\Microsoft.NET
2013-09-17 20:33 . 2013-09-18 06:10 -------- d--h--w- c:\program files (x86)\InstallShield Installation Information
2013-09-17 20:33 . 2013-01-16 15:56 820224 ------w- c:\windows\system32\Cmeau108.exe
2013-09-17 20:33 . 2013-01-16 15:54 8757248 ------w- c:\windows\SysWow64\CM108.dll
2013-09-17 20:33 . 2013-01-16 15:54 389120 ------w- c:\windows\system32\CM108.cpl
2013-09-17 20:33 . 2013-01-16 15:54 200704 ------w- c:\windows\SysWow64\cmpa108.dll
2013-09-17 20:33 . 2013-01-16 15:54 143360 ------w- c:\windows\Vmix108.dll
2013-09-17 20:32 . 2013-01-16 15:56 524768 ----a-w- c:\windows\difxapi.dll
2013-09-17 20:32 . 2013-01-16 15:56 359424 ------w- c:\windows\system32\CmiInstallResAll64.dll
2013-09-17 20:32 . 2013-01-16 15:54 315392 ----a-w- c:\windows\system\fltr108.dll
2013-09-17 20:32 . 2013-01-16 15:54 1310720 ----a-w- c:\windows\system32\drivers\CM10864.sys
2013-09-17 20:19 . 2013-09-18 07:18 -------- d-----w- c:\windows\Panther
2013-09-17 19:49 . 2008-07-31 08:41 68616 ----a-w- c:\windows\SysWow64\XAPOFX1_1.dll
2013-09-17 19:49 . 2008-07-31 08:40 509448 ----a-w- c:\windows\SysWow64\XAudio2_2.dll
2013-09-17 19:49 . 2008-07-12 06:18 467984 ----a-w- c:\windows\SysWow64\d3dx10_39.dll
2013-09-17 19:49 . 2008-07-12 06:18 1493528 ----a-w- c:\windows\SysWow64\D3DCompiler_39.dll
2013-09-17 19:49 . 2008-07-12 06:18 3851784 ----a-w- c:\windows\SysWow64\D3DX9_39.dll
2013-09-17 19:47 . 2013-09-17 19:47 -------- d-sh--w- c:\windows\SysWow64\AI_RecycleBin
2013-09-17 19:46 . 2013-09-15 22:50 9694160 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{5201E3F9-0C07-458A-9447-01A21010F311}\mpengine.dll
2013-09-17 19:46 . 2013-08-07 02:22 278800 ------w- c:\windows\system32\MpSigStub.exe
2013-09-17 19:45 . 2013-09-19 00:50 -------- d-----w- c:\programdata\PMB Files
2013-09-17 19:45 . 2013-09-17 19:45 -------- d-----w- c:\program files (x86)\Pando Networks
2013-09-17 19:41 . 2013-09-17 19:41 -------- d-----w- c:\program files (x86)\Common Files\Skype
2013-09-17 19:41 . 2013-09-17 19:41 -------- d-----r- c:\program files (x86)\Skype
2013-09-17 19:41 . 2013-09-19 00:08 -------- d-sh--w- c:\windows\Installer
2013-09-17 19:41 . 2013-09-17 19:41 -------- d-----w- c:\programdata\Skype
2013-09-17 19:39 . 2013-09-17 19:39 -------- d-----w- c:\program files (x86)\Mozilla Maintenance Service
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-09-18 23:39 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll
2013-09-18 23:39 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll
2013-06-21 12:06 . 2013-02-25 22:32 2597856 ----a-w- c:\windows\SysWow64\nvapi.dll
2013-06-21 12:06 . 2013-02-25 22:32 2936208 ----a-w- c:\windows\system32\nvapi64.dll
2013-06-21 12:06 . 2013-02-25 22:32 13411896 ----a-w- c:\windows\SysWow64\nvwgf2um.dll
2013-06-21 12:06 . 2009-07-13 21:59 15920536 ----a-w- c:\windows\system32\nvwgf2umx.dll
2013-06-21 12:06 . 2009-06-10 20:37 12427240 ----a-w- c:\windows\SysWow64\nvd3dum.dll
2013-06-21 03:16 . 2013-06-21 03:16 566048 ----a-w- c:\windows\SysWow64\nvStreaming.exe
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]
2013-09-18 06:08 3086512 ----a-w- c:\program files (x86)\AVG SafeGuard toolbar\15.4.0.5\AVG SafeGuard toolbar_toolbar.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar]
"{95B7759C-8C7F-4BF1-B163-73684A933233}"= "c:\program files (x86)\AVG SafeGuard toolbar\15.4.0.5\AVG SafeGuard toolbar_toolbar.dll" [2013-09-18 3086512]
.
[HKEY_CLASSES_ROOT\clsid\{95b7759c-8c7f-4bf1-b163-73684a933233}]
[HKEY_CLASSES_ROOT\AVG SafeGuard toolbar.PugiObj.1]
[HKEY_CLASSES_ROOT\AVG SafeGuard toolbar.PugiObj]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2013-07-25 20684656]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"Razer Synapse"="c:\program files (x86)\Razer\Synapse\RzSynapse.exe" [2013-08-15 606040]
"SDTray"="c:\program files (x86)\Spybot - Search & Destroy 2\SDTray.exe" [2013-05-16 3830224]
"vProt"="c:\program files (x86)\AVG SafeGuard toolbar\vprot.exe" [2013-09-18 2285232]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0\0sdnclean64.exe
.
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
R3 SWDUMon;SWDUMon;c:\windows\system32\DRIVERS\SWDUMon.sys;c:\windows\SYSNATIVE\DRIVERS\SWDUMon.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
S0 SymDS;Symantec Data Store;c:\windows\system32\drivers\NISx64\1500010.003\SYMDS64.SYS;c:\windows\SYSNATIVE\drivers\NISx64\1500010.003\SYMDS64.SYS [x]
S0 SymEFA;Symantec Extended File Attributes;c:\windows\system32\drivers\NISx64\1500010.003\SYMEFA64.SYS;c:\windows\SYSNATIVE\drivers\NISx64\1500010.003\SYMEFA64.SYS [x]
S1 avgtp;avgtp;c:\windows\system32\drivers\avgtpx64.sys;c:\windows\SYSNATIVE\drivers\avgtpx64.sys [x]
S1 BHDrvx64;BHDrvx64;c:\program files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\BASHDefs\20130903.002\BHDrvx64.sys;c:\program files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\BASHDefs\20130903.002\BHDrvx64.sys [x]
S1 ccSet_NIS;NIS Settings Manager;c:\windows\system32\drivers\NISx64\1500010.003\ccSetx64.sys;c:\windows\SYSNATIVE\drivers\NISx64\1500010.003\ccSetx64.sys [x]
S1 IDSVia64;IDSVia64;c:\program files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\IPSDefs\20130918.001\IDSvia64.sys;c:\program files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\IPSDefs\20130918.001\IDSvia64.sys [x]
S1 SymIRON;Symantec Iron Driver;c:\windows\system32\drivers\NISx64\1500010.003\Ironx64.SYS;c:\windows\SYSNATIVE\drivers\NISx64\1500010.003\Ironx64.SYS [x]
S1 SymNetS;Symantec Network Security WFP Driver;c:\windows\system32\drivers\NISx64\1500010.003\SYMNETS.SYS;c:\windows\SYSNATIVE\drivers\NISx64\1500010.003\SYMNETS.SYS [x]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
S2 NIS;Norton Internet Security;c:\program files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe;c:\program files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe [x]
S2 SDScannerService;Spybot-S&D 2 Scanner Service;c:\program files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe;c:\program files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [x]
S2 SDUpdateService;Spybot-S&D 2 Updating Service;c:\program files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe;c:\program files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [x]
S2 SDWSCService;Spybot-S&D 2 Security Center Service;c:\program files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe;c:\program files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [x]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x]
S2 vToolbarUpdater15.4.0;vToolbarUpdater15.4.0;c:\program files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.4.0\ToolbarUpdater.exe;c:\program files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.4.0\ToolbarUpdater.exe [x]
S3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys;c:\program files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
S3 rzdaendpt;Razer DeathAdder end point;c:\windows\system32\DRIVERS\rzdaendpt.sys;c:\windows\SYSNATIVE\DRIVERS\rzdaendpt.sys [x]
S3 rzendpt;rzendpt;c:\windows\system32\DRIVERS\rzendpt.sys;c:\windows\SYSNATIVE\DRIVERS\rzendpt.sys [x]
S3 rzudd;Razer Mouse Driver;c:\windows\system32\DRIVERS\rzudd.sys;c:\windows\SYSNATIVE\DRIVERS\rzudd.sys [x]
S3 rzvkeyboard;Razer Virtual Keyboard Driver;c:\windows\system32\DRIVERS\rzvkeyboard.sys;c:\windows\SYSNATIVE\DRIVERS\rzvkeyboard.sys [x]
S3 USBPNPA;USB PnP Sound Device Interface;c:\windows\system32\drivers\CM10864.sys;c:\windows\SYSNATIVE\drivers\CM10864.sys [x]
.
.
Obsah adresáře 'Naplánované úlohy'
.
2013-09-19 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-09-18 04:08]
.
2013-09-19 c:\windows\Tasks\SlimDrivers Startup.job
- c:\program files (x86)\SlimDrivers\SlimDrivers.exe [2013-09-17 07:17]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Cm108Sound"="c:\windows\Syswow64\cm108.dll" [2013-01-16 8757248]
"Nvtmru"="c:\program files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" [2013-05-16 1012000]
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SysWOW64\blank.htm
uInternet Settings,ProxyServer = localhost:21320
IE: E&xportovat do aplikace Microsoft Excel - c:\programy\MSOFFI~1\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 172.16.157.225 10.10.10.10
Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - c:\program files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\15.4.0\ViProtocol.dll
FF - ProfilePath - c:\users\Kuba\AppData\Roaming\Mozilla\Firefox\Profiles\b3rnf8e0.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
FF - prefs.js: keyword.URL -
FF - ExtSQL: 2013-09-17 21:59; elemhidehelper@adblockplus.org; c:\users\Kuba\AppData\Roaming\Mozilla\Firefox\Profiles\b3rnf8e0.default\extensions\elemhidehelper@adblockplus.org.xpi
FF - ExtSQL: 2013-09-17 21:59; {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}; c:\users\Kuba\AppData\Roaming\Mozilla\Firefox\Profiles\b3rnf8e0.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
FF - ExtSQL: 2013-09-17 21:59; {f759ca51-3a91-4dd1-ae78-9db5eee9ebf0}; c:\users\Kuba\AppData\Roaming\Mozilla\Firefox\Profiles\b3rnf8e0.default\extensions\{f759ca51-3a91-4dd1-ae78-9db5eee9ebf0}.xpi
FF - ExtSQL: 2013-09-17 22:05; {cd617375-6743-4ee8-bac4-fbf10f35729e}; c:\users\Kuba\AppData\Roaming\Mozilla\Firefox\Profiles\b3rnf8e0.default\extensions\{cd617375-6743-4ee8-bac4-fbf10f35729e}.xpi
FF - ExtSQL: 2013-09-17 22:05; {DDC359D1-844A-42a7-9AA1-88A850A938A8}; c:\users\Kuba\AppData\Roaming\Mozilla\Firefox\Profiles\b3rnf8e0.default\extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}.xpi
FF - ExtSQL: 2013-09-18 05:06; {2D3F3651-74B9-4795-BDEC-6DA2F431CB62}; c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.0.1.3\coFFPlgn
FF - ExtSQL: 2013-09-18 05:15; {BBDA0591-3099-440a-AA10-41764D9DB4DB}; c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.0.1.3\IPSFFPlgn
FF - ExtSQL: 2013-09-18 08:09; avg@toolbar; c:\programdata\AVG SafeGuard toolbar\FireFoxExt\15.4.0.5
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Wow6432Node-HKLM-Run-<NO NAME> - (no file)
Wow6432Node-HKU-Default-RunOnce-SPReview - c:\windows\System32\SPReview\SPReview.exe
Notify-SDWinLogon - SDWinLogon.dll
HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start
.
.
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\NIS]
"ImagePath"="\"c:\program files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe\" /s \"NIS\" /m \"c:\program files (x86)\Norton Internet Security\Engine\21.0.1.3\diMaster.dll\" /prefetch:1"
"ImagePath"="\SystemRoot\system32\drivers\NISx64\1500010.003\SYMNETS.SYS"
"TrustedImagePaths"="c:\program files (x86)\Norton Internet Security\Engine\21.0.1.3;c:\program files (x86)\Norton Internet Security\Engine64\21.0.1.3"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2013-09-19 03:17:00
ComboFix-quarantined-files.txt 2013-09-19 01:16
.
Před spuštěním: Volných bajtů: 395 978 723 328
Po spuštění: Volných bajtů: 395 602 128 896
.
- - End Of File - - F80C005C9DC8358E9BED5E89F4D76423
A36C5E4F47E84449FF07ED3517B43A31
Microsoft Windows 7 Home Premium 6.1.7601.1.1250.420.1029.18.4093.2409 [GMT 2:00]
Spuštěný z: c:\users\Kuba\Desktop\ComboFix.exe
AV: Norton Internet Security *Disabled/Updated* {63DF5164-9100-186D-2187-8DC619EFD8BF}
FW: Norton Internet Security *Enabled* {5BE4D041-DB6F-1935-0AD8-24F3E73C9FC4}
SP: Norton Internet Security *Enabled/Updated* {D8BEB080-B73A-17E3-1B37-B6B462689202}
SP: Spybot - Search and Destroy *Enabled/Updated* {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2013-08-19 do 2013-09-19 )))))))))))))))))))))))))))))))
.
.
2013-09-19 01:07 . 2013-09-19 01:07 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-09-18 13:03 . 2013-09-18 13:03 -------- d-----w- c:\windows\system32\SPReview
2013-09-18 13:02 . 2013-09-18 13:02 -------- d-----w- c:\windows\system32\EventProviders
2013-09-18 12:56 . 2013-09-18 12:56 -------- d-----w- c:\users\Default\AppData\Local\Microsoft Help
2013-09-18 12:47 . 2013-09-18 12:47 -------- d-sh--w- c:\windows\system32\%APPDATA%
2013-09-18 12:38 . 2013-09-18 12:38 -------- d-sh--w- c:\windows\SysWow64\%APPDATA%
2013-09-18 12:22 . 2009-03-17 08:07 14848 ----a-w- c:\windows\system32\Spool\prtprocs\x64\MIMFPR0H.DLL
2013-09-18 12:20 . 2013-09-18 12:20 -------- d-----w- c:\program files\KONICA MINOLTA
2013-09-18 12:12 . 2010-11-20 13:33 299392 ----a-w- c:\windows\system32\mcupdate_GenuineIntel.dll
2013-09-18 12:11 . 2010-11-20 13:27 1911808 ----a-w- c:\windows\system32\OpcServices.dll
2013-09-18 12:09 . 2010-11-20 13:27 529408 ----a-w- c:\windows\system32\wbemcomn.dll
2013-09-18 12:09 . 2010-11-20 13:27 244736 ----a-w- c:\program files\Windows Portable Devices\sqmapi.dll
2013-09-18 12:09 . 2010-11-20 13:27 244736 ----a-w- c:\windows\system32\sqmapi.dll
2013-09-18 11:35 . 2013-09-19 00:05 -------- d-----w- c:\program files (x86)\Microsoft Works
2013-09-18 11:35 . 2013-09-18 11:35 -------- d-----w- c:\windows\PCHEALTH
2013-09-18 11:31 . 2013-09-18 11:31 -------- d-----w- c:\program files\Microsoft Office
2013-09-18 11:30 . 2013-09-19 00:06 -------- d-----w- c:\programdata\Microsoft Help
2013-09-18 11:29 . 2013-09-18 11:29 -------- d-----r- C:\MSOCache
2013-09-18 09:54 . 2013-09-19 00:46 -------- d-----w- C:\Download
2013-09-18 09:01 . 2013-09-18 09:01 -------- d-----w- c:\windows\SysWow64\Wat
2013-09-18 09:01 . 2013-09-18 09:01 -------- d-----w- c:\windows\system32\Wat
2013-09-18 08:24 . 2011-02-19 12:05 1139200 ----a-w- c:\windows\system32\FntCache.dll
2013-09-18 08:24 . 2011-02-19 12:04 902656 ----a-w- c:\windows\system32\d2d1.dll
2013-09-18 08:24 . 2011-02-19 06:30 739840 ----a-w- c:\windows\SysWow64\d2d1.dll
2013-09-18 06:31 . 2013-09-18 06:34 -------- d-----w- c:\windows\system32\MRT
2013-09-18 06:10 . 2000-01-01 00:00 74344 ----a-w- c:\windows\system32\RtNicProp64.dll
2013-09-18 06:10 . 2000-01-01 00:00 685672 ----a-w- c:\windows\system32\drivers\Rt64win7.sys
2013-09-18 06:10 . 2000-01-01 00:00 107552 ----a-w- c:\windows\system32\RTNUninst64.dll
2013-09-18 06:10 . 2013-09-18 06:10 -------- d-----w- c:\program files (x86)\Realtek
2013-09-18 06:09 . 2013-09-18 06:08 45856 ----a-w- c:\windows\system32\drivers\avgtpx64.sys
2013-09-18 06:09 . 2013-09-18 06:10 -------- d-----w- c:\programdata\AVG SafeGuard toolbar
2013-09-18 06:09 . 2013-09-18 06:09 -------- d-----w- c:\program files (x86)\Common Files\AVG Secure Search
2013-09-18 06:09 . 2013-09-18 06:09 -------- d-----w- c:\program files (x86)\AVG SafeGuard toolbar
2013-09-18 06:09 . 2012-07-26 07:40 2560 ----a-w- c:\windows\system32\drivers\cs-CZ\wdf01000.sys.mui
2013-09-18 06:09 . 2012-07-26 04:55 785512 ----a-w- c:\windows\system32\drivers\Wdf01000.sys
2013-09-18 06:09 . 2012-07-26 04:55 54376 ----a-w- c:\windows\system32\drivers\WdfLdr.sys
2013-09-18 06:09 . 2012-07-26 02:36 9728 ----a-w- c:\windows\system32\Wdfres.dll
2013-09-18 06:08 . 2013-09-19 00:24 16152 ----a-w- c:\windows\system32\drivers\SWDUMon.sys
2013-09-18 06:08 . 2013-09-18 06:08 -------- d--h--w- c:\programdata\Common Files
2013-09-18 06:08 . 2013-09-18 06:08 -------- d-----w- c:\program files (x86)\SlimDrivers
2013-09-18 05:56 . 2010-02-23 08:16 294912 ----a-w- c:\windows\system32\browserchoice.exe
2013-09-18 05:40 . 2012-12-16 17:11 46080 ----a-w- c:\windows\system32\atmlib.dll
2013-09-18 05:40 . 2012-12-16 14:45 367616 ----a-w- c:\windows\system32\atmfd.dll
2013-09-18 05:40 . 2012-12-16 14:13 295424 ----a-w- c:\windows\SysWow64\atmfd.dll
2013-09-18 05:40 . 2012-12-16 14:13 34304 ----a-w- c:\windows\SysWow64\atmlib.dll
2013-09-18 05:40 . 2010-09-30 10:41 100864 ----a-w- c:\windows\system32\fontsub.dll
2013-09-18 05:40 . 2010-09-30 06:47 70656 ----a-w- c:\windows\SysWow64\fontsub.dll
2013-09-18 05:39 . 2012-07-26 02:26 87040 ----a-w- c:\windows\system32\drivers\WUDFPf.sys
2013-09-18 05:39 . 2012-07-26 02:26 198656 ----a-w- c:\windows\system32\drivers\WUDFRd.sys
2013-09-18 05:39 . 2012-07-26 03:08 229888 ----a-w- c:\windows\system32\WUDFHost.exe
2013-09-18 05:39 . 2012-07-26 03:08 84992 ----a-w- c:\windows\system32\WUDFSvc.dll
2013-09-18 05:39 . 2012-07-26 03:08 744448 ----a-w- c:\windows\system32\WUDFx.dll
2013-09-18 05:39 . 2012-07-26 03:08 45056 ----a-w- c:\windows\system32\WUDFCoinstaller.dll
2013-09-18 05:39 . 2012-07-26 03:08 194048 ----a-w- c:\windows\system32\WUDFPlatform.dll
2013-09-18 05:35 . 2009-09-04 15:29 1892184 ----a-w- c:\windows\SysWow64\D3DX9_42.dll
2013-09-18 05:35 . 2006-09-28 14:05 2414360 ----a-w- c:\windows\SysWow64\d3dx9_31.dll
2013-09-18 05:35 . 2013-09-18 05:35 -------- d-----w- c:\program files (x86)\Winamp Detect
2013-09-18 05:35 . 2013-09-18 05:35 -------- d-----w- c:\program files (x86)\Common Files\PX Storage Engine
2013-09-18 05:35 . 2013-09-18 05:35 -------- d-----w- c:\program files (x86)\Winamp
2013-09-18 05:33 . 2012-03-01 06:46 23408 ----a-w- c:\windows\system32\drivers\fs_rec.sys
2013-09-18 05:33 . 2012-03-01 06:33 81408 ----a-w- c:\windows\system32\imagehlp.dll
2013-09-18 05:33 . 2012-03-01 06:28 5120 ----a-w- c:\windows\system32\wmi.dll
2013-09-18 05:33 . 2012-03-01 05:33 159232 ----a-w- c:\windows\SysWow64\imagehlp.dll
2013-09-18 05:33 . 2012-03-01 05:29 5120 ----a-w- c:\windows\SysWow64\wmi.dll
2013-09-18 05:10 . 2013-09-18 05:10 -------- d-----w- C:\rsit
2013-09-18 05:10 . 2013-09-18 05:10 -------- d-----w- c:\program files\trend micro
2013-09-18 04:08 . 2013-09-18 04:08 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2013-09-18 04:08 . 2013-09-18 04:08 692616 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2013-09-18 04:08 . 2013-09-18 04:08 -------- d-----w- c:\windows\SysWow64\Macromed
2013-09-18 04:08 . 2013-09-18 04:08 -------- d-----w- c:\windows\system32\Macromed
2013-09-18 03:48 . 2013-09-18 05:40 -------- d-----w- c:\programdata\Spybot - Search & Destroy
2013-09-18 03:47 . 2009-01-25 11:14 17272 ----a-w- c:\windows\system32\sdnclean64.exe
2013-09-18 03:47 . 2013-09-18 03:58 -------- d-----w- c:\program files (x86)\Spybot - Search & Destroy 2
2013-09-18 03:45 . 2013-09-18 03:45 -------- d-----w- c:\program files\CCleaner
2013-09-18 03:23 . 2013-09-18 03:23 -------- d-----w- c:\program files (x86)\Common Files\Symantec Shared
2013-09-18 03:20 . 2011-02-25 06:19 2871808 ----a-w- c:\windows\explorer.exe
2013-09-18 03:19 . 2011-05-04 05:25 2315776 ----a-w- c:\windows\system32\tquery.dll
2013-09-18 03:18 . 2011-03-12 12:08 1465344 ----a-w- c:\windows\system32\XpsPrint.dll
2013-09-18 03:17 . 2012-08-24 18:05 220160 ----a-w- c:\windows\system32\wintrust.dll
2013-09-18 03:16 . 2012-04-07 12:31 3216384 ----a-w- c:\windows\system32\msi.dll
2013-09-18 03:15 . 2011-05-24 11:42 404480 ----a-w- c:\windows\system32\umpnpmgr.dll
2013-09-18 03:14 . 2012-05-05 08:36 503808 ----a-w- c:\windows\system32\srcore.dll
2013-09-18 03:13 . 2013-03-19 06:04 5550424 ----a-w- c:\windows\system32\ntoskrnl.exe
2013-09-18 03:12 . 2012-06-02 05:41 184320 ----a-w- c:\windows\system32\cryptsvc.dll
2013-09-18 03:12 . 2012-06-02 05:41 140288 ----a-w- c:\windows\system32\cryptnet.dll
2013-09-18 03:12 . 2012-06-02 05:41 1464320 ----a-w- c:\windows\system32\crypt32.dll
2013-09-18 03:12 . 2012-06-02 04:36 140288 ----a-w- c:\windows\SysWow64\cryptsvc.dll
2013-09-18 03:12 . 2012-06-02 04:36 1159680 ----a-w- c:\windows\SysWow64\crypt32.dll
2013-09-18 03:12 . 2012-06-02 04:36 103936 ----a-w- c:\windows\SysWow64\cryptnet.dll
2013-09-18 03:06 . 2013-09-18 03:06 177752 ----a-w- c:\windows\system32\drivers\SYMEVENT64x86.SYS
2013-09-18 03:06 . 2013-09-18 03:06 -------- d-----w- c:\program files\Common Files\Symantec Shared
2013-09-18 03:05 . 2013-09-18 03:05 -------- d-----w- c:\windows\system32\drivers\NISx64
2013-09-18 03:05 . 2013-09-18 03:05 -------- d-----w- c:\program files (x86)\Norton Internet Security
2013-09-18 03:05 . 2013-09-18 03:06 -------- d-----w- c:\programdata\Norton
2013-09-18 03:03 . 2013-09-18 03:03 -------- d-----w- c:\program files (x86)\NortonInstaller
2013-09-18 02:56 . 2011-11-19 14:58 77312 ----a-w- c:\windows\system32\packager.dll
2013-09-18 02:56 . 2011-11-19 14:01 67072 ----a-w- c:\windows\SysWow64\packager.dll
2013-09-18 02:54 . 2013-09-18 02:54 -------- d-----w- c:\program files (x86)\AGEIA Technologies
2013-09-17 20:34 . 2013-09-18 11:35 -------- d-----w- c:\program files (x86)\Microsoft.NET
2013-09-17 20:33 . 2013-09-18 06:10 -------- d--h--w- c:\program files (x86)\InstallShield Installation Information
2013-09-17 20:33 . 2013-01-16 15:56 820224 ------w- c:\windows\system32\Cmeau108.exe
2013-09-17 20:33 . 2013-01-16 15:54 8757248 ------w- c:\windows\SysWow64\CM108.dll
2013-09-17 20:33 . 2013-01-16 15:54 389120 ------w- c:\windows\system32\CM108.cpl
2013-09-17 20:33 . 2013-01-16 15:54 200704 ------w- c:\windows\SysWow64\cmpa108.dll
2013-09-17 20:33 . 2013-01-16 15:54 143360 ------w- c:\windows\Vmix108.dll
2013-09-17 20:32 . 2013-01-16 15:56 524768 ----a-w- c:\windows\difxapi.dll
2013-09-17 20:32 . 2013-01-16 15:56 359424 ------w- c:\windows\system32\CmiInstallResAll64.dll
2013-09-17 20:32 . 2013-01-16 15:54 315392 ----a-w- c:\windows\system\fltr108.dll
2013-09-17 20:32 . 2013-01-16 15:54 1310720 ----a-w- c:\windows\system32\drivers\CM10864.sys
2013-09-17 20:19 . 2013-09-18 07:18 -------- d-----w- c:\windows\Panther
2013-09-17 19:49 . 2008-07-31 08:41 68616 ----a-w- c:\windows\SysWow64\XAPOFX1_1.dll
2013-09-17 19:49 . 2008-07-31 08:40 509448 ----a-w- c:\windows\SysWow64\XAudio2_2.dll
2013-09-17 19:49 . 2008-07-12 06:18 467984 ----a-w- c:\windows\SysWow64\d3dx10_39.dll
2013-09-17 19:49 . 2008-07-12 06:18 1493528 ----a-w- c:\windows\SysWow64\D3DCompiler_39.dll
2013-09-17 19:49 . 2008-07-12 06:18 3851784 ----a-w- c:\windows\SysWow64\D3DX9_39.dll
2013-09-17 19:47 . 2013-09-17 19:47 -------- d-sh--w- c:\windows\SysWow64\AI_RecycleBin
2013-09-17 19:46 . 2013-09-15 22:50 9694160 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{5201E3F9-0C07-458A-9447-01A21010F311}\mpengine.dll
2013-09-17 19:46 . 2013-08-07 02:22 278800 ------w- c:\windows\system32\MpSigStub.exe
2013-09-17 19:45 . 2013-09-19 00:50 -------- d-----w- c:\programdata\PMB Files
2013-09-17 19:45 . 2013-09-17 19:45 -------- d-----w- c:\program files (x86)\Pando Networks
2013-09-17 19:41 . 2013-09-17 19:41 -------- d-----w- c:\program files (x86)\Common Files\Skype
2013-09-17 19:41 . 2013-09-17 19:41 -------- d-----r- c:\program files (x86)\Skype
2013-09-17 19:41 . 2013-09-19 00:08 -------- d-sh--w- c:\windows\Installer
2013-09-17 19:41 . 2013-09-17 19:41 -------- d-----w- c:\programdata\Skype
2013-09-17 19:39 . 2013-09-17 19:39 -------- d-----w- c:\program files (x86)\Mozilla Maintenance Service
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-09-18 23:39 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll
2013-09-18 23:39 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll
2013-06-21 12:06 . 2013-02-25 22:32 2597856 ----a-w- c:\windows\SysWow64\nvapi.dll
2013-06-21 12:06 . 2013-02-25 22:32 2936208 ----a-w- c:\windows\system32\nvapi64.dll
2013-06-21 12:06 . 2013-02-25 22:32 13411896 ----a-w- c:\windows\SysWow64\nvwgf2um.dll
2013-06-21 12:06 . 2009-07-13 21:59 15920536 ----a-w- c:\windows\system32\nvwgf2umx.dll
2013-06-21 12:06 . 2009-06-10 20:37 12427240 ----a-w- c:\windows\SysWow64\nvd3dum.dll
2013-06-21 03:16 . 2013-06-21 03:16 566048 ----a-w- c:\windows\SysWow64\nvStreaming.exe
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]
2013-09-18 06:08 3086512 ----a-w- c:\program files (x86)\AVG SafeGuard toolbar\15.4.0.5\AVG SafeGuard toolbar_toolbar.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar]
"{95B7759C-8C7F-4BF1-B163-73684A933233}"= "c:\program files (x86)\AVG SafeGuard toolbar\15.4.0.5\AVG SafeGuard toolbar_toolbar.dll" [2013-09-18 3086512]
.
[HKEY_CLASSES_ROOT\clsid\{95b7759c-8c7f-4bf1-b163-73684a933233}]
[HKEY_CLASSES_ROOT\AVG SafeGuard toolbar.PugiObj.1]
[HKEY_CLASSES_ROOT\AVG SafeGuard toolbar.PugiObj]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2013-07-25 20684656]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"Razer Synapse"="c:\program files (x86)\Razer\Synapse\RzSynapse.exe" [2013-08-15 606040]
"SDTray"="c:\program files (x86)\Spybot - Search & Destroy 2\SDTray.exe" [2013-05-16 3830224]
"vProt"="c:\program files (x86)\AVG SafeGuard toolbar\vprot.exe" [2013-09-18 2285232]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0\0sdnclean64.exe
.
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
R3 SWDUMon;SWDUMon;c:\windows\system32\DRIVERS\SWDUMon.sys;c:\windows\SYSNATIVE\DRIVERS\SWDUMon.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
S0 SymDS;Symantec Data Store;c:\windows\system32\drivers\NISx64\1500010.003\SYMDS64.SYS;c:\windows\SYSNATIVE\drivers\NISx64\1500010.003\SYMDS64.SYS [x]
S0 SymEFA;Symantec Extended File Attributes;c:\windows\system32\drivers\NISx64\1500010.003\SYMEFA64.SYS;c:\windows\SYSNATIVE\drivers\NISx64\1500010.003\SYMEFA64.SYS [x]
S1 avgtp;avgtp;c:\windows\system32\drivers\avgtpx64.sys;c:\windows\SYSNATIVE\drivers\avgtpx64.sys [x]
S1 BHDrvx64;BHDrvx64;c:\program files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\BASHDefs\20130903.002\BHDrvx64.sys;c:\program files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\BASHDefs\20130903.002\BHDrvx64.sys [x]
S1 ccSet_NIS;NIS Settings Manager;c:\windows\system32\drivers\NISx64\1500010.003\ccSetx64.sys;c:\windows\SYSNATIVE\drivers\NISx64\1500010.003\ccSetx64.sys [x]
S1 IDSVia64;IDSVia64;c:\program files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\IPSDefs\20130918.001\IDSvia64.sys;c:\program files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\IPSDefs\20130918.001\IDSvia64.sys [x]
S1 SymIRON;Symantec Iron Driver;c:\windows\system32\drivers\NISx64\1500010.003\Ironx64.SYS;c:\windows\SYSNATIVE\drivers\NISx64\1500010.003\Ironx64.SYS [x]
S1 SymNetS;Symantec Network Security WFP Driver;c:\windows\system32\drivers\NISx64\1500010.003\SYMNETS.SYS;c:\windows\SYSNATIVE\drivers\NISx64\1500010.003\SYMNETS.SYS [x]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
S2 NIS;Norton Internet Security;c:\program files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe;c:\program files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe [x]
S2 SDScannerService;Spybot-S&D 2 Scanner Service;c:\program files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe;c:\program files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [x]
S2 SDUpdateService;Spybot-S&D 2 Updating Service;c:\program files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe;c:\program files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [x]
S2 SDWSCService;Spybot-S&D 2 Security Center Service;c:\program files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe;c:\program files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [x]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x]
S2 vToolbarUpdater15.4.0;vToolbarUpdater15.4.0;c:\program files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.4.0\ToolbarUpdater.exe;c:\program files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.4.0\ToolbarUpdater.exe [x]
S3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys;c:\program files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
S3 rzdaendpt;Razer DeathAdder end point;c:\windows\system32\DRIVERS\rzdaendpt.sys;c:\windows\SYSNATIVE\DRIVERS\rzdaendpt.sys [x]
S3 rzendpt;rzendpt;c:\windows\system32\DRIVERS\rzendpt.sys;c:\windows\SYSNATIVE\DRIVERS\rzendpt.sys [x]
S3 rzudd;Razer Mouse Driver;c:\windows\system32\DRIVERS\rzudd.sys;c:\windows\SYSNATIVE\DRIVERS\rzudd.sys [x]
S3 rzvkeyboard;Razer Virtual Keyboard Driver;c:\windows\system32\DRIVERS\rzvkeyboard.sys;c:\windows\SYSNATIVE\DRIVERS\rzvkeyboard.sys [x]
S3 USBPNPA;USB PnP Sound Device Interface;c:\windows\system32\drivers\CM10864.sys;c:\windows\SYSNATIVE\drivers\CM10864.sys [x]
.
.
Obsah adresáře 'Naplánované úlohy'
.
2013-09-19 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-09-18 04:08]
.
2013-09-19 c:\windows\Tasks\SlimDrivers Startup.job
- c:\program files (x86)\SlimDrivers\SlimDrivers.exe [2013-09-17 07:17]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Cm108Sound"="c:\windows\Syswow64\cm108.dll" [2013-01-16 8757248]
"Nvtmru"="c:\program files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" [2013-05-16 1012000]
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SysWOW64\blank.htm
uInternet Settings,ProxyServer = localhost:21320
IE: E&xportovat do aplikace Microsoft Excel - c:\programy\MSOFFI~1\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 172.16.157.225 10.10.10.10
Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - c:\program files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\15.4.0\ViProtocol.dll
FF - ProfilePath - c:\users\Kuba\AppData\Roaming\Mozilla\Firefox\Profiles\b3rnf8e0.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
FF - prefs.js: keyword.URL -
FF - ExtSQL: 2013-09-17 21:59; elemhidehelper@adblockplus.org; c:\users\Kuba\AppData\Roaming\Mozilla\Firefox\Profiles\b3rnf8e0.default\extensions\elemhidehelper@adblockplus.org.xpi
FF - ExtSQL: 2013-09-17 21:59; {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}; c:\users\Kuba\AppData\Roaming\Mozilla\Firefox\Profiles\b3rnf8e0.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
FF - ExtSQL: 2013-09-17 21:59; {f759ca51-3a91-4dd1-ae78-9db5eee9ebf0}; c:\users\Kuba\AppData\Roaming\Mozilla\Firefox\Profiles\b3rnf8e0.default\extensions\{f759ca51-3a91-4dd1-ae78-9db5eee9ebf0}.xpi
FF - ExtSQL: 2013-09-17 22:05; {cd617375-6743-4ee8-bac4-fbf10f35729e}; c:\users\Kuba\AppData\Roaming\Mozilla\Firefox\Profiles\b3rnf8e0.default\extensions\{cd617375-6743-4ee8-bac4-fbf10f35729e}.xpi
FF - ExtSQL: 2013-09-17 22:05; {DDC359D1-844A-42a7-9AA1-88A850A938A8}; c:\users\Kuba\AppData\Roaming\Mozilla\Firefox\Profiles\b3rnf8e0.default\extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}.xpi
FF - ExtSQL: 2013-09-18 05:06; {2D3F3651-74B9-4795-BDEC-6DA2F431CB62}; c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.0.1.3\coFFPlgn
FF - ExtSQL: 2013-09-18 05:15; {BBDA0591-3099-440a-AA10-41764D9DB4DB}; c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.0.1.3\IPSFFPlgn
FF - ExtSQL: 2013-09-18 08:09; avg@toolbar; c:\programdata\AVG SafeGuard toolbar\FireFoxExt\15.4.0.5
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Wow6432Node-HKLM-Run-<NO NAME> - (no file)
Wow6432Node-HKU-Default-RunOnce-SPReview - c:\windows\System32\SPReview\SPReview.exe
Notify-SDWinLogon - SDWinLogon.dll
HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start
.
.
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\NIS]
"ImagePath"="\"c:\program files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe\" /s \"NIS\" /m \"c:\program files (x86)\Norton Internet Security\Engine\21.0.1.3\diMaster.dll\" /prefetch:1"
"ImagePath"="\SystemRoot\system32\drivers\NISx64\1500010.003\SYMNETS.SYS"
"TrustedImagePaths"="c:\program files (x86)\Norton Internet Security\Engine\21.0.1.3;c:\program files (x86)\Norton Internet Security\Engine64\21.0.1.3"
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2013-09-19 03:17:00
ComboFix-quarantined-files.txt 2013-09-19 01:16
.
Před spuštěním: Volných bajtů: 395 978 723 328
Po spuštění: Volných bajtů: 395 602 128 896
.
- - End Of File - - F80C005C9DC8358E9BED5E89F4D76423
A36C5E4F47E84449FF07ED3517B43A31
- Rudy
- Site Admin
- Příspěvky: 119531
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Ovládá mi někdo pc na dálku
Log je OK. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Ovládá mi někdo pc na dálku
Ted se mi pod svchostem furt spousti dlllhost.exe. Nemam z toho dobry pocit.
Tady log z RSIT
Logfile of random's system information tool 1.09 (written by random/random)
Run by Kuba at 2013-09-20 03:38:44
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 369 GB (90%) free of 410 GB
Total RAM: 4093 MB (56% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 3:38:49, on 20.9.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16521)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe
C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Programy\PrintScreen\PrintScreen.exe
C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe
C:\Users\Kuba\AppData\Local\Temp\_tc0\procexp.exe
C:\Programy\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\Kuba.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = localhost:21320
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\coIEPlg.dll
O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\IPS\IPSBHO.DLL
O2 - BHO: AVG SafeGuard toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG SafeGuard toolbar\15.5.0.2\AVG SafeGuard toolbar_toolbar.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\coIEPlg.dll
O3 - Toolbar: AVG SafeGuard toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG SafeGuard toolbar\15.5.0.2\AVG SafeGuard toolbar_toolbar.dll
O4 - HKLM\..\Run: [Razer Synapse] "C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe"
O4 - HKLM\..\Run: [SDTray] "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
O4 - HKLM\..\Run: [vProt] "C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Gadwin PrintScreen] C:\Programy\PrintScreen\PrintScreen.exe /nosplash
O4 - HKUS\S-1-5-21-2671917893-706360513-2285705896-1003\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-2671917893-706360513-2285705896-1003\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Programy\MSOFFI~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programy\MSOFFI~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programy\MSOFFI~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Programy\MSOFFI~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\15.5.0\ViProtocol.dll
O20 - Winlogon Notify: SDWinLogon - SDWinLogon.dll (file missing)
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Spybot-S&D 2 Scanner Service (SDScannerService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
O23 - Service: Spybot-S&D 2 Updating Service (SDUpdateService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
O23 - Service: Spybot-S&D 2 Security Center Service (SDWSCService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: vToolbarUpdater15.5.0 - Unknown owner - C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.5.0\ToolbarUpdater.exe
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8578 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe" /s "NIS" /m "C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\diMaster.dll" /prefetch:1
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"
"C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.5.0\ToolbarUpdater.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe"
"C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.5.0\loggingserver.exe" 72648 "C:\ProgramData\AVG SafeGuard toolbar\Logger\logger.properties"
\??\C:\Windows\system32\conhost.exe "-1144301852646067494-843421409-906200493-1098714345-1626411425984084915682965238
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\sppsvc.exe
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
"taskhost.exe"
taskeng.exe {DD542EDD-1836-4ECF-B758-9AC7E4B00B7B}
"C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe" /c /a /s UserSession2
"C:\Windows\system32\Dwm.exe"
"C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe" -boot
C:\Windows\Explorer.EXE
"C:\Windows\SysWOW64\rundll32.exe" C:\Windows\Syswow64\cm108.dll,CMICtrlWnd
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe"
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Programy\PrintScreen\PrintScreen.exe" /nosplash
"C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe"
C:\Windows\splwow64.exe 8192
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"taskhost.exe"
taskeng.exe {207B84C6-6C77-4C20-A514-83C325A3D1FF}
C:\Windows\servicing\TrustedInstaller.exe
"C:\Windows\system32\wuauclt.exe"
"C:\Programy\totalcmd\TOTALCMD64.EXE"
"C:\Users\Kuba\AppData\Local\Temp\_tc0\procexp.exe"
"C:\Users\Kuba\AppData\Local\Temp\_tc0\procexp.exe"
"C:\Programy\Mozilla Firefox\firefox.exe"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe10_ Global\UsGthrCtrlFltPipeMssGthrPipe10 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 524 528 536 65536 532
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Users\Kuba\Downloads\RSITx64.exe"
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\SlimDrivers Startup.job
=========Mozilla firefox=========
ProfilePath - C:\Users\Kuba\AppData\Roaming\Mozilla\Firefox\Profiles\b3rnf8e0.default
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
prefs.js - "keyword.URL" - ""
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.8.800.168 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_168.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin]
"Description"=
"Path"=C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\15.5.0\\npsitesafety.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nullsoft.com/winampDetector;version=1]
"Description"=Winamp Detector
"Path"=C:\Program Files (x86)\Winamp Detect\npwachk.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.8]
"Description"=VLC Multimedia Plugin
"Path"=C:\Programy\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.8.800.168 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_168.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
Norton Identity Protection - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\coIEPlg.dll [2013-08-15 526160]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Norton Vulnerability Protection - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\IPS\IPSBHO.DLL [2013-08-06 388512]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]
AVG SafeGuard toolbar - C:\Program Files (x86)\AVG SafeGuard toolbar\15.5.0.2\AVG SafeGuard toolbar_toolbar.dll [2013-09-19 3122864]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\coIEPlg.dll [2013-08-15 526160]
{95B7759C-8C7F-4BF1-B163-73684A933233} - AVG SafeGuard toolbar - C:\Program Files (x86)\AVG SafeGuard toolbar\15.5.0.2\AVG SafeGuard toolbar_toolbar.dll [2013-09-19 3122864]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Cm108Sound"=C:\Windows\syswow64\RunDll32.exe [2009-07-14 44544]
"Nvtmru"=C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [2013-05-16 1012000]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2013-07-25 20684656]
"Gadwin PrintScreen"=C:\Programy\PrintScreen\PrintScreen.exe [2012-05-30 1842384]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
""= []
"Razer Synapse"=C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [2013-08-15 606040]
"SDTray"=C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [2013-05-16 3830224]
"vProt"=C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe [2013-09-19 2314416]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot-S&D 2 Tray Icon"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\wextract.exe
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\url.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\occache.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\msrating.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\msls31.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\mshta.exe
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\inseng.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\icardie.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2013-09-19 14:10:44 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2013-09-19 14:10:44 ----A---- C:\Windows\system32\elshyph.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\wininet.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\wextract.exe
2013-09-19 14:10:43 ----A---- C:\Windows\system32\webcheck.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\vbscript.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\urlmon.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\url.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2013-09-19 14:10:43 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-09-19 14:10:43 ----A---- C:\Windows\system32\pngfilt.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\occache.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\msrating.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\msls31.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\mshtmlmedia.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\mshtmler.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\mshtmled.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\mshtml.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\mshta.exe
2013-09-19 14:10:43 ----A---- C:\Windows\system32\msfeedssync.exe
2013-09-19 14:10:43 ----A---- C:\Windows\system32\msfeedsbs.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\msfeeds.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\licmgr10.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\jsproxy.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\jscript9.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\jscript.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\inseng.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\imgutil.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\iexpress.exe
2013-09-19 14:10:43 ----A---- C:\Windows\system32\ieUnatt.exe
2013-09-19 14:10:43 ----A---- C:\Windows\system32\ieui.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\iesysprep.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\iesetup.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\iertutil.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\iernonce.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\iepeers.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\ieframe.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\iedkcs32.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\ieapfltr.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\ieapfltr.dat
2013-09-19 14:10:43 ----A---- C:\Windows\system32\IEAdvpack.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\ie4uinit.exe
2013-09-19 14:10:43 ----A---- C:\Windows\system32\icardie.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\dxtrans.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\dxtmsft.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d3d10core.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d3d10.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\XpsPrint.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\WMPhoto.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\WindowsCodecs.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\UIAnimation.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\FntCache.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\dxgi.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\DWrite.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d3d10warp.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d3d10level9.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d3d10core.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d3d10_1core.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d3d10_1.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d3d10.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d2d1.dll
2013-09-19 13:42:11 ----SHD---- C:\Config.Msi
2013-09-19 09:25:50 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2013-09-19 09:25:49 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2013-09-19 09:25:49 ----A---- C:\Windows\system32\cdd.dll
2013-09-19 09:25:24 ----A---- C:\Windows\SYSWOW64\dhcpcore6.dll
2013-09-19 09:25:24 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2013-09-19 09:25:24 ----A---- C:\Windows\system32\dhcpcore6.dll
2013-09-19 09:25:23 ----A---- C:\Windows\SYSWOW64\dhcpcsvc6.dll
2013-09-19 09:25:04 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2013-09-19 09:25:04 ----A---- C:\Windows\system32\wintrust.dll
2013-09-19 09:25:04 ----A---- C:\Windows\system32\crypt32.dll
2013-09-19 09:25:03 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2013-09-19 09:25:03 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2013-09-19 09:25:03 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2013-09-19 09:25:03 ----A---- C:\Windows\system32\cryptsvc.dll
2013-09-19 09:25:03 ----A---- C:\Windows\system32\cryptnet.dll
2013-09-19 09:24:31 ----A---- C:\Windows\system32\authui.dll
2013-09-19 09:24:29 ----A---- C:\Windows\SYSWOW64\authui.dll
2013-09-19 09:24:29 ----A---- C:\Windows\system32\consent.exe
2013-09-19 09:24:29 ----A---- C:\Windows\system32\appinfo.dll
2013-09-19 09:24:20 ----A---- C:\Windows\system32\wwansvc.dll
2013-09-19 09:24:20 ----A---- C:\Windows\system32\wwanprotdim.dll
2013-09-19 09:24:13 ----A---- C:\Windows\SYSWOW64\tzres.dll
2013-09-19 09:24:13 ----A---- C:\Windows\system32\tzres.dll
2013-09-19 09:24:04 ----A---- C:\Windows\system32\drivers\ataport.sys
2013-09-19 09:24:02 ----A---- C:\Windows\system32\drivers\RNDISMP.sys
2013-09-19 09:24:02 ----A---- C:\Windows\system32\drivers\ndis.sys
2013-09-19 09:24:00 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2013-09-19 09:24:00 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2013-09-19 09:24:00 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-09-19 09:24:00 ----A---- C:\Windows\system32\ntdll.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\wow32.dll
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\user.exe
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\setup16.exe
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\instnm.exe
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\wow64win.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\wow64cpu.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\wow64.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\winsrv.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\smss.exe
2013-09-19 09:23:59 ----A---- C:\Windows\system32\ntvdm64.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\KernelBase.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\kernel32.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\csrsrv.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\conhost.exe
2013-09-19 09:23:59 ----A---- C:\Windows\system32\apisetschema.dll
2013-09-19 09:23:58 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2013-09-19 09:23:58 ----A---- C:\Windows\system32\WMVDECOD.DLL
2013-09-19 09:23:57 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2013-09-19 09:23:57 ----A---- C:\Windows\system32\rpcrt4.dll
2013-09-19 09:23:54 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2013-09-19 09:23:54 ----A---- C:\Windows\SYSWOW64\netevent.dll
2013-09-19 09:23:54 ----A---- C:\Windows\SYSWOW64\netcorehc.dll
2013-09-19 09:23:54 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\nlasvc.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\nlaapi.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\netevent.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\netcorehc.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\ncsi.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\iphlpsvc.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2013-09-19 09:23:52 ----A---- C:\Windows\system32\qedit.dll
2013-09-19 09:23:51 ----A---- C:\Windows\SYSWOW64\qedit.dll
2013-09-19 09:23:50 ----A---- C:\Windows\system32\OxpsConverter.exe
2013-09-19 09:23:30 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2013-09-19 09:23:17 ----A---- C:\Windows\system32\win32k.sys
2013-09-19 09:22:44 ----A---- C:\Windows\system32\shell32.dll
2013-09-19 09:22:43 ----A---- C:\Windows\SYSWOW64\shell32.dll
2013-09-19 09:22:42 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2013-09-19 09:22:42 ----A---- C:\Windows\system32\shdocvw.dll
2013-09-19 09:22:40 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2013-09-19 09:22:40 ----A---- C:\Windows\system32\win32spl.dll
2013-09-19 09:22:36 ----A---- C:\Windows\system32\taskhost.exe
2013-09-19 09:22:31 ----A---- C:\Windows\SYSWOW64\cryptdlg.dll
2013-09-19 09:22:31 ----A---- C:\Windows\system32\cryptdlg.dll
2013-09-19 09:22:21 ----A---- C:\Windows\system32\drivers\tcpip.sys
2013-09-19 09:22:18 ----A---- C:\Windows\SYSWOW64\certutil.exe
2013-09-19 09:22:18 ----A---- C:\Windows\system32\certutil.exe
2013-09-19 09:22:17 ----A---- C:\Windows\SYSWOW64\certenc.dll
2013-09-19 09:22:17 ----A---- C:\Windows\system32\certenc.dll
2013-09-19 09:18:10 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2013-09-19 09:18:10 ----A---- C:\Windows\system32\d3d11.dll
2013-09-19 03:17:39 ----SHD---- C:\$RECYCLE.BIN
2013-09-19 03:17:09 ----A---- C:\ComboFix.txt
2013-09-19 02:57:28 ----A---- C:\Windows\zip.exe
2013-09-19 02:57:28 ----A---- C:\Windows\SWSC.exe
2013-09-19 02:57:28 ----A---- C:\Windows\SWREG.exe
2013-09-19 02:57:28 ----A---- C:\Windows\sed.exe
2013-09-19 02:57:28 ----A---- C:\Windows\PEV.exe
2013-09-19 02:57:28 ----A---- C:\Windows\NIRCMD.exe
2013-09-19 02:57:28 ----A---- C:\Windows\MBR.exe
2013-09-19 02:57:28 ----A---- C:\Windows\grep.exe
2013-09-19 02:47:38 ----D---- C:\Qoobox
2013-09-19 02:47:21 ----D---- C:\Windows\erdnt
2013-09-18 15:03:46 ----D---- C:\Windows\system32\SPReview
2013-09-18 15:02:57 ----D---- C:\Windows\system32\EventProviders
2013-09-18 14:47:30 ----SHD---- C:\Windows\system32\%APPDATA%
2013-09-18 14:38:09 ----SHD---- C:\Windows\SYSWOW64\%APPDATA%
2013-09-18 14:20:35 ----D---- C:\Program Files\KONICA MINOLTA
2013-09-18 14:13:20 ----A---- C:\Windows\system32\netfxperf.dll
2013-09-18 14:13:20 ----A---- C:\Windows\system32\dfshim.dll
2013-09-18 14:13:15 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2013-09-18 14:13:12 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2013-09-18 14:13:12 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2013-09-18 14:13:08 ----A---- C:\Windows\SYSWOW64\mfc40u.dll
2013-09-18 14:13:08 ----A---- C:\Windows\SYSWOW64\mfc40.dll
2013-09-18 14:13:08 ----A---- C:\Windows\system32\sysmain.dll
2013-09-18 14:13:07 ----A---- C:\Windows\system32\MSVidCtl.dll
2013-09-18 14:13:06 ----A---- C:\Windows\system32\wmp.dll
2013-09-18 14:13:05 ----A---- C:\Windows\system32\mscoree.dll
2013-09-18 14:13:05 ----A---- C:\Windows\system32\mmcndmgr.dll
2013-09-18 14:13:04 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll
2013-09-18 14:13:04 ----A---- C:\Windows\system32\xpsservices.dll
2013-09-18 14:13:04 ----A---- C:\Windows\system32\secproc_isv.dll
2013-09-18 14:13:04 ----A---- C:\Windows\system32\secproc.dll
2013-09-18 14:13:04 ----A---- C:\Windows\system32\RMActivate_isv.exe
2013-09-18 14:13:04 ----A---- C:\Windows\system32\RMActivate.exe
2013-09-18 14:13:04 ----A---- C:\Windows\system32\mf.dll
2013-09-18 14:13:03 ----A---- C:\Windows\SYSWOW64\secproc.dll
2013-09-18 14:13:03 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe
2013-09-18 14:13:02 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2013-09-18 14:13:02 ----A---- C:\Windows\system32\schedsvc.dll
2013-09-18 14:13:02 ----A---- C:\Windows\system32\ole32.dll
2013-09-18 14:13:01 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2013-09-18 14:13:01 ----A---- C:\Windows\system32\taskschd.dll
2013-09-18 14:13:01 ----A---- C:\Windows\system32\spwizui.dll
2013-09-18 14:13:01 ----A---- C:\Windows\system32\RacEngn.dll
2013-09-18 14:13:01 ----A---- C:\Windows\system32\diagperf.dll
2013-09-18 14:13:00 ----A---- C:\Windows\SYSWOW64\mf.dll
2013-09-18 14:13:00 ----A---- C:\Windows\SYSWOW64\CertEnroll.dll
2013-09-18 14:13:00 ----A---- C:\Windows\system32\wevtsvc.dll
2013-09-18 14:13:00 ----A---- C:\Windows\system32\vssapi.dll
2013-09-18 14:13:00 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2013-09-18 14:13:00 ----A---- C:\Windows\system32\ExplorerFrame.dll
2013-09-18 14:13:00 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2013-09-18 14:12:59 ----A---- C:\Windows\SYSWOW64\wmp.dll
2013-09-18 14:12:59 ----A---- C:\Windows\system32\UIRibbon.dll
2013-09-18 14:12:59 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2013-09-18 14:12:58 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2013-09-18 14:12:58 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2013-09-18 14:12:58 ----A---- C:\Windows\system32\WsmSvc.dll
2013-09-18 14:12:58 ----A---- C:\Windows\system32\WMVCORE.DLL
2013-09-18 14:12:58 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2013-09-18 14:12:58 ----A---- C:\Windows\system32\PresentationHost.exe
2013-09-18 14:12:57 ----A---- C:\Windows\system32\WinSAT.exe
2013-09-18 14:12:57 ----A---- C:\Windows\system32\spreview.exe
2013-09-18 14:12:57 ----A---- C:\Windows\system32\spinstall.exe
2013-09-18 14:12:57 ----A---- C:\Windows\system32\rdpdd.dll
2013-09-18 14:12:57 ----A---- C:\Windows\system32\MPSSVC.dll
2013-09-18 14:12:57 ----A---- C:\Windows\system32\CertEnroll.dll
2013-09-18 14:12:56 ----A---- C:\Windows\SYSWOW64\RacEngn.dll
2013-09-18 14:12:56 ----A---- C:\Windows\system32\IKEEXT.DLL
2013-09-18 14:12:56 ----A---- C:\Windows\system32\d3d9.dll
2013-09-18 14:12:55 ----A---- C:\Windows\SYSWOW64\AuthFWSnapin.dll
2013-09-18 14:12:55 ----A---- C:\Windows\system32\VSSVC.exe
2013-09-18 14:12:55 ----A---- C:\Windows\system32\SearchFolder.dll
2013-09-18 14:12:55 ----A---- C:\Windows\system32\gpsvc.dll
2013-09-18 14:12:55 ----A---- C:\Windows\system32\dwmcore.dll
2013-09-18 14:12:55 ----A---- C:\Windows\system32\AuthFWSnapin.dll
2013-09-18 14:12:54 ----A---- C:\Windows\system32\drivers\http.sys
2013-09-18 14:12:54 ----A---- C:\Windows\system32\dbgeng.dll
2013-09-18 14:12:53 ----A---- C:\Windows\SYSWOW64\ole32.dll
2013-09-18 14:12:53 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2013-09-18 14:12:53 ----A---- C:\Windows\system32\TSWorkspace.dll
2013-09-18 14:12:53 ----A---- C:\Windows\system32\qmgr.dll
2013-09-18 14:12:53 ----A---- C:\Windows\system32\audiosrv.dll
2013-09-18 14:12:53 ----A---- C:\Windows\system32\actxprxy.dll
2013-09-18 14:12:52 ----A---- C:\Windows\system32\termsrv.dll
2013-09-18 14:12:52 ----A---- C:\Windows\system32\mstsc.exe
2013-09-18 14:12:50 ----A---- C:\Windows\system32\netlogon.dll
2013-09-18 14:12:50 ----A---- C:\Windows\system32\imapi2fs.dll
2013-09-18 14:12:49 ----A---- C:\Windows\SYSWOW64\vssapi.dll
2013-09-18 14:12:49 ----A---- C:\Windows\SYSWOW64\SearchFolder.dll
2013-09-18 14:12:49 ----A---- C:\Windows\SYSWOW64\d3d9.dll
2013-09-18 14:12:49 ----A---- C:\Windows\system32\winhttp.dll
2013-09-18 14:12:48 ----A---- C:\Windows\SYSWOW64\taskschd.dll
2013-09-18 14:12:48 ----A---- C:\Windows\system32\wbengine.exe
2013-09-18 14:12:48 ----A---- C:\Windows\system32\setupapi.dll
2013-09-18 14:12:48 ----A---- C:\Windows\system32\rpcss.dll
2013-09-18 14:12:48 ----A---- C:\Windows\system32\QAGENTRT.DLL
2013-09-18 14:12:48 ----A---- C:\Windows\system32\propsys.dll
2013-09-18 14:12:48 ----A---- C:\Windows\system32\msv1_0.dll
2013-09-18 14:12:47 ----A---- C:\Windows\system32\werconcpl.dll
2013-09-18 14:12:47 ----A---- C:\Windows\system32\taskeng.exe
2013-09-18 14:12:47 ----A---- C:\Windows\system32\odbc32.dll
2013-09-18 14:12:46 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2013-09-18 14:12:46 ----A---- C:\Windows\system32\WSDApi.dll
2013-09-18 14:12:46 ----A---- C:\Windows\system32\user32.dll
2013-09-18 14:12:46 ----A---- C:\Windows\system32\dhcpcore.dll
2013-09-18 14:12:46 ----A---- C:\Windows\system32\certmgr.dll
2013-09-18 14:12:45 ----A---- C:\Windows\SYSWOW64\wer.dll
2013-09-18 14:12:45 ----A---- C:\Windows\system32\scavengeui.dll
2013-09-18 14:12:45 ----A---- C:\Windows\system32\drivers\tdx.sys
2013-09-18 14:12:45 ----A---- C:\Windows\system32\drivers\netbt.sys
2013-09-18 14:12:44 ----A---- C:\Windows\SYSWOW64\odbc32.dll
2013-09-18 14:12:44 ----A---- C:\Windows\SYSWOW64\dwmcore.dll
2013-09-18 14:12:44 ----A---- C:\Windows\SYSWOW64\certcli.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\tsmf.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\shlwapi.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\netshell.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\msdtctm.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\msdrm.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\framedynos.dll
2013-09-18 14:12:43 ----A---- C:\Windows\SYSWOW64\tcpmonui.dll
2013-09-18 14:12:43 ----A---- C:\Windows\system32\ws2_32.dll
2013-09-18 14:12:43 ----A---- C:\Windows\system32\wmicmiplugin.dll
2013-09-18 14:12:43 ----A---- C:\Windows\system32\winlogon.exe
2013-09-18 14:12:43 ----A---- C:\Windows\system32\netcfgx.dll
2013-09-18 14:12:43 ----A---- C:\Windows\system32\lsm.exe
2013-09-18 14:12:43 ----A---- C:\Windows\system32\comdlg32.dll
2013-09-18 14:12:42 ----A---- C:\Windows\SYSWOW64\winhttp.dll
2013-09-18 14:12:42 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll
2013-09-18 14:12:42 ----A---- C:\Windows\SYSWOW64\tsmf.dll
2013-09-18 14:12:42 ----A---- C:\Windows\SYSWOW64\setupapi.dll
2013-09-18 14:12:42 ----A---- C:\Windows\SYSWOW64\dot3api.dll
2013-09-18 14:12:42 ----A---- C:\Windows\system32\wpdshext.dll
2013-09-18 14:12:42 ----A---- C:\Windows\system32\wmpps.dll
2013-09-18 14:12:42 ----A---- C:\Windows\system32\Query.dll
2013-09-18 14:12:42 ----A---- C:\Windows\system32\QAGENT.DLL
2013-09-18 14:12:42 ----A---- C:\Windows\system32\mswsock.dll
2013-09-18 14:12:42 ----A---- C:\Windows\system32\drvstore.dll
2013-09-18 14:12:42 ----A---- C:\Windows\system32\BFE.DLL
2013-09-18 14:12:42 ----A---- C:\Windows\system32\azroles.dll
2013-09-18 14:12:42 ----A---- C:\Windows\system32\apphelp.dll
2013-09-18 14:12:41 ----A---- C:\Windows\SYSWOW64\MSVidCtl.dll
2013-09-18 14:12:41 ----A---- C:\Windows\SYSWOW64\dbgeng.dll
2013-09-18 14:12:41 ----A---- C:\Windows\SYSWOW64\apphelp.dll
2013-09-18 14:12:41 ----A---- C:\Windows\system32\Vault.dll
2013-09-18 14:12:41 ----A---- C:\Windows\system32\samsrv.dll
2013-09-18 14:12:41 ----A---- C:\Windows\system32\lpksetup.exe
2013-09-18 14:12:41 ----A---- C:\Windows\system32\DShowRdpFilter.dll
2013-09-18 14:12:41 ----A---- C:\Windows\system32\cmd.exe
2013-09-18 14:12:40 ----A---- C:\Windows\SYSWOW64\netlogon.dll
2013-09-18 14:12:40 ----A---- C:\Windows\SYSWOW64\netcfgx.dll
2013-09-18 14:12:40 ----A---- C:\Windows\system32\WebClnt.dll
2013-09-18 14:12:39 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll
2013-09-18 14:12:39 ----A---- C:\Windows\SYSWOW64\upnp.dll
2013-09-18 14:12:39 ----A---- C:\Windows\SYSWOW64\Query.dll
2013-09-18 14:12:39 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2013-09-18 14:12:39 ----A---- C:\Windows\system32\Wldap32.dll
2013-09-18 14:12:39 ----A---- C:\Windows\system32\taskcomp.dll
2013-09-18 14:12:39 ----A---- C:\Windows\system32\sxs.dll
2013-09-18 14:12:39 ----A---- C:\Windows\system32\pnidui.dll
2013-09-18 14:12:39 ----A---- C:\Windows\system32\mfds.dll
2013-09-18 14:12:39 ----A---- C:\Windows\system32\mcbuilder.exe
2013-09-18 14:12:39 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2013-09-18 14:12:38 ----A---- C:\Windows\SYSWOW64\SessEnv.dll
2013-09-18 14:12:38 ----A---- C:\Windows\SYSWOW64\PortableDeviceApi.dll
2013-09-18 14:12:38 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2013-09-18 14:12:38 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2013-09-18 14:12:38 ----A---- C:\Windows\SYSWOW64\msdrm.dll
2013-09-18 14:12:38 ----A---- C:\Windows\SYSWOW64\mmcndmgr.dll
2013-09-18 14:12:38 ----A---- C:\Windows\SYSWOW64\imapi2fs.dll
2013-09-18 14:12:38 ----A---- C:\Windows\SYSWOW64\DShowRdpFilter.dll
2013-09-18 14:12:38 ----A---- C:\Windows\system32\winsta.dll
2013-09-18 14:12:38 ----A---- C:\Windows\system32\webservices.dll
2013-09-18 14:12:38 ----A---- C:\Windows\system32\sqlsrv32.dll
2013-09-18 14:12:38 ----A---- C:\Windows\system32\SessEnv.dll
2013-09-18 14:12:38 ----A---- C:\Windows\system32\ipsmsnap.dll
2013-09-18 14:12:38 ----A---- C:\Windows\system32\hgprint.dll
2013-09-18 14:12:38 ----A---- C:\Windows\system32\fveapi.dll
2013-09-18 14:12:38 ----A---- C:\Windows\system32\dot3api.dll
2013-09-18 14:12:37 ----A---- C:\Windows\SYSWOW64\shlwapi.dll
2013-09-18 14:12:37 ----A---- C:\Windows\SYSWOW64\mcbuilder.exe
2013-09-18 14:12:37 ----A---- C:\Windows\SYSWOW64\certmgr.dll
2013-09-18 14:12:37 ----A---- C:\Windows\system32\WMNetMgr.dll
2013-09-18 14:12:37 ----A---- C:\Windows\system32\wlanpref.dll
2013-09-18 14:12:37 ----A---- C:\Windows\system32\schtasks.exe
2013-09-18 14:12:37 ----A---- C:\Windows\system32\prncache.dll
2013-09-18 14:12:37 ----A---- C:\Windows\system32\mcmde.dll
2013-09-18 14:12:37 ----A---- C:\Windows\system32\gdi32.dll
2013-09-18 14:12:37 ----A---- C:\Windows\system32\drivers\volsnap.sys
2013-09-18 14:12:37 ----A---- C:\Windows\system32\drivers\msrpc.sys
2013-09-18 14:12:36 ----A---- C:\Windows\SYSWOW64\xpsservices.dll
2013-09-18 14:12:36 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2013-09-18 14:12:36 ----A---- C:\Windows\SYSWOW64\userenv.dll
2013-09-18 14:12:36 ----A---- C:\Windows\SYSWOW64\drvstore.dll
2013-09-18 14:12:36 ----A---- C:\Windows\SYSWOW64\comdlg32.dll
2013-09-18 14:12:36 ----A---- C:\Windows\system32\vpnike.dll
2013-09-18 14:12:36 ----A---- C:\Windows\system32\userenv.dll
2013-09-18 14:12:36 ----A---- C:\Windows\system32\photowiz.dll
2013-09-18 14:12:36 ----A---- C:\Windows\system32\evr.dll
2013-09-18 14:12:36 ----A---- C:\Windows\system32\drivers\rdbss.sys
2013-09-18 14:12:36 ----A---- C:\Windows\system32\drivers\1394ohci.sys
2013-09-18 14:12:35 ----A---- C:\Windows\system32\IPSECSVC.DLL
2013-09-18 14:12:35 ----A---- C:\Windows\system32\framedyn.dll
2013-09-18 14:12:35 ----A---- C:\Windows\system32\AudioSes.dll
2013-09-18 14:12:34 ----A---- C:\Windows\SYSWOW64\cmd.exe
2013-09-18 14:12:34 ----A---- C:\Windows\system32\wmpmde.dll
2013-09-18 14:12:34 ----A---- C:\Windows\system32\WMPEncEn.dll
2013-09-18 14:12:34 ----A---- C:\Windows\system32\wmpeffects.dll
2013-09-18 14:12:34 ----A---- C:\Windows\system32\SyncCenter.dll
2013-09-18 14:12:34 ----A---- C:\Windows\system32\srvsvc.dll
2013-09-18 14:12:34 ----A---- C:\Windows\system32\sppobjs.dll
2013-09-18 14:12:34 ----A---- C:\Windows\system32\shsvcs.dll
2013-09-18 14:12:34 ----A---- C:\Windows\system32\mfreadwrite.dll
2013-09-18 14:12:34 ----A---- C:\Windows\system32\FXSSVC.exe
2013-09-18 14:12:34 ----A---- C:\Windows\system32\aepdu.dll
2013-09-18 14:12:34 ----A---- C:\Windows\system32\aeinv.dll
2013-09-18 14:12:33 ----A---- C:\Windows\SYSWOW64\Wldap32.dll
2013-09-18 14:12:33 ----A---- C:\Windows\SYSWOW64\propsys.dll
2013-09-18 14:12:33 ----A---- C:\Windows\SYSWOW64\mfds.dll
2013-09-18 14:12:33 ----A---- C:\Windows\SYSWOW64\framedynos.dll
2013-09-18 14:12:33 ----A---- C:\Windows\system32\WinSATAPI.dll
2013-09-18 14:12:33 ----A---- C:\Windows\system32\stobject.dll
2013-09-18 14:12:33 ----A---- C:\Windows\system32\localsec.dll
2013-09-18 14:12:33 ----A---- C:\Windows\system32\imapi2.dll
2013-09-18 14:12:33 ----A---- C:\Windows\system32\fde.dll
2013-09-18 14:12:32 ----A---- C:\Windows\SYSWOW64\user32.dll
2013-09-18 14:12:32 ----A---- C:\Windows\SYSWOW64\azroles.dll
2013-09-18 14:12:32 ----A---- C:\Windows\system32\tcpipcfg.dll
2013-09-18 14:12:32 ----A---- C:\Windows\system32\spp.dll
2013-09-18 14:12:32 ----A---- C:\Windows\system32\QSHVHOST.DLL
2013-09-18 14:12:32 ----A---- C:\Windows\system32\netid.dll
2013-09-18 14:12:32 ----A---- C:\Windows\system32\netdiagfx.dll
2013-09-18 14:12:32 ----A---- C:\Windows\system32\msinfo32.exe
2013-09-18 14:12:32 ----A---- C:\Windows\system32\inetpp.dll
2013-09-18 14:12:32 ----A---- C:\Windows\system32\drivers\udfs.sys
2013-09-18 14:12:32 ----A---- C:\Windows\system32\drivers\fltMgr.sys
2013-09-18 14:12:32 ----A---- C:\Windows\system32\davclnt.dll
2013-09-18 14:12:32 ----A---- C:\Windows\system32\credui.dll
2013-09-18 14:12:32 ----A---- C:\Windows\system32\biocpl.dll
2013-09-18 14:12:32 ----A---- C:\Windows\system32\bcryptprimitives.dll
2013-09-18 14:12:31 ----A---- C:\Windows\SYSWOW64\themeui.dll
2013-09-18 14:12:31 ----A---- C:\Windows\SYSWOW64\taskeng.exe
2013-09-18 14:12:31 ----A---- C:\Windows\SYSWOW64\spp.dll
2013-09-18 14:12:31 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2013-09-18 14:12:31 ----A---- C:\Windows\SYSWOW64\dhcpcore.dll
2013-09-18 14:12:31 ----A---- C:\Windows\SYSWOW64\credui.dll
2013-09-18 14:12:31 ----A---- C:\Windows\system32\wusa.exe
2013-09-18 14:12:31 ----A---- C:\Windows\system32\scansetting.dll
2013-09-18 14:12:31 ----A---- C:\Windows\system32\printui.dll
2013-09-18 14:12:31 ----A---- C:\Windows\system32\pla.dll
2013-09-18 14:12:31 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2013-09-18 14:12:31 ----A---- C:\Windows\system32\mspbda.dll
2013-09-18 14:12:31 ----A---- C:\Windows\system32\msdri.dll
2013-09-18 14:12:31 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2013-09-18 14:12:31 ----A---- C:\Windows\system32\aitagent.exe
2013-09-18 14:12:30 ----A---- C:\Windows\SYSWOW64\NaturalLanguage6.dll
2013-09-18 14:12:30 ----A---- C:\Windows\SYSWOW64\mfreadwrite.dll
Tady log z RSIT
Logfile of random's system information tool 1.09 (written by random/random)
Run by Kuba at 2013-09-20 03:38:44
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 369 GB (90%) free of 410 GB
Total RAM: 4093 MB (56% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 3:38:49, on 20.9.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16521)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe
C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Programy\PrintScreen\PrintScreen.exe
C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe
C:\Users\Kuba\AppData\Local\Temp\_tc0\procexp.exe
C:\Programy\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\Kuba.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = localhost:21320
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\coIEPlg.dll
O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\IPS\IPSBHO.DLL
O2 - BHO: AVG SafeGuard toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG SafeGuard toolbar\15.5.0.2\AVG SafeGuard toolbar_toolbar.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\coIEPlg.dll
O3 - Toolbar: AVG SafeGuard toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG SafeGuard toolbar\15.5.0.2\AVG SafeGuard toolbar_toolbar.dll
O4 - HKLM\..\Run: [Razer Synapse] "C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe"
O4 - HKLM\..\Run: [SDTray] "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
O4 - HKLM\..\Run: [vProt] "C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Gadwin PrintScreen] C:\Programy\PrintScreen\PrintScreen.exe /nosplash
O4 - HKUS\S-1-5-21-2671917893-706360513-2285705896-1003\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-2671917893-706360513-2285705896-1003\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Programy\MSOFFI~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programy\MSOFFI~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programy\MSOFFI~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Programy\MSOFFI~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\15.5.0\ViProtocol.dll
O20 - Winlogon Notify: SDWinLogon - SDWinLogon.dll (file missing)
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Spybot-S&D 2 Scanner Service (SDScannerService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
O23 - Service: Spybot-S&D 2 Updating Service (SDUpdateService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
O23 - Service: Spybot-S&D 2 Security Center Service (SDWSCService) - Safer-Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: vToolbarUpdater15.5.0 - Unknown owner - C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.5.0\ToolbarUpdater.exe
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 8578 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe" /s "NIS" /m "C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\diMaster.dll" /prefetch:1
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"
"C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.5.0\ToolbarUpdater.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe"
"C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.5.0\loggingserver.exe" 72648 "C:\ProgramData\AVG SafeGuard toolbar\Logger\logger.properties"
\??\C:\Windows\system32\conhost.exe "-1144301852646067494-843421409-906200493-1098714345-1626411425984084915682965238
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\sppsvc.exe
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
"taskhost.exe"
taskeng.exe {DD542EDD-1836-4ECF-B758-9AC7E4B00B7B}
"C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe" /c /a /s UserSession2
"C:\Windows\system32\Dwm.exe"
"C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe" -boot
C:\Windows\Explorer.EXE
"C:\Windows\SysWOW64\rundll32.exe" C:\Windows\Syswow64\cm108.dll,CMICtrlWnd
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe"
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Programy\PrintScreen\PrintScreen.exe" /nosplash
"C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe"
C:\Windows\splwow64.exe 8192
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"taskhost.exe"
taskeng.exe {207B84C6-6C77-4C20-A514-83C325A3D1FF}
C:\Windows\servicing\TrustedInstaller.exe
"C:\Windows\system32\wuauclt.exe"
"C:\Programy\totalcmd\TOTALCMD64.EXE"
"C:\Users\Kuba\AppData\Local\Temp\_tc0\procexp.exe"
"C:\Users\Kuba\AppData\Local\Temp\_tc0\procexp.exe"
"C:\Programy\Mozilla Firefox\firefox.exe"
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe10_ Global\UsGthrCtrlFltPipeMssGthrPipe10 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 524 528 536 65536 532
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Users\Kuba\Downloads\RSITx64.exe"
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\SlimDrivers Startup.job
=========Mozilla firefox=========
ProfilePath - C:\Users\Kuba\AppData\Roaming\Mozilla\Firefox\Profiles\b3rnf8e0.default
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
prefs.js - "keyword.URL" - ""
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.8.800.168 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_168.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin]
"Description"=
"Path"=C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\15.5.0\\npsitesafety.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nullsoft.com/winampDetector;version=1]
"Description"=Winamp Detector
"Path"=C:\Program Files (x86)\Winamp Detect\npwachk.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.8]
"Description"=VLC Multimedia Plugin
"Path"=C:\Programy\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.8.800.168 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_168.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
Norton Identity Protection - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\coIEPlg.dll [2013-08-15 526160]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Norton Vulnerability Protection - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\IPS\IPSBHO.DLL [2013-08-06 388512]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}]
AVG SafeGuard toolbar - C:\Program Files (x86)\AVG SafeGuard toolbar\15.5.0.2\AVG SafeGuard toolbar_toolbar.dll [2013-09-19 3122864]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\coIEPlg.dll [2013-08-15 526160]
{95B7759C-8C7F-4BF1-B163-73684A933233} - AVG SafeGuard toolbar - C:\Program Files (x86)\AVG SafeGuard toolbar\15.5.0.2\AVG SafeGuard toolbar_toolbar.dll [2013-09-19 3122864]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Cm108Sound"=C:\Windows\syswow64\RunDll32.exe [2009-07-14 44544]
"Nvtmru"=C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [2013-05-16 1012000]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2013-07-25 20684656]
"Gadwin PrintScreen"=C:\Programy\PrintScreen\PrintScreen.exe [2012-05-30 1842384]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
""= []
"Razer Synapse"=C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [2013-08-15 606040]
"SDTray"=C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [2013-05-16 3830224]
"vProt"=C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe [2013-09-19 2314416]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot-S&D 2 Tray Icon"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater"
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe"="C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\wextract.exe
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\url.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\occache.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\msrating.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\msls31.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\mshta.exe
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\inseng.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\icardie.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2013-09-19 14:10:44 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2013-09-19 14:10:44 ----A---- C:\Windows\system32\elshyph.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\wininet.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\wextract.exe
2013-09-19 14:10:43 ----A---- C:\Windows\system32\webcheck.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\vbscript.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\urlmon.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\url.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2013-09-19 14:10:43 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-09-19 14:10:43 ----A---- C:\Windows\system32\pngfilt.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\occache.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\msrating.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\msls31.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\mshtmlmedia.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\mshtmler.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\mshtmled.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\mshtml.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\mshta.exe
2013-09-19 14:10:43 ----A---- C:\Windows\system32\msfeedssync.exe
2013-09-19 14:10:43 ----A---- C:\Windows\system32\msfeedsbs.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\msfeeds.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\licmgr10.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\jsproxy.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\jscript9.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\jscript.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\inseng.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\imgutil.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\iexpress.exe
2013-09-19 14:10:43 ----A---- C:\Windows\system32\ieUnatt.exe
2013-09-19 14:10:43 ----A---- C:\Windows\system32\ieui.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\iesysprep.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\iesetup.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\iertutil.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\iernonce.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\iepeers.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\ieframe.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\iedkcs32.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\ieapfltr.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\ieapfltr.dat
2013-09-19 14:10:43 ----A---- C:\Windows\system32\IEAdvpack.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\ie4uinit.exe
2013-09-19 14:10:43 ----A---- C:\Windows\system32\icardie.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\dxtrans.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\dxtmsft.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d3d10core.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d3d10.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\XpsPrint.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\WMPhoto.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\WindowsCodecs.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\UIAnimation.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\FntCache.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\dxgi.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\DWrite.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d3d10warp.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d3d10level9.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d3d10core.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d3d10_1core.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d3d10_1.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d3d10.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d2d1.dll
2013-09-19 13:42:11 ----SHD---- C:\Config.Msi
2013-09-19 09:25:50 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2013-09-19 09:25:49 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2013-09-19 09:25:49 ----A---- C:\Windows\system32\cdd.dll
2013-09-19 09:25:24 ----A---- C:\Windows\SYSWOW64\dhcpcore6.dll
2013-09-19 09:25:24 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2013-09-19 09:25:24 ----A---- C:\Windows\system32\dhcpcore6.dll
2013-09-19 09:25:23 ----A---- C:\Windows\SYSWOW64\dhcpcsvc6.dll
2013-09-19 09:25:04 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2013-09-19 09:25:04 ----A---- C:\Windows\system32\wintrust.dll
2013-09-19 09:25:04 ----A---- C:\Windows\system32\crypt32.dll
2013-09-19 09:25:03 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2013-09-19 09:25:03 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2013-09-19 09:25:03 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2013-09-19 09:25:03 ----A---- C:\Windows\system32\cryptsvc.dll
2013-09-19 09:25:03 ----A---- C:\Windows\system32\cryptnet.dll
2013-09-19 09:24:31 ----A---- C:\Windows\system32\authui.dll
2013-09-19 09:24:29 ----A---- C:\Windows\SYSWOW64\authui.dll
2013-09-19 09:24:29 ----A---- C:\Windows\system32\consent.exe
2013-09-19 09:24:29 ----A---- C:\Windows\system32\appinfo.dll
2013-09-19 09:24:20 ----A---- C:\Windows\system32\wwansvc.dll
2013-09-19 09:24:20 ----A---- C:\Windows\system32\wwanprotdim.dll
2013-09-19 09:24:13 ----A---- C:\Windows\SYSWOW64\tzres.dll
2013-09-19 09:24:13 ----A---- C:\Windows\system32\tzres.dll
2013-09-19 09:24:04 ----A---- C:\Windows\system32\drivers\ataport.sys
2013-09-19 09:24:02 ----A---- C:\Windows\system32\drivers\RNDISMP.sys
2013-09-19 09:24:02 ----A---- C:\Windows\system32\drivers\ndis.sys
2013-09-19 09:24:00 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2013-09-19 09:24:00 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2013-09-19 09:24:00 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-09-19 09:24:00 ----A---- C:\Windows\system32\ntdll.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\wow32.dll
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\user.exe
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\setup16.exe
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\instnm.exe
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\wow64win.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\wow64cpu.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\wow64.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\winsrv.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\smss.exe
2013-09-19 09:23:59 ----A---- C:\Windows\system32\ntvdm64.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\KernelBase.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\kernel32.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\csrsrv.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\conhost.exe
2013-09-19 09:23:59 ----A---- C:\Windows\system32\apisetschema.dll
2013-09-19 09:23:58 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2013-09-19 09:23:58 ----A---- C:\Windows\system32\WMVDECOD.DLL
2013-09-19 09:23:57 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2013-09-19 09:23:57 ----A---- C:\Windows\system32\rpcrt4.dll
2013-09-19 09:23:54 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2013-09-19 09:23:54 ----A---- C:\Windows\SYSWOW64\netevent.dll
2013-09-19 09:23:54 ----A---- C:\Windows\SYSWOW64\netcorehc.dll
2013-09-19 09:23:54 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\nlasvc.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\nlaapi.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\netevent.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\netcorehc.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\ncsi.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\iphlpsvc.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2013-09-19 09:23:52 ----A---- C:\Windows\system32\qedit.dll
2013-09-19 09:23:51 ----A---- C:\Windows\SYSWOW64\qedit.dll
2013-09-19 09:23:50 ----A---- C:\Windows\system32\OxpsConverter.exe
2013-09-19 09:23:30 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2013-09-19 09:23:17 ----A---- C:\Windows\system32\win32k.sys
2013-09-19 09:22:44 ----A---- C:\Windows\system32\shell32.dll
2013-09-19 09:22:43 ----A---- C:\Windows\SYSWOW64\shell32.dll
2013-09-19 09:22:42 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2013-09-19 09:22:42 ----A---- C:\Windows\system32\shdocvw.dll
2013-09-19 09:22:40 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2013-09-19 09:22:40 ----A---- C:\Windows\system32\win32spl.dll
2013-09-19 09:22:36 ----A---- C:\Windows\system32\taskhost.exe
2013-09-19 09:22:31 ----A---- C:\Windows\SYSWOW64\cryptdlg.dll
2013-09-19 09:22:31 ----A---- C:\Windows\system32\cryptdlg.dll
2013-09-19 09:22:21 ----A---- C:\Windows\system32\drivers\tcpip.sys
2013-09-19 09:22:18 ----A---- C:\Windows\SYSWOW64\certutil.exe
2013-09-19 09:22:18 ----A---- C:\Windows\system32\certutil.exe
2013-09-19 09:22:17 ----A---- C:\Windows\SYSWOW64\certenc.dll
2013-09-19 09:22:17 ----A---- C:\Windows\system32\certenc.dll
2013-09-19 09:18:10 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2013-09-19 09:18:10 ----A---- C:\Windows\system32\d3d11.dll
2013-09-19 03:17:39 ----SHD---- C:\$RECYCLE.BIN
2013-09-19 03:17:09 ----A---- C:\ComboFix.txt
2013-09-19 02:57:28 ----A---- C:\Windows\zip.exe
2013-09-19 02:57:28 ----A---- C:\Windows\SWSC.exe
2013-09-19 02:57:28 ----A---- C:\Windows\SWREG.exe
2013-09-19 02:57:28 ----A---- C:\Windows\sed.exe
2013-09-19 02:57:28 ----A---- C:\Windows\PEV.exe
2013-09-19 02:57:28 ----A---- C:\Windows\NIRCMD.exe
2013-09-19 02:57:28 ----A---- C:\Windows\MBR.exe
2013-09-19 02:57:28 ----A---- C:\Windows\grep.exe
2013-09-19 02:47:38 ----D---- C:\Qoobox
2013-09-19 02:47:21 ----D---- C:\Windows\erdnt
2013-09-18 15:03:46 ----D---- C:\Windows\system32\SPReview
2013-09-18 15:02:57 ----D---- C:\Windows\system32\EventProviders
2013-09-18 14:47:30 ----SHD---- C:\Windows\system32\%APPDATA%
2013-09-18 14:38:09 ----SHD---- C:\Windows\SYSWOW64\%APPDATA%
2013-09-18 14:20:35 ----D---- C:\Program Files\KONICA MINOLTA
2013-09-18 14:13:20 ----A---- C:\Windows\system32\netfxperf.dll
2013-09-18 14:13:20 ----A---- C:\Windows\system32\dfshim.dll
2013-09-18 14:13:15 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2013-09-18 14:13:12 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2013-09-18 14:13:12 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2013-09-18 14:13:08 ----A---- C:\Windows\SYSWOW64\mfc40u.dll
2013-09-18 14:13:08 ----A---- C:\Windows\SYSWOW64\mfc40.dll
2013-09-18 14:13:08 ----A---- C:\Windows\system32\sysmain.dll
2013-09-18 14:13:07 ----A---- C:\Windows\system32\MSVidCtl.dll
2013-09-18 14:13:06 ----A---- C:\Windows\system32\wmp.dll
2013-09-18 14:13:05 ----A---- C:\Windows\system32\mscoree.dll
2013-09-18 14:13:05 ----A---- C:\Windows\system32\mmcndmgr.dll
2013-09-18 14:13:04 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll
2013-09-18 14:13:04 ----A---- C:\Windows\system32\xpsservices.dll
2013-09-18 14:13:04 ----A---- C:\Windows\system32\secproc_isv.dll
2013-09-18 14:13:04 ----A---- C:\Windows\system32\secproc.dll
2013-09-18 14:13:04 ----A---- C:\Windows\system32\RMActivate_isv.exe
2013-09-18 14:13:04 ----A---- C:\Windows\system32\RMActivate.exe
2013-09-18 14:13:04 ----A---- C:\Windows\system32\mf.dll
2013-09-18 14:13:03 ----A---- C:\Windows\SYSWOW64\secproc.dll
2013-09-18 14:13:03 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe
2013-09-18 14:13:02 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2013-09-18 14:13:02 ----A---- C:\Windows\system32\schedsvc.dll
2013-09-18 14:13:02 ----A---- C:\Windows\system32\ole32.dll
2013-09-18 14:13:01 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2013-09-18 14:13:01 ----A---- C:\Windows\system32\taskschd.dll
2013-09-18 14:13:01 ----A---- C:\Windows\system32\spwizui.dll
2013-09-18 14:13:01 ----A---- C:\Windows\system32\RacEngn.dll
2013-09-18 14:13:01 ----A---- C:\Windows\system32\diagperf.dll
2013-09-18 14:13:00 ----A---- C:\Windows\SYSWOW64\mf.dll
2013-09-18 14:13:00 ----A---- C:\Windows\SYSWOW64\CertEnroll.dll
2013-09-18 14:13:00 ----A---- C:\Windows\system32\wevtsvc.dll
2013-09-18 14:13:00 ----A---- C:\Windows\system32\vssapi.dll
2013-09-18 14:13:00 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2013-09-18 14:13:00 ----A---- C:\Windows\system32\ExplorerFrame.dll
2013-09-18 14:13:00 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2013-09-18 14:12:59 ----A---- C:\Windows\SYSWOW64\wmp.dll
2013-09-18 14:12:59 ----A---- C:\Windows\system32\UIRibbon.dll
2013-09-18 14:12:59 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2013-09-18 14:12:58 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2013-09-18 14:12:58 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2013-09-18 14:12:58 ----A---- C:\Windows\system32\WsmSvc.dll
2013-09-18 14:12:58 ----A---- C:\Windows\system32\WMVCORE.DLL
2013-09-18 14:12:58 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2013-09-18 14:12:58 ----A---- C:\Windows\system32\PresentationHost.exe
2013-09-18 14:12:57 ----A---- C:\Windows\system32\WinSAT.exe
2013-09-18 14:12:57 ----A---- C:\Windows\system32\spreview.exe
2013-09-18 14:12:57 ----A---- C:\Windows\system32\spinstall.exe
2013-09-18 14:12:57 ----A---- C:\Windows\system32\rdpdd.dll
2013-09-18 14:12:57 ----A---- C:\Windows\system32\MPSSVC.dll
2013-09-18 14:12:57 ----A---- C:\Windows\system32\CertEnroll.dll
2013-09-18 14:12:56 ----A---- C:\Windows\SYSWOW64\RacEngn.dll
2013-09-18 14:12:56 ----A---- C:\Windows\system32\IKEEXT.DLL
2013-09-18 14:12:56 ----A---- C:\Windows\system32\d3d9.dll
2013-09-18 14:12:55 ----A---- C:\Windows\SYSWOW64\AuthFWSnapin.dll
2013-09-18 14:12:55 ----A---- C:\Windows\system32\VSSVC.exe
2013-09-18 14:12:55 ----A---- C:\Windows\system32\SearchFolder.dll
2013-09-18 14:12:55 ----A---- C:\Windows\system32\gpsvc.dll
2013-09-18 14:12:55 ----A---- C:\Windows\system32\dwmcore.dll
2013-09-18 14:12:55 ----A---- C:\Windows\system32\AuthFWSnapin.dll
2013-09-18 14:12:54 ----A---- C:\Windows\system32\drivers\http.sys
2013-09-18 14:12:54 ----A---- C:\Windows\system32\dbgeng.dll
2013-09-18 14:12:53 ----A---- C:\Windows\SYSWOW64\ole32.dll
2013-09-18 14:12:53 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2013-09-18 14:12:53 ----A---- C:\Windows\system32\TSWorkspace.dll
2013-09-18 14:12:53 ----A---- C:\Windows\system32\qmgr.dll
2013-09-18 14:12:53 ----A---- C:\Windows\system32\audiosrv.dll
2013-09-18 14:12:53 ----A---- C:\Windows\system32\actxprxy.dll
2013-09-18 14:12:52 ----A---- C:\Windows\system32\termsrv.dll
2013-09-18 14:12:52 ----A---- C:\Windows\system32\mstsc.exe
2013-09-18 14:12:50 ----A---- C:\Windows\system32\netlogon.dll
2013-09-18 14:12:50 ----A---- C:\Windows\system32\imapi2fs.dll
2013-09-18 14:12:49 ----A---- C:\Windows\SYSWOW64\vssapi.dll
2013-09-18 14:12:49 ----A---- C:\Windows\SYSWOW64\SearchFolder.dll
2013-09-18 14:12:49 ----A---- C:\Windows\SYSWOW64\d3d9.dll
2013-09-18 14:12:49 ----A---- C:\Windows\system32\winhttp.dll
2013-09-18 14:12:48 ----A---- C:\Windows\SYSWOW64\taskschd.dll
2013-09-18 14:12:48 ----A---- C:\Windows\system32\wbengine.exe
2013-09-18 14:12:48 ----A---- C:\Windows\system32\setupapi.dll
2013-09-18 14:12:48 ----A---- C:\Windows\system32\rpcss.dll
2013-09-18 14:12:48 ----A---- C:\Windows\system32\QAGENTRT.DLL
2013-09-18 14:12:48 ----A---- C:\Windows\system32\propsys.dll
2013-09-18 14:12:48 ----A---- C:\Windows\system32\msv1_0.dll
2013-09-18 14:12:47 ----A---- C:\Windows\system32\werconcpl.dll
2013-09-18 14:12:47 ----A---- C:\Windows\system32\taskeng.exe
2013-09-18 14:12:47 ----A---- C:\Windows\system32\odbc32.dll
2013-09-18 14:12:46 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2013-09-18 14:12:46 ----A---- C:\Windows\system32\WSDApi.dll
2013-09-18 14:12:46 ----A---- C:\Windows\system32\user32.dll
2013-09-18 14:12:46 ----A---- C:\Windows\system32\dhcpcore.dll
2013-09-18 14:12:46 ----A---- C:\Windows\system32\certmgr.dll
2013-09-18 14:12:45 ----A---- C:\Windows\SYSWOW64\wer.dll
2013-09-18 14:12:45 ----A---- C:\Windows\system32\scavengeui.dll
2013-09-18 14:12:45 ----A---- C:\Windows\system32\drivers\tdx.sys
2013-09-18 14:12:45 ----A---- C:\Windows\system32\drivers\netbt.sys
2013-09-18 14:12:44 ----A---- C:\Windows\SYSWOW64\odbc32.dll
2013-09-18 14:12:44 ----A---- C:\Windows\SYSWOW64\dwmcore.dll
2013-09-18 14:12:44 ----A---- C:\Windows\SYSWOW64\certcli.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\tsmf.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\shlwapi.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\netshell.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\msdtctm.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\msdrm.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\framedynos.dll
2013-09-18 14:12:43 ----A---- C:\Windows\SYSWOW64\tcpmonui.dll
2013-09-18 14:12:43 ----A---- C:\Windows\system32\ws2_32.dll
2013-09-18 14:12:43 ----A---- C:\Windows\system32\wmicmiplugin.dll
2013-09-18 14:12:43 ----A---- C:\Windows\system32\winlogon.exe
2013-09-18 14:12:43 ----A---- C:\Windows\system32\netcfgx.dll
2013-09-18 14:12:43 ----A---- C:\Windows\system32\lsm.exe
2013-09-18 14:12:43 ----A---- C:\Windows\system32\comdlg32.dll
2013-09-18 14:12:42 ----A---- C:\Windows\SYSWOW64\winhttp.dll
2013-09-18 14:12:42 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll
2013-09-18 14:12:42 ----A---- C:\Windows\SYSWOW64\tsmf.dll
2013-09-18 14:12:42 ----A---- C:\Windows\SYSWOW64\setupapi.dll
2013-09-18 14:12:42 ----A---- C:\Windows\SYSWOW64\dot3api.dll
2013-09-18 14:12:42 ----A---- C:\Windows\system32\wpdshext.dll
2013-09-18 14:12:42 ----A---- C:\Windows\system32\wmpps.dll
2013-09-18 14:12:42 ----A---- C:\Windows\system32\Query.dll
2013-09-18 14:12:42 ----A---- C:\Windows\system32\QAGENT.DLL
2013-09-18 14:12:42 ----A---- C:\Windows\system32\mswsock.dll
2013-09-18 14:12:42 ----A---- C:\Windows\system32\drvstore.dll
2013-09-18 14:12:42 ----A---- C:\Windows\system32\BFE.DLL
2013-09-18 14:12:42 ----A---- C:\Windows\system32\azroles.dll
2013-09-18 14:12:42 ----A---- C:\Windows\system32\apphelp.dll
2013-09-18 14:12:41 ----A---- C:\Windows\SYSWOW64\MSVidCtl.dll
2013-09-18 14:12:41 ----A---- C:\Windows\SYSWOW64\dbgeng.dll
2013-09-18 14:12:41 ----A---- C:\Windows\SYSWOW64\apphelp.dll
2013-09-18 14:12:41 ----A---- C:\Windows\system32\Vault.dll
2013-09-18 14:12:41 ----A---- C:\Windows\system32\samsrv.dll
2013-09-18 14:12:41 ----A---- C:\Windows\system32\lpksetup.exe
2013-09-18 14:12:41 ----A---- C:\Windows\system32\DShowRdpFilter.dll
2013-09-18 14:12:41 ----A---- C:\Windows\system32\cmd.exe
2013-09-18 14:12:40 ----A---- C:\Windows\SYSWOW64\netlogon.dll
2013-09-18 14:12:40 ----A---- C:\Windows\SYSWOW64\netcfgx.dll
2013-09-18 14:12:40 ----A---- C:\Windows\system32\WebClnt.dll
2013-09-18 14:12:39 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll
2013-09-18 14:12:39 ----A---- C:\Windows\SYSWOW64\upnp.dll
2013-09-18 14:12:39 ----A---- C:\Windows\SYSWOW64\Query.dll
2013-09-18 14:12:39 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2013-09-18 14:12:39 ----A---- C:\Windows\system32\Wldap32.dll
2013-09-18 14:12:39 ----A---- C:\Windows\system32\taskcomp.dll
2013-09-18 14:12:39 ----A---- C:\Windows\system32\sxs.dll
2013-09-18 14:12:39 ----A---- C:\Windows\system32\pnidui.dll
2013-09-18 14:12:39 ----A---- C:\Windows\system32\mfds.dll
2013-09-18 14:12:39 ----A---- C:\Windows\system32\mcbuilder.exe
2013-09-18 14:12:39 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2013-09-18 14:12:38 ----A---- C:\Windows\SYSWOW64\SessEnv.dll
2013-09-18 14:12:38 ----A---- C:\Windows\SYSWOW64\PortableDeviceApi.dll
2013-09-18 14:12:38 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2013-09-18 14:12:38 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2013-09-18 14:12:38 ----A---- C:\Windows\SYSWOW64\msdrm.dll
2013-09-18 14:12:38 ----A---- C:\Windows\SYSWOW64\mmcndmgr.dll
2013-09-18 14:12:38 ----A---- C:\Windows\SYSWOW64\imapi2fs.dll
2013-09-18 14:12:38 ----A---- C:\Windows\SYSWOW64\DShowRdpFilter.dll
2013-09-18 14:12:38 ----A---- C:\Windows\system32\winsta.dll
2013-09-18 14:12:38 ----A---- C:\Windows\system32\webservices.dll
2013-09-18 14:12:38 ----A---- C:\Windows\system32\sqlsrv32.dll
2013-09-18 14:12:38 ----A---- C:\Windows\system32\SessEnv.dll
2013-09-18 14:12:38 ----A---- C:\Windows\system32\ipsmsnap.dll
2013-09-18 14:12:38 ----A---- C:\Windows\system32\hgprint.dll
2013-09-18 14:12:38 ----A---- C:\Windows\system32\fveapi.dll
2013-09-18 14:12:38 ----A---- C:\Windows\system32\dot3api.dll
2013-09-18 14:12:37 ----A---- C:\Windows\SYSWOW64\shlwapi.dll
2013-09-18 14:12:37 ----A---- C:\Windows\SYSWOW64\mcbuilder.exe
2013-09-18 14:12:37 ----A---- C:\Windows\SYSWOW64\certmgr.dll
2013-09-18 14:12:37 ----A---- C:\Windows\system32\WMNetMgr.dll
2013-09-18 14:12:37 ----A---- C:\Windows\system32\wlanpref.dll
2013-09-18 14:12:37 ----A---- C:\Windows\system32\schtasks.exe
2013-09-18 14:12:37 ----A---- C:\Windows\system32\prncache.dll
2013-09-18 14:12:37 ----A---- C:\Windows\system32\mcmde.dll
2013-09-18 14:12:37 ----A---- C:\Windows\system32\gdi32.dll
2013-09-18 14:12:37 ----A---- C:\Windows\system32\drivers\volsnap.sys
2013-09-18 14:12:37 ----A---- C:\Windows\system32\drivers\msrpc.sys
2013-09-18 14:12:36 ----A---- C:\Windows\SYSWOW64\xpsservices.dll
2013-09-18 14:12:36 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2013-09-18 14:12:36 ----A---- C:\Windows\SYSWOW64\userenv.dll
2013-09-18 14:12:36 ----A---- C:\Windows\SYSWOW64\drvstore.dll
2013-09-18 14:12:36 ----A---- C:\Windows\SYSWOW64\comdlg32.dll
2013-09-18 14:12:36 ----A---- C:\Windows\system32\vpnike.dll
2013-09-18 14:12:36 ----A---- C:\Windows\system32\userenv.dll
2013-09-18 14:12:36 ----A---- C:\Windows\system32\photowiz.dll
2013-09-18 14:12:36 ----A---- C:\Windows\system32\evr.dll
2013-09-18 14:12:36 ----A---- C:\Windows\system32\drivers\rdbss.sys
2013-09-18 14:12:36 ----A---- C:\Windows\system32\drivers\1394ohci.sys
2013-09-18 14:12:35 ----A---- C:\Windows\system32\IPSECSVC.DLL
2013-09-18 14:12:35 ----A---- C:\Windows\system32\framedyn.dll
2013-09-18 14:12:35 ----A---- C:\Windows\system32\AudioSes.dll
2013-09-18 14:12:34 ----A---- C:\Windows\SYSWOW64\cmd.exe
2013-09-18 14:12:34 ----A---- C:\Windows\system32\wmpmde.dll
2013-09-18 14:12:34 ----A---- C:\Windows\system32\WMPEncEn.dll
2013-09-18 14:12:34 ----A---- C:\Windows\system32\wmpeffects.dll
2013-09-18 14:12:34 ----A---- C:\Windows\system32\SyncCenter.dll
2013-09-18 14:12:34 ----A---- C:\Windows\system32\srvsvc.dll
2013-09-18 14:12:34 ----A---- C:\Windows\system32\sppobjs.dll
2013-09-18 14:12:34 ----A---- C:\Windows\system32\shsvcs.dll
2013-09-18 14:12:34 ----A---- C:\Windows\system32\mfreadwrite.dll
2013-09-18 14:12:34 ----A---- C:\Windows\system32\FXSSVC.exe
2013-09-18 14:12:34 ----A---- C:\Windows\system32\aepdu.dll
2013-09-18 14:12:34 ----A---- C:\Windows\system32\aeinv.dll
2013-09-18 14:12:33 ----A---- C:\Windows\SYSWOW64\Wldap32.dll
2013-09-18 14:12:33 ----A---- C:\Windows\SYSWOW64\propsys.dll
2013-09-18 14:12:33 ----A---- C:\Windows\SYSWOW64\mfds.dll
2013-09-18 14:12:33 ----A---- C:\Windows\SYSWOW64\framedynos.dll
2013-09-18 14:12:33 ----A---- C:\Windows\system32\WinSATAPI.dll
2013-09-18 14:12:33 ----A---- C:\Windows\system32\stobject.dll
2013-09-18 14:12:33 ----A---- C:\Windows\system32\localsec.dll
2013-09-18 14:12:33 ----A---- C:\Windows\system32\imapi2.dll
2013-09-18 14:12:33 ----A---- C:\Windows\system32\fde.dll
2013-09-18 14:12:32 ----A---- C:\Windows\SYSWOW64\user32.dll
2013-09-18 14:12:32 ----A---- C:\Windows\SYSWOW64\azroles.dll
2013-09-18 14:12:32 ----A---- C:\Windows\system32\tcpipcfg.dll
2013-09-18 14:12:32 ----A---- C:\Windows\system32\spp.dll
2013-09-18 14:12:32 ----A---- C:\Windows\system32\QSHVHOST.DLL
2013-09-18 14:12:32 ----A---- C:\Windows\system32\netid.dll
2013-09-18 14:12:32 ----A---- C:\Windows\system32\netdiagfx.dll
2013-09-18 14:12:32 ----A---- C:\Windows\system32\msinfo32.exe
2013-09-18 14:12:32 ----A---- C:\Windows\system32\inetpp.dll
2013-09-18 14:12:32 ----A---- C:\Windows\system32\drivers\udfs.sys
2013-09-18 14:12:32 ----A---- C:\Windows\system32\drivers\fltMgr.sys
2013-09-18 14:12:32 ----A---- C:\Windows\system32\davclnt.dll
2013-09-18 14:12:32 ----A---- C:\Windows\system32\credui.dll
2013-09-18 14:12:32 ----A---- C:\Windows\system32\biocpl.dll
2013-09-18 14:12:32 ----A---- C:\Windows\system32\bcryptprimitives.dll
2013-09-18 14:12:31 ----A---- C:\Windows\SYSWOW64\themeui.dll
2013-09-18 14:12:31 ----A---- C:\Windows\SYSWOW64\taskeng.exe
2013-09-18 14:12:31 ----A---- C:\Windows\SYSWOW64\spp.dll
2013-09-18 14:12:31 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2013-09-18 14:12:31 ----A---- C:\Windows\SYSWOW64\dhcpcore.dll
2013-09-18 14:12:31 ----A---- C:\Windows\SYSWOW64\credui.dll
2013-09-18 14:12:31 ----A---- C:\Windows\system32\wusa.exe
2013-09-18 14:12:31 ----A---- C:\Windows\system32\scansetting.dll
2013-09-18 14:12:31 ----A---- C:\Windows\system32\printui.dll
2013-09-18 14:12:31 ----A---- C:\Windows\system32\pla.dll
2013-09-18 14:12:31 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2013-09-18 14:12:31 ----A---- C:\Windows\system32\mspbda.dll
2013-09-18 14:12:31 ----A---- C:\Windows\system32\msdri.dll
2013-09-18 14:12:31 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2013-09-18 14:12:31 ----A---- C:\Windows\system32\aitagent.exe
2013-09-18 14:12:30 ----A---- C:\Windows\SYSWOW64\NaturalLanguage6.dll
2013-09-18 14:12:30 ----A---- C:\Windows\SYSWOW64\mfreadwrite.dll
Re: Ovládá mi někdo pc na dálku
2013-09-18 14:12:30 ----A---- C:\Windows\SYSWOW64\dbghelp.dll
2013-09-18 14:12:30 ----A---- C:\Windows\SYSWOW64\basecsp.dll
2013-09-18 14:12:30 ----A---- C:\Windows\system32\XpsRasterService.dll
2013-09-18 14:12:30 ----A---- C:\Windows\system32\wisptis.exe
2013-09-18 14:12:30 ----A---- C:\Windows\system32\wiaservc.dll
2013-09-18 14:12:30 ----A---- C:\Windows\system32\vds.exe
2013-09-18 14:12:30 ----A---- C:\Windows\system32\rpchttp.dll
2013-09-18 14:12:30 ----A---- C:\Windows\system32\PkgMgr.exe
2013-09-18 14:12:30 ----A---- C:\Windows\system32\mscms.dll
2013-09-18 14:12:30 ----A---- C:\Windows\system32\FirewallControlPanel.dll
2013-09-18 14:12:30 ----A---- C:\Windows\system32\drivers\rasl2tp.sys
2013-09-18 14:12:30 ----A---- C:\Windows\system32\drivers\pci.sys
2013-09-18 14:12:29 ----A---- C:\Windows\SYSWOW64\WinSATAPI.dll
2013-09-18 14:12:29 ----A---- C:\Windows\SYSWOW64\taskcomp.dll
2013-09-18 14:12:29 ----A---- C:\Windows\SYSWOW64\evr.dll
2013-09-18 14:12:29 ----A---- C:\Windows\SYSWOW64\calc.exe
2013-09-18 14:12:29 ----A---- C:\Windows\system32\sppwinob.dll
2013-09-18 14:12:29 ----A---- C:\Windows\system32\ocsetup.exe
2013-09-18 14:12:29 ----A---- C:\Windows\system32\ocsetapi.dll
2013-09-18 14:12:29 ----A---- C:\Windows\system32\DXP.dll
2013-09-18 14:12:29 ----A---- C:\Windows\system32\drivers\volmgr.sys
2013-09-18 14:12:29 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2013-09-18 14:12:28 ----A---- C:\Windows\SYSWOW64\UIRibbon.dll
2013-09-18 14:12:28 ----A---- C:\Windows\SYSWOW64\sqlsrv32.dll
2013-09-18 14:12:28 ----A---- C:\Windows\system32\wpdbusenum.dll
2013-09-18 14:12:28 ----A---- C:\Windows\system32\wcncsvc.dll
2013-09-18 14:12:28 ----A---- C:\Windows\system32\upnp.dll
2013-09-18 14:12:28 ----A---- C:\Windows\system32\t2embed.dll
2013-09-18 14:12:28 ----A---- C:\Windows\system32\Robocopy.exe
2013-09-18 14:12:28 ----A---- C:\Windows\system32\mprapi.dll
2013-09-18 14:12:28 ----A---- C:\Windows\system32\eapphost.dll
2013-09-18 14:12:28 ----A---- C:\Windows\system32\eapp3hst.dll
2013-09-18 14:12:28 ----A---- C:\Windows\system32\drivers\msdsm.sys
2013-09-18 14:12:28 ----A---- C:\Windows\system32\drivers\HpSAMD.sys
2013-09-18 14:12:28 ----A---- C:\Windows\system32\ci.dll
2013-09-18 14:12:27 ----A---- C:\Windows\SYSWOW64\ws2_32.dll
2013-09-18 14:12:27 ----A---- C:\Windows\SYSWOW64\sxs.dll
2013-09-18 14:12:27 ----A---- C:\Windows\SYSWOW64\stobject.dll
2013-09-18 14:12:27 ----A---- C:\Windows\SYSWOW64\netshell.dll
2013-09-18 14:12:27 ----A---- C:\Windows\system32\thumbcache.dll
2013-09-18 14:12:27 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2013-09-18 14:12:27 ----A---- C:\Windows\system32\hal.dll
2013-09-18 14:12:27 ----A---- C:\Windows\system32\DxpTaskSync.dll
2013-09-18 14:12:26 ----A---- C:\Windows\SYSWOW64\wmpeffects.dll
2013-09-18 14:12:26 ----A---- C:\Windows\SYSWOW64\prncache.dll
2013-09-18 14:12:26 ----A---- C:\Windows\SYSWOW64\printui.dll
2013-09-18 14:12:26 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2013-09-18 14:12:26 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2013-09-18 14:12:26 ----A---- C:\Windows\system32\themeui.dll
2013-09-18 14:12:26 ----A---- C:\Windows\system32\scecli.dll
2013-09-18 14:12:26 ----A---- C:\Windows\system32\puiobj.dll
2013-09-18 14:12:26 ----A---- C:\Windows\system32\onex.dll
2013-09-18 14:12:26 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2013-09-18 14:12:26 ----A---- C:\Windows\system32\msasn1.dll
2013-09-18 14:12:26 ----A---- C:\Windows\system32\iasrad.dll
2013-09-18 14:12:26 ----A---- C:\Windows\system32\DXPTaskRingtone.dll
2013-09-18 14:12:26 ----A---- C:\Windows\system32\dwmredir.dll
2013-09-18 14:12:26 ----A---- C:\Windows\system32\drivers\ipfltdrv.sys
2013-09-18 14:12:26 ----A---- C:\Windows\system32\drivers\Classpnp.sys
2013-09-18 14:12:25 ----A---- C:\Windows\SYSWOW64\WSDApi.dll
2013-09-18 14:12:25 ----A---- C:\Windows\SYSWOW64\scansetting.dll
2013-09-18 14:12:25 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2013-09-18 14:12:25 ----A---- C:\Windows\SYSWOW64\net1.exe
2013-09-18 14:12:25 ----A---- C:\Windows\system32\wlangpui.dll
2013-09-18 14:12:25 ----A---- C:\Windows\system32\wdc.dll
2013-09-18 14:12:25 ----A---- C:\Windows\system32\scesrv.dll
2013-09-18 14:12:25 ----A---- C:\Windows\system32\rasmans.dll
2013-09-18 14:12:24 ----A---- C:\Windows\system32\StructuredQuery.dll
2013-09-18 14:12:24 ----A---- C:\Windows\system32\sdengin2.dll
2013-09-18 14:12:24 ----A---- C:\Windows\system32\msftedit.dll
2013-09-18 14:12:23 ----A---- C:\Windows\SYSWOW64\MMDevAPI.dll
2013-09-18 14:12:23 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2013-09-18 14:12:23 ----A---- C:\Windows\system32\wscapi.dll
2013-09-18 14:12:23 ----A---- C:\Windows\system32\wiadefui.dll
2013-09-18 14:12:23 ----A---- C:\Windows\system32\VAN.dll
2013-09-18 14:12:23 ----A---- C:\Windows\system32\SndVol.exe
2013-09-18 14:12:23 ----A---- C:\Windows\system32\samcli.dll
2013-09-18 14:12:23 ----A---- C:\Windows\system32\netcenter.dll
2013-09-18 14:12:23 ----A---- C:\Windows\system32\dskquoui.dll
2013-09-18 14:12:23 ----A---- C:\Windows\system32\drivers\ndiswan.sys
2013-09-18 14:12:22 ----A---- C:\Windows\SYSWOW64\wpdshext.dll
2013-09-18 14:12:22 ----A---- C:\Windows\SYSWOW64\WMVCORE.DLL
2013-09-18 14:12:22 ----A---- C:\Windows\SYSWOW64\wlangpui.dll
2013-09-18 14:12:22 ----A---- C:\Windows\SYSWOW64\webservices.dll
2013-09-18 14:12:22 ----A---- C:\Windows\SYSWOW64\t2embed.dll
2013-09-18 14:12:22 ----A---- C:\Windows\SYSWOW64\SyncCenter.dll
2013-09-18 14:12:22 ----A---- C:\Windows\SYSWOW64\QSHVHOST.DLL
2013-09-18 14:12:22 ----A---- C:\Windows\SYSWOW64\pnidui.dll
2013-09-18 14:12:22 ----A---- C:\Windows\SYSWOW64\netdiagfx.dll
2013-09-18 14:12:22 ----A---- C:\Windows\SYSWOW64\fde.dll
2013-09-18 14:12:22 ----A---- C:\Windows\system32\wksprt.exe
2013-09-18 14:12:22 ----A---- C:\Windows\system32\TabSvc.dll
2013-09-18 14:12:22 ----A---- C:\Windows\system32\srchadmin.dll
2013-09-18 14:12:22 ----A---- C:\Windows\system32\setupcl.exe
2013-09-18 14:12:22 ----A---- C:\Windows\system32\regapi.dll
2013-09-18 14:12:22 ----A---- C:\Windows\system32\rastls.dll
2013-09-18 14:12:22 ----A---- C:\Windows\system32\QUTIL.DLL
2013-09-18 14:12:22 ----A---- C:\Windows\system32\iasacct.dll
2013-09-18 14:12:22 ----A---- C:\Windows\system32\drivers\termdd.sys
2013-09-18 14:12:22 ----A---- C:\Windows\system32\drivers\msahci.sys
2013-09-18 14:12:21 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2013-09-18 14:12:21 ----A---- C:\Windows\SYSWOW64\wscapi.dll
2013-09-18 14:12:21 ----A---- C:\Windows\SYSWOW64\WinSCard.dll
2013-09-18 14:12:21 ----A---- C:\Windows\system32\tapisrv.dll
2013-09-18 14:12:21 ----A---- C:\Windows\system32\netiohlp.dll
2013-09-18 14:12:21 ----A---- C:\Windows\system32\msconfig.exe
2013-09-18 14:12:21 ----A---- C:\Windows\system32\mimefilt.dll
2013-09-18 14:12:21 ----A---- C:\Windows\system32\ListSvc.dll
2013-09-18 14:12:21 ----A---- C:\Windows\system32\drivers\raspptp.sys
2013-09-18 14:12:21 ----A---- C:\Windows\system32\drivers\acpi.sys
2013-09-18 14:12:20 ----A---- C:\Windows\SYSWOW64\winsta.dll
2013-09-18 14:12:20 ----A---- C:\Windows\SYSWOW64\pla.dll
2013-09-18 14:12:20 ----A---- C:\Windows\SYSWOW64\MSMPEG2ENC.DLL
2013-09-18 14:12:20 ----A---- C:\Windows\SYSWOW64\msasn1.dll
2013-09-18 14:12:20 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2013-09-18 14:12:20 ----A---- C:\Windows\system32\mtxclu.dll
2013-09-18 14:12:20 ----A---- C:\Windows\system32\lsmproxy.dll
2013-09-18 14:12:20 ----A---- C:\Windows\system32\hgcpl.dll
2013-09-18 14:12:20 ----A---- C:\Windows\system32\fdeploy.dll
2013-09-18 14:12:20 ----A---- C:\Windows\system32\drivers\sbp2port.sys
2013-09-18 14:12:20 ----A---- C:\Windows\system32\drivers\ks.sys
2013-09-18 14:12:20 ----A---- C:\Windows\system32\clusapi.dll
2013-09-18 14:12:20 ----A---- C:\Windows\system32\basecsp.dll
2013-09-18 14:12:20 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2013-09-18 14:12:19 ----A---- C:\Windows\SYSWOW64\imapi2.dll
2013-09-18 14:12:19 ----A---- C:\Windows\SYSWOW64\DXPTaskRingtone.dll
2013-09-18 14:12:19 ----A---- C:\Windows\system32\riched20.dll
2013-09-18 14:12:19 ----A---- C:\Windows\system32\dnscmmc.dll
2013-09-18 14:12:18 ----A---- C:\Windows\SYSWOW64\WMPEncEn.dll
2013-09-18 14:12:18 ----A---- C:\Windows\SYSWOW64\winmm.dll
2013-09-18 14:12:18 ----A---- C:\Windows\SYSWOW64\shsvcs.dll
2013-09-18 14:12:18 ----A---- C:\Windows\SYSWOW64\samcli.dll
2013-09-18 14:12:18 ----A---- C:\Windows\SYSWOW64\onex.dll
2013-09-18 14:12:18 ----A---- C:\Windows\SYSWOW64\netiohlp.dll
2013-09-18 14:12:18 ----A---- C:\Windows\SYSWOW64\IPHLPAPI.DLL
2013-09-18 14:12:18 ----A---- C:\Windows\SYSWOW64\hbaapi.dll
2013-09-18 14:12:18 ----A---- C:\Windows\SYSWOW64\autochk.exe
2013-09-18 14:12:18 ----A---- C:\Windows\SYSWOW64\autofmt.exe
2013-09-18 14:12:18 ----A---- C:\Windows\system32\wkssvc.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\vpnikeapi.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\themecpl.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\sharemediacpl.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\SensorsCpl.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\RpcRtRemote.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\powercpl.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\netjoin.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\nci.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\Narrator.exe
2013-09-18 14:12:18 ----A---- C:\Windows\system32\logoncli.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\Faultrep.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\eudcedit.exe
2013-09-18 14:12:18 ----A---- C:\Windows\system32\comctl32.dll
2013-09-18 14:12:17 ----A---- C:\Windows\SYSWOW64\thumbcache.dll
2013-09-18 14:12:17 ----A---- C:\Windows\SYSWOW64\regapi.dll
2013-09-18 14:12:17 ----A---- C:\Windows\SYSWOW64\proquota.exe
2013-09-18 14:12:17 ----A---- C:\Windows\SYSWOW64\msutb.dll
2013-09-18 14:12:17 ----A---- C:\Windows\SYSWOW64\msinfo32.exe
2013-09-18 14:12:17 ----A---- C:\Windows\SYSWOW64\mimefilt.dll
2013-09-18 14:12:17 ----A---- C:\Windows\SYSWOW64\ipsmsnap.dll
2013-09-18 14:12:17 ----A---- C:\Windows\SYSWOW64\autoconv.exe
2013-09-18 14:12:17 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2013-09-18 14:12:17 ----A---- C:\Windows\system32\sppcomapi.dll
2013-09-18 14:12:17 ----A---- C:\Windows\system32\nshipsec.dll
2013-09-18 14:12:17 ----A---- C:\Windows\system32\cabview.dll
2013-09-18 14:12:17 ----A---- C:\Windows\system32\autochk.exe
2013-09-18 14:12:17 ----A---- C:\Windows\system32\autofmt.exe
2013-09-18 14:12:17 ----A---- C:\Windows\system32\autoconv.exe
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\wcncsvc.dll
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\tcpipcfg.dll
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\srchadmin.dll
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\schtasks.exe
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\QAGENT.DLL
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\powercpl.dll
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\netid.dll
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\mscorier.dll
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\framedyn.dll
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\eapphost.dll
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\AuxiliaryDisplayCpl.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\wwanconn.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\wpd_ci.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\wlanui.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\SmiEngine.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\shsetup.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\sdclt.exe
2013-09-18 14:12:16 ----A---- C:\Windows\system32\prntvpt.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\mscorier.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\mprddm.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\fontext.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\fms.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\drivers\wanarp.sys
2013-09-18 14:12:16 ----A---- C:\Windows\system32\drivers\volmgrx.sys
2013-09-18 14:12:16 ----A---- C:\Windows\system32\drivers\scsiport.sys
2013-09-18 14:12:16 ----A---- C:\Windows\system32\dps.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\Display.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\bcdsrv.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\AxInstSv.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\audiodg.exe
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\WMNetMgr.dll
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\wlanpref.dll
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\wdc.dll
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\Vault.dll
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\untfs.dll
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\StructuredQuery.dll
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\scesrv.dll
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\RpcRtRemote.dll
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\rastls.dll
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\nci.dll
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2013-09-18 14:12:15 ----A---- C:\Windows\system32\wmpsrcwp.dll
2013-09-18 14:12:15 ----A---- C:\Windows\system32\mblctr.exe
2013-09-18 14:12:15 ----A---- C:\Windows\system32\drivers\hidclass.sys
2013-09-18 14:12:15 ----A---- C:\Windows\system32\DiagCpl.dll
2013-09-18 14:12:15 ----A---- C:\Windows\system32\credssp.dll
2013-09-18 14:12:15 ----A---- C:\Windows\system32\batmeter.dll
2013-09-18 14:12:14 ----A---- C:\Windows\SYSWOW64\taskmgr.exe
2013-09-18 14:12:14 ----A---- C:\Windows\SYSWOW64\Robocopy.exe
2013-09-18 14:12:14 ----A---- C:\Windows\SYSWOW64\mtxclu.dll
2013-09-18 14:12:14 ----A---- C:\Windows\SYSWOW64\DxpTaskSync.dll
2013-09-18 14:12:14 ----A---- C:\Windows\SYSWOW64\Display.dll
2013-09-18 14:12:14 ----A---- C:\Windows\system32\wpccpl.dll
2013-09-18 14:12:14 ----A---- C:\Windows\system32\usercpl.dll
2013-09-18 14:12:14 ----A---- C:\Windows\system32\sppsvc.exe
2013-09-18 14:12:14 ----A---- C:\Windows\system32\SndVolSSO.dll
2013-09-18 14:12:14 ----A---- C:\Windows\system32\rtutils.dll
2013-09-18 14:12:14 ----A---- C:\Windows\system32\rasppp.dll
2013-09-18 14:12:14 ----A---- C:\Windows\system32\provsvc.dll
2013-09-18 14:12:14 ----A---- C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2013-09-18 14:12:14 ----A---- C:\Windows\system32\dxdiagn.dll
2013-09-18 14:12:14 ----A---- C:\Windows\system32\drivers\rdyboost.sys
2013-09-18 14:12:14 ----A---- C:\Windows\system32\dot3cfg.dll
2013-09-18 14:12:14 ----A---- C:\Windows\system32\bootres.dll
2013-09-18 14:12:13 ----A---- C:\Windows\SYSWOW64\XpsRasterService.dll
2013-09-18 14:12:13 ----A---- C:\Windows\SYSWOW64\userinit.exe
2013-09-18 14:12:13 ----A---- C:\Windows\SYSWOW64\termmgr.dll
2013-09-18 14:12:13 ----A---- C:\Windows\SYSWOW64\puiobj.dll
2013-09-18 14:12:13 ----A---- C:\Windows\system32\taskmgr.exe
2013-09-18 14:12:13 ----A---- C:\Windows\system32\prnfldr.dll
2013-09-18 14:12:13 ----A---- C:\Windows\system32\hbaapi.dll
2013-09-18 14:12:12 ----A---- C:\Windows\SYSWOW64\wiadefui.dll
2013-09-18 14:12:12 ----A---- C:\Windows\SYSWOW64\sppcomapi.dll
2013-09-18 14:12:12 ----A---- C:\Windows\SYSWOW64\shsetup.dll
2013-09-18 14:12:12 ----A---- C:\Windows\SYSWOW64\rasppp.dll
2013-09-18 14:12:12 ----A---- C:\Windows\SYSWOW64\logoncli.dll
2013-09-18 14:12:12 ----A---- C:\Windows\SYSWOW64\eudcedit.exe
2013-09-18 14:12:12 ----A---- C:\Windows\SYSWOW64\cabview.dll
2013-09-18 14:12:12 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2013-09-18 14:12:12 ----A---- C:\Windows\system32\userinit.exe
2013-09-18 14:12:12 ----A---- C:\Windows\system32\untfs.dll
2013-09-18 14:12:12 ----A---- C:\Windows\system32\proquota.exe
2013-09-18 14:12:12 ----A---- C:\Windows\system32\pdh.dll
2013-09-18 14:12:12 ----A---- C:\Windows\system32\MSAC3ENC.DLL
2013-09-18 14:12:12 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2013-09-18 14:12:12 ----A---- C:\Windows\system32\accessibilitycpl.dll
2013-09-18 14:12:10 ----A---- C:\Windows\SYSWOW64\SensorsCpl.dll
2013-09-18 14:12:10 ----A---- C:\Windows\SYSWOW64\FirewallControlPanel.dll
2013-09-18 14:12:09 ----A---- C:\Windows\SYSWOW64\themecpl.dll
2013-09-18 14:12:09 ----A---- C:\Windows\SYSWOW64\tapisrv.dll
2013-09-18 14:12:09 ----A---- C:\Windows\SYSWOW64\scecli.dll
2013-09-18 14:12:09 ----A---- C:\Windows\SYSWOW64\PhotoScreensaver.scr
2013-09-18 14:12:09 ----A---- C:\Windows\SYSWOW64\hgcpl.dll
2013-09-18 14:12:09 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2013-09-18 14:12:09 ----A---- C:\Windows\SYSWOW64\fontext.dll
2013-09-18 14:12:09 ----A---- C:\Windows\SYSWOW64\dnscmmc.dll
2013-09-18 14:12:09 ----A---- C:\Windows\system32\zipfldr.dll
2013-09-18 14:12:09 ----A---- C:\Windows\system32\sud.dll
2013-09-18 14:12:09 ----A---- C:\Windows\system32\slui.exe
2013-09-18 14:12:09 ----A---- C:\Windows\system32\msieftp.dll
2013-09-18 14:12:09 ----A---- C:\Windows\system32\defaultlocationcpl.dll
2013-09-18 14:12:08 ----A---- C:\Windows\SYSWOW64\mscories.dll
2013-09-18 14:12:08 ----A---- C:\Windows\SYSWOW64\mscms.dll
2013-09-18 14:12:08 ----A---- C:\Windows\SYSWOW64\mprddm.dll
2013-09-18 14:12:08 ----A---- C:\Windows\SYSWOW64\localsec.dll
2013-09-18 14:12:08 ----A---- C:\Windows\SYSWOW64\iasacct.dll
2013-09-18 14:12:08 ----A---- C:\Windows\system32\OnLineIDCpl.dll
2013-09-18 14:12:08 ----A---- C:\Windows\system32\networkmap.dll
2013-09-18 14:12:08 ----A---- C:\Windows\system32\dot3svc.dll
2013-09-18 14:12:08 ----A---- C:\Windows\system32\DeviceCenter.dll
2013-09-18 14:12:08 ----A---- C:\Windows\system32\cryptui.dll
2013-09-18 14:12:07 ----A---- C:\Windows\SYSWOW64\wlanui.dll
2013-09-18 14:12:07 ----A---- C:\Windows\SYSWOW64\VAN.dll
2013-09-18 14:12:07 ----A---- C:\Windows\SYSWOW64\usercpl.dll
2013-09-18 14:12:07 ----A---- C:\Windows\SYSWOW64\SndVolSSO.dll
2013-09-18 14:12:07 ----A---- C:\Windows\SYSWOW64\SndVol.exe
2013-09-18 14:12:07 ----A---- C:\Windows\SYSWOW64\prntvpt.dll
2013-09-18 14:12:07 ----A---- C:\Windows\SYSWOW64\PerfCenterCPL.dll
2013-09-18 14:12:07 ----A---- C:\Windows\SYSWOW64\netcenter.dll
2013-09-18 14:12:07 ----A---- C:\Windows\SYSWOW64\batmeter.dll
2013-09-18 14:12:07 ----A---- C:\Windows\system32\twext.dll
2013-09-18 14:12:07 ----A---- C:\Windows\system32\taskbarcpl.dll
2013-09-18 14:12:07 ----A---- C:\Windows\system32\OobeFldr.dll
2013-09-18 14:12:07 ----A---- C:\Windows\system32\bcdedit.exe
2013-09-18 14:12:07 ----A---- C:\Windows\system32\ActionCenter.dll
2013-09-18 14:12:06 ----A---- C:\Windows\SYSWOW64\zipfldr.dll
2013-09-18 14:12:06 ----A---- C:\Windows\SYSWOW64\w32tm.exe
2013-09-18 14:12:06 ----A---- C:\Windows\SYSWOW64\spwizeng.dll
2013-09-18 14:12:06 ----A---- C:\Windows\SYSWOW64\netjoin.dll
2013-09-18 14:12:06 ----A---- C:\Windows\SYSWOW64\MSAC3ENC.DLL
2013-09-18 14:12:06 ----A---- C:\Windows\SYSWOW64\fdeploy.dll
2013-09-18 14:12:06 ----A---- C:\Windows\SYSWOW64\cryptui.dll
2013-09-18 14:12:06 ----A---- C:\Windows\SYSWOW64\azroleui.dll
2013-09-18 14:12:06 ----A---- C:\Windows\SYSWOW64\adsldp.dll
2013-09-18 14:12:06 ----A---- C:\Windows\SYSWOW64\accessibilitycpl.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\uxlib.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\tzutil.exe
2013-09-18 14:12:06 ----A---- C:\Windows\system32\systemcpl.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\syncui.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\sisbkup.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\shwebsvc.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\sdcpl.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\recovery.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\recdisc.exe
2013-09-18 14:12:06 ----A---- C:\Windows\system32\netplwiz.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\isoburn.exe
2013-09-18 14:12:06 ----A---- C:\Windows\system32\httpapi.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\efscore.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\dsuiext.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\drivers\mpio.sys
2013-09-18 14:12:06 ----A---- C:\Windows\system32\drivers\hwpolicy.sys
2013-09-18 14:12:06 ----A---- C:\Windows\system32\certcli.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\cca.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\azroleui.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\autoplay.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\asycfilt.dll
2013-09-18 14:12:05 ----A---- C:\Windows\SYSWOW64\wusa.exe
2013-09-18 14:12:05 ----A---- C:\Windows\SYSWOW64\sud.dll
2013-09-18 14:12:05 ----A---- C:\Windows\SYSWOW64\prnfldr.dll
2013-09-18 14:12:05 ----A---- C:\Windows\SYSWOW64\OnLineIDCpl.dll
2013-09-18 14:12:05 ----A---- C:\Windows\SYSWOW64\networkmap.dll
2013-09-18 14:12:05 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2013-09-18 14:12:05 ----A---- C:\Windows\SYSWOW64\MCEWMDRMNDBootstrap.dll
2013-09-18 14:12:05 ----A---- C:\Windows\SYSWOW64\Faultrep.dll
2013-09-18 14:12:05 ----A---- C:\Windows\SYSWOW64\ActionCenter.dll
2013-09-18 14:12:05 ----A---- C:\Windows\system32\wlanmsm.dll
2013-09-18 14:12:05 ----A---- C:\Windows\system32\vdsutil.dll
2013-09-18 14:12:05 ----A---- C:\Windows\system32\sysclass.dll
2013-09-18 14:12:05 ----A---- C:\Windows\system32\spwizeng.dll
2013-09-18 14:12:05 ----A---- C:\Windows\system32\sdrsvc.dll
2013-09-18 14:12:05 ----A---- C:\Windows\system32\ncryptui.dll
2013-09-18 14:12:05 ----A---- C:\Windows\system32\msvidc32.dll
2013-09-18 14:12:05 ----A---- C:\Windows\system32\MFPlay.dll
2013-09-18 14:12:05 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2013-09-18 14:12:05 ----A---- C:\Windows\system32\ActionCenterCPL.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\sisbkup.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\shwebsvc.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\photowiz.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\MediaMetadataHandler.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\iprtrmgr.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\ifsutil.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\iasrad.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\ftp.exe
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\efscore.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\dot3cfg.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\defaultlocationcpl.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\credssp.dll
2013-09-18 14:12:04 ----A---- C:\Windows\system32\UserAccountControlSettings.dll
2013-09-18 14:12:04 ----A---- C:\Windows\system32\termmgr.dll
2013-09-18 14:12:04 ----A---- C:\Windows\system32\sqlcese30.dll
2013-09-18 14:12:04 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2013-09-18 14:12:04 ----A---- C:\Windows\system32\sethc.exe
2013-09-18 14:12:04 ----A---- C:\Windows\system32\ReAgent.dll
2013-09-18 14:12:04 ----A---- C:\Windows\system32\rdpd3d.dll
2013-09-18 14:12:04 ----A---- C:\Windows\system32\ntlanman.dll
2013-09-18 14:12:04 ----A---- C:\Windows\system32\msscp.dll
2013-09-18 14:12:04 ----A---- C:\Windows\system32\iprtrmgr.dll
2013-09-18 14:12:04 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2013-09-18 14:12:03 ----A---- C:\Windows\SYSWOW64\wmpmde.dll
2013-09-18 14:12:03 ----A---- C:\Windows\SYSWOW64\syncui.dll
2013-09-18 14:12:03 ----A---- C:\Windows\SYSWOW64\ntlanman.dll
2013-09-18 14:12:03 ----A---- C:\Windows\SYSWOW64\dskquoui.dll
2013-09-18 14:12:03 ----A---- C:\Windows\SYSWOW64\DeviceCenter.dll
2013-09-18 14:12:03 ----A---- C:\Windows\SYSWOW64\autoplay.dll
2013-09-18 14:12:03 ----A---- C:\Windows\SYSWOW64\ActionCenterCPL.dll
2013-09-18 14:12:03 ----A---- C:\Windows\system32\wmdrmsdk.dll
2013-09-18 14:12:03 ----A---- C:\Windows\system32\ssText3d.scr
2013-09-18 14:12:03 ----A---- C:\Windows\system32\srvcli.dll
2013-09-18 14:12:03 ----A---- C:\Windows\system32\slwga.dll
2013-09-18 14:12:03 ----A---- C:\Windows\system32\iyuv_32.dll
2013-09-18 14:12:03 ----A---- C:\Windows\system32\iTVData.dll
2013-09-18 14:12:03 ----A---- C:\Windows\system32\drmmgrtn.dll
2013-09-18 14:12:02 ----A---- C:\Windows\SYSWOW64\systemcpl.dll
2013-09-18 14:12:02 ----A---- C:\Windows\SYSWOW64\SmartcardCredentialProvider.dll
2013-09-18 14:12:02 ----A---- C:\Windows\SYSWOW64\sethc.exe
2013-09-18 14:12:02 ----A---- C:\Windows\SYSWOW64\rtutils.dll
2013-09-18 14:12:02 ----A---- C:\Windows\SYSWOW64\riched20.dll
2013-09-18 14:12:02 ----A---- C:\Windows\SYSWOW64\OobeFldr.dll
2013-09-18 14:12:02 ----A---- C:\Windows\SYSWOW64\ntprint.dll
2013-09-18 14:12:02 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2013-09-18 14:12:02 ----A---- C:\Windows\system32\wavemsp.dll
2013-09-18 14:12:02 ----A---- C:\Windows\system32\srrstr.dll
2013-09-18 14:12:02 ----A---- C:\Windows\system32\ntprint.dll
2013-09-18 14:12:02 ----A---- C:\Windows\system32\nslookup.exe
2013-09-18 14:12:02 ----A---- C:\Windows\system32\NAPHLPR.DLL
2013-09-18 14:12:02 ----A---- C:\Windows\system32\msiexec.exe
2013-09-18 14:12:02 ----A---- C:\Windows\system32\DevicePairingFolder.dll
2013-09-18 14:12:02 ----A---- C:\Windows\system32\bcdboot.exe
2013-09-18 14:12:02 ----A---- C:\Windows\system32\acppage.dll
2013-09-18 14:12:01 ----A---- C:\Windows\SYSWOW64\wmpsrcwp.dll
2013-09-18 14:12:01 ----A---- C:\Windows\SYSWOW64\netplwiz.dll
2013-09-18 14:12:01 ----A---- C:\Windows\SYSWOW64\NAPHLPR.DLL
2013-09-18 14:12:01 ----A---- C:\Windows\SYSWOW64\migisol.dll
2013-09-18 14:12:01 ----A---- C:\Windows\SYSWOW64\fms.dll
2013-09-18 14:12:01 ----A---- C:\Windows\SYSWOW64\dpx.dll
2013-09-18 14:12:01 ----A---- C:\Windows\SYSWOW64\blackbox.dll
2013-09-18 14:12:01 ----A---- C:\Windows\SYSWOW64\activeds.dll
2013-09-18 14:12:01 ----A---- C:\Windows\system32\TSpkg.dll
2013-09-18 14:12:01 ----A---- C:\Windows\system32\sppnp.dll
2013-09-18 14:12:01 ----A---- C:\Windows\system32\networkexplorer.dll
2013-09-18 14:12:01 ----A---- C:\Windows\system32\certprop.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\wlanmsm.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\wavemsp.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\tzutil.exe
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\ReAgent.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\provsvc.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\ocsetup.exe
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\nshipsec.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\msftedit.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\isoburn.exe
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\httpapi.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\dsuiext.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\dot3ui.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\dfrgui.exe
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\asycfilt.dll
2013-09-18 14:12:00 ----A---- C:\Windows\system32\wvc.dll
2013-09-18 14:12:00 ----A---- C:\Windows\system32\wsqmcons.exe
2013-09-18 14:12:00 ----A---- C:\Windows\system32\wsnmp32.dll
2013-09-18 14:12:00 ----A---- C:\Windows\system32\wmpdxm.dll
2013-09-18 14:12:00 ----A---- C:\Windows\system32\wmdrmdev.dll
2013-09-18 14:12:00 ----A---- C:\Windows\system32\wkscli.dll
2013-09-18 14:12:00 ----A---- C:\Windows\system32\WinSCard.dll
2013-09-18 14:12:00 ----A---- C:\Windows\system32\remotepg.dll
2013-09-18 14:12:00 ----A---- C:\Windows\system32\net1.exe
2013-09-18 14:12:00 ----A---- C:\Windows\system32\ftp.exe
2013-09-18 14:12:00 ----A---- C:\Windows\system32\dfrgui.exe
2013-09-18 14:12:00 ----A---- C:\Windows\system32\cabinet.dll
2013-09-18 14:12:00 ----A---- C:\Windows\system32\blackbox.dll
2013-09-18 14:11:59 ----A---- C:\Windows\SYSWOW64\wvc.dll
2013-09-18 14:11:59 ----A---- C:\Windows\SYSWOW64\wtsapi32.dll
2013-09-18 14:11:59 ----A---- C:\Windows\SYSWOW64\wimgapi.dll
2013-09-18 14:11:59 ----A---- C:\Windows\SYSWOW64\twext.dll
2013-09-18 14:11:59 ----A---- C:\Windows\SYSWOW64\PkgMgr.exe
2013-09-18 14:11:59 ----A---- C:\Windows\SYSWOW64\mstask.dll
2013-09-18 14:11:59 ----A---- C:\Windows\system32\WerFaultSecure.exe
2013-09-18 14:11:59 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2013-09-18 14:11:59 ----A---- C:\Windows\system32\OpcServices.dll
2013-09-18 14:11:59 ----A---- C:\Windows\system32\msyuv.dll
2013-09-18 14:11:59 ----A---- C:\Windows\system32\mfps.dll
2013-09-18 14:11:59 ----A---- C:\Windows\system32\mapistub.dll
2013-09-18 14:11:59 ----A---- C:\Windows\system32\mapi32.dll
2013-09-18 14:11:59 ----A---- C:\Windows\system32\Bubbles.scr
2013-09-18 14:11:58 ----A---- C:\Windows\twain_32.dll
2013-09-18 14:11:58 ----A---- C:\Windows\SYSWOW64\setupugc.exe
2013-09-18 14:11:58 ----A---- C:\Windows\SYSWOW64\qcap.dll
2013-09-18 14:11:58 ----A---- C:\Windows\SYSWOW64\qasf.dll
2013-09-18 14:11:58 ----A---- C:\Windows\system32\unimdmat.dll
2013-09-18 14:11:58 ----A---- C:\Windows\system32\msrle32.dll
2013-09-18 14:11:58 ----A---- C:\Windows\system32\iscsium.dll
2013-09-18 14:11:58 ----A---- C:\Windows\system32\diskraid.exe
2013-09-18 14:11:57 ----A---- C:\Windows\SYSWOW64\wmdrmsdk.dll
2013-09-18 14:11:57 ----A---- C:\Windows\SYSWOW64\uxlib.dll
2013-09-18 14:11:57 ----A---- C:\Windows\SYSWOW64\ssText3d.scr
2013-09-18 14:11:57 ----A---- C:\Windows\SYSWOW64\slwga.dll
2013-09-18 14:11:57 ----A---- C:\Windows\SYSWOW64\nslookup.exe
2013-09-18 14:11:57 ----A---- C:\Windows\SYSWOW64\msvfw32.dll
2013-09-18 14:11:57 ----A---- C:\Windows\SYSWOW64\mciavi32.dll
2013-09-18 14:11:57 ----A---- C:\Windows\SYSWOW64\clusapi.dll
2013-09-18 14:11:57 ----A---- C:\Windows\SYSWOW64\audiodev.dll
2013-09-18 14:11:57 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeResults.exe
2013-09-18 14:11:57 ----A---- C:\Windows\system32\tsbyuv.dll
2013-09-18 14:11:57 ----A---- C:\Windows\system32\seclogon.dll
2013-09-18 14:11:57 ----A---- C:\Windows\system32\Ribbons.scr
2013-09-18 14:11:57 ----A---- C:\Windows\system32\Mystify.scr
2013-09-18 14:11:57 ----A---- C:\Windows\system32\muifontsetup.dll
2013-09-18 14:11:57 ----A---- C:\Windows\system32\ifsutil.dll
2013-09-18 14:11:57 ----A---- C:\Windows\system32\drivers\umbus.sys
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\WPDShServiceObj.dll
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\wimserv.exe
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\remotepg.dll
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\rdpencom.dll
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\raschap.dll
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\QUTIL.DLL
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\perfmon.exe
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\NAPCRYPT.DLL
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\msscp.dll
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\input.dll
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\drmmgrtn.dll
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\diskraid.exe
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\DevicePairingFolder.dll
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\acppage.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\wpdwcn.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\wmpshell.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\wiavideo.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\umb.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\tlscsp.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\runonce.exe
2013-09-18 14:11:56 ----A---- C:\Windows\system32\rdpencom.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\raschap.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\qasf.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\perfmon.exe
2013-09-18 14:11:56 ----A---- C:\Windows\system32\netutils.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\NAPCRYPT.DLL
2013-09-18 14:11:56 ----A---- C:\Windows\system32\FXSAPI.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\dbghelp.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\AzSqlExt.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\ActionQueue.dll
2013-09-18 14:11:56 ----A---- C:\Windows\bfsvc.exe
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\wpdwcn.dll
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\wmpdxm.dll
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\vpnikeapi.dll
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\vdsbas.dll
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\UserAccountControlSettings.dll
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\runonce.exe
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\onexui.dll
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\olepro32.dll
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\ocsetapi.dll
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\networkexplorer.dll
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\logagent.exe
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\iTVData.dll
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\dxdiagn.dll
2013-09-18 14:11:55 ----A---- C:\Windows\system32\WMVSDECD.DLL
2013-09-18 14:11:55 ----A---- C:\Windows\system32\WMADMOD.DLL
2013-09-18 14:11:55 ----A---- C:\Windows\system32\vdsbas.dll
2013-09-18 14:11:55 ----A---- C:\Windows\system32\syssetup.dll
2013-09-18 14:11:55 ----A---- C:\Windows\system32\PrintIsolationProxy.dll
2013-09-18 14:11:55 ----A---- C:\Windows\system32\nltest.exe
2013-09-18 14:11:55 ----A---- C:\Windows\system32\mstask.dll
2013-09-18 14:11:55 ----A---- C:\Windows\system32\MdSched.exe
2013-09-18 14:11:55 ----A---- C:\Windows\system32\Mcx2Svc.dll
2013-09-18 14:11:55 ----A---- C:\Windows\system32\drivers\rmcast.sys
2013-09-18 14:11:55 ----A---- C:\Windows\system32\bitsadmin.exe
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\wmpshell.dll
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\wmdrmdev.dll
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\unimdmat.dll
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\shacct.dll
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\msvidc32.dll
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\MFPlay.dll
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\lsmproxy.dll
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\iscsium.dll
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\eapp3hst.dll
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\bitsadmin.exe
2013-09-18 14:11:54 ----A---- C:\Windows\system32\WPDSp.dll
2013-09-18 14:11:54 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2013-09-18 14:11:54 ----A---- C:\Windows\system32\wmdrmnet.dll
2013-09-18 14:11:54 ----A---- C:\Windows\system32\vss_ps.dll
2013-09-18 14:11:54 ----A---- C:\Windows\system32\tabcal.exe
2013-09-18 14:11:54 ----A---- C:\Windows\system32\shacct.dll
2013-09-18 14:11:54 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2013-09-18 14:11:54 ----A---- C:\Windows\system32\QSVRMGMT.DLL
2013-09-18 14:11:54 ----A---- C:\Windows\system32\qcap.dll
2013-09-18 14:11:54 ----A---- C:\Windows\system32\msnetobj.dll
2013-09-18 14:11:54 ----A---- C:\Windows\system32\logman.exe
2013-09-18 14:11:54 ----A---- C:\Windows\system32\drivers\USBAUDIO.sys
2013-09-18 14:11:54 ----A---- C:\Windows\system32\cscapi.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\WPDSp.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\srvcli.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\sqlcese30.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\rdpd3d.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\PortableDeviceSyncProvider.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\pdh.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\OpcServices.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\olethk32.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\ncryptui.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\mprapi.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\logman.exe
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\cscapi.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\Bubbles.scr
2013-09-18 14:11:53 ----A---- C:\Windows\system32\spbcd.dll
2013-09-18 14:11:53 ----A---- C:\Windows\system32\secproc_ssp.dll
2013-09-18 14:11:53 ----A---- C:\Windows\system32\qdv.dll
2013-09-18 14:11:53 ----A---- C:\Windows\system32\PortableDeviceSyncProvider.dll
2013-09-18 14:11:53 ----A---- C:\Windows\system32\PortableDeviceStatus.dll
2013-09-18 14:11:53 ----A---- C:\Windows\system32\drivers\ndisuio.sys
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\WMVSDECD.DLL
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\wmdrmnet.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\WMADMOD.DLL
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\wiavideo.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\utildll.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\takeown.exe
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\Ribbons.scr
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\QSVRMGMT.DLL
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\qdv.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\PortableDeviceStatus.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\Mystify.scr
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\mapistub.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\mapi32.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\iyuv_32.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\fphc.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\EhStorAPI.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\dot3msm.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\avifil32.dll
2013-09-18 14:11:52 ----A---- C:\Windows\system32\vfwwdm32.dll
2013-09-18 14:11:52 ----A---- C:\Windows\system32\takeown.exe
2013-09-18 14:11:52 ----A---- C:\Windows\system32\shimgvw.dll
2013-09-18 14:11:52 ----A---- C:\Windows\system32\QCLIPROV.DLL
2013-09-18 14:11:52 ----A---- C:\Windows\system32\PnPUnattend.exe
2013-09-18 14:11:52 ----A---- C:\Windows\system32\nrpsrv.dll
2013-09-18 14:11:52 ----A---- C:\Windows\system32\HotStartUserAgent.dll
2013-09-18 14:11:52 ----A---- C:\Windows\system32\fphc.dll
2013-09-18 14:11:52 ----A---- C:\Windows\system32\EhStorAPI.dll
2013-09-18 14:11:52 ----A---- C:\Windows\system32\dot3ui.dll
2013-09-18 14:11:52 ----A---- C:\Windows\system32\djoin.exe
2013-09-18 14:11:52 ----A---- C:\Windows\system32\cmstp.exe
2013-09-18 14:11:52 ----A---- C:\Windows\system32\CertPolEng.dll
2013-09-18 14:11:52 ----A---- C:\Windows\system32\amstream.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\wsnmp32.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\WMSPDMOD.DLL
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\vfwwdm32.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\tsbyuv.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\sppinst.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\setupcln.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\relog.exe
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\QCLIPROV.DLL
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\pdhui.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\netiougc.exe
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\MuiUnattend.exe
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\msyuv.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\msrle32.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\msorcl32.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\msnetobj.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\iasrecst.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\cmstp.exe
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\cca.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\AzSqlExt.dll
2013-09-18 14:11:51 ----A---- C:\Windows\system32\WavDest.dll
2013-09-18 14:11:51 ----A---- C:\Windows\system32\sscore.dll
2013-09-18 14:11:51 ----A---- C:\Windows\system32\relog.exe
2013-09-18 14:11:51 ----A---- C:\Windows\system32\mydocs.dll
2013-09-18 14:11:51 ----A---- C:\Windows\system32\MultiDigiMon.exe
2013-09-18 14:11:51 ----A---- C:\Windows\system32\mobsync.exe
2013-09-18 14:11:51 ----A---- C:\Windows\system32\KMSVC.DLL
2013-09-18 14:11:51 ----A---- C:\Windows\system32\iscsicli.exe
2013-09-18 14:11:51 ----A---- C:\Windows\system32\iasrecst.dll
2013-09-18 14:11:51 ----A---- C:\Windows\system32\fdProxy.dll
2013-09-18 14:11:51 ----A---- C:\Windows\system32\drivers\pacer.sys
2013-09-18 14:11:51 ----A---- C:\Windows\system32\diskpart.exe
2013-09-18 14:11:51 ----A---- C:\Windows\system32\BWUnpairElevated.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\wmpps.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\wkscli.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\syssetup.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\spbcd.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\secproc_ssp_isv.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\secproc_ssp.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\resutils.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\rastapi.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\netbtugc.exe
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\mydocs.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\itircl.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\iscsicli.exe
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\diskpart.exe
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\CertPolEng.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\amstream.dll
2013-09-18 14:11:50 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2013-09-18 14:11:50 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2013-09-18 14:11:50 ----A---- C:\Windows\system32\msdmo.dll
2013-09-18 14:11:50 ----A---- C:\Windows\system32\mciqtz32.dll
2013-09-18 14:11:50 ----A---- C:\Windows\system32\itircl.dll
2013-09-18 14:11:50 ----A---- C:\Windows\system32\choice.exe
2013-09-18 14:11:50 ----A---- C:\Windows\system32\FXSTIFF.dll
2013-09-18 14:11:50 ----A---- C:\Windows\system32\findstr.exe
2013-09-18 14:11:50 ----A---- C:\Windows\system32\eappgnui.dll
2013-09-18 14:11:50 ----A---- C:\Windows\system32\dot3msm.dll
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\WerFaultSecure.exe
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\tlscsp.dll
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp_isv.exe
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp.exe
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\ReAgentc.exe
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\netutils.dll
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\mobsync.exe
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\mciqtz32.dll
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\findstr.exe
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\eappgnui.dll
2013-09-18 14:11:49 ----A---- C:\Windows\system32\sppc.dll
2013-09-18 14:11:49 ----A---- C:\Windows\system32\onexui.dll
2013-09-18 14:11:49 ----A---- C:\Windows\system32\luainstall.dll
2013-09-18 14:11:49 ----A---- C:\Windows\system32\drivers\tunnel.sys
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\wups.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\unlodctr.exe
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\UIRibbonRes.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\sppc.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\spopk.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\shimgvw.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\rdprefdrvapi.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\odbcconf.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\muifontsetup.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\msdmo.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\luainstall.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\inetmib1.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\iccvid.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\cabinet.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\wdiasqmmodule.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\UIRibbonRes.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\TRAPI.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\spopk.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\schedcli.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\repair-bde.exe
2013-09-18 14:11:48 ----A---- C:\Windows\system32\RDPENCDD.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\odbcconf.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\manage-bde.exe
2013-09-18 14:11:48 ----A---- C:\Windows\system32\inetmib1.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\FXSMON.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\fixmapi.exe
2013-09-18 14:11:48 ----A---- C:\Windows\system32\elsTrans.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\drivers\dfsc.sys
2013-09-18 14:11:47 ----A---- C:\Windows\SYSWOW64\perfts.dll
2013-09-18 14:11:47 ----A---- C:\Windows\SYSWOW64\imm32.dll
2013-09-18 14:11:47 ----A---- C:\Windows\system32\wshbth.dll
2013-09-18 14:11:47 ----A---- C:\Windows\system32\napdsnap.dll
2013-09-18 14:11:47 ----A---- C:\Windows\system32\LogonUI.exe
2013-09-18 14:11:47 ----A---- C:\Windows\system32\dsauth.dll
2013-09-18 14:11:47 ----A---- C:\Windows\system32\drivers\tdi.sys
2013-09-18 14:11:46 ----A---- C:\Windows\SYSWOW64\TRAPI.dll
2013-09-18 14:11:46 ----A---- C:\Windows\SYSWOW64\elsTrans.dll
2013-09-18 14:11:46 ----A---- C:\Windows\SYSWOW64\bitsperf.dll
2013-09-18 14:11:46 ----A---- C:\Windows\system32\rdprefdrvapi.dll
2013-09-18 14:11:46 ----A---- C:\Windows\system32\FXSUNATD.exe
2013-09-18 14:11:46 ----A---- C:\Windows\system32\cscdll.dll
2013-09-18 14:11:46 ----A---- C:\Windows\system32\bitsperf.dll
2013-09-18 14:11:44 ----A---- C:\Windows\SYSWOW64\wshbth.dll
2013-09-18 14:11:44 ----A---- C:\Windows\SYSWOW64\schedcli.dll
2013-09-18 14:11:44 ----A---- C:\Windows\SYSWOW64\napdsnap.dll
2013-09-18 14:11:44 ----A---- C:\Windows\SYSWOW64\dsauth.dll
2013-09-18 14:11:44 ----A---- C:\Windows\SYSWOW64\cscdll.dll
2013-09-18 14:11:44 ----A---- C:\Windows\system32\drivers\usbrpm.sys
2013-09-18 14:11:44 ----A---- C:\Windows\system32\drivers\acpipmi.sys
2013-09-18 14:11:43 ----A---- C:\Windows\SYSWOW64\sscore.dll
2013-09-18 14:11:43 ----A---- C:\Windows\system32\wsdchngr.dll
2013-09-18 14:11:43 ----A---- C:\Windows\system32\shgina.dll
2013-09-18 14:11:42 ----A---- C:\Windows\SYSWOW64\wsdchngr.dll
2013-09-18 14:11:42 ----A---- C:\Windows\SYSWOW64\shgina.dll
2013-09-18 14:11:42 ----A---- C:\Windows\SYSWOW64\riched32.dll
2013-09-18 14:11:42 ----A---- C:\Windows\system32\drivers\USBCAMD2.sys
2013-09-18 14:11:41 ----A---- C:\Windows\system32\wshirda.dll
2013-09-18 14:11:41 ----A---- C:\Windows\system32\drivers\CompositeBus.sys
2013-09-18 14:11:40 ----A---- C:\Windows\SYSWOW64\wshirda.dll
2013-09-18 14:11:40 ----A---- C:\Windows\system32\rdpcfgex.dll
2013-09-18 14:11:40 ----A---- C:\Windows\system32\drivers\hidusb.sys
2013-09-18 14:11:40 ----A---- C:\Windows\system32\drivers\appid.sys
2013-09-18 14:11:39 ----A---- C:\Windows\system32\spwmp.dll
2013-09-18 14:11:39 ----A---- C:\Windows\system32\riched32.dll
2013-09-18 14:11:39 ----A---- C:\Windows\system32\drivers\kbdhid.sys
2013-09-18 14:11:39 ----A---- C:\Windows\system32\drivers\IPMIDrv.sys
2013-09-18 14:11:39 ----A---- C:\Windows\system32\browseui.dll
2013-09-18 14:11:38 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2013-09-18 14:11:38 ----A---- C:\Windows\SYSWOW64\C_ISCII.DLL
2013-09-18 14:11:38 ----A---- C:\Windows\SYSWOW64\browseui.dll
2013-09-18 14:11:38 ----A---- C:\Windows\system32\drivers\HdAudio.sys
2013-09-18 14:11:38 ----A---- C:\Windows\system32\drivers\cdrom.sys
2013-09-18 14:11:38 ----A---- C:\Windows\system32\C_ISCII.DLL
2013-09-18 14:11:37 ----AH---- C:\Windows\system32\api-ms-win-core-ums-l1-1-0.dll
2013-09-18 14:11:37 ----A---- C:\Windows\SYSWOW64\shunimpl.dll
2013-09-18 14:11:37 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2013-09-18 14:11:37 ----A---- C:\Windows\system32\shunimpl.dll
2013-09-18 14:11:37 ----A---- C:\Windows\system32\dxmasf.dll
2013-09-18 14:11:37 ----A---- C:\Windows\system32\drivers\sffp_sd.sys
2013-09-18 14:11:37 ----A---- C:\Windows\system32\drivers\scfilter.sys
2013-09-18 14:11:37 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2013-09-18 14:11:36 ----A---- C:\Windows\SYSWOW64\KBDTUF.DLL
2013-09-18 14:11:36 ----A---- C:\Windows\SYSWOW64\KBDSG.DLL
2013-09-18 14:11:36 ----A---- C:\Windows\SYSWOW64\kbdlk41a.dll
2013-09-18 14:11:36 ----A---- C:\Windows\SYSWOW64\KBDGR1.DLL
2013-09-18 14:11:36 ----A---- C:\Windows\system32\KBDTUF.DLL
2013-09-18 14:11:36 ----A---- C:\Windows\system32\KBDSF.DLL
2013-09-18 14:11:36 ----A---- C:\Windows\system32\KBDPO.DLL
2013-09-18 14:11:36 ----A---- C:\Windows\system32\KBDINTAM.DLL
2013-09-18 14:11:36 ----A---- C:\Windows\system32\KBDINBEN.DLL
2013-09-18 14:11:35 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2013-09-18 14:11:35 ----A---- C:\Windows\SYSWOW64\KBDTUQ.DLL
2013-09-18 14:11:35 ----A---- C:\Windows\SYSWOW64\KBDGKL.DLL
2013-09-18 14:11:35 ----A---- C:\Windows\system32\wmploc.DLL
2013-09-18 14:11:35 ----A---- C:\Windows\system32\KBDTUQ.DLL
2013-09-18 14:11:35 ----A---- C:\Windows\system32\KBDSG.DLL
2013-09-18 14:11:35 ----A---- C:\Windows\system32\KBDNEPR.DLL
2013-09-18 14:11:35 ----A---- C:\Windows\system32\kbdlk41a.dll
2013-09-18 14:11:35 ----A---- C:\Windows\system32\KBDGR1.DLL
2013-09-18 14:11:35 ----A---- C:\Windows\system32\KBDGKL.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\SYSWOW64\KBDUS.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\SYSWOW64\KBDTURME.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\SYSWOW64\KBDTAJIK.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\SYSWOW64\KBDMON.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\SYSWOW64\KBDINTEL.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\SYSWOW64\KBDINHIN.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\SYSWOW64\KBDGEO.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\SYSWOW64\KBDCZ1.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\SYSWOW64\KBDBLR.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\system32\KBDGEO.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\system32\KBDCZ1.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\SYSWOW64\KBDUGHR1.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\SYSWOW64\KBDMAORI.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\SYSWOW64\KBDLT1.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\SYSWOW64\KBDINTAM.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\SYSWOW64\KBDINORI.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\SYSWOW64\KBDINMAR.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\SYSWOW64\KBDINKAN.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\SYSWOW64\KBDINBEN.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\system32\KBDUS.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\system32\KBDUGHR1.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\system32\KBDTAJIK.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\system32\KBDMON.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\system32\KBDLT1.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\SYSWOW64\KBDSF.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\SYSWOW64\KBDPO.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\SYSWOW64\KBDNEPR.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\SYSWOW64\KBDBULG.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\SYSWOW64\KBDBASH.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\system32\KBDTURME.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\system32\KBDMAORI.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\system32\KBDINTEL.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\system32\KBDINORI.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\system32\KBDINMAR.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\system32\KBDINKAN.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\system32\KBDINHIN.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\system32\KBDBULG.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\system32\KBDBLR.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\system32\KBDBASH.DLL
2013-09-18 14:11:31 ----A---- C:\Windows\SYSWOW64\spwizres.dll
2013-09-18 14:11:31 ----A---- C:\Windows\SYSWOW64\pifmgr.dll
2013-09-18 14:11:31 ----A---- C:\Windows\SYSWOW64\nlsbres.dll
2013-09-18 14:11:31 ----A---- C:\Windows\system32\spwizres.dll
2013-09-18 14:11:31 ----A---- C:\Windows\system32\pifmgr.dll
2013-09-18 14:11:31 ----A---- C:\Windows\system32\nlsbres.dll
2013-09-18 14:11:31 ----A---- C:\Windows\system32\BlbEvents.dll
2013-09-18 14:11:23 ----A---- C:\Windows\SYSWOW64\wdscore.dll
2013-09-18 14:11:23 ----A---- C:\Windows\system32\dpx.dll
2013-09-18 14:11:19 ----A---- C:\Windows\SYSWOW64\sqmapi.dll
2013-09-18 14:11:08 ----A---- C:\Windows\SYSWOW64\wbemcomn.dll
2013-09-18 14:09:52 ----A---- C:\Windows\system32\wbemcomn.dll
2013-09-18 14:09:46 ----A---- C:\Windows\system32\sqmapi.dll
2013-09-18 13:47:46 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2013-09-18 13:47:46 ----A---- C:\Windows\system32\drivers\usbport.sys
2013-09-18 13:47:46 ----A---- C:\Windows\system32\drivers\usbohci.sys
2013-09-18 13:47:46 ----A---- C:\Windows\system32\drivers\usbhub.sys
2013-09-18 13:47:46 ----A---- C:\Windows\system32\drivers\usbehci.sys
2013-09-18 13:47:46 ----A---- C:\Windows\system32\drivers\usbd.sys
2013-09-18 13:47:46 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2013-09-18 13:47:41 ----A---- C:\Windows\SYSWOW64\fsutil.exe
2013-09-18 13:47:41 ----A---- C:\Windows\SYSWOW64\esent.dll
2013-09-18 13:47:41 ----A---- C:\Windows\system32\fsutil.exe
2013-09-18 13:47:41 ----A---- C:\Windows\system32\esent.dll
2013-09-18 13:47:41 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2013-09-18 13:47:41 ----A---- C:\Windows\system32\drivers\storport.sys
2013-09-18 13:47:41 ----A---- C:\Windows\system32\drivers\nvstor.sys
2013-09-18 13:47:41 ----A---- C:\Windows\system32\drivers\nvraid.sys
2013-09-18 13:47:41 ----A---- C:\Windows\system32\drivers\iaStorV.sys
2013-09-18 13:47:41 ----A---- C:\Windows\system32\drivers\amdxata.sys
2013-09-18 13:47:41 ----A---- C:\Windows\system32\drivers\amdsata.sys
2013-09-18 13:35:29 ----D---- C:\Program Files (x86)\Microsoft Works
2013-09-18 13:35:07 ----D---- C:\Windows\PCHEALTH
2013-09-18 13:31:15 ----D---- C:\Program Files\Microsoft Office
2013-09-18 13:30:20 ----D---- C:\ProgramData\Microsoft Help
2013-09-18 13:29:45 ----RD---- C:\MSOCache
2013-09-18 11:54:53 ----D---- C:\Download
2013-09-18 11:01:18 ----D---- C:\Windows\SYSWOW64\Wat
2013-09-18 11:01:18 ----D---- C:\Windows\system32\Wat
2013-09-18 09:32:14 ----A---- C:\Windows\ntbtlog.txt
2013-09-18 09:19:44 ----D---- C:\Windows\Minidump
2013-09-18 08:31:45 ----D---- C:\Windows\system32\MRT
2013-09-18 08:31:40 ----A---- C:\Windows\system32\MRT.exe
2013-09-18 08:10:41 ----A---- C:\Windows\system32\RTNUninst64.dll
2013-09-18 08:10:41 ----A---- C:\Windows\system32\RtNicProp64.dll
2013-09-18 08:10:41 ----A---- C:\Windows\system32\drivers\Rt64win7.sys
2013-09-18 08:10:38 ----D---- C:\Program Files (x86)\Realtek
2013-09-18 08:09:49 ----A---- C:\Windows\system32\drivers\avgtpx64.sys
2013-09-18 08:09:35 ----D---- C:\ProgramData\AVG SafeGuard toolbar
2013-09-18 08:09:32 ----D---- C:\Program Files (x86)\AVG SafeGuard toolbar
2013-09-18 08:09:31 ----A---- C:\Windows\system32\Wdfres.dll
2013-09-18 08:09:31 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2013-09-18 08:09:31 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2013-09-18 08:08:37 ----A---- C:\Windows\system32\drivers\SWDUMon.sys
2013-09-18 08:08:25 ----HD---- C:\ProgramData\Common Files
2013-09-18 08:08:14 ----D---- C:\Program Files (x86)\SlimDrivers
2013-09-18 07:56:49 ----A---- C:\Windows\system32\browserchoice.exe
2013-09-18 07:40:50 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2013-09-18 07:40:50 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2013-09-18 07:40:50 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2013-09-18 07:40:50 ----A---- C:\Windows\system32\fontsub.dll
2013-09-18 07:40:50 ----A---- C:\Windows\system32\atmlib.dll
2013-09-18 07:40:50 ----A---- C:\Windows\system32\atmfd.dll
2013-09-18 07:39:17 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2013-09-18 07:39:17 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2013-09-18 07:39:16 ----A---- C:\Windows\system32\WUDFx.dll
2013-09-18 07:39:16 ----A---- C:\Windows\system32\WUDFSvc.dll
2013-09-18 07:39:16 ----A---- C:\Windows\system32\WUDFPlatform.dll
2013-09-18 07:39:16 ----A---- C:\Windows\system32\WUDFHost.exe
2013-09-18 07:39:16 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2013-09-18 07:35:33 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2013-09-18 07:35:33 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2013-09-18 07:35:24 ----D---- C:\Program Files (x86)\Winamp Detect
2013-09-18 07:35:08 ----D---- C:\Users\Kuba\AppData\Roaming\Winamp
2013-09-18 07:35:08 ----D---- C:\Program Files (x86)\Winamp
2013-09-18 07:33:25 ----D---- C:\Users\Kuba\AppData\Roaming\MiniLyrics
2013-09-18 07:33:00 ----A---- C:\Windows\SYSWOW64\wmi.dll
2013-09-18 07:33:00 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2013-09-18 07:33:00 ----A---- C:\Windows\system32\wmi.dll
2013-09-18 07:33:00 ----A---- C:\Windows\system32\imagehlp.dll
2013-09-18 07:33:00 ----A---- C:\Windows\system32\drivers\fs_rec.sys
2013-09-18 07:10:00 ----D---- C:\rsit
2013-09-18 07:10:00 ----D---- C:\Program Files\trend micro
2013-09-18 06:08:51 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-09-18 06:08:50 ----D---- C:\Windows\SYSWOW64\Macromed
2013-09-18 06:08:48 ----D---- C:\Windows\system32\Macromed
2013-09-18 05:48:01 ----D---- C:\ProgramData\Spybot - Search & Destroy
2013-09-18 05:47:41 ----A---- C:\Windows\system32\sdnclean64.exe
2013-09-18 05:47:37 ----D---- C:\Program Files (x86)\Spybot - Search & Destroy 2
2013-09-18 05:45:43 ----D---- C:\Program Files\CCleaner
2013-09-18 05:21:43 ----A---- C:\Windows\SYSWOW64\xmllite.dll
2013-09-18 05:21:43 ----A---- C:\Windows\system32\xmllite.dll
2013-09-18 05:21:41 ----A---- C:\Windows\SYSWOW64\odbctrac.dll
2013-09-18 05:21:41 ----A---- C:\Windows\SYSWOW64\odbcjt32.dll
2013-09-18 05:21:41 ----A---- C:\Windows\SYSWOW64\odbccu32.dll
2013-09-18 05:21:41 ----A---- C:\Windows\SYSWOW64\odbccr32.dll
2013-09-18 05:21:41 ----A---- C:\Windows\SYSWOW64\odbccp32.dll
2013-09-18 05:21:41 ----A---- C:\Windows\system32\odbctrac.dll
2013-09-18 05:21:41 ----A---- C:\Windows\system32\odbccu32.dll
2013-09-18 05:21:41 ----A---- C:\Windows\system32\odbccr32.dll
2013-09-18 05:21:41 ----A---- C:\Windows\system32\odbccp32.dll
2013-09-18 05:21:23 ----A---- C:\Windows\system32\poqexec.exe
2013-09-18 05:21:22 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2013-09-18 05:21:18 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2013-09-18 05:21:18 ----A---- C:\Windows\system32\mstscax.dll
2013-09-18 05:21:17 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2013-09-18 05:21:17 ----A---- C:\Windows\SYSWOW64\aaclient.dll
2013-09-18 05:21:17 ----A---- C:\Windows\system32\tsgqec.dll
2013-09-18 05:21:17 ----A---- C:\Windows\system32\aaclient.dll
2013-09-18 05:20:59 ----A---- C:\Windows\SYSWOW64\explorer.exe
2013-09-18 05:20:59 ----A---- C:\Windows\explorer.exe
2013-09-18 05:20:46 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2013-09-18 05:20:46 ----A---- C:\Windows\system32\sbe.dll
2013-09-18 05:20:46 ----A---- C:\Windows\system32\CPFilters.dll
2013-09-18 05:20:45 ----A---- C:\Windows\SYSWOW64\sbe.dll
2013-09-18 05:20:17 ----A---- C:\Windows\system32\quartz.dll
2013-09-18 05:20:16 ----A---- C:\Windows\SYSWOW64\quartz.dll
2013-09-18 05:20:16 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2013-09-18 05:20:16 ----A---- C:\Windows\system32\qdvd.dll
2013-09-18 05:20:08 ----A---- C:\Windows\SYSWOW64\ntshrui.dll
2013-09-18 05:20:08 ----A---- C:\Windows\system32\ntshrui.dll
2013-09-18 05:19:57 ----A---- C:\Windows\system32\tquery.dll
2013-09-18 05:19:56 ----A---- C:\Windows\SYSWOW64\tquery.dll
2013-09-18 05:19:56 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2013-09-18 05:19:56 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2013-09-18 05:19:56 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2013-09-18 05:19:56 ----A---- C:\Windows\SYSWOW64\mssph.dll
2013-09-18 05:19:56 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2013-09-18 05:19:56 ----A---- C:\Windows\system32\SearchIndexer.exe
2013-09-18 05:19:56 ----A---- C:\Windows\system32\mssvp.dll
2013-09-18 05:19:56 ----A---- C:\Windows\system32\mssrch.dll
2013-09-18 05:19:55 ----A---- C:\Windows\SYSWOW64\SearchFilterHost.exe
2013-09-18 05:19:55 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2013-09-18 05:19:55 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2013-09-18 05:19:55 ----A---- C:\Windows\system32\SearchFilterHost.exe
2013-09-18 05:19:55 ----A---- C:\Windows\system32\mssphtb.dll
2013-09-18 05:19:55 ----A---- C:\Windows\system32\mssph.dll
2013-09-18 05:19:55 ----A---- C:\Windows\system32\msscntrs.dll
2013-09-18 05:19:54 ----A---- C:\Windows\SYSWOW64\msscntrs.dll
2013-09-18 05:19:51 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2013-09-18 05:19:51 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2013-09-18 05:19:51 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2013-09-18 05:19:45 ----A---- C:\Windows\SYSWOW64\webio.dll
2013-09-18 05:19:45 ----A---- C:\Windows\system32\webio.dll
2013-09-18 05:19:15 ----A---- C:\Windows\system32\drivers\ntfs.sys
2013-09-18 05:18:53 ----A---- C:\Windows\SYSWOW64\mfc42u.dll
2013-09-18 05:18:53 ----A---- C:\Windows\SYSWOW64\mfc42.dll
2013-09-18 05:18:53 ----A---- C:\Windows\system32\mfc42u.dll
2013-09-18 05:18:53 ----A---- C:\Windows\system32\mfc42.dll
2013-09-18 05:18:45 ----A---- C:\Windows\system32\drivers\usb8023.sys
2013-09-18 05:18:44 ----A---- C:\Windows\system32\rdrmemptylst.exe
2013-09-18 05:18:44 ----A---- C:\Windows\system32\rdpwsx.dll
2013-09-18 05:18:44 ----A---- C:\Windows\system32\rdpcorekmts.dll
2013-09-18 05:18:43 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2013-09-18 05:18:43 ----A---- C:\Windows\SYSWOW64\schannel.dll
2013-09-18 05:18:43 ----A---- C:\Windows\SYSWOW64\secur32.dll
2013-09-18 05:18:43 ----A---- C:\Windows\system32\sspisrv.dll
2013-09-18 05:18:43 ----A---- C:\Windows\system32\sspicli.dll
2013-09-18 05:18:43 ----A---- C:\Windows\system32\schannel.dll
2013-09-18 05:18:43 ----A---- C:\Windows\system32\secur32.dll
2013-09-18 05:18:43 ----A---- C:\Windows\system32\lsass.exe
2013-09-18 05:18:43 ----A---- C:\Windows\system32\lsasrv.dll
2013-09-18 05:18:43 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2013-09-18 05:18:43 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2013-09-18 05:18:43 ----A---- C:\Windows\system32\drivers\cng.sys
2013-09-18 05:18:30 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2013-09-18 05:18:30 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2013-09-18 05:18:30 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2013-09-18 05:18:30 ----A---- C:\Windows\system32\msxml6.dll
2013-09-18 05:18:30 ----A---- C:\Windows\system32\msxml3r.dll
2013-09-18 05:18:30 ----A---- C:\Windows\system32\msxml3.dll
2013-09-18 05:18:29 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2013-09-18 05:18:27 ----A---- C:\Windows\system32\profsvc.dll
2013-09-18 05:18:27 ----A---- C:\Windows\system32\profprov.dll
2013-09-18 05:18:24 ----A---- C:\Windows\SYSWOW64\dnscacheugc.exe
2013-09-18 05:18:24 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2013-09-18 05:18:24 ----A---- C:\Windows\system32\dnsrslvr.dll
2013-09-18 05:18:24 ----A---- C:\Windows\system32\dnscacheugc.exe
2013-09-18 05:18:24 ----A---- C:\Windows\system32\dnsapi.dll
2013-09-18 05:18:01 ----A---- C:\Windows\SYSWOW64\dpnet.dll
2013-09-18 05:18:01 ----A---- C:\Windows\SYSWOW64\dpnaddr.dll
2013-09-18 05:18:01 ----A---- C:\Windows\system32\dpnet.dll
2013-09-18 05:18:01 ----A---- C:\Windows\system32\dpnaddr.dll
2013-09-18 05:18:00 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2013-09-18 05:18:00 ----A---- C:\Windows\system32\ncrypt.dll
2013-09-18 05:17:45 ----A---- C:\Windows\SYSWOW64\usp10.dll
2013-09-18 05:17:45 ----A---- C:\Windows\system32\usp10.dll
2013-09-18 05:17:45 ----A---- C:\Windows\system32\drivers\srvnet.sys
2013-09-18 05:17:45 ----A---- C:\Windows\system32\drivers\srv2.sys
2013-09-18 05:17:45 ----A---- C:\Windows\system32\drivers\srv.sys
2013-09-18 05:17:43 ----A---- C:\Windows\system32\drivers\netio.sys
2013-09-18 05:17:43 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2013-09-18 05:17:37 ----A---- C:\Windows\SYSWOW64\gameux.dll
2013-09-18 05:17:37 ----A---- C:\Windows\system32\Wpc.dll
2013-09-18 05:17:37 ----A---- C:\Windows\system32\gameux.dll
2013-09-18 05:17:36 ----A---- C:\Windows\SYSWOW64\Wpc.dll
2013-09-18 05:17:23 ----A---- C:\Windows\SYSWOW64\psisdecd.dll
2013-09-18 05:17:23 ----A---- C:\Windows\system32\psisdecd.dll
2013-09-18 05:17:14 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2013-09-18 05:17:06 ----A---- C:\Windows\system32\drivers\afd.sys
2013-09-18 05:17:05 ----A---- C:\Windows\system32\drivers\partmgr.sys
2013-09-18 05:17:02 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2013-09-18 05:17:02 ----A---- C:\Windows\system32\kerberos.dll
2013-09-18 05:16:57 ----A---- C:\Windows\SYSWOW64\msi.dll
2013-09-18 05:16:57 ----A---- C:\Windows\system32\msi.dll
2013-09-18 05:16:24 ----A---- C:\Windows\SYSWOW64\synceng.dll
2013-09-18 05:16:24 ----A---- C:\Windows\system32\synceng.dll
2013-09-18 05:16:23 ----A---- C:\Windows\system32\winresume.exe
2013-09-18 05:16:23 ----A---- C:\Windows\system32\winload.exe
2013-09-18 05:16:22 ----A---- C:\Windows\system32\setbcdlocale.dll
2013-09-18 05:16:22 ----A---- C:\Windows\system32\kdusb.dll
2013-09-18 05:16:22 ----A---- C:\Windows\system32\kdcom.dll
2013-09-18 05:16:22 ----A---- C:\Windows\system32\kd1394.dll
2013-09-18 05:15:22 ----A---- C:\Windows\system32\umpnpmgr.dll
2013-09-18 05:15:21 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2013-09-18 05:15:21 ----A---- C:\Windows\SYSWOW64\devrtl.dll
2013-09-18 05:15:21 ----A---- C:\Windows\SYSWOW64\devobj.dll
2013-09-18 05:15:21 ----A---- C:\Windows\SYSWOW64\cfgmgr32.dll
2013-09-18 05:15:21 ----A---- C:\Windows\system32\cfgmgr32.dll
2013-09-18 05:15:14 ----A---- C:\Windows\system32\netapi32.dll
2013-09-18 05:15:14 ----A---- C:\Windows\system32\browser.dll
2013-09-18 05:15:14 ----A---- C:\Windows\system32\browcli.dll
2013-09-18 05:15:13 ----A---- C:\Windows\SYSWOW64\netapi32.dll
2013-09-18 05:15:13 ----A---- C:\Windows\SYSWOW64\browcli.dll
2013-09-18 05:15:02 ----A---- C:\Windows\SYSWOW64\prevhost.exe
2013-09-18 05:15:02 ----A---- C:\Windows\system32\prevhost.exe
2013-09-18 05:15:00 ----A---- C:\Windows\system32\drivers\fvevol.sys
2013-09-18 05:14:55 ----A---- C:\Windows\SYSWOW64\srclient.dll
2013-09-18 05:14:55 ----A---- C:\Windows\system32\srcore.dll
2013-09-18 05:14:55 ----A---- C:\Windows\system32\rstrui.exe
2013-09-18 05:14:51 ----A---- C:\Windows\system32\WFS.exe
2013-09-18 05:14:51 ----A---- C:\Windows\system32\FXSCOVER.exe
2013-09-18 05:14:48 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2013-09-18 05:14:48 ----A---- C:\Windows\system32\inetcomm.dll
2013-09-18 05:14:46 ----A---- C:\Windows\system32\msvcrt.dll
2013-09-18 05:14:45 ----A---- C:\Windows\SYSWOW64\msvcrt.dll
2013-09-18 05:14:34 ----A---- C:\Windows\system32\localspl.dll
2013-09-18 05:14:28 ----A---- C:\Windows\system32\drivers\bowser.sys
2013-09-18 05:14:22 ----A---- C:\Windows\SYSWOW64\oleacc.dll
2013-09-18 05:14:22 ----A---- C:\Windows\system32\oleaut32.dll
2013-09-18 05:14:22 ----A---- C:\Windows\system32\oleacc.dll
2013-09-18 05:14:21 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2013-09-18 05:14:13 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2013-09-18 05:14:13 ----A---- C:\Windows\system32\EncDec.dll
2013-09-18 05:13:50 ----A---- C:\Windows\SYSWOW64\cdosys.dll
2013-09-18 05:13:50 ----A---- C:\Windows\system32\cdosys.dll
2013-09-18 05:13:24 ----D---- C:\ProgramData\Razer
2013-09-18 05:13:24 ----D---- C:\Program Files (x86)\Razer
2013-09-18 05:13:09 ----A---- C:\Windows\system32\spoolsv.exe
2013-09-18 05:13:09 ----A---- C:\Windows\splwow64.exe
2013-09-18 05:06:14 ----D---- C:\Program Files\Common Files\Symantec Shared
2013-09-18 05:06:14 ----A---- C:\Windows\system32\drivers\SYMEVENT64x86.SYS
2013-09-18 05:05:25 ----D---- C:\Windows\system32\drivers\NISx64
2013-09-18 05:05:23 ----D---- C:\Program Files (x86)\Norton Internet Security
2013-09-18 05:05:22 ----D---- C:\ProgramData\Norton
2013-09-18 05:03:18 ----D---- C:\ProgramData\NortonInstaller
2013-09-18 05:03:18 ----D---- C:\Program Files (x86)\NortonInstaller
2013-09-18 04:56:54 ----A---- C:\Windows\SYSWOW64\packager.dll
2013-09-18 04:56:54 ----A---- C:\Windows\system32\packager.dll
2013-09-18 04:54:15 ----D---- C:\Program Files (x86)\AGEIA Technologies
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvopencl.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvoglv64.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\NvIFR64.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\NvFBC64.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvdispgenco6432049.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvdispco6432049.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvd3dumx.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvcuvid.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvcuvenc.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvcuda.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvcompiler.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2013-09-17 22:36:14 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2013-09-17 22:34:45 ----D---- C:\Program Files (x86)\Microsoft.NET
2013-09-17 22:33:14 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2013-09-17 22:33:01 ----N---- C:\Windows\Vmix108.dll
2013-09-17 22:33:01 ----N---- C:\Windows\SYSWOW64\cmpa108.dll
2013-09-17 22:33:01 ----N---- C:\Windows\SYSWOW64\CM108.dll
2013-09-17 22:33:01 ----N---- C:\Windows\system32\Cmeau108.exe
2013-09-17 22:32:41 ----N---- C:\Windows\system32\CmiInstallResAll64.dll
2013-09-17 22:32:41 ----N---- C:\Windows\cm108.ini
2013-09-17 22:32:41 ----A---- C:\Windows\difxapi.dll
2013-09-17 22:32:04 ----A---- C:\Windows\system32\drivers\CM10864.sys
2013-09-17 22:27:24 ----D---- C:\Users\Kuba\AppData\Roaming\LolClient
2013-09-17 22:27:22 ----D---- C:\Users\Kuba\AppData\Roaming\Macromedia
2013-09-17 22:27:21 ----D---- C:\Users\Kuba\AppData\Roaming\Adobe
2013-09-17 22:19:22 ----D---- C:\Windows\Panther
2013-09-17 21:49:15 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2013-09-17 21:49:15 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2013-09-17 21:49:15 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2013-09-17 21:49:15 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2013-09-17 21:49:14 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2013-09-17 21:47:41 ----SHD---- C:\Windows\SYSWOW64\AI_RecycleBin
2013-09-17 21:46:17 ----N---- C:\Windows\system32\MpSigStub.exe
2013-09-17 21:45:24 ----D---- C:\ProgramData\PMB Files
2013-09-17 21:45:22 ----D---- C:\Program Files (x86)\Pando Networks
2013-09-17 21:44:46 ----D---- C:\Users\Kuba\AppData\Roaming\Riot Games
2013-09-17 21:41:27 ----D---- C:\Users\Kuba\AppData\Roaming\Skype
2013-09-17 21:41:24 ----RD---- C:\Program Files (x86)\Skype
2013-09-17 21:41:20 ----SHD---- C:\Windows\Installer
2013-09-17 21:41:20 ----D---- C:\ProgramData\Skype
2013-09-17 21:39:32 ----D---- C:\Users\Kuba\AppData\Roaming\Mozilla
2013-09-17 21:39:25 ----D---- C:\ProgramData\Mozilla
2013-09-17 21:39:25 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2013-09-17 21:36:32 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2013-09-17 21:36:29 ----D---- C:\ProgramData\NVIDIA
2013-09-17 21:36:25 ----A---- C:\Windows\system32\nvvsvc.exe
2013-09-17 21:36:25 ----A---- C:\Windows\system32\nvsvcr.dll
2013-09-17 21:36:25 ----A---- C:\Windows\system32\nvsvc64.dll
2013-09-17 21:36:25 ----A---- C:\Windows\system32\nvshext.dll
2013-09-17 21:36:25 ----A---- C:\Windows\system32\nvmctray.dll
2013-09-17 21:36:25 ----A---- C:\Windows\system32\nvcpl.dll
2013-09-17 21:36:11 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2013-09-17 21:36:11 ----A---- C:\Windows\system32\OpenCL.dll
2013-09-17 21:35:53 ----D---- C:\ProgramData\NVIDIA Corporation
2013-09-17 21:35:49 ----D---- C:\Program Files\NVIDIA Corporation
2013-09-17 21:35:46 ----D---- C:\Users\Kuba\AppData\Roaming\GHISLER
2013-09-17 21:35:19 ----D---- C:\Programy
2013-09-17 21:34:33 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2013-09-17 21:34:33 ----A---- C:\Windows\system32\rdpcore.dll
2013-09-17 21:34:33 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2013-09-17 21:31:17 ----A---- C:\Windows\system32\wups2.dll
2013-09-17 21:31:17 ----A---- C:\Windows\system32\wucltux.dll
2013-09-17 21:31:17 ----A---- C:\Windows\system32\wuauclt.exe
2013-09-17 21:31:16 ----A---- C:\Windows\system32\wuaueng.dll
2013-09-17 21:31:09 ----A---- C:\Windows\system32\wups.dll
2013-09-17 21:31:09 ----A---- C:\Windows\system32\wudriver.dll
2013-09-17 21:31:09 ----A---- C:\Windows\system32\wuapi.dll
2013-09-17 21:30:57 ----A---- C:\Windows\system32\wuwebv.dll
2013-09-17 21:30:57 ----A---- C:\Windows\system32\wuapp.exe
2013-09-17 21:30:45 ----D---- C:\Users\Kuba\AppData\Roaming\Identities
2013-09-17 21:30:38 ----SD---- C:\Users\Kuba\AppData\Roaming\Microsoft
2013-09-17 21:30:38 ----D---- C:\Users\Kuba\AppData\Roaming\Media Center Programs
2013-09-17 21:30:27 ----SHD---- C:\ProgramData\Šablony
2013-09-17 21:30:27 ----SHD---- C:\ProgramData\Plocha
2013-09-17 21:30:27 ----SHD---- C:\ProgramData\Oblíbené položky
2013-09-17 21:30:27 ----SHD---- C:\ProgramData\Nabídka Start
2013-09-17 21:30:27 ----SHD---- C:\ProgramData\Dokumenty
2013-09-17 21:30:27 ----SHD---- C:\ProgramData\Data aplikací
2013-09-17 21:30:27 ----D---- C:\Recovery
2013-09-17 21:30:24 ----D---- C:\Windows\SoftwareDistribution
2013-09-17 21:20:24 ----D---- C:\Windows\Prefetch
2013-09-17 21:20:10 ----ASH---- C:\pagefile.sys
2013-09-17 21:20:09 ----SHD---- C:\System Volume Information
2013-09-17 21:20:09 ----ASH---- C:\hiberfil.sys
2013-08-29 06:29:54 ----A---- C:\Windows\SYSWOW64\rzdevicedll.dll
2013-08-21 09:34:32 ----A---- C:\Windows\system32\drivers\rzudd.sys
======List of files/folders modified in the last 1 month======
2013-09-20 03:35:22 ----D---- C:\Windows\Temp
2013-09-20 03:00:46 ----D---- C:\Windows\winsxs
2013-09-20 03:00:25 ----D---- C:\Windows\system32\config
2013-09-19 23:44:23 ----D---- C:\Windows\rescache
2013-09-19 23:43:56 ----D---- C:\Windows\Logs
2013-09-19 19:49:36 ----D---- C:\Windows\System32
2013-09-19 19:49:36 ----D---- C:\Windows\inf
2013-09-19 19:49:36 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-09-19 19:48:13 ----SD---- C:\ProgramData\Microsoft
2013-09-18 14:12:30 ----A---- C:\Windows\SYSWOW64\basecsp.dll
2013-09-18 14:12:30 ----A---- C:\Windows\system32\XpsRasterService.dll
2013-09-18 14:12:30 ----A---- C:\Windows\system32\wisptis.exe
2013-09-18 14:12:30 ----A---- C:\Windows\system32\wiaservc.dll
2013-09-18 14:12:30 ----A---- C:\Windows\system32\vds.exe
2013-09-18 14:12:30 ----A---- C:\Windows\system32\rpchttp.dll
2013-09-18 14:12:30 ----A---- C:\Windows\system32\PkgMgr.exe
2013-09-18 14:12:30 ----A---- C:\Windows\system32\mscms.dll
2013-09-18 14:12:30 ----A---- C:\Windows\system32\FirewallControlPanel.dll
2013-09-18 14:12:30 ----A---- C:\Windows\system32\drivers\rasl2tp.sys
2013-09-18 14:12:30 ----A---- C:\Windows\system32\drivers\pci.sys
2013-09-18 14:12:29 ----A---- C:\Windows\SYSWOW64\WinSATAPI.dll
2013-09-18 14:12:29 ----A---- C:\Windows\SYSWOW64\taskcomp.dll
2013-09-18 14:12:29 ----A---- C:\Windows\SYSWOW64\evr.dll
2013-09-18 14:12:29 ----A---- C:\Windows\SYSWOW64\calc.exe
2013-09-18 14:12:29 ----A---- C:\Windows\system32\sppwinob.dll
2013-09-18 14:12:29 ----A---- C:\Windows\system32\ocsetup.exe
2013-09-18 14:12:29 ----A---- C:\Windows\system32\ocsetapi.dll
2013-09-18 14:12:29 ----A---- C:\Windows\system32\DXP.dll
2013-09-18 14:12:29 ----A---- C:\Windows\system32\drivers\volmgr.sys
2013-09-18 14:12:29 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2013-09-18 14:12:28 ----A---- C:\Windows\SYSWOW64\UIRibbon.dll
2013-09-18 14:12:28 ----A---- C:\Windows\SYSWOW64\sqlsrv32.dll
2013-09-18 14:12:28 ----A---- C:\Windows\system32\wpdbusenum.dll
2013-09-18 14:12:28 ----A---- C:\Windows\system32\wcncsvc.dll
2013-09-18 14:12:28 ----A---- C:\Windows\system32\upnp.dll
2013-09-18 14:12:28 ----A---- C:\Windows\system32\t2embed.dll
2013-09-18 14:12:28 ----A---- C:\Windows\system32\Robocopy.exe
2013-09-18 14:12:28 ----A---- C:\Windows\system32\mprapi.dll
2013-09-18 14:12:28 ----A---- C:\Windows\system32\eapphost.dll
2013-09-18 14:12:28 ----A---- C:\Windows\system32\eapp3hst.dll
2013-09-18 14:12:28 ----A---- C:\Windows\system32\drivers\msdsm.sys
2013-09-18 14:12:28 ----A---- C:\Windows\system32\drivers\HpSAMD.sys
2013-09-18 14:12:28 ----A---- C:\Windows\system32\ci.dll
2013-09-18 14:12:27 ----A---- C:\Windows\SYSWOW64\ws2_32.dll
2013-09-18 14:12:27 ----A---- C:\Windows\SYSWOW64\sxs.dll
2013-09-18 14:12:27 ----A---- C:\Windows\SYSWOW64\stobject.dll
2013-09-18 14:12:27 ----A---- C:\Windows\SYSWOW64\netshell.dll
2013-09-18 14:12:27 ----A---- C:\Windows\system32\thumbcache.dll
2013-09-18 14:12:27 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2013-09-18 14:12:27 ----A---- C:\Windows\system32\hal.dll
2013-09-18 14:12:27 ----A---- C:\Windows\system32\DxpTaskSync.dll
2013-09-18 14:12:26 ----A---- C:\Windows\SYSWOW64\wmpeffects.dll
2013-09-18 14:12:26 ----A---- C:\Windows\SYSWOW64\prncache.dll
2013-09-18 14:12:26 ----A---- C:\Windows\SYSWOW64\printui.dll
2013-09-18 14:12:26 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2013-09-18 14:12:26 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2013-09-18 14:12:26 ----A---- C:\Windows\system32\themeui.dll
2013-09-18 14:12:26 ----A---- C:\Windows\system32\scecli.dll
2013-09-18 14:12:26 ----A---- C:\Windows\system32\puiobj.dll
2013-09-18 14:12:26 ----A---- C:\Windows\system32\onex.dll
2013-09-18 14:12:26 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2013-09-18 14:12:26 ----A---- C:\Windows\system32\msasn1.dll
2013-09-18 14:12:26 ----A---- C:\Windows\system32\iasrad.dll
2013-09-18 14:12:26 ----A---- C:\Windows\system32\DXPTaskRingtone.dll
2013-09-18 14:12:26 ----A---- C:\Windows\system32\dwmredir.dll
2013-09-18 14:12:26 ----A---- C:\Windows\system32\drivers\ipfltdrv.sys
2013-09-18 14:12:26 ----A---- C:\Windows\system32\drivers\Classpnp.sys
2013-09-18 14:12:25 ----A---- C:\Windows\SYSWOW64\WSDApi.dll
2013-09-18 14:12:25 ----A---- C:\Windows\SYSWOW64\scansetting.dll
2013-09-18 14:12:25 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2013-09-18 14:12:25 ----A---- C:\Windows\SYSWOW64\net1.exe
2013-09-18 14:12:25 ----A---- C:\Windows\system32\wlangpui.dll
2013-09-18 14:12:25 ----A---- C:\Windows\system32\wdc.dll
2013-09-18 14:12:25 ----A---- C:\Windows\system32\scesrv.dll
2013-09-18 14:12:25 ----A---- C:\Windows\system32\rasmans.dll
2013-09-18 14:12:24 ----A---- C:\Windows\system32\StructuredQuery.dll
2013-09-18 14:12:24 ----A---- C:\Windows\system32\sdengin2.dll
2013-09-18 14:12:24 ----A---- C:\Windows\system32\msftedit.dll
2013-09-18 14:12:23 ----A---- C:\Windows\SYSWOW64\MMDevAPI.dll
2013-09-18 14:12:23 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2013-09-18 14:12:23 ----A---- C:\Windows\system32\wscapi.dll
2013-09-18 14:12:23 ----A---- C:\Windows\system32\wiadefui.dll
2013-09-18 14:12:23 ----A---- C:\Windows\system32\VAN.dll
2013-09-18 14:12:23 ----A---- C:\Windows\system32\SndVol.exe
2013-09-18 14:12:23 ----A---- C:\Windows\system32\samcli.dll
2013-09-18 14:12:23 ----A---- C:\Windows\system32\netcenter.dll
2013-09-18 14:12:23 ----A---- C:\Windows\system32\dskquoui.dll
2013-09-18 14:12:23 ----A---- C:\Windows\system32\drivers\ndiswan.sys
2013-09-18 14:12:22 ----A---- C:\Windows\SYSWOW64\wpdshext.dll
2013-09-18 14:12:22 ----A---- C:\Windows\SYSWOW64\WMVCORE.DLL
2013-09-18 14:12:22 ----A---- C:\Windows\SYSWOW64\wlangpui.dll
2013-09-18 14:12:22 ----A---- C:\Windows\SYSWOW64\webservices.dll
2013-09-18 14:12:22 ----A---- C:\Windows\SYSWOW64\t2embed.dll
2013-09-18 14:12:22 ----A---- C:\Windows\SYSWOW64\SyncCenter.dll
2013-09-18 14:12:22 ----A---- C:\Windows\SYSWOW64\QSHVHOST.DLL
2013-09-18 14:12:22 ----A---- C:\Windows\SYSWOW64\pnidui.dll
2013-09-18 14:12:22 ----A---- C:\Windows\SYSWOW64\netdiagfx.dll
2013-09-18 14:12:22 ----A---- C:\Windows\SYSWOW64\fde.dll
2013-09-18 14:12:22 ----A---- C:\Windows\system32\wksprt.exe
2013-09-18 14:12:22 ----A---- C:\Windows\system32\TabSvc.dll
2013-09-18 14:12:22 ----A---- C:\Windows\system32\srchadmin.dll
2013-09-18 14:12:22 ----A---- C:\Windows\system32\setupcl.exe
2013-09-18 14:12:22 ----A---- C:\Windows\system32\regapi.dll
2013-09-18 14:12:22 ----A---- C:\Windows\system32\rastls.dll
2013-09-18 14:12:22 ----A---- C:\Windows\system32\QUTIL.DLL
2013-09-18 14:12:22 ----A---- C:\Windows\system32\iasacct.dll
2013-09-18 14:12:22 ----A---- C:\Windows\system32\drivers\termdd.sys
2013-09-18 14:12:22 ----A---- C:\Windows\system32\drivers\msahci.sys
2013-09-18 14:12:21 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2013-09-18 14:12:21 ----A---- C:\Windows\SYSWOW64\wscapi.dll
2013-09-18 14:12:21 ----A---- C:\Windows\SYSWOW64\WinSCard.dll
2013-09-18 14:12:21 ----A---- C:\Windows\system32\tapisrv.dll
2013-09-18 14:12:21 ----A---- C:\Windows\system32\netiohlp.dll
2013-09-18 14:12:21 ----A---- C:\Windows\system32\msconfig.exe
2013-09-18 14:12:21 ----A---- C:\Windows\system32\mimefilt.dll
2013-09-18 14:12:21 ----A---- C:\Windows\system32\ListSvc.dll
2013-09-18 14:12:21 ----A---- C:\Windows\system32\drivers\raspptp.sys
2013-09-18 14:12:21 ----A---- C:\Windows\system32\drivers\acpi.sys
2013-09-18 14:12:20 ----A---- C:\Windows\SYSWOW64\winsta.dll
2013-09-18 14:12:20 ----A---- C:\Windows\SYSWOW64\pla.dll
2013-09-18 14:12:20 ----A---- C:\Windows\SYSWOW64\MSMPEG2ENC.DLL
2013-09-18 14:12:20 ----A---- C:\Windows\SYSWOW64\msasn1.dll
2013-09-18 14:12:20 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2013-09-18 14:12:20 ----A---- C:\Windows\system32\mtxclu.dll
2013-09-18 14:12:20 ----A---- C:\Windows\system32\lsmproxy.dll
2013-09-18 14:12:20 ----A---- C:\Windows\system32\hgcpl.dll
2013-09-18 14:12:20 ----A---- C:\Windows\system32\fdeploy.dll
2013-09-18 14:12:20 ----A---- C:\Windows\system32\drivers\sbp2port.sys
2013-09-18 14:12:20 ----A---- C:\Windows\system32\drivers\ks.sys
2013-09-18 14:12:20 ----A---- C:\Windows\system32\clusapi.dll
2013-09-18 14:12:20 ----A---- C:\Windows\system32\basecsp.dll
2013-09-18 14:12:20 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2013-09-18 14:12:19 ----A---- C:\Windows\SYSWOW64\imapi2.dll
2013-09-18 14:12:19 ----A---- C:\Windows\SYSWOW64\DXPTaskRingtone.dll
2013-09-18 14:12:19 ----A---- C:\Windows\system32\riched20.dll
2013-09-18 14:12:19 ----A---- C:\Windows\system32\dnscmmc.dll
2013-09-18 14:12:18 ----A---- C:\Windows\SYSWOW64\WMPEncEn.dll
2013-09-18 14:12:18 ----A---- C:\Windows\SYSWOW64\winmm.dll
2013-09-18 14:12:18 ----A---- C:\Windows\SYSWOW64\shsvcs.dll
2013-09-18 14:12:18 ----A---- C:\Windows\SYSWOW64\samcli.dll
2013-09-18 14:12:18 ----A---- C:\Windows\SYSWOW64\onex.dll
2013-09-18 14:12:18 ----A---- C:\Windows\SYSWOW64\netiohlp.dll
2013-09-18 14:12:18 ----A---- C:\Windows\SYSWOW64\IPHLPAPI.DLL
2013-09-18 14:12:18 ----A---- C:\Windows\SYSWOW64\hbaapi.dll
2013-09-18 14:12:18 ----A---- C:\Windows\SYSWOW64\autochk.exe
2013-09-18 14:12:18 ----A---- C:\Windows\SYSWOW64\autofmt.exe
2013-09-18 14:12:18 ----A---- C:\Windows\system32\wkssvc.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\vpnikeapi.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\themecpl.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\sharemediacpl.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\SensorsCpl.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\RpcRtRemote.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\powercpl.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\netjoin.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\nci.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\Narrator.exe
2013-09-18 14:12:18 ----A---- C:\Windows\system32\logoncli.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\Faultrep.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\eudcedit.exe
2013-09-18 14:12:18 ----A---- C:\Windows\system32\comctl32.dll
2013-09-18 14:12:17 ----A---- C:\Windows\SYSWOW64\thumbcache.dll
2013-09-18 14:12:17 ----A---- C:\Windows\SYSWOW64\regapi.dll
2013-09-18 14:12:17 ----A---- C:\Windows\SYSWOW64\proquota.exe
2013-09-18 14:12:17 ----A---- C:\Windows\SYSWOW64\msutb.dll
2013-09-18 14:12:17 ----A---- C:\Windows\SYSWOW64\msinfo32.exe
2013-09-18 14:12:17 ----A---- C:\Windows\SYSWOW64\mimefilt.dll
2013-09-18 14:12:17 ----A---- C:\Windows\SYSWOW64\ipsmsnap.dll
2013-09-18 14:12:17 ----A---- C:\Windows\SYSWOW64\autoconv.exe
2013-09-18 14:12:17 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2013-09-18 14:12:17 ----A---- C:\Windows\system32\sppcomapi.dll
2013-09-18 14:12:17 ----A---- C:\Windows\system32\nshipsec.dll
2013-09-18 14:12:17 ----A---- C:\Windows\system32\cabview.dll
2013-09-18 14:12:17 ----A---- C:\Windows\system32\autochk.exe
2013-09-18 14:12:17 ----A---- C:\Windows\system32\autofmt.exe
2013-09-18 14:12:17 ----A---- C:\Windows\system32\autoconv.exe
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\wcncsvc.dll
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\tcpipcfg.dll
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\srchadmin.dll
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\schtasks.exe
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\QAGENT.DLL
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\powercpl.dll
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\netid.dll
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\mscorier.dll
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\framedyn.dll
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\eapphost.dll
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\AuxiliaryDisplayCpl.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\wwanconn.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\wpd_ci.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\wlanui.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\SmiEngine.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\shsetup.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\sdclt.exe
2013-09-18 14:12:16 ----A---- C:\Windows\system32\prntvpt.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\mscorier.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\mprddm.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\fontext.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\fms.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\drivers\wanarp.sys
2013-09-18 14:12:16 ----A---- C:\Windows\system32\drivers\volmgrx.sys
2013-09-18 14:12:16 ----A---- C:\Windows\system32\drivers\scsiport.sys
2013-09-18 14:12:16 ----A---- C:\Windows\system32\dps.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\Display.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\bcdsrv.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\AxInstSv.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\audiodg.exe
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\WMNetMgr.dll
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\wlanpref.dll
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\wdc.dll
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\Vault.dll
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\untfs.dll
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\StructuredQuery.dll
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\scesrv.dll
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\RpcRtRemote.dll
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\rastls.dll
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\nci.dll
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2013-09-18 14:12:15 ----A---- C:\Windows\system32\wmpsrcwp.dll
2013-09-18 14:12:15 ----A---- C:\Windows\system32\mblctr.exe
2013-09-18 14:12:15 ----A---- C:\Windows\system32\drivers\hidclass.sys
2013-09-18 14:12:15 ----A---- C:\Windows\system32\DiagCpl.dll
2013-09-18 14:12:15 ----A---- C:\Windows\system32\credssp.dll
2013-09-18 14:12:15 ----A---- C:\Windows\system32\batmeter.dll
2013-09-18 14:12:14 ----A---- C:\Windows\SYSWOW64\taskmgr.exe
2013-09-18 14:12:14 ----A---- C:\Windows\SYSWOW64\Robocopy.exe
2013-09-18 14:12:14 ----A---- C:\Windows\SYSWOW64\mtxclu.dll
2013-09-18 14:12:14 ----A---- C:\Windows\SYSWOW64\DxpTaskSync.dll
2013-09-18 14:12:14 ----A---- C:\Windows\SYSWOW64\Display.dll
2013-09-18 14:12:14 ----A---- C:\Windows\system32\wpccpl.dll
2013-09-18 14:12:14 ----A---- C:\Windows\system32\usercpl.dll
2013-09-18 14:12:14 ----A---- C:\Windows\system32\sppsvc.exe
2013-09-18 14:12:14 ----A---- C:\Windows\system32\SndVolSSO.dll
2013-09-18 14:12:14 ----A---- C:\Windows\system32\rtutils.dll
2013-09-18 14:12:14 ----A---- C:\Windows\system32\rasppp.dll
2013-09-18 14:12:14 ----A---- C:\Windows\system32\provsvc.dll
2013-09-18 14:12:14 ----A---- C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2013-09-18 14:12:14 ----A---- C:\Windows\system32\dxdiagn.dll
2013-09-18 14:12:14 ----A---- C:\Windows\system32\drivers\rdyboost.sys
2013-09-18 14:12:14 ----A---- C:\Windows\system32\dot3cfg.dll
2013-09-18 14:12:14 ----A---- C:\Windows\system32\bootres.dll
2013-09-18 14:12:13 ----A---- C:\Windows\SYSWOW64\XpsRasterService.dll
2013-09-18 14:12:13 ----A---- C:\Windows\SYSWOW64\userinit.exe
2013-09-18 14:12:13 ----A---- C:\Windows\SYSWOW64\termmgr.dll
2013-09-18 14:12:13 ----A---- C:\Windows\SYSWOW64\puiobj.dll
2013-09-18 14:12:13 ----A---- C:\Windows\system32\taskmgr.exe
2013-09-18 14:12:13 ----A---- C:\Windows\system32\prnfldr.dll
2013-09-18 14:12:13 ----A---- C:\Windows\system32\hbaapi.dll
2013-09-18 14:12:12 ----A---- C:\Windows\SYSWOW64\wiadefui.dll
2013-09-18 14:12:12 ----A---- C:\Windows\SYSWOW64\sppcomapi.dll
2013-09-18 14:12:12 ----A---- C:\Windows\SYSWOW64\shsetup.dll
2013-09-18 14:12:12 ----A---- C:\Windows\SYSWOW64\rasppp.dll
2013-09-18 14:12:12 ----A---- C:\Windows\SYSWOW64\logoncli.dll
2013-09-18 14:12:12 ----A---- C:\Windows\SYSWOW64\eudcedit.exe
2013-09-18 14:12:12 ----A---- C:\Windows\SYSWOW64\cabview.dll
2013-09-18 14:12:12 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2013-09-18 14:12:12 ----A---- C:\Windows\system32\userinit.exe
2013-09-18 14:12:12 ----A---- C:\Windows\system32\untfs.dll
2013-09-18 14:12:12 ----A---- C:\Windows\system32\proquota.exe
2013-09-18 14:12:12 ----A---- C:\Windows\system32\pdh.dll
2013-09-18 14:12:12 ----A---- C:\Windows\system32\MSAC3ENC.DLL
2013-09-18 14:12:12 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2013-09-18 14:12:12 ----A---- C:\Windows\system32\accessibilitycpl.dll
2013-09-18 14:12:10 ----A---- C:\Windows\SYSWOW64\SensorsCpl.dll
2013-09-18 14:12:10 ----A---- C:\Windows\SYSWOW64\FirewallControlPanel.dll
2013-09-18 14:12:09 ----A---- C:\Windows\SYSWOW64\themecpl.dll
2013-09-18 14:12:09 ----A---- C:\Windows\SYSWOW64\tapisrv.dll
2013-09-18 14:12:09 ----A---- C:\Windows\SYSWOW64\scecli.dll
2013-09-18 14:12:09 ----A---- C:\Windows\SYSWOW64\PhotoScreensaver.scr
2013-09-18 14:12:09 ----A---- C:\Windows\SYSWOW64\hgcpl.dll
2013-09-18 14:12:09 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2013-09-18 14:12:09 ----A---- C:\Windows\SYSWOW64\fontext.dll
2013-09-18 14:12:09 ----A---- C:\Windows\SYSWOW64\dnscmmc.dll
2013-09-18 14:12:09 ----A---- C:\Windows\system32\zipfldr.dll
2013-09-18 14:12:09 ----A---- C:\Windows\system32\sud.dll
2013-09-18 14:12:09 ----A---- C:\Windows\system32\slui.exe
2013-09-18 14:12:09 ----A---- C:\Windows\system32\msieftp.dll
2013-09-18 14:12:09 ----A---- C:\Windows\system32\defaultlocationcpl.dll
2013-09-18 14:12:08 ----A---- C:\Windows\SYSWOW64\mscories.dll
2013-09-18 14:12:08 ----A---- C:\Windows\SYSWOW64\mscms.dll
2013-09-18 14:12:08 ----A---- C:\Windows\SYSWOW64\mprddm.dll
2013-09-18 14:12:08 ----A---- C:\Windows\SYSWOW64\localsec.dll
2013-09-18 14:12:08 ----A---- C:\Windows\SYSWOW64\iasacct.dll
2013-09-18 14:12:08 ----A---- C:\Windows\system32\OnLineIDCpl.dll
2013-09-18 14:12:08 ----A---- C:\Windows\system32\networkmap.dll
2013-09-18 14:12:08 ----A---- C:\Windows\system32\dot3svc.dll
2013-09-18 14:12:08 ----A---- C:\Windows\system32\DeviceCenter.dll
2013-09-18 14:12:08 ----A---- C:\Windows\system32\cryptui.dll
2013-09-18 14:12:07 ----A---- C:\Windows\SYSWOW64\wlanui.dll
2013-09-18 14:12:07 ----A---- C:\Windows\SYSWOW64\VAN.dll
2013-09-18 14:12:07 ----A---- C:\Windows\SYSWOW64\usercpl.dll
2013-09-18 14:12:07 ----A---- C:\Windows\SYSWOW64\SndVolSSO.dll
2013-09-18 14:12:07 ----A---- C:\Windows\SYSWOW64\SndVol.exe
2013-09-18 14:12:07 ----A---- C:\Windows\SYSWOW64\prntvpt.dll
2013-09-18 14:12:07 ----A---- C:\Windows\SYSWOW64\PerfCenterCPL.dll
2013-09-18 14:12:07 ----A---- C:\Windows\SYSWOW64\netcenter.dll
2013-09-18 14:12:07 ----A---- C:\Windows\SYSWOW64\batmeter.dll
2013-09-18 14:12:07 ----A---- C:\Windows\system32\twext.dll
2013-09-18 14:12:07 ----A---- C:\Windows\system32\taskbarcpl.dll
2013-09-18 14:12:07 ----A---- C:\Windows\system32\OobeFldr.dll
2013-09-18 14:12:07 ----A---- C:\Windows\system32\bcdedit.exe
2013-09-18 14:12:07 ----A---- C:\Windows\system32\ActionCenter.dll
2013-09-18 14:12:06 ----A---- C:\Windows\SYSWOW64\zipfldr.dll
2013-09-18 14:12:06 ----A---- C:\Windows\SYSWOW64\w32tm.exe
2013-09-18 14:12:06 ----A---- C:\Windows\SYSWOW64\spwizeng.dll
2013-09-18 14:12:06 ----A---- C:\Windows\SYSWOW64\netjoin.dll
2013-09-18 14:12:06 ----A---- C:\Windows\SYSWOW64\MSAC3ENC.DLL
2013-09-18 14:12:06 ----A---- C:\Windows\SYSWOW64\fdeploy.dll
2013-09-18 14:12:06 ----A---- C:\Windows\SYSWOW64\cryptui.dll
2013-09-18 14:12:06 ----A---- C:\Windows\SYSWOW64\azroleui.dll
2013-09-18 14:12:06 ----A---- C:\Windows\SYSWOW64\adsldp.dll
2013-09-18 14:12:06 ----A---- C:\Windows\SYSWOW64\accessibilitycpl.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\uxlib.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\tzutil.exe
2013-09-18 14:12:06 ----A---- C:\Windows\system32\systemcpl.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\syncui.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\sisbkup.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\shwebsvc.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\sdcpl.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\recovery.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\recdisc.exe
2013-09-18 14:12:06 ----A---- C:\Windows\system32\netplwiz.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\isoburn.exe
2013-09-18 14:12:06 ----A---- C:\Windows\system32\httpapi.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\efscore.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\dsuiext.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\drivers\mpio.sys
2013-09-18 14:12:06 ----A---- C:\Windows\system32\drivers\hwpolicy.sys
2013-09-18 14:12:06 ----A---- C:\Windows\system32\certcli.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\cca.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\azroleui.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\autoplay.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\asycfilt.dll
2013-09-18 14:12:05 ----A---- C:\Windows\SYSWOW64\wusa.exe
2013-09-18 14:12:05 ----A---- C:\Windows\SYSWOW64\sud.dll
2013-09-18 14:12:05 ----A---- C:\Windows\SYSWOW64\prnfldr.dll
2013-09-18 14:12:05 ----A---- C:\Windows\SYSWOW64\OnLineIDCpl.dll
2013-09-18 14:12:05 ----A---- C:\Windows\SYSWOW64\networkmap.dll
2013-09-18 14:12:05 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2013-09-18 14:12:05 ----A---- C:\Windows\SYSWOW64\MCEWMDRMNDBootstrap.dll
2013-09-18 14:12:05 ----A---- C:\Windows\SYSWOW64\Faultrep.dll
2013-09-18 14:12:05 ----A---- C:\Windows\SYSWOW64\ActionCenter.dll
2013-09-18 14:12:05 ----A---- C:\Windows\system32\wlanmsm.dll
2013-09-18 14:12:05 ----A---- C:\Windows\system32\vdsutil.dll
2013-09-18 14:12:05 ----A---- C:\Windows\system32\sysclass.dll
2013-09-18 14:12:05 ----A---- C:\Windows\system32\spwizeng.dll
2013-09-18 14:12:05 ----A---- C:\Windows\system32\sdrsvc.dll
2013-09-18 14:12:05 ----A---- C:\Windows\system32\ncryptui.dll
2013-09-18 14:12:05 ----A---- C:\Windows\system32\msvidc32.dll
2013-09-18 14:12:05 ----A---- C:\Windows\system32\MFPlay.dll
2013-09-18 14:12:05 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2013-09-18 14:12:05 ----A---- C:\Windows\system32\ActionCenterCPL.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\sisbkup.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\shwebsvc.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\photowiz.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\MediaMetadataHandler.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\iprtrmgr.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\ifsutil.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\iasrad.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\ftp.exe
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\efscore.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\dot3cfg.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\defaultlocationcpl.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\credssp.dll
2013-09-18 14:12:04 ----A---- C:\Windows\system32\UserAccountControlSettings.dll
2013-09-18 14:12:04 ----A---- C:\Windows\system32\termmgr.dll
2013-09-18 14:12:04 ----A---- C:\Windows\system32\sqlcese30.dll
2013-09-18 14:12:04 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2013-09-18 14:12:04 ----A---- C:\Windows\system32\sethc.exe
2013-09-18 14:12:04 ----A---- C:\Windows\system32\ReAgent.dll
2013-09-18 14:12:04 ----A---- C:\Windows\system32\rdpd3d.dll
2013-09-18 14:12:04 ----A---- C:\Windows\system32\ntlanman.dll
2013-09-18 14:12:04 ----A---- C:\Windows\system32\msscp.dll
2013-09-18 14:12:04 ----A---- C:\Windows\system32\iprtrmgr.dll
2013-09-18 14:12:04 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2013-09-18 14:12:03 ----A---- C:\Windows\SYSWOW64\wmpmde.dll
2013-09-18 14:12:03 ----A---- C:\Windows\SYSWOW64\syncui.dll
2013-09-18 14:12:03 ----A---- C:\Windows\SYSWOW64\ntlanman.dll
2013-09-18 14:12:03 ----A---- C:\Windows\SYSWOW64\dskquoui.dll
2013-09-18 14:12:03 ----A---- C:\Windows\SYSWOW64\DeviceCenter.dll
2013-09-18 14:12:03 ----A---- C:\Windows\SYSWOW64\autoplay.dll
2013-09-18 14:12:03 ----A---- C:\Windows\SYSWOW64\ActionCenterCPL.dll
2013-09-18 14:12:03 ----A---- C:\Windows\system32\wmdrmsdk.dll
2013-09-18 14:12:03 ----A---- C:\Windows\system32\ssText3d.scr
2013-09-18 14:12:03 ----A---- C:\Windows\system32\srvcli.dll
2013-09-18 14:12:03 ----A---- C:\Windows\system32\slwga.dll
2013-09-18 14:12:03 ----A---- C:\Windows\system32\iyuv_32.dll
2013-09-18 14:12:03 ----A---- C:\Windows\system32\iTVData.dll
2013-09-18 14:12:03 ----A---- C:\Windows\system32\drmmgrtn.dll
2013-09-18 14:12:02 ----A---- C:\Windows\SYSWOW64\systemcpl.dll
2013-09-18 14:12:02 ----A---- C:\Windows\SYSWOW64\SmartcardCredentialProvider.dll
2013-09-18 14:12:02 ----A---- C:\Windows\SYSWOW64\sethc.exe
2013-09-18 14:12:02 ----A---- C:\Windows\SYSWOW64\rtutils.dll
2013-09-18 14:12:02 ----A---- C:\Windows\SYSWOW64\riched20.dll
2013-09-18 14:12:02 ----A---- C:\Windows\SYSWOW64\OobeFldr.dll
2013-09-18 14:12:02 ----A---- C:\Windows\SYSWOW64\ntprint.dll
2013-09-18 14:12:02 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2013-09-18 14:12:02 ----A---- C:\Windows\system32\wavemsp.dll
2013-09-18 14:12:02 ----A---- C:\Windows\system32\srrstr.dll
2013-09-18 14:12:02 ----A---- C:\Windows\system32\ntprint.dll
2013-09-18 14:12:02 ----A---- C:\Windows\system32\nslookup.exe
2013-09-18 14:12:02 ----A---- C:\Windows\system32\NAPHLPR.DLL
2013-09-18 14:12:02 ----A---- C:\Windows\system32\msiexec.exe
2013-09-18 14:12:02 ----A---- C:\Windows\system32\DevicePairingFolder.dll
2013-09-18 14:12:02 ----A---- C:\Windows\system32\bcdboot.exe
2013-09-18 14:12:02 ----A---- C:\Windows\system32\acppage.dll
2013-09-18 14:12:01 ----A---- C:\Windows\SYSWOW64\wmpsrcwp.dll
2013-09-18 14:12:01 ----A---- C:\Windows\SYSWOW64\netplwiz.dll
2013-09-18 14:12:01 ----A---- C:\Windows\SYSWOW64\NAPHLPR.DLL
2013-09-18 14:12:01 ----A---- C:\Windows\SYSWOW64\migisol.dll
2013-09-18 14:12:01 ----A---- C:\Windows\SYSWOW64\fms.dll
2013-09-18 14:12:01 ----A---- C:\Windows\SYSWOW64\dpx.dll
2013-09-18 14:12:01 ----A---- C:\Windows\SYSWOW64\blackbox.dll
2013-09-18 14:12:01 ----A---- C:\Windows\SYSWOW64\activeds.dll
2013-09-18 14:12:01 ----A---- C:\Windows\system32\TSpkg.dll
2013-09-18 14:12:01 ----A---- C:\Windows\system32\sppnp.dll
2013-09-18 14:12:01 ----A---- C:\Windows\system32\networkexplorer.dll
2013-09-18 14:12:01 ----A---- C:\Windows\system32\certprop.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\wlanmsm.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\wavemsp.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\tzutil.exe
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\ReAgent.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\provsvc.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\ocsetup.exe
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\nshipsec.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\msftedit.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\isoburn.exe
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\httpapi.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\dsuiext.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\dot3ui.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\dfrgui.exe
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\asycfilt.dll
2013-09-18 14:12:00 ----A---- C:\Windows\system32\wvc.dll
2013-09-18 14:12:00 ----A---- C:\Windows\system32\wsqmcons.exe
2013-09-18 14:12:00 ----A---- C:\Windows\system32\wsnmp32.dll
2013-09-18 14:12:00 ----A---- C:\Windows\system32\wmpdxm.dll
2013-09-18 14:12:00 ----A---- C:\Windows\system32\wmdrmdev.dll
2013-09-18 14:12:00 ----A---- C:\Windows\system32\wkscli.dll
2013-09-18 14:12:00 ----A---- C:\Windows\system32\WinSCard.dll
2013-09-18 14:12:00 ----A---- C:\Windows\system32\remotepg.dll
2013-09-18 14:12:00 ----A---- C:\Windows\system32\net1.exe
2013-09-18 14:12:00 ----A---- C:\Windows\system32\ftp.exe
2013-09-18 14:12:00 ----A---- C:\Windows\system32\dfrgui.exe
2013-09-18 14:12:00 ----A---- C:\Windows\system32\cabinet.dll
2013-09-18 14:12:00 ----A---- C:\Windows\system32\blackbox.dll
2013-09-18 14:11:59 ----A---- C:\Windows\SYSWOW64\wvc.dll
2013-09-18 14:11:59 ----A---- C:\Windows\SYSWOW64\wtsapi32.dll
2013-09-18 14:11:59 ----A---- C:\Windows\SYSWOW64\wimgapi.dll
2013-09-18 14:11:59 ----A---- C:\Windows\SYSWOW64\twext.dll
2013-09-18 14:11:59 ----A---- C:\Windows\SYSWOW64\PkgMgr.exe
2013-09-18 14:11:59 ----A---- C:\Windows\SYSWOW64\mstask.dll
2013-09-18 14:11:59 ----A---- C:\Windows\system32\WerFaultSecure.exe
2013-09-18 14:11:59 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2013-09-18 14:11:59 ----A---- C:\Windows\system32\OpcServices.dll
2013-09-18 14:11:59 ----A---- C:\Windows\system32\msyuv.dll
2013-09-18 14:11:59 ----A---- C:\Windows\system32\mfps.dll
2013-09-18 14:11:59 ----A---- C:\Windows\system32\mapistub.dll
2013-09-18 14:11:59 ----A---- C:\Windows\system32\mapi32.dll
2013-09-18 14:11:59 ----A---- C:\Windows\system32\Bubbles.scr
2013-09-18 14:11:58 ----A---- C:\Windows\twain_32.dll
2013-09-18 14:11:58 ----A---- C:\Windows\SYSWOW64\setupugc.exe
2013-09-18 14:11:58 ----A---- C:\Windows\SYSWOW64\qcap.dll
2013-09-18 14:11:58 ----A---- C:\Windows\SYSWOW64\qasf.dll
2013-09-18 14:11:58 ----A---- C:\Windows\system32\unimdmat.dll
2013-09-18 14:11:58 ----A---- C:\Windows\system32\msrle32.dll
2013-09-18 14:11:58 ----A---- C:\Windows\system32\iscsium.dll
2013-09-18 14:11:58 ----A---- C:\Windows\system32\diskraid.exe
2013-09-18 14:11:57 ----A---- C:\Windows\SYSWOW64\wmdrmsdk.dll
2013-09-18 14:11:57 ----A---- C:\Windows\SYSWOW64\uxlib.dll
2013-09-18 14:11:57 ----A---- C:\Windows\SYSWOW64\ssText3d.scr
2013-09-18 14:11:57 ----A---- C:\Windows\SYSWOW64\slwga.dll
2013-09-18 14:11:57 ----A---- C:\Windows\SYSWOW64\nslookup.exe
2013-09-18 14:11:57 ----A---- C:\Windows\SYSWOW64\msvfw32.dll
2013-09-18 14:11:57 ----A---- C:\Windows\SYSWOW64\mciavi32.dll
2013-09-18 14:11:57 ----A---- C:\Windows\SYSWOW64\clusapi.dll
2013-09-18 14:11:57 ----A---- C:\Windows\SYSWOW64\audiodev.dll
2013-09-18 14:11:57 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeResults.exe
2013-09-18 14:11:57 ----A---- C:\Windows\system32\tsbyuv.dll
2013-09-18 14:11:57 ----A---- C:\Windows\system32\seclogon.dll
2013-09-18 14:11:57 ----A---- C:\Windows\system32\Ribbons.scr
2013-09-18 14:11:57 ----A---- C:\Windows\system32\Mystify.scr
2013-09-18 14:11:57 ----A---- C:\Windows\system32\muifontsetup.dll
2013-09-18 14:11:57 ----A---- C:\Windows\system32\ifsutil.dll
2013-09-18 14:11:57 ----A---- C:\Windows\system32\drivers\umbus.sys
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\WPDShServiceObj.dll
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\wimserv.exe
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\remotepg.dll
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\rdpencom.dll
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\raschap.dll
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\QUTIL.DLL
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\perfmon.exe
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\NAPCRYPT.DLL
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\msscp.dll
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\input.dll
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\drmmgrtn.dll
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\diskraid.exe
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\DevicePairingFolder.dll
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\acppage.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\wpdwcn.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\wmpshell.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\wiavideo.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\umb.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\tlscsp.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\runonce.exe
2013-09-18 14:11:56 ----A---- C:\Windows\system32\rdpencom.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\raschap.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\qasf.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\perfmon.exe
2013-09-18 14:11:56 ----A---- C:\Windows\system32\netutils.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\NAPCRYPT.DLL
2013-09-18 14:11:56 ----A---- C:\Windows\system32\FXSAPI.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\dbghelp.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\AzSqlExt.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\ActionQueue.dll
2013-09-18 14:11:56 ----A---- C:\Windows\bfsvc.exe
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\wpdwcn.dll
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\wmpdxm.dll
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\vpnikeapi.dll
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\vdsbas.dll
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\UserAccountControlSettings.dll
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\runonce.exe
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\onexui.dll
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\olepro32.dll
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\ocsetapi.dll
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\networkexplorer.dll
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\logagent.exe
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\iTVData.dll
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\dxdiagn.dll
2013-09-18 14:11:55 ----A---- C:\Windows\system32\WMVSDECD.DLL
2013-09-18 14:11:55 ----A---- C:\Windows\system32\WMADMOD.DLL
2013-09-18 14:11:55 ----A---- C:\Windows\system32\vdsbas.dll
2013-09-18 14:11:55 ----A---- C:\Windows\system32\syssetup.dll
2013-09-18 14:11:55 ----A---- C:\Windows\system32\PrintIsolationProxy.dll
2013-09-18 14:11:55 ----A---- C:\Windows\system32\nltest.exe
2013-09-18 14:11:55 ----A---- C:\Windows\system32\mstask.dll
2013-09-18 14:11:55 ----A---- C:\Windows\system32\MdSched.exe
2013-09-18 14:11:55 ----A---- C:\Windows\system32\Mcx2Svc.dll
2013-09-18 14:11:55 ----A---- C:\Windows\system32\drivers\rmcast.sys
2013-09-18 14:11:55 ----A---- C:\Windows\system32\bitsadmin.exe
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\wmpshell.dll
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\wmdrmdev.dll
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\unimdmat.dll
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\shacct.dll
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\msvidc32.dll
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\MFPlay.dll
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\lsmproxy.dll
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\iscsium.dll
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\eapp3hst.dll
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\bitsadmin.exe
2013-09-18 14:11:54 ----A---- C:\Windows\system32\WPDSp.dll
2013-09-18 14:11:54 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2013-09-18 14:11:54 ----A---- C:\Windows\system32\wmdrmnet.dll
2013-09-18 14:11:54 ----A---- C:\Windows\system32\vss_ps.dll
2013-09-18 14:11:54 ----A---- C:\Windows\system32\tabcal.exe
2013-09-18 14:11:54 ----A---- C:\Windows\system32\shacct.dll
2013-09-18 14:11:54 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2013-09-18 14:11:54 ----A---- C:\Windows\system32\QSVRMGMT.DLL
2013-09-18 14:11:54 ----A---- C:\Windows\system32\qcap.dll
2013-09-18 14:11:54 ----A---- C:\Windows\system32\msnetobj.dll
2013-09-18 14:11:54 ----A---- C:\Windows\system32\logman.exe
2013-09-18 14:11:54 ----A---- C:\Windows\system32\drivers\USBAUDIO.sys
2013-09-18 14:11:54 ----A---- C:\Windows\system32\cscapi.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\WPDSp.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\srvcli.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\sqlcese30.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\rdpd3d.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\PortableDeviceSyncProvider.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\pdh.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\OpcServices.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\olethk32.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\ncryptui.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\mprapi.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\logman.exe
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\cscapi.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\Bubbles.scr
2013-09-18 14:11:53 ----A---- C:\Windows\system32\spbcd.dll
2013-09-18 14:11:53 ----A---- C:\Windows\system32\secproc_ssp.dll
2013-09-18 14:11:53 ----A---- C:\Windows\system32\qdv.dll
2013-09-18 14:11:53 ----A---- C:\Windows\system32\PortableDeviceSyncProvider.dll
2013-09-18 14:11:53 ----A---- C:\Windows\system32\PortableDeviceStatus.dll
2013-09-18 14:11:53 ----A---- C:\Windows\system32\drivers\ndisuio.sys
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\WMVSDECD.DLL
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\wmdrmnet.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\WMADMOD.DLL
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\wiavideo.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\utildll.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\takeown.exe
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\Ribbons.scr
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\QSVRMGMT.DLL
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\qdv.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\PortableDeviceStatus.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\Mystify.scr
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\mapistub.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\mapi32.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\iyuv_32.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\fphc.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\EhStorAPI.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\dot3msm.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\avifil32.dll
2013-09-18 14:11:52 ----A---- C:\Windows\system32\vfwwdm32.dll
2013-09-18 14:11:52 ----A---- C:\Windows\system32\takeown.exe
2013-09-18 14:11:52 ----A---- C:\Windows\system32\shimgvw.dll
2013-09-18 14:11:52 ----A---- C:\Windows\system32\QCLIPROV.DLL
2013-09-18 14:11:52 ----A---- C:\Windows\system32\PnPUnattend.exe
2013-09-18 14:11:52 ----A---- C:\Windows\system32\nrpsrv.dll
2013-09-18 14:11:52 ----A---- C:\Windows\system32\HotStartUserAgent.dll
2013-09-18 14:11:52 ----A---- C:\Windows\system32\fphc.dll
2013-09-18 14:11:52 ----A---- C:\Windows\system32\EhStorAPI.dll
2013-09-18 14:11:52 ----A---- C:\Windows\system32\dot3ui.dll
2013-09-18 14:11:52 ----A---- C:\Windows\system32\djoin.exe
2013-09-18 14:11:52 ----A---- C:\Windows\system32\cmstp.exe
2013-09-18 14:11:52 ----A---- C:\Windows\system32\CertPolEng.dll
2013-09-18 14:11:52 ----A---- C:\Windows\system32\amstream.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\wsnmp32.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\WMSPDMOD.DLL
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\vfwwdm32.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\tsbyuv.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\sppinst.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\setupcln.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\relog.exe
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\QCLIPROV.DLL
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\pdhui.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\netiougc.exe
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\MuiUnattend.exe
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\msyuv.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\msrle32.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\msorcl32.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\msnetobj.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\iasrecst.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\cmstp.exe
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\cca.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\AzSqlExt.dll
2013-09-18 14:11:51 ----A---- C:\Windows\system32\WavDest.dll
2013-09-18 14:11:51 ----A---- C:\Windows\system32\sscore.dll
2013-09-18 14:11:51 ----A---- C:\Windows\system32\relog.exe
2013-09-18 14:11:51 ----A---- C:\Windows\system32\mydocs.dll
2013-09-18 14:11:51 ----A---- C:\Windows\system32\MultiDigiMon.exe
2013-09-18 14:11:51 ----A---- C:\Windows\system32\mobsync.exe
2013-09-18 14:11:51 ----A---- C:\Windows\system32\KMSVC.DLL
2013-09-18 14:11:51 ----A---- C:\Windows\system32\iscsicli.exe
2013-09-18 14:11:51 ----A---- C:\Windows\system32\iasrecst.dll
2013-09-18 14:11:51 ----A---- C:\Windows\system32\fdProxy.dll
2013-09-18 14:11:51 ----A---- C:\Windows\system32\drivers\pacer.sys
2013-09-18 14:11:51 ----A---- C:\Windows\system32\diskpart.exe
2013-09-18 14:11:51 ----A---- C:\Windows\system32\BWUnpairElevated.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\wmpps.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\wkscli.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\syssetup.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\spbcd.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\secproc_ssp_isv.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\secproc_ssp.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\resutils.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\rastapi.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\netbtugc.exe
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\mydocs.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\itircl.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\iscsicli.exe
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\diskpart.exe
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\CertPolEng.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\amstream.dll
2013-09-18 14:11:50 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2013-09-18 14:11:50 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2013-09-18 14:11:50 ----A---- C:\Windows\system32\msdmo.dll
2013-09-18 14:11:50 ----A---- C:\Windows\system32\mciqtz32.dll
2013-09-18 14:11:50 ----A---- C:\Windows\system32\itircl.dll
2013-09-18 14:11:50 ----A---- C:\Windows\system32\choice.exe
2013-09-18 14:11:50 ----A---- C:\Windows\system32\FXSTIFF.dll
2013-09-18 14:11:50 ----A---- C:\Windows\system32\findstr.exe
2013-09-18 14:11:50 ----A---- C:\Windows\system32\eappgnui.dll
2013-09-18 14:11:50 ----A---- C:\Windows\system32\dot3msm.dll
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\WerFaultSecure.exe
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\tlscsp.dll
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp_isv.exe
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp.exe
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\ReAgentc.exe
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\netutils.dll
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\mobsync.exe
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\mciqtz32.dll
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\findstr.exe
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\eappgnui.dll
2013-09-18 14:11:49 ----A---- C:\Windows\system32\sppc.dll
2013-09-18 14:11:49 ----A---- C:\Windows\system32\onexui.dll
2013-09-18 14:11:49 ----A---- C:\Windows\system32\luainstall.dll
2013-09-18 14:11:49 ----A---- C:\Windows\system32\drivers\tunnel.sys
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\wups.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\unlodctr.exe
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\UIRibbonRes.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\sppc.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\spopk.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\shimgvw.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\rdprefdrvapi.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\odbcconf.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\muifontsetup.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\msdmo.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\luainstall.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\inetmib1.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\iccvid.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\cabinet.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\wdiasqmmodule.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\UIRibbonRes.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\TRAPI.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\spopk.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\schedcli.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\repair-bde.exe
2013-09-18 14:11:48 ----A---- C:\Windows\system32\RDPENCDD.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\odbcconf.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\manage-bde.exe
2013-09-18 14:11:48 ----A---- C:\Windows\system32\inetmib1.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\FXSMON.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\fixmapi.exe
2013-09-18 14:11:48 ----A---- C:\Windows\system32\elsTrans.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\drivers\dfsc.sys
2013-09-18 14:11:47 ----A---- C:\Windows\SYSWOW64\perfts.dll
2013-09-18 14:11:47 ----A---- C:\Windows\SYSWOW64\imm32.dll
2013-09-18 14:11:47 ----A---- C:\Windows\system32\wshbth.dll
2013-09-18 14:11:47 ----A---- C:\Windows\system32\napdsnap.dll
2013-09-18 14:11:47 ----A---- C:\Windows\system32\LogonUI.exe
2013-09-18 14:11:47 ----A---- C:\Windows\system32\dsauth.dll
2013-09-18 14:11:47 ----A---- C:\Windows\system32\drivers\tdi.sys
2013-09-18 14:11:46 ----A---- C:\Windows\SYSWOW64\TRAPI.dll
2013-09-18 14:11:46 ----A---- C:\Windows\SYSWOW64\elsTrans.dll
2013-09-18 14:11:46 ----A---- C:\Windows\SYSWOW64\bitsperf.dll
2013-09-18 14:11:46 ----A---- C:\Windows\system32\rdprefdrvapi.dll
2013-09-18 14:11:46 ----A---- C:\Windows\system32\FXSUNATD.exe
2013-09-18 14:11:46 ----A---- C:\Windows\system32\cscdll.dll
2013-09-18 14:11:46 ----A---- C:\Windows\system32\bitsperf.dll
2013-09-18 14:11:44 ----A---- C:\Windows\SYSWOW64\wshbth.dll
2013-09-18 14:11:44 ----A---- C:\Windows\SYSWOW64\schedcli.dll
2013-09-18 14:11:44 ----A---- C:\Windows\SYSWOW64\napdsnap.dll
2013-09-18 14:11:44 ----A---- C:\Windows\SYSWOW64\dsauth.dll
2013-09-18 14:11:44 ----A---- C:\Windows\SYSWOW64\cscdll.dll
2013-09-18 14:11:44 ----A---- C:\Windows\system32\drivers\usbrpm.sys
2013-09-18 14:11:44 ----A---- C:\Windows\system32\drivers\acpipmi.sys
2013-09-18 14:11:43 ----A---- C:\Windows\SYSWOW64\sscore.dll
2013-09-18 14:11:43 ----A---- C:\Windows\system32\wsdchngr.dll
2013-09-18 14:11:43 ----A---- C:\Windows\system32\shgina.dll
2013-09-18 14:11:42 ----A---- C:\Windows\SYSWOW64\wsdchngr.dll
2013-09-18 14:11:42 ----A---- C:\Windows\SYSWOW64\shgina.dll
2013-09-18 14:11:42 ----A---- C:\Windows\SYSWOW64\riched32.dll
2013-09-18 14:11:42 ----A---- C:\Windows\system32\drivers\USBCAMD2.sys
2013-09-18 14:11:41 ----A---- C:\Windows\system32\wshirda.dll
2013-09-18 14:11:41 ----A---- C:\Windows\system32\drivers\CompositeBus.sys
2013-09-18 14:11:40 ----A---- C:\Windows\SYSWOW64\wshirda.dll
2013-09-18 14:11:40 ----A---- C:\Windows\system32\rdpcfgex.dll
2013-09-18 14:11:40 ----A---- C:\Windows\system32\drivers\hidusb.sys
2013-09-18 14:11:40 ----A---- C:\Windows\system32\drivers\appid.sys
2013-09-18 14:11:39 ----A---- C:\Windows\system32\spwmp.dll
2013-09-18 14:11:39 ----A---- C:\Windows\system32\riched32.dll
2013-09-18 14:11:39 ----A---- C:\Windows\system32\drivers\kbdhid.sys
2013-09-18 14:11:39 ----A---- C:\Windows\system32\drivers\IPMIDrv.sys
2013-09-18 14:11:39 ----A---- C:\Windows\system32\browseui.dll
2013-09-18 14:11:38 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2013-09-18 14:11:38 ----A---- C:\Windows\SYSWOW64\C_ISCII.DLL
2013-09-18 14:11:38 ----A---- C:\Windows\SYSWOW64\browseui.dll
2013-09-18 14:11:38 ----A---- C:\Windows\system32\drivers\HdAudio.sys
2013-09-18 14:11:38 ----A---- C:\Windows\system32\drivers\cdrom.sys
2013-09-18 14:11:38 ----A---- C:\Windows\system32\C_ISCII.DLL
2013-09-18 14:11:37 ----AH---- C:\Windows\system32\api-ms-win-core-ums-l1-1-0.dll
2013-09-18 14:11:37 ----A---- C:\Windows\SYSWOW64\shunimpl.dll
2013-09-18 14:11:37 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2013-09-18 14:11:37 ----A---- C:\Windows\system32\shunimpl.dll
2013-09-18 14:11:37 ----A---- C:\Windows\system32\dxmasf.dll
2013-09-18 14:11:37 ----A---- C:\Windows\system32\drivers\sffp_sd.sys
2013-09-18 14:11:37 ----A---- C:\Windows\system32\drivers\scfilter.sys
2013-09-18 14:11:37 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2013-09-18 14:11:36 ----A---- C:\Windows\SYSWOW64\KBDTUF.DLL
2013-09-18 14:11:36 ----A---- C:\Windows\SYSWOW64\KBDSG.DLL
2013-09-18 14:11:36 ----A---- C:\Windows\SYSWOW64\kbdlk41a.dll
2013-09-18 14:11:36 ----A---- C:\Windows\SYSWOW64\KBDGR1.DLL
2013-09-18 14:11:36 ----A---- C:\Windows\system32\KBDTUF.DLL
2013-09-18 14:11:36 ----A---- C:\Windows\system32\KBDSF.DLL
2013-09-18 14:11:36 ----A---- C:\Windows\system32\KBDPO.DLL
2013-09-18 14:11:36 ----A---- C:\Windows\system32\KBDINTAM.DLL
2013-09-18 14:11:36 ----A---- C:\Windows\system32\KBDINBEN.DLL
2013-09-18 14:11:35 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2013-09-18 14:11:35 ----A---- C:\Windows\SYSWOW64\KBDTUQ.DLL
2013-09-18 14:11:35 ----A---- C:\Windows\SYSWOW64\KBDGKL.DLL
2013-09-18 14:11:35 ----A---- C:\Windows\system32\wmploc.DLL
2013-09-18 14:11:35 ----A---- C:\Windows\system32\KBDTUQ.DLL
2013-09-18 14:11:35 ----A---- C:\Windows\system32\KBDSG.DLL
2013-09-18 14:11:35 ----A---- C:\Windows\system32\KBDNEPR.DLL
2013-09-18 14:11:35 ----A---- C:\Windows\system32\kbdlk41a.dll
2013-09-18 14:11:35 ----A---- C:\Windows\system32\KBDGR1.DLL
2013-09-18 14:11:35 ----A---- C:\Windows\system32\KBDGKL.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\SYSWOW64\KBDUS.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\SYSWOW64\KBDTURME.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\SYSWOW64\KBDTAJIK.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\SYSWOW64\KBDMON.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\SYSWOW64\KBDINTEL.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\SYSWOW64\KBDINHIN.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\SYSWOW64\KBDGEO.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\SYSWOW64\KBDCZ1.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\SYSWOW64\KBDBLR.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\system32\KBDGEO.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\system32\KBDCZ1.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\SYSWOW64\KBDUGHR1.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\SYSWOW64\KBDMAORI.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\SYSWOW64\KBDLT1.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\SYSWOW64\KBDINTAM.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\SYSWOW64\KBDINORI.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\SYSWOW64\KBDINMAR.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\SYSWOW64\KBDINKAN.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\SYSWOW64\KBDINBEN.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\system32\KBDUS.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\system32\KBDUGHR1.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\system32\KBDTAJIK.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\system32\KBDMON.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\system32\KBDLT1.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\SYSWOW64\KBDSF.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\SYSWOW64\KBDPO.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\SYSWOW64\KBDNEPR.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\SYSWOW64\KBDBULG.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\SYSWOW64\KBDBASH.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\system32\KBDTURME.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\system32\KBDMAORI.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\system32\KBDINTEL.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\system32\KBDINORI.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\system32\KBDINMAR.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\system32\KBDINKAN.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\system32\KBDINHIN.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\system32\KBDBULG.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\system32\KBDBLR.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\system32\KBDBASH.DLL
2013-09-18 14:11:31 ----A---- C:\Windows\SYSWOW64\spwizres.dll
2013-09-18 14:11:31 ----A---- C:\Windows\SYSWOW64\pifmgr.dll
2013-09-18 14:11:31 ----A---- C:\Windows\SYSWOW64\nlsbres.dll
2013-09-18 14:11:31 ----A---- C:\Windows\system32\spwizres.dll
2013-09-18 14:11:31 ----A---- C:\Windows\system32\pifmgr.dll
2013-09-18 14:11:31 ----A---- C:\Windows\system32\nlsbres.dll
2013-09-18 14:11:31 ----A---- C:\Windows\system32\BlbEvents.dll
2013-09-18 14:11:23 ----A---- C:\Windows\SYSWOW64\wdscore.dll
2013-09-18 14:11:23 ----A---- C:\Windows\system32\dpx.dll
2013-09-18 14:11:19 ----A---- C:\Windows\SYSWOW64\sqmapi.dll
2013-09-18 14:11:08 ----A---- C:\Windows\SYSWOW64\wbemcomn.dll
2013-09-18 14:09:52 ----A---- C:\Windows\system32\wbemcomn.dll
2013-09-18 14:09:46 ----A---- C:\Windows\system32\sqmapi.dll
2013-09-18 13:47:46 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2013-09-18 13:47:46 ----A---- C:\Windows\system32\drivers\usbport.sys
2013-09-18 13:47:46 ----A---- C:\Windows\system32\drivers\usbohci.sys
2013-09-18 13:47:46 ----A---- C:\Windows\system32\drivers\usbhub.sys
2013-09-18 13:47:46 ----A---- C:\Windows\system32\drivers\usbehci.sys
2013-09-18 13:47:46 ----A---- C:\Windows\system32\drivers\usbd.sys
2013-09-18 13:47:46 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2013-09-18 13:47:41 ----A---- C:\Windows\SYSWOW64\fsutil.exe
2013-09-18 13:47:41 ----A---- C:\Windows\SYSWOW64\esent.dll
2013-09-18 13:47:41 ----A---- C:\Windows\system32\fsutil.exe
2013-09-18 13:47:41 ----A---- C:\Windows\system32\esent.dll
2013-09-18 13:47:41 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2013-09-18 13:47:41 ----A---- C:\Windows\system32\drivers\storport.sys
2013-09-18 13:47:41 ----A---- C:\Windows\system32\drivers\nvstor.sys
2013-09-18 13:47:41 ----A---- C:\Windows\system32\drivers\nvraid.sys
2013-09-18 13:47:41 ----A---- C:\Windows\system32\drivers\iaStorV.sys
2013-09-18 13:47:41 ----A---- C:\Windows\system32\drivers\amdxata.sys
2013-09-18 13:47:41 ----A---- C:\Windows\system32\drivers\amdsata.sys
2013-09-18 13:35:29 ----D---- C:\Program Files (x86)\Microsoft Works
2013-09-18 13:35:07 ----D---- C:\Windows\PCHEALTH
2013-09-18 13:31:15 ----D---- C:\Program Files\Microsoft Office
2013-09-18 13:30:20 ----D---- C:\ProgramData\Microsoft Help
2013-09-18 13:29:45 ----RD---- C:\MSOCache
2013-09-18 11:54:53 ----D---- C:\Download
2013-09-18 11:01:18 ----D---- C:\Windows\SYSWOW64\Wat
2013-09-18 11:01:18 ----D---- C:\Windows\system32\Wat
2013-09-18 09:32:14 ----A---- C:\Windows\ntbtlog.txt
2013-09-18 09:19:44 ----D---- C:\Windows\Minidump
2013-09-18 08:31:45 ----D---- C:\Windows\system32\MRT
2013-09-18 08:31:40 ----A---- C:\Windows\system32\MRT.exe
2013-09-18 08:10:41 ----A---- C:\Windows\system32\RTNUninst64.dll
2013-09-18 08:10:41 ----A---- C:\Windows\system32\RtNicProp64.dll
2013-09-18 08:10:41 ----A---- C:\Windows\system32\drivers\Rt64win7.sys
2013-09-18 08:10:38 ----D---- C:\Program Files (x86)\Realtek
2013-09-18 08:09:49 ----A---- C:\Windows\system32\drivers\avgtpx64.sys
2013-09-18 08:09:35 ----D---- C:\ProgramData\AVG SafeGuard toolbar
2013-09-18 08:09:32 ----D---- C:\Program Files (x86)\AVG SafeGuard toolbar
2013-09-18 08:09:31 ----A---- C:\Windows\system32\Wdfres.dll
2013-09-18 08:09:31 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2013-09-18 08:09:31 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2013-09-18 08:08:37 ----A---- C:\Windows\system32\drivers\SWDUMon.sys
2013-09-18 08:08:25 ----HD---- C:\ProgramData\Common Files
2013-09-18 08:08:14 ----D---- C:\Program Files (x86)\SlimDrivers
2013-09-18 07:56:49 ----A---- C:\Windows\system32\browserchoice.exe
2013-09-18 07:40:50 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2013-09-18 07:40:50 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2013-09-18 07:40:50 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2013-09-18 07:40:50 ----A---- C:\Windows\system32\fontsub.dll
2013-09-18 07:40:50 ----A---- C:\Windows\system32\atmlib.dll
2013-09-18 07:40:50 ----A---- C:\Windows\system32\atmfd.dll
2013-09-18 07:39:17 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2013-09-18 07:39:17 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2013-09-18 07:39:16 ----A---- C:\Windows\system32\WUDFx.dll
2013-09-18 07:39:16 ----A---- C:\Windows\system32\WUDFSvc.dll
2013-09-18 07:39:16 ----A---- C:\Windows\system32\WUDFPlatform.dll
2013-09-18 07:39:16 ----A---- C:\Windows\system32\WUDFHost.exe
2013-09-18 07:39:16 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2013-09-18 07:35:33 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2013-09-18 07:35:33 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2013-09-18 07:35:24 ----D---- C:\Program Files (x86)\Winamp Detect
2013-09-18 07:35:08 ----D---- C:\Users\Kuba\AppData\Roaming\Winamp
2013-09-18 07:35:08 ----D---- C:\Program Files (x86)\Winamp
2013-09-18 07:33:25 ----D---- C:\Users\Kuba\AppData\Roaming\MiniLyrics
2013-09-18 07:33:00 ----A---- C:\Windows\SYSWOW64\wmi.dll
2013-09-18 07:33:00 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2013-09-18 07:33:00 ----A---- C:\Windows\system32\wmi.dll
2013-09-18 07:33:00 ----A---- C:\Windows\system32\imagehlp.dll
2013-09-18 07:33:00 ----A---- C:\Windows\system32\drivers\fs_rec.sys
2013-09-18 07:10:00 ----D---- C:\rsit
2013-09-18 07:10:00 ----D---- C:\Program Files\trend micro
2013-09-18 06:08:51 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-09-18 06:08:50 ----D---- C:\Windows\SYSWOW64\Macromed
2013-09-18 06:08:48 ----D---- C:\Windows\system32\Macromed
2013-09-18 05:48:01 ----D---- C:\ProgramData\Spybot - Search & Destroy
2013-09-18 05:47:41 ----A---- C:\Windows\system32\sdnclean64.exe
2013-09-18 05:47:37 ----D---- C:\Program Files (x86)\Spybot - Search & Destroy 2
2013-09-18 05:45:43 ----D---- C:\Program Files\CCleaner
2013-09-18 05:21:43 ----A---- C:\Windows\SYSWOW64\xmllite.dll
2013-09-18 05:21:43 ----A---- C:\Windows\system32\xmllite.dll
2013-09-18 05:21:41 ----A---- C:\Windows\SYSWOW64\odbctrac.dll
2013-09-18 05:21:41 ----A---- C:\Windows\SYSWOW64\odbcjt32.dll
2013-09-18 05:21:41 ----A---- C:\Windows\SYSWOW64\odbccu32.dll
2013-09-18 05:21:41 ----A---- C:\Windows\SYSWOW64\odbccr32.dll
2013-09-18 05:21:41 ----A---- C:\Windows\SYSWOW64\odbccp32.dll
2013-09-18 05:21:41 ----A---- C:\Windows\system32\odbctrac.dll
2013-09-18 05:21:41 ----A---- C:\Windows\system32\odbccu32.dll
2013-09-18 05:21:41 ----A---- C:\Windows\system32\odbccr32.dll
2013-09-18 05:21:41 ----A---- C:\Windows\system32\odbccp32.dll
2013-09-18 05:21:23 ----A---- C:\Windows\system32\poqexec.exe
2013-09-18 05:21:22 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2013-09-18 05:21:18 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2013-09-18 05:21:18 ----A---- C:\Windows\system32\mstscax.dll
2013-09-18 05:21:17 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2013-09-18 05:21:17 ----A---- C:\Windows\SYSWOW64\aaclient.dll
2013-09-18 05:21:17 ----A---- C:\Windows\system32\tsgqec.dll
2013-09-18 05:21:17 ----A---- C:\Windows\system32\aaclient.dll
2013-09-18 05:20:59 ----A---- C:\Windows\SYSWOW64\explorer.exe
2013-09-18 05:20:59 ----A---- C:\Windows\explorer.exe
2013-09-18 05:20:46 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2013-09-18 05:20:46 ----A---- C:\Windows\system32\sbe.dll
2013-09-18 05:20:46 ----A---- C:\Windows\system32\CPFilters.dll
2013-09-18 05:20:45 ----A---- C:\Windows\SYSWOW64\sbe.dll
2013-09-18 05:20:17 ----A---- C:\Windows\system32\quartz.dll
2013-09-18 05:20:16 ----A---- C:\Windows\SYSWOW64\quartz.dll
2013-09-18 05:20:16 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2013-09-18 05:20:16 ----A---- C:\Windows\system32\qdvd.dll
2013-09-18 05:20:08 ----A---- C:\Windows\SYSWOW64\ntshrui.dll
2013-09-18 05:20:08 ----A---- C:\Windows\system32\ntshrui.dll
2013-09-18 05:19:57 ----A---- C:\Windows\system32\tquery.dll
2013-09-18 05:19:56 ----A---- C:\Windows\SYSWOW64\tquery.dll
2013-09-18 05:19:56 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2013-09-18 05:19:56 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2013-09-18 05:19:56 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2013-09-18 05:19:56 ----A---- C:\Windows\SYSWOW64\mssph.dll
2013-09-18 05:19:56 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2013-09-18 05:19:56 ----A---- C:\Windows\system32\SearchIndexer.exe
2013-09-18 05:19:56 ----A---- C:\Windows\system32\mssvp.dll
2013-09-18 05:19:56 ----A---- C:\Windows\system32\mssrch.dll
2013-09-18 05:19:55 ----A---- C:\Windows\SYSWOW64\SearchFilterHost.exe
2013-09-18 05:19:55 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2013-09-18 05:19:55 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2013-09-18 05:19:55 ----A---- C:\Windows\system32\SearchFilterHost.exe
2013-09-18 05:19:55 ----A---- C:\Windows\system32\mssphtb.dll
2013-09-18 05:19:55 ----A---- C:\Windows\system32\mssph.dll
2013-09-18 05:19:55 ----A---- C:\Windows\system32\msscntrs.dll
2013-09-18 05:19:54 ----A---- C:\Windows\SYSWOW64\msscntrs.dll
2013-09-18 05:19:51 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2013-09-18 05:19:51 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2013-09-18 05:19:51 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2013-09-18 05:19:45 ----A---- C:\Windows\SYSWOW64\webio.dll
2013-09-18 05:19:45 ----A---- C:\Windows\system32\webio.dll
2013-09-18 05:19:15 ----A---- C:\Windows\system32\drivers\ntfs.sys
2013-09-18 05:18:53 ----A---- C:\Windows\SYSWOW64\mfc42u.dll
2013-09-18 05:18:53 ----A---- C:\Windows\SYSWOW64\mfc42.dll
2013-09-18 05:18:53 ----A---- C:\Windows\system32\mfc42u.dll
2013-09-18 05:18:53 ----A---- C:\Windows\system32\mfc42.dll
2013-09-18 05:18:45 ----A---- C:\Windows\system32\drivers\usb8023.sys
2013-09-18 05:18:44 ----A---- C:\Windows\system32\rdrmemptylst.exe
2013-09-18 05:18:44 ----A---- C:\Windows\system32\rdpwsx.dll
2013-09-18 05:18:44 ----A---- C:\Windows\system32\rdpcorekmts.dll
2013-09-18 05:18:43 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2013-09-18 05:18:43 ----A---- C:\Windows\SYSWOW64\schannel.dll
2013-09-18 05:18:43 ----A---- C:\Windows\SYSWOW64\secur32.dll
2013-09-18 05:18:43 ----A---- C:\Windows\system32\sspisrv.dll
2013-09-18 05:18:43 ----A---- C:\Windows\system32\sspicli.dll
2013-09-18 05:18:43 ----A---- C:\Windows\system32\schannel.dll
2013-09-18 05:18:43 ----A---- C:\Windows\system32\secur32.dll
2013-09-18 05:18:43 ----A---- C:\Windows\system32\lsass.exe
2013-09-18 05:18:43 ----A---- C:\Windows\system32\lsasrv.dll
2013-09-18 05:18:43 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2013-09-18 05:18:43 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2013-09-18 05:18:43 ----A---- C:\Windows\system32\drivers\cng.sys
2013-09-18 05:18:30 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2013-09-18 05:18:30 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2013-09-18 05:18:30 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2013-09-18 05:18:30 ----A---- C:\Windows\system32\msxml6.dll
2013-09-18 05:18:30 ----A---- C:\Windows\system32\msxml3r.dll
2013-09-18 05:18:30 ----A---- C:\Windows\system32\msxml3.dll
2013-09-18 05:18:29 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2013-09-18 05:18:27 ----A---- C:\Windows\system32\profsvc.dll
2013-09-18 05:18:27 ----A---- C:\Windows\system32\profprov.dll
2013-09-18 05:18:24 ----A---- C:\Windows\SYSWOW64\dnscacheugc.exe
2013-09-18 05:18:24 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2013-09-18 05:18:24 ----A---- C:\Windows\system32\dnsrslvr.dll
2013-09-18 05:18:24 ----A---- C:\Windows\system32\dnscacheugc.exe
2013-09-18 05:18:24 ----A---- C:\Windows\system32\dnsapi.dll
2013-09-18 05:18:01 ----A---- C:\Windows\SYSWOW64\dpnet.dll
2013-09-18 05:18:01 ----A---- C:\Windows\SYSWOW64\dpnaddr.dll
2013-09-18 05:18:01 ----A---- C:\Windows\system32\dpnet.dll
2013-09-18 05:18:01 ----A---- C:\Windows\system32\dpnaddr.dll
2013-09-18 05:18:00 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2013-09-18 05:18:00 ----A---- C:\Windows\system32\ncrypt.dll
2013-09-18 05:17:45 ----A---- C:\Windows\SYSWOW64\usp10.dll
2013-09-18 05:17:45 ----A---- C:\Windows\system32\usp10.dll
2013-09-18 05:17:45 ----A---- C:\Windows\system32\drivers\srvnet.sys
2013-09-18 05:17:45 ----A---- C:\Windows\system32\drivers\srv2.sys
2013-09-18 05:17:45 ----A---- C:\Windows\system32\drivers\srv.sys
2013-09-18 05:17:43 ----A---- C:\Windows\system32\drivers\netio.sys
2013-09-18 05:17:43 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2013-09-18 05:17:37 ----A---- C:\Windows\SYSWOW64\gameux.dll
2013-09-18 05:17:37 ----A---- C:\Windows\system32\Wpc.dll
2013-09-18 05:17:37 ----A---- C:\Windows\system32\gameux.dll
2013-09-18 05:17:36 ----A---- C:\Windows\SYSWOW64\Wpc.dll
2013-09-18 05:17:23 ----A---- C:\Windows\SYSWOW64\psisdecd.dll
2013-09-18 05:17:23 ----A---- C:\Windows\system32\psisdecd.dll
2013-09-18 05:17:14 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2013-09-18 05:17:06 ----A---- C:\Windows\system32\drivers\afd.sys
2013-09-18 05:17:05 ----A---- C:\Windows\system32\drivers\partmgr.sys
2013-09-18 05:17:02 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2013-09-18 05:17:02 ----A---- C:\Windows\system32\kerberos.dll
2013-09-18 05:16:57 ----A---- C:\Windows\SYSWOW64\msi.dll
2013-09-18 05:16:57 ----A---- C:\Windows\system32\msi.dll
2013-09-18 05:16:24 ----A---- C:\Windows\SYSWOW64\synceng.dll
2013-09-18 05:16:24 ----A---- C:\Windows\system32\synceng.dll
2013-09-18 05:16:23 ----A---- C:\Windows\system32\winresume.exe
2013-09-18 05:16:23 ----A---- C:\Windows\system32\winload.exe
2013-09-18 05:16:22 ----A---- C:\Windows\system32\setbcdlocale.dll
2013-09-18 05:16:22 ----A---- C:\Windows\system32\kdusb.dll
2013-09-18 05:16:22 ----A---- C:\Windows\system32\kdcom.dll
2013-09-18 05:16:22 ----A---- C:\Windows\system32\kd1394.dll
2013-09-18 05:15:22 ----A---- C:\Windows\system32\umpnpmgr.dll
2013-09-18 05:15:21 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2013-09-18 05:15:21 ----A---- C:\Windows\SYSWOW64\devrtl.dll
2013-09-18 05:15:21 ----A---- C:\Windows\SYSWOW64\devobj.dll
2013-09-18 05:15:21 ----A---- C:\Windows\SYSWOW64\cfgmgr32.dll
2013-09-18 05:15:21 ----A---- C:\Windows\system32\cfgmgr32.dll
2013-09-18 05:15:14 ----A---- C:\Windows\system32\netapi32.dll
2013-09-18 05:15:14 ----A---- C:\Windows\system32\browser.dll
2013-09-18 05:15:14 ----A---- C:\Windows\system32\browcli.dll
2013-09-18 05:15:13 ----A---- C:\Windows\SYSWOW64\netapi32.dll
2013-09-18 05:15:13 ----A---- C:\Windows\SYSWOW64\browcli.dll
2013-09-18 05:15:02 ----A---- C:\Windows\SYSWOW64\prevhost.exe
2013-09-18 05:15:02 ----A---- C:\Windows\system32\prevhost.exe
2013-09-18 05:15:00 ----A---- C:\Windows\system32\drivers\fvevol.sys
2013-09-18 05:14:55 ----A---- C:\Windows\SYSWOW64\srclient.dll
2013-09-18 05:14:55 ----A---- C:\Windows\system32\srcore.dll
2013-09-18 05:14:55 ----A---- C:\Windows\system32\rstrui.exe
2013-09-18 05:14:51 ----A---- C:\Windows\system32\WFS.exe
2013-09-18 05:14:51 ----A---- C:\Windows\system32\FXSCOVER.exe
2013-09-18 05:14:48 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2013-09-18 05:14:48 ----A---- C:\Windows\system32\inetcomm.dll
2013-09-18 05:14:46 ----A---- C:\Windows\system32\msvcrt.dll
2013-09-18 05:14:45 ----A---- C:\Windows\SYSWOW64\msvcrt.dll
2013-09-18 05:14:34 ----A---- C:\Windows\system32\localspl.dll
2013-09-18 05:14:28 ----A---- C:\Windows\system32\drivers\bowser.sys
2013-09-18 05:14:22 ----A---- C:\Windows\SYSWOW64\oleacc.dll
2013-09-18 05:14:22 ----A---- C:\Windows\system32\oleaut32.dll
2013-09-18 05:14:22 ----A---- C:\Windows\system32\oleacc.dll
2013-09-18 05:14:21 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2013-09-18 05:14:13 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2013-09-18 05:14:13 ----A---- C:\Windows\system32\EncDec.dll
2013-09-18 05:13:50 ----A---- C:\Windows\SYSWOW64\cdosys.dll
2013-09-18 05:13:50 ----A---- C:\Windows\system32\cdosys.dll
2013-09-18 05:13:24 ----D---- C:\ProgramData\Razer
2013-09-18 05:13:24 ----D---- C:\Program Files (x86)\Razer
2013-09-18 05:13:09 ----A---- C:\Windows\system32\spoolsv.exe
2013-09-18 05:13:09 ----A---- C:\Windows\splwow64.exe
2013-09-18 05:06:14 ----D---- C:\Program Files\Common Files\Symantec Shared
2013-09-18 05:06:14 ----A---- C:\Windows\system32\drivers\SYMEVENT64x86.SYS
2013-09-18 05:05:25 ----D---- C:\Windows\system32\drivers\NISx64
2013-09-18 05:05:23 ----D---- C:\Program Files (x86)\Norton Internet Security
2013-09-18 05:05:22 ----D---- C:\ProgramData\Norton
2013-09-18 05:03:18 ----D---- C:\ProgramData\NortonInstaller
2013-09-18 05:03:18 ----D---- C:\Program Files (x86)\NortonInstaller
2013-09-18 04:56:54 ----A---- C:\Windows\SYSWOW64\packager.dll
2013-09-18 04:56:54 ----A---- C:\Windows\system32\packager.dll
2013-09-18 04:54:15 ----D---- C:\Program Files (x86)\AGEIA Technologies
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvopencl.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvoglv64.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\NvIFR64.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\NvFBC64.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvdispgenco6432049.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvdispco6432049.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvd3dumx.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvcuvid.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvcuvenc.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvcuda.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvcompiler.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2013-09-17 22:36:14 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2013-09-17 22:34:45 ----D---- C:\Program Files (x86)\Microsoft.NET
2013-09-17 22:33:14 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2013-09-17 22:33:01 ----N---- C:\Windows\Vmix108.dll
2013-09-17 22:33:01 ----N---- C:\Windows\SYSWOW64\cmpa108.dll
2013-09-17 22:33:01 ----N---- C:\Windows\SYSWOW64\CM108.dll
2013-09-17 22:33:01 ----N---- C:\Windows\system32\Cmeau108.exe
2013-09-17 22:32:41 ----N---- C:\Windows\system32\CmiInstallResAll64.dll
2013-09-17 22:32:41 ----N---- C:\Windows\cm108.ini
2013-09-17 22:32:41 ----A---- C:\Windows\difxapi.dll
2013-09-17 22:32:04 ----A---- C:\Windows\system32\drivers\CM10864.sys
2013-09-17 22:27:24 ----D---- C:\Users\Kuba\AppData\Roaming\LolClient
2013-09-17 22:27:22 ----D---- C:\Users\Kuba\AppData\Roaming\Macromedia
2013-09-17 22:27:21 ----D---- C:\Users\Kuba\AppData\Roaming\Adobe
2013-09-17 22:19:22 ----D---- C:\Windows\Panther
2013-09-17 21:49:15 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2013-09-17 21:49:15 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2013-09-17 21:49:15 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2013-09-17 21:49:15 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2013-09-17 21:49:14 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2013-09-17 21:47:41 ----SHD---- C:\Windows\SYSWOW64\AI_RecycleBin
2013-09-17 21:46:17 ----N---- C:\Windows\system32\MpSigStub.exe
2013-09-17 21:45:24 ----D---- C:\ProgramData\PMB Files
2013-09-17 21:45:22 ----D---- C:\Program Files (x86)\Pando Networks
2013-09-17 21:44:46 ----D---- C:\Users\Kuba\AppData\Roaming\Riot Games
2013-09-17 21:41:27 ----D---- C:\Users\Kuba\AppData\Roaming\Skype
2013-09-17 21:41:24 ----RD---- C:\Program Files (x86)\Skype
2013-09-17 21:41:20 ----SHD---- C:\Windows\Installer
2013-09-17 21:41:20 ----D---- C:\ProgramData\Skype
2013-09-17 21:39:32 ----D---- C:\Users\Kuba\AppData\Roaming\Mozilla
2013-09-17 21:39:25 ----D---- C:\ProgramData\Mozilla
2013-09-17 21:39:25 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2013-09-17 21:36:32 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2013-09-17 21:36:29 ----D---- C:\ProgramData\NVIDIA
2013-09-17 21:36:25 ----A---- C:\Windows\system32\nvvsvc.exe
2013-09-17 21:36:25 ----A---- C:\Windows\system32\nvsvcr.dll
2013-09-17 21:36:25 ----A---- C:\Windows\system32\nvsvc64.dll
2013-09-17 21:36:25 ----A---- C:\Windows\system32\nvshext.dll
2013-09-17 21:36:25 ----A---- C:\Windows\system32\nvmctray.dll
2013-09-17 21:36:25 ----A---- C:\Windows\system32\nvcpl.dll
2013-09-17 21:36:11 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2013-09-17 21:36:11 ----A---- C:\Windows\system32\OpenCL.dll
2013-09-17 21:35:53 ----D---- C:\ProgramData\NVIDIA Corporation
2013-09-17 21:35:49 ----D---- C:\Program Files\NVIDIA Corporation
2013-09-17 21:35:46 ----D---- C:\Users\Kuba\AppData\Roaming\GHISLER
2013-09-17 21:35:19 ----D---- C:\Programy
2013-09-17 21:34:33 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2013-09-17 21:34:33 ----A---- C:\Windows\system32\rdpcore.dll
2013-09-17 21:34:33 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2013-09-17 21:31:17 ----A---- C:\Windows\system32\wups2.dll
2013-09-17 21:31:17 ----A---- C:\Windows\system32\wucltux.dll
2013-09-17 21:31:17 ----A---- C:\Windows\system32\wuauclt.exe
2013-09-17 21:31:16 ----A---- C:\Windows\system32\wuaueng.dll
2013-09-17 21:31:09 ----A---- C:\Windows\system32\wups.dll
2013-09-17 21:31:09 ----A---- C:\Windows\system32\wudriver.dll
2013-09-17 21:31:09 ----A---- C:\Windows\system32\wuapi.dll
2013-09-17 21:30:57 ----A---- C:\Windows\system32\wuwebv.dll
2013-09-17 21:30:57 ----A---- C:\Windows\system32\wuapp.exe
2013-09-17 21:30:45 ----D---- C:\Users\Kuba\AppData\Roaming\Identities
2013-09-17 21:30:38 ----SD---- C:\Users\Kuba\AppData\Roaming\Microsoft
2013-09-17 21:30:38 ----D---- C:\Users\Kuba\AppData\Roaming\Media Center Programs
2013-09-17 21:30:27 ----SHD---- C:\ProgramData\Šablony
2013-09-17 21:30:27 ----SHD---- C:\ProgramData\Plocha
2013-09-17 21:30:27 ----SHD---- C:\ProgramData\Oblíbené položky
2013-09-17 21:30:27 ----SHD---- C:\ProgramData\Nabídka Start
2013-09-17 21:30:27 ----SHD---- C:\ProgramData\Dokumenty
2013-09-17 21:30:27 ----SHD---- C:\ProgramData\Data aplikací
2013-09-17 21:30:27 ----D---- C:\Recovery
2013-09-17 21:30:24 ----D---- C:\Windows\SoftwareDistribution
2013-09-17 21:20:24 ----D---- C:\Windows\Prefetch
2013-09-17 21:20:10 ----ASH---- C:\pagefile.sys
2013-09-17 21:20:09 ----SHD---- C:\System Volume Information
2013-09-17 21:20:09 ----ASH---- C:\hiberfil.sys
2013-08-29 06:29:54 ----A---- C:\Windows\SYSWOW64\rzdevicedll.dll
2013-08-21 09:34:32 ----A---- C:\Windows\system32\drivers\rzudd.sys
======List of files/folders modified in the last 1 month======
2013-09-20 03:35:22 ----D---- C:\Windows\Temp
2013-09-20 03:00:46 ----D---- C:\Windows\winsxs
2013-09-20 03:00:25 ----D---- C:\Windows\system32\config
2013-09-19 23:44:23 ----D---- C:\Windows\rescache
2013-09-19 23:43:56 ----D---- C:\Windows\Logs
2013-09-19 19:49:36 ----D---- C:\Windows\System32
2013-09-19 19:49:36 ----D---- C:\Windows\inf
2013-09-19 19:49:36 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-09-19 19:48:13 ----SD---- C:\ProgramData\Microsoft
Re: Ovládá mi někdo pc na dálku
2013-09-19 19:48:13 ----D---- C:\Windows\system32\drivers
2013-09-19 19:48:11 ----D---- C:\Windows\system32\drivers\UMDF
2013-09-19 17:40:04 ----D---- C:\Windows\Microsoft.NET
2013-09-19 17:39:42 ----RSD---- C:\Windows\assembly
2013-09-19 15:53:20 ----D---- C:\Windows\system32\catroot
2013-09-19 15:39:38 ----D---- C:\Windows\SYSWOW64\cs-CZ
2013-09-19 15:39:38 ----D---- C:\Windows\SysWOW64
2013-09-19 15:39:38 ----D---- C:\Windows\system32\cs-CZ
2013-09-19 15:39:37 ----D---- C:\Windows\AppPatch
2013-09-19 15:39:34 ----D---- C:\Program Files\Windows Defender
2013-09-19 15:39:34 ----D---- C:\Program Files (x86)\Windows Defender
2013-09-19 15:39:26 ----D---- C:\Program Files\Internet Explorer
2013-09-19 15:39:26 ----D---- C:\Program Files (x86)\Internet Explorer
2013-09-19 15:39:25 ----D---- C:\Windows\SYSWOW64\migration
2013-09-19 15:39:25 ----D---- C:\Windows\SYSWOW64\en-US
2013-09-19 15:39:22 ----D---- C:\Windows\system32\migration
2013-09-19 15:39:22 ----D---- C:\Windows\system32\en-US
2013-09-19 15:39:22 ----D---- C:\Windows\PolicyDefinitions
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\zh-TW
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\zh-HK
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\zh-CN
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\tr-TR
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\sv-SE
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\ru-RU
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\pt-PT
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\pt-BR
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\pl-PL
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\nl-NL
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\ko-KR
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\ja-JP
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\it-IT
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\hu-HU
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\fr-FR
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\fi-FI
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\es-ES
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\el-GR
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\de-DE
2013-09-19 15:39:18 ----D---- C:\Windows\SYSWOW64\nb-NO
2013-09-19 15:39:18 ----D---- C:\Windows\SYSWOW64\da-DK
2013-09-19 15:39:18 ----D---- C:\Windows\system32\pt-PT
2013-09-19 15:39:18 ----D---- C:\Windows\system32\pt-BR
2013-09-19 15:39:18 ----D---- C:\Windows\system32\it-IT
2013-09-19 15:39:17 ----D---- C:\Windows\system32\zh-TW
2013-09-19 15:39:17 ----D---- C:\Windows\system32\zh-HK
2013-09-19 15:39:17 ----D---- C:\Windows\system32\zh-CN
2013-09-19 15:39:17 ----D---- C:\Windows\system32\tr-TR
2013-09-19 15:39:17 ----D---- C:\Windows\system32\sv-SE
2013-09-19 15:39:17 ----D---- C:\Windows\system32\ru-RU
2013-09-19 15:39:17 ----D---- C:\Windows\system32\pl-PL
2013-09-19 15:39:17 ----D---- C:\Windows\system32\nl-NL
2013-09-19 15:39:17 ----D---- C:\Windows\system32\nb-NO
2013-09-19 15:39:17 ----D---- C:\Windows\system32\ko-KR
2013-09-19 15:39:17 ----D---- C:\Windows\system32\ja-JP
2013-09-19 15:39:17 ----D---- C:\Windows\system32\hu-HU
2013-09-19 15:39:17 ----D---- C:\Windows\system32\fr-FR
2013-09-19 15:39:17 ----D---- C:\Windows\system32\fi-FI
2013-09-19 15:39:17 ----D---- C:\Windows\system32\es-ES
2013-09-19 15:39:17 ----D---- C:\Windows\system32\el-GR
2013-09-19 15:39:17 ----D---- C:\Windows\system32\de-DE
2013-09-19 15:39:17 ----D---- C:\Windows\system32\da-DK
2013-09-19 15:39:09 ----D---- C:\Program Files\Windows Journal
2013-09-19 15:39:03 ----D---- C:\Windows\system32\DriverStore
2013-09-19 14:31:10 ----D---- C:\Windows\system32\wdi
2013-09-19 14:17:26 ----D---- C:\Windows\system32\catroot2
2013-09-19 14:03:52 ----D---- C:\Windows
2013-09-19 03:31:13 ----D---- C:\Windows\system32\drivers\etc
2013-09-19 03:08:03 ----A---- C:\Windows\system.ini
2013-09-19 03:02:31 ----D---- C:\Windows\SYSWOW64\drivers
2013-09-19 03:02:30 ----D---- C:\Program Files (x86)\Common Files
2013-09-19 02:08:16 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-09-19 02:05:47 ----RSD---- C:\Windows\Fonts
2013-09-19 01:45:34 ----D---- C:\Program Files (x86)\Windows Sidebar
2013-09-19 01:45:34 ----D---- C:\Program Files (x86)\Windows Portable Devices
2013-09-19 01:45:34 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2013-09-19 01:45:34 ----D---- C:\Program Files (x86)\Windows Media Player
2013-09-19 01:45:34 ----D---- C:\Program Files (x86)\Windows Mail
2013-09-19 01:45:33 ----D---- C:\Program Files\Windows Sidebar
2013-09-19 01:45:33 ----D---- C:\Program Files\Windows Mail
2013-09-19 01:45:33 ----D---- C:\Program Files\DVD Maker
2013-09-19 01:45:32 ----D---- C:\Program Files\Windows Portable Devices
2013-09-19 01:45:32 ----D---- C:\Program Files\Windows Photo Viewer
2013-09-19 01:45:32 ----D---- C:\Program Files\Windows Media Player
2013-09-19 01:45:32 ----D---- C:\Program Files\Common Files\System
2013-09-19 01:45:30 ----D---- C:\Windows\servicing
2013-09-19 01:45:30 ----D---- C:\Windows\ehome
2013-09-19 01:45:16 ----D---- C:\Windows\SYSWOW64\oobe
2013-09-19 01:45:15 ----D---- C:\Windows\SYSWOW64\Setup
2013-09-19 01:45:15 ----D---- C:\Windows\SYSWOW64\cs
2013-09-19 01:45:15 ----D---- C:\Windows\SYSWOW64\AdvancedInstallers
2013-09-19 01:45:12 ----D---- C:\Windows\SYSWOW64\wbem
2013-09-19 01:45:12 ----D---- C:\Windows\SYSWOW64\sppui
2013-09-19 01:45:12 ----D---- C:\Windows\SYSWOW64\manifeststore
2013-09-19 01:45:11 ----D---- C:\Windows\SYSWOW64\migwiz
2013-09-19 01:45:11 ----D---- C:\Windows\SYSWOW64\Dism
2013-09-19 01:44:43 ----D---- C:\Windows\system32\oobe
2013-09-19 01:44:42 ----D---- C:\Windows\system32\Setup
2013-09-19 01:44:42 ----D---- C:\Windows\system32\cs
2013-09-19 01:44:42 ----D---- C:\Windows\system32\AdvancedInstallers
2013-09-19 01:44:40 ----D---- C:\Windows\system32\sppui
2013-09-19 01:44:40 ----D---- C:\Windows\system32\manifeststore
2013-09-19 01:44:39 ----D---- C:\Windows\system32\wbem
2013-09-19 01:44:39 ----D---- C:\Windows\system32\drivers\cs-CZ
2013-09-19 01:44:38 ----D---- C:\Windows\system32\migwiz
2013-09-19 01:44:38 ----D---- C:\Windows\system32\Dism
2013-09-19 01:42:31 ----D---- C:\Windows\system32\Boot
2013-09-19 01:39:12 ----A---- C:\Windows\SYSWOW64\msclmd.dll
2013-09-19 01:39:11 ----A---- C:\Windows\system32\msclmd.dll
2013-09-18 14:20:35 ----RD---- C:\Program Files
2013-09-18 13:35:29 ----RD---- C:\Program Files (x86)
2013-09-18 13:31:07 ----D---- C:\Windows\ShellNew
2013-09-18 13:30:20 ----D---- C:\ProgramData
2013-09-18 08:31:43 ----D---- C:\Windows\debug
2013-09-18 08:08:58 ----D---- C:\Windows\system32\Tasks
2013-09-18 08:08:56 ----D---- C:\Windows\Tasks
2013-09-18 05:06:14 ----D---- C:\Program Files\Common Files
2013-09-17 22:33:01 ----D---- C:\Windows\system
2013-09-17 21:36:36 ----RD---- C:\Users
2013-09-17 21:36:20 ----D---- C:\Windows\Help
2013-09-17 21:34:55 ----D---- C:\Windows\system32\CodeIntegrity
2013-09-17 21:30:45 ----D---- C:\Windows\system32\restore
2013-09-17 21:30:27 ----D---- C:\Windows\system32\Recovery
2013-09-17 21:30:27 ----D---- C:\Program Files\Windows NT
2013-09-17 21:23:40 ----D---- C:\Windows\system32\sysprep
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 SymDS;Symantec Data Store; C:\Windows\system32\drivers\NISx64\1500010.003\SYMDS64.SYS [2013-08-01 493656]
R0 SymEFA;Symantec Extended File Attributes; C:\Windows\system32\drivers\NISx64\1500010.003\SYMEFA64.SYS [2013-08-05 1147480]
R1 avgtp;avgtp; \??\C:\Windows\system32\drivers\avgtpx64.sys [2013-09-19 45856]
R1 BHDrvx64;BHDrvx64; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\BASHDefs\20130903.002\BHDrvx64.sys [2013-09-04 1525336]
R1 ccSet_NIS;NIS Settings Manager; C:\Windows\system32\drivers\NISx64\1500010.003\ccSetx64.sys [2013-07-30 150104]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [2013-09-18 484952]
R1 IDSVia64;IDSVia64; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\IPSDefs\20130918.002\IDSvia64.sys [2013-09-17 520280]
R1 SRTSPX;Symantec Real Time Storage Protection (PEL) x64; C:\Windows\system32\drivers\NISx64\1500010.003\SRTSPX64.SYS [2013-07-31 36952]
R1 SymIRON;Symantec Iron Driver; C:\Windows\system32\drivers\NISx64\1500010.003\Ironx64.SYS [2013-07-31 264280]
R1 SymNetS;Symantec Network Security WFP Driver; C:\Windows\system32\drivers\NISx64\1500010.003\SYMNETS.SYS [2013-07-31 590424]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2013-09-18 140376]
R3 NAVENG;NAVENG; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\VirusDefs\20130919.017\ENG64.SYS [2013-09-18 126040]
R3 NAVEX15;NAVEX15; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\VirusDefs\20130919.017\EX64.SYS [2013-09-18 2099288]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2000-01-01 685672]
R3 rzdaendpt;Razer DeathAdder end point; C:\Windows\system32\DRIVERS\rzdaendpt.sys [2013-08-20 33464]
R3 rzendpt;rzendpt; C:\Windows\system32\DRIVERS\rzendpt.sys [2013-08-20 39096]
R3 rzudd;Razer Mouse Driver; C:\Windows\system32\DRIVERS\rzudd.sys [2013-08-21 141496]
R3 rzvkeyboard;Razer Virtual Keyboard Driver; C:\Windows\system32\DRIVERS\rzvkeyboard.sys [2013-08-20 30904]
R3 SRTSP;Symantec Real Time Storage Protection x64; C:\Windows\system32\drivers\NISx64\1500010.003\SRTSP64.SYS [2013-07-31 854616]
R3 SymEvent;SymEvent; \??\C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [2013-09-18 177752]
R3 USBPNPA;USB PnP Sound Device Interface; C:\Windows\system32\drivers\CM10864.sys [2013-01-16 1310720]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 SWDUMon;SWDUMon; C:\Windows\system32\DRIVERS\SWDUMon.sys [2013-09-19 16152]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 59392]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 NIS;Norton Internet Security; C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe [2013-08-31 275696]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-06-21 884512]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-05-16 1826592]
R2 SDScannerService;Spybot-S&D 2 Scanner Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [2013-05-16 1817560]
R2 SDUpdateService;Spybot-S&D 2 Updating Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2013-05-16 1033688]
R2 SDWSCService;Spybot-S&D 2 Security Center Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [2013-05-15 171928]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-06-21 413472]
R2 vToolbarUpdater15.5.0;vToolbarUpdater15.5.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.5.0\ToolbarUpdater.exe [2013-09-19 1643184]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-07-25 162672]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-09-18 257416]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-09-11 118680]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-09-18 1255736]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
-----------------EOF-----------------
2013-09-19 19:48:11 ----D---- C:\Windows\system32\drivers\UMDF
2013-09-19 17:40:04 ----D---- C:\Windows\Microsoft.NET
2013-09-19 17:39:42 ----RSD---- C:\Windows\assembly
2013-09-19 15:53:20 ----D---- C:\Windows\system32\catroot
2013-09-19 15:39:38 ----D---- C:\Windows\SYSWOW64\cs-CZ
2013-09-19 15:39:38 ----D---- C:\Windows\SysWOW64
2013-09-19 15:39:38 ----D---- C:\Windows\system32\cs-CZ
2013-09-19 15:39:37 ----D---- C:\Windows\AppPatch
2013-09-19 15:39:34 ----D---- C:\Program Files\Windows Defender
2013-09-19 15:39:34 ----D---- C:\Program Files (x86)\Windows Defender
2013-09-19 15:39:26 ----D---- C:\Program Files\Internet Explorer
2013-09-19 15:39:26 ----D---- C:\Program Files (x86)\Internet Explorer
2013-09-19 15:39:25 ----D---- C:\Windows\SYSWOW64\migration
2013-09-19 15:39:25 ----D---- C:\Windows\SYSWOW64\en-US
2013-09-19 15:39:22 ----D---- C:\Windows\system32\migration
2013-09-19 15:39:22 ----D---- C:\Windows\system32\en-US
2013-09-19 15:39:22 ----D---- C:\Windows\PolicyDefinitions
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\zh-TW
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\zh-HK
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\zh-CN
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\tr-TR
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\sv-SE
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\ru-RU
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\pt-PT
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\pt-BR
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\pl-PL
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\nl-NL
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\ko-KR
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\ja-JP
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\it-IT
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\hu-HU
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\fr-FR
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\fi-FI
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\es-ES
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\el-GR
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\de-DE
2013-09-19 15:39:18 ----D---- C:\Windows\SYSWOW64\nb-NO
2013-09-19 15:39:18 ----D---- C:\Windows\SYSWOW64\da-DK
2013-09-19 15:39:18 ----D---- C:\Windows\system32\pt-PT
2013-09-19 15:39:18 ----D---- C:\Windows\system32\pt-BR
2013-09-19 15:39:18 ----D---- C:\Windows\system32\it-IT
2013-09-19 15:39:17 ----D---- C:\Windows\system32\zh-TW
2013-09-19 15:39:17 ----D---- C:\Windows\system32\zh-HK
2013-09-19 15:39:17 ----D---- C:\Windows\system32\zh-CN
2013-09-19 15:39:17 ----D---- C:\Windows\system32\tr-TR
2013-09-19 15:39:17 ----D---- C:\Windows\system32\sv-SE
2013-09-19 15:39:17 ----D---- C:\Windows\system32\ru-RU
2013-09-19 15:39:17 ----D---- C:\Windows\system32\pl-PL
2013-09-19 15:39:17 ----D---- C:\Windows\system32\nl-NL
2013-09-19 15:39:17 ----D---- C:\Windows\system32\nb-NO
2013-09-19 15:39:17 ----D---- C:\Windows\system32\ko-KR
2013-09-19 15:39:17 ----D---- C:\Windows\system32\ja-JP
2013-09-19 15:39:17 ----D---- C:\Windows\system32\hu-HU
2013-09-19 15:39:17 ----D---- C:\Windows\system32\fr-FR
2013-09-19 15:39:17 ----D---- C:\Windows\system32\fi-FI
2013-09-19 15:39:17 ----D---- C:\Windows\system32\es-ES
2013-09-19 15:39:17 ----D---- C:\Windows\system32\el-GR
2013-09-19 15:39:17 ----D---- C:\Windows\system32\de-DE
2013-09-19 15:39:17 ----D---- C:\Windows\system32\da-DK
2013-09-19 15:39:09 ----D---- C:\Program Files\Windows Journal
2013-09-19 15:39:03 ----D---- C:\Windows\system32\DriverStore
2013-09-19 14:31:10 ----D---- C:\Windows\system32\wdi
2013-09-19 14:17:26 ----D---- C:\Windows\system32\catroot2
2013-09-19 14:03:52 ----D---- C:\Windows
2013-09-19 03:31:13 ----D---- C:\Windows\system32\drivers\etc
2013-09-19 03:08:03 ----A---- C:\Windows\system.ini
2013-09-19 03:02:31 ----D---- C:\Windows\SYSWOW64\drivers
2013-09-19 03:02:30 ----D---- C:\Program Files (x86)\Common Files
2013-09-19 02:08:16 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-09-19 02:05:47 ----RSD---- C:\Windows\Fonts
2013-09-19 01:45:34 ----D---- C:\Program Files (x86)\Windows Sidebar
2013-09-19 01:45:34 ----D---- C:\Program Files (x86)\Windows Portable Devices
2013-09-19 01:45:34 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2013-09-19 01:45:34 ----D---- C:\Program Files (x86)\Windows Media Player
2013-09-19 01:45:34 ----D---- C:\Program Files (x86)\Windows Mail
2013-09-19 01:45:33 ----D---- C:\Program Files\Windows Sidebar
2013-09-19 01:45:33 ----D---- C:\Program Files\Windows Mail
2013-09-19 01:45:33 ----D---- C:\Program Files\DVD Maker
2013-09-19 01:45:32 ----D---- C:\Program Files\Windows Portable Devices
2013-09-19 01:45:32 ----D---- C:\Program Files\Windows Photo Viewer
2013-09-19 01:45:32 ----D---- C:\Program Files\Windows Media Player
2013-09-19 01:45:32 ----D---- C:\Program Files\Common Files\System
2013-09-19 01:45:30 ----D---- C:\Windows\servicing
2013-09-19 01:45:30 ----D---- C:\Windows\ehome
2013-09-19 01:45:16 ----D---- C:\Windows\SYSWOW64\oobe
2013-09-19 01:45:15 ----D---- C:\Windows\SYSWOW64\Setup
2013-09-19 01:45:15 ----D---- C:\Windows\SYSWOW64\cs
2013-09-19 01:45:15 ----D---- C:\Windows\SYSWOW64\AdvancedInstallers
2013-09-19 01:45:12 ----D---- C:\Windows\SYSWOW64\wbem
2013-09-19 01:45:12 ----D---- C:\Windows\SYSWOW64\sppui
2013-09-19 01:45:12 ----D---- C:\Windows\SYSWOW64\manifeststore
2013-09-19 01:45:11 ----D---- C:\Windows\SYSWOW64\migwiz
2013-09-19 01:45:11 ----D---- C:\Windows\SYSWOW64\Dism
2013-09-19 01:44:43 ----D---- C:\Windows\system32\oobe
2013-09-19 01:44:42 ----D---- C:\Windows\system32\Setup
2013-09-19 01:44:42 ----D---- C:\Windows\system32\cs
2013-09-19 01:44:42 ----D---- C:\Windows\system32\AdvancedInstallers
2013-09-19 01:44:40 ----D---- C:\Windows\system32\sppui
2013-09-19 01:44:40 ----D---- C:\Windows\system32\manifeststore
2013-09-19 01:44:39 ----D---- C:\Windows\system32\wbem
2013-09-19 01:44:39 ----D---- C:\Windows\system32\drivers\cs-CZ
2013-09-19 01:44:38 ----D---- C:\Windows\system32\migwiz
2013-09-19 01:44:38 ----D---- C:\Windows\system32\Dism
2013-09-19 01:42:31 ----D---- C:\Windows\system32\Boot
2013-09-19 01:39:12 ----A---- C:\Windows\SYSWOW64\msclmd.dll
2013-09-19 01:39:11 ----A---- C:\Windows\system32\msclmd.dll
2013-09-18 14:20:35 ----RD---- C:\Program Files
2013-09-18 13:35:29 ----RD---- C:\Program Files (x86)
2013-09-18 13:31:07 ----D---- C:\Windows\ShellNew
2013-09-18 13:30:20 ----D---- C:\ProgramData
2013-09-18 08:31:43 ----D---- C:\Windows\debug
2013-09-18 08:08:58 ----D---- C:\Windows\system32\Tasks
2013-09-18 08:08:56 ----D---- C:\Windows\Tasks
2013-09-18 05:06:14 ----D---- C:\Program Files\Common Files
2013-09-17 22:33:01 ----D---- C:\Windows\system
2013-09-17 21:36:36 ----RD---- C:\Users
2013-09-17 21:36:20 ----D---- C:\Windows\Help
2013-09-17 21:34:55 ----D---- C:\Windows\system32\CodeIntegrity
2013-09-17 21:30:45 ----D---- C:\Windows\system32\restore
2013-09-17 21:30:27 ----D---- C:\Windows\system32\Recovery
2013-09-17 21:30:27 ----D---- C:\Program Files\Windows NT
2013-09-17 21:23:40 ----D---- C:\Windows\system32\sysprep
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 SymDS;Symantec Data Store; C:\Windows\system32\drivers\NISx64\1500010.003\SYMDS64.SYS [2013-08-01 493656]
R0 SymEFA;Symantec Extended File Attributes; C:\Windows\system32\drivers\NISx64\1500010.003\SYMEFA64.SYS [2013-08-05 1147480]
R1 avgtp;avgtp; \??\C:\Windows\system32\drivers\avgtpx64.sys [2013-09-19 45856]
R1 BHDrvx64;BHDrvx64; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\BASHDefs\20130903.002\BHDrvx64.sys [2013-09-04 1525336]
R1 ccSet_NIS;NIS Settings Manager; C:\Windows\system32\drivers\NISx64\1500010.003\ccSetx64.sys [2013-07-30 150104]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [2013-09-18 484952]
R1 IDSVia64;IDSVia64; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\IPSDefs\20130918.002\IDSvia64.sys [2013-09-17 520280]
R1 SRTSPX;Symantec Real Time Storage Protection (PEL) x64; C:\Windows\system32\drivers\NISx64\1500010.003\SRTSPX64.SYS [2013-07-31 36952]
R1 SymIRON;Symantec Iron Driver; C:\Windows\system32\drivers\NISx64\1500010.003\Ironx64.SYS [2013-07-31 264280]
R1 SymNetS;Symantec Network Security WFP Driver; C:\Windows\system32\drivers\NISx64\1500010.003\SYMNETS.SYS [2013-07-31 590424]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2013-09-18 140376]
R3 NAVENG;NAVENG; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\VirusDefs\20130919.017\ENG64.SYS [2013-09-18 126040]
R3 NAVEX15;NAVEX15; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\VirusDefs\20130919.017\EX64.SYS [2013-09-18 2099288]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2000-01-01 685672]
R3 rzdaendpt;Razer DeathAdder end point; C:\Windows\system32\DRIVERS\rzdaendpt.sys [2013-08-20 33464]
R3 rzendpt;rzendpt; C:\Windows\system32\DRIVERS\rzendpt.sys [2013-08-20 39096]
R3 rzudd;Razer Mouse Driver; C:\Windows\system32\DRIVERS\rzudd.sys [2013-08-21 141496]
R3 rzvkeyboard;Razer Virtual Keyboard Driver; C:\Windows\system32\DRIVERS\rzvkeyboard.sys [2013-08-20 30904]
R3 SRTSP;Symantec Real Time Storage Protection x64; C:\Windows\system32\drivers\NISx64\1500010.003\SRTSP64.SYS [2013-07-31 854616]
R3 SymEvent;SymEvent; \??\C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [2013-09-18 177752]
R3 USBPNPA;USB PnP Sound Device Interface; C:\Windows\system32\drivers\CM10864.sys [2013-01-16 1310720]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 SWDUMon;SWDUMon; C:\Windows\system32\DRIVERS\SWDUMon.sys [2013-09-19 16152]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 59392]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 NIS;Norton Internet Security; C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe [2013-08-31 275696]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-06-21 884512]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-05-16 1826592]
R2 SDScannerService;Spybot-S&D 2 Scanner Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [2013-05-16 1817560]
R2 SDUpdateService;Spybot-S&D 2 Updating Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2013-05-16 1033688]
R2 SDWSCService;Spybot-S&D 2 Security Center Service; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [2013-05-15 171928]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-06-21 413472]
R2 vToolbarUpdater15.5.0;vToolbarUpdater15.5.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\15.5.0\ToolbarUpdater.exe [2013-09-19 1643184]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-07-25 162672]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-09-18 257416]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-09-11 118680]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-09-18 1255736]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
-----------------EOF-----------------
- Rudy
- Site Admin
- Příspěvky: 119531
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Ovládá mi někdo pc na dálku
Odinstalujte Spybot, může být v konfliktu s Nortonem. Spusťte tuto utilitu:
Opravdu se spouští dlllhost.exe? Nebo je to dllhost.exe? Pokud je to ten druhý, jedná se o aktualizace.Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Ovládá mi někdo pc na dálku
PC nebyl tyden pouzivan, ten den byl reinstall. Jak to vypada s logem? Dle meho nahoru moc slavne nevypada.
¨# AdwCleaner v3.005 - Report created 28/09/2013 at 00:07:20
# Updated 22/09/2013 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Kuba - KUBA_STOLNI
# Running from : C:\Users\Kuba\Desktop\adwcleaner.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\Program Files (x86)\Common Files\AVG Secure Search
***** [ Shortcuts ] *****
***** [ Registry ] *****
Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [Avg@toolbar]
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ViProtocol.DLL
Key Deleted : HKLM\SOFTWARE\Classes\protocols\handler\viprotocol
Key Deleted : HKLM\SOFTWARE\Classes\S
Key Deleted : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi
Key Deleted : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1
Key Deleted : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE
Key Deleted : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE.1
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [vProt]
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{1FDFF5A2-7BB1-48E1-8081-7236812B12B2}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{933B95E2-E7B7-4AD9-B952-7AC336682AE3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{B658800C-F66E-4EF3-AB85-6C0C227862A9}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{74FB6AFD-DD77-4CEB-83BD-AB2B63E63C93}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C6FDD0C3-266A-4DC3-B459-28C697C44CDC}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{95B7759C-8C7F-4BF1-B163-73684A933233}]
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKLM\Software\AVG Security Toolbar
***** [ Browsers ] *****
-\\ Internet Explorer v10.0.9200.16686
-\\ Mozilla Firefox v24.0 (cs)
[ File : C:\Users\Kuba\AppData\Roaming\Mozilla\Firefox\Profiles\b3rnf8e0.default\prefs.js ]
*************************
AdwCleaner[R0].txt - [4066 octets] - [28/09/2013 00:02:49]
AdwCleaner[S0].txt - [3948 octets] - [28/09/2013 00:07:20]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [4008 octets] ##########
¨# AdwCleaner v3.005 - Report created 28/09/2013 at 00:07:20
# Updated 22/09/2013 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : Kuba - KUBA_STOLNI
# Running from : C:\Users\Kuba\Desktop\adwcleaner.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\Program Files (x86)\Common Files\AVG Secure Search
***** [ Shortcuts ] *****
***** [ Registry ] *****
Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [Avg@toolbar]
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE
Key Deleted : HKLM\SOFTWARE\Classes\AppID\ViProtocol.DLL
Key Deleted : HKLM\SOFTWARE\Classes\protocols\handler\viprotocol
Key Deleted : HKLM\SOFTWARE\Classes\S
Key Deleted : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi
Key Deleted : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1
Key Deleted : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE
Key Deleted : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE.1
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [vProt]
Key Deleted : HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{1FDFF5A2-7BB1-48E1-8081-7236812B12B2}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{933B95E2-E7B7-4AD9-B952-7AC336682AE3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{B658800C-F66E-4EF3-AB85-6C0C227862A9}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{74FB6AFD-DD77-4CEB-83BD-AB2B63E63C93}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C6FDD0C3-266A-4DC3-B459-28C697C44CDC}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{95B7759C-8C7F-4BF1-B163-73684A933233}]
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706}
Key Deleted : HKLM\Software\AVG Security Toolbar
***** [ Browsers ] *****
-\\ Internet Explorer v10.0.9200.16686
-\\ Mozilla Firefox v24.0 (cs)
[ File : C:\Users\Kuba\AppData\Roaming\Mozilla\Firefox\Profiles\b3rnf8e0.default\prefs.js ]
*************************
AdwCleaner[R0].txt - [4066 octets] - [28/09/2013 00:02:49]
AdwCleaner[S0].txt - [3948 octets] - [28/09/2013 00:07:20]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [4008 octets] ##########
- Rudy
- Site Admin
- Příspěvky: 119531
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Ovládá mi někdo pc na dálku
Něco bylo smazáno. Dejte nový log RSIT.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Ovládá mi někdo pc na dálku
Logfile of random's system information tool 1.09 (written by random/random)
Run by Kuba at 2013-09-28 19:43:35
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 369 GB (90%) free of 410 GB
Total RAM: 4093 MB (51% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:43:40, on 28.9.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16686)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe
C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Programy\PrintScreen\PrintScreen.exe
C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe
C:\Programy\MS OFFICE\Office12\EXCEL.EXE
C:\Programy\Mozilla Firefox\firefox.exe
E:\SiRonnie\Hry\League Of Legends\League of Legends\RADS\system\rads_user_kernel.exe
C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
E:\SiRonnie\Hry\League Of Legends\League of Legends\RADS\projects\lol_launcher\releases\0.0.0.185\deploy\LoLLauncher.exe
E:\SiRonnie\Hry\League Of Legends\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.47\deploy\LolClient.exe
C:\Program Files\trend micro\Kuba.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = :0
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\coIEPlg.dll
O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\IPS\IPSBHO.DLL
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\coIEPlg.dll
O4 - HKLM\..\Run: [Razer Synapse] "C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Gadwin PrintScreen] C:\Programy\PrintScreen\PrintScreen.exe /nosplash
O4 - HKUS\S-1-5-21-2671917893-706360513-2285705896-1003\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-2671917893-706360513-2285705896-1003\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Programy\MSOFFI~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programy\MSOFFI~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programy\MSOFFI~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Programy\MSOFFI~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: vToolbarUpdater17.0.1 - Unknown owner - C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\17.0.1\ToolbarUpdater.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 7636 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
winlogon.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe" /s "NIS" /m "C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\diMaster.dll" /prefetch:1
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
"C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe" /c /a /s UserSession2
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
taskeng.exe {2EEE4DE1-B6C2-416C-AD73-7F289CEABE40}
"C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe" -boot
"C:\Windows\SysWOW64\rundll32.exe" C:\Windows\Syswow64\cm108.dll,CMICtrlWnd
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe"
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Programy\PrintScreen\PrintScreen.exe" /nosplash
C:\Windows\splwow64.exe 8192
"C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Windows\system32\wuauclt.exe"
"C:\Programy\MS OFFICE\Office12\EXCEL.EXE" /e
"C:\Programy\TS3\ts3client_win64.exe"
"C:\Programy\Mozilla Firefox\firefox.exe"
"E:\SiRonnie\Hry\League Of Legends\League of Legends\RADS\system\rads_user_kernel.exe" updateandrun lol_launcher LoLLauncher.exe
"C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe"
LoLLauncher.exe
"E:/SiRonnie/Hry/League Of Legends/League of Legends/RADS/projects/lol_air_client/releases/0.0.1.47/deploy/LolClient.exe" -runtime .\ -nodebug META-INF\AIR\application.xml .\ -- 8393
"taskhost.exe"
"C:\Programy\totalcmd\TOTALCMD64.EXE"
"C:\Users\Kuba\Downloads\RSITx64.exe"
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\SlimDrivers Startup.job
=========Mozilla firefox=========
ProfilePath - C:\Users\Kuba\AppData\Roaming\Mozilla\Firefox\Profiles\b3rnf8e0.default
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
prefs.js - "keyword.URL" - ""
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.8.800.168 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_168.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nullsoft.com/winampDetector;version=1]
"Description"=Winamp Detector
"Path"=C:\Program Files (x86)\Winamp Detect\npwachk.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.8]
"Description"=VLC Multimedia Plugin
"Path"=C:\Programy\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.8.800.168 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_168.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
Norton Identity Protection - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\coIEPlg.dll [2013-08-15 526160]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Norton Vulnerability Protection - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\IPS\IPSBHO.DLL [2013-08-06 388512]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\coIEPlg.dll [2013-08-15 526160]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Cm108Sound"=C:\Windows\syswow64\RunDll32.exe [2009-07-14 44544]
"Nvtmru"=C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [2013-05-16 1012000]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2013-07-25 20684656]
"Gadwin PrintScreen"=C:\Programy\PrintScreen\PrintScreen.exe [2012-05-30 1842384]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
""= []
"Razer Synapse"=C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [2013-08-15 606040]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2013-09-28 18:01:27 ----D---- C:\Users\Kuba\AppData\Roaming\vlc
2013-09-28 00:02:42 ----D---- C:\AdwCleaner
2013-09-27 23:59:53 ----A---- C:\Windows\wininit.ini
2013-09-20 04:33:22 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-09-20 04:33:22 ----A---- C:\Windows\system32\ieui.dll
2013-09-20 04:33:21 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2013-09-20 04:33:20 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2013-09-20 04:33:20 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2013-09-20 04:33:20 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2013-09-20 04:33:20 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-09-20 04:33:20 ----A---- C:\Windows\system32\iesysprep.dll
2013-09-20 04:33:20 ----A---- C:\Windows\system32\iesetup.dll
2013-09-20 04:33:20 ----A---- C:\Windows\system32\iernonce.dll
2013-09-20 04:33:20 ----A---- C:\Windows\system32\ie4uinit.exe
2013-09-20 04:33:19 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-09-20 04:33:19 ----A---- C:\Windows\system32\iertutil.dll
2013-09-20 04:33:18 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-09-20 04:33:17 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-09-20 04:33:17 ----A---- C:\Windows\system32\msfeeds.dll
2013-09-20 04:33:17 ----A---- C:\Windows\system32\jscript.dll
2013-09-20 04:33:16 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-09-20 04:33:16 ----A---- C:\Windows\system32\jscript9.dll
2013-09-20 04:33:15 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-09-20 04:33:15 ----A---- C:\Windows\system32\urlmon.dll
2013-09-20 04:33:14 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-09-20 04:33:14 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-09-20 04:33:14 ----A---- C:\Windows\system32\wininet.dll
2013-09-20 04:33:14 ----A---- C:\Windows\system32\jsproxy.dll
2013-09-20 04:33:13 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-09-20 04:33:12 ----A---- C:\Windows\system32\ieframe.dll
2013-09-20 04:33:10 ----A---- C:\Windows\system32\mshtml.dll
2013-09-20 04:33:08 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-09-20 03:45:58 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2013-09-20 03:45:58 ----A---- C:\Windows\system32\WindowsCodecs.dll
2013-09-19 15:55:22 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2013-09-19 15:55:22 ----A---- C:\Windows\system32\DWrite.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\wextract.exe
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\url.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\occache.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\msrating.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\msls31.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\mshta.exe
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\inseng.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\icardie.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2013-09-19 14:10:44 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2013-09-19 14:10:44 ----A---- C:\Windows\system32\elshyph.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\wextract.exe
2013-09-19 14:10:43 ----A---- C:\Windows\system32\webcheck.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\vbscript.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\url.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2013-09-19 14:10:43 ----A---- C:\Windows\system32\pngfilt.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\occache.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\msrating.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\msls31.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\mshtmlmedia.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\mshtmler.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\mshtmled.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\mshta.exe
2013-09-19 14:10:43 ----A---- C:\Windows\system32\msfeedssync.exe
2013-09-19 14:10:43 ----A---- C:\Windows\system32\msfeedsbs.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\licmgr10.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\inseng.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\imgutil.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\iexpress.exe
2013-09-19 14:10:43 ----A---- C:\Windows\system32\ieUnatt.exe
2013-09-19 14:10:43 ----A---- C:\Windows\system32\iepeers.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\iedkcs32.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\ieapfltr.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\ieapfltr.dat
2013-09-19 14:10:43 ----A---- C:\Windows\system32\IEAdvpack.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\icardie.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\dxtrans.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\dxtmsft.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d3d10core.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d3d10.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\XpsPrint.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\WMPhoto.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\UIAnimation.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\FntCache.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\dxgi.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d3d10warp.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d3d10level9.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d3d10core.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d3d10_1core.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d3d10_1.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d3d10.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d2d1.dll
2013-09-19 13:42:11 ----SHD---- C:\Config.Msi
2013-09-19 09:25:50 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2013-09-19 09:25:49 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2013-09-19 09:25:49 ----A---- C:\Windows\system32\cdd.dll
2013-09-19 09:25:24 ----A---- C:\Windows\SYSWOW64\dhcpcore6.dll
2013-09-19 09:25:24 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2013-09-19 09:25:24 ----A---- C:\Windows\system32\dhcpcore6.dll
2013-09-19 09:25:23 ----A---- C:\Windows\SYSWOW64\dhcpcsvc6.dll
2013-09-19 09:25:04 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2013-09-19 09:25:04 ----A---- C:\Windows\system32\wintrust.dll
2013-09-19 09:25:04 ----A---- C:\Windows\system32\crypt32.dll
2013-09-19 09:25:03 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2013-09-19 09:25:03 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2013-09-19 09:25:03 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2013-09-19 09:25:03 ----A---- C:\Windows\system32\cryptsvc.dll
2013-09-19 09:25:03 ----A---- C:\Windows\system32\cryptnet.dll
2013-09-19 09:24:31 ----A---- C:\Windows\system32\authui.dll
2013-09-19 09:24:29 ----A---- C:\Windows\SYSWOW64\authui.dll
2013-09-19 09:24:29 ----A---- C:\Windows\system32\consent.exe
2013-09-19 09:24:29 ----A---- C:\Windows\system32\appinfo.dll
2013-09-19 09:24:20 ----A---- C:\Windows\system32\wwansvc.dll
2013-09-19 09:24:20 ----A---- C:\Windows\system32\wwanprotdim.dll
2013-09-19 09:24:13 ----A---- C:\Windows\SYSWOW64\tzres.dll
2013-09-19 09:24:13 ----A---- C:\Windows\system32\tzres.dll
2013-09-19 09:24:04 ----A---- C:\Windows\system32\drivers\ataport.sys
2013-09-19 09:24:02 ----A---- C:\Windows\system32\drivers\RNDISMP.sys
2013-09-19 09:24:02 ----A---- C:\Windows\system32\drivers\ndis.sys
2013-09-19 09:24:00 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2013-09-19 09:24:00 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2013-09-19 09:24:00 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-09-19 09:24:00 ----A---- C:\Windows\system32\ntdll.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\wow32.dll
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\user.exe
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\setup16.exe
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\instnm.exe
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\wow64win.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\wow64cpu.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\wow64.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\winsrv.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\smss.exe
2013-09-19 09:23:59 ----A---- C:\Windows\system32\ntvdm64.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\KernelBase.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\kernel32.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\csrsrv.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\conhost.exe
2013-09-19 09:23:59 ----A---- C:\Windows\system32\apisetschema.dll
2013-09-19 09:23:58 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2013-09-19 09:23:58 ----A---- C:\Windows\system32\WMVDECOD.DLL
2013-09-19 09:23:57 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2013-09-19 09:23:57 ----A---- C:\Windows\system32\rpcrt4.dll
2013-09-19 09:23:54 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2013-09-19 09:23:54 ----A---- C:\Windows\SYSWOW64\netevent.dll
2013-09-19 09:23:54 ----A---- C:\Windows\SYSWOW64\netcorehc.dll
2013-09-19 09:23:54 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\nlasvc.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\nlaapi.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\netevent.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\netcorehc.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\ncsi.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\iphlpsvc.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2013-09-19 09:23:52 ----A---- C:\Windows\system32\qedit.dll
2013-09-19 09:23:51 ----A---- C:\Windows\SYSWOW64\qedit.dll
2013-09-19 09:23:50 ----A---- C:\Windows\system32\OxpsConverter.exe
2013-09-19 09:23:30 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2013-09-19 09:23:17 ----A---- C:\Windows\system32\win32k.sys
2013-09-19 09:22:44 ----A---- C:\Windows\system32\shell32.dll
2013-09-19 09:22:43 ----A---- C:\Windows\SYSWOW64\shell32.dll
2013-09-19 09:22:42 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2013-09-19 09:22:42 ----A---- C:\Windows\system32\shdocvw.dll
2013-09-19 09:22:40 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2013-09-19 09:22:40 ----A---- C:\Windows\system32\win32spl.dll
2013-09-19 09:22:36 ----A---- C:\Windows\system32\taskhost.exe
2013-09-19 09:22:31 ----A---- C:\Windows\SYSWOW64\cryptdlg.dll
2013-09-19 09:22:31 ----A---- C:\Windows\system32\cryptdlg.dll
2013-09-19 09:22:21 ----A---- C:\Windows\system32\drivers\tcpip.sys
2013-09-19 09:22:18 ----A---- C:\Windows\SYSWOW64\certutil.exe
2013-09-19 09:22:18 ----A---- C:\Windows\system32\certutil.exe
2013-09-19 09:22:17 ----A---- C:\Windows\SYSWOW64\certenc.dll
2013-09-19 09:22:17 ----A---- C:\Windows\system32\certenc.dll
2013-09-19 09:18:10 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2013-09-19 09:18:10 ----A---- C:\Windows\system32\d3d11.dll
2013-09-19 03:17:39 ----SHD---- C:\$RECYCLE.BIN
2013-09-19 03:17:09 ----A---- C:\ComboFix.txt
2013-09-19 02:57:28 ----A---- C:\Windows\zip.exe
2013-09-19 02:57:28 ----A---- C:\Windows\SWSC.exe
2013-09-19 02:57:28 ----A---- C:\Windows\SWREG.exe
2013-09-19 02:57:28 ----A---- C:\Windows\sed.exe
2013-09-19 02:57:28 ----A---- C:\Windows\PEV.exe
2013-09-19 02:57:28 ----A---- C:\Windows\NIRCMD.exe
2013-09-19 02:57:28 ----A---- C:\Windows\MBR.exe
2013-09-19 02:57:28 ----A---- C:\Windows\grep.exe
2013-09-19 02:47:38 ----D---- C:\Qoobox
2013-09-19 02:47:21 ----D---- C:\Windows\erdnt
2013-09-18 15:03:46 ----D---- C:\Windows\system32\SPReview
2013-09-18 15:02:57 ----D---- C:\Windows\system32\EventProviders
2013-09-18 14:47:30 ----SHD---- C:\Windows\system32\%APPDATA%
2013-09-18 14:38:09 ----SHD---- C:\Windows\SYSWOW64\%APPDATA%
2013-09-18 14:20:35 ----D---- C:\Program Files\KONICA MINOLTA
2013-09-18 14:13:20 ----A---- C:\Windows\system32\netfxperf.dll
2013-09-18 14:13:20 ----A---- C:\Windows\system32\dfshim.dll
2013-09-18 14:13:15 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2013-09-18 14:13:12 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2013-09-18 14:13:12 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2013-09-18 14:13:08 ----A---- C:\Windows\SYSWOW64\mfc40u.dll
2013-09-18 14:13:08 ----A---- C:\Windows\SYSWOW64\mfc40.dll
2013-09-18 14:13:08 ----A---- C:\Windows\system32\sysmain.dll
2013-09-18 14:13:07 ----A---- C:\Windows\system32\MSVidCtl.dll
2013-09-18 14:13:06 ----A---- C:\Windows\system32\wmp.dll
2013-09-18 14:13:05 ----A---- C:\Windows\system32\mscoree.dll
2013-09-18 14:13:05 ----A---- C:\Windows\system32\mmcndmgr.dll
2013-09-18 14:13:04 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll
2013-09-18 14:13:04 ----A---- C:\Windows\system32\xpsservices.dll
2013-09-18 14:13:04 ----A---- C:\Windows\system32\secproc_isv.dll
2013-09-18 14:13:04 ----A---- C:\Windows\system32\secproc.dll
2013-09-18 14:13:04 ----A---- C:\Windows\system32\RMActivate_isv.exe
2013-09-18 14:13:04 ----A---- C:\Windows\system32\RMActivate.exe
2013-09-18 14:13:04 ----A---- C:\Windows\system32\mf.dll
2013-09-18 14:13:03 ----A---- C:\Windows\SYSWOW64\secproc.dll
2013-09-18 14:13:03 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe
2013-09-18 14:13:02 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2013-09-18 14:13:02 ----A---- C:\Windows\system32\schedsvc.dll
2013-09-18 14:13:02 ----A---- C:\Windows\system32\ole32.dll
2013-09-18 14:13:01 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2013-09-18 14:13:01 ----A---- C:\Windows\system32\taskschd.dll
2013-09-18 14:13:01 ----A---- C:\Windows\system32\spwizui.dll
2013-09-18 14:13:01 ----A---- C:\Windows\system32\RacEngn.dll
2013-09-18 14:13:01 ----A---- C:\Windows\system32\diagperf.dll
2013-09-18 14:13:00 ----A---- C:\Windows\SYSWOW64\mf.dll
2013-09-18 14:13:00 ----A---- C:\Windows\SYSWOW64\CertEnroll.dll
2013-09-18 14:13:00 ----A---- C:\Windows\system32\wevtsvc.dll
2013-09-18 14:13:00 ----A---- C:\Windows\system32\vssapi.dll
2013-09-18 14:13:00 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2013-09-18 14:13:00 ----A---- C:\Windows\system32\ExplorerFrame.dll
2013-09-18 14:13:00 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2013-09-18 14:12:59 ----A---- C:\Windows\SYSWOW64\wmp.dll
2013-09-18 14:12:59 ----A---- C:\Windows\system32\UIRibbon.dll
2013-09-18 14:12:59 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2013-09-18 14:12:58 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2013-09-18 14:12:58 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2013-09-18 14:12:58 ----A---- C:\Windows\system32\WsmSvc.dll
2013-09-18 14:12:58 ----A---- C:\Windows\system32\WMVCORE.DLL
2013-09-18 14:12:58 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2013-09-18 14:12:58 ----A---- C:\Windows\system32\PresentationHost.exe
2013-09-18 14:12:57 ----A---- C:\Windows\system32\WinSAT.exe
2013-09-18 14:12:57 ----A---- C:\Windows\system32\spreview.exe
2013-09-18 14:12:57 ----A---- C:\Windows\system32\spinstall.exe
2013-09-18 14:12:57 ----A---- C:\Windows\system32\rdpdd.dll
2013-09-18 14:12:57 ----A---- C:\Windows\system32\MPSSVC.dll
2013-09-18 14:12:57 ----A---- C:\Windows\system32\CertEnroll.dll
2013-09-18 14:12:56 ----A---- C:\Windows\SYSWOW64\RacEngn.dll
2013-09-18 14:12:56 ----A---- C:\Windows\system32\IKEEXT.DLL
2013-09-18 14:12:56 ----A---- C:\Windows\system32\d3d9.dll
2013-09-18 14:12:55 ----A---- C:\Windows\SYSWOW64\AuthFWSnapin.dll
2013-09-18 14:12:55 ----A---- C:\Windows\system32\VSSVC.exe
2013-09-18 14:12:55 ----A---- C:\Windows\system32\SearchFolder.dll
2013-09-18 14:12:55 ----A---- C:\Windows\system32\gpsvc.dll
2013-09-18 14:12:55 ----A---- C:\Windows\system32\dwmcore.dll
2013-09-18 14:12:55 ----A---- C:\Windows\system32\AuthFWSnapin.dll
2013-09-18 14:12:54 ----A---- C:\Windows\system32\drivers\http.sys
2013-09-18 14:12:54 ----A---- C:\Windows\system32\dbgeng.dll
2013-09-18 14:12:53 ----A---- C:\Windows\SYSWOW64\ole32.dll
2013-09-18 14:12:53 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2013-09-18 14:12:53 ----A---- C:\Windows\system32\TSWorkspace.dll
2013-09-18 14:12:53 ----A---- C:\Windows\system32\qmgr.dll
2013-09-18 14:12:53 ----A---- C:\Windows\system32\audiosrv.dll
2013-09-18 14:12:53 ----A---- C:\Windows\system32\actxprxy.dll
2013-09-18 14:12:52 ----A---- C:\Windows\system32\termsrv.dll
2013-09-18 14:12:52 ----A---- C:\Windows\system32\mstsc.exe
2013-09-18 14:12:50 ----A---- C:\Windows\system32\netlogon.dll
2013-09-18 14:12:50 ----A---- C:\Windows\system32\imapi2fs.dll
2013-09-18 14:12:49 ----A---- C:\Windows\SYSWOW64\vssapi.dll
2013-09-18 14:12:49 ----A---- C:\Windows\SYSWOW64\SearchFolder.dll
2013-09-18 14:12:49 ----A---- C:\Windows\SYSWOW64\d3d9.dll
2013-09-18 14:12:49 ----A---- C:\Windows\system32\winhttp.dll
2013-09-18 14:12:48 ----A---- C:\Windows\SYSWOW64\taskschd.dll
2013-09-18 14:12:48 ----A---- C:\Windows\system32\wbengine.exe
2013-09-18 14:12:48 ----A---- C:\Windows\system32\setupapi.dll
2013-09-18 14:12:48 ----A---- C:\Windows\system32\rpcss.dll
2013-09-18 14:12:48 ----A---- C:\Windows\system32\QAGENTRT.DLL
2013-09-18 14:12:48 ----A---- C:\Windows\system32\propsys.dll
2013-09-18 14:12:48 ----A---- C:\Windows\system32\msv1_0.dll
2013-09-18 14:12:47 ----A---- C:\Windows\system32\werconcpl.dll
2013-09-18 14:12:47 ----A---- C:\Windows\system32\taskeng.exe
2013-09-18 14:12:47 ----A---- C:\Windows\system32\odbc32.dll
2013-09-18 14:12:46 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2013-09-18 14:12:46 ----A---- C:\Windows\system32\WSDApi.dll
2013-09-18 14:12:46 ----A---- C:\Windows\system32\user32.dll
2013-09-18 14:12:46 ----A---- C:\Windows\system32\dhcpcore.dll
2013-09-18 14:12:46 ----A---- C:\Windows\system32\certmgr.dll
2013-09-18 14:12:45 ----A---- C:\Windows\SYSWOW64\wer.dll
2013-09-18 14:12:45 ----A---- C:\Windows\system32\scavengeui.dll
2013-09-18 14:12:45 ----A---- C:\Windows\system32\drivers\tdx.sys
2013-09-18 14:12:45 ----A---- C:\Windows\system32\drivers\netbt.sys
2013-09-18 14:12:44 ----A---- C:\Windows\SYSWOW64\odbc32.dll
2013-09-18 14:12:44 ----A---- C:\Windows\SYSWOW64\dwmcore.dll
2013-09-18 14:12:44 ----A---- C:\Windows\SYSWOW64\certcli.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\tsmf.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\shlwapi.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\netshell.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\msdtctm.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\msdrm.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\framedynos.dll
2013-09-18 14:12:43 ----A---- C:\Windows\SYSWOW64\tcpmonui.dll
2013-09-18 14:12:43 ----A---- C:\Windows\system32\ws2_32.dll
2013-09-18 14:12:43 ----A---- C:\Windows\system32\wmicmiplugin.dll
2013-09-18 14:12:43 ----A---- C:\Windows\system32\winlogon.exe
2013-09-18 14:12:43 ----A---- C:\Windows\system32\netcfgx.dll
2013-09-18 14:12:43 ----A---- C:\Windows\system32\lsm.exe
2013-09-18 14:12:43 ----A---- C:\Windows\system32\comdlg32.dll
2013-09-18 14:12:42 ----A---- C:\Windows\SYSWOW64\winhttp.dll
2013-09-18 14:12:42 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll
2013-09-18 14:12:42 ----A---- C:\Windows\SYSWOW64\tsmf.dll
2013-09-18 14:12:42 ----A---- C:\Windows\SYSWOW64\setupapi.dll
2013-09-18 14:12:42 ----A---- C:\Windows\SYSWOW64\dot3api.dll
2013-09-18 14:12:42 ----A---- C:\Windows\system32\wpdshext.dll
2013-09-18 14:12:42 ----A---- C:\Windows\system32\wmpps.dll
2013-09-18 14:12:42 ----A---- C:\Windows\system32\Query.dll
2013-09-18 14:12:42 ----A---- C:\Windows\system32\QAGENT.DLL
2013-09-18 14:12:42 ----A---- C:\Windows\system32\mswsock.dll
2013-09-18 14:12:42 ----A---- C:\Windows\system32\drvstore.dll
2013-09-18 14:12:42 ----A---- C:\Windows\system32\BFE.DLL
2013-09-18 14:12:42 ----A---- C:\Windows\system32\azroles.dll
2013-09-18 14:12:42 ----A---- C:\Windows\system32\apphelp.dll
2013-09-18 14:12:41 ----A---- C:\Windows\SYSWOW64\MSVidCtl.dll
2013-09-18 14:12:41 ----A---- C:\Windows\SYSWOW64\dbgeng.dll
2013-09-18 14:12:41 ----A---- C:\Windows\SYSWOW64\apphelp.dll
2013-09-18 14:12:41 ----A---- C:\Windows\system32\Vault.dll
2013-09-18 14:12:41 ----A---- C:\Windows\system32\samsrv.dll
2013-09-18 14:12:41 ----A---- C:\Windows\system32\lpksetup.exe
2013-09-18 14:12:41 ----A---- C:\Windows\system32\DShowRdpFilter.dll
2013-09-18 14:12:41 ----A---- C:\Windows\system32\cmd.exe
2013-09-18 14:12:40 ----A---- C:\Windows\SYSWOW64\netlogon.dll
2013-09-18 14:12:40 ----A---- C:\Windows\SYSWOW64\netcfgx.dll
2013-09-18 14:12:40 ----A---- C:\Windows\system32\WebClnt.dll
2013-09-18 14:12:39 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll
2013-09-18 14:12:39 ----A---- C:\Windows\SYSWOW64\upnp.dll
2013-09-18 14:12:39 ----A---- C:\Windows\SYSWOW64\Query.dll
2013-09-18 14:12:39 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2013-09-18 14:12:39 ----A---- C:\Windows\system32\Wldap32.dll
2013-09-18 14:12:39 ----A---- C:\Windows\system32\taskcomp.dll
2013-09-18 14:12:39 ----A---- C:\Windows\system32\sxs.dll
2013-09-18 14:12:39 ----A---- C:\Windows\system32\pnidui.dll
2013-09-18 14:12:39 ----A---- C:\Windows\system32\mfds.dll
2013-09-18 14:12:39 ----A---- C:\Windows\system32\mcbuilder.exe
2013-09-18 14:12:39 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2013-09-18 14:12:38 ----A---- C:\Windows\SYSWOW64\SessEnv.dll
2013-09-18 14:12:38 ----A---- C:\Windows\SYSWOW64\PortableDeviceApi.dll
2013-09-18 14:12:38 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2013-09-18 14:12:38 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2013-09-18 14:12:38 ----A---- C:\Windows\SYSWOW64\msdrm.dll
2013-09-18 14:12:38 ----A---- C:\Windows\SYSWOW64\mmcndmgr.dll
2013-09-18 14:12:38 ----A---- C:\Windows\SYSWOW64\imapi2fs.dll
2013-09-18 14:12:38 ----A---- C:\Windows\SYSWOW64\DShowRdpFilter.dll
2013-09-18 14:12:38 ----A---- C:\Windows\system32\winsta.dll
2013-09-18 14:12:38 ----A---- C:\Windows\system32\webservices.dll
2013-09-18 14:12:38 ----A---- C:\Windows\system32\sqlsrv32.dll
2013-09-18 14:12:38 ----A---- C:\Windows\system32\SessEnv.dll
2013-09-18 14:12:38 ----A---- C:\Windows\system32\ipsmsnap.dll
2013-09-18 14:12:38 ----A---- C:\Windows\system32\hgprint.dll
2013-09-18 14:12:38 ----A---- C:\Windows\system32\fveapi.dll
2013-09-18 14:12:38 ----A---- C:\Windows\system32\dot3api.dll
2013-09-18 14:12:37 ----A---- C:\Windows\SYSWOW64\shlwapi.dll
2013-09-18 14:12:37 ----A---- C:\Windows\SYSWOW64\mcbuilder.exe
2013-09-18 14:12:37 ----A---- C:\Windows\SYSWOW64\certmgr.dll
2013-09-18 14:12:37 ----A---- C:\Windows\system32\WMNetMgr.dll
2013-09-18 14:12:37 ----A---- C:\Windows\system32\wlanpref.dll
2013-09-18 14:12:37 ----A---- C:\Windows\system32\schtasks.exe
2013-09-18 14:12:37 ----A---- C:\Windows\system32\prncache.dll
2013-09-18 14:12:37 ----A---- C:\Windows\system32\mcmde.dll
2013-09-18 14:12:37 ----A---- C:\Windows\system32\gdi32.dll
2013-09-18 14:12:37 ----A---- C:\Windows\system32\drivers\volsnap.sys
2013-09-18 14:12:37 ----A---- C:\Windows\system32\drivers\msrpc.sys
2013-09-18 14:12:36 ----A---- C:\Windows\SYSWOW64\xpsservices.dll
2013-09-18 14:12:36 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2013-09-18 14:12:36 ----A---- C:\Windows\SYSWOW64\userenv.dll
2013-09-18 14:12:36 ----A---- C:\Windows\SYSWOW64\drvstore.dll
2013-09-18 14:12:36 ----A---- C:\Windows\SYSWOW64\comdlg32.dll
2013-09-18 14:12:36 ----A---- C:\Windows\system32\vpnike.dll
2013-09-18 14:12:36 ----A---- C:\Windows\system32\userenv.dll
2013-09-18 14:12:36 ----A---- C:\Windows\system32\photowiz.dll
2013-09-18 14:12:36 ----A---- C:\Windows\system32\evr.dll
2013-09-18 14:12:36 ----A---- C:\Windows\system32\drivers\rdbss.sys
2013-09-18 14:12:36 ----A---- C:\Windows\system32\drivers\1394ohci.sys
2013-09-18 14:12:35 ----A---- C:\Windows\system32\IPSECSVC.DLL
2013-09-18 14:12:35 ----A---- C:\Windows\system32\framedyn.dll
2013-09-18 14:12:35 ----A---- C:\Windows\system32\AudioSes.dll
2013-09-18 14:12:34 ----A---- C:\Windows\SYSWOW64\cmd.exe
2013-09-18 14:12:34 ----A---- C:\Windows\system32\wmpmde.dll
2013-09-18 14:12:34 ----A---- C:\Windows\system32\WMPEncEn.dll
2013-09-18 14:12:34 ----A---- C:\Windows\system32\wmpeffects.dll
2013-09-18 14:12:34 ----A---- C:\Windows\system32\SyncCenter.dll
2013-09-18 14:12:34 ----A---- C:\Windows\system32\srvsvc.dll
2013-09-18 14:12:34 ----A---- C:\Windows\system32\sppobjs.dll
2013-09-18 14:12:34 ----A---- C:\Windows\system32\shsvcs.dll
2013-09-18 14:12:34 ----A---- C:\Windows\system32\mfreadwrite.dll
2013-09-18 14:12:34 ----A---- C:\Windows\system32\FXSSVC.exe
2013-09-18 14:12:34 ----A---- C:\Windows\system32\aepdu.dll
2013-09-18 14:12:34 ----A---- C:\Windows\system32\aeinv.dll
2013-09-18 14:12:33 ----A---- C:\Windows\SYSWOW64\Wldap32.dll
2013-09-18 14:12:33 ----A---- C:\Windows\SYSWOW64\propsys.dll
2013-09-18 14:12:33 ----A---- C:\Windows\SYSWOW64\mfds.dll
2013-09-18 14:12:33 ----A---- C:\Windows\SYSWOW64\framedynos.dll
2013-09-18 14:12:33 ----A---- C:\Windows\system32\WinSATAPI.dll
2013-09-18 14:12:33 ----A---- C:\Windows\system32\stobject.dll
2013-09-18 14:12:33 ----A---- C:\Windows\system32\localsec.dll
2013-09-18 14:12:33 ----A---- C:\Windows\system32\imapi2.dll
2013-09-18 14:12:33 ----A---- C:\Windows\system32\fde.dll
2013-09-18 14:12:32 ----A---- C:\Windows\SYSWOW64\user32.dll
2013-09-18 14:12:32 ----A---- C:\Windows\SYSWOW64\azroles.dll
2013-09-18 14:12:32 ----A---- C:\Windows\system32\tcpipcfg.dll
2013-09-18 14:12:32 ----A---- C:\Windows\system32\spp.dll
2013-09-18 14:12:32 ----A---- C:\Windows\system32\QSHVHOST.DLL
2013-09-18 14:12:32 ----A---- C:\Windows\system32\netid.dll
2013-09-18 14:12:32 ----A---- C:\Windows\system32\netdiagfx.dll
2013-09-18 14:12:32 ----A---- C:\Windows\system32\msinfo32.exe
2013-09-18 14:12:32 ----A---- C:\Windows\system32\inetpp.dll
2013-09-18 14:12:32 ----A---- C:\Windows\system32\drivers\udfs.sys
2013-09-18 14:12:32 ----A---- C:\Windows\system32\drivers\fltMgr.sys
2013-09-18 14:12:32 ----A---- C:\Windows\system32\davclnt.dll
2013-09-18 14:12:32 ----A---- C:\Windows\system32\credui.dll
2013-09-18 14:12:32 ----A---- C:\Windows\system32\biocpl.dll
2013-09-18 14:12:32 ----A---- C:\Windows\system32\bcryptprimitives.dll
2013-09-18 14:12:31 ----A---- C:\Windows\SYSWOW64\themeui.dll
2013-09-18 14:12:31 ----A---- C:\Windows\SYSWOW64\taskeng.exe
2013-09-18 14:12:31 ----A---- C:\Windows\SYSWOW64\spp.dll
2013-09-18 14:12:31 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2013-09-18 14:12:31 ----A---- C:\Windows\SYSWOW64\dhcpcore.dll
2013-09-18 14:12:31 ----A---- C:\Windows\SYSWOW64\credui.dll
2013-09-18 14:12:31 ----A---- C:\Windows\system32\wusa.exe
2013-09-18 14:12:31 ----A---- C:\Windows\system32\scansetting.dll
2013-09-18 14:12:31 ----A---- C:\Windows\system32\printui.dll
2013-09-18 14:12:31 ----A---- C:\Windows\system32\pla.dll
2013-09-18 14:12:31 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2013-09-18 14:12:31 ----A---- C:\Windows\system32\mspbda.dll
2013-09-18 14:12:31 ----A---- C:\Windows\system32\msdri.dll
2013-09-18 14:12:31 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2013-09-18 14:12:31 ----A---- C:\Windows\system32\aitagent.exe
2013-09-18 14:12:30 ----A---- C:\Windows\SYSWOW64\NaturalLanguage6.dll
2013-09-18 14:12:30 ----A---- C:\Windows\SYSWOW64\mfreadwrite.dll
2013-09-18 14:12:30 ----A---- C:\Windows\SYSWOW64\dbghelp.dll
2013-09-18 14:12:30 ----A---- C:\Windows\SYSWOW64\basecsp.dll
2013-09-18 14:12:30 ----A---- C:\Windows\system32\XpsRasterService.dll
2013-09-18 14:12:30 ----A---- C:\Windows\system32\wisptis.exe
2013-09-18 14:12:30 ----A---- C:\Windows\system32\wiaservc.dll
2013-09-18 14:12:30 ----A---- C:\Windows\system32\vds.exe
2013-09-18 14:12:30 ----A---- C:\Windows\system32\rpchttp.dll
2013-09-18 14:12:30 ----A---- C:\Windows\system32\PkgMgr.exe
2013-09-18 14:12:30 ----A---- C:\Windows\system32\mscms.dll
2013-09-18 14:12:30 ----A---- C:\Windows\system32\FirewallControlPanel.dll
2013-09-18 14:12:30 ----A---- C:\Windows\system32\drivers\rasl2tp.sys
2013-09-18 14:12:30 ----A---- C:\Windows\system32\drivers\pci.sys
2013-09-18 14:12:29 ----A---- C:\Windows\SYSWOW64\WinSATAPI.dll
2013-09-18 14:12:29 ----A---- C:\Windows\SYSWOW64\taskcomp.dll
2013-09-18 14:12:29 ----A---- C:\Windows\SYSWOW64\evr.dll
2013-09-18 14:12:29 ----A---- C:\Windows\SYSWOW64\calc.exe
2013-09-18 14:12:29 ----A---- C:\Windows\system32\sppwinob.dll
2013-09-18 14:12:29 ----A---- C:\Windows\system32\ocsetup.exe
2013-09-18 14:12:29 ----A---- C:\Windows\system32\ocsetapi.dll
2013-09-18 14:12:29 ----A---- C:\Windows\system32\DXP.dll
2013-09-18 14:12:29 ----A---- C:\Windows\system32\drivers\volmgr.sys
2013-09-18 14:12:29 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2013-09-18 14:12:28 ----A---- C:\Windows\SYSWOW64\UIRibbon.dll
2013-09-18 14:12:28 ----A---- C:\Windows\SYSWOW64\sqlsrv32.dll
2013-09-18 14:12:28 ----A---- C:\Windows\system32\wpdbusenum.dll
2013-09-18 14:12:28 ----A---- C:\Windows\system32\wcncsvc.dll
2013-09-18 14:12:28 ----A---- C:\Windows\system32\upnp.dll
2013-09-18 14:12:28 ----A---- C:\Windows\system32\t2embed.dll
2013-09-18 14:12:28 ----A---- C:\Windows\system32\Robocopy.exe
2013-09-18 14:12:28 ----A---- C:\Windows\system32\mprapi.dll
2013-09-18 14:12:28 ----A---- C:\Windows\system32\eapphost.dll
2013-09-18 14:12:28 ----A---- C:\Windows\system32\eapp3hst.dll
2013-09-18 14:12:28 ----A---- C:\Windows\system32\drivers\msdsm.sys
2013-09-18 14:12:28 ----A---- C:\Windows\system32\drivers\HpSAMD.sys
2013-09-18 14:12:28 ----A---- C:\Windows\system32\ci.dll
2013-09-18 14:12:27 ----A---- C:\Windows\SYSWOW64\ws2_32.dll
2013-09-18 14:12:27 ----A---- C:\Windows\SYSWOW64\sxs.dll
2013-09-18 14:12:27 ----A---- C:\Windows\SYSWOW64\stobject.dll
2013-09-18 14:12:27 ----A---- C:\Windows\SYSWOW64\netshell.dll
2013-09-18 14:12:27 ----A---- C:\Windows\system32\thumbcache.dll
2013-09-18 14:12:27 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2013-09-18 14:12:27 ----A---- C:\Windows\system32\hal.dll
2013-09-18 14:12:27 ----A---- C:\Windows\system32\DxpTaskSync.dll
2013-09-18 14:12:26 ----A---- C:\Windows\SYSWOW64\wmpeffects.dll
2013-09-18 14:12:26 ----A---- C:\Windows\SYSWOW64\prncache.dll
Run by Kuba at 2013-09-28 19:43:35
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 369 GB (90%) free of 410 GB
Total RAM: 4093 MB (51% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:43:40, on 28.9.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16686)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe
C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Programy\PrintScreen\PrintScreen.exe
C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe
C:\Programy\MS OFFICE\Office12\EXCEL.EXE
C:\Programy\Mozilla Firefox\firefox.exe
E:\SiRonnie\Hry\League Of Legends\League of Legends\RADS\system\rads_user_kernel.exe
C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
E:\SiRonnie\Hry\League Of Legends\League of Legends\RADS\projects\lol_launcher\releases\0.0.0.185\deploy\LoLLauncher.exe
E:\SiRonnie\Hry\League Of Legends\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.47\deploy\LolClient.exe
C:\Program Files\trend micro\Kuba.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = :0
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\coIEPlg.dll
O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\IPS\IPSBHO.DLL
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\coIEPlg.dll
O4 - HKLM\..\Run: [Razer Synapse] "C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Gadwin PrintScreen] C:\Programy\PrintScreen\PrintScreen.exe /nosplash
O4 - HKUS\S-1-5-21-2671917893-706360513-2285705896-1003\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-2671917893-706360513-2285705896-1003\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Programy\MSOFFI~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programy\MSOFFI~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programy\MSOFFI~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Programy\MSOFFI~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: vToolbarUpdater17.0.1 - Unknown owner - C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\17.0.1\ToolbarUpdater.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 7636 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
winlogon.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe" /s "NIS" /m "C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\diMaster.dll" /prefetch:1
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
"C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe" /c /a /s UserSession2
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
taskeng.exe {2EEE4DE1-B6C2-416C-AD73-7F289CEABE40}
"C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe" -boot
"C:\Windows\SysWOW64\rundll32.exe" C:\Windows\Syswow64\cm108.dll,CMICtrlWnd
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe"
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Programy\PrintScreen\PrintScreen.exe" /nosplash
C:\Windows\splwow64.exe 8192
"C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Windows\system32\wuauclt.exe"
"C:\Programy\MS OFFICE\Office12\EXCEL.EXE" /e
"C:\Programy\TS3\ts3client_win64.exe"
"C:\Programy\Mozilla Firefox\firefox.exe"
"E:\SiRonnie\Hry\League Of Legends\League of Legends\RADS\system\rads_user_kernel.exe" updateandrun lol_launcher LoLLauncher.exe
"C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe"
LoLLauncher.exe
"E:/SiRonnie/Hry/League Of Legends/League of Legends/RADS/projects/lol_air_client/releases/0.0.1.47/deploy/LolClient.exe" -runtime .\ -nodebug META-INF\AIR\application.xml .\ -- 8393
"taskhost.exe"
"C:\Programy\totalcmd\TOTALCMD64.EXE"
"C:\Users\Kuba\Downloads\RSITx64.exe"
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\SlimDrivers Startup.job
=========Mozilla firefox=========
ProfilePath - C:\Users\Kuba\AppData\Roaming\Mozilla\Firefox\Profiles\b3rnf8e0.default
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
prefs.js - "keyword.URL" - ""
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.8.800.168 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_168.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nullsoft.com/winampDetector;version=1]
"Description"=Winamp Detector
"Path"=C:\Program Files (x86)\Winamp Detect\npwachk.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.8]
"Description"=VLC Multimedia Plugin
"Path"=C:\Programy\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.8.800.168 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_168.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
Norton Identity Protection - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\coIEPlg.dll [2013-08-15 526160]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Norton Vulnerability Protection - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\IPS\IPSBHO.DLL [2013-08-06 388512]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\coIEPlg.dll [2013-08-15 526160]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Cm108Sound"=C:\Windows\syswow64\RunDll32.exe [2009-07-14 44544]
"Nvtmru"=C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [2013-05-16 1012000]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2013-07-25 20684656]
"Gadwin PrintScreen"=C:\Programy\PrintScreen\PrintScreen.exe [2012-05-30 1842384]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
""= []
"Razer Synapse"=C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [2013-08-15 606040]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2013-09-28 18:01:27 ----D---- C:\Users\Kuba\AppData\Roaming\vlc
2013-09-28 00:02:42 ----D---- C:\AdwCleaner
2013-09-27 23:59:53 ----A---- C:\Windows\wininit.ini
2013-09-20 04:33:22 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-09-20 04:33:22 ----A---- C:\Windows\system32\ieui.dll
2013-09-20 04:33:21 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2013-09-20 04:33:20 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2013-09-20 04:33:20 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2013-09-20 04:33:20 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2013-09-20 04:33:20 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-09-20 04:33:20 ----A---- C:\Windows\system32\iesysprep.dll
2013-09-20 04:33:20 ----A---- C:\Windows\system32\iesetup.dll
2013-09-20 04:33:20 ----A---- C:\Windows\system32\iernonce.dll
2013-09-20 04:33:20 ----A---- C:\Windows\system32\ie4uinit.exe
2013-09-20 04:33:19 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-09-20 04:33:19 ----A---- C:\Windows\system32\iertutil.dll
2013-09-20 04:33:18 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-09-20 04:33:17 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-09-20 04:33:17 ----A---- C:\Windows\system32\msfeeds.dll
2013-09-20 04:33:17 ----A---- C:\Windows\system32\jscript.dll
2013-09-20 04:33:16 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-09-20 04:33:16 ----A---- C:\Windows\system32\jscript9.dll
2013-09-20 04:33:15 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-09-20 04:33:15 ----A---- C:\Windows\system32\urlmon.dll
2013-09-20 04:33:14 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-09-20 04:33:14 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-09-20 04:33:14 ----A---- C:\Windows\system32\wininet.dll
2013-09-20 04:33:14 ----A---- C:\Windows\system32\jsproxy.dll
2013-09-20 04:33:13 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-09-20 04:33:12 ----A---- C:\Windows\system32\ieframe.dll
2013-09-20 04:33:10 ----A---- C:\Windows\system32\mshtml.dll
2013-09-20 04:33:08 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-09-20 03:45:58 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2013-09-20 03:45:58 ----A---- C:\Windows\system32\WindowsCodecs.dll
2013-09-19 15:55:22 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2013-09-19 15:55:22 ----A---- C:\Windows\system32\DWrite.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\wextract.exe
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\url.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\occache.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\msrating.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\msls31.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\mshta.exe
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\inseng.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\icardie.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2013-09-19 14:10:44 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2013-09-19 14:10:44 ----A---- C:\Windows\system32\elshyph.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\wextract.exe
2013-09-19 14:10:43 ----A---- C:\Windows\system32\webcheck.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\vbscript.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\url.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2013-09-19 14:10:43 ----A---- C:\Windows\system32\pngfilt.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\occache.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\msrating.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\msls31.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\mshtmlmedia.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\mshtmler.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\mshtmled.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\mshta.exe
2013-09-19 14:10:43 ----A---- C:\Windows\system32\msfeedssync.exe
2013-09-19 14:10:43 ----A---- C:\Windows\system32\msfeedsbs.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\licmgr10.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\inseng.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\imgutil.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\iexpress.exe
2013-09-19 14:10:43 ----A---- C:\Windows\system32\ieUnatt.exe
2013-09-19 14:10:43 ----A---- C:\Windows\system32\iepeers.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\iedkcs32.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\ieapfltr.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\ieapfltr.dat
2013-09-19 14:10:43 ----A---- C:\Windows\system32\IEAdvpack.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\icardie.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\dxtrans.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\dxtmsft.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d3d10core.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d3d10.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\XpsPrint.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\WMPhoto.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\UIAnimation.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\FntCache.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\dxgi.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d3d10warp.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d3d10level9.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d3d10core.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d3d10_1core.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d3d10_1.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d3d10.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d2d1.dll
2013-09-19 13:42:11 ----SHD---- C:\Config.Msi
2013-09-19 09:25:50 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2013-09-19 09:25:49 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2013-09-19 09:25:49 ----A---- C:\Windows\system32\cdd.dll
2013-09-19 09:25:24 ----A---- C:\Windows\SYSWOW64\dhcpcore6.dll
2013-09-19 09:25:24 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2013-09-19 09:25:24 ----A---- C:\Windows\system32\dhcpcore6.dll
2013-09-19 09:25:23 ----A---- C:\Windows\SYSWOW64\dhcpcsvc6.dll
2013-09-19 09:25:04 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2013-09-19 09:25:04 ----A---- C:\Windows\system32\wintrust.dll
2013-09-19 09:25:04 ----A---- C:\Windows\system32\crypt32.dll
2013-09-19 09:25:03 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2013-09-19 09:25:03 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2013-09-19 09:25:03 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2013-09-19 09:25:03 ----A---- C:\Windows\system32\cryptsvc.dll
2013-09-19 09:25:03 ----A---- C:\Windows\system32\cryptnet.dll
2013-09-19 09:24:31 ----A---- C:\Windows\system32\authui.dll
2013-09-19 09:24:29 ----A---- C:\Windows\SYSWOW64\authui.dll
2013-09-19 09:24:29 ----A---- C:\Windows\system32\consent.exe
2013-09-19 09:24:29 ----A---- C:\Windows\system32\appinfo.dll
2013-09-19 09:24:20 ----A---- C:\Windows\system32\wwansvc.dll
2013-09-19 09:24:20 ----A---- C:\Windows\system32\wwanprotdim.dll
2013-09-19 09:24:13 ----A---- C:\Windows\SYSWOW64\tzres.dll
2013-09-19 09:24:13 ----A---- C:\Windows\system32\tzres.dll
2013-09-19 09:24:04 ----A---- C:\Windows\system32\drivers\ataport.sys
2013-09-19 09:24:02 ----A---- C:\Windows\system32\drivers\RNDISMP.sys
2013-09-19 09:24:02 ----A---- C:\Windows\system32\drivers\ndis.sys
2013-09-19 09:24:00 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2013-09-19 09:24:00 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2013-09-19 09:24:00 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-09-19 09:24:00 ----A---- C:\Windows\system32\ntdll.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\wow32.dll
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\user.exe
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\setup16.exe
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\instnm.exe
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\wow64win.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\wow64cpu.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\wow64.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\winsrv.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\smss.exe
2013-09-19 09:23:59 ----A---- C:\Windows\system32\ntvdm64.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\KernelBase.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\kernel32.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\csrsrv.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\conhost.exe
2013-09-19 09:23:59 ----A---- C:\Windows\system32\apisetschema.dll
2013-09-19 09:23:58 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2013-09-19 09:23:58 ----A---- C:\Windows\system32\WMVDECOD.DLL
2013-09-19 09:23:57 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2013-09-19 09:23:57 ----A---- C:\Windows\system32\rpcrt4.dll
2013-09-19 09:23:54 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2013-09-19 09:23:54 ----A---- C:\Windows\SYSWOW64\netevent.dll
2013-09-19 09:23:54 ----A---- C:\Windows\SYSWOW64\netcorehc.dll
2013-09-19 09:23:54 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\nlasvc.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\nlaapi.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\netevent.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\netcorehc.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\ncsi.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\iphlpsvc.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2013-09-19 09:23:52 ----A---- C:\Windows\system32\qedit.dll
2013-09-19 09:23:51 ----A---- C:\Windows\SYSWOW64\qedit.dll
2013-09-19 09:23:50 ----A---- C:\Windows\system32\OxpsConverter.exe
2013-09-19 09:23:30 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2013-09-19 09:23:17 ----A---- C:\Windows\system32\win32k.sys
2013-09-19 09:22:44 ----A---- C:\Windows\system32\shell32.dll
2013-09-19 09:22:43 ----A---- C:\Windows\SYSWOW64\shell32.dll
2013-09-19 09:22:42 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2013-09-19 09:22:42 ----A---- C:\Windows\system32\shdocvw.dll
2013-09-19 09:22:40 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2013-09-19 09:22:40 ----A---- C:\Windows\system32\win32spl.dll
2013-09-19 09:22:36 ----A---- C:\Windows\system32\taskhost.exe
2013-09-19 09:22:31 ----A---- C:\Windows\SYSWOW64\cryptdlg.dll
2013-09-19 09:22:31 ----A---- C:\Windows\system32\cryptdlg.dll
2013-09-19 09:22:21 ----A---- C:\Windows\system32\drivers\tcpip.sys
2013-09-19 09:22:18 ----A---- C:\Windows\SYSWOW64\certutil.exe
2013-09-19 09:22:18 ----A---- C:\Windows\system32\certutil.exe
2013-09-19 09:22:17 ----A---- C:\Windows\SYSWOW64\certenc.dll
2013-09-19 09:22:17 ----A---- C:\Windows\system32\certenc.dll
2013-09-19 09:18:10 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2013-09-19 09:18:10 ----A---- C:\Windows\system32\d3d11.dll
2013-09-19 03:17:39 ----SHD---- C:\$RECYCLE.BIN
2013-09-19 03:17:09 ----A---- C:\ComboFix.txt
2013-09-19 02:57:28 ----A---- C:\Windows\zip.exe
2013-09-19 02:57:28 ----A---- C:\Windows\SWSC.exe
2013-09-19 02:57:28 ----A---- C:\Windows\SWREG.exe
2013-09-19 02:57:28 ----A---- C:\Windows\sed.exe
2013-09-19 02:57:28 ----A---- C:\Windows\PEV.exe
2013-09-19 02:57:28 ----A---- C:\Windows\NIRCMD.exe
2013-09-19 02:57:28 ----A---- C:\Windows\MBR.exe
2013-09-19 02:57:28 ----A---- C:\Windows\grep.exe
2013-09-19 02:47:38 ----D---- C:\Qoobox
2013-09-19 02:47:21 ----D---- C:\Windows\erdnt
2013-09-18 15:03:46 ----D---- C:\Windows\system32\SPReview
2013-09-18 15:02:57 ----D---- C:\Windows\system32\EventProviders
2013-09-18 14:47:30 ----SHD---- C:\Windows\system32\%APPDATA%
2013-09-18 14:38:09 ----SHD---- C:\Windows\SYSWOW64\%APPDATA%
2013-09-18 14:20:35 ----D---- C:\Program Files\KONICA MINOLTA
2013-09-18 14:13:20 ----A---- C:\Windows\system32\netfxperf.dll
2013-09-18 14:13:20 ----A---- C:\Windows\system32\dfshim.dll
2013-09-18 14:13:15 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2013-09-18 14:13:12 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2013-09-18 14:13:12 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2013-09-18 14:13:08 ----A---- C:\Windows\SYSWOW64\mfc40u.dll
2013-09-18 14:13:08 ----A---- C:\Windows\SYSWOW64\mfc40.dll
2013-09-18 14:13:08 ----A---- C:\Windows\system32\sysmain.dll
2013-09-18 14:13:07 ----A---- C:\Windows\system32\MSVidCtl.dll
2013-09-18 14:13:06 ----A---- C:\Windows\system32\wmp.dll
2013-09-18 14:13:05 ----A---- C:\Windows\system32\mscoree.dll
2013-09-18 14:13:05 ----A---- C:\Windows\system32\mmcndmgr.dll
2013-09-18 14:13:04 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll
2013-09-18 14:13:04 ----A---- C:\Windows\system32\xpsservices.dll
2013-09-18 14:13:04 ----A---- C:\Windows\system32\secproc_isv.dll
2013-09-18 14:13:04 ----A---- C:\Windows\system32\secproc.dll
2013-09-18 14:13:04 ----A---- C:\Windows\system32\RMActivate_isv.exe
2013-09-18 14:13:04 ----A---- C:\Windows\system32\RMActivate.exe
2013-09-18 14:13:04 ----A---- C:\Windows\system32\mf.dll
2013-09-18 14:13:03 ----A---- C:\Windows\SYSWOW64\secproc.dll
2013-09-18 14:13:03 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe
2013-09-18 14:13:02 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2013-09-18 14:13:02 ----A---- C:\Windows\system32\schedsvc.dll
2013-09-18 14:13:02 ----A---- C:\Windows\system32\ole32.dll
2013-09-18 14:13:01 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2013-09-18 14:13:01 ----A---- C:\Windows\system32\taskschd.dll
2013-09-18 14:13:01 ----A---- C:\Windows\system32\spwizui.dll
2013-09-18 14:13:01 ----A---- C:\Windows\system32\RacEngn.dll
2013-09-18 14:13:01 ----A---- C:\Windows\system32\diagperf.dll
2013-09-18 14:13:00 ----A---- C:\Windows\SYSWOW64\mf.dll
2013-09-18 14:13:00 ----A---- C:\Windows\SYSWOW64\CertEnroll.dll
2013-09-18 14:13:00 ----A---- C:\Windows\system32\wevtsvc.dll
2013-09-18 14:13:00 ----A---- C:\Windows\system32\vssapi.dll
2013-09-18 14:13:00 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2013-09-18 14:13:00 ----A---- C:\Windows\system32\ExplorerFrame.dll
2013-09-18 14:13:00 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2013-09-18 14:12:59 ----A---- C:\Windows\SYSWOW64\wmp.dll
2013-09-18 14:12:59 ----A---- C:\Windows\system32\UIRibbon.dll
2013-09-18 14:12:59 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2013-09-18 14:12:58 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2013-09-18 14:12:58 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2013-09-18 14:12:58 ----A---- C:\Windows\system32\WsmSvc.dll
2013-09-18 14:12:58 ----A---- C:\Windows\system32\WMVCORE.DLL
2013-09-18 14:12:58 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2013-09-18 14:12:58 ----A---- C:\Windows\system32\PresentationHost.exe
2013-09-18 14:12:57 ----A---- C:\Windows\system32\WinSAT.exe
2013-09-18 14:12:57 ----A---- C:\Windows\system32\spreview.exe
2013-09-18 14:12:57 ----A---- C:\Windows\system32\spinstall.exe
2013-09-18 14:12:57 ----A---- C:\Windows\system32\rdpdd.dll
2013-09-18 14:12:57 ----A---- C:\Windows\system32\MPSSVC.dll
2013-09-18 14:12:57 ----A---- C:\Windows\system32\CertEnroll.dll
2013-09-18 14:12:56 ----A---- C:\Windows\SYSWOW64\RacEngn.dll
2013-09-18 14:12:56 ----A---- C:\Windows\system32\IKEEXT.DLL
2013-09-18 14:12:56 ----A---- C:\Windows\system32\d3d9.dll
2013-09-18 14:12:55 ----A---- C:\Windows\SYSWOW64\AuthFWSnapin.dll
2013-09-18 14:12:55 ----A---- C:\Windows\system32\VSSVC.exe
2013-09-18 14:12:55 ----A---- C:\Windows\system32\SearchFolder.dll
2013-09-18 14:12:55 ----A---- C:\Windows\system32\gpsvc.dll
2013-09-18 14:12:55 ----A---- C:\Windows\system32\dwmcore.dll
2013-09-18 14:12:55 ----A---- C:\Windows\system32\AuthFWSnapin.dll
2013-09-18 14:12:54 ----A---- C:\Windows\system32\drivers\http.sys
2013-09-18 14:12:54 ----A---- C:\Windows\system32\dbgeng.dll
2013-09-18 14:12:53 ----A---- C:\Windows\SYSWOW64\ole32.dll
2013-09-18 14:12:53 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2013-09-18 14:12:53 ----A---- C:\Windows\system32\TSWorkspace.dll
2013-09-18 14:12:53 ----A---- C:\Windows\system32\qmgr.dll
2013-09-18 14:12:53 ----A---- C:\Windows\system32\audiosrv.dll
2013-09-18 14:12:53 ----A---- C:\Windows\system32\actxprxy.dll
2013-09-18 14:12:52 ----A---- C:\Windows\system32\termsrv.dll
2013-09-18 14:12:52 ----A---- C:\Windows\system32\mstsc.exe
2013-09-18 14:12:50 ----A---- C:\Windows\system32\netlogon.dll
2013-09-18 14:12:50 ----A---- C:\Windows\system32\imapi2fs.dll
2013-09-18 14:12:49 ----A---- C:\Windows\SYSWOW64\vssapi.dll
2013-09-18 14:12:49 ----A---- C:\Windows\SYSWOW64\SearchFolder.dll
2013-09-18 14:12:49 ----A---- C:\Windows\SYSWOW64\d3d9.dll
2013-09-18 14:12:49 ----A---- C:\Windows\system32\winhttp.dll
2013-09-18 14:12:48 ----A---- C:\Windows\SYSWOW64\taskschd.dll
2013-09-18 14:12:48 ----A---- C:\Windows\system32\wbengine.exe
2013-09-18 14:12:48 ----A---- C:\Windows\system32\setupapi.dll
2013-09-18 14:12:48 ----A---- C:\Windows\system32\rpcss.dll
2013-09-18 14:12:48 ----A---- C:\Windows\system32\QAGENTRT.DLL
2013-09-18 14:12:48 ----A---- C:\Windows\system32\propsys.dll
2013-09-18 14:12:48 ----A---- C:\Windows\system32\msv1_0.dll
2013-09-18 14:12:47 ----A---- C:\Windows\system32\werconcpl.dll
2013-09-18 14:12:47 ----A---- C:\Windows\system32\taskeng.exe
2013-09-18 14:12:47 ----A---- C:\Windows\system32\odbc32.dll
2013-09-18 14:12:46 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2013-09-18 14:12:46 ----A---- C:\Windows\system32\WSDApi.dll
2013-09-18 14:12:46 ----A---- C:\Windows\system32\user32.dll
2013-09-18 14:12:46 ----A---- C:\Windows\system32\dhcpcore.dll
2013-09-18 14:12:46 ----A---- C:\Windows\system32\certmgr.dll
2013-09-18 14:12:45 ----A---- C:\Windows\SYSWOW64\wer.dll
2013-09-18 14:12:45 ----A---- C:\Windows\system32\scavengeui.dll
2013-09-18 14:12:45 ----A---- C:\Windows\system32\drivers\tdx.sys
2013-09-18 14:12:45 ----A---- C:\Windows\system32\drivers\netbt.sys
2013-09-18 14:12:44 ----A---- C:\Windows\SYSWOW64\odbc32.dll
2013-09-18 14:12:44 ----A---- C:\Windows\SYSWOW64\dwmcore.dll
2013-09-18 14:12:44 ----A---- C:\Windows\SYSWOW64\certcli.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\tsmf.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\shlwapi.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\netshell.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\msdtctm.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\msdrm.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\framedynos.dll
2013-09-18 14:12:43 ----A---- C:\Windows\SYSWOW64\tcpmonui.dll
2013-09-18 14:12:43 ----A---- C:\Windows\system32\ws2_32.dll
2013-09-18 14:12:43 ----A---- C:\Windows\system32\wmicmiplugin.dll
2013-09-18 14:12:43 ----A---- C:\Windows\system32\winlogon.exe
2013-09-18 14:12:43 ----A---- C:\Windows\system32\netcfgx.dll
2013-09-18 14:12:43 ----A---- C:\Windows\system32\lsm.exe
2013-09-18 14:12:43 ----A---- C:\Windows\system32\comdlg32.dll
2013-09-18 14:12:42 ----A---- C:\Windows\SYSWOW64\winhttp.dll
2013-09-18 14:12:42 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll
2013-09-18 14:12:42 ----A---- C:\Windows\SYSWOW64\tsmf.dll
2013-09-18 14:12:42 ----A---- C:\Windows\SYSWOW64\setupapi.dll
2013-09-18 14:12:42 ----A---- C:\Windows\SYSWOW64\dot3api.dll
2013-09-18 14:12:42 ----A---- C:\Windows\system32\wpdshext.dll
2013-09-18 14:12:42 ----A---- C:\Windows\system32\wmpps.dll
2013-09-18 14:12:42 ----A---- C:\Windows\system32\Query.dll
2013-09-18 14:12:42 ----A---- C:\Windows\system32\QAGENT.DLL
2013-09-18 14:12:42 ----A---- C:\Windows\system32\mswsock.dll
2013-09-18 14:12:42 ----A---- C:\Windows\system32\drvstore.dll
2013-09-18 14:12:42 ----A---- C:\Windows\system32\BFE.DLL
2013-09-18 14:12:42 ----A---- C:\Windows\system32\azroles.dll
2013-09-18 14:12:42 ----A---- C:\Windows\system32\apphelp.dll
2013-09-18 14:12:41 ----A---- C:\Windows\SYSWOW64\MSVidCtl.dll
2013-09-18 14:12:41 ----A---- C:\Windows\SYSWOW64\dbgeng.dll
2013-09-18 14:12:41 ----A---- C:\Windows\SYSWOW64\apphelp.dll
2013-09-18 14:12:41 ----A---- C:\Windows\system32\Vault.dll
2013-09-18 14:12:41 ----A---- C:\Windows\system32\samsrv.dll
2013-09-18 14:12:41 ----A---- C:\Windows\system32\lpksetup.exe
2013-09-18 14:12:41 ----A---- C:\Windows\system32\DShowRdpFilter.dll
2013-09-18 14:12:41 ----A---- C:\Windows\system32\cmd.exe
2013-09-18 14:12:40 ----A---- C:\Windows\SYSWOW64\netlogon.dll
2013-09-18 14:12:40 ----A---- C:\Windows\SYSWOW64\netcfgx.dll
2013-09-18 14:12:40 ----A---- C:\Windows\system32\WebClnt.dll
2013-09-18 14:12:39 ----A---- C:\Windows\SYSWOW64\WsmSvc.dll
2013-09-18 14:12:39 ----A---- C:\Windows\SYSWOW64\upnp.dll
2013-09-18 14:12:39 ----A---- C:\Windows\SYSWOW64\Query.dll
2013-09-18 14:12:39 ----A---- C:\Windows\SYSWOW64\advapi32.dll
2013-09-18 14:12:39 ----A---- C:\Windows\system32\Wldap32.dll
2013-09-18 14:12:39 ----A---- C:\Windows\system32\taskcomp.dll
2013-09-18 14:12:39 ----A---- C:\Windows\system32\sxs.dll
2013-09-18 14:12:39 ----A---- C:\Windows\system32\pnidui.dll
2013-09-18 14:12:39 ----A---- C:\Windows\system32\mfds.dll
2013-09-18 14:12:39 ----A---- C:\Windows\system32\mcbuilder.exe
2013-09-18 14:12:39 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2013-09-18 14:12:38 ----A---- C:\Windows\SYSWOW64\SessEnv.dll
2013-09-18 14:12:38 ----A---- C:\Windows\SYSWOW64\PortableDeviceApi.dll
2013-09-18 14:12:38 ----A---- C:\Windows\SYSWOW64\netfxperf.dll
2013-09-18 14:12:38 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2013-09-18 14:12:38 ----A---- C:\Windows\SYSWOW64\msdrm.dll
2013-09-18 14:12:38 ----A---- C:\Windows\SYSWOW64\mmcndmgr.dll
2013-09-18 14:12:38 ----A---- C:\Windows\SYSWOW64\imapi2fs.dll
2013-09-18 14:12:38 ----A---- C:\Windows\SYSWOW64\DShowRdpFilter.dll
2013-09-18 14:12:38 ----A---- C:\Windows\system32\winsta.dll
2013-09-18 14:12:38 ----A---- C:\Windows\system32\webservices.dll
2013-09-18 14:12:38 ----A---- C:\Windows\system32\sqlsrv32.dll
2013-09-18 14:12:38 ----A---- C:\Windows\system32\SessEnv.dll
2013-09-18 14:12:38 ----A---- C:\Windows\system32\ipsmsnap.dll
2013-09-18 14:12:38 ----A---- C:\Windows\system32\hgprint.dll
2013-09-18 14:12:38 ----A---- C:\Windows\system32\fveapi.dll
2013-09-18 14:12:38 ----A---- C:\Windows\system32\dot3api.dll
2013-09-18 14:12:37 ----A---- C:\Windows\SYSWOW64\shlwapi.dll
2013-09-18 14:12:37 ----A---- C:\Windows\SYSWOW64\mcbuilder.exe
2013-09-18 14:12:37 ----A---- C:\Windows\SYSWOW64\certmgr.dll
2013-09-18 14:12:37 ----A---- C:\Windows\system32\WMNetMgr.dll
2013-09-18 14:12:37 ----A---- C:\Windows\system32\wlanpref.dll
2013-09-18 14:12:37 ----A---- C:\Windows\system32\schtasks.exe
2013-09-18 14:12:37 ----A---- C:\Windows\system32\prncache.dll
2013-09-18 14:12:37 ----A---- C:\Windows\system32\mcmde.dll
2013-09-18 14:12:37 ----A---- C:\Windows\system32\gdi32.dll
2013-09-18 14:12:37 ----A---- C:\Windows\system32\drivers\volsnap.sys
2013-09-18 14:12:37 ----A---- C:\Windows\system32\drivers\msrpc.sys
2013-09-18 14:12:36 ----A---- C:\Windows\SYSWOW64\xpsservices.dll
2013-09-18 14:12:36 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2013-09-18 14:12:36 ----A---- C:\Windows\SYSWOW64\userenv.dll
2013-09-18 14:12:36 ----A---- C:\Windows\SYSWOW64\drvstore.dll
2013-09-18 14:12:36 ----A---- C:\Windows\SYSWOW64\comdlg32.dll
2013-09-18 14:12:36 ----A---- C:\Windows\system32\vpnike.dll
2013-09-18 14:12:36 ----A---- C:\Windows\system32\userenv.dll
2013-09-18 14:12:36 ----A---- C:\Windows\system32\photowiz.dll
2013-09-18 14:12:36 ----A---- C:\Windows\system32\evr.dll
2013-09-18 14:12:36 ----A---- C:\Windows\system32\drivers\rdbss.sys
2013-09-18 14:12:36 ----A---- C:\Windows\system32\drivers\1394ohci.sys
2013-09-18 14:12:35 ----A---- C:\Windows\system32\IPSECSVC.DLL
2013-09-18 14:12:35 ----A---- C:\Windows\system32\framedyn.dll
2013-09-18 14:12:35 ----A---- C:\Windows\system32\AudioSes.dll
2013-09-18 14:12:34 ----A---- C:\Windows\SYSWOW64\cmd.exe
2013-09-18 14:12:34 ----A---- C:\Windows\system32\wmpmde.dll
2013-09-18 14:12:34 ----A---- C:\Windows\system32\WMPEncEn.dll
2013-09-18 14:12:34 ----A---- C:\Windows\system32\wmpeffects.dll
2013-09-18 14:12:34 ----A---- C:\Windows\system32\SyncCenter.dll
2013-09-18 14:12:34 ----A---- C:\Windows\system32\srvsvc.dll
2013-09-18 14:12:34 ----A---- C:\Windows\system32\sppobjs.dll
2013-09-18 14:12:34 ----A---- C:\Windows\system32\shsvcs.dll
2013-09-18 14:12:34 ----A---- C:\Windows\system32\mfreadwrite.dll
2013-09-18 14:12:34 ----A---- C:\Windows\system32\FXSSVC.exe
2013-09-18 14:12:34 ----A---- C:\Windows\system32\aepdu.dll
2013-09-18 14:12:34 ----A---- C:\Windows\system32\aeinv.dll
2013-09-18 14:12:33 ----A---- C:\Windows\SYSWOW64\Wldap32.dll
2013-09-18 14:12:33 ----A---- C:\Windows\SYSWOW64\propsys.dll
2013-09-18 14:12:33 ----A---- C:\Windows\SYSWOW64\mfds.dll
2013-09-18 14:12:33 ----A---- C:\Windows\SYSWOW64\framedynos.dll
2013-09-18 14:12:33 ----A---- C:\Windows\system32\WinSATAPI.dll
2013-09-18 14:12:33 ----A---- C:\Windows\system32\stobject.dll
2013-09-18 14:12:33 ----A---- C:\Windows\system32\localsec.dll
2013-09-18 14:12:33 ----A---- C:\Windows\system32\imapi2.dll
2013-09-18 14:12:33 ----A---- C:\Windows\system32\fde.dll
2013-09-18 14:12:32 ----A---- C:\Windows\SYSWOW64\user32.dll
2013-09-18 14:12:32 ----A---- C:\Windows\SYSWOW64\azroles.dll
2013-09-18 14:12:32 ----A---- C:\Windows\system32\tcpipcfg.dll
2013-09-18 14:12:32 ----A---- C:\Windows\system32\spp.dll
2013-09-18 14:12:32 ----A---- C:\Windows\system32\QSHVHOST.DLL
2013-09-18 14:12:32 ----A---- C:\Windows\system32\netid.dll
2013-09-18 14:12:32 ----A---- C:\Windows\system32\netdiagfx.dll
2013-09-18 14:12:32 ----A---- C:\Windows\system32\msinfo32.exe
2013-09-18 14:12:32 ----A---- C:\Windows\system32\inetpp.dll
2013-09-18 14:12:32 ----A---- C:\Windows\system32\drivers\udfs.sys
2013-09-18 14:12:32 ----A---- C:\Windows\system32\drivers\fltMgr.sys
2013-09-18 14:12:32 ----A---- C:\Windows\system32\davclnt.dll
2013-09-18 14:12:32 ----A---- C:\Windows\system32\credui.dll
2013-09-18 14:12:32 ----A---- C:\Windows\system32\biocpl.dll
2013-09-18 14:12:32 ----A---- C:\Windows\system32\bcryptprimitives.dll
2013-09-18 14:12:31 ----A---- C:\Windows\SYSWOW64\themeui.dll
2013-09-18 14:12:31 ----A---- C:\Windows\SYSWOW64\taskeng.exe
2013-09-18 14:12:31 ----A---- C:\Windows\SYSWOW64\spp.dll
2013-09-18 14:12:31 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2013-09-18 14:12:31 ----A---- C:\Windows\SYSWOW64\dhcpcore.dll
2013-09-18 14:12:31 ----A---- C:\Windows\SYSWOW64\credui.dll
2013-09-18 14:12:31 ----A---- C:\Windows\system32\wusa.exe
2013-09-18 14:12:31 ----A---- C:\Windows\system32\scansetting.dll
2013-09-18 14:12:31 ----A---- C:\Windows\system32\printui.dll
2013-09-18 14:12:31 ----A---- C:\Windows\system32\pla.dll
2013-09-18 14:12:31 ----A---- C:\Windows\system32\PhotoScreensaver.scr
2013-09-18 14:12:31 ----A---- C:\Windows\system32\mspbda.dll
2013-09-18 14:12:31 ----A---- C:\Windows\system32\msdri.dll
2013-09-18 14:12:31 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2013-09-18 14:12:31 ----A---- C:\Windows\system32\aitagent.exe
2013-09-18 14:12:30 ----A---- C:\Windows\SYSWOW64\NaturalLanguage6.dll
2013-09-18 14:12:30 ----A---- C:\Windows\SYSWOW64\mfreadwrite.dll
2013-09-18 14:12:30 ----A---- C:\Windows\SYSWOW64\dbghelp.dll
2013-09-18 14:12:30 ----A---- C:\Windows\SYSWOW64\basecsp.dll
2013-09-18 14:12:30 ----A---- C:\Windows\system32\XpsRasterService.dll
2013-09-18 14:12:30 ----A---- C:\Windows\system32\wisptis.exe
2013-09-18 14:12:30 ----A---- C:\Windows\system32\wiaservc.dll
2013-09-18 14:12:30 ----A---- C:\Windows\system32\vds.exe
2013-09-18 14:12:30 ----A---- C:\Windows\system32\rpchttp.dll
2013-09-18 14:12:30 ----A---- C:\Windows\system32\PkgMgr.exe
2013-09-18 14:12:30 ----A---- C:\Windows\system32\mscms.dll
2013-09-18 14:12:30 ----A---- C:\Windows\system32\FirewallControlPanel.dll
2013-09-18 14:12:30 ----A---- C:\Windows\system32\drivers\rasl2tp.sys
2013-09-18 14:12:30 ----A---- C:\Windows\system32\drivers\pci.sys
2013-09-18 14:12:29 ----A---- C:\Windows\SYSWOW64\WinSATAPI.dll
2013-09-18 14:12:29 ----A---- C:\Windows\SYSWOW64\taskcomp.dll
2013-09-18 14:12:29 ----A---- C:\Windows\SYSWOW64\evr.dll
2013-09-18 14:12:29 ----A---- C:\Windows\SYSWOW64\calc.exe
2013-09-18 14:12:29 ----A---- C:\Windows\system32\sppwinob.dll
2013-09-18 14:12:29 ----A---- C:\Windows\system32\ocsetup.exe
2013-09-18 14:12:29 ----A---- C:\Windows\system32\ocsetapi.dll
2013-09-18 14:12:29 ----A---- C:\Windows\system32\DXP.dll
2013-09-18 14:12:29 ----A---- C:\Windows\system32\drivers\volmgr.sys
2013-09-18 14:12:29 ----A---- C:\Windows\system32\drivers\mrxdav.sys
2013-09-18 14:12:28 ----A---- C:\Windows\SYSWOW64\UIRibbon.dll
2013-09-18 14:12:28 ----A---- C:\Windows\SYSWOW64\sqlsrv32.dll
2013-09-18 14:12:28 ----A---- C:\Windows\system32\wpdbusenum.dll
2013-09-18 14:12:28 ----A---- C:\Windows\system32\wcncsvc.dll
2013-09-18 14:12:28 ----A---- C:\Windows\system32\upnp.dll
2013-09-18 14:12:28 ----A---- C:\Windows\system32\t2embed.dll
2013-09-18 14:12:28 ----A---- C:\Windows\system32\Robocopy.exe
2013-09-18 14:12:28 ----A---- C:\Windows\system32\mprapi.dll
2013-09-18 14:12:28 ----A---- C:\Windows\system32\eapphost.dll
2013-09-18 14:12:28 ----A---- C:\Windows\system32\eapp3hst.dll
2013-09-18 14:12:28 ----A---- C:\Windows\system32\drivers\msdsm.sys
2013-09-18 14:12:28 ----A---- C:\Windows\system32\drivers\HpSAMD.sys
2013-09-18 14:12:28 ----A---- C:\Windows\system32\ci.dll
2013-09-18 14:12:27 ----A---- C:\Windows\SYSWOW64\ws2_32.dll
2013-09-18 14:12:27 ----A---- C:\Windows\SYSWOW64\sxs.dll
2013-09-18 14:12:27 ----A---- C:\Windows\SYSWOW64\stobject.dll
2013-09-18 14:12:27 ----A---- C:\Windows\SYSWOW64\netshell.dll
2013-09-18 14:12:27 ----A---- C:\Windows\system32\thumbcache.dll
2013-09-18 14:12:27 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2013-09-18 14:12:27 ----A---- C:\Windows\system32\hal.dll
2013-09-18 14:12:27 ----A---- C:\Windows\system32\DxpTaskSync.dll
2013-09-18 14:12:26 ----A---- C:\Windows\SYSWOW64\wmpeffects.dll
2013-09-18 14:12:26 ----A---- C:\Windows\SYSWOW64\prncache.dll
Re: Ovládá mi někdo pc na dálku
2013-09-18 14:12:26 ----A---- C:\Windows\SYSWOW64\printui.dll
2013-09-18 14:12:26 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2013-09-18 14:12:26 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2013-09-18 14:12:26 ----A---- C:\Windows\system32\themeui.dll
2013-09-18 14:12:26 ----A---- C:\Windows\system32\scecli.dll
2013-09-18 14:12:26 ----A---- C:\Windows\system32\puiobj.dll
2013-09-18 14:12:26 ----A---- C:\Windows\system32\onex.dll
2013-09-18 14:12:26 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2013-09-18 14:12:26 ----A---- C:\Windows\system32\msasn1.dll
2013-09-18 14:12:26 ----A---- C:\Windows\system32\iasrad.dll
2013-09-18 14:12:26 ----A---- C:\Windows\system32\DXPTaskRingtone.dll
2013-09-18 14:12:26 ----A---- C:\Windows\system32\dwmredir.dll
2013-09-18 14:12:26 ----A---- C:\Windows\system32\drivers\ipfltdrv.sys
2013-09-18 14:12:26 ----A---- C:\Windows\system32\drivers\Classpnp.sys
2013-09-18 14:12:25 ----A---- C:\Windows\SYSWOW64\WSDApi.dll
2013-09-18 14:12:25 ----A---- C:\Windows\SYSWOW64\scansetting.dll
2013-09-18 14:12:25 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2013-09-18 14:12:25 ----A---- C:\Windows\SYSWOW64\net1.exe
2013-09-18 14:12:25 ----A---- C:\Windows\system32\wlangpui.dll
2013-09-18 14:12:25 ----A---- C:\Windows\system32\wdc.dll
2013-09-18 14:12:25 ----A---- C:\Windows\system32\scesrv.dll
2013-09-18 14:12:25 ----A---- C:\Windows\system32\rasmans.dll
2013-09-18 14:12:24 ----A---- C:\Windows\system32\StructuredQuery.dll
2013-09-18 14:12:24 ----A---- C:\Windows\system32\sdengin2.dll
2013-09-18 14:12:24 ----A---- C:\Windows\system32\msftedit.dll
2013-09-18 14:12:23 ----A---- C:\Windows\SYSWOW64\MMDevAPI.dll
2013-09-18 14:12:23 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2013-09-18 14:12:23 ----A---- C:\Windows\system32\wscapi.dll
2013-09-18 14:12:23 ----A---- C:\Windows\system32\wiadefui.dll
2013-09-18 14:12:23 ----A---- C:\Windows\system32\VAN.dll
2013-09-18 14:12:23 ----A---- C:\Windows\system32\SndVol.exe
2013-09-18 14:12:23 ----A---- C:\Windows\system32\samcli.dll
2013-09-18 14:12:23 ----A---- C:\Windows\system32\netcenter.dll
2013-09-18 14:12:23 ----A---- C:\Windows\system32\dskquoui.dll
2013-09-18 14:12:23 ----A---- C:\Windows\system32\drivers\ndiswan.sys
2013-09-18 14:12:22 ----A---- C:\Windows\SYSWOW64\wpdshext.dll
2013-09-18 14:12:22 ----A---- C:\Windows\SYSWOW64\WMVCORE.DLL
2013-09-18 14:12:22 ----A---- C:\Windows\SYSWOW64\wlangpui.dll
2013-09-18 14:12:22 ----A---- C:\Windows\SYSWOW64\webservices.dll
2013-09-18 14:12:22 ----A---- C:\Windows\SYSWOW64\t2embed.dll
2013-09-18 14:12:22 ----A---- C:\Windows\SYSWOW64\SyncCenter.dll
2013-09-18 14:12:22 ----A---- C:\Windows\SYSWOW64\QSHVHOST.DLL
2013-09-18 14:12:22 ----A---- C:\Windows\SYSWOW64\pnidui.dll
2013-09-18 14:12:22 ----A---- C:\Windows\SYSWOW64\netdiagfx.dll
2013-09-18 14:12:22 ----A---- C:\Windows\SYSWOW64\fde.dll
2013-09-18 14:12:22 ----A---- C:\Windows\system32\wksprt.exe
2013-09-18 14:12:22 ----A---- C:\Windows\system32\TabSvc.dll
2013-09-18 14:12:22 ----A---- C:\Windows\system32\srchadmin.dll
2013-09-18 14:12:22 ----A---- C:\Windows\system32\setupcl.exe
2013-09-18 14:12:22 ----A---- C:\Windows\system32\regapi.dll
2013-09-18 14:12:22 ----A---- C:\Windows\system32\rastls.dll
2013-09-18 14:12:22 ----A---- C:\Windows\system32\QUTIL.DLL
2013-09-18 14:12:22 ----A---- C:\Windows\system32\iasacct.dll
2013-09-18 14:12:22 ----A---- C:\Windows\system32\drivers\termdd.sys
2013-09-18 14:12:22 ----A---- C:\Windows\system32\drivers\msahci.sys
2013-09-18 14:12:21 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2013-09-18 14:12:21 ----A---- C:\Windows\SYSWOW64\wscapi.dll
2013-09-18 14:12:21 ----A---- C:\Windows\SYSWOW64\WinSCard.dll
2013-09-18 14:12:21 ----A---- C:\Windows\system32\tapisrv.dll
2013-09-18 14:12:21 ----A---- C:\Windows\system32\netiohlp.dll
2013-09-18 14:12:21 ----A---- C:\Windows\system32\msconfig.exe
2013-09-18 14:12:21 ----A---- C:\Windows\system32\mimefilt.dll
2013-09-18 14:12:21 ----A---- C:\Windows\system32\ListSvc.dll
2013-09-18 14:12:21 ----A---- C:\Windows\system32\drivers\raspptp.sys
2013-09-18 14:12:21 ----A---- C:\Windows\system32\drivers\acpi.sys
2013-09-18 14:12:20 ----A---- C:\Windows\SYSWOW64\winsta.dll
2013-09-18 14:12:20 ----A---- C:\Windows\SYSWOW64\pla.dll
2013-09-18 14:12:20 ----A---- C:\Windows\SYSWOW64\MSMPEG2ENC.DLL
2013-09-18 14:12:20 ----A---- C:\Windows\SYSWOW64\msasn1.dll
2013-09-18 14:12:20 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2013-09-18 14:12:20 ----A---- C:\Windows\system32\mtxclu.dll
2013-09-18 14:12:20 ----A---- C:\Windows\system32\lsmproxy.dll
2013-09-18 14:12:20 ----A---- C:\Windows\system32\hgcpl.dll
2013-09-18 14:12:20 ----A---- C:\Windows\system32\fdeploy.dll
2013-09-18 14:12:20 ----A---- C:\Windows\system32\drivers\sbp2port.sys
2013-09-18 14:12:20 ----A---- C:\Windows\system32\drivers\ks.sys
2013-09-18 14:12:20 ----A---- C:\Windows\system32\clusapi.dll
2013-09-18 14:12:20 ----A---- C:\Windows\system32\basecsp.dll
2013-09-18 14:12:20 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2013-09-18 14:12:19 ----A---- C:\Windows\SYSWOW64\imapi2.dll
2013-09-18 14:12:19 ----A---- C:\Windows\SYSWOW64\DXPTaskRingtone.dll
2013-09-18 14:12:19 ----A---- C:\Windows\system32\riched20.dll
2013-09-18 14:12:19 ----A---- C:\Windows\system32\dnscmmc.dll
2013-09-18 14:12:18 ----A---- C:\Windows\SYSWOW64\WMPEncEn.dll
2013-09-18 14:12:18 ----A---- C:\Windows\SYSWOW64\winmm.dll
2013-09-18 14:12:18 ----A---- C:\Windows\SYSWOW64\shsvcs.dll
2013-09-18 14:12:18 ----A---- C:\Windows\SYSWOW64\samcli.dll
2013-09-18 14:12:18 ----A---- C:\Windows\SYSWOW64\onex.dll
2013-09-18 14:12:18 ----A---- C:\Windows\SYSWOW64\netiohlp.dll
2013-09-18 14:12:18 ----A---- C:\Windows\SYSWOW64\IPHLPAPI.DLL
2013-09-18 14:12:18 ----A---- C:\Windows\SYSWOW64\hbaapi.dll
2013-09-18 14:12:18 ----A---- C:\Windows\SYSWOW64\autochk.exe
2013-09-18 14:12:18 ----A---- C:\Windows\SYSWOW64\autofmt.exe
2013-09-18 14:12:18 ----A---- C:\Windows\system32\wkssvc.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\vpnikeapi.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\themecpl.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\sharemediacpl.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\SensorsCpl.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\RpcRtRemote.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\powercpl.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\netjoin.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\nci.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\Narrator.exe
2013-09-18 14:12:18 ----A---- C:\Windows\system32\logoncli.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\Faultrep.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\eudcedit.exe
2013-09-18 14:12:18 ----A---- C:\Windows\system32\comctl32.dll
2013-09-18 14:12:17 ----A---- C:\Windows\SYSWOW64\thumbcache.dll
2013-09-18 14:12:17 ----A---- C:\Windows\SYSWOW64\regapi.dll
2013-09-18 14:12:17 ----A---- C:\Windows\SYSWOW64\proquota.exe
2013-09-18 14:12:17 ----A---- C:\Windows\SYSWOW64\msutb.dll
2013-09-18 14:12:17 ----A---- C:\Windows\SYSWOW64\msinfo32.exe
2013-09-18 14:12:17 ----A---- C:\Windows\SYSWOW64\mimefilt.dll
2013-09-18 14:12:17 ----A---- C:\Windows\SYSWOW64\ipsmsnap.dll
2013-09-18 14:12:17 ----A---- C:\Windows\SYSWOW64\autoconv.exe
2013-09-18 14:12:17 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2013-09-18 14:12:17 ----A---- C:\Windows\system32\sppcomapi.dll
2013-09-18 14:12:17 ----A---- C:\Windows\system32\nshipsec.dll
2013-09-18 14:12:17 ----A---- C:\Windows\system32\cabview.dll
2013-09-18 14:12:17 ----A---- C:\Windows\system32\autochk.exe
2013-09-18 14:12:17 ----A---- C:\Windows\system32\autofmt.exe
2013-09-18 14:12:17 ----A---- C:\Windows\system32\autoconv.exe
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\wcncsvc.dll
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\tcpipcfg.dll
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\srchadmin.dll
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\schtasks.exe
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\QAGENT.DLL
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\powercpl.dll
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\netid.dll
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\mscorier.dll
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\framedyn.dll
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\eapphost.dll
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\AuxiliaryDisplayCpl.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\wwanconn.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\wpd_ci.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\wlanui.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\SmiEngine.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\shsetup.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\sdclt.exe
2013-09-18 14:12:16 ----A---- C:\Windows\system32\prntvpt.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\mscorier.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\mprddm.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\fontext.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\fms.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\drivers\wanarp.sys
2013-09-18 14:12:16 ----A---- C:\Windows\system32\drivers\volmgrx.sys
2013-09-18 14:12:16 ----A---- C:\Windows\system32\drivers\scsiport.sys
2013-09-18 14:12:16 ----A---- C:\Windows\system32\dps.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\Display.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\bcdsrv.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\AxInstSv.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\audiodg.exe
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\WMNetMgr.dll
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\wlanpref.dll
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\wdc.dll
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\Vault.dll
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\untfs.dll
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\StructuredQuery.dll
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\scesrv.dll
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\RpcRtRemote.dll
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\rastls.dll
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\nci.dll
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2013-09-18 14:12:15 ----A---- C:\Windows\system32\wmpsrcwp.dll
2013-09-18 14:12:15 ----A---- C:\Windows\system32\mblctr.exe
2013-09-18 14:12:15 ----A---- C:\Windows\system32\drivers\hidclass.sys
2013-09-18 14:12:15 ----A---- C:\Windows\system32\DiagCpl.dll
2013-09-18 14:12:15 ----A---- C:\Windows\system32\credssp.dll
2013-09-18 14:12:15 ----A---- C:\Windows\system32\batmeter.dll
2013-09-18 14:12:14 ----A---- C:\Windows\SYSWOW64\taskmgr.exe
2013-09-18 14:12:14 ----A---- C:\Windows\SYSWOW64\Robocopy.exe
2013-09-18 14:12:14 ----A---- C:\Windows\SYSWOW64\mtxclu.dll
2013-09-18 14:12:14 ----A---- C:\Windows\SYSWOW64\DxpTaskSync.dll
2013-09-18 14:12:14 ----A---- C:\Windows\SYSWOW64\Display.dll
2013-09-18 14:12:14 ----A---- C:\Windows\system32\wpccpl.dll
2013-09-18 14:12:14 ----A---- C:\Windows\system32\usercpl.dll
2013-09-18 14:12:14 ----A---- C:\Windows\system32\sppsvc.exe
2013-09-18 14:12:14 ----A---- C:\Windows\system32\SndVolSSO.dll
2013-09-18 14:12:14 ----A---- C:\Windows\system32\rtutils.dll
2013-09-18 14:12:14 ----A---- C:\Windows\system32\rasppp.dll
2013-09-18 14:12:14 ----A---- C:\Windows\system32\provsvc.dll
2013-09-18 14:12:14 ----A---- C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2013-09-18 14:12:14 ----A---- C:\Windows\system32\dxdiagn.dll
2013-09-18 14:12:14 ----A---- C:\Windows\system32\drivers\rdyboost.sys
2013-09-18 14:12:14 ----A---- C:\Windows\system32\dot3cfg.dll
2013-09-18 14:12:14 ----A---- C:\Windows\system32\bootres.dll
2013-09-18 14:12:13 ----A---- C:\Windows\SYSWOW64\XpsRasterService.dll
2013-09-18 14:12:13 ----A---- C:\Windows\SYSWOW64\userinit.exe
2013-09-18 14:12:13 ----A---- C:\Windows\SYSWOW64\termmgr.dll
2013-09-18 14:12:13 ----A---- C:\Windows\SYSWOW64\puiobj.dll
2013-09-18 14:12:13 ----A---- C:\Windows\system32\taskmgr.exe
2013-09-18 14:12:13 ----A---- C:\Windows\system32\prnfldr.dll
2013-09-18 14:12:13 ----A---- C:\Windows\system32\hbaapi.dll
2013-09-18 14:12:12 ----A---- C:\Windows\SYSWOW64\wiadefui.dll
2013-09-18 14:12:12 ----A---- C:\Windows\SYSWOW64\sppcomapi.dll
2013-09-18 14:12:12 ----A---- C:\Windows\SYSWOW64\shsetup.dll
2013-09-18 14:12:12 ----A---- C:\Windows\SYSWOW64\rasppp.dll
2013-09-18 14:12:12 ----A---- C:\Windows\SYSWOW64\logoncli.dll
2013-09-18 14:12:12 ----A---- C:\Windows\SYSWOW64\eudcedit.exe
2013-09-18 14:12:12 ----A---- C:\Windows\SYSWOW64\cabview.dll
2013-09-18 14:12:12 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2013-09-18 14:12:12 ----A---- C:\Windows\system32\userinit.exe
2013-09-18 14:12:12 ----A---- C:\Windows\system32\untfs.dll
2013-09-18 14:12:12 ----A---- C:\Windows\system32\proquota.exe
2013-09-18 14:12:12 ----A---- C:\Windows\system32\pdh.dll
2013-09-18 14:12:12 ----A---- C:\Windows\system32\MSAC3ENC.DLL
2013-09-18 14:12:12 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2013-09-18 14:12:12 ----A---- C:\Windows\system32\accessibilitycpl.dll
2013-09-18 14:12:10 ----A---- C:\Windows\SYSWOW64\SensorsCpl.dll
2013-09-18 14:12:10 ----A---- C:\Windows\SYSWOW64\FirewallControlPanel.dll
2013-09-18 14:12:09 ----A---- C:\Windows\SYSWOW64\themecpl.dll
2013-09-18 14:12:09 ----A---- C:\Windows\SYSWOW64\tapisrv.dll
2013-09-18 14:12:09 ----A---- C:\Windows\SYSWOW64\scecli.dll
2013-09-18 14:12:09 ----A---- C:\Windows\SYSWOW64\PhotoScreensaver.scr
2013-09-18 14:12:09 ----A---- C:\Windows\SYSWOW64\hgcpl.dll
2013-09-18 14:12:09 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2013-09-18 14:12:09 ----A---- C:\Windows\SYSWOW64\fontext.dll
2013-09-18 14:12:09 ----A---- C:\Windows\SYSWOW64\dnscmmc.dll
2013-09-18 14:12:09 ----A---- C:\Windows\system32\zipfldr.dll
2013-09-18 14:12:09 ----A---- C:\Windows\system32\sud.dll
2013-09-18 14:12:09 ----A---- C:\Windows\system32\slui.exe
2013-09-18 14:12:09 ----A---- C:\Windows\system32\msieftp.dll
2013-09-18 14:12:09 ----A---- C:\Windows\system32\defaultlocationcpl.dll
2013-09-18 14:12:08 ----A---- C:\Windows\SYSWOW64\mscories.dll
2013-09-18 14:12:08 ----A---- C:\Windows\SYSWOW64\mscms.dll
2013-09-18 14:12:08 ----A---- C:\Windows\SYSWOW64\mprddm.dll
2013-09-18 14:12:08 ----A---- C:\Windows\SYSWOW64\localsec.dll
2013-09-18 14:12:08 ----A---- C:\Windows\SYSWOW64\iasacct.dll
2013-09-18 14:12:08 ----A---- C:\Windows\system32\OnLineIDCpl.dll
2013-09-18 14:12:08 ----A---- C:\Windows\system32\networkmap.dll
2013-09-18 14:12:08 ----A---- C:\Windows\system32\dot3svc.dll
2013-09-18 14:12:08 ----A---- C:\Windows\system32\DeviceCenter.dll
2013-09-18 14:12:08 ----A---- C:\Windows\system32\cryptui.dll
2013-09-18 14:12:07 ----A---- C:\Windows\SYSWOW64\wlanui.dll
2013-09-18 14:12:07 ----A---- C:\Windows\SYSWOW64\VAN.dll
2013-09-18 14:12:07 ----A---- C:\Windows\SYSWOW64\usercpl.dll
2013-09-18 14:12:07 ----A---- C:\Windows\SYSWOW64\SndVolSSO.dll
2013-09-18 14:12:07 ----A---- C:\Windows\SYSWOW64\SndVol.exe
2013-09-18 14:12:07 ----A---- C:\Windows\SYSWOW64\prntvpt.dll
2013-09-18 14:12:07 ----A---- C:\Windows\SYSWOW64\PerfCenterCPL.dll
2013-09-18 14:12:07 ----A---- C:\Windows\SYSWOW64\netcenter.dll
2013-09-18 14:12:07 ----A---- C:\Windows\SYSWOW64\batmeter.dll
2013-09-18 14:12:07 ----A---- C:\Windows\system32\twext.dll
2013-09-18 14:12:07 ----A---- C:\Windows\system32\taskbarcpl.dll
2013-09-18 14:12:07 ----A---- C:\Windows\system32\OobeFldr.dll
2013-09-18 14:12:07 ----A---- C:\Windows\system32\bcdedit.exe
2013-09-18 14:12:07 ----A---- C:\Windows\system32\ActionCenter.dll
2013-09-18 14:12:06 ----A---- C:\Windows\SYSWOW64\zipfldr.dll
2013-09-18 14:12:06 ----A---- C:\Windows\SYSWOW64\w32tm.exe
2013-09-18 14:12:06 ----A---- C:\Windows\SYSWOW64\spwizeng.dll
2013-09-18 14:12:06 ----A---- C:\Windows\SYSWOW64\netjoin.dll
2013-09-18 14:12:06 ----A---- C:\Windows\SYSWOW64\MSAC3ENC.DLL
2013-09-18 14:12:06 ----A---- C:\Windows\SYSWOW64\fdeploy.dll
2013-09-18 14:12:06 ----A---- C:\Windows\SYSWOW64\cryptui.dll
2013-09-18 14:12:06 ----A---- C:\Windows\SYSWOW64\azroleui.dll
2013-09-18 14:12:06 ----A---- C:\Windows\SYSWOW64\adsldp.dll
2013-09-18 14:12:06 ----A---- C:\Windows\SYSWOW64\accessibilitycpl.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\uxlib.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\tzutil.exe
2013-09-18 14:12:06 ----A---- C:\Windows\system32\systemcpl.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\syncui.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\sisbkup.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\shwebsvc.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\sdcpl.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\recovery.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\recdisc.exe
2013-09-18 14:12:06 ----A---- C:\Windows\system32\netplwiz.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\isoburn.exe
2013-09-18 14:12:06 ----A---- C:\Windows\system32\httpapi.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\efscore.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\dsuiext.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\drivers\mpio.sys
2013-09-18 14:12:06 ----A---- C:\Windows\system32\drivers\hwpolicy.sys
2013-09-18 14:12:06 ----A---- C:\Windows\system32\certcli.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\cca.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\azroleui.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\autoplay.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\asycfilt.dll
2013-09-18 14:12:05 ----A---- C:\Windows\SYSWOW64\wusa.exe
2013-09-18 14:12:05 ----A---- C:\Windows\SYSWOW64\sud.dll
2013-09-18 14:12:05 ----A---- C:\Windows\SYSWOW64\prnfldr.dll
2013-09-18 14:12:05 ----A---- C:\Windows\SYSWOW64\OnLineIDCpl.dll
2013-09-18 14:12:05 ----A---- C:\Windows\SYSWOW64\networkmap.dll
2013-09-18 14:12:05 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2013-09-18 14:12:05 ----A---- C:\Windows\SYSWOW64\MCEWMDRMNDBootstrap.dll
2013-09-18 14:12:05 ----A---- C:\Windows\SYSWOW64\Faultrep.dll
2013-09-18 14:12:05 ----A---- C:\Windows\SYSWOW64\ActionCenter.dll
2013-09-18 14:12:05 ----A---- C:\Windows\system32\wlanmsm.dll
2013-09-18 14:12:05 ----A---- C:\Windows\system32\vdsutil.dll
2013-09-18 14:12:05 ----A---- C:\Windows\system32\sysclass.dll
2013-09-18 14:12:05 ----A---- C:\Windows\system32\spwizeng.dll
2013-09-18 14:12:05 ----A---- C:\Windows\system32\sdrsvc.dll
2013-09-18 14:12:05 ----A---- C:\Windows\system32\ncryptui.dll
2013-09-18 14:12:05 ----A---- C:\Windows\system32\msvidc32.dll
2013-09-18 14:12:05 ----A---- C:\Windows\system32\MFPlay.dll
2013-09-18 14:12:05 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2013-09-18 14:12:05 ----A---- C:\Windows\system32\ActionCenterCPL.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\sisbkup.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\shwebsvc.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\photowiz.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\MediaMetadataHandler.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\iprtrmgr.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\ifsutil.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\iasrad.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\ftp.exe
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\efscore.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\dot3cfg.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\defaultlocationcpl.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\credssp.dll
2013-09-18 14:12:04 ----A---- C:\Windows\system32\UserAccountControlSettings.dll
2013-09-18 14:12:04 ----A---- C:\Windows\system32\termmgr.dll
2013-09-18 14:12:04 ----A---- C:\Windows\system32\sqlcese30.dll
2013-09-18 14:12:04 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2013-09-18 14:12:04 ----A---- C:\Windows\system32\sethc.exe
2013-09-18 14:12:04 ----A---- C:\Windows\system32\ReAgent.dll
2013-09-18 14:12:04 ----A---- C:\Windows\system32\rdpd3d.dll
2013-09-18 14:12:04 ----A---- C:\Windows\system32\ntlanman.dll
2013-09-18 14:12:04 ----A---- C:\Windows\system32\msscp.dll
2013-09-18 14:12:04 ----A---- C:\Windows\system32\iprtrmgr.dll
2013-09-18 14:12:04 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2013-09-18 14:12:03 ----A---- C:\Windows\SYSWOW64\wmpmde.dll
2013-09-18 14:12:03 ----A---- C:\Windows\SYSWOW64\syncui.dll
2013-09-18 14:12:03 ----A---- C:\Windows\SYSWOW64\ntlanman.dll
2013-09-18 14:12:03 ----A---- C:\Windows\SYSWOW64\dskquoui.dll
2013-09-18 14:12:03 ----A---- C:\Windows\SYSWOW64\DeviceCenter.dll
2013-09-18 14:12:03 ----A---- C:\Windows\SYSWOW64\autoplay.dll
2013-09-18 14:12:03 ----A---- C:\Windows\SYSWOW64\ActionCenterCPL.dll
2013-09-18 14:12:03 ----A---- C:\Windows\system32\wmdrmsdk.dll
2013-09-18 14:12:03 ----A---- C:\Windows\system32\ssText3d.scr
2013-09-18 14:12:03 ----A---- C:\Windows\system32\srvcli.dll
2013-09-18 14:12:03 ----A---- C:\Windows\system32\slwga.dll
2013-09-18 14:12:03 ----A---- C:\Windows\system32\iyuv_32.dll
2013-09-18 14:12:03 ----A---- C:\Windows\system32\iTVData.dll
2013-09-18 14:12:03 ----A---- C:\Windows\system32\drmmgrtn.dll
2013-09-18 14:12:02 ----A---- C:\Windows\SYSWOW64\systemcpl.dll
2013-09-18 14:12:02 ----A---- C:\Windows\SYSWOW64\SmartcardCredentialProvider.dll
2013-09-18 14:12:02 ----A---- C:\Windows\SYSWOW64\sethc.exe
2013-09-18 14:12:02 ----A---- C:\Windows\SYSWOW64\rtutils.dll
2013-09-18 14:12:02 ----A---- C:\Windows\SYSWOW64\riched20.dll
2013-09-18 14:12:02 ----A---- C:\Windows\SYSWOW64\OobeFldr.dll
2013-09-18 14:12:02 ----A---- C:\Windows\SYSWOW64\ntprint.dll
2013-09-18 14:12:02 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2013-09-18 14:12:02 ----A---- C:\Windows\system32\wavemsp.dll
2013-09-18 14:12:02 ----A---- C:\Windows\system32\srrstr.dll
2013-09-18 14:12:02 ----A---- C:\Windows\system32\ntprint.dll
2013-09-18 14:12:02 ----A---- C:\Windows\system32\nslookup.exe
2013-09-18 14:12:02 ----A---- C:\Windows\system32\NAPHLPR.DLL
2013-09-18 14:12:02 ----A---- C:\Windows\system32\msiexec.exe
2013-09-18 14:12:02 ----A---- C:\Windows\system32\DevicePairingFolder.dll
2013-09-18 14:12:02 ----A---- C:\Windows\system32\bcdboot.exe
2013-09-18 14:12:02 ----A---- C:\Windows\system32\acppage.dll
2013-09-18 14:12:01 ----A---- C:\Windows\SYSWOW64\wmpsrcwp.dll
2013-09-18 14:12:01 ----A---- C:\Windows\SYSWOW64\netplwiz.dll
2013-09-18 14:12:01 ----A---- C:\Windows\SYSWOW64\NAPHLPR.DLL
2013-09-18 14:12:01 ----A---- C:\Windows\SYSWOW64\migisol.dll
2013-09-18 14:12:01 ----A---- C:\Windows\SYSWOW64\fms.dll
2013-09-18 14:12:01 ----A---- C:\Windows\SYSWOW64\dpx.dll
2013-09-18 14:12:01 ----A---- C:\Windows\SYSWOW64\blackbox.dll
2013-09-18 14:12:01 ----A---- C:\Windows\SYSWOW64\activeds.dll
2013-09-18 14:12:01 ----A---- C:\Windows\system32\TSpkg.dll
2013-09-18 14:12:01 ----A---- C:\Windows\system32\sppnp.dll
2013-09-18 14:12:01 ----A---- C:\Windows\system32\networkexplorer.dll
2013-09-18 14:12:01 ----A---- C:\Windows\system32\certprop.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\wlanmsm.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\wavemsp.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\tzutil.exe
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\ReAgent.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\provsvc.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\ocsetup.exe
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\nshipsec.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\msftedit.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\isoburn.exe
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\httpapi.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\dsuiext.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\dot3ui.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\dfrgui.exe
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\asycfilt.dll
2013-09-18 14:12:00 ----A---- C:\Windows\system32\wvc.dll
2013-09-18 14:12:00 ----A---- C:\Windows\system32\wsqmcons.exe
2013-09-18 14:12:00 ----A---- C:\Windows\system32\wsnmp32.dll
2013-09-18 14:12:00 ----A---- C:\Windows\system32\wmpdxm.dll
2013-09-18 14:12:00 ----A---- C:\Windows\system32\wmdrmdev.dll
2013-09-18 14:12:00 ----A---- C:\Windows\system32\wkscli.dll
2013-09-18 14:12:00 ----A---- C:\Windows\system32\WinSCard.dll
2013-09-18 14:12:00 ----A---- C:\Windows\system32\remotepg.dll
2013-09-18 14:12:00 ----A---- C:\Windows\system32\net1.exe
2013-09-18 14:12:00 ----A---- C:\Windows\system32\ftp.exe
2013-09-18 14:12:00 ----A---- C:\Windows\system32\dfrgui.exe
2013-09-18 14:12:00 ----A---- C:\Windows\system32\cabinet.dll
2013-09-18 14:12:00 ----A---- C:\Windows\system32\blackbox.dll
2013-09-18 14:11:59 ----A---- C:\Windows\SYSWOW64\wvc.dll
2013-09-18 14:11:59 ----A---- C:\Windows\SYSWOW64\wtsapi32.dll
2013-09-18 14:11:59 ----A---- C:\Windows\SYSWOW64\wimgapi.dll
2013-09-18 14:11:59 ----A---- C:\Windows\SYSWOW64\twext.dll
2013-09-18 14:11:59 ----A---- C:\Windows\SYSWOW64\PkgMgr.exe
2013-09-18 14:11:59 ----A---- C:\Windows\SYSWOW64\mstask.dll
2013-09-18 14:11:59 ----A---- C:\Windows\system32\WerFaultSecure.exe
2013-09-18 14:11:59 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2013-09-18 14:11:59 ----A---- C:\Windows\system32\OpcServices.dll
2013-09-18 14:11:59 ----A---- C:\Windows\system32\msyuv.dll
2013-09-18 14:11:59 ----A---- C:\Windows\system32\mfps.dll
2013-09-18 14:11:59 ----A---- C:\Windows\system32\mapistub.dll
2013-09-18 14:11:59 ----A---- C:\Windows\system32\mapi32.dll
2013-09-18 14:11:59 ----A---- C:\Windows\system32\Bubbles.scr
2013-09-18 14:11:58 ----A---- C:\Windows\twain_32.dll
2013-09-18 14:11:58 ----A---- C:\Windows\SYSWOW64\setupugc.exe
2013-09-18 14:11:58 ----A---- C:\Windows\SYSWOW64\qcap.dll
2013-09-18 14:11:58 ----A---- C:\Windows\SYSWOW64\qasf.dll
2013-09-18 14:11:58 ----A---- C:\Windows\system32\unimdmat.dll
2013-09-18 14:11:58 ----A---- C:\Windows\system32\msrle32.dll
2013-09-18 14:11:58 ----A---- C:\Windows\system32\iscsium.dll
2013-09-18 14:11:58 ----A---- C:\Windows\system32\diskraid.exe
2013-09-18 14:11:57 ----A---- C:\Windows\SYSWOW64\wmdrmsdk.dll
2013-09-18 14:11:57 ----A---- C:\Windows\SYSWOW64\uxlib.dll
2013-09-18 14:11:57 ----A---- C:\Windows\SYSWOW64\ssText3d.scr
2013-09-18 14:11:57 ----A---- C:\Windows\SYSWOW64\slwga.dll
2013-09-18 14:11:57 ----A---- C:\Windows\SYSWOW64\nslookup.exe
2013-09-18 14:11:57 ----A---- C:\Windows\SYSWOW64\msvfw32.dll
2013-09-18 14:11:57 ----A---- C:\Windows\SYSWOW64\mciavi32.dll
2013-09-18 14:11:57 ----A---- C:\Windows\SYSWOW64\clusapi.dll
2013-09-18 14:11:57 ----A---- C:\Windows\SYSWOW64\audiodev.dll
2013-09-18 14:11:57 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeResults.exe
2013-09-18 14:11:57 ----A---- C:\Windows\system32\tsbyuv.dll
2013-09-18 14:11:57 ----A---- C:\Windows\system32\seclogon.dll
2013-09-18 14:11:57 ----A---- C:\Windows\system32\Ribbons.scr
2013-09-18 14:11:57 ----A---- C:\Windows\system32\Mystify.scr
2013-09-18 14:11:57 ----A---- C:\Windows\system32\muifontsetup.dll
2013-09-18 14:11:57 ----A---- C:\Windows\system32\ifsutil.dll
2013-09-18 14:11:57 ----A---- C:\Windows\system32\drivers\umbus.sys
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\WPDShServiceObj.dll
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\wimserv.exe
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\remotepg.dll
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\rdpencom.dll
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\raschap.dll
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\QUTIL.DLL
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\perfmon.exe
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\NAPCRYPT.DLL
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\msscp.dll
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\input.dll
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\drmmgrtn.dll
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\diskraid.exe
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\DevicePairingFolder.dll
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\acppage.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\wpdwcn.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\wmpshell.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\wiavideo.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\umb.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\tlscsp.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\runonce.exe
2013-09-18 14:11:56 ----A---- C:\Windows\system32\rdpencom.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\raschap.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\qasf.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\perfmon.exe
2013-09-18 14:11:56 ----A---- C:\Windows\system32\netutils.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\NAPCRYPT.DLL
2013-09-18 14:11:56 ----A---- C:\Windows\system32\FXSAPI.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\dbghelp.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\AzSqlExt.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\ActionQueue.dll
2013-09-18 14:11:56 ----A---- C:\Windows\bfsvc.exe
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\wpdwcn.dll
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\wmpdxm.dll
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\vpnikeapi.dll
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\vdsbas.dll
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\UserAccountControlSettings.dll
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\runonce.exe
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\onexui.dll
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\olepro32.dll
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\ocsetapi.dll
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\networkexplorer.dll
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\logagent.exe
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\iTVData.dll
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\dxdiagn.dll
2013-09-18 14:11:55 ----A---- C:\Windows\system32\WMVSDECD.DLL
2013-09-18 14:11:55 ----A---- C:\Windows\system32\WMADMOD.DLL
2013-09-18 14:11:55 ----A---- C:\Windows\system32\vdsbas.dll
2013-09-18 14:11:55 ----A---- C:\Windows\system32\syssetup.dll
2013-09-18 14:11:55 ----A---- C:\Windows\system32\PrintIsolationProxy.dll
2013-09-18 14:11:55 ----A---- C:\Windows\system32\nltest.exe
2013-09-18 14:11:55 ----A---- C:\Windows\system32\mstask.dll
2013-09-18 14:11:55 ----A---- C:\Windows\system32\MdSched.exe
2013-09-18 14:11:55 ----A---- C:\Windows\system32\Mcx2Svc.dll
2013-09-18 14:11:55 ----A---- C:\Windows\system32\drivers\rmcast.sys
2013-09-18 14:11:55 ----A---- C:\Windows\system32\bitsadmin.exe
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\wmpshell.dll
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\wmdrmdev.dll
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\unimdmat.dll
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\shacct.dll
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\msvidc32.dll
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\MFPlay.dll
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\lsmproxy.dll
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\iscsium.dll
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\eapp3hst.dll
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\bitsadmin.exe
2013-09-18 14:11:54 ----A---- C:\Windows\system32\WPDSp.dll
2013-09-18 14:11:54 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2013-09-18 14:11:54 ----A---- C:\Windows\system32\wmdrmnet.dll
2013-09-18 14:11:54 ----A---- C:\Windows\system32\vss_ps.dll
2013-09-18 14:11:54 ----A---- C:\Windows\system32\tabcal.exe
2013-09-18 14:11:54 ----A---- C:\Windows\system32\shacct.dll
2013-09-18 14:11:54 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2013-09-18 14:11:54 ----A---- C:\Windows\system32\QSVRMGMT.DLL
2013-09-18 14:11:54 ----A---- C:\Windows\system32\qcap.dll
2013-09-18 14:11:54 ----A---- C:\Windows\system32\msnetobj.dll
2013-09-18 14:11:54 ----A---- C:\Windows\system32\logman.exe
2013-09-18 14:11:54 ----A---- C:\Windows\system32\drivers\USBAUDIO.sys
2013-09-18 14:11:54 ----A---- C:\Windows\system32\cscapi.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\WPDSp.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\srvcli.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\sqlcese30.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\rdpd3d.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\PortableDeviceSyncProvider.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\pdh.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\OpcServices.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\olethk32.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\ncryptui.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\mprapi.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\logman.exe
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\cscapi.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\Bubbles.scr
2013-09-18 14:11:53 ----A---- C:\Windows\system32\spbcd.dll
2013-09-18 14:11:53 ----A---- C:\Windows\system32\secproc_ssp.dll
2013-09-18 14:11:53 ----A---- C:\Windows\system32\qdv.dll
2013-09-18 14:11:53 ----A---- C:\Windows\system32\PortableDeviceSyncProvider.dll
2013-09-18 14:11:53 ----A---- C:\Windows\system32\PortableDeviceStatus.dll
2013-09-18 14:11:53 ----A---- C:\Windows\system32\drivers\ndisuio.sys
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\WMVSDECD.DLL
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\wmdrmnet.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\WMADMOD.DLL
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\wiavideo.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\utildll.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\takeown.exe
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\Ribbons.scr
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\QSVRMGMT.DLL
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\qdv.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\PortableDeviceStatus.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\Mystify.scr
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\mapistub.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\mapi32.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\iyuv_32.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\fphc.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\EhStorAPI.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\dot3msm.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\avifil32.dll
2013-09-18 14:11:52 ----A---- C:\Windows\system32\vfwwdm32.dll
2013-09-18 14:11:52 ----A---- C:\Windows\system32\takeown.exe
2013-09-18 14:11:52 ----A---- C:\Windows\system32\shimgvw.dll
2013-09-18 14:11:52 ----A---- C:\Windows\system32\QCLIPROV.DLL
2013-09-18 14:11:52 ----A---- C:\Windows\system32\PnPUnattend.exe
2013-09-18 14:11:52 ----A---- C:\Windows\system32\nrpsrv.dll
2013-09-18 14:11:52 ----A---- C:\Windows\system32\HotStartUserAgent.dll
2013-09-18 14:11:52 ----A---- C:\Windows\system32\fphc.dll
2013-09-18 14:11:52 ----A---- C:\Windows\system32\EhStorAPI.dll
2013-09-18 14:11:52 ----A---- C:\Windows\system32\dot3ui.dll
2013-09-18 14:11:52 ----A---- C:\Windows\system32\djoin.exe
2013-09-18 14:11:52 ----A---- C:\Windows\system32\cmstp.exe
2013-09-18 14:11:52 ----A---- C:\Windows\system32\CertPolEng.dll
2013-09-18 14:11:52 ----A---- C:\Windows\system32\amstream.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\wsnmp32.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\WMSPDMOD.DLL
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\vfwwdm32.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\tsbyuv.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\sppinst.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\setupcln.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\relog.exe
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\QCLIPROV.DLL
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\pdhui.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\netiougc.exe
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\MuiUnattend.exe
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\msyuv.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\msrle32.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\msorcl32.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\msnetobj.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\iasrecst.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\cmstp.exe
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\cca.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\AzSqlExt.dll
2013-09-18 14:11:51 ----A---- C:\Windows\system32\WavDest.dll
2013-09-18 14:11:51 ----A---- C:\Windows\system32\sscore.dll
2013-09-18 14:11:51 ----A---- C:\Windows\system32\relog.exe
2013-09-18 14:11:51 ----A---- C:\Windows\system32\mydocs.dll
2013-09-18 14:11:51 ----A---- C:\Windows\system32\MultiDigiMon.exe
2013-09-18 14:11:51 ----A---- C:\Windows\system32\mobsync.exe
2013-09-18 14:11:51 ----A---- C:\Windows\system32\KMSVC.DLL
2013-09-18 14:11:51 ----A---- C:\Windows\system32\iscsicli.exe
2013-09-18 14:11:51 ----A---- C:\Windows\system32\iasrecst.dll
2013-09-18 14:11:51 ----A---- C:\Windows\system32\fdProxy.dll
2013-09-18 14:11:51 ----A---- C:\Windows\system32\drivers\pacer.sys
2013-09-18 14:11:51 ----A---- C:\Windows\system32\diskpart.exe
2013-09-18 14:11:51 ----A---- C:\Windows\system32\BWUnpairElevated.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\wmpps.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\wkscli.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\syssetup.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\spbcd.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\secproc_ssp_isv.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\secproc_ssp.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\resutils.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\rastapi.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\netbtugc.exe
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\mydocs.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\itircl.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\iscsicli.exe
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\diskpart.exe
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\CertPolEng.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\amstream.dll
2013-09-18 14:11:50 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2013-09-18 14:11:50 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2013-09-18 14:11:50 ----A---- C:\Windows\system32\msdmo.dll
2013-09-18 14:11:50 ----A---- C:\Windows\system32\mciqtz32.dll
2013-09-18 14:11:50 ----A---- C:\Windows\system32\itircl.dll
2013-09-18 14:11:50 ----A---- C:\Windows\system32\choice.exe
2013-09-18 14:11:50 ----A---- C:\Windows\system32\FXSTIFF.dll
2013-09-18 14:11:50 ----A---- C:\Windows\system32\findstr.exe
2013-09-18 14:11:50 ----A---- C:\Windows\system32\eappgnui.dll
2013-09-18 14:11:50 ----A---- C:\Windows\system32\dot3msm.dll
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\WerFaultSecure.exe
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\tlscsp.dll
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp_isv.exe
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp.exe
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\ReAgentc.exe
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\netutils.dll
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\mobsync.exe
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\mciqtz32.dll
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\findstr.exe
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\eappgnui.dll
2013-09-18 14:11:49 ----A---- C:\Windows\system32\sppc.dll
2013-09-18 14:11:49 ----A---- C:\Windows\system32\onexui.dll
2013-09-18 14:11:49 ----A---- C:\Windows\system32\luainstall.dll
2013-09-18 14:11:49 ----A---- C:\Windows\system32\drivers\tunnel.sys
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\wups.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\unlodctr.exe
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\UIRibbonRes.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\sppc.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\spopk.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\shimgvw.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\rdprefdrvapi.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\odbcconf.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\muifontsetup.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\msdmo.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\luainstall.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\inetmib1.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\iccvid.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\cabinet.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\wdiasqmmodule.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\UIRibbonRes.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\TRAPI.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\spopk.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\schedcli.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\repair-bde.exe
2013-09-18 14:11:48 ----A---- C:\Windows\system32\RDPENCDD.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\odbcconf.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\manage-bde.exe
2013-09-18 14:11:48 ----A---- C:\Windows\system32\inetmib1.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\FXSMON.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\fixmapi.exe
2013-09-18 14:11:48 ----A---- C:\Windows\system32\elsTrans.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\drivers\dfsc.sys
2013-09-18 14:11:47 ----A---- C:\Windows\SYSWOW64\perfts.dll
2013-09-18 14:11:47 ----A---- C:\Windows\SYSWOW64\imm32.dll
2013-09-18 14:11:47 ----A---- C:\Windows\system32\wshbth.dll
2013-09-18 14:11:47 ----A---- C:\Windows\system32\napdsnap.dll
2013-09-18 14:11:47 ----A---- C:\Windows\system32\LogonUI.exe
2013-09-18 14:11:47 ----A---- C:\Windows\system32\dsauth.dll
2013-09-18 14:11:47 ----A---- C:\Windows\system32\drivers\tdi.sys
2013-09-18 14:11:46 ----A---- C:\Windows\SYSWOW64\TRAPI.dll
2013-09-18 14:11:46 ----A---- C:\Windows\SYSWOW64\elsTrans.dll
2013-09-18 14:11:46 ----A---- C:\Windows\SYSWOW64\bitsperf.dll
2013-09-18 14:11:46 ----A---- C:\Windows\system32\rdprefdrvapi.dll
2013-09-18 14:11:46 ----A---- C:\Windows\system32\FXSUNATD.exe
2013-09-18 14:11:46 ----A---- C:\Windows\system32\cscdll.dll
2013-09-18 14:11:46 ----A---- C:\Windows\system32\bitsperf.dll
2013-09-18 14:11:44 ----A---- C:\Windows\SYSWOW64\wshbth.dll
2013-09-18 14:11:44 ----A---- C:\Windows\SYSWOW64\schedcli.dll
2013-09-18 14:11:44 ----A---- C:\Windows\SYSWOW64\napdsnap.dll
2013-09-18 14:11:44 ----A---- C:\Windows\SYSWOW64\dsauth.dll
2013-09-18 14:11:44 ----A---- C:\Windows\SYSWOW64\cscdll.dll
2013-09-18 14:11:44 ----A---- C:\Windows\system32\drivers\usbrpm.sys
2013-09-18 14:11:44 ----A---- C:\Windows\system32\drivers\acpipmi.sys
2013-09-18 14:11:43 ----A---- C:\Windows\SYSWOW64\sscore.dll
2013-09-18 14:11:43 ----A---- C:\Windows\system32\wsdchngr.dll
2013-09-18 14:11:43 ----A---- C:\Windows\system32\shgina.dll
2013-09-18 14:11:42 ----A---- C:\Windows\SYSWOW64\wsdchngr.dll
2013-09-18 14:11:42 ----A---- C:\Windows\SYSWOW64\shgina.dll
2013-09-18 14:11:42 ----A---- C:\Windows\SYSWOW64\riched32.dll
2013-09-18 14:11:42 ----A---- C:\Windows\system32\drivers\USBCAMD2.sys
2013-09-18 14:11:41 ----A---- C:\Windows\system32\wshirda.dll
2013-09-18 14:11:41 ----A---- C:\Windows\system32\drivers\CompositeBus.sys
2013-09-18 14:11:40 ----A---- C:\Windows\SYSWOW64\wshirda.dll
2013-09-18 14:11:40 ----A---- C:\Windows\system32\rdpcfgex.dll
2013-09-18 14:11:40 ----A---- C:\Windows\system32\drivers\hidusb.sys
2013-09-18 14:11:40 ----A---- C:\Windows\system32\drivers\appid.sys
2013-09-18 14:11:39 ----A---- C:\Windows\system32\spwmp.dll
2013-09-18 14:11:39 ----A---- C:\Windows\system32\riched32.dll
2013-09-18 14:11:39 ----A---- C:\Windows\system32\drivers\kbdhid.sys
2013-09-18 14:11:39 ----A---- C:\Windows\system32\drivers\IPMIDrv.sys
2013-09-18 14:11:39 ----A---- C:\Windows\system32\browseui.dll
2013-09-18 14:11:38 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2013-09-18 14:11:38 ----A---- C:\Windows\SYSWOW64\C_ISCII.DLL
2013-09-18 14:11:38 ----A---- C:\Windows\SYSWOW64\browseui.dll
2013-09-18 14:11:38 ----A---- C:\Windows\system32\drivers\HdAudio.sys
2013-09-18 14:11:38 ----A---- C:\Windows\system32\drivers\cdrom.sys
2013-09-18 14:11:38 ----A---- C:\Windows\system32\C_ISCII.DLL
2013-09-18 14:11:37 ----AH---- C:\Windows\system32\api-ms-win-core-ums-l1-1-0.dll
2013-09-18 14:11:37 ----A---- C:\Windows\SYSWOW64\shunimpl.dll
2013-09-18 14:11:37 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2013-09-18 14:11:37 ----A---- C:\Windows\system32\shunimpl.dll
2013-09-18 14:11:37 ----A---- C:\Windows\system32\dxmasf.dll
2013-09-18 14:11:37 ----A---- C:\Windows\system32\drivers\sffp_sd.sys
2013-09-18 14:11:37 ----A---- C:\Windows\system32\drivers\scfilter.sys
2013-09-18 14:11:37 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2013-09-18 14:11:36 ----A---- C:\Windows\SYSWOW64\KBDTUF.DLL
2013-09-18 14:11:36 ----A---- C:\Windows\SYSWOW64\KBDSG.DLL
2013-09-18 14:11:36 ----A---- C:\Windows\SYSWOW64\kbdlk41a.dll
2013-09-18 14:11:36 ----A---- C:\Windows\SYSWOW64\KBDGR1.DLL
2013-09-18 14:11:36 ----A---- C:\Windows\system32\KBDTUF.DLL
2013-09-18 14:11:36 ----A---- C:\Windows\system32\KBDSF.DLL
2013-09-18 14:11:36 ----A---- C:\Windows\system32\KBDPO.DLL
2013-09-18 14:11:36 ----A---- C:\Windows\system32\KBDINTAM.DLL
2013-09-18 14:11:36 ----A---- C:\Windows\system32\KBDINBEN.DLL
2013-09-18 14:11:35 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2013-09-18 14:11:35 ----A---- C:\Windows\SYSWOW64\KBDTUQ.DLL
2013-09-18 14:11:35 ----A---- C:\Windows\SYSWOW64\KBDGKL.DLL
2013-09-18 14:11:35 ----A---- C:\Windows\system32\wmploc.DLL
2013-09-18 14:11:35 ----A---- C:\Windows\system32\KBDTUQ.DLL
2013-09-18 14:11:35 ----A---- C:\Windows\system32\KBDSG.DLL
2013-09-18 14:11:35 ----A---- C:\Windows\system32\KBDNEPR.DLL
2013-09-18 14:11:35 ----A---- C:\Windows\system32\kbdlk41a.dll
2013-09-18 14:11:35 ----A---- C:\Windows\system32\KBDGR1.DLL
2013-09-18 14:11:35 ----A---- C:\Windows\system32\KBDGKL.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\SYSWOW64\KBDUS.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\SYSWOW64\KBDTURME.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\SYSWOW64\KBDTAJIK.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\SYSWOW64\KBDMON.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\SYSWOW64\KBDINTEL.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\SYSWOW64\KBDINHIN.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\SYSWOW64\KBDGEO.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\SYSWOW64\KBDCZ1.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\SYSWOW64\KBDBLR.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\system32\KBDGEO.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\system32\KBDCZ1.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\SYSWOW64\KBDUGHR1.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\SYSWOW64\KBDMAORI.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\SYSWOW64\KBDLT1.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\SYSWOW64\KBDINTAM.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\SYSWOW64\KBDINORI.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\SYSWOW64\KBDINMAR.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\SYSWOW64\KBDINKAN.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\SYSWOW64\KBDINBEN.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\system32\KBDUS.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\system32\KBDUGHR1.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\system32\KBDTAJIK.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\system32\KBDMON.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\system32\KBDLT1.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\SYSWOW64\KBDSF.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\SYSWOW64\KBDPO.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\SYSWOW64\KBDNEPR.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\SYSWOW64\KBDBULG.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\SYSWOW64\KBDBASH.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\system32\KBDTURME.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\system32\KBDMAORI.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\system32\KBDINTEL.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\system32\KBDINORI.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\system32\KBDINMAR.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\system32\KBDINKAN.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\system32\KBDINHIN.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\system32\KBDBULG.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\system32\KBDBLR.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\system32\KBDBASH.DLL
2013-09-18 14:11:31 ----A---- C:\Windows\SYSWOW64\spwizres.dll
2013-09-18 14:11:31 ----A---- C:\Windows\SYSWOW64\pifmgr.dll
2013-09-18 14:11:31 ----A---- C:\Windows\SYSWOW64\nlsbres.dll
2013-09-18 14:11:31 ----A---- C:\Windows\system32\spwizres.dll
2013-09-18 14:11:31 ----A---- C:\Windows\system32\pifmgr.dll
2013-09-18 14:11:31 ----A---- C:\Windows\system32\nlsbres.dll
2013-09-18 14:11:31 ----A---- C:\Windows\system32\BlbEvents.dll
2013-09-18 14:11:23 ----A---- C:\Windows\SYSWOW64\wdscore.dll
2013-09-18 14:11:23 ----A---- C:\Windows\system32\dpx.dll
2013-09-18 14:11:19 ----A---- C:\Windows\SYSWOW64\sqmapi.dll
2013-09-18 14:11:08 ----A---- C:\Windows\SYSWOW64\wbemcomn.dll
2013-09-18 14:09:52 ----A---- C:\Windows\system32\wbemcomn.dll
2013-09-18 14:09:46 ----A---- C:\Windows\system32\sqmapi.dll
2013-09-18 13:47:46 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2013-09-18 13:47:46 ----A---- C:\Windows\system32\drivers\usbport.sys
2013-09-18 13:47:46 ----A---- C:\Windows\system32\drivers\usbohci.sys
2013-09-18 13:47:46 ----A---- C:\Windows\system32\drivers\usbhub.sys
2013-09-18 13:47:46 ----A---- C:\Windows\system32\drivers\usbehci.sys
2013-09-18 13:47:46 ----A---- C:\Windows\system32\drivers\usbd.sys
2013-09-18 13:47:46 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2013-09-18 13:47:41 ----A---- C:\Windows\SYSWOW64\fsutil.exe
2013-09-18 13:47:41 ----A---- C:\Windows\SYSWOW64\esent.dll
2013-09-18 13:47:41 ----A---- C:\Windows\system32\fsutil.exe
2013-09-18 13:47:41 ----A---- C:\Windows\system32\esent.dll
2013-09-18 13:47:41 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2013-09-18 13:47:41 ----A---- C:\Windows\system32\drivers\storport.sys
2013-09-18 13:47:41 ----A---- C:\Windows\system32\drivers\nvstor.sys
2013-09-18 13:47:41 ----A---- C:\Windows\system32\drivers\nvraid.sys
2013-09-18 13:47:41 ----A---- C:\Windows\system32\drivers\iaStorV.sys
2013-09-18 13:47:41 ----A---- C:\Windows\system32\drivers\amdxata.sys
2013-09-18 13:47:41 ----A---- C:\Windows\system32\drivers\amdsata.sys
2013-09-18 13:35:29 ----D---- C:\Program Files (x86)\Microsoft Works
2013-09-18 13:35:07 ----D---- C:\Windows\PCHEALTH
2013-09-18 13:31:15 ----D---- C:\Program Files\Microsoft Office
2013-09-18 13:30:20 ----D---- C:\ProgramData\Microsoft Help
2013-09-18 13:29:45 ----RD---- C:\MSOCache
2013-09-18 11:54:53 ----D---- C:\Download
2013-09-18 11:01:18 ----D---- C:\Windows\SYSWOW64\Wat
2013-09-18 11:01:18 ----D---- C:\Windows\system32\Wat
2013-09-18 09:32:14 ----A---- C:\Windows\ntbtlog.txt
2013-09-18 09:19:44 ----D---- C:\Windows\Minidump
2013-09-18 08:31:45 ----D---- C:\Windows\system32\MRT
2013-09-18 08:31:40 ----A---- C:\Windows\system32\MRT.exe
2013-09-18 08:10:41 ----A---- C:\Windows\system32\RTNUninst64.dll
2013-09-18 08:10:41 ----A---- C:\Windows\system32\RtNicProp64.dll
2013-09-18 08:10:41 ----A---- C:\Windows\system32\drivers\Rt64win7.sys
2013-09-18 08:10:38 ----D---- C:\Program Files (x86)\Realtek
2013-09-18 08:09:49 ----A---- C:\Windows\system32\drivers\avgtpx64.sys
2013-09-18 08:09:35 ----D---- C:\ProgramData\AVG SafeGuard toolbar
2013-09-18 08:09:32 ----D---- C:\Program Files (x86)\AVG SafeGuard toolbar
2013-09-18 08:09:31 ----A---- C:\Windows\system32\Wdfres.dll
2013-09-18 08:09:31 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2013-09-18 08:09:31 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2013-09-18 08:08:37 ----A---- C:\Windows\system32\drivers\SWDUMon.sys
2013-09-18 08:08:25 ----HD---- C:\ProgramData\Common Files
2013-09-18 08:08:14 ----D---- C:\Program Files (x86)\SlimDrivers
2013-09-18 07:56:49 ----A---- C:\Windows\system32\browserchoice.exe
2013-09-18 07:40:50 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2013-09-18 07:40:50 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2013-09-18 07:40:50 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2013-09-18 07:40:50 ----A---- C:\Windows\system32\fontsub.dll
2013-09-18 07:40:50 ----A---- C:\Windows\system32\atmlib.dll
2013-09-18 07:40:50 ----A---- C:\Windows\system32\atmfd.dll
2013-09-18 07:39:17 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2013-09-18 07:39:17 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2013-09-18 07:39:16 ----A---- C:\Windows\system32\WUDFx.dll
2013-09-18 07:39:16 ----A---- C:\Windows\system32\WUDFSvc.dll
2013-09-18 07:39:16 ----A---- C:\Windows\system32\WUDFPlatform.dll
2013-09-18 07:39:16 ----A---- C:\Windows\system32\WUDFHost.exe
2013-09-18 07:39:16 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2013-09-18 07:35:33 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2013-09-18 07:35:33 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2013-09-18 07:35:24 ----D---- C:\Program Files (x86)\Winamp Detect
2013-09-18 07:35:08 ----D---- C:\Users\Kuba\AppData\Roaming\Winamp
2013-09-18 07:35:08 ----D---- C:\Program Files (x86)\Winamp
2013-09-18 07:33:25 ----D---- C:\Users\Kuba\AppData\Roaming\MiniLyrics
2013-09-18 07:33:00 ----A---- C:\Windows\SYSWOW64\wmi.dll
2013-09-18 07:33:00 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2013-09-18 07:33:00 ----A---- C:\Windows\system32\wmi.dll
2013-09-18 07:33:00 ----A---- C:\Windows\system32\imagehlp.dll
2013-09-18 07:33:00 ----A---- C:\Windows\system32\drivers\fs_rec.sys
2013-09-18 07:10:00 ----D---- C:\rsit
2013-09-18 07:10:00 ----D---- C:\Program Files\trend micro
2013-09-18 06:08:51 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-09-18 06:08:50 ----D---- C:\Windows\SYSWOW64\Macromed
2013-09-18 06:08:48 ----D---- C:\Windows\system32\Macromed
2013-09-18 05:48:01 ----D---- C:\ProgramData\Spybot - Search & Destroy
2013-09-18 05:47:37 ----D---- C:\Program Files (x86)\Spybot - Search & Destroy 2
2013-09-18 05:45:43 ----D---- C:\Program Files\CCleaner
2013-09-18 05:21:43 ----A---- C:\Windows\SYSWOW64\xmllite.dll
2013-09-18 05:21:43 ----A---- C:\Windows\system32\xmllite.dll
2013-09-18 05:21:41 ----A---- C:\Windows\SYSWOW64\odbctrac.dll
2013-09-18 05:21:41 ----A---- C:\Windows\SYSWOW64\odbcjt32.dll
2013-09-18 05:21:41 ----A---- C:\Windows\SYSWOW64\odbccu32.dll
2013-09-18 05:21:41 ----A---- C:\Windows\SYSWOW64\odbccr32.dll
2013-09-18 05:21:41 ----A---- C:\Windows\SYSWOW64\odbccp32.dll
2013-09-18 05:21:41 ----A---- C:\Windows\system32\odbctrac.dll
2013-09-18 05:21:41 ----A---- C:\Windows\system32\odbccu32.dll
2013-09-18 05:21:41 ----A---- C:\Windows\system32\odbccr32.dll
2013-09-18 05:21:41 ----A---- C:\Windows\system32\odbccp32.dll
2013-09-18 05:21:23 ----A---- C:\Windows\system32\poqexec.exe
2013-09-18 05:21:22 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2013-09-18 05:21:18 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2013-09-18 05:21:18 ----A---- C:\Windows\system32\mstscax.dll
2013-09-18 05:21:17 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2013-09-18 05:21:17 ----A---- C:\Windows\SYSWOW64\aaclient.dll
2013-09-18 05:21:17 ----A---- C:\Windows\system32\tsgqec.dll
2013-09-18 05:21:17 ----A---- C:\Windows\system32\aaclient.dll
2013-09-18 05:20:59 ----A---- C:\Windows\SYSWOW64\explorer.exe
2013-09-18 05:20:59 ----A---- C:\Windows\explorer.exe
2013-09-18 05:20:46 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2013-09-18 05:20:46 ----A---- C:\Windows\system32\sbe.dll
2013-09-18 05:20:46 ----A---- C:\Windows\system32\CPFilters.dll
2013-09-18 05:20:45 ----A---- C:\Windows\SYSWOW64\sbe.dll
2013-09-18 05:20:17 ----A---- C:\Windows\system32\quartz.dll
2013-09-18 05:20:16 ----A---- C:\Windows\SYSWOW64\quartz.dll
2013-09-18 05:20:16 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2013-09-18 05:20:16 ----A---- C:\Windows\system32\qdvd.dll
2013-09-18 05:20:08 ----A---- C:\Windows\SYSWOW64\ntshrui.dll
2013-09-18 05:20:08 ----A---- C:\Windows\system32\ntshrui.dll
2013-09-18 05:19:57 ----A---- C:\Windows\system32\tquery.dll
2013-09-18 05:19:56 ----A---- C:\Windows\SYSWOW64\tquery.dll
2013-09-18 05:19:56 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2013-09-18 05:19:56 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2013-09-18 05:19:56 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2013-09-18 05:19:56 ----A---- C:\Windows\SYSWOW64\mssph.dll
2013-09-18 05:19:56 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2013-09-18 05:19:56 ----A---- C:\Windows\system32\SearchIndexer.exe
2013-09-18 05:19:56 ----A---- C:\Windows\system32\mssvp.dll
2013-09-18 05:19:56 ----A---- C:\Windows\system32\mssrch.dll
2013-09-18 05:19:55 ----A---- C:\Windows\SYSWOW64\SearchFilterHost.exe
2013-09-18 05:19:55 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2013-09-18 05:19:55 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2013-09-18 05:19:55 ----A---- C:\Windows\system32\SearchFilterHost.exe
2013-09-18 05:19:55 ----A---- C:\Windows\system32\mssphtb.dll
2013-09-18 05:19:55 ----A---- C:\Windows\system32\mssph.dll
2013-09-18 05:19:55 ----A---- C:\Windows\system32\msscntrs.dll
2013-09-18 05:19:54 ----A---- C:\Windows\SYSWOW64\msscntrs.dll
2013-09-18 05:19:51 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2013-09-18 05:19:51 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2013-09-18 05:19:51 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2013-09-18 05:19:45 ----A---- C:\Windows\SYSWOW64\webio.dll
2013-09-18 05:19:45 ----A---- C:\Windows\system32\webio.dll
2013-09-18 05:19:15 ----A---- C:\Windows\system32\drivers\ntfs.sys
2013-09-18 05:18:53 ----A---- C:\Windows\SYSWOW64\mfc42u.dll
2013-09-18 05:18:53 ----A---- C:\Windows\SYSWOW64\mfc42.dll
2013-09-18 05:18:53 ----A---- C:\Windows\system32\mfc42u.dll
2013-09-18 05:18:53 ----A---- C:\Windows\system32\mfc42.dll
2013-09-18 05:18:45 ----A---- C:\Windows\system32\drivers\usb8023.sys
2013-09-18 05:18:44 ----A---- C:\Windows\system32\rdrmemptylst.exe
2013-09-18 05:18:44 ----A---- C:\Windows\system32\rdpwsx.dll
2013-09-18 05:18:44 ----A---- C:\Windows\system32\rdpcorekmts.dll
2013-09-18 05:18:43 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2013-09-18 05:18:43 ----A---- C:\Windows\SYSWOW64\schannel.dll
2013-09-18 05:18:43 ----A---- C:\Windows\SYSWOW64\secur32.dll
2013-09-18 05:18:43 ----A---- C:\Windows\system32\sspisrv.dll
2013-09-18 05:18:43 ----A---- C:\Windows\system32\sspicli.dll
2013-09-18 05:18:43 ----A---- C:\Windows\system32\schannel.dll
2013-09-18 05:18:43 ----A---- C:\Windows\system32\secur32.dll
2013-09-18 05:18:43 ----A---- C:\Windows\system32\lsass.exe
2013-09-18 05:18:43 ----A---- C:\Windows\system32\lsasrv.dll
2013-09-18 05:18:43 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2013-09-18 05:18:43 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2013-09-18 05:18:43 ----A---- C:\Windows\system32\drivers\cng.sys
2013-09-18 05:18:30 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2013-09-18 05:18:30 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2013-09-18 05:18:30 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2013-09-18 05:18:30 ----A---- C:\Windows\system32\msxml6.dll
2013-09-18 05:18:30 ----A---- C:\Windows\system32\msxml3r.dll
2013-09-18 05:18:30 ----A---- C:\Windows\system32\msxml3.dll
2013-09-18 05:18:29 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2013-09-18 05:18:27 ----A---- C:\Windows\system32\profsvc.dll
2013-09-18 05:18:27 ----A---- C:\Windows\system32\profprov.dll
2013-09-18 05:18:24 ----A---- C:\Windows\SYSWOW64\dnscacheugc.exe
2013-09-18 05:18:24 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2013-09-18 05:18:24 ----A---- C:\Windows\system32\dnsrslvr.dll
2013-09-18 05:18:24 ----A---- C:\Windows\system32\dnscacheugc.exe
2013-09-18 05:18:24 ----A---- C:\Windows\system32\dnsapi.dll
2013-09-18 05:18:01 ----A---- C:\Windows\SYSWOW64\dpnet.dll
2013-09-18 05:18:01 ----A---- C:\Windows\SYSWOW64\dpnaddr.dll
2013-09-18 05:18:01 ----A---- C:\Windows\system32\dpnet.dll
2013-09-18 05:18:01 ----A---- C:\Windows\system32\dpnaddr.dll
2013-09-18 05:18:00 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2013-09-18 05:18:00 ----A---- C:\Windows\system32\ncrypt.dll
2013-09-18 05:17:45 ----A---- C:\Windows\SYSWOW64\usp10.dll
2013-09-18 05:17:45 ----A---- C:\Windows\system32\usp10.dll
2013-09-18 05:17:45 ----A---- C:\Windows\system32\drivers\srvnet.sys
2013-09-18 05:17:45 ----A---- C:\Windows\system32\drivers\srv2.sys
2013-09-18 05:17:45 ----A---- C:\Windows\system32\drivers\srv.sys
2013-09-18 05:17:43 ----A---- C:\Windows\system32\drivers\netio.sys
2013-09-18 05:17:43 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2013-09-18 05:17:37 ----A---- C:\Windows\SYSWOW64\gameux.dll
2013-09-18 05:17:37 ----A---- C:\Windows\system32\Wpc.dll
2013-09-18 05:17:37 ----A---- C:\Windows\system32\gameux.dll
2013-09-18 05:17:36 ----A---- C:\Windows\SYSWOW64\Wpc.dll
2013-09-18 05:17:23 ----A---- C:\Windows\SYSWOW64\psisdecd.dll
2013-09-18 05:17:23 ----A---- C:\Windows\system32\psisdecd.dll
2013-09-18 05:17:14 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2013-09-18 05:17:06 ----A---- C:\Windows\system32\drivers\afd.sys
2013-09-18 05:17:05 ----A---- C:\Windows\system32\drivers\partmgr.sys
2013-09-18 05:17:02 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2013-09-18 05:17:02 ----A---- C:\Windows\system32\kerberos.dll
2013-09-18 05:16:57 ----A---- C:\Windows\SYSWOW64\msi.dll
2013-09-18 05:16:57 ----A---- C:\Windows\system32\msi.dll
2013-09-18 05:16:24 ----A---- C:\Windows\SYSWOW64\synceng.dll
2013-09-18 05:16:24 ----A---- C:\Windows\system32\synceng.dll
2013-09-18 05:16:23 ----A---- C:\Windows\system32\winresume.exe
2013-09-18 05:16:23 ----A---- C:\Windows\system32\winload.exe
2013-09-18 05:16:22 ----A---- C:\Windows\system32\setbcdlocale.dll
2013-09-18 05:16:22 ----A---- C:\Windows\system32\kdusb.dll
2013-09-18 05:16:22 ----A---- C:\Windows\system32\kdcom.dll
2013-09-18 05:16:22 ----A---- C:\Windows\system32\kd1394.dll
2013-09-18 05:15:22 ----A---- C:\Windows\system32\umpnpmgr.dll
2013-09-18 05:15:21 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2013-09-18 05:15:21 ----A---- C:\Windows\SYSWOW64\devrtl.dll
2013-09-18 05:15:21 ----A---- C:\Windows\SYSWOW64\devobj.dll
2013-09-18 05:15:21 ----A---- C:\Windows\SYSWOW64\cfgmgr32.dll
2013-09-18 05:15:21 ----A---- C:\Windows\system32\cfgmgr32.dll
2013-09-18 05:15:14 ----A---- C:\Windows\system32\netapi32.dll
2013-09-18 05:15:14 ----A---- C:\Windows\system32\browser.dll
2013-09-18 05:15:14 ----A---- C:\Windows\system32\browcli.dll
2013-09-18 05:15:13 ----A---- C:\Windows\SYSWOW64\netapi32.dll
2013-09-18 05:15:13 ----A---- C:\Windows\SYSWOW64\browcli.dll
2013-09-18 05:15:02 ----A---- C:\Windows\SYSWOW64\prevhost.exe
2013-09-18 05:15:02 ----A---- C:\Windows\system32\prevhost.exe
2013-09-18 05:15:00 ----A---- C:\Windows\system32\drivers\fvevol.sys
2013-09-18 05:14:55 ----A---- C:\Windows\SYSWOW64\srclient.dll
2013-09-18 05:14:55 ----A---- C:\Windows\system32\srcore.dll
2013-09-18 05:14:55 ----A---- C:\Windows\system32\rstrui.exe
2013-09-18 05:14:51 ----A---- C:\Windows\system32\WFS.exe
2013-09-18 05:14:51 ----A---- C:\Windows\system32\FXSCOVER.exe
2013-09-18 05:14:48 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2013-09-18 05:14:48 ----A---- C:\Windows\system32\inetcomm.dll
2013-09-18 05:14:46 ----A---- C:\Windows\system32\msvcrt.dll
2013-09-18 05:14:45 ----A---- C:\Windows\SYSWOW64\msvcrt.dll
2013-09-18 05:14:34 ----A---- C:\Windows\system32\localspl.dll
2013-09-18 05:14:28 ----A---- C:\Windows\system32\drivers\bowser.sys
2013-09-18 05:14:22 ----A---- C:\Windows\SYSWOW64\oleacc.dll
2013-09-18 05:14:22 ----A---- C:\Windows\system32\oleaut32.dll
2013-09-18 05:14:22 ----A---- C:\Windows\system32\oleacc.dll
2013-09-18 05:14:21 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2013-09-18 05:14:13 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2013-09-18 05:14:13 ----A---- C:\Windows\system32\EncDec.dll
2013-09-18 05:13:50 ----A---- C:\Windows\SYSWOW64\cdosys.dll
2013-09-18 05:13:50 ----A---- C:\Windows\system32\cdosys.dll
2013-09-18 05:13:24 ----D---- C:\ProgramData\Razer
2013-09-18 05:13:24 ----D---- C:\Program Files (x86)\Razer
2013-09-18 05:13:09 ----A---- C:\Windows\system32\spoolsv.exe
2013-09-18 05:13:09 ----A---- C:\Windows\splwow64.exe
2013-09-18 05:06:14 ----D---- C:\Program Files\Common Files\Symantec Shared
2013-09-18 05:06:14 ----A---- C:\Windows\system32\drivers\SYMEVENT64x86.SYS
2013-09-18 05:05:25 ----D---- C:\Windows\system32\drivers\NISx64
2013-09-18 05:05:23 ----D---- C:\Program Files (x86)\Norton Internet Security
2013-09-18 05:05:22 ----D---- C:\ProgramData\Norton
2013-09-18 05:03:18 ----D---- C:\ProgramData\NortonInstaller
2013-09-18 05:03:18 ----D---- C:\Program Files (x86)\NortonInstaller
2013-09-18 04:56:54 ----A---- C:\Windows\SYSWOW64\packager.dll
2013-09-18 04:56:54 ----A---- C:\Windows\system32\packager.dll
2013-09-18 04:54:15 ----D---- C:\Program Files (x86)\AGEIA Technologies
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvopencl.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvoglv64.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\NvIFR64.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\NvFBC64.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvdispgenco6432049.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvdispco6432049.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvd3dumx.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvcuvid.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvcuvenc.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvcuda.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvcompiler.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2013-09-17 22:36:14 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2013-09-17 22:34:45 ----D---- C:\Program Files (x86)\Microsoft.NET
2013-09-17 22:33:14 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2013-09-17 22:33:01 ----N---- C:\Windows\Vmix108.dll
2013-09-17 22:33:01 ----N---- C:\Windows\SYSWOW64\cmpa108.dll
2013-09-17 22:33:01 ----N---- C:\Windows\SYSWOW64\CM108.dll
2013-09-17 22:33:01 ----N---- C:\Windows\system32\Cmeau108.exe
2013-09-17 22:32:41 ----N---- C:\Windows\system32\CmiInstallResAll64.dll
2013-09-17 22:32:41 ----N---- C:\Windows\cm108.ini
2013-09-17 22:32:41 ----A---- C:\Windows\difxapi.dll
2013-09-17 22:32:04 ----A---- C:\Windows\system32\drivers\CM10864.sys
2013-09-17 22:27:24 ----D---- C:\Users\Kuba\AppData\Roaming\LolClient
2013-09-17 22:27:22 ----D---- C:\Users\Kuba\AppData\Roaming\Macromedia
2013-09-17 22:27:21 ----D---- C:\Users\Kuba\AppData\Roaming\Adobe
2013-09-17 22:19:22 ----D---- C:\Windows\Panther
2013-09-17 21:49:15 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2013-09-17 21:49:15 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2013-09-17 21:49:15 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2013-09-17 21:49:15 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2013-09-17 21:49:14 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2013-09-17 21:47:41 ----SHD---- C:\Windows\SYSWOW64\AI_RecycleBin
2013-09-17 21:46:17 ----N---- C:\Windows\system32\MpSigStub.exe
2013-09-17 21:45:24 ----D---- C:\ProgramData\PMB Files
2013-09-17 21:45:22 ----D---- C:\Program Files (x86)\Pando Networks
2013-09-17 21:44:46 ----D---- C:\Users\Kuba\AppData\Roaming\Riot Games
2013-09-17 21:41:27 ----D---- C:\Users\Kuba\AppData\Roaming\Skype
2013-09-17 21:41:24 ----RD---- C:\Program Files (x86)\Skype
2013-09-17 21:41:20 ----SHD---- C:\Windows\Installer
2013-09-17 21:41:20 ----D---- C:\ProgramData\Skype
2013-09-17 21:39:32 ----D---- C:\Users\Kuba\AppData\Roaming\Mozilla
2013-09-17 21:39:25 ----D---- C:\ProgramData\Mozilla
2013-09-17 21:39:25 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2013-09-17 21:36:32 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2013-09-17 21:36:29 ----D---- C:\ProgramData\NVIDIA
2013-09-17 21:36:25 ----A---- C:\Windows\system32\nvvsvc.exe
2013-09-17 21:36:25 ----A---- C:\Windows\system32\nvsvcr.dll
2013-09-17 21:36:25 ----A---- C:\Windows\system32\nvsvc64.dll
2013-09-17 21:36:25 ----A---- C:\Windows\system32\nvshext.dll
2013-09-17 21:36:25 ----A---- C:\Windows\system32\nvmctray.dll
2013-09-17 21:36:25 ----A---- C:\Windows\system32\nvcpl.dll
2013-09-17 21:36:11 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2013-09-17 21:36:11 ----A---- C:\Windows\system32\OpenCL.dll
2013-09-17 21:35:53 ----D---- C:\ProgramData\NVIDIA Corporation
2013-09-17 21:35:49 ----D---- C:\Program Files\NVIDIA Corporation
2013-09-17 21:35:46 ----D---- C:\Users\Kuba\AppData\Roaming\GHISLER
2013-09-17 21:35:19 ----D---- C:\Programy
2013-09-17 21:34:33 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2013-09-17 21:34:33 ----A---- C:\Windows\system32\rdpcore.dll
2013-09-17 21:34:33 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2013-09-17 21:31:17 ----A---- C:\Windows\system32\wups2.dll
2013-09-17 21:31:17 ----A---- C:\Windows\system32\wucltux.dll
2013-09-17 21:31:17 ----A---- C:\Windows\system32\wuauclt.exe
2013-09-17 21:31:16 ----A---- C:\Windows\system32\wuaueng.dll
2013-09-17 21:31:09 ----A---- C:\Windows\system32\wups.dll
2013-09-17 21:31:09 ----A---- C:\Windows\system32\wudriver.dll
2013-09-17 21:31:09 ----A---- C:\Windows\system32\wuapi.dll
2013-09-17 21:30:57 ----A---- C:\Windows\system32\wuwebv.dll
2013-09-17 21:30:57 ----A---- C:\Windows\system32\wuapp.exe
2013-09-17 21:30:45 ----D---- C:\Users\Kuba\AppData\Roaming\Identities
2013-09-17 21:30:38 ----SD---- C:\Users\Kuba\AppData\Roaming\Microsoft
2013-09-17 21:30:38 ----D---- C:\Users\Kuba\AppData\Roaming\Media Center Programs
2013-09-17 21:30:27 ----SHD---- C:\ProgramData\Šablony
2013-09-17 21:30:27 ----SHD---- C:\ProgramData\Plocha
2013-09-17 21:30:27 ----SHD---- C:\ProgramData\Oblíbené položky
2013-09-17 21:30:27 ----SHD---- C:\ProgramData\Nabídka Start
2013-09-17 21:30:27 ----SHD---- C:\ProgramData\Dokumenty
2013-09-17 21:30:27 ----SHD---- C:\ProgramData\Data aplikací
2013-09-17 21:30:27 ----D---- C:\Recovery
2013-09-17 21:30:24 ----D---- C:\Windows\SoftwareDistribution
2013-09-17 21:20:24 ----D---- C:\Windows\Prefetch
2013-09-17 21:20:10 ----ASH---- C:\pagefile.sys
2013-09-17 21:20:09 ----SHD---- C:\System Volume Information
2013-09-17 21:20:09 ----ASH---- C:\hiberfil.sys
2013-08-29 06:29:54 ----A---- C:\Windows\SYSWOW64\rzdevicedll.dll
======List of files/folders modified in the last 1 month======
2013-09-28 16:56:30 ----D---- C:\Windows\Temp
2013-09-28 13:36:49 ----D---- C:\Windows\system32\drivers
2013-09-28 02:16:07 ----D---- C:\Windows\system32\config
2013-09-27 23:59:56 ----SD---- C:\ProgramData\Microsoft
2013-09-27 23:59:56 ----D---- C:\Windows\System32
2013-09-27 23:59:53 ----D---- C:\Windows
2013-09-27 23:50:43 ----D---- C:\Windows\inf
2013-09-27 23:50:43 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-09-27 23:45:00 ----D---- C:\Windows\winsxs
2013-09-20 04:35:47 ----D---- C:\Windows\system32\catroot2
2013-09-20 04:34:52 ----D---- C:\Windows\SysWOW64
2013-09-20 04:34:52 ----D---- C:\Program Files (x86)\Internet Explorer
2013-09-20 04:34:49 ----D---- C:\Program Files\Internet Explorer
2013-09-20 04:34:12 ----D---- C:\Windows\system32\catroot
2013-09-19 23:44:23 ----D---- C:\Windows\rescache
2013-09-19 23:43:56 ----D---- C:\Windows\Logs
2013-09-19 19:48:11 ----D---- C:\Windows\system32\drivers\UMDF
2013-09-19 17:40:04 ----D---- C:\Windows\Microsoft.NET
2013-09-19 17:39:42 ----RSD---- C:\Windows\assembly
2013-09-19 15:39:38 ----D---- C:\Windows\SYSWOW64\cs-CZ
2013-09-19 15:39:38 ----D---- C:\Windows\system32\cs-CZ
2013-09-19 15:39:37 ----D---- C:\Windows\AppPatch
2013-09-19 15:39:34 ----D---- C:\Program Files\Windows Defender
2013-09-19 15:39:34 ----D---- C:\Program Files (x86)\Windows Defender
2013-09-19 15:39:25 ----D---- C:\Windows\SYSWOW64\migration
2013-09-19 15:39:25 ----D---- C:\Windows\SYSWOW64\en-US
2013-09-19 15:39:22 ----D---- C:\Windows\system32\migration
2013-09-19 15:39:22 ----D---- C:\Windows\system32\en-US
2013-09-19 15:39:22 ----D---- C:\Windows\PolicyDefinitions
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\zh-TW
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\zh-HK
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\zh-CN
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\tr-TR
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\sv-SE
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\ru-RU
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\pt-PT
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\pt-BR
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\pl-PL
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\nl-NL
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\ko-KR
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\ja-JP
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\it-IT
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\hu-HU
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\fr-FR
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\fi-FI
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\es-ES
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\el-GR
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\de-DE
2013-09-19 15:39:18 ----D---- C:\Windows\SYSWOW64\nb-NO
2013-09-19 15:39:18 ----D---- C:\Windows\SYSWOW64\da-DK
2013-09-19 15:39:18 ----D---- C:\Windows\system32\pt-PT
2013-09-19 15:39:18 ----D---- C:\Windows\system32\pt-BR
2013-09-19 15:39:18 ----D---- C:\Windows\system32\it-IT
2013-09-19 15:39:17 ----D---- C:\Windows\system32\zh-TW
2013-09-19 15:39:17 ----D---- C:\Windows\system32\zh-HK
2013-09-19 15:39:17 ----D---- C:\Windows\system32\zh-CN
2013-09-19 15:39:17 ----D---- C:\Windows\system32\tr-TR
2013-09-19 15:39:17 ----D---- C:\Windows\system32\sv-SE
2013-09-19 15:39:17 ----D---- C:\Windows\system32\ru-RU
2013-09-19 15:39:17 ----D---- C:\Windows\system32\pl-PL
2013-09-19 15:39:17 ----D---- C:\Windows\system32\nl-NL
2013-09-19 15:39:17 ----D---- C:\Windows\system32\nb-NO
2013-09-19 15:39:17 ----D---- C:\Windows\system32\ko-KR
2013-09-19 15:39:17 ----D---- C:\Windows\system32\ja-JP
2013-09-19 15:39:17 ----D---- C:\Windows\system32\hu-HU
2013-09-19 15:39:17 ----D---- C:\Windows\system32\fr-FR
2013-09-19 15:39:17 ----D---- C:\Windows\system32\fi-FI
2013-09-19 15:39:17 ----D---- C:\Windows\system32\es-ES
2013-09-19 15:39:17 ----D---- C:\Windows\system32\el-GR
2013-09-19 15:39:17 ----D---- C:\Windows\system32\de-DE
2013-09-19 15:39:17 ----D---- C:\Windows\system32\da-DK
2013-09-19 15:39:09 ----D---- C:\Program Files\Windows Journal
2013-09-19 15:39:03 ----D---- C:\Windows\system32\DriverStore
2013-09-19 14:31:10 ----D---- C:\Windows\system32\wdi
2013-09-19 03:31:13 ----D---- C:\Windows\system32\drivers\etc
2013-09-19 03:08:03 ----A---- C:\Windows\system.ini
2013-09-19 03:02:31 ----D---- C:\Windows\SYSWOW64\drivers
2013-09-19 03:02:30 ----D---- C:\Program Files (x86)\Common Files
2013-09-19 02:08:16 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-09-19 02:05:47 ----RSD---- C:\Windows\Fonts
2013-09-19 01:45:34 ----D---- C:\Program Files (x86)\Windows Sidebar
2013-09-19 01:45:34 ----D---- C:\Program Files (x86)\Windows Portable Devices
2013-09-19 01:45:34 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2013-09-19 01:45:34 ----D---- C:\Program Files (x86)\Windows Media Player
2013-09-19 01:45:34 ----D---- C:\Program Files (x86)\Windows Mail
2013-09-19 01:45:33 ----D---- C:\Program Files\Windows Sidebar
2013-09-19 01:45:33 ----D---- C:\Program Files\Windows Mail
2013-09-19 01:45:33 ----D---- C:\Program Files\DVD Maker
2013-09-19 01:45:32 ----D---- C:\Program Files\Windows Portable Devices
2013-09-19 01:45:32 ----D---- C:\Program Files\Windows Photo Viewer
2013-09-19 01:45:32 ----D---- C:\Program Files\Windows Media Player
2013-09-19 01:45:32 ----D---- C:\Program Files\Common Files\System
2013-09-19 01:45:30 ----D---- C:\Windows\servicing
2013-09-19 01:45:30 ----D---- C:\Windows\ehome
2013-09-19 01:45:16 ----D---- C:\Windows\SYSWOW64\oobe
2013-09-19 01:45:15 ----D---- C:\Windows\SYSWOW64\Setup
2013-09-19 01:45:15 ----D---- C:\Windows\SYSWOW64\cs
2013-09-19 01:45:15 ----D---- C:\Windows\SYSWOW64\AdvancedInstallers
2013-09-19 01:45:12 ----D---- C:\Windows\SYSWOW64\wbem
2013-09-19 01:45:12 ----D---- C:\Windows\SYSWOW64\sppui
2013-09-19 01:45:12 ----D---- C:\Windows\SYSWOW64\manifeststore
2013-09-19 01:45:11 ----D---- C:\Windows\SYSWOW64\migwiz
2013-09-19 01:45:11 ----D---- C:\Windows\SYSWOW64\Dism
2013-09-19 01:44:43 ----D---- C:\Windows\system32\oobe
2013-09-19 01:44:42 ----D---- C:\Windows\system32\Setup
2013-09-19 01:44:42 ----D---- C:\Windows\system32\cs
2013-09-19 01:44:42 ----D---- C:\Windows\system32\AdvancedInstallers
2013-09-19 01:44:40 ----D---- C:\Windows\system32\sppui
2013-09-19 01:44:40 ----D---- C:\Windows\system32\manifeststore
2013-09-19 01:44:39 ----D---- C:\Windows\system32\wbem
2013-09-19 01:44:39 ----D---- C:\Windows\system32\drivers\cs-CZ
2013-09-19 01:44:38 ----D---- C:\Windows\system32\migwiz
2013-09-19 01:44:38 ----D---- C:\Windows\system32\Dism
2013-09-19 01:42:31 ----D---- C:\Windows\system32\Boot
2013-09-19 01:39:12 ----A---- C:\Windows\SYSWOW64\msclmd.dll
2013-09-19 01:39:11 ----A---- C:\Windows\system32\msclmd.dll
2013-09-18 14:20:35 ----RD---- C:\Program Files
2013-09-18 13:35:29 ----RD---- C:\Program Files (x86)
2013-09-18 13:31:07 ----D---- C:\Windows\ShellNew
2013-09-18 13:30:20 ----D---- C:\ProgramData
2013-09-18 08:31:43 ----D---- C:\Windows\debug
2013-09-18 08:08:58 ----D---- C:\Windows\system32\Tasks
2013-09-18 08:08:56 ----D---- C:\Windows\Tasks
2013-09-18 05:06:14 ----D---- C:\Program Files\Common Files
2013-09-17 22:33:01 ----D---- C:\Windows\system
2013-09-17 21:36:36 ----RD---- C:\Users
2013-09-17 21:36:20 ----D---- C:\Windows\Help
2013-09-17 21:34:55 ----D---- C:\Windows\system32\CodeIntegrity
2013-09-17 21:30:45 ----D---- C:\Windows\system32\restore
2013-09-17 21:30:27 ----D---- C:\Windows\system32\Recovery
2013-09-17 21:30:27 ----D---- C:\Program Files\Windows NT
2013-09-17 21:23:40 ----D---- C:\Windows\system32\sysprep
2013-09-18 14:12:26 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2013-09-18 14:12:26 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2013-09-18 14:12:26 ----A---- C:\Windows\system32\themeui.dll
2013-09-18 14:12:26 ----A---- C:\Windows\system32\scecli.dll
2013-09-18 14:12:26 ----A---- C:\Windows\system32\puiobj.dll
2013-09-18 14:12:26 ----A---- C:\Windows\system32\onex.dll
2013-09-18 14:12:26 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2013-09-18 14:12:26 ----A---- C:\Windows\system32\msasn1.dll
2013-09-18 14:12:26 ----A---- C:\Windows\system32\iasrad.dll
2013-09-18 14:12:26 ----A---- C:\Windows\system32\DXPTaskRingtone.dll
2013-09-18 14:12:26 ----A---- C:\Windows\system32\dwmredir.dll
2013-09-18 14:12:26 ----A---- C:\Windows\system32\drivers\ipfltdrv.sys
2013-09-18 14:12:26 ----A---- C:\Windows\system32\drivers\Classpnp.sys
2013-09-18 14:12:25 ----A---- C:\Windows\SYSWOW64\WSDApi.dll
2013-09-18 14:12:25 ----A---- C:\Windows\SYSWOW64\scansetting.dll
2013-09-18 14:12:25 ----A---- C:\Windows\SYSWOW64\rpchttp.dll
2013-09-18 14:12:25 ----A---- C:\Windows\SYSWOW64\net1.exe
2013-09-18 14:12:25 ----A---- C:\Windows\system32\wlangpui.dll
2013-09-18 14:12:25 ----A---- C:\Windows\system32\wdc.dll
2013-09-18 14:12:25 ----A---- C:\Windows\system32\scesrv.dll
2013-09-18 14:12:25 ----A---- C:\Windows\system32\rasmans.dll
2013-09-18 14:12:24 ----A---- C:\Windows\system32\StructuredQuery.dll
2013-09-18 14:12:24 ----A---- C:\Windows\system32\sdengin2.dll
2013-09-18 14:12:24 ----A---- C:\Windows\system32\msftedit.dll
2013-09-18 14:12:23 ----A---- C:\Windows\SYSWOW64\MMDevAPI.dll
2013-09-18 14:12:23 ----A---- C:\Windows\SYSWOW64\davclnt.dll
2013-09-18 14:12:23 ----A---- C:\Windows\system32\wscapi.dll
2013-09-18 14:12:23 ----A---- C:\Windows\system32\wiadefui.dll
2013-09-18 14:12:23 ----A---- C:\Windows\system32\VAN.dll
2013-09-18 14:12:23 ----A---- C:\Windows\system32\SndVol.exe
2013-09-18 14:12:23 ----A---- C:\Windows\system32\samcli.dll
2013-09-18 14:12:23 ----A---- C:\Windows\system32\netcenter.dll
2013-09-18 14:12:23 ----A---- C:\Windows\system32\dskquoui.dll
2013-09-18 14:12:23 ----A---- C:\Windows\system32\drivers\ndiswan.sys
2013-09-18 14:12:22 ----A---- C:\Windows\SYSWOW64\wpdshext.dll
2013-09-18 14:12:22 ----A---- C:\Windows\SYSWOW64\WMVCORE.DLL
2013-09-18 14:12:22 ----A---- C:\Windows\SYSWOW64\wlangpui.dll
2013-09-18 14:12:22 ----A---- C:\Windows\SYSWOW64\webservices.dll
2013-09-18 14:12:22 ----A---- C:\Windows\SYSWOW64\t2embed.dll
2013-09-18 14:12:22 ----A---- C:\Windows\SYSWOW64\SyncCenter.dll
2013-09-18 14:12:22 ----A---- C:\Windows\SYSWOW64\QSHVHOST.DLL
2013-09-18 14:12:22 ----A---- C:\Windows\SYSWOW64\pnidui.dll
2013-09-18 14:12:22 ----A---- C:\Windows\SYSWOW64\netdiagfx.dll
2013-09-18 14:12:22 ----A---- C:\Windows\SYSWOW64\fde.dll
2013-09-18 14:12:22 ----A---- C:\Windows\system32\wksprt.exe
2013-09-18 14:12:22 ----A---- C:\Windows\system32\TabSvc.dll
2013-09-18 14:12:22 ----A---- C:\Windows\system32\srchadmin.dll
2013-09-18 14:12:22 ----A---- C:\Windows\system32\setupcl.exe
2013-09-18 14:12:22 ----A---- C:\Windows\system32\regapi.dll
2013-09-18 14:12:22 ----A---- C:\Windows\system32\rastls.dll
2013-09-18 14:12:22 ----A---- C:\Windows\system32\QUTIL.DLL
2013-09-18 14:12:22 ----A---- C:\Windows\system32\iasacct.dll
2013-09-18 14:12:22 ----A---- C:\Windows\system32\drivers\termdd.sys
2013-09-18 14:12:22 ----A---- C:\Windows\system32\drivers\msahci.sys
2013-09-18 14:12:21 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2013-09-18 14:12:21 ----A---- C:\Windows\SYSWOW64\wscapi.dll
2013-09-18 14:12:21 ----A---- C:\Windows\SYSWOW64\WinSCard.dll
2013-09-18 14:12:21 ----A---- C:\Windows\system32\tapisrv.dll
2013-09-18 14:12:21 ----A---- C:\Windows\system32\netiohlp.dll
2013-09-18 14:12:21 ----A---- C:\Windows\system32\msconfig.exe
2013-09-18 14:12:21 ----A---- C:\Windows\system32\mimefilt.dll
2013-09-18 14:12:21 ----A---- C:\Windows\system32\ListSvc.dll
2013-09-18 14:12:21 ----A---- C:\Windows\system32\drivers\raspptp.sys
2013-09-18 14:12:21 ----A---- C:\Windows\system32\drivers\acpi.sys
2013-09-18 14:12:20 ----A---- C:\Windows\SYSWOW64\winsta.dll
2013-09-18 14:12:20 ----A---- C:\Windows\SYSWOW64\pla.dll
2013-09-18 14:12:20 ----A---- C:\Windows\SYSWOW64\MSMPEG2ENC.DLL
2013-09-18 14:12:20 ----A---- C:\Windows\SYSWOW64\msasn1.dll
2013-09-18 14:12:20 ----A---- C:\Windows\system32\TsUsbGDCoInstaller.dll
2013-09-18 14:12:20 ----A---- C:\Windows\system32\mtxclu.dll
2013-09-18 14:12:20 ----A---- C:\Windows\system32\lsmproxy.dll
2013-09-18 14:12:20 ----A---- C:\Windows\system32\hgcpl.dll
2013-09-18 14:12:20 ----A---- C:\Windows\system32\fdeploy.dll
2013-09-18 14:12:20 ----A---- C:\Windows\system32\drivers\sbp2port.sys
2013-09-18 14:12:20 ----A---- C:\Windows\system32\drivers\ks.sys
2013-09-18 14:12:20 ----A---- C:\Windows\system32\clusapi.dll
2013-09-18 14:12:20 ----A---- C:\Windows\system32\basecsp.dll
2013-09-18 14:12:20 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2013-09-18 14:12:19 ----A---- C:\Windows\SYSWOW64\imapi2.dll
2013-09-18 14:12:19 ----A---- C:\Windows\SYSWOW64\DXPTaskRingtone.dll
2013-09-18 14:12:19 ----A---- C:\Windows\system32\riched20.dll
2013-09-18 14:12:19 ----A---- C:\Windows\system32\dnscmmc.dll
2013-09-18 14:12:18 ----A---- C:\Windows\SYSWOW64\WMPEncEn.dll
2013-09-18 14:12:18 ----A---- C:\Windows\SYSWOW64\winmm.dll
2013-09-18 14:12:18 ----A---- C:\Windows\SYSWOW64\shsvcs.dll
2013-09-18 14:12:18 ----A---- C:\Windows\SYSWOW64\samcli.dll
2013-09-18 14:12:18 ----A---- C:\Windows\SYSWOW64\onex.dll
2013-09-18 14:12:18 ----A---- C:\Windows\SYSWOW64\netiohlp.dll
2013-09-18 14:12:18 ----A---- C:\Windows\SYSWOW64\IPHLPAPI.DLL
2013-09-18 14:12:18 ----A---- C:\Windows\SYSWOW64\hbaapi.dll
2013-09-18 14:12:18 ----A---- C:\Windows\SYSWOW64\autochk.exe
2013-09-18 14:12:18 ----A---- C:\Windows\SYSWOW64\autofmt.exe
2013-09-18 14:12:18 ----A---- C:\Windows\system32\wkssvc.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\vpnikeapi.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\themecpl.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\sharemediacpl.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\SensorsCpl.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\RpcRtRemote.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\powercpl.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\netjoin.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\nci.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\Narrator.exe
2013-09-18 14:12:18 ----A---- C:\Windows\system32\logoncli.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\Faultrep.dll
2013-09-18 14:12:18 ----A---- C:\Windows\system32\eudcedit.exe
2013-09-18 14:12:18 ----A---- C:\Windows\system32\comctl32.dll
2013-09-18 14:12:17 ----A---- C:\Windows\SYSWOW64\thumbcache.dll
2013-09-18 14:12:17 ----A---- C:\Windows\SYSWOW64\regapi.dll
2013-09-18 14:12:17 ----A---- C:\Windows\SYSWOW64\proquota.exe
2013-09-18 14:12:17 ----A---- C:\Windows\SYSWOW64\msutb.dll
2013-09-18 14:12:17 ----A---- C:\Windows\SYSWOW64\msinfo32.exe
2013-09-18 14:12:17 ----A---- C:\Windows\SYSWOW64\mimefilt.dll
2013-09-18 14:12:17 ----A---- C:\Windows\SYSWOW64\ipsmsnap.dll
2013-09-18 14:12:17 ----A---- C:\Windows\SYSWOW64\autoconv.exe
2013-09-18 14:12:17 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2013-09-18 14:12:17 ----A---- C:\Windows\system32\sppcomapi.dll
2013-09-18 14:12:17 ----A---- C:\Windows\system32\nshipsec.dll
2013-09-18 14:12:17 ----A---- C:\Windows\system32\cabview.dll
2013-09-18 14:12:17 ----A---- C:\Windows\system32\autochk.exe
2013-09-18 14:12:17 ----A---- C:\Windows\system32\autofmt.exe
2013-09-18 14:12:17 ----A---- C:\Windows\system32\autoconv.exe
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\wcncsvc.dll
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\tcpipcfg.dll
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\srchadmin.dll
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\schtasks.exe
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\QAGENT.DLL
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\powercpl.dll
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\netid.dll
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\mscorier.dll
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\framedyn.dll
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\eapphost.dll
2013-09-18 14:12:16 ----A---- C:\Windows\SYSWOW64\AuxiliaryDisplayCpl.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\wwanconn.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\wpd_ci.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\wlanui.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\SmiEngine.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\shsetup.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\sdclt.exe
2013-09-18 14:12:16 ----A---- C:\Windows\system32\prntvpt.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\mscorier.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\mprddm.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\fontext.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\fms.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\drivers\wanarp.sys
2013-09-18 14:12:16 ----A---- C:\Windows\system32\drivers\volmgrx.sys
2013-09-18 14:12:16 ----A---- C:\Windows\system32\drivers\scsiport.sys
2013-09-18 14:12:16 ----A---- C:\Windows\system32\dps.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\Display.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\bcdsrv.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\AxInstSv.dll
2013-09-18 14:12:16 ----A---- C:\Windows\system32\audiodg.exe
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\WMNetMgr.dll
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\wlanpref.dll
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\wdc.dll
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\Vault.dll
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\untfs.dll
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\StructuredQuery.dll
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\scesrv.dll
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\RpcRtRemote.dll
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\rastls.dll
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\nci.dll
2013-09-18 14:12:15 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2013-09-18 14:12:15 ----A---- C:\Windows\system32\wmpsrcwp.dll
2013-09-18 14:12:15 ----A---- C:\Windows\system32\mblctr.exe
2013-09-18 14:12:15 ----A---- C:\Windows\system32\drivers\hidclass.sys
2013-09-18 14:12:15 ----A---- C:\Windows\system32\DiagCpl.dll
2013-09-18 14:12:15 ----A---- C:\Windows\system32\credssp.dll
2013-09-18 14:12:15 ----A---- C:\Windows\system32\batmeter.dll
2013-09-18 14:12:14 ----A---- C:\Windows\SYSWOW64\taskmgr.exe
2013-09-18 14:12:14 ----A---- C:\Windows\SYSWOW64\Robocopy.exe
2013-09-18 14:12:14 ----A---- C:\Windows\SYSWOW64\mtxclu.dll
2013-09-18 14:12:14 ----A---- C:\Windows\SYSWOW64\DxpTaskSync.dll
2013-09-18 14:12:14 ----A---- C:\Windows\SYSWOW64\Display.dll
2013-09-18 14:12:14 ----A---- C:\Windows\system32\wpccpl.dll
2013-09-18 14:12:14 ----A---- C:\Windows\system32\usercpl.dll
2013-09-18 14:12:14 ----A---- C:\Windows\system32\sppsvc.exe
2013-09-18 14:12:14 ----A---- C:\Windows\system32\SndVolSSO.dll
2013-09-18 14:12:14 ----A---- C:\Windows\system32\rtutils.dll
2013-09-18 14:12:14 ----A---- C:\Windows\system32\rasppp.dll
2013-09-18 14:12:14 ----A---- C:\Windows\system32\provsvc.dll
2013-09-18 14:12:14 ----A---- C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2013-09-18 14:12:14 ----A---- C:\Windows\system32\dxdiagn.dll
2013-09-18 14:12:14 ----A---- C:\Windows\system32\drivers\rdyboost.sys
2013-09-18 14:12:14 ----A---- C:\Windows\system32\dot3cfg.dll
2013-09-18 14:12:14 ----A---- C:\Windows\system32\bootres.dll
2013-09-18 14:12:13 ----A---- C:\Windows\SYSWOW64\XpsRasterService.dll
2013-09-18 14:12:13 ----A---- C:\Windows\SYSWOW64\userinit.exe
2013-09-18 14:12:13 ----A---- C:\Windows\SYSWOW64\termmgr.dll
2013-09-18 14:12:13 ----A---- C:\Windows\SYSWOW64\puiobj.dll
2013-09-18 14:12:13 ----A---- C:\Windows\system32\taskmgr.exe
2013-09-18 14:12:13 ----A---- C:\Windows\system32\prnfldr.dll
2013-09-18 14:12:13 ----A---- C:\Windows\system32\hbaapi.dll
2013-09-18 14:12:12 ----A---- C:\Windows\SYSWOW64\wiadefui.dll
2013-09-18 14:12:12 ----A---- C:\Windows\SYSWOW64\sppcomapi.dll
2013-09-18 14:12:12 ----A---- C:\Windows\SYSWOW64\shsetup.dll
2013-09-18 14:12:12 ----A---- C:\Windows\SYSWOW64\rasppp.dll
2013-09-18 14:12:12 ----A---- C:\Windows\SYSWOW64\logoncli.dll
2013-09-18 14:12:12 ----A---- C:\Windows\SYSWOW64\eudcedit.exe
2013-09-18 14:12:12 ----A---- C:\Windows\SYSWOW64\cabview.dll
2013-09-18 14:12:12 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2013-09-18 14:12:12 ----A---- C:\Windows\system32\userinit.exe
2013-09-18 14:12:12 ----A---- C:\Windows\system32\untfs.dll
2013-09-18 14:12:12 ----A---- C:\Windows\system32\proquota.exe
2013-09-18 14:12:12 ----A---- C:\Windows\system32\pdh.dll
2013-09-18 14:12:12 ----A---- C:\Windows\system32\MSAC3ENC.DLL
2013-09-18 14:12:12 ----A---- C:\Windows\system32\drivers\mountmgr.sys
2013-09-18 14:12:12 ----A---- C:\Windows\system32\accessibilitycpl.dll
2013-09-18 14:12:10 ----A---- C:\Windows\SYSWOW64\SensorsCpl.dll
2013-09-18 14:12:10 ----A---- C:\Windows\SYSWOW64\FirewallControlPanel.dll
2013-09-18 14:12:09 ----A---- C:\Windows\SYSWOW64\themecpl.dll
2013-09-18 14:12:09 ----A---- C:\Windows\SYSWOW64\tapisrv.dll
2013-09-18 14:12:09 ----A---- C:\Windows\SYSWOW64\scecli.dll
2013-09-18 14:12:09 ----A---- C:\Windows\SYSWOW64\PhotoScreensaver.scr
2013-09-18 14:12:09 ----A---- C:\Windows\SYSWOW64\hgcpl.dll
2013-09-18 14:12:09 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2013-09-18 14:12:09 ----A---- C:\Windows\SYSWOW64\fontext.dll
2013-09-18 14:12:09 ----A---- C:\Windows\SYSWOW64\dnscmmc.dll
2013-09-18 14:12:09 ----A---- C:\Windows\system32\zipfldr.dll
2013-09-18 14:12:09 ----A---- C:\Windows\system32\sud.dll
2013-09-18 14:12:09 ----A---- C:\Windows\system32\slui.exe
2013-09-18 14:12:09 ----A---- C:\Windows\system32\msieftp.dll
2013-09-18 14:12:09 ----A---- C:\Windows\system32\defaultlocationcpl.dll
2013-09-18 14:12:08 ----A---- C:\Windows\SYSWOW64\mscories.dll
2013-09-18 14:12:08 ----A---- C:\Windows\SYSWOW64\mscms.dll
2013-09-18 14:12:08 ----A---- C:\Windows\SYSWOW64\mprddm.dll
2013-09-18 14:12:08 ----A---- C:\Windows\SYSWOW64\localsec.dll
2013-09-18 14:12:08 ----A---- C:\Windows\SYSWOW64\iasacct.dll
2013-09-18 14:12:08 ----A---- C:\Windows\system32\OnLineIDCpl.dll
2013-09-18 14:12:08 ----A---- C:\Windows\system32\networkmap.dll
2013-09-18 14:12:08 ----A---- C:\Windows\system32\dot3svc.dll
2013-09-18 14:12:08 ----A---- C:\Windows\system32\DeviceCenter.dll
2013-09-18 14:12:08 ----A---- C:\Windows\system32\cryptui.dll
2013-09-18 14:12:07 ----A---- C:\Windows\SYSWOW64\wlanui.dll
2013-09-18 14:12:07 ----A---- C:\Windows\SYSWOW64\VAN.dll
2013-09-18 14:12:07 ----A---- C:\Windows\SYSWOW64\usercpl.dll
2013-09-18 14:12:07 ----A---- C:\Windows\SYSWOW64\SndVolSSO.dll
2013-09-18 14:12:07 ----A---- C:\Windows\SYSWOW64\SndVol.exe
2013-09-18 14:12:07 ----A---- C:\Windows\SYSWOW64\prntvpt.dll
2013-09-18 14:12:07 ----A---- C:\Windows\SYSWOW64\PerfCenterCPL.dll
2013-09-18 14:12:07 ----A---- C:\Windows\SYSWOW64\netcenter.dll
2013-09-18 14:12:07 ----A---- C:\Windows\SYSWOW64\batmeter.dll
2013-09-18 14:12:07 ----A---- C:\Windows\system32\twext.dll
2013-09-18 14:12:07 ----A---- C:\Windows\system32\taskbarcpl.dll
2013-09-18 14:12:07 ----A---- C:\Windows\system32\OobeFldr.dll
2013-09-18 14:12:07 ----A---- C:\Windows\system32\bcdedit.exe
2013-09-18 14:12:07 ----A---- C:\Windows\system32\ActionCenter.dll
2013-09-18 14:12:06 ----A---- C:\Windows\SYSWOW64\zipfldr.dll
2013-09-18 14:12:06 ----A---- C:\Windows\SYSWOW64\w32tm.exe
2013-09-18 14:12:06 ----A---- C:\Windows\SYSWOW64\spwizeng.dll
2013-09-18 14:12:06 ----A---- C:\Windows\SYSWOW64\netjoin.dll
2013-09-18 14:12:06 ----A---- C:\Windows\SYSWOW64\MSAC3ENC.DLL
2013-09-18 14:12:06 ----A---- C:\Windows\SYSWOW64\fdeploy.dll
2013-09-18 14:12:06 ----A---- C:\Windows\SYSWOW64\cryptui.dll
2013-09-18 14:12:06 ----A---- C:\Windows\SYSWOW64\azroleui.dll
2013-09-18 14:12:06 ----A---- C:\Windows\SYSWOW64\adsldp.dll
2013-09-18 14:12:06 ----A---- C:\Windows\SYSWOW64\accessibilitycpl.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\uxlib.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\tzutil.exe
2013-09-18 14:12:06 ----A---- C:\Windows\system32\systemcpl.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\syncui.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\sisbkup.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\shwebsvc.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\sdcpl.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\recovery.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\recdisc.exe
2013-09-18 14:12:06 ----A---- C:\Windows\system32\netplwiz.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\isoburn.exe
2013-09-18 14:12:06 ----A---- C:\Windows\system32\httpapi.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\efscore.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\dsuiext.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\drivers\mpio.sys
2013-09-18 14:12:06 ----A---- C:\Windows\system32\drivers\hwpolicy.sys
2013-09-18 14:12:06 ----A---- C:\Windows\system32\certcli.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\cca.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\azroleui.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\autoplay.dll
2013-09-18 14:12:06 ----A---- C:\Windows\system32\asycfilt.dll
2013-09-18 14:12:05 ----A---- C:\Windows\SYSWOW64\wusa.exe
2013-09-18 14:12:05 ----A---- C:\Windows\SYSWOW64\sud.dll
2013-09-18 14:12:05 ----A---- C:\Windows\SYSWOW64\prnfldr.dll
2013-09-18 14:12:05 ----A---- C:\Windows\SYSWOW64\OnLineIDCpl.dll
2013-09-18 14:12:05 ----A---- C:\Windows\SYSWOW64\networkmap.dll
2013-09-18 14:12:05 ----A---- C:\Windows\SYSWOW64\msieftp.dll
2013-09-18 14:12:05 ----A---- C:\Windows\SYSWOW64\MCEWMDRMNDBootstrap.dll
2013-09-18 14:12:05 ----A---- C:\Windows\SYSWOW64\Faultrep.dll
2013-09-18 14:12:05 ----A---- C:\Windows\SYSWOW64\ActionCenter.dll
2013-09-18 14:12:05 ----A---- C:\Windows\system32\wlanmsm.dll
2013-09-18 14:12:05 ----A---- C:\Windows\system32\vdsutil.dll
2013-09-18 14:12:05 ----A---- C:\Windows\system32\sysclass.dll
2013-09-18 14:12:05 ----A---- C:\Windows\system32\spwizeng.dll
2013-09-18 14:12:05 ----A---- C:\Windows\system32\sdrsvc.dll
2013-09-18 14:12:05 ----A---- C:\Windows\system32\ncryptui.dll
2013-09-18 14:12:05 ----A---- C:\Windows\system32\msvidc32.dll
2013-09-18 14:12:05 ----A---- C:\Windows\system32\MFPlay.dll
2013-09-18 14:12:05 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2013-09-18 14:12:05 ----A---- C:\Windows\system32\ActionCenterCPL.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\sisbkup.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\shwebsvc.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\photowiz.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\MediaMetadataHandler.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\iprtrmgr.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\ifsutil.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\iasrad.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\ftp.exe
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\efscore.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\dot3cfg.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\defaultlocationcpl.dll
2013-09-18 14:12:04 ----A---- C:\Windows\SYSWOW64\credssp.dll
2013-09-18 14:12:04 ----A---- C:\Windows\system32\UserAccountControlSettings.dll
2013-09-18 14:12:04 ----A---- C:\Windows\system32\termmgr.dll
2013-09-18 14:12:04 ----A---- C:\Windows\system32\sqlcese30.dll
2013-09-18 14:12:04 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2013-09-18 14:12:04 ----A---- C:\Windows\system32\sethc.exe
2013-09-18 14:12:04 ----A---- C:\Windows\system32\ReAgent.dll
2013-09-18 14:12:04 ----A---- C:\Windows\system32\rdpd3d.dll
2013-09-18 14:12:04 ----A---- C:\Windows\system32\ntlanman.dll
2013-09-18 14:12:04 ----A---- C:\Windows\system32\msscp.dll
2013-09-18 14:12:04 ----A---- C:\Windows\system32\iprtrmgr.dll
2013-09-18 14:12:04 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2013-09-18 14:12:03 ----A---- C:\Windows\SYSWOW64\wmpmde.dll
2013-09-18 14:12:03 ----A---- C:\Windows\SYSWOW64\syncui.dll
2013-09-18 14:12:03 ----A---- C:\Windows\SYSWOW64\ntlanman.dll
2013-09-18 14:12:03 ----A---- C:\Windows\SYSWOW64\dskquoui.dll
2013-09-18 14:12:03 ----A---- C:\Windows\SYSWOW64\DeviceCenter.dll
2013-09-18 14:12:03 ----A---- C:\Windows\SYSWOW64\autoplay.dll
2013-09-18 14:12:03 ----A---- C:\Windows\SYSWOW64\ActionCenterCPL.dll
2013-09-18 14:12:03 ----A---- C:\Windows\system32\wmdrmsdk.dll
2013-09-18 14:12:03 ----A---- C:\Windows\system32\ssText3d.scr
2013-09-18 14:12:03 ----A---- C:\Windows\system32\srvcli.dll
2013-09-18 14:12:03 ----A---- C:\Windows\system32\slwga.dll
2013-09-18 14:12:03 ----A---- C:\Windows\system32\iyuv_32.dll
2013-09-18 14:12:03 ----A---- C:\Windows\system32\iTVData.dll
2013-09-18 14:12:03 ----A---- C:\Windows\system32\drmmgrtn.dll
2013-09-18 14:12:02 ----A---- C:\Windows\SYSWOW64\systemcpl.dll
2013-09-18 14:12:02 ----A---- C:\Windows\SYSWOW64\SmartcardCredentialProvider.dll
2013-09-18 14:12:02 ----A---- C:\Windows\SYSWOW64\sethc.exe
2013-09-18 14:12:02 ----A---- C:\Windows\SYSWOW64\rtutils.dll
2013-09-18 14:12:02 ----A---- C:\Windows\SYSWOW64\riched20.dll
2013-09-18 14:12:02 ----A---- C:\Windows\SYSWOW64\OobeFldr.dll
2013-09-18 14:12:02 ----A---- C:\Windows\SYSWOW64\ntprint.dll
2013-09-18 14:12:02 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2013-09-18 14:12:02 ----A---- C:\Windows\system32\wavemsp.dll
2013-09-18 14:12:02 ----A---- C:\Windows\system32\srrstr.dll
2013-09-18 14:12:02 ----A---- C:\Windows\system32\ntprint.dll
2013-09-18 14:12:02 ----A---- C:\Windows\system32\nslookup.exe
2013-09-18 14:12:02 ----A---- C:\Windows\system32\NAPHLPR.DLL
2013-09-18 14:12:02 ----A---- C:\Windows\system32\msiexec.exe
2013-09-18 14:12:02 ----A---- C:\Windows\system32\DevicePairingFolder.dll
2013-09-18 14:12:02 ----A---- C:\Windows\system32\bcdboot.exe
2013-09-18 14:12:02 ----A---- C:\Windows\system32\acppage.dll
2013-09-18 14:12:01 ----A---- C:\Windows\SYSWOW64\wmpsrcwp.dll
2013-09-18 14:12:01 ----A---- C:\Windows\SYSWOW64\netplwiz.dll
2013-09-18 14:12:01 ----A---- C:\Windows\SYSWOW64\NAPHLPR.DLL
2013-09-18 14:12:01 ----A---- C:\Windows\SYSWOW64\migisol.dll
2013-09-18 14:12:01 ----A---- C:\Windows\SYSWOW64\fms.dll
2013-09-18 14:12:01 ----A---- C:\Windows\SYSWOW64\dpx.dll
2013-09-18 14:12:01 ----A---- C:\Windows\SYSWOW64\blackbox.dll
2013-09-18 14:12:01 ----A---- C:\Windows\SYSWOW64\activeds.dll
2013-09-18 14:12:01 ----A---- C:\Windows\system32\TSpkg.dll
2013-09-18 14:12:01 ----A---- C:\Windows\system32\sppnp.dll
2013-09-18 14:12:01 ----A---- C:\Windows\system32\networkexplorer.dll
2013-09-18 14:12:01 ----A---- C:\Windows\system32\certprop.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\wlanmsm.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\wavemsp.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\tzutil.exe
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\ReAgent.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\provsvc.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\ocsetup.exe
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\nshipsec.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\msftedit.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\isoburn.exe
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\httpapi.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\dsuiext.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\dot3ui.dll
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\dfrgui.exe
2013-09-18 14:12:00 ----A---- C:\Windows\SYSWOW64\asycfilt.dll
2013-09-18 14:12:00 ----A---- C:\Windows\system32\wvc.dll
2013-09-18 14:12:00 ----A---- C:\Windows\system32\wsqmcons.exe
2013-09-18 14:12:00 ----A---- C:\Windows\system32\wsnmp32.dll
2013-09-18 14:12:00 ----A---- C:\Windows\system32\wmpdxm.dll
2013-09-18 14:12:00 ----A---- C:\Windows\system32\wmdrmdev.dll
2013-09-18 14:12:00 ----A---- C:\Windows\system32\wkscli.dll
2013-09-18 14:12:00 ----A---- C:\Windows\system32\WinSCard.dll
2013-09-18 14:12:00 ----A---- C:\Windows\system32\remotepg.dll
2013-09-18 14:12:00 ----A---- C:\Windows\system32\net1.exe
2013-09-18 14:12:00 ----A---- C:\Windows\system32\ftp.exe
2013-09-18 14:12:00 ----A---- C:\Windows\system32\dfrgui.exe
2013-09-18 14:12:00 ----A---- C:\Windows\system32\cabinet.dll
2013-09-18 14:12:00 ----A---- C:\Windows\system32\blackbox.dll
2013-09-18 14:11:59 ----A---- C:\Windows\SYSWOW64\wvc.dll
2013-09-18 14:11:59 ----A---- C:\Windows\SYSWOW64\wtsapi32.dll
2013-09-18 14:11:59 ----A---- C:\Windows\SYSWOW64\wimgapi.dll
2013-09-18 14:11:59 ----A---- C:\Windows\SYSWOW64\twext.dll
2013-09-18 14:11:59 ----A---- C:\Windows\SYSWOW64\PkgMgr.exe
2013-09-18 14:11:59 ----A---- C:\Windows\SYSWOW64\mstask.dll
2013-09-18 14:11:59 ----A---- C:\Windows\system32\WerFaultSecure.exe
2013-09-18 14:11:59 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2013-09-18 14:11:59 ----A---- C:\Windows\system32\OpcServices.dll
2013-09-18 14:11:59 ----A---- C:\Windows\system32\msyuv.dll
2013-09-18 14:11:59 ----A---- C:\Windows\system32\mfps.dll
2013-09-18 14:11:59 ----A---- C:\Windows\system32\mapistub.dll
2013-09-18 14:11:59 ----A---- C:\Windows\system32\mapi32.dll
2013-09-18 14:11:59 ----A---- C:\Windows\system32\Bubbles.scr
2013-09-18 14:11:58 ----A---- C:\Windows\twain_32.dll
2013-09-18 14:11:58 ----A---- C:\Windows\SYSWOW64\setupugc.exe
2013-09-18 14:11:58 ----A---- C:\Windows\SYSWOW64\qcap.dll
2013-09-18 14:11:58 ----A---- C:\Windows\SYSWOW64\qasf.dll
2013-09-18 14:11:58 ----A---- C:\Windows\system32\unimdmat.dll
2013-09-18 14:11:58 ----A---- C:\Windows\system32\msrle32.dll
2013-09-18 14:11:58 ----A---- C:\Windows\system32\iscsium.dll
2013-09-18 14:11:58 ----A---- C:\Windows\system32\diskraid.exe
2013-09-18 14:11:57 ----A---- C:\Windows\SYSWOW64\wmdrmsdk.dll
2013-09-18 14:11:57 ----A---- C:\Windows\SYSWOW64\uxlib.dll
2013-09-18 14:11:57 ----A---- C:\Windows\SYSWOW64\ssText3d.scr
2013-09-18 14:11:57 ----A---- C:\Windows\SYSWOW64\slwga.dll
2013-09-18 14:11:57 ----A---- C:\Windows\SYSWOW64\nslookup.exe
2013-09-18 14:11:57 ----A---- C:\Windows\SYSWOW64\msvfw32.dll
2013-09-18 14:11:57 ----A---- C:\Windows\SYSWOW64\mciavi32.dll
2013-09-18 14:11:57 ----A---- C:\Windows\SYSWOW64\clusapi.dll
2013-09-18 14:11:57 ----A---- C:\Windows\SYSWOW64\audiodev.dll
2013-09-18 14:11:57 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeResults.exe
2013-09-18 14:11:57 ----A---- C:\Windows\system32\tsbyuv.dll
2013-09-18 14:11:57 ----A---- C:\Windows\system32\seclogon.dll
2013-09-18 14:11:57 ----A---- C:\Windows\system32\Ribbons.scr
2013-09-18 14:11:57 ----A---- C:\Windows\system32\Mystify.scr
2013-09-18 14:11:57 ----A---- C:\Windows\system32\muifontsetup.dll
2013-09-18 14:11:57 ----A---- C:\Windows\system32\ifsutil.dll
2013-09-18 14:11:57 ----A---- C:\Windows\system32\drivers\umbus.sys
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\WPDShServiceObj.dll
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\wimserv.exe
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\remotepg.dll
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\rdpencom.dll
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\raschap.dll
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\QUTIL.DLL
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\perfmon.exe
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\NAPCRYPT.DLL
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\msscp.dll
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\input.dll
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\drmmgrtn.dll
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\diskraid.exe
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\DevicePairingFolder.dll
2013-09-18 14:11:56 ----A---- C:\Windows\SYSWOW64\acppage.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\wpdwcn.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\wmpshell.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\wiavideo.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\umb.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\tlscsp.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\runonce.exe
2013-09-18 14:11:56 ----A---- C:\Windows\system32\rdpencom.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\raschap.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\qasf.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\perfmon.exe
2013-09-18 14:11:56 ----A---- C:\Windows\system32\netutils.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\NAPCRYPT.DLL
2013-09-18 14:11:56 ----A---- C:\Windows\system32\FXSAPI.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\dbghelp.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\AzSqlExt.dll
2013-09-18 14:11:56 ----A---- C:\Windows\system32\ActionQueue.dll
2013-09-18 14:11:56 ----A---- C:\Windows\bfsvc.exe
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\wpdwcn.dll
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\wmpdxm.dll
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\vpnikeapi.dll
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\vdsbas.dll
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\UserAccountControlSettings.dll
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\runonce.exe
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\onexui.dll
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\olepro32.dll
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\ocsetapi.dll
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\networkexplorer.dll
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\logagent.exe
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\iTVData.dll
2013-09-18 14:11:55 ----A---- C:\Windows\SYSWOW64\dxdiagn.dll
2013-09-18 14:11:55 ----A---- C:\Windows\system32\WMVSDECD.DLL
2013-09-18 14:11:55 ----A---- C:\Windows\system32\WMADMOD.DLL
2013-09-18 14:11:55 ----A---- C:\Windows\system32\vdsbas.dll
2013-09-18 14:11:55 ----A---- C:\Windows\system32\syssetup.dll
2013-09-18 14:11:55 ----A---- C:\Windows\system32\PrintIsolationProxy.dll
2013-09-18 14:11:55 ----A---- C:\Windows\system32\nltest.exe
2013-09-18 14:11:55 ----A---- C:\Windows\system32\mstask.dll
2013-09-18 14:11:55 ----A---- C:\Windows\system32\MdSched.exe
2013-09-18 14:11:55 ----A---- C:\Windows\system32\Mcx2Svc.dll
2013-09-18 14:11:55 ----A---- C:\Windows\system32\drivers\rmcast.sys
2013-09-18 14:11:55 ----A---- C:\Windows\system32\bitsadmin.exe
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\wmpshell.dll
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\wmdrmdev.dll
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\unimdmat.dll
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\shacct.dll
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\msvidc32.dll
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\msiexec.exe
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\MFPlay.dll
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\lsmproxy.dll
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\iscsium.dll
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\eapp3hst.dll
2013-09-18 14:11:54 ----A---- C:\Windows\SYSWOW64\bitsadmin.exe
2013-09-18 14:11:54 ----A---- C:\Windows\system32\WPDSp.dll
2013-09-18 14:11:54 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2013-09-18 14:11:54 ----A---- C:\Windows\system32\wmdrmnet.dll
2013-09-18 14:11:54 ----A---- C:\Windows\system32\vss_ps.dll
2013-09-18 14:11:54 ----A---- C:\Windows\system32\tabcal.exe
2013-09-18 14:11:54 ----A---- C:\Windows\system32\shacct.dll
2013-09-18 14:11:54 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2013-09-18 14:11:54 ----A---- C:\Windows\system32\QSVRMGMT.DLL
2013-09-18 14:11:54 ----A---- C:\Windows\system32\qcap.dll
2013-09-18 14:11:54 ----A---- C:\Windows\system32\msnetobj.dll
2013-09-18 14:11:54 ----A---- C:\Windows\system32\logman.exe
2013-09-18 14:11:54 ----A---- C:\Windows\system32\drivers\USBAUDIO.sys
2013-09-18 14:11:54 ----A---- C:\Windows\system32\cscapi.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\WPDSp.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\srvcli.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\sqlcese30.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\rdpd3d.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\PortableDeviceSyncProvider.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\pdh.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\OpcServices.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\olethk32.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\ncryptui.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\mprapi.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\logman.exe
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\cscapi.dll
2013-09-18 14:11:53 ----A---- C:\Windows\SYSWOW64\Bubbles.scr
2013-09-18 14:11:53 ----A---- C:\Windows\system32\spbcd.dll
2013-09-18 14:11:53 ----A---- C:\Windows\system32\secproc_ssp.dll
2013-09-18 14:11:53 ----A---- C:\Windows\system32\qdv.dll
2013-09-18 14:11:53 ----A---- C:\Windows\system32\PortableDeviceSyncProvider.dll
2013-09-18 14:11:53 ----A---- C:\Windows\system32\PortableDeviceStatus.dll
2013-09-18 14:11:53 ----A---- C:\Windows\system32\drivers\ndisuio.sys
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\WMVSDECD.DLL
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\wmdrmnet.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\WMADMOD.DLL
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\wiavideo.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\utildll.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\takeown.exe
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\Ribbons.scr
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\QSVRMGMT.DLL
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\qdv.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\PortableDeviceStatus.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\Mystify.scr
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\mapistub.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\mapi32.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\iyuv_32.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\fphc.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\EhStorAPI.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\dot3msm.dll
2013-09-18 14:11:52 ----A---- C:\Windows\SYSWOW64\avifil32.dll
2013-09-18 14:11:52 ----A---- C:\Windows\system32\vfwwdm32.dll
2013-09-18 14:11:52 ----A---- C:\Windows\system32\takeown.exe
2013-09-18 14:11:52 ----A---- C:\Windows\system32\shimgvw.dll
2013-09-18 14:11:52 ----A---- C:\Windows\system32\QCLIPROV.DLL
2013-09-18 14:11:52 ----A---- C:\Windows\system32\PnPUnattend.exe
2013-09-18 14:11:52 ----A---- C:\Windows\system32\nrpsrv.dll
2013-09-18 14:11:52 ----A---- C:\Windows\system32\HotStartUserAgent.dll
2013-09-18 14:11:52 ----A---- C:\Windows\system32\fphc.dll
2013-09-18 14:11:52 ----A---- C:\Windows\system32\EhStorAPI.dll
2013-09-18 14:11:52 ----A---- C:\Windows\system32\dot3ui.dll
2013-09-18 14:11:52 ----A---- C:\Windows\system32\djoin.exe
2013-09-18 14:11:52 ----A---- C:\Windows\system32\cmstp.exe
2013-09-18 14:11:52 ----A---- C:\Windows\system32\CertPolEng.dll
2013-09-18 14:11:52 ----A---- C:\Windows\system32\amstream.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\wsnmp32.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\WMSPDMOD.DLL
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\vfwwdm32.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\tsbyuv.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\sppinst.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\setupcln.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\relog.exe
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\QCLIPROV.DLL
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\pdhui.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\netiougc.exe
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\MuiUnattend.exe
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\msyuv.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\msrle32.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\msorcl32.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\msnetobj.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\iasrecst.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\cmstp.exe
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\cca.dll
2013-09-18 14:11:51 ----A---- C:\Windows\SYSWOW64\AzSqlExt.dll
2013-09-18 14:11:51 ----A---- C:\Windows\system32\WavDest.dll
2013-09-18 14:11:51 ----A---- C:\Windows\system32\sscore.dll
2013-09-18 14:11:51 ----A---- C:\Windows\system32\relog.exe
2013-09-18 14:11:51 ----A---- C:\Windows\system32\mydocs.dll
2013-09-18 14:11:51 ----A---- C:\Windows\system32\MultiDigiMon.exe
2013-09-18 14:11:51 ----A---- C:\Windows\system32\mobsync.exe
2013-09-18 14:11:51 ----A---- C:\Windows\system32\KMSVC.DLL
2013-09-18 14:11:51 ----A---- C:\Windows\system32\iscsicli.exe
2013-09-18 14:11:51 ----A---- C:\Windows\system32\iasrecst.dll
2013-09-18 14:11:51 ----A---- C:\Windows\system32\fdProxy.dll
2013-09-18 14:11:51 ----A---- C:\Windows\system32\drivers\pacer.sys
2013-09-18 14:11:51 ----A---- C:\Windows\system32\diskpart.exe
2013-09-18 14:11:51 ----A---- C:\Windows\system32\BWUnpairElevated.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\wmpps.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\wkscli.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\syssetup.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\spbcd.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\secproc_ssp_isv.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\secproc_ssp.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\resutils.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\rastapi.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\netbtugc.exe
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\mydocs.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\itircl.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\iscsicli.exe
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\diskpart.exe
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\CertPolEng.dll
2013-09-18 14:11:50 ----A---- C:\Windows\SYSWOW64\amstream.dll
2013-09-18 14:11:50 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2013-09-18 14:11:50 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2013-09-18 14:11:50 ----A---- C:\Windows\system32\msdmo.dll
2013-09-18 14:11:50 ----A---- C:\Windows\system32\mciqtz32.dll
2013-09-18 14:11:50 ----A---- C:\Windows\system32\itircl.dll
2013-09-18 14:11:50 ----A---- C:\Windows\system32\choice.exe
2013-09-18 14:11:50 ----A---- C:\Windows\system32\FXSTIFF.dll
2013-09-18 14:11:50 ----A---- C:\Windows\system32\findstr.exe
2013-09-18 14:11:50 ----A---- C:\Windows\system32\eappgnui.dll
2013-09-18 14:11:50 ----A---- C:\Windows\system32\dot3msm.dll
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\WerFaultSecure.exe
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\tlscsp.dll
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp_isv.exe
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\RMActivate_ssp.exe
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\ReAgentc.exe
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\netutils.dll
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\mobsync.exe
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\mciqtz32.dll
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\findstr.exe
2013-09-18 14:11:49 ----A---- C:\Windows\SYSWOW64\eappgnui.dll
2013-09-18 14:11:49 ----A---- C:\Windows\system32\sppc.dll
2013-09-18 14:11:49 ----A---- C:\Windows\system32\onexui.dll
2013-09-18 14:11:49 ----A---- C:\Windows\system32\luainstall.dll
2013-09-18 14:11:49 ----A---- C:\Windows\system32\drivers\tunnel.sys
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\wups.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\unlodctr.exe
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\UIRibbonRes.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\sppc.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\spopk.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\shimgvw.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\rdprefdrvapi.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\odbcconf.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\muifontsetup.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\msdmo.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\luainstall.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\inetmib1.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\iccvid.dll
2013-09-18 14:11:48 ----A---- C:\Windows\SYSWOW64\cabinet.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\wdiasqmmodule.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\UIRibbonRes.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\TRAPI.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\spopk.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\schedcli.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\repair-bde.exe
2013-09-18 14:11:48 ----A---- C:\Windows\system32\RDPENCDD.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\odbcconf.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\manage-bde.exe
2013-09-18 14:11:48 ----A---- C:\Windows\system32\inetmib1.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\FXSMON.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\fixmapi.exe
2013-09-18 14:11:48 ----A---- C:\Windows\system32\elsTrans.dll
2013-09-18 14:11:48 ----A---- C:\Windows\system32\drivers\dfsc.sys
2013-09-18 14:11:47 ----A---- C:\Windows\SYSWOW64\perfts.dll
2013-09-18 14:11:47 ----A---- C:\Windows\SYSWOW64\imm32.dll
2013-09-18 14:11:47 ----A---- C:\Windows\system32\wshbth.dll
2013-09-18 14:11:47 ----A---- C:\Windows\system32\napdsnap.dll
2013-09-18 14:11:47 ----A---- C:\Windows\system32\LogonUI.exe
2013-09-18 14:11:47 ----A---- C:\Windows\system32\dsauth.dll
2013-09-18 14:11:47 ----A---- C:\Windows\system32\drivers\tdi.sys
2013-09-18 14:11:46 ----A---- C:\Windows\SYSWOW64\TRAPI.dll
2013-09-18 14:11:46 ----A---- C:\Windows\SYSWOW64\elsTrans.dll
2013-09-18 14:11:46 ----A---- C:\Windows\SYSWOW64\bitsperf.dll
2013-09-18 14:11:46 ----A---- C:\Windows\system32\rdprefdrvapi.dll
2013-09-18 14:11:46 ----A---- C:\Windows\system32\FXSUNATD.exe
2013-09-18 14:11:46 ----A---- C:\Windows\system32\cscdll.dll
2013-09-18 14:11:46 ----A---- C:\Windows\system32\bitsperf.dll
2013-09-18 14:11:44 ----A---- C:\Windows\SYSWOW64\wshbth.dll
2013-09-18 14:11:44 ----A---- C:\Windows\SYSWOW64\schedcli.dll
2013-09-18 14:11:44 ----A---- C:\Windows\SYSWOW64\napdsnap.dll
2013-09-18 14:11:44 ----A---- C:\Windows\SYSWOW64\dsauth.dll
2013-09-18 14:11:44 ----A---- C:\Windows\SYSWOW64\cscdll.dll
2013-09-18 14:11:44 ----A---- C:\Windows\system32\drivers\usbrpm.sys
2013-09-18 14:11:44 ----A---- C:\Windows\system32\drivers\acpipmi.sys
2013-09-18 14:11:43 ----A---- C:\Windows\SYSWOW64\sscore.dll
2013-09-18 14:11:43 ----A---- C:\Windows\system32\wsdchngr.dll
2013-09-18 14:11:43 ----A---- C:\Windows\system32\shgina.dll
2013-09-18 14:11:42 ----A---- C:\Windows\SYSWOW64\wsdchngr.dll
2013-09-18 14:11:42 ----A---- C:\Windows\SYSWOW64\shgina.dll
2013-09-18 14:11:42 ----A---- C:\Windows\SYSWOW64\riched32.dll
2013-09-18 14:11:42 ----A---- C:\Windows\system32\drivers\USBCAMD2.sys
2013-09-18 14:11:41 ----A---- C:\Windows\system32\wshirda.dll
2013-09-18 14:11:41 ----A---- C:\Windows\system32\drivers\CompositeBus.sys
2013-09-18 14:11:40 ----A---- C:\Windows\SYSWOW64\wshirda.dll
2013-09-18 14:11:40 ----A---- C:\Windows\system32\rdpcfgex.dll
2013-09-18 14:11:40 ----A---- C:\Windows\system32\drivers\hidusb.sys
2013-09-18 14:11:40 ----A---- C:\Windows\system32\drivers\appid.sys
2013-09-18 14:11:39 ----A---- C:\Windows\system32\spwmp.dll
2013-09-18 14:11:39 ----A---- C:\Windows\system32\riched32.dll
2013-09-18 14:11:39 ----A---- C:\Windows\system32\drivers\kbdhid.sys
2013-09-18 14:11:39 ----A---- C:\Windows\system32\drivers\IPMIDrv.sys
2013-09-18 14:11:39 ----A---- C:\Windows\system32\browseui.dll
2013-09-18 14:11:38 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2013-09-18 14:11:38 ----A---- C:\Windows\SYSWOW64\C_ISCII.DLL
2013-09-18 14:11:38 ----A---- C:\Windows\SYSWOW64\browseui.dll
2013-09-18 14:11:38 ----A---- C:\Windows\system32\drivers\HdAudio.sys
2013-09-18 14:11:38 ----A---- C:\Windows\system32\drivers\cdrom.sys
2013-09-18 14:11:38 ----A---- C:\Windows\system32\C_ISCII.DLL
2013-09-18 14:11:37 ----AH---- C:\Windows\system32\api-ms-win-core-ums-l1-1-0.dll
2013-09-18 14:11:37 ----A---- C:\Windows\SYSWOW64\shunimpl.dll
2013-09-18 14:11:37 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2013-09-18 14:11:37 ----A---- C:\Windows\system32\shunimpl.dll
2013-09-18 14:11:37 ----A---- C:\Windows\system32\dxmasf.dll
2013-09-18 14:11:37 ----A---- C:\Windows\system32\drivers\sffp_sd.sys
2013-09-18 14:11:37 ----A---- C:\Windows\system32\drivers\scfilter.sys
2013-09-18 14:11:37 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2013-09-18 14:11:36 ----A---- C:\Windows\SYSWOW64\KBDTUF.DLL
2013-09-18 14:11:36 ----A---- C:\Windows\SYSWOW64\KBDSG.DLL
2013-09-18 14:11:36 ----A---- C:\Windows\SYSWOW64\kbdlk41a.dll
2013-09-18 14:11:36 ----A---- C:\Windows\SYSWOW64\KBDGR1.DLL
2013-09-18 14:11:36 ----A---- C:\Windows\system32\KBDTUF.DLL
2013-09-18 14:11:36 ----A---- C:\Windows\system32\KBDSF.DLL
2013-09-18 14:11:36 ----A---- C:\Windows\system32\KBDPO.DLL
2013-09-18 14:11:36 ----A---- C:\Windows\system32\KBDINTAM.DLL
2013-09-18 14:11:36 ----A---- C:\Windows\system32\KBDINBEN.DLL
2013-09-18 14:11:35 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2013-09-18 14:11:35 ----A---- C:\Windows\SYSWOW64\KBDTUQ.DLL
2013-09-18 14:11:35 ----A---- C:\Windows\SYSWOW64\KBDGKL.DLL
2013-09-18 14:11:35 ----A---- C:\Windows\system32\wmploc.DLL
2013-09-18 14:11:35 ----A---- C:\Windows\system32\KBDTUQ.DLL
2013-09-18 14:11:35 ----A---- C:\Windows\system32\KBDSG.DLL
2013-09-18 14:11:35 ----A---- C:\Windows\system32\KBDNEPR.DLL
2013-09-18 14:11:35 ----A---- C:\Windows\system32\kbdlk41a.dll
2013-09-18 14:11:35 ----A---- C:\Windows\system32\KBDGR1.DLL
2013-09-18 14:11:35 ----A---- C:\Windows\system32\KBDGKL.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\SYSWOW64\KBDUS.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\SYSWOW64\KBDTURME.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\SYSWOW64\KBDTAJIK.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\SYSWOW64\KBDMON.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\SYSWOW64\KBDINTEL.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\SYSWOW64\KBDINHIN.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\SYSWOW64\KBDGEO.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\SYSWOW64\KBDCZ1.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\SYSWOW64\KBDBLR.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\system32\KBDGEO.DLL
2013-09-18 14:11:34 ----A---- C:\Windows\system32\KBDCZ1.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\SYSWOW64\KBDUGHR1.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\SYSWOW64\KBDMAORI.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\SYSWOW64\KBDLT1.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\SYSWOW64\KBDINTAM.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\SYSWOW64\KBDINORI.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\SYSWOW64\KBDINMAR.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\SYSWOW64\KBDINKAN.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\SYSWOW64\KBDINBEN.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\system32\KBDUS.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\system32\KBDUGHR1.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\system32\KBDTAJIK.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\system32\KBDMON.DLL
2013-09-18 14:11:33 ----A---- C:\Windows\system32\KBDLT1.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\SYSWOW64\KBDSF.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\SYSWOW64\KBDPO.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\SYSWOW64\KBDNEPR.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\SYSWOW64\KBDBULG.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\SYSWOW64\KBDBASH.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\system32\KBDTURME.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\system32\KBDMAORI.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\system32\KBDINTEL.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\system32\KBDINORI.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\system32\KBDINMAR.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\system32\KBDINKAN.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\system32\KBDINHIN.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\system32\KBDBULG.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\system32\KBDBLR.DLL
2013-09-18 14:11:32 ----A---- C:\Windows\system32\KBDBASH.DLL
2013-09-18 14:11:31 ----A---- C:\Windows\SYSWOW64\spwizres.dll
2013-09-18 14:11:31 ----A---- C:\Windows\SYSWOW64\pifmgr.dll
2013-09-18 14:11:31 ----A---- C:\Windows\SYSWOW64\nlsbres.dll
2013-09-18 14:11:31 ----A---- C:\Windows\system32\spwizres.dll
2013-09-18 14:11:31 ----A---- C:\Windows\system32\pifmgr.dll
2013-09-18 14:11:31 ----A---- C:\Windows\system32\nlsbres.dll
2013-09-18 14:11:31 ----A---- C:\Windows\system32\BlbEvents.dll
2013-09-18 14:11:23 ----A---- C:\Windows\SYSWOW64\wdscore.dll
2013-09-18 14:11:23 ----A---- C:\Windows\system32\dpx.dll
2013-09-18 14:11:19 ----A---- C:\Windows\SYSWOW64\sqmapi.dll
2013-09-18 14:11:08 ----A---- C:\Windows\SYSWOW64\wbemcomn.dll
2013-09-18 14:09:52 ----A---- C:\Windows\system32\wbemcomn.dll
2013-09-18 14:09:46 ----A---- C:\Windows\system32\sqmapi.dll
2013-09-18 13:47:46 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2013-09-18 13:47:46 ----A---- C:\Windows\system32\drivers\usbport.sys
2013-09-18 13:47:46 ----A---- C:\Windows\system32\drivers\usbohci.sys
2013-09-18 13:47:46 ----A---- C:\Windows\system32\drivers\usbhub.sys
2013-09-18 13:47:46 ----A---- C:\Windows\system32\drivers\usbehci.sys
2013-09-18 13:47:46 ----A---- C:\Windows\system32\drivers\usbd.sys
2013-09-18 13:47:46 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2013-09-18 13:47:41 ----A---- C:\Windows\SYSWOW64\fsutil.exe
2013-09-18 13:47:41 ----A---- C:\Windows\SYSWOW64\esent.dll
2013-09-18 13:47:41 ----A---- C:\Windows\system32\fsutil.exe
2013-09-18 13:47:41 ----A---- C:\Windows\system32\esent.dll
2013-09-18 13:47:41 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2013-09-18 13:47:41 ----A---- C:\Windows\system32\drivers\storport.sys
2013-09-18 13:47:41 ----A---- C:\Windows\system32\drivers\nvstor.sys
2013-09-18 13:47:41 ----A---- C:\Windows\system32\drivers\nvraid.sys
2013-09-18 13:47:41 ----A---- C:\Windows\system32\drivers\iaStorV.sys
2013-09-18 13:47:41 ----A---- C:\Windows\system32\drivers\amdxata.sys
2013-09-18 13:47:41 ----A---- C:\Windows\system32\drivers\amdsata.sys
2013-09-18 13:35:29 ----D---- C:\Program Files (x86)\Microsoft Works
2013-09-18 13:35:07 ----D---- C:\Windows\PCHEALTH
2013-09-18 13:31:15 ----D---- C:\Program Files\Microsoft Office
2013-09-18 13:30:20 ----D---- C:\ProgramData\Microsoft Help
2013-09-18 13:29:45 ----RD---- C:\MSOCache
2013-09-18 11:54:53 ----D---- C:\Download
2013-09-18 11:01:18 ----D---- C:\Windows\SYSWOW64\Wat
2013-09-18 11:01:18 ----D---- C:\Windows\system32\Wat
2013-09-18 09:32:14 ----A---- C:\Windows\ntbtlog.txt
2013-09-18 09:19:44 ----D---- C:\Windows\Minidump
2013-09-18 08:31:45 ----D---- C:\Windows\system32\MRT
2013-09-18 08:31:40 ----A---- C:\Windows\system32\MRT.exe
2013-09-18 08:10:41 ----A---- C:\Windows\system32\RTNUninst64.dll
2013-09-18 08:10:41 ----A---- C:\Windows\system32\RtNicProp64.dll
2013-09-18 08:10:41 ----A---- C:\Windows\system32\drivers\Rt64win7.sys
2013-09-18 08:10:38 ----D---- C:\Program Files (x86)\Realtek
2013-09-18 08:09:49 ----A---- C:\Windows\system32\drivers\avgtpx64.sys
2013-09-18 08:09:35 ----D---- C:\ProgramData\AVG SafeGuard toolbar
2013-09-18 08:09:32 ----D---- C:\Program Files (x86)\AVG SafeGuard toolbar
2013-09-18 08:09:31 ----A---- C:\Windows\system32\Wdfres.dll
2013-09-18 08:09:31 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2013-09-18 08:09:31 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2013-09-18 08:08:37 ----A---- C:\Windows\system32\drivers\SWDUMon.sys
2013-09-18 08:08:25 ----HD---- C:\ProgramData\Common Files
2013-09-18 08:08:14 ----D---- C:\Program Files (x86)\SlimDrivers
2013-09-18 07:56:49 ----A---- C:\Windows\system32\browserchoice.exe
2013-09-18 07:40:50 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2013-09-18 07:40:50 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2013-09-18 07:40:50 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2013-09-18 07:40:50 ----A---- C:\Windows\system32\fontsub.dll
2013-09-18 07:40:50 ----A---- C:\Windows\system32\atmlib.dll
2013-09-18 07:40:50 ----A---- C:\Windows\system32\atmfd.dll
2013-09-18 07:39:17 ----A---- C:\Windows\system32\drivers\WUDFRd.sys
2013-09-18 07:39:17 ----A---- C:\Windows\system32\drivers\WUDFPf.sys
2013-09-18 07:39:16 ----A---- C:\Windows\system32\WUDFx.dll
2013-09-18 07:39:16 ----A---- C:\Windows\system32\WUDFSvc.dll
2013-09-18 07:39:16 ----A---- C:\Windows\system32\WUDFPlatform.dll
2013-09-18 07:39:16 ----A---- C:\Windows\system32\WUDFHost.exe
2013-09-18 07:39:16 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2013-09-18 07:35:33 ----A---- C:\Windows\SYSWOW64\D3DX9_42.dll
2013-09-18 07:35:33 ----A---- C:\Windows\SYSWOW64\d3dx9_31.dll
2013-09-18 07:35:24 ----D---- C:\Program Files (x86)\Winamp Detect
2013-09-18 07:35:08 ----D---- C:\Users\Kuba\AppData\Roaming\Winamp
2013-09-18 07:35:08 ----D---- C:\Program Files (x86)\Winamp
2013-09-18 07:33:25 ----D---- C:\Users\Kuba\AppData\Roaming\MiniLyrics
2013-09-18 07:33:00 ----A---- C:\Windows\SYSWOW64\wmi.dll
2013-09-18 07:33:00 ----A---- C:\Windows\SYSWOW64\imagehlp.dll
2013-09-18 07:33:00 ----A---- C:\Windows\system32\wmi.dll
2013-09-18 07:33:00 ----A---- C:\Windows\system32\imagehlp.dll
2013-09-18 07:33:00 ----A---- C:\Windows\system32\drivers\fs_rec.sys
2013-09-18 07:10:00 ----D---- C:\rsit
2013-09-18 07:10:00 ----D---- C:\Program Files\trend micro
2013-09-18 06:08:51 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2013-09-18 06:08:50 ----D---- C:\Windows\SYSWOW64\Macromed
2013-09-18 06:08:48 ----D---- C:\Windows\system32\Macromed
2013-09-18 05:48:01 ----D---- C:\ProgramData\Spybot - Search & Destroy
2013-09-18 05:47:37 ----D---- C:\Program Files (x86)\Spybot - Search & Destroy 2
2013-09-18 05:45:43 ----D---- C:\Program Files\CCleaner
2013-09-18 05:21:43 ----A---- C:\Windows\SYSWOW64\xmllite.dll
2013-09-18 05:21:43 ----A---- C:\Windows\system32\xmllite.dll
2013-09-18 05:21:41 ----A---- C:\Windows\SYSWOW64\odbctrac.dll
2013-09-18 05:21:41 ----A---- C:\Windows\SYSWOW64\odbcjt32.dll
2013-09-18 05:21:41 ----A---- C:\Windows\SYSWOW64\odbccu32.dll
2013-09-18 05:21:41 ----A---- C:\Windows\SYSWOW64\odbccr32.dll
2013-09-18 05:21:41 ----A---- C:\Windows\SYSWOW64\odbccp32.dll
2013-09-18 05:21:41 ----A---- C:\Windows\system32\odbctrac.dll
2013-09-18 05:21:41 ----A---- C:\Windows\system32\odbccu32.dll
2013-09-18 05:21:41 ----A---- C:\Windows\system32\odbccr32.dll
2013-09-18 05:21:41 ----A---- C:\Windows\system32\odbccp32.dll
2013-09-18 05:21:23 ----A---- C:\Windows\system32\poqexec.exe
2013-09-18 05:21:22 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2013-09-18 05:21:18 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2013-09-18 05:21:18 ----A---- C:\Windows\system32\mstscax.dll
2013-09-18 05:21:17 ----A---- C:\Windows\SYSWOW64\tsgqec.dll
2013-09-18 05:21:17 ----A---- C:\Windows\SYSWOW64\aaclient.dll
2013-09-18 05:21:17 ----A---- C:\Windows\system32\tsgqec.dll
2013-09-18 05:21:17 ----A---- C:\Windows\system32\aaclient.dll
2013-09-18 05:20:59 ----A---- C:\Windows\SYSWOW64\explorer.exe
2013-09-18 05:20:59 ----A---- C:\Windows\explorer.exe
2013-09-18 05:20:46 ----A---- C:\Windows\SYSWOW64\CPFilters.dll
2013-09-18 05:20:46 ----A---- C:\Windows\system32\sbe.dll
2013-09-18 05:20:46 ----A---- C:\Windows\system32\CPFilters.dll
2013-09-18 05:20:45 ----A---- C:\Windows\SYSWOW64\sbe.dll
2013-09-18 05:20:17 ----A---- C:\Windows\system32\quartz.dll
2013-09-18 05:20:16 ----A---- C:\Windows\SYSWOW64\quartz.dll
2013-09-18 05:20:16 ----A---- C:\Windows\SYSWOW64\qdvd.dll
2013-09-18 05:20:16 ----A---- C:\Windows\system32\qdvd.dll
2013-09-18 05:20:08 ----A---- C:\Windows\SYSWOW64\ntshrui.dll
2013-09-18 05:20:08 ----A---- C:\Windows\system32\ntshrui.dll
2013-09-18 05:19:57 ----A---- C:\Windows\system32\tquery.dll
2013-09-18 05:19:56 ----A---- C:\Windows\SYSWOW64\tquery.dll
2013-09-18 05:19:56 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2013-09-18 05:19:56 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2013-09-18 05:19:56 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2013-09-18 05:19:56 ----A---- C:\Windows\SYSWOW64\mssph.dll
2013-09-18 05:19:56 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2013-09-18 05:19:56 ----A---- C:\Windows\system32\SearchIndexer.exe
2013-09-18 05:19:56 ----A---- C:\Windows\system32\mssvp.dll
2013-09-18 05:19:56 ----A---- C:\Windows\system32\mssrch.dll
2013-09-18 05:19:55 ----A---- C:\Windows\SYSWOW64\SearchFilterHost.exe
2013-09-18 05:19:55 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2013-09-18 05:19:55 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2013-09-18 05:19:55 ----A---- C:\Windows\system32\SearchFilterHost.exe
2013-09-18 05:19:55 ----A---- C:\Windows\system32\mssphtb.dll
2013-09-18 05:19:55 ----A---- C:\Windows\system32\mssph.dll
2013-09-18 05:19:55 ----A---- C:\Windows\system32\msscntrs.dll
2013-09-18 05:19:54 ----A---- C:\Windows\SYSWOW64\msscntrs.dll
2013-09-18 05:19:51 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2013-09-18 05:19:51 ----A---- C:\Windows\system32\drivers\mrxsmb10.sys
2013-09-18 05:19:51 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2013-09-18 05:19:45 ----A---- C:\Windows\SYSWOW64\webio.dll
2013-09-18 05:19:45 ----A---- C:\Windows\system32\webio.dll
2013-09-18 05:19:15 ----A---- C:\Windows\system32\drivers\ntfs.sys
2013-09-18 05:18:53 ----A---- C:\Windows\SYSWOW64\mfc42u.dll
2013-09-18 05:18:53 ----A---- C:\Windows\SYSWOW64\mfc42.dll
2013-09-18 05:18:53 ----A---- C:\Windows\system32\mfc42u.dll
2013-09-18 05:18:53 ----A---- C:\Windows\system32\mfc42.dll
2013-09-18 05:18:45 ----A---- C:\Windows\system32\drivers\usb8023.sys
2013-09-18 05:18:44 ----A---- C:\Windows\system32\rdrmemptylst.exe
2013-09-18 05:18:44 ----A---- C:\Windows\system32\rdpwsx.dll
2013-09-18 05:18:44 ----A---- C:\Windows\system32\rdpcorekmts.dll
2013-09-18 05:18:43 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2013-09-18 05:18:43 ----A---- C:\Windows\SYSWOW64\schannel.dll
2013-09-18 05:18:43 ----A---- C:\Windows\SYSWOW64\secur32.dll
2013-09-18 05:18:43 ----A---- C:\Windows\system32\sspisrv.dll
2013-09-18 05:18:43 ----A---- C:\Windows\system32\sspicli.dll
2013-09-18 05:18:43 ----A---- C:\Windows\system32\schannel.dll
2013-09-18 05:18:43 ----A---- C:\Windows\system32\secur32.dll
2013-09-18 05:18:43 ----A---- C:\Windows\system32\lsass.exe
2013-09-18 05:18:43 ----A---- C:\Windows\system32\lsasrv.dll
2013-09-18 05:18:43 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2013-09-18 05:18:43 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2013-09-18 05:18:43 ----A---- C:\Windows\system32\drivers\cng.sys
2013-09-18 05:18:30 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2013-09-18 05:18:30 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2013-09-18 05:18:30 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2013-09-18 05:18:30 ----A---- C:\Windows\system32\msxml6.dll
2013-09-18 05:18:30 ----A---- C:\Windows\system32\msxml3r.dll
2013-09-18 05:18:30 ----A---- C:\Windows\system32\msxml3.dll
2013-09-18 05:18:29 ----A---- C:\Windows\system32\drivers\Diskdump.sys
2013-09-18 05:18:27 ----A---- C:\Windows\system32\profsvc.dll
2013-09-18 05:18:27 ----A---- C:\Windows\system32\profprov.dll
2013-09-18 05:18:24 ----A---- C:\Windows\SYSWOW64\dnscacheugc.exe
2013-09-18 05:18:24 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2013-09-18 05:18:24 ----A---- C:\Windows\system32\dnsrslvr.dll
2013-09-18 05:18:24 ----A---- C:\Windows\system32\dnscacheugc.exe
2013-09-18 05:18:24 ----A---- C:\Windows\system32\dnsapi.dll
2013-09-18 05:18:01 ----A---- C:\Windows\SYSWOW64\dpnet.dll
2013-09-18 05:18:01 ----A---- C:\Windows\SYSWOW64\dpnaddr.dll
2013-09-18 05:18:01 ----A---- C:\Windows\system32\dpnet.dll
2013-09-18 05:18:01 ----A---- C:\Windows\system32\dpnaddr.dll
2013-09-18 05:18:00 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2013-09-18 05:18:00 ----A---- C:\Windows\system32\ncrypt.dll
2013-09-18 05:17:45 ----A---- C:\Windows\SYSWOW64\usp10.dll
2013-09-18 05:17:45 ----A---- C:\Windows\system32\usp10.dll
2013-09-18 05:17:45 ----A---- C:\Windows\system32\drivers\srvnet.sys
2013-09-18 05:17:45 ----A---- C:\Windows\system32\drivers\srv2.sys
2013-09-18 05:17:45 ----A---- C:\Windows\system32\drivers\srv.sys
2013-09-18 05:17:43 ----A---- C:\Windows\system32\drivers\netio.sys
2013-09-18 05:17:43 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2013-09-18 05:17:37 ----A---- C:\Windows\SYSWOW64\gameux.dll
2013-09-18 05:17:37 ----A---- C:\Windows\system32\Wpc.dll
2013-09-18 05:17:37 ----A---- C:\Windows\system32\gameux.dll
2013-09-18 05:17:36 ----A---- C:\Windows\SYSWOW64\Wpc.dll
2013-09-18 05:17:23 ----A---- C:\Windows\SYSWOW64\psisdecd.dll
2013-09-18 05:17:23 ----A---- C:\Windows\system32\psisdecd.dll
2013-09-18 05:17:14 ----A---- C:\Windows\system32\drivers\rdpwd.sys
2013-09-18 05:17:06 ----A---- C:\Windows\system32\drivers\afd.sys
2013-09-18 05:17:05 ----A---- C:\Windows\system32\drivers\partmgr.sys
2013-09-18 05:17:02 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2013-09-18 05:17:02 ----A---- C:\Windows\system32\kerberos.dll
2013-09-18 05:16:57 ----A---- C:\Windows\SYSWOW64\msi.dll
2013-09-18 05:16:57 ----A---- C:\Windows\system32\msi.dll
2013-09-18 05:16:24 ----A---- C:\Windows\SYSWOW64\synceng.dll
2013-09-18 05:16:24 ----A---- C:\Windows\system32\synceng.dll
2013-09-18 05:16:23 ----A---- C:\Windows\system32\winresume.exe
2013-09-18 05:16:23 ----A---- C:\Windows\system32\winload.exe
2013-09-18 05:16:22 ----A---- C:\Windows\system32\setbcdlocale.dll
2013-09-18 05:16:22 ----A---- C:\Windows\system32\kdusb.dll
2013-09-18 05:16:22 ----A---- C:\Windows\system32\kdcom.dll
2013-09-18 05:16:22 ----A---- C:\Windows\system32\kd1394.dll
2013-09-18 05:15:22 ----A---- C:\Windows\system32\umpnpmgr.dll
2013-09-18 05:15:21 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2013-09-18 05:15:21 ----A---- C:\Windows\SYSWOW64\devrtl.dll
2013-09-18 05:15:21 ----A---- C:\Windows\SYSWOW64\devobj.dll
2013-09-18 05:15:21 ----A---- C:\Windows\SYSWOW64\cfgmgr32.dll
2013-09-18 05:15:21 ----A---- C:\Windows\system32\cfgmgr32.dll
2013-09-18 05:15:14 ----A---- C:\Windows\system32\netapi32.dll
2013-09-18 05:15:14 ----A---- C:\Windows\system32\browser.dll
2013-09-18 05:15:14 ----A---- C:\Windows\system32\browcli.dll
2013-09-18 05:15:13 ----A---- C:\Windows\SYSWOW64\netapi32.dll
2013-09-18 05:15:13 ----A---- C:\Windows\SYSWOW64\browcli.dll
2013-09-18 05:15:02 ----A---- C:\Windows\SYSWOW64\prevhost.exe
2013-09-18 05:15:02 ----A---- C:\Windows\system32\prevhost.exe
2013-09-18 05:15:00 ----A---- C:\Windows\system32\drivers\fvevol.sys
2013-09-18 05:14:55 ----A---- C:\Windows\SYSWOW64\srclient.dll
2013-09-18 05:14:55 ----A---- C:\Windows\system32\srcore.dll
2013-09-18 05:14:55 ----A---- C:\Windows\system32\rstrui.exe
2013-09-18 05:14:51 ----A---- C:\Windows\system32\WFS.exe
2013-09-18 05:14:51 ----A---- C:\Windows\system32\FXSCOVER.exe
2013-09-18 05:14:48 ----A---- C:\Windows\SYSWOW64\inetcomm.dll
2013-09-18 05:14:48 ----A---- C:\Windows\system32\inetcomm.dll
2013-09-18 05:14:46 ----A---- C:\Windows\system32\msvcrt.dll
2013-09-18 05:14:45 ----A---- C:\Windows\SYSWOW64\msvcrt.dll
2013-09-18 05:14:34 ----A---- C:\Windows\system32\localspl.dll
2013-09-18 05:14:28 ----A---- C:\Windows\system32\drivers\bowser.sys
2013-09-18 05:14:22 ----A---- C:\Windows\SYSWOW64\oleacc.dll
2013-09-18 05:14:22 ----A---- C:\Windows\system32\oleaut32.dll
2013-09-18 05:14:22 ----A---- C:\Windows\system32\oleacc.dll
2013-09-18 05:14:21 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2013-09-18 05:14:13 ----A---- C:\Windows\SYSWOW64\EncDec.dll
2013-09-18 05:14:13 ----A---- C:\Windows\system32\EncDec.dll
2013-09-18 05:13:50 ----A---- C:\Windows\SYSWOW64\cdosys.dll
2013-09-18 05:13:50 ----A---- C:\Windows\system32\cdosys.dll
2013-09-18 05:13:24 ----D---- C:\ProgramData\Razer
2013-09-18 05:13:24 ----D---- C:\Program Files (x86)\Razer
2013-09-18 05:13:09 ----A---- C:\Windows\system32\spoolsv.exe
2013-09-18 05:13:09 ----A---- C:\Windows\splwow64.exe
2013-09-18 05:06:14 ----D---- C:\Program Files\Common Files\Symantec Shared
2013-09-18 05:06:14 ----A---- C:\Windows\system32\drivers\SYMEVENT64x86.SYS
2013-09-18 05:05:25 ----D---- C:\Windows\system32\drivers\NISx64
2013-09-18 05:05:23 ----D---- C:\Program Files (x86)\Norton Internet Security
2013-09-18 05:05:22 ----D---- C:\ProgramData\Norton
2013-09-18 05:03:18 ----D---- C:\ProgramData\NortonInstaller
2013-09-18 05:03:18 ----D---- C:\Program Files (x86)\NortonInstaller
2013-09-18 04:56:54 ----A---- C:\Windows\SYSWOW64\packager.dll
2013-09-18 04:56:54 ----A---- C:\Windows\system32\packager.dll
2013-09-18 04:54:15 ----D---- C:\Program Files (x86)\AGEIA Technologies
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\nvopencl.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\nvoglv32.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\NvIFR.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\NvFBC.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\nvcuvid.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\nvcuvenc.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\nvcuda.dll
2013-09-18 04:52:20 ----A---- C:\Windows\SYSWOW64\nvcompiler.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvopencl.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvoglv64.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\NvIFR64.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\NvFBC64.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvdispgenco6432049.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvdispco6432049.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvd3dumx.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvcuvid.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvcuvenc.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvcuda.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\nvcompiler.dll
2013-09-18 04:52:20 ----A---- C:\Windows\system32\drivers\nvlddmkm.sys
2013-09-17 22:36:14 ----A---- C:\Windows\SYSWOW64\PerfStringBackup.INI
2013-09-17 22:34:45 ----D---- C:\Program Files (x86)\Microsoft.NET
2013-09-17 22:33:14 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2013-09-17 22:33:01 ----N---- C:\Windows\Vmix108.dll
2013-09-17 22:33:01 ----N---- C:\Windows\SYSWOW64\cmpa108.dll
2013-09-17 22:33:01 ----N---- C:\Windows\SYSWOW64\CM108.dll
2013-09-17 22:33:01 ----N---- C:\Windows\system32\Cmeau108.exe
2013-09-17 22:32:41 ----N---- C:\Windows\system32\CmiInstallResAll64.dll
2013-09-17 22:32:41 ----N---- C:\Windows\cm108.ini
2013-09-17 22:32:41 ----A---- C:\Windows\difxapi.dll
2013-09-17 22:32:04 ----A---- C:\Windows\system32\drivers\CM10864.sys
2013-09-17 22:27:24 ----D---- C:\Users\Kuba\AppData\Roaming\LolClient
2013-09-17 22:27:22 ----D---- C:\Users\Kuba\AppData\Roaming\Macromedia
2013-09-17 22:27:21 ----D---- C:\Users\Kuba\AppData\Roaming\Adobe
2013-09-17 22:19:22 ----D---- C:\Windows\Panther
2013-09-17 21:49:15 ----A---- C:\Windows\SYSWOW64\XAudio2_2.dll
2013-09-17 21:49:15 ----A---- C:\Windows\SYSWOW64\XAPOFX1_1.dll
2013-09-17 21:49:15 ----A---- C:\Windows\SYSWOW64\d3dx10_39.dll
2013-09-17 21:49:15 ----A---- C:\Windows\SYSWOW64\D3DCompiler_39.dll
2013-09-17 21:49:14 ----A---- C:\Windows\SYSWOW64\D3DX9_39.dll
2013-09-17 21:47:41 ----SHD---- C:\Windows\SYSWOW64\AI_RecycleBin
2013-09-17 21:46:17 ----N---- C:\Windows\system32\MpSigStub.exe
2013-09-17 21:45:24 ----D---- C:\ProgramData\PMB Files
2013-09-17 21:45:22 ----D---- C:\Program Files (x86)\Pando Networks
2013-09-17 21:44:46 ----D---- C:\Users\Kuba\AppData\Roaming\Riot Games
2013-09-17 21:41:27 ----D---- C:\Users\Kuba\AppData\Roaming\Skype
2013-09-17 21:41:24 ----RD---- C:\Program Files (x86)\Skype
2013-09-17 21:41:20 ----SHD---- C:\Windows\Installer
2013-09-17 21:41:20 ----D---- C:\ProgramData\Skype
2013-09-17 21:39:32 ----D---- C:\Users\Kuba\AppData\Roaming\Mozilla
2013-09-17 21:39:25 ----D---- C:\ProgramData\Mozilla
2013-09-17 21:39:25 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2013-09-17 21:36:32 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2013-09-17 21:36:29 ----D---- C:\ProgramData\NVIDIA
2013-09-17 21:36:25 ----A---- C:\Windows\system32\nvvsvc.exe
2013-09-17 21:36:25 ----A---- C:\Windows\system32\nvsvcr.dll
2013-09-17 21:36:25 ----A---- C:\Windows\system32\nvsvc64.dll
2013-09-17 21:36:25 ----A---- C:\Windows\system32\nvshext.dll
2013-09-17 21:36:25 ----A---- C:\Windows\system32\nvmctray.dll
2013-09-17 21:36:25 ----A---- C:\Windows\system32\nvcpl.dll
2013-09-17 21:36:11 ----A---- C:\Windows\SYSWOW64\OpenCL.dll
2013-09-17 21:36:11 ----A---- C:\Windows\system32\OpenCL.dll
2013-09-17 21:35:53 ----D---- C:\ProgramData\NVIDIA Corporation
2013-09-17 21:35:49 ----D---- C:\Program Files\NVIDIA Corporation
2013-09-17 21:35:46 ----D---- C:\Users\Kuba\AppData\Roaming\GHISLER
2013-09-17 21:35:19 ----D---- C:\Programy
2013-09-17 21:34:33 ----A---- C:\Windows\SYSWOW64\rdpcore.dll
2013-09-17 21:34:33 ----A---- C:\Windows\system32\rdpcore.dll
2013-09-17 21:34:33 ----A---- C:\Windows\system32\drivers\tdtcp.sys
2013-09-17 21:31:17 ----A---- C:\Windows\system32\wups2.dll
2013-09-17 21:31:17 ----A---- C:\Windows\system32\wucltux.dll
2013-09-17 21:31:17 ----A---- C:\Windows\system32\wuauclt.exe
2013-09-17 21:31:16 ----A---- C:\Windows\system32\wuaueng.dll
2013-09-17 21:31:09 ----A---- C:\Windows\system32\wups.dll
2013-09-17 21:31:09 ----A---- C:\Windows\system32\wudriver.dll
2013-09-17 21:31:09 ----A---- C:\Windows\system32\wuapi.dll
2013-09-17 21:30:57 ----A---- C:\Windows\system32\wuwebv.dll
2013-09-17 21:30:57 ----A---- C:\Windows\system32\wuapp.exe
2013-09-17 21:30:45 ----D---- C:\Users\Kuba\AppData\Roaming\Identities
2013-09-17 21:30:38 ----SD---- C:\Users\Kuba\AppData\Roaming\Microsoft
2013-09-17 21:30:38 ----D---- C:\Users\Kuba\AppData\Roaming\Media Center Programs
2013-09-17 21:30:27 ----SHD---- C:\ProgramData\Šablony
2013-09-17 21:30:27 ----SHD---- C:\ProgramData\Plocha
2013-09-17 21:30:27 ----SHD---- C:\ProgramData\Oblíbené položky
2013-09-17 21:30:27 ----SHD---- C:\ProgramData\Nabídka Start
2013-09-17 21:30:27 ----SHD---- C:\ProgramData\Dokumenty
2013-09-17 21:30:27 ----SHD---- C:\ProgramData\Data aplikací
2013-09-17 21:30:27 ----D---- C:\Recovery
2013-09-17 21:30:24 ----D---- C:\Windows\SoftwareDistribution
2013-09-17 21:20:24 ----D---- C:\Windows\Prefetch
2013-09-17 21:20:10 ----ASH---- C:\pagefile.sys
2013-09-17 21:20:09 ----SHD---- C:\System Volume Information
2013-09-17 21:20:09 ----ASH---- C:\hiberfil.sys
2013-08-29 06:29:54 ----A---- C:\Windows\SYSWOW64\rzdevicedll.dll
======List of files/folders modified in the last 1 month======
2013-09-28 16:56:30 ----D---- C:\Windows\Temp
2013-09-28 13:36:49 ----D---- C:\Windows\system32\drivers
2013-09-28 02:16:07 ----D---- C:\Windows\system32\config
2013-09-27 23:59:56 ----SD---- C:\ProgramData\Microsoft
2013-09-27 23:59:56 ----D---- C:\Windows\System32
2013-09-27 23:59:53 ----D---- C:\Windows
2013-09-27 23:50:43 ----D---- C:\Windows\inf
2013-09-27 23:50:43 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-09-27 23:45:00 ----D---- C:\Windows\winsxs
2013-09-20 04:35:47 ----D---- C:\Windows\system32\catroot2
2013-09-20 04:34:52 ----D---- C:\Windows\SysWOW64
2013-09-20 04:34:52 ----D---- C:\Program Files (x86)\Internet Explorer
2013-09-20 04:34:49 ----D---- C:\Program Files\Internet Explorer
2013-09-20 04:34:12 ----D---- C:\Windows\system32\catroot
2013-09-19 23:44:23 ----D---- C:\Windows\rescache
2013-09-19 23:43:56 ----D---- C:\Windows\Logs
2013-09-19 19:48:11 ----D---- C:\Windows\system32\drivers\UMDF
2013-09-19 17:40:04 ----D---- C:\Windows\Microsoft.NET
2013-09-19 17:39:42 ----RSD---- C:\Windows\assembly
2013-09-19 15:39:38 ----D---- C:\Windows\SYSWOW64\cs-CZ
2013-09-19 15:39:38 ----D---- C:\Windows\system32\cs-CZ
2013-09-19 15:39:37 ----D---- C:\Windows\AppPatch
2013-09-19 15:39:34 ----D---- C:\Program Files\Windows Defender
2013-09-19 15:39:34 ----D---- C:\Program Files (x86)\Windows Defender
2013-09-19 15:39:25 ----D---- C:\Windows\SYSWOW64\migration
2013-09-19 15:39:25 ----D---- C:\Windows\SYSWOW64\en-US
2013-09-19 15:39:22 ----D---- C:\Windows\system32\migration
2013-09-19 15:39:22 ----D---- C:\Windows\system32\en-US
2013-09-19 15:39:22 ----D---- C:\Windows\PolicyDefinitions
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\zh-TW
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\zh-HK
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\zh-CN
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\tr-TR
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\sv-SE
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\ru-RU
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\pt-PT
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\pt-BR
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\pl-PL
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\nl-NL
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\ko-KR
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\ja-JP
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\it-IT
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\hu-HU
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\fr-FR
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\fi-FI
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\es-ES
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\el-GR
2013-09-19 15:39:19 ----D---- C:\Windows\SYSWOW64\de-DE
2013-09-19 15:39:18 ----D---- C:\Windows\SYSWOW64\nb-NO
2013-09-19 15:39:18 ----D---- C:\Windows\SYSWOW64\da-DK
2013-09-19 15:39:18 ----D---- C:\Windows\system32\pt-PT
2013-09-19 15:39:18 ----D---- C:\Windows\system32\pt-BR
2013-09-19 15:39:18 ----D---- C:\Windows\system32\it-IT
2013-09-19 15:39:17 ----D---- C:\Windows\system32\zh-TW
2013-09-19 15:39:17 ----D---- C:\Windows\system32\zh-HK
2013-09-19 15:39:17 ----D---- C:\Windows\system32\zh-CN
2013-09-19 15:39:17 ----D---- C:\Windows\system32\tr-TR
2013-09-19 15:39:17 ----D---- C:\Windows\system32\sv-SE
2013-09-19 15:39:17 ----D---- C:\Windows\system32\ru-RU
2013-09-19 15:39:17 ----D---- C:\Windows\system32\pl-PL
2013-09-19 15:39:17 ----D---- C:\Windows\system32\nl-NL
2013-09-19 15:39:17 ----D---- C:\Windows\system32\nb-NO
2013-09-19 15:39:17 ----D---- C:\Windows\system32\ko-KR
2013-09-19 15:39:17 ----D---- C:\Windows\system32\ja-JP
2013-09-19 15:39:17 ----D---- C:\Windows\system32\hu-HU
2013-09-19 15:39:17 ----D---- C:\Windows\system32\fr-FR
2013-09-19 15:39:17 ----D---- C:\Windows\system32\fi-FI
2013-09-19 15:39:17 ----D---- C:\Windows\system32\es-ES
2013-09-19 15:39:17 ----D---- C:\Windows\system32\el-GR
2013-09-19 15:39:17 ----D---- C:\Windows\system32\de-DE
2013-09-19 15:39:17 ----D---- C:\Windows\system32\da-DK
2013-09-19 15:39:09 ----D---- C:\Program Files\Windows Journal
2013-09-19 15:39:03 ----D---- C:\Windows\system32\DriverStore
2013-09-19 14:31:10 ----D---- C:\Windows\system32\wdi
2013-09-19 03:31:13 ----D---- C:\Windows\system32\drivers\etc
2013-09-19 03:08:03 ----A---- C:\Windows\system.ini
2013-09-19 03:02:31 ----D---- C:\Windows\SYSWOW64\drivers
2013-09-19 03:02:30 ----D---- C:\Program Files (x86)\Common Files
2013-09-19 02:08:16 ----D---- C:\Program Files\Common Files\Microsoft Shared
2013-09-19 02:05:47 ----RSD---- C:\Windows\Fonts
2013-09-19 01:45:34 ----D---- C:\Program Files (x86)\Windows Sidebar
2013-09-19 01:45:34 ----D---- C:\Program Files (x86)\Windows Portable Devices
2013-09-19 01:45:34 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2013-09-19 01:45:34 ----D---- C:\Program Files (x86)\Windows Media Player
2013-09-19 01:45:34 ----D---- C:\Program Files (x86)\Windows Mail
2013-09-19 01:45:33 ----D---- C:\Program Files\Windows Sidebar
2013-09-19 01:45:33 ----D---- C:\Program Files\Windows Mail
2013-09-19 01:45:33 ----D---- C:\Program Files\DVD Maker
2013-09-19 01:45:32 ----D---- C:\Program Files\Windows Portable Devices
2013-09-19 01:45:32 ----D---- C:\Program Files\Windows Photo Viewer
2013-09-19 01:45:32 ----D---- C:\Program Files\Windows Media Player
2013-09-19 01:45:32 ----D---- C:\Program Files\Common Files\System
2013-09-19 01:45:30 ----D---- C:\Windows\servicing
2013-09-19 01:45:30 ----D---- C:\Windows\ehome
2013-09-19 01:45:16 ----D---- C:\Windows\SYSWOW64\oobe
2013-09-19 01:45:15 ----D---- C:\Windows\SYSWOW64\Setup
2013-09-19 01:45:15 ----D---- C:\Windows\SYSWOW64\cs
2013-09-19 01:45:15 ----D---- C:\Windows\SYSWOW64\AdvancedInstallers
2013-09-19 01:45:12 ----D---- C:\Windows\SYSWOW64\wbem
2013-09-19 01:45:12 ----D---- C:\Windows\SYSWOW64\sppui
2013-09-19 01:45:12 ----D---- C:\Windows\SYSWOW64\manifeststore
2013-09-19 01:45:11 ----D---- C:\Windows\SYSWOW64\migwiz
2013-09-19 01:45:11 ----D---- C:\Windows\SYSWOW64\Dism
2013-09-19 01:44:43 ----D---- C:\Windows\system32\oobe
2013-09-19 01:44:42 ----D---- C:\Windows\system32\Setup
2013-09-19 01:44:42 ----D---- C:\Windows\system32\cs
2013-09-19 01:44:42 ----D---- C:\Windows\system32\AdvancedInstallers
2013-09-19 01:44:40 ----D---- C:\Windows\system32\sppui
2013-09-19 01:44:40 ----D---- C:\Windows\system32\manifeststore
2013-09-19 01:44:39 ----D---- C:\Windows\system32\wbem
2013-09-19 01:44:39 ----D---- C:\Windows\system32\drivers\cs-CZ
2013-09-19 01:44:38 ----D---- C:\Windows\system32\migwiz
2013-09-19 01:44:38 ----D---- C:\Windows\system32\Dism
2013-09-19 01:42:31 ----D---- C:\Windows\system32\Boot
2013-09-19 01:39:12 ----A---- C:\Windows\SYSWOW64\msclmd.dll
2013-09-19 01:39:11 ----A---- C:\Windows\system32\msclmd.dll
2013-09-18 14:20:35 ----RD---- C:\Program Files
2013-09-18 13:35:29 ----RD---- C:\Program Files (x86)
2013-09-18 13:31:07 ----D---- C:\Windows\ShellNew
2013-09-18 13:30:20 ----D---- C:\ProgramData
2013-09-18 08:31:43 ----D---- C:\Windows\debug
2013-09-18 08:08:58 ----D---- C:\Windows\system32\Tasks
2013-09-18 08:08:56 ----D---- C:\Windows\Tasks
2013-09-18 05:06:14 ----D---- C:\Program Files\Common Files
2013-09-17 22:33:01 ----D---- C:\Windows\system
2013-09-17 21:36:36 ----RD---- C:\Users
2013-09-17 21:36:20 ----D---- C:\Windows\Help
2013-09-17 21:34:55 ----D---- C:\Windows\system32\CodeIntegrity
2013-09-17 21:30:45 ----D---- C:\Windows\system32\restore
2013-09-17 21:30:27 ----D---- C:\Windows\system32\Recovery
2013-09-17 21:30:27 ----D---- C:\Program Files\Windows NT
2013-09-17 21:23:40 ----D---- C:\Windows\system32\sysprep
Re: Ovládá mi někdo pc na dálku
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 SymDS;Symantec Data Store; C:\Windows\system32\drivers\NISx64\1500010.003\SYMDS64.SYS [2013-08-01 493656]
R0 SymEFA;Symantec Extended File Attributes; C:\Windows\system32\drivers\NISx64\1500010.003\SYMEFA64.SYS [2013-08-05 1147480]
R1 avgtp;avgtp; \??\C:\Windows\system32\drivers\avgtpx64.sys [2013-09-27 46368]
R1 BHDrvx64;BHDrvx64; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\BASHDefs\20130924.001\BHDrvx64.sys [2013-09-24 1525848]
R1 ccSet_NIS;NIS Settings Manager; C:\Windows\system32\drivers\NISx64\1500010.003\ccSetx64.sys [2013-07-30 150104]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [2013-09-18 484952]
R1 IDSVia64;IDSVia64; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\IPSDefs\20130927.002\IDSvia64.sys [2013-09-17 520280]
R1 SRTSPX;Symantec Real Time Storage Protection (PEL) x64; C:\Windows\system32\drivers\NISx64\1500010.003\SRTSPX64.SYS [2013-07-31 36952]
R1 SymIRON;Symantec Iron Driver; C:\Windows\system32\drivers\NISx64\1500010.003\Ironx64.SYS [2013-07-31 264280]
R1 SymNetS;Symantec Network Security WFP Driver; C:\Windows\system32\drivers\NISx64\1500010.003\SYMNETS.SYS [2013-07-31 590424]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2013-09-18 140376]
R3 NAVENG;NAVENG; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\VirusDefs\20130927.018\ENG64.SYS [2013-09-18 126040]
R3 NAVEX15;NAVEX15; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\VirusDefs\20130927.018\EX64.SYS [2013-09-18 2099288]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2000-01-01 685672]
R3 rzdaendpt;Razer DeathAdder end point; C:\Windows\system32\DRIVERS\rzdaendpt.sys [2013-08-20 33464]
R3 rzendpt;rzendpt; C:\Windows\system32\DRIVERS\rzendpt.sys [2013-08-20 39096]
R3 rzudd;Razer Mouse Driver; C:\Windows\system32\DRIVERS\rzudd.sys [2013-08-21 141496]
R3 rzvkeyboard;Razer Virtual Keyboard Driver; C:\Windows\system32\DRIVERS\rzvkeyboard.sys [2013-08-20 30904]
R3 SRTSP;Symantec Real Time Storage Protection x64; C:\Windows\system32\drivers\NISx64\1500010.003\SRTSP64.SYS [2013-07-31 854616]
R3 SymEvent;SymEvent; \??\C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [2013-09-18 177752]
R3 USBPNPA;USB PnP Sound Device Interface; C:\Windows\system32\drivers\CM10864.sys [2013-01-16 1310720]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 SWDUMon;SWDUMon; C:\Windows\system32\DRIVERS\SWDUMon.sys [2013-09-28 16152]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 59392]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 NIS;Norton Internet Security; C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe [2013-08-31 275696]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-06-21 884512]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-05-16 1826592]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-06-21 413472]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-07-25 162672]
S2 vToolbarUpdater17.0.1;vToolbarUpdater17.0.1; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\17.0.1\ToolbarUpdater.exe []
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-09-18 257416]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-09-11 118680]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-09-18 1255736]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
-----------------EOF-----------------
R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 SymDS;Symantec Data Store; C:\Windows\system32\drivers\NISx64\1500010.003\SYMDS64.SYS [2013-08-01 493656]
R0 SymEFA;Symantec Extended File Attributes; C:\Windows\system32\drivers\NISx64\1500010.003\SYMEFA64.SYS [2013-08-05 1147480]
R1 avgtp;avgtp; \??\C:\Windows\system32\drivers\avgtpx64.sys [2013-09-27 46368]
R1 BHDrvx64;BHDrvx64; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\BASHDefs\20130924.001\BHDrvx64.sys [2013-09-24 1525848]
R1 ccSet_NIS;NIS Settings Manager; C:\Windows\system32\drivers\NISx64\1500010.003\ccSetx64.sys [2013-07-30 150104]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [2013-09-18 484952]
R1 IDSVia64;IDSVia64; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\IPSDefs\20130927.002\IDSvia64.sys [2013-09-17 520280]
R1 SRTSPX;Symantec Real Time Storage Protection (PEL) x64; C:\Windows\system32\drivers\NISx64\1500010.003\SRTSPX64.SYS [2013-07-31 36952]
R1 SymIRON;Symantec Iron Driver; C:\Windows\system32\drivers\NISx64\1500010.003\Ironx64.SYS [2013-07-31 264280]
R1 SymNetS;Symantec Network Security WFP Driver; C:\Windows\system32\drivers\NISx64\1500010.003\SYMNETS.SYS [2013-07-31 590424]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2013-09-18 140376]
R3 NAVENG;NAVENG; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\VirusDefs\20130927.018\ENG64.SYS [2013-09-18 126040]
R3 NAVEX15;NAVEX15; \??\C:\Program Files (x86)\Norton Internet Security\NortonData\21.0.1.3\Definitions\VirusDefs\20130927.018\EX64.SYS [2013-09-18 2099288]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2000-01-01 685672]
R3 rzdaendpt;Razer DeathAdder end point; C:\Windows\system32\DRIVERS\rzdaendpt.sys [2013-08-20 33464]
R3 rzendpt;rzendpt; C:\Windows\system32\DRIVERS\rzendpt.sys [2013-08-20 39096]
R3 rzudd;Razer Mouse Driver; C:\Windows\system32\DRIVERS\rzudd.sys [2013-08-21 141496]
R3 rzvkeyboard;Razer Virtual Keyboard Driver; C:\Windows\system32\DRIVERS\rzvkeyboard.sys [2013-08-20 30904]
R3 SRTSP;Symantec Real Time Storage Protection x64; C:\Windows\system32\drivers\NISx64\1500010.003\SRTSP64.SYS [2013-07-31 854616]
R3 SymEvent;SymEvent; \??\C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [2013-09-18 177752]
R3 USBPNPA;USB PnP Sound Device Interface; C:\Windows\system32\drivers\CM10864.sys [2013-01-16 1310720]
S3 BridgeMP;@%SystemRoot%\system32\bridgeres.dll,-1; C:\Windows\system32\DRIVERS\bridge.sys [2009-07-14 95232]
S3 SWDUMon;SWDUMon; C:\Windows\system32\DRIVERS\SWDUMon.sys [2013-09-28 16152]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2010-11-20 59392]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 NIS;Norton Internet Security; C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe [2013-08-31 275696]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-06-21 884512]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-05-16 1826592]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-06-21 413472]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-07-25 162672]
S2 vToolbarUpdater17.0.1;vToolbarUpdater17.0.1; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\17.0.1\ToolbarUpdater.exe []
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-09-18 257416]
S3 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2010-03-18 44376]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2013-09-11 118680]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-09-18 1255736]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2010-03-18 124240]
-----------------EOF-----------------
- Rudy
- Site Admin
- Příspěvky: 119531
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Ovládá mi někdo pc na dálku
Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
a klikněte na >MoveIt!<. Po skenu restartujte PC a dejte nový log RSIT.:commands
[Purity]
[Emptytemp]
[Emptyflash]
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Ovládá mi někdo pc na dálku
Logfile of random's system information tool 1.09 (written by random/random)
Run by Kuba at 2013-09-28 20:02:50
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 369 GB (90%) free of 410 GB
Total RAM: 4093 MB (64% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:02:55, on 28.9.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16686)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe
C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Programy\PrintScreen\PrintScreen.exe
C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe
C:\Programy\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\Kuba.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = :0
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\coIEPlg.dll
O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\IPS\IPSBHO.DLL
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\coIEPlg.dll
O4 - HKLM\..\Run: [Razer Synapse] "C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Gadwin PrintScreen] C:\Programy\PrintScreen\PrintScreen.exe /nosplash
O4 - HKUS\S-1-5-21-2671917893-706360513-2285705896-1003\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-2671917893-706360513-2285705896-1003\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Programy\MSOFFI~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programy\MSOFFI~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programy\MSOFFI~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Programy\MSOFFI~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: vToolbarUpdater17.0.1 - Unknown owner - C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\17.0.1\ToolbarUpdater.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 7204 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe" /s "NIS" /m "C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\diMaster.dll" /prefetch:1
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
"C:\Program Files (x86)\Skype\Updater\Updater.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"taskhost.exe"
"C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe" /c /a /s UserSession2
taskeng.exe {DF3530ED-E43E-4461-8B32-468CE72A7C1E}
"C:\Windows\system32\Dwm.exe"
"C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe" -boot
C:\Windows\Explorer.EXE
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Windows\SysWOW64\rundll32.exe" C:\Windows\Syswow64\cm108.dll,CMICtrlWnd
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe"
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Programy\PrintScreen\PrintScreen.exe" /nosplash
C:\Windows\splwow64.exe 8192
"C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Programy\Mozilla Firefox\firefox.exe"
"C:\Programy\totalcmd\TOTALCMD64.EXE"
"C:\Users\Kuba\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\SlimDrivers Startup.job
=========Mozilla firefox=========
ProfilePath - C:\Users\Kuba\AppData\Roaming\Mozilla\Firefox\Profiles\b3rnf8e0.default
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
prefs.js - "keyword.URL" - ""
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.8.800.168 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_168.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nullsoft.com/winampDetector;version=1]
"Description"=Winamp Detector
"Path"=C:\Program Files (x86)\Winamp Detect\npwachk.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.8]
"Description"=VLC Multimedia Plugin
"Path"=C:\Programy\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.8.800.168 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_168.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
Norton Identity Protection - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\coIEPlg.dll [2013-08-15 526160]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Norton Vulnerability Protection - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\IPS\IPSBHO.DLL [2013-08-06 388512]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\coIEPlg.dll [2013-08-15 526160]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Cm108Sound"=C:\Windows\syswow64\RunDll32.exe [2009-07-14 44544]
"Nvtmru"=C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [2013-05-16 1012000]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2013-07-25 20684656]
"Gadwin PrintScreen"=C:\Programy\PrintScreen\PrintScreen.exe [2012-05-30 1842384]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
""= []
"Razer Synapse"=C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [2013-08-15 606040]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2013-09-28 19:59:19 ----D---- C:\_OTM
2013-09-28 18:01:27 ----D---- C:\Users\Kuba\AppData\Roaming\vlc
2013-09-28 00:02:42 ----D---- C:\AdwCleaner
2013-09-27 23:59:53 ----A---- C:\Windows\wininit.ini
2013-09-20 04:33:22 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-09-20 04:33:22 ----A---- C:\Windows\system32\ieui.dll
2013-09-20 04:33:21 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2013-09-20 04:33:20 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2013-09-20 04:33:20 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2013-09-20 04:33:20 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2013-09-20 04:33:20 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-09-20 04:33:20 ----A---- C:\Windows\system32\iesysprep.dll
2013-09-20 04:33:20 ----A---- C:\Windows\system32\iesetup.dll
2013-09-20 04:33:20 ----A---- C:\Windows\system32\iernonce.dll
2013-09-20 04:33:20 ----A---- C:\Windows\system32\ie4uinit.exe
2013-09-20 04:33:19 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-09-20 04:33:19 ----A---- C:\Windows\system32\iertutil.dll
2013-09-20 04:33:18 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-09-20 04:33:17 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-09-20 04:33:17 ----A---- C:\Windows\system32\msfeeds.dll
2013-09-20 04:33:17 ----A---- C:\Windows\system32\jscript.dll
2013-09-20 04:33:16 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-09-20 04:33:16 ----A---- C:\Windows\system32\jscript9.dll
2013-09-20 04:33:15 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-09-20 04:33:15 ----A---- C:\Windows\system32\urlmon.dll
2013-09-20 04:33:14 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-09-20 04:33:14 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-09-20 04:33:14 ----A---- C:\Windows\system32\wininet.dll
2013-09-20 04:33:14 ----A---- C:\Windows\system32\jsproxy.dll
2013-09-20 04:33:13 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-09-20 04:33:12 ----A---- C:\Windows\system32\ieframe.dll
2013-09-20 04:33:10 ----A---- C:\Windows\system32\mshtml.dll
2013-09-20 04:33:08 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-09-20 03:45:58 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2013-09-20 03:45:58 ----A---- C:\Windows\system32\WindowsCodecs.dll
2013-09-19 15:55:22 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2013-09-19 15:55:22 ----A---- C:\Windows\system32\DWrite.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\wextract.exe
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\url.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\occache.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\msrating.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\msls31.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\mshta.exe
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\inseng.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\icardie.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2013-09-19 14:10:44 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2013-09-19 14:10:44 ----A---- C:\Windows\system32\elshyph.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\wextract.exe
2013-09-19 14:10:43 ----A---- C:\Windows\system32\webcheck.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\vbscript.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\url.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2013-09-19 14:10:43 ----A---- C:\Windows\system32\pngfilt.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\occache.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\msrating.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\msls31.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\mshtmlmedia.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\mshtmler.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\mshtmled.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\mshta.exe
2013-09-19 14:10:43 ----A---- C:\Windows\system32\msfeedssync.exe
2013-09-19 14:10:43 ----A---- C:\Windows\system32\msfeedsbs.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\licmgr10.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\inseng.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\imgutil.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\iexpress.exe
2013-09-19 14:10:43 ----A---- C:\Windows\system32\ieUnatt.exe
2013-09-19 14:10:43 ----A---- C:\Windows\system32\iepeers.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\iedkcs32.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\ieapfltr.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\ieapfltr.dat
2013-09-19 14:10:43 ----A---- C:\Windows\system32\IEAdvpack.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\icardie.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\dxtrans.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\dxtmsft.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d3d10core.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d3d10.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\XpsPrint.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\WMPhoto.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\UIAnimation.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\FntCache.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\dxgi.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d3d10warp.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d3d10level9.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d3d10core.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d3d10_1core.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d3d10_1.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d3d10.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d2d1.dll
2013-09-19 13:42:11 ----SHD---- C:\Config.Msi
2013-09-19 09:25:50 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2013-09-19 09:25:49 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2013-09-19 09:25:49 ----A---- C:\Windows\system32\cdd.dll
2013-09-19 09:25:24 ----A---- C:\Windows\SYSWOW64\dhcpcore6.dll
2013-09-19 09:25:24 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2013-09-19 09:25:24 ----A---- C:\Windows\system32\dhcpcore6.dll
2013-09-19 09:25:23 ----A---- C:\Windows\SYSWOW64\dhcpcsvc6.dll
2013-09-19 09:25:04 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2013-09-19 09:25:04 ----A---- C:\Windows\system32\wintrust.dll
2013-09-19 09:25:04 ----A---- C:\Windows\system32\crypt32.dll
2013-09-19 09:25:03 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2013-09-19 09:25:03 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2013-09-19 09:25:03 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2013-09-19 09:25:03 ----A---- C:\Windows\system32\cryptsvc.dll
2013-09-19 09:25:03 ----A---- C:\Windows\system32\cryptnet.dll
2013-09-19 09:24:31 ----A---- C:\Windows\system32\authui.dll
2013-09-19 09:24:29 ----A---- C:\Windows\SYSWOW64\authui.dll
2013-09-19 09:24:29 ----A---- C:\Windows\system32\consent.exe
2013-09-19 09:24:29 ----A---- C:\Windows\system32\appinfo.dll
2013-09-19 09:24:20 ----A---- C:\Windows\system32\wwansvc.dll
2013-09-19 09:24:20 ----A---- C:\Windows\system32\wwanprotdim.dll
2013-09-19 09:24:13 ----A---- C:\Windows\SYSWOW64\tzres.dll
2013-09-19 09:24:13 ----A---- C:\Windows\system32\tzres.dll
2013-09-19 09:24:04 ----A---- C:\Windows\system32\drivers\ataport.sys
2013-09-19 09:24:02 ----A---- C:\Windows\system32\drivers\RNDISMP.sys
2013-09-19 09:24:02 ----A---- C:\Windows\system32\drivers\ndis.sys
2013-09-19 09:24:00 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2013-09-19 09:24:00 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2013-09-19 09:24:00 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-09-19 09:24:00 ----A---- C:\Windows\system32\ntdll.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\wow32.dll
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\user.exe
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\setup16.exe
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\instnm.exe
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\wow64win.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\wow64cpu.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\wow64.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\winsrv.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\smss.exe
2013-09-19 09:23:59 ----A---- C:\Windows\system32\ntvdm64.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\KernelBase.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\kernel32.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\csrsrv.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\conhost.exe
2013-09-19 09:23:59 ----A---- C:\Windows\system32\apisetschema.dll
2013-09-19 09:23:58 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2013-09-19 09:23:58 ----A---- C:\Windows\system32\WMVDECOD.DLL
2013-09-19 09:23:57 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2013-09-19 09:23:57 ----A---- C:\Windows\system32\rpcrt4.dll
2013-09-19 09:23:54 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2013-09-19 09:23:54 ----A---- C:\Windows\SYSWOW64\netevent.dll
2013-09-19 09:23:54 ----A---- C:\Windows\SYSWOW64\netcorehc.dll
2013-09-19 09:23:54 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\nlasvc.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\nlaapi.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\netevent.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\netcorehc.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\ncsi.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\iphlpsvc.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2013-09-19 09:23:52 ----A---- C:\Windows\system32\qedit.dll
2013-09-19 09:23:51 ----A---- C:\Windows\SYSWOW64\qedit.dll
2013-09-19 09:23:50 ----A---- C:\Windows\system32\OxpsConverter.exe
2013-09-19 09:23:30 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2013-09-19 09:23:17 ----A---- C:\Windows\system32\win32k.sys
2013-09-19 09:22:44 ----A---- C:\Windows\system32\shell32.dll
2013-09-19 09:22:43 ----A---- C:\Windows\SYSWOW64\shell32.dll
2013-09-19 09:22:42 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2013-09-19 09:22:42 ----A---- C:\Windows\system32\shdocvw.dll
2013-09-19 09:22:40 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2013-09-19 09:22:40 ----A---- C:\Windows\system32\win32spl.dll
2013-09-19 09:22:36 ----A---- C:\Windows\system32\taskhost.exe
2013-09-19 09:22:31 ----A---- C:\Windows\SYSWOW64\cryptdlg.dll
2013-09-19 09:22:31 ----A---- C:\Windows\system32\cryptdlg.dll
2013-09-19 09:22:21 ----A---- C:\Windows\system32\drivers\tcpip.sys
2013-09-19 09:22:18 ----A---- C:\Windows\SYSWOW64\certutil.exe
2013-09-19 09:22:18 ----A---- C:\Windows\system32\certutil.exe
2013-09-19 09:22:17 ----A---- C:\Windows\SYSWOW64\certenc.dll
2013-09-19 09:22:17 ----A---- C:\Windows\system32\certenc.dll
2013-09-19 09:18:10 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2013-09-19 09:18:10 ----A---- C:\Windows\system32\d3d11.dll
2013-09-19 03:17:39 ----SHD---- C:\$RECYCLE.BIN
2013-09-19 03:17:09 ----A---- C:\ComboFix.txt
2013-09-19 02:57:28 ----A---- C:\Windows\zip.exe
2013-09-19 02:57:28 ----A---- C:\Windows\SWSC.exe
2013-09-19 02:57:28 ----A---- C:\Windows\SWREG.exe
2013-09-19 02:57:28 ----A---- C:\Windows\sed.exe
2013-09-19 02:57:28 ----A---- C:\Windows\PEV.exe
2013-09-19 02:57:28 ----A---- C:\Windows\NIRCMD.exe
2013-09-19 02:57:28 ----A---- C:\Windows\MBR.exe
2013-09-19 02:57:28 ----A---- C:\Windows\grep.exe
2013-09-19 02:47:38 ----D---- C:\Qoobox
2013-09-19 02:47:21 ----D---- C:\Windows\erdnt
2013-09-18 15:03:46 ----D---- C:\Windows\system32\SPReview
2013-09-18 15:02:57 ----D---- C:\Windows\system32\EventProviders
2013-09-18 14:47:30 ----SHD---- C:\Windows\system32\%APPDATA%
2013-09-18 14:38:09 ----SHD---- C:\Windows\SYSWOW64\%APPDATA%
2013-09-18 14:20:35 ----D---- C:\Program Files\KONICA MINOLTA
2013-09-18 14:13:20 ----A---- C:\Windows\system32\netfxperf.dll
2013-09-18 14:13:20 ----A---- C:\Windows\system32\dfshim.dll
2013-09-18 14:13:15 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2013-09-18 14:13:12 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2013-09-18 14:13:12 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2013-09-18 14:13:08 ----A---- C:\Windows\SYSWOW64\mfc40u.dll
2013-09-18 14:13:08 ----A---- C:\Windows\SYSWOW64\mfc40.dll
2013-09-18 14:13:08 ----A---- C:\Windows\system32\sysmain.dll
2013-09-18 14:13:07 ----A---- C:\Windows\system32\MSVidCtl.dll
2013-09-18 14:13:06 ----A---- C:\Windows\system32\wmp.dll
2013-09-18 14:13:05 ----A---- C:\Windows\system32\mscoree.dll
2013-09-18 14:13:05 ----A---- C:\Windows\system32\mmcndmgr.dll
2013-09-18 14:13:04 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll
2013-09-18 14:13:04 ----A---- C:\Windows\system32\xpsservices.dll
2013-09-18 14:13:04 ----A---- C:\Windows\system32\secproc_isv.dll
2013-09-18 14:13:04 ----A---- C:\Windows\system32\secproc.dll
2013-09-18 14:13:04 ----A---- C:\Windows\system32\RMActivate_isv.exe
2013-09-18 14:13:04 ----A---- C:\Windows\system32\RMActivate.exe
2013-09-18 14:13:04 ----A---- C:\Windows\system32\mf.dll
2013-09-18 14:13:03 ----A---- C:\Windows\SYSWOW64\secproc.dll
2013-09-18 14:13:03 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe
2013-09-18 14:13:02 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2013-09-18 14:13:02 ----A---- C:\Windows\system32\schedsvc.dll
2013-09-18 14:13:02 ----A---- C:\Windows\system32\ole32.dll
2013-09-18 14:13:01 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2013-09-18 14:13:01 ----A---- C:\Windows\system32\taskschd.dll
2013-09-18 14:13:01 ----A---- C:\Windows\system32\spwizui.dll
2013-09-18 14:13:01 ----A---- C:\Windows\system32\RacEngn.dll
2013-09-18 14:13:01 ----A---- C:\Windows\system32\diagperf.dll
2013-09-18 14:13:00 ----A---- C:\Windows\SYSWOW64\mf.dll
2013-09-18 14:13:00 ----A---- C:\Windows\SYSWOW64\CertEnroll.dll
2013-09-18 14:13:00 ----A---- C:\Windows\system32\wevtsvc.dll
2013-09-18 14:13:00 ----A---- C:\Windows\system32\vssapi.dll
2013-09-18 14:13:00 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2013-09-18 14:13:00 ----A---- C:\Windows\system32\ExplorerFrame.dll
2013-09-18 14:13:00 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2013-09-18 14:12:59 ----A---- C:\Windows\SYSWOW64\wmp.dll
2013-09-18 14:12:59 ----A---- C:\Windows\system32\UIRibbon.dll
2013-09-18 14:12:59 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2013-09-18 14:12:58 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2013-09-18 14:12:58 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2013-09-18 14:12:58 ----A---- C:\Windows\system32\WsmSvc.dll
2013-09-18 14:12:58 ----A---- C:\Windows\system32\WMVCORE.DLL
2013-09-18 14:12:58 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2013-09-18 14:12:58 ----A---- C:\Windows\system32\PresentationHost.exe
2013-09-18 14:12:57 ----A---- C:\Windows\system32\WinSAT.exe
2013-09-18 14:12:57 ----A---- C:\Windows\system32\spreview.exe
2013-09-18 14:12:57 ----A---- C:\Windows\system32\spinstall.exe
2013-09-18 14:12:57 ----A---- C:\Windows\system32\rdpdd.dll
2013-09-18 14:12:57 ----A---- C:\Windows\system32\MPSSVC.dll
2013-09-18 14:12:57 ----A---- C:\Windows\system32\CertEnroll.dll
2013-09-18 14:12:56 ----A---- C:\Windows\SYSWOW64\RacEngn.dll
2013-09-18 14:12:56 ----A---- C:\Windows\system32\IKEEXT.DLL
2013-09-18 14:12:56 ----A---- C:\Windows\system32\d3d9.dll
2013-09-18 14:12:55 ----A---- C:\Windows\SYSWOW64\AuthFWSnapin.dll
2013-09-18 14:12:55 ----A---- C:\Windows\system32\VSSVC.exe
2013-09-18 14:12:55 ----A---- C:\Windows\system32\SearchFolder.dll
2013-09-18 14:12:55 ----A---- C:\Windows\system32\gpsvc.dll
2013-09-18 14:12:55 ----A---- C:\Windows\system32\dwmcore.dll
2013-09-18 14:12:55 ----A---- C:\Windows\system32\AuthFWSnapin.dll
2013-09-18 14:12:54 ----A---- C:\Windows\system32\drivers\http.sys
2013-09-18 14:12:54 ----A---- C:\Windows\system32\dbgeng.dll
2013-09-18 14:12:53 ----A---- C:\Windows\SYSWOW64\ole32.dll
2013-09-18 14:12:53 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2013-09-18 14:12:53 ----A---- C:\Windows\system32\TSWorkspace.dll
2013-09-18 14:12:53 ----A---- C:\Windows\system32\qmgr.dll
2013-09-18 14:12:53 ----A---- C:\Windows\system32\audiosrv.dll
2013-09-18 14:12:53 ----A---- C:\Windows\system32\actxprxy.dll
2013-09-18 14:12:52 ----A---- C:\Windows\system32\termsrv.dll
2013-09-18 14:12:52 ----A---- C:\Windows\system32\mstsc.exe
2013-09-18 14:12:50 ----A---- C:\Windows\system32\netlogon.dll
2013-09-18 14:12:50 ----A---- C:\Windows\system32\imapi2fs.dll
2013-09-18 14:12:49 ----A---- C:\Windows\SYSWOW64\vssapi.dll
2013-09-18 14:12:49 ----A---- C:\Windows\SYSWOW64\SearchFolder.dll
2013-09-18 14:12:49 ----A---- C:\Windows\SYSWOW64\d3d9.dll
2013-09-18 14:12:49 ----A---- C:\Windows\system32\winhttp.dll
2013-09-18 14:12:48 ----A---- C:\Windows\SYSWOW64\taskschd.dll
2013-09-18 14:12:48 ----A---- C:\Windows\system32\wbengine.exe
2013-09-18 14:12:48 ----A---- C:\Windows\system32\setupapi.dll
2013-09-18 14:12:48 ----A---- C:\Windows\system32\rpcss.dll
2013-09-18 14:12:48 ----A---- C:\Windows\system32\QAGENTRT.DLL
2013-09-18 14:12:48 ----A---- C:\Windows\system32\propsys.dll
2013-09-18 14:12:48 ----A---- C:\Windows\system32\msv1_0.dll
2013-09-18 14:12:47 ----A---- C:\Windows\system32\werconcpl.dll
2013-09-18 14:12:47 ----A---- C:\Windows\system32\taskeng.exe
2013-09-18 14:12:47 ----A---- C:\Windows\system32\odbc32.dll
2013-09-18 14:12:46 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2013-09-18 14:12:46 ----A---- C:\Windows\system32\WSDApi.dll
2013-09-18 14:12:46 ----A---- C:\Windows\system32\user32.dll
2013-09-18 14:12:46 ----A---- C:\Windows\system32\dhcpcore.dll
2013-09-18 14:12:46 ----A---- C:\Windows\system32\certmgr.dll
2013-09-18 14:12:45 ----A---- C:\Windows\SYSWOW64\wer.dll
2013-09-18 14:12:45 ----A---- C:\Windows\system32\scavengeui.dll
2013-09-18 14:12:45 ----A---- C:\Windows\system32\drivers\tdx.sys
2013-09-18 14:12:45 ----A---- C:\Windows\system32\drivers\netbt.sys
2013-09-18 14:12:44 ----A---- C:\Windows\SYSWOW64\odbc32.dll
2013-09-18 14:12:44 ----A---- C:\Windows\SYSWOW64\dwmcore.dll
2013-09-18 14:12:44 ----A---- C:\Windows\SYSWOW64\certcli.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\tsmf.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\shlwapi.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\netshell.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\msdtctm.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\msdrm.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\framedynos.dll
2013-09-18 14:12:43 ----A---- C:\Windows\SYSWOW64\tcpmonui.dll
2013-09-18 14:12:43 ----A---- C:\Windows\system32\ws2_32.dll
2013-09-18 14:12:43 ----A---- C:\Windows\system32\wmicmiplugin.dll
2013-09-18 14:12:43 ----A---- C:\Windows\system32\winlogon.exe
2013-09-18 14:12:43 ----A---- C:\Windows\system32\netcfgx.dll
2013-09-18 14:12:43 ----A---- C:\Windows\system32\lsm.exe
2013-09-18 14:12:43 ----A---- C:\Windows\system32\comdlg32.dll
2013-09-18 14:12:42 ----A---- C:\Windows\SYSWOW64\winhttp.dll
2013-09-18 14:12:42 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll
2013-09-18 14:12:42 ----A---- C:\Windows\SYSWOW64\tsmf.dll
Run by Kuba at 2013-09-28 20:02:50
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 369 GB (90%) free of 410 GB
Total RAM: 4093 MB (64% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:02:55, on 28.9.2013
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v10.0 (10.00.9200.16686)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe
C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Programy\PrintScreen\PrintScreen.exe
C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe
C:\Programy\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\Kuba.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = :0
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\coIEPlg.dll
O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\IPS\IPSBHO.DLL
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\coIEPlg.dll
O4 - HKLM\..\Run: [Razer Synapse] "C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [Gadwin PrintScreen] C:\Programy\PrintScreen\PrintScreen.exe /nosplash
O4 - HKUS\S-1-5-21-2671917893-706360513-2285705896-1003\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-2671917893-706360513-2285705896-1003\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Programy\MSOFFI~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programy\MSOFFI~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programy\MSOFFI~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Programy\MSOFFI~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: vToolbarUpdater17.0.1 - Unknown owner - C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\17.0.1\ToolbarUpdater.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 7204 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe" /s "NIS" /m "C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\diMaster.dll" /prefetch:1
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
"C:\Program Files (x86)\Skype\Updater\Updater.exe"
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"taskhost.exe"
"C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\NIS.exe" /c /a /s UserSession2
taskeng.exe {DF3530ED-E43E-4461-8B32-468CE72A7C1E}
"C:\Windows\system32\Dwm.exe"
"C:\Program Files (x86)\SlimDrivers\SlimDrivers.exe" -boot
C:\Windows\Explorer.EXE
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Windows\SysWOW64\rundll32.exe" C:\Windows\Syswow64\cm108.dll,CMICtrlWnd
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe"
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Programy\PrintScreen\PrintScreen.exe" /nosplash
C:\Windows\splwow64.exe 8192
"C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe"
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Programy\Mozilla Firefox\firefox.exe"
"C:\Programy\totalcmd\TOTALCMD64.EXE"
"C:\Users\Kuba\Downloads\RSITx64.exe"
======Scheduled tasks folder======
C:\Windows\tasks\Adobe Flash Player Updater.job
C:\Windows\tasks\SlimDrivers Startup.job
=========Mozilla firefox=========
ProfilePath - C:\Users\Kuba\AppData\Roaming\Mozilla\Firefox\Profiles\b3rnf8e0.default
prefs.js - "browser.startup.homepage" - "http://www.seznam.cz/"
prefs.js - "keyword.URL" - ""
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.8.800.168 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_168.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nullsoft.com/winampDetector;version=1]
"Description"=Winamp Detector
"Path"=C:\Program Files (x86)\Winamp Detect\npwachk.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@pandonetworks.com/PandoWebPlugin]
"Description"=This plugin detects and launches Pando Media Booster
"Path"=C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.8]
"Description"=VLC Multimedia Plugin
"Path"=C:\Programy\VLC\npvlc.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 11.8.800.168 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_168.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
Norton Identity Protection - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\coIEPlg.dll [2013-08-15 526160]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Norton Vulnerability Protection - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\IPS\IPSBHO.DLL [2013-08-06 388512]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files (x86)\Norton Internet Security\Engine\21.0.1.3\coIEPlg.dll [2013-08-15 526160]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Cm108Sound"=C:\Windows\syswow64\RunDll32.exe [2009-07-14 44544]
"Nvtmru"=C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [2013-05-16 1012000]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2013-07-25 20684656]
"Gadwin PrintScreen"=C:\Programy\PrintScreen\PrintScreen.exe [2012-05-30 1842384]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
""= []
"Razer Synapse"=C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [2013-08-15 606040]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvyu"=msyuv.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"vidc.yvu9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
======List of files/folders created in the last 1 month======
2013-09-28 19:59:19 ----D---- C:\_OTM
2013-09-28 18:01:27 ----D---- C:\Users\Kuba\AppData\Roaming\vlc
2013-09-28 00:02:42 ----D---- C:\AdwCleaner
2013-09-27 23:59:53 ----A---- C:\Windows\wininit.ini
2013-09-20 04:33:22 ----A---- C:\Windows\SYSWOW64\ieui.dll
2013-09-20 04:33:22 ----A---- C:\Windows\system32\ieui.dll
2013-09-20 04:33:21 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2013-09-20 04:33:20 ----A---- C:\Windows\SYSWOW64\RegisterIEPKEYs.exe
2013-09-20 04:33:20 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2013-09-20 04:33:20 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2013-09-20 04:33:20 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2013-09-20 04:33:20 ----A---- C:\Windows\system32\iesysprep.dll
2013-09-20 04:33:20 ----A---- C:\Windows\system32\iesetup.dll
2013-09-20 04:33:20 ----A---- C:\Windows\system32\iernonce.dll
2013-09-20 04:33:20 ----A---- C:\Windows\system32\ie4uinit.exe
2013-09-20 04:33:19 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-09-20 04:33:19 ----A---- C:\Windows\system32\iertutil.dll
2013-09-20 04:33:18 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-09-20 04:33:17 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-09-20 04:33:17 ----A---- C:\Windows\system32\msfeeds.dll
2013-09-20 04:33:17 ----A---- C:\Windows\system32\jscript.dll
2013-09-20 04:33:16 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-09-20 04:33:16 ----A---- C:\Windows\system32\jscript9.dll
2013-09-20 04:33:15 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-09-20 04:33:15 ----A---- C:\Windows\system32\urlmon.dll
2013-09-20 04:33:14 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-09-20 04:33:14 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-09-20 04:33:14 ----A---- C:\Windows\system32\wininet.dll
2013-09-20 04:33:14 ----A---- C:\Windows\system32\jsproxy.dll
2013-09-20 04:33:13 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-09-20 04:33:12 ----A---- C:\Windows\system32\ieframe.dll
2013-09-20 04:33:10 ----A---- C:\Windows\system32\mshtml.dll
2013-09-20 04:33:08 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-09-20 03:45:58 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2013-09-20 03:45:58 ----A---- C:\Windows\system32\WindowsCodecs.dll
2013-09-19 15:55:22 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2013-09-19 15:55:22 ----A---- C:\Windows\system32\DWrite.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\wextract.exe
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\webcheck.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\url.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\SetIEInstalledDate.exe
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\pngfilt.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\occache.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\msrating.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\msls31.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\mshtmler.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\mshta.exe
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\msfeedssync.exe
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\msfeedsbs.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\licmgr10.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\inseng.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\imgutil.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\iexpress.exe
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\iepeers.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\ieapfltr.dat
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\IEAdvpack.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\icardie.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\elshyph.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2013-09-19 14:10:44 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2013-09-19 14:10:44 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2013-09-19 14:10:44 ----A---- C:\Windows\system32\elshyph.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\wextract.exe
2013-09-19 14:10:43 ----A---- C:\Windows\system32\webcheck.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\vbscript.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\url.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2013-09-19 14:10:43 ----A---- C:\Windows\system32\pngfilt.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\occache.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\msrating.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\msls31.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\mshtmlmedia.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\mshtmler.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\mshtmled.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\mshta.exe
2013-09-19 14:10:43 ----A---- C:\Windows\system32\msfeedssync.exe
2013-09-19 14:10:43 ----A---- C:\Windows\system32\msfeedsbs.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\licmgr10.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\inseng.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\imgutil.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\iexpress.exe
2013-09-19 14:10:43 ----A---- C:\Windows\system32\ieUnatt.exe
2013-09-19 14:10:43 ----A---- C:\Windows\system32\iepeers.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\iedkcs32.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\ieapfltr.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\ieapfltr.dat
2013-09-19 14:10:43 ----A---- C:\Windows\system32\IEAdvpack.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\icardie.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\dxtrans.dll
2013-09-19 14:10:43 ----A---- C:\Windows\system32\dxtmsft.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\SYSWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-09-19 14:08:27 ----AH---- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\WMPhoto.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\WindowsCodecsExt.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\UIAnimation.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d3d10level9.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d3d10core.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d3d10_1core.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d3d10_1.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d3d10.dll
2013-09-19 14:08:27 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\XpsPrint.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\WMPhoto.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\UIAnimation.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\FntCache.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\dxgi.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d3d10warp.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d3d10level9.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d3d10core.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d3d10_1core.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d3d10_1.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d3d10.dll
2013-09-19 14:08:27 ----A---- C:\Windows\system32\d2d1.dll
2013-09-19 13:42:11 ----SHD---- C:\Config.Msi
2013-09-19 09:25:50 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2013-09-19 09:25:49 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2013-09-19 09:25:49 ----A---- C:\Windows\system32\cdd.dll
2013-09-19 09:25:24 ----A---- C:\Windows\SYSWOW64\dhcpcore6.dll
2013-09-19 09:25:24 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2013-09-19 09:25:24 ----A---- C:\Windows\system32\dhcpcore6.dll
2013-09-19 09:25:23 ----A---- C:\Windows\SYSWOW64\dhcpcsvc6.dll
2013-09-19 09:25:04 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2013-09-19 09:25:04 ----A---- C:\Windows\system32\wintrust.dll
2013-09-19 09:25:04 ----A---- C:\Windows\system32\crypt32.dll
2013-09-19 09:25:03 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2013-09-19 09:25:03 ----A---- C:\Windows\SYSWOW64\cryptsvc.dll
2013-09-19 09:25:03 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2013-09-19 09:25:03 ----A---- C:\Windows\system32\cryptsvc.dll
2013-09-19 09:25:03 ----A---- C:\Windows\system32\cryptnet.dll
2013-09-19 09:24:31 ----A---- C:\Windows\system32\authui.dll
2013-09-19 09:24:29 ----A---- C:\Windows\SYSWOW64\authui.dll
2013-09-19 09:24:29 ----A---- C:\Windows\system32\consent.exe
2013-09-19 09:24:29 ----A---- C:\Windows\system32\appinfo.dll
2013-09-19 09:24:20 ----A---- C:\Windows\system32\wwansvc.dll
2013-09-19 09:24:20 ----A---- C:\Windows\system32\wwanprotdim.dll
2013-09-19 09:24:13 ----A---- C:\Windows\SYSWOW64\tzres.dll
2013-09-19 09:24:13 ----A---- C:\Windows\system32\tzres.dll
2013-09-19 09:24:04 ----A---- C:\Windows\system32\drivers\ataport.sys
2013-09-19 09:24:02 ----A---- C:\Windows\system32\drivers\RNDISMP.sys
2013-09-19 09:24:02 ----A---- C:\Windows\system32\drivers\ndis.sys
2013-09-19 09:24:00 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2013-09-19 09:24:00 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2013-09-19 09:24:00 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-09-19 09:24:00 ----A---- C:\Windows\system32\ntdll.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-09-19 09:23:59 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\wow32.dll
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\user.exe
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\setup16.exe
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\instnm.exe
2013-09-19 09:23:59 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\wow64win.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\wow64cpu.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\wow64.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\winsrv.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\smss.exe
2013-09-19 09:23:59 ----A---- C:\Windows\system32\ntvdm64.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\KernelBase.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\kernel32.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\csrsrv.dll
2013-09-19 09:23:59 ----A---- C:\Windows\system32\conhost.exe
2013-09-19 09:23:59 ----A---- C:\Windows\system32\apisetschema.dll
2013-09-19 09:23:58 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2013-09-19 09:23:58 ----A---- C:\Windows\system32\WMVDECOD.DLL
2013-09-19 09:23:57 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2013-09-19 09:23:57 ----A---- C:\Windows\system32\rpcrt4.dll
2013-09-19 09:23:54 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2013-09-19 09:23:54 ----A---- C:\Windows\SYSWOW64\netevent.dll
2013-09-19 09:23:54 ----A---- C:\Windows\SYSWOW64\netcorehc.dll
2013-09-19 09:23:54 ----A---- C:\Windows\SYSWOW64\ncsi.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\nlasvc.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\nlaapi.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\netevent.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\netcorehc.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\ncsi.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\iphlpsvc.dll
2013-09-19 09:23:54 ----A---- C:\Windows\system32\drivers\tcpipreg.sys
2013-09-19 09:23:52 ----A---- C:\Windows\system32\qedit.dll
2013-09-19 09:23:51 ----A---- C:\Windows\SYSWOW64\qedit.dll
2013-09-19 09:23:50 ----A---- C:\Windows\system32\OxpsConverter.exe
2013-09-19 09:23:30 ----A---- C:\Windows\system32\drivers\tssecsrv.sys
2013-09-19 09:23:17 ----A---- C:\Windows\system32\win32k.sys
2013-09-19 09:22:44 ----A---- C:\Windows\system32\shell32.dll
2013-09-19 09:22:43 ----A---- C:\Windows\SYSWOW64\shell32.dll
2013-09-19 09:22:42 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2013-09-19 09:22:42 ----A---- C:\Windows\system32\shdocvw.dll
2013-09-19 09:22:40 ----A---- C:\Windows\SYSWOW64\win32spl.dll
2013-09-19 09:22:40 ----A---- C:\Windows\system32\win32spl.dll
2013-09-19 09:22:36 ----A---- C:\Windows\system32\taskhost.exe
2013-09-19 09:22:31 ----A---- C:\Windows\SYSWOW64\cryptdlg.dll
2013-09-19 09:22:31 ----A---- C:\Windows\system32\cryptdlg.dll
2013-09-19 09:22:21 ----A---- C:\Windows\system32\drivers\tcpip.sys
2013-09-19 09:22:18 ----A---- C:\Windows\SYSWOW64\certutil.exe
2013-09-19 09:22:18 ----A---- C:\Windows\system32\certutil.exe
2013-09-19 09:22:17 ----A---- C:\Windows\SYSWOW64\certenc.dll
2013-09-19 09:22:17 ----A---- C:\Windows\system32\certenc.dll
2013-09-19 09:18:10 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2013-09-19 09:18:10 ----A---- C:\Windows\system32\d3d11.dll
2013-09-19 03:17:39 ----SHD---- C:\$RECYCLE.BIN
2013-09-19 03:17:09 ----A---- C:\ComboFix.txt
2013-09-19 02:57:28 ----A---- C:\Windows\zip.exe
2013-09-19 02:57:28 ----A---- C:\Windows\SWSC.exe
2013-09-19 02:57:28 ----A---- C:\Windows\SWREG.exe
2013-09-19 02:57:28 ----A---- C:\Windows\sed.exe
2013-09-19 02:57:28 ----A---- C:\Windows\PEV.exe
2013-09-19 02:57:28 ----A---- C:\Windows\NIRCMD.exe
2013-09-19 02:57:28 ----A---- C:\Windows\MBR.exe
2013-09-19 02:57:28 ----A---- C:\Windows\grep.exe
2013-09-19 02:47:38 ----D---- C:\Qoobox
2013-09-19 02:47:21 ----D---- C:\Windows\erdnt
2013-09-18 15:03:46 ----D---- C:\Windows\system32\SPReview
2013-09-18 15:02:57 ----D---- C:\Windows\system32\EventProviders
2013-09-18 14:47:30 ----SHD---- C:\Windows\system32\%APPDATA%
2013-09-18 14:38:09 ----SHD---- C:\Windows\SYSWOW64\%APPDATA%
2013-09-18 14:20:35 ----D---- C:\Program Files\KONICA MINOLTA
2013-09-18 14:13:20 ----A---- C:\Windows\system32\netfxperf.dll
2013-09-18 14:13:20 ----A---- C:\Windows\system32\dfshim.dll
2013-09-18 14:13:15 ----A---- C:\Windows\SYSWOW64\dfshim.dll
2013-09-18 14:13:12 ----A---- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2013-09-18 14:13:12 ----A---- C:\Windows\system32\drivers\TsUsbFlt.sys
2013-09-18 14:13:08 ----A---- C:\Windows\SYSWOW64\mfc40u.dll
2013-09-18 14:13:08 ----A---- C:\Windows\SYSWOW64\mfc40.dll
2013-09-18 14:13:08 ----A---- C:\Windows\system32\sysmain.dll
2013-09-18 14:13:07 ----A---- C:\Windows\system32\MSVidCtl.dll
2013-09-18 14:13:06 ----A---- C:\Windows\system32\wmp.dll
2013-09-18 14:13:05 ----A---- C:\Windows\system32\mscoree.dll
2013-09-18 14:13:05 ----A---- C:\Windows\system32\mmcndmgr.dll
2013-09-18 14:13:04 ----A---- C:\Windows\SYSWOW64\secproc_isv.dll
2013-09-18 14:13:04 ----A---- C:\Windows\system32\xpsservices.dll
2013-09-18 14:13:04 ----A---- C:\Windows\system32\secproc_isv.dll
2013-09-18 14:13:04 ----A---- C:\Windows\system32\secproc.dll
2013-09-18 14:13:04 ----A---- C:\Windows\system32\RMActivate_isv.exe
2013-09-18 14:13:04 ----A---- C:\Windows\system32\RMActivate.exe
2013-09-18 14:13:04 ----A---- C:\Windows\system32\mf.dll
2013-09-18 14:13:03 ----A---- C:\Windows\SYSWOW64\secproc.dll
2013-09-18 14:13:03 ----A---- C:\Windows\SYSWOW64\RMActivate_isv.exe
2013-09-18 14:13:02 ----A---- C:\Windows\SYSWOW64\RMActivate.exe
2013-09-18 14:13:02 ----A---- C:\Windows\system32\schedsvc.dll
2013-09-18 14:13:02 ----A---- C:\Windows\system32\ole32.dll
2013-09-18 14:13:01 ----A---- C:\Windows\SYSWOW64\mscoree.dll
2013-09-18 14:13:01 ----A---- C:\Windows\system32\taskschd.dll
2013-09-18 14:13:01 ----A---- C:\Windows\system32\spwizui.dll
2013-09-18 14:13:01 ----A---- C:\Windows\system32\RacEngn.dll
2013-09-18 14:13:01 ----A---- C:\Windows\system32\diagperf.dll
2013-09-18 14:13:00 ----A---- C:\Windows\SYSWOW64\mf.dll
2013-09-18 14:13:00 ----A---- C:\Windows\SYSWOW64\CertEnroll.dll
2013-09-18 14:13:00 ----A---- C:\Windows\system32\wevtsvc.dll
2013-09-18 14:13:00 ----A---- C:\Windows\system32\vssapi.dll
2013-09-18 14:13:00 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2013-09-18 14:13:00 ----A---- C:\Windows\system32\ExplorerFrame.dll
2013-09-18 14:13:00 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2013-09-18 14:12:59 ----A---- C:\Windows\SYSWOW64\wmp.dll
2013-09-18 14:12:59 ----A---- C:\Windows\system32\UIRibbon.dll
2013-09-18 14:12:59 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2013-09-18 14:12:58 ----A---- C:\Windows\SYSWOW64\PresentationHostProxy.dll
2013-09-18 14:12:58 ----A---- C:\Windows\SYSWOW64\PresentationHost.exe
2013-09-18 14:12:58 ----A---- C:\Windows\system32\WsmSvc.dll
2013-09-18 14:12:58 ----A---- C:\Windows\system32\WMVCORE.DLL
2013-09-18 14:12:58 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2013-09-18 14:12:58 ----A---- C:\Windows\system32\PresentationHost.exe
2013-09-18 14:12:57 ----A---- C:\Windows\system32\WinSAT.exe
2013-09-18 14:12:57 ----A---- C:\Windows\system32\spreview.exe
2013-09-18 14:12:57 ----A---- C:\Windows\system32\spinstall.exe
2013-09-18 14:12:57 ----A---- C:\Windows\system32\rdpdd.dll
2013-09-18 14:12:57 ----A---- C:\Windows\system32\MPSSVC.dll
2013-09-18 14:12:57 ----A---- C:\Windows\system32\CertEnroll.dll
2013-09-18 14:12:56 ----A---- C:\Windows\SYSWOW64\RacEngn.dll
2013-09-18 14:12:56 ----A---- C:\Windows\system32\IKEEXT.DLL
2013-09-18 14:12:56 ----A---- C:\Windows\system32\d3d9.dll
2013-09-18 14:12:55 ----A---- C:\Windows\SYSWOW64\AuthFWSnapin.dll
2013-09-18 14:12:55 ----A---- C:\Windows\system32\VSSVC.exe
2013-09-18 14:12:55 ----A---- C:\Windows\system32\SearchFolder.dll
2013-09-18 14:12:55 ----A---- C:\Windows\system32\gpsvc.dll
2013-09-18 14:12:55 ----A---- C:\Windows\system32\dwmcore.dll
2013-09-18 14:12:55 ----A---- C:\Windows\system32\AuthFWSnapin.dll
2013-09-18 14:12:54 ----A---- C:\Windows\system32\drivers\http.sys
2013-09-18 14:12:54 ----A---- C:\Windows\system32\dbgeng.dll
2013-09-18 14:12:53 ----A---- C:\Windows\SYSWOW64\ole32.dll
2013-09-18 14:12:53 ----A---- C:\Windows\SYSWOW64\ExplorerFrame.dll
2013-09-18 14:12:53 ----A---- C:\Windows\system32\TSWorkspace.dll
2013-09-18 14:12:53 ----A---- C:\Windows\system32\qmgr.dll
2013-09-18 14:12:53 ----A---- C:\Windows\system32\audiosrv.dll
2013-09-18 14:12:53 ----A---- C:\Windows\system32\actxprxy.dll
2013-09-18 14:12:52 ----A---- C:\Windows\system32\termsrv.dll
2013-09-18 14:12:52 ----A---- C:\Windows\system32\mstsc.exe
2013-09-18 14:12:50 ----A---- C:\Windows\system32\netlogon.dll
2013-09-18 14:12:50 ----A---- C:\Windows\system32\imapi2fs.dll
2013-09-18 14:12:49 ----A---- C:\Windows\SYSWOW64\vssapi.dll
2013-09-18 14:12:49 ----A---- C:\Windows\SYSWOW64\SearchFolder.dll
2013-09-18 14:12:49 ----A---- C:\Windows\SYSWOW64\d3d9.dll
2013-09-18 14:12:49 ----A---- C:\Windows\system32\winhttp.dll
2013-09-18 14:12:48 ----A---- C:\Windows\SYSWOW64\taskschd.dll
2013-09-18 14:12:48 ----A---- C:\Windows\system32\wbengine.exe
2013-09-18 14:12:48 ----A---- C:\Windows\system32\setupapi.dll
2013-09-18 14:12:48 ----A---- C:\Windows\system32\rpcss.dll
2013-09-18 14:12:48 ----A---- C:\Windows\system32\QAGENTRT.DLL
2013-09-18 14:12:48 ----A---- C:\Windows\system32\propsys.dll
2013-09-18 14:12:48 ----A---- C:\Windows\system32\msv1_0.dll
2013-09-18 14:12:47 ----A---- C:\Windows\system32\werconcpl.dll
2013-09-18 14:12:47 ----A---- C:\Windows\system32\taskeng.exe
2013-09-18 14:12:47 ----A---- C:\Windows\system32\odbc32.dll
2013-09-18 14:12:46 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2013-09-18 14:12:46 ----A---- C:\Windows\system32\WSDApi.dll
2013-09-18 14:12:46 ----A---- C:\Windows\system32\user32.dll
2013-09-18 14:12:46 ----A---- C:\Windows\system32\dhcpcore.dll
2013-09-18 14:12:46 ----A---- C:\Windows\system32\certmgr.dll
2013-09-18 14:12:45 ----A---- C:\Windows\SYSWOW64\wer.dll
2013-09-18 14:12:45 ----A---- C:\Windows\system32\scavengeui.dll
2013-09-18 14:12:45 ----A---- C:\Windows\system32\drivers\tdx.sys
2013-09-18 14:12:45 ----A---- C:\Windows\system32\drivers\netbt.sys
2013-09-18 14:12:44 ----A---- C:\Windows\SYSWOW64\odbc32.dll
2013-09-18 14:12:44 ----A---- C:\Windows\SYSWOW64\dwmcore.dll
2013-09-18 14:12:44 ----A---- C:\Windows\SYSWOW64\certcli.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\tsmf.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\shlwapi.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\netshell.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\msdtctm.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\msdrm.dll
2013-09-18 14:12:44 ----A---- C:\Windows\system32\framedynos.dll
2013-09-18 14:12:43 ----A---- C:\Windows\SYSWOW64\tcpmonui.dll
2013-09-18 14:12:43 ----A---- C:\Windows\system32\ws2_32.dll
2013-09-18 14:12:43 ----A---- C:\Windows\system32\wmicmiplugin.dll
2013-09-18 14:12:43 ----A---- C:\Windows\system32\winlogon.exe
2013-09-18 14:12:43 ----A---- C:\Windows\system32\netcfgx.dll
2013-09-18 14:12:43 ----A---- C:\Windows\system32\lsm.exe
2013-09-18 14:12:43 ----A---- C:\Windows\system32\comdlg32.dll
2013-09-18 14:12:42 ----A---- C:\Windows\SYSWOW64\winhttp.dll
2013-09-18 14:12:42 ----A---- C:\Windows\SYSWOW64\TSWorkspace.dll
2013-09-18 14:12:42 ----A---- C:\Windows\SYSWOW64\tsmf.dll