zde log z rsit
Logfile of random's system information tool 1.09 (written by random/random)
Run by monika at 2013-10-21 22:21:17
Microsoft Windows 8 Enterprise Evaluation
System drive C: has 145 GB (82%) free of 177 GB
Total RAM: 8190 MB (89% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:21:23, on 21. 10. 2013
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v10.0 (10.00.9200.16537)
Boot mode: Normal
Running processes:
C:\Program Files\trend micro\monika.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: @oem6.inf,%BcmBtRSupport.SVCNAME%;Bluetooth Radio Control Service (BcmBtRSupport) - Unknown owner - C:\Windows\system32\BtwRSupportService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%SystemRoot%\system32\wlms\wlms.exe,-1 (WLMS) - Unknown owner - C:\Windows\system32\wlms\wlms.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 4303 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
winlogon.exe
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
"dwm.exe"
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\BtwRSupportService.exe
"C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe"
C:\Windows\system32\wlms\wlms.exe
taskhostex.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 568 572 580 65536 576
"C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice
"C:\Users\monika2\Downloads\RSITx64.exe"
C:\Windows\System32\ThumbnailExtractionHost.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
======Registry dump======
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2013-09-12 5618456]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED}
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Base]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BasicDisplay.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BasicRender.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Boot file system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BrokerInfrastructure]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CryptSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\DcomLaunch]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\DeviceInstall]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\dxgkrnl.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\EventLog]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\File system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\FsDepends.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HelpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\LSM]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Netlogon]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PCI Configuration]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PlugPlay]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PNP Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Primary disk]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\RpcSs]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SCSI Class]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sermouse.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\System Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\VDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WinMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WLMS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{36FC9E60-C465-11CF-8056-444553540000}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E965-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E967-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E969-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96A-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96F-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E977-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E97D-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E980-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{9DA2B80F-F89F-4A49-A5C2-511B085B9E8A}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{A0A588A4-C46F-4B37-B7EA-C82FE89870C6}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AppMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Base]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BasicDisplay.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BasicRender.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BFE]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Boot Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Boot file system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\bowser]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\BrokerInfrastructure]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Browser]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CryptSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DcomLaunch]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DeviceInstall]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\dfsc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dhcp]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\DnsCache]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Dot3Svc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\dxgkrnl.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Eaphost]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EFS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\EventLog]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\File system]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\FsDepends.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HelpSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro37]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\hitmanpro37.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\IKEEXT]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ipnat.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\KeyIso]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LanmanServer]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LanmanWorkstation]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LmHosts]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\LSM]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Messenger]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSDrv]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MPSSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb10]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mrxsmb20]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NativeWifiP]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NDIS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NDIS Wrapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ndiscap]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ndisuio]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBIOS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBIOSGroup]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetBT]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetDDEGroup]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Netlogon]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetMan]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\netprofm]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Network]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetworkProvider]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NlaSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Nsi]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nsiproxy.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NTDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PCI Configuration]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PlugPlay]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PNP Filter]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PNP_TDI]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PolicyAgent]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Power]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Primary disk]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\ProfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdbss]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdpencdd.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\rdsessmgr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcEptMapper]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\RpcSs]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sacsvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCardSvr]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SCSI Class]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sermouse.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SharedAccess]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SmartcardSimulator]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Streams Drivers]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SWPRV]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\System Bus Extender]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TabletInputService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TBS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Tcpip]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TDI]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TrustedInstaller]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VaultSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VDS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\VirtualSmartcardReader]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\vmms]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgr.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\volmgrx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wcmsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinDefend]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WinMgmt]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wlansvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WLMS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{36FC9E60-C465-11CF-8056-444553540000}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E965-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E967-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E969-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96A-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96F-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E972-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E973-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E974-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E975-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E977-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E97B-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E97D-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E980-E325-11CE-BFC1-08002BE10318}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{50DD5230-BA8A-11D1-BF5D-0000F805F530}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{533C5B84-EC70-11D2-9505-00C04F79DEAF}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{71A27CDD-812A-11D0-BEC7-08002BE2092F}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{745A17A0-74D3-11D0-B6FE-00A0C90F57DA}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{9DA2B80F-F89F-4A49-A5C2-511B085B9E8A}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{A0A588A4-C46F-4B37-B7EA-C82FE89870C6}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"EnableUIADesktopToggle"=0
"EnableCursorSuppression"=1
"ConsentPromptBehaviorUser"=3
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"ForceActiveDesktopOn"=0
"NoActiveDesktopChanges"=1
"NoActiveDesktop"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2013-10-21 22:19:30 ----A---- C:\Windows\system32\FNTCACHE.DAT
2013-10-21 22:18:02 ----D---- C:\Program Files\trend micro
2013-10-21 22:18:01 ----D---- C:\rsit
2013-10-20 15:10:35 ----D---- C:\Windows\system32\appmgmt
2013-10-20 13:39:12 ----D---- C:\ProgramData\HitmanPro
2013-10-18 19:46:21 ----A---- C:\Windows\system32\rdpcorets.dll
2013-10-18 19:46:20 ----A---- C:\Windows\SYSWOW64\Taskmgr.exe
2013-10-18 19:46:20 ----A---- C:\Windows\system32\WebcamUi.dll
2013-10-18 19:46:20 ----A---- C:\Windows\system32\Taskmgr.exe
2013-10-18 19:46:20 ----A---- C:\Windows\system32\storagewmi.dll
2013-10-18 19:46:19 ----A---- C:\Windows\SYSWOW64\wpnapps.dll
2013-10-18 19:46:19 ----A---- C:\Windows\SYSWOW64\WebcamUi.dll
2013-10-18 19:46:19 ----A---- C:\Windows\SYSWOW64\UserLanguagesCpl.dll
2013-10-18 19:46:19 ----A---- C:\Windows\SYSWOW64\storagewmi.dll
2013-10-18 19:46:19 ----A---- C:\Windows\SYSWOW64\mstsc.exe
2013-10-18 19:46:19 ----A---- C:\Windows\system32\wpnapps.dll
2013-10-18 19:46:19 ----A---- C:\Windows\system32\UserLanguagesCpl.dll
2013-10-18 19:46:19 ----A---- C:\Windows\system32\drivers\rdpvideominiport.sys
2013-10-18 19:46:18 ----A---- C:\Windows\SYSWOW64\vds_ps.dll
2013-10-18 19:46:18 ----A---- C:\Windows\system32\vdsldr.exe
2013-10-18 19:46:18 ----A---- C:\Windows\system32\vds_ps.dll
2013-10-18 19:46:18 ----A---- C:\Windows\system32\rfxvmt.dll
2013-10-18 19:46:18 ----A---- C:\Windows\system32\rdpudd.dll
2013-10-18 19:46:18 ----A---- C:\Windows\system32\mstsc.exe
2013-10-18 19:46:09 ----A---- C:\Windows\SYSWOW64\dwmcore.dll
2013-10-18 19:46:09 ----A---- C:\Windows\system32\dwmcore.dll
2013-10-18 19:46:08 ----A---- C:\Windows\SYSWOW64\explorer.exe
2013-10-18 19:46:08 ----A---- C:\Windows\system32\ntoskrnl.exe
2013-10-18 19:46:08 ----A---- C:\Windows\explorer.exe
2013-10-18 19:46:07 ----A---- C:\Windows\system32\samsrv.dll
2013-10-18 19:46:07 ----A---- C:\Windows\system32\mfcore.dll
2013-10-18 19:46:04 ----A---- C:\Windows\SYSWOW64\mfcore.dll
2013-10-18 19:46:04 ----A---- C:\Windows\system32\drivers\volsnap.sys
2013-10-18 19:46:03 ----A---- C:\Windows\SYSWOW64\XpsGdiConverter.dll
2013-10-18 19:46:03 ----A---- C:\Windows\SYSWOW64\mscms.dll
2013-10-18 19:46:03 ----A---- C:\Windows\system32\XpsGdiConverter.dll
2013-10-18 19:46:03 ----A---- C:\Windows\system32\winresume.exe
2013-10-18 19:46:03 ----A---- C:\Windows\system32\winload.exe
2013-10-18 19:46:03 ----A---- C:\Windows\system32\vdsutil.dll
2013-10-18 19:46:03 ----A---- C:\Windows\system32\vds.exe
2013-10-18 19:46:03 ----A---- C:\Windows\system32\samlib.dll
2013-10-18 19:46:03 ----A---- C:\Windows\system32\mscms.dll
2013-10-18 19:46:03 ----A---- C:\Windows\system32\mfasfsrcsnk.dll
2013-10-18 19:46:03 ----A---- C:\Windows\system32\audiosrv.dll
2013-10-18 19:46:02 ----A---- C:\Windows\SYSWOW64\mfasfsrcsnk.dll
2013-10-18 19:46:02 ----A---- C:\Windows\system32\MbaeParserTask.exe
2013-10-18 19:46:02 ----A---- C:\Windows\system32\DeviceSetupManager.dll
2013-10-18 19:46:01 ----A---- C:\Windows\SYSWOW64\samlib.dll
2013-10-18 19:46:01 ----A---- C:\Windows\system32\drivers\BthAvrcpTg.sys
2013-10-18 19:45:25 ----D---- C:\Users\monika\AppData\Roaming\TeamViewer
2013-10-18 19:43:05 ----A---- C:\Windows\system32\glcndFilter.dll
2013-10-18 19:43:01 ----A---- C:\Windows\SYSWOW64\glcndFilter.dll
2013-10-18 19:43:01 ----A---- C:\Windows\system32\winhttp.dll
2013-10-18 19:43:00 ----A---- C:\Windows\system32\ole32.dll
2013-10-18 19:43:00 ----A---- C:\Windows\system32\KernelBase.dll
2013-10-18 19:42:59 ----A---- C:\Windows\SYSWOW64\winhttp.dll
2013-10-18 19:42:58 ----A---- C:\Windows\SYSWOW64\ole32.dll
2013-10-18 19:42:56 ----A---- C:\Windows\HelpPane.exe
2013-10-18 19:42:55 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2013-10-18 19:42:55 ----A---- C:\Windows\system32\wlansvc.dll
2013-10-18 19:42:53 ----A---- C:\Windows\system32\wlanmsm.dll
2013-10-18 19:42:53 ----A---- C:\Windows\system32\wlanapi.dll
2013-10-18 19:42:53 ----A---- C:\Windows\system32\drivers\msiscsi.sys
2013-10-18 19:42:53 ----A---- C:\Windows\system32\drivers\afd.sys
2013-10-18 19:42:53 ----A---- C:\Windows\system32\dafWCN.dll
2013-10-18 19:42:52 ----A---- C:\Windows\SYSWOW64\wlansec.dll
2013-10-18 19:42:52 ----A---- C:\Windows\SYSWOW64\wlanmsm.dll
2013-10-18 19:42:52 ----A---- C:\Windows\system32\wlansec.dll
2013-10-18 19:42:52 ----A---- C:\Windows\system32\rdpclip.exe
2013-10-18 19:42:52 ----A---- C:\Windows\system32\MFCaptureEngine.dll
2013-10-18 19:42:51 ----A---- C:\Windows\SYSWOW64\wlanapi.dll
2013-10-18 19:42:51 ----A---- C:\Windows\SYSWOW64\MFCaptureEngine.dll
2013-10-18 19:42:48 ----A---- C:\Windows\system32\wcncsvc.dll
2013-10-18 19:42:45 ----A---- C:\Windows\SYSWOW64\wlanhlp.dll
2013-10-18 19:42:45 ----A---- C:\Windows\SYSWOW64\wfdprov.dll
2013-10-18 19:42:45 ----A---- C:\Windows\SYSWOW64\WcnApi.dll
2013-10-18 19:42:45 ----A---- C:\Windows\SYSWOW64\fdWCN.dll
2013-10-18 19:42:45 ----A---- C:\Windows\system32\wlanhlp.dll
2013-10-18 19:42:45 ----A---- C:\Windows\system32\wfdprov.dll
2013-10-18 19:42:45 ----A---- C:\Windows\system32\WcnEapPeerProxy.dll
2013-10-18 19:42:45 ----A---- C:\Windows\system32\WcnEapAuthProxy.dll
2013-10-18 19:42:45 ----A---- C:\Windows\system32\WcnApi.dll
2013-10-18 19:42:45 ----A---- C:\Windows\system32\fdWCN.dll
2013-10-18 19:42:45 ----A---- C:\Windows\system32\drivers\processr.sys
2013-10-18 19:42:45 ----A---- C:\Windows\system32\drivers\intelppm.sys
2013-10-18 19:42:45 ----A---- C:\Windows\system32\drivers\fxppm.sys
2013-10-18 19:42:45 ----A---- C:\Windows\system32\drivers\amdppm.sys
2013-10-18 19:42:45 ----A---- C:\Windows\system32\drivers\amdk8.sys
2013-10-18 19:42:43 ----A---- C:\Windows\system32\iscsilog.dll
2013-10-18 19:42:09 ----A---- C:\Windows\system32\dskquota.dll
2013-10-18 19:42:08 ----A---- C:\Windows\SYSWOW64\dskquota.dll
2013-10-18 19:42:06 ----A---- C:\Windows\SYSWOW64\mfnetsrc.dll
2013-10-18 19:42:06 ----A---- C:\Windows\SYSWOW64\mfnetcore.dll
2013-10-18 19:42:06 ----A---- C:\Windows\system32\mfnetsrc.dll
2013-10-18 19:42:06 ----A---- C:\Windows\system32\mfnetcore.dll
2013-10-18 19:42:06 ----A---- C:\Windows\system32\mfmpeg2srcsnk.dll
2013-10-18 19:42:05 ----A---- C:\Windows\SYSWOW64\mfmpeg2srcsnk.dll
2013-10-18 19:41:56 ----A---- C:\Windows\system32\hal.dll
2013-10-18 19:41:25 ----A---- C:\Windows\system32\Windows.UI.Immersive.dll
2013-10-18 19:41:24 ----A---- C:\Windows\SYSWOW64\Windows.UI.Immersive.dll
2013-10-18 19:41:24 ----A---- C:\Windows\system32\StructuredQuery.dll
2013-10-18 19:41:24 ----A---- C:\Windows\system32\SHCore.dll
2013-10-18 19:41:24 ----A---- C:\Windows\system32\mfplat.dll
2013-10-18 19:41:24 ----A---- C:\Windows\system32\lsasrv.dll
2013-10-18 19:41:23 ----A---- C:\Windows\system32\MPSSVC.dll
2013-10-18 19:41:22 ----A---- C:\Windows\SYSWOW64\StructuredQuery.dll
2013-10-18 19:41:21 ----A---- C:\Windows\SYSWOW64\SHCore.dll
2013-10-18 19:41:21 ----A---- C:\Windows\SYSWOW64\mfplat.dll
2013-10-18 19:41:21 ----A---- C:\Windows\system32\winlogon.exe
2013-10-18 19:41:21 ----A---- C:\Windows\system32\drivers\netio.sys
2013-10-18 19:41:20 ----A---- C:\Windows\system32\usercpl.dll
2013-10-18 19:41:20 ----A---- C:\Windows\system32\drivers\portcls.sys
2013-10-18 19:41:19 ----A---- C:\Windows\system32\Windows.Storage.Compression.dll
2013-10-18 19:41:18 ----A---- C:\Windows\system32\bdesvc.dll
2013-10-18 19:41:17 ----A---- C:\Windows\SYSWOW64\usercpl.dll
2013-10-18 19:41:17 ----A---- C:\Windows\system32\dhcpcore6.dll
2013-10-18 19:41:16 ----A---- C:\Windows\SYSWOW64\dhcpcore6.dll
2013-10-18 19:41:16 ----A---- C:\Windows\system32\ListSvc.dll
2013-10-18 19:41:15 ----A---- C:\Windows\system32\SpaceControl.dll
2013-10-18 19:41:14 ----A---- C:\Windows\system32\drivers\sdstor.sys
2013-10-18 19:41:14 ----A---- C:\Windows\system32\drivers\battc.sys
2013-10-18 19:41:13 ----A---- C:\Windows\SYSWOW64\Windows.Storage.Compression.dll
2013-10-18 19:41:13 ----A---- C:\Windows\SYSWOW64\mswsock.dll
2013-10-18 19:41:13 ----A---- C:\Windows\SYSWOW64\input.dll
2013-10-18 19:41:13 ----A---- C:\Windows\SYSWOW64\dhcpcsvc6.dll
2013-10-18 19:41:13 ----A---- C:\Windows\system32\mswsock.dll
2013-10-18 19:41:13 ----A---- C:\Windows\system32\microsoft-windows-pdc.dll
2013-10-18 19:41:13 ----A---- C:\Windows\system32\input.dll
2013-10-18 19:41:13 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2013-10-18 19:41:13 ----A---- C:\Windows\system32\drivers\cng.sys
2013-10-18 19:41:13 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2013-10-18 19:41:12 ----A---- C:\Windows\SYSWOW64\PCPKsp.dll
2013-10-18 19:41:12 ----A---- C:\Windows\SYSWOW64\FirewallAPI.dll
2013-10-18 19:41:12 ----A---- C:\Windows\SYSWOW64\dhcpcore.dll
2013-10-18 19:41:12 ----A---- C:\Windows\SYSWOW64\AppxSip.dll
2013-10-18 19:41:12 ----A---- C:\Windows\system32\SysFxUI.dll
2013-10-18 19:41:12 ----A---- C:\Windows\system32\FntCache.dll
2013-10-18 19:41:12 ----A---- C:\Windows\system32\FirewallAPI.dll
2013-10-18 19:41:12 ----A---- C:\Windows\system32\dhcpcore.dll
2013-10-18 19:41:12 ----A---- C:\Windows\system32\AppxSip.dll
2013-10-18 19:41:11 ----A---- C:\Windows\SYSWOW64\wfapigp.dll
2013-10-18 19:41:11 ----A---- C:\Windows\SYSWOW64\dhcpcsvc.dll
2013-10-18 19:41:11 ----A---- C:\Windows\system32\wfapigp.dll
2013-10-18 19:41:11 ----A---- C:\Windows\system32\PCPKsp.dll
2013-10-18 19:41:11 ----A---- C:\Windows\system32\icfupgd.dll
2013-10-18 19:41:11 ----A---- C:\Windows\system32\dhcpcsvc.dll
2013-10-18 19:41:11 ----A---- C:\Windows\system32\BdeUISrv.exe
2013-10-18 19:41:08 ----A---- C:\Windows\system32\kbdhebl3.dll
2013-10-18 19:41:08 ----A---- C:\Windows\system32\drivers\mpsdrv.sys
2013-10-18 19:41:08 ----A---- C:\Windows\system32\drivers\drmk.sys
2013-10-18 19:41:06 ----A---- C:\Windows\SYSWOW64\kbdhebl3.dll
2013-10-18 19:41:05 ----A---- C:\Windows\system32\drivers\drmkaud.sys
2013-10-18 19:40:39 ----A---- C:\Windows\system32\drivers\ndis.sys
2013-10-18 19:31:04 ----A---- C:\Windows\system32\shell32.dll
2013-10-18 19:31:01 ----A---- C:\Windows\system32\twinui.dll
2013-10-18 19:30:55 ----A---- C:\Windows\SYSWOW64\shell32.dll
2013-10-18 19:30:53 ----A---- C:\Windows\SYSWOW64\twinui.dll
2013-10-18 19:30:52 ----A---- C:\Windows\SYSWOW64\msctf.dll
2013-10-18 19:30:52 ----A---- C:\Windows\system32\msctf.dll
2013-10-18 19:30:52 ----A---- C:\Windows\system32\drivers\tcpip.sys
2013-10-18 19:30:51 ----A---- C:\Windows\system32\appmgr.dll
2013-10-18 19:30:50 ----A---- C:\Windows\SYSWOW64\shdocvw.dll
2013-10-18 19:30:50 ----A---- C:\Windows\SYSWOW64\SettingSync.dll
2013-10-18 19:30:50 ----A---- C:\Windows\SYSWOW64\mbsmsapi.dll
2013-10-18 19:30:50 ----A---- C:\Windows\SYSWOW64\authui.dll
2013-10-18 19:30:50 ----A---- C:\Windows\SYSWOW64\appmgr.dll
2013-10-18 19:30:50 ----A---- C:\Windows\system32\shdocvw.dll
2013-10-18 19:30:50 ----A---- C:\Windows\system32\SettingSync.dll
2013-10-18 19:30:50 ----A---- C:\Windows\system32\mbsmsapi.dll
2013-10-18 19:30:50 ----A---- C:\Windows\system32\authui.dll
2013-10-18 19:30:49 ----A---- C:\Windows\system32\SettingSyncInfo.dll
2013-10-18 19:30:42 ----A---- C:\Windows\SYSWOW64\wvc.dll
2013-10-18 19:30:42 ----A---- C:\Windows\SYSWOW64\wdc.dll
2013-10-18 19:30:42 ----A---- C:\Windows\system32\wvc.dll
2013-10-18 19:30:42 ----A---- C:\Windows\system32\wdc.dll
2013-10-18 19:30:35 ----A---- C:\Windows\system32\Display.dll
2013-10-18 19:30:34 ----A---- C:\Windows\SYSWOW64\KBDKURD.DLL
2013-10-18 19:30:34 ----A---- C:\Windows\SYSWOW64\Display.dll
2013-10-18 19:30:34 ----A---- C:\Windows\system32\KBDKURD.DLL
2013-10-17 13:28:26 ----A---- C:\Windows\system32\drivers\evbda.sys
2013-10-17 13:28:17 ----A---- C:\Windows\system32\WpcMon.exe
2013-10-17 13:28:15 ----A---- C:\Windows\system32\d2d1.dll
2013-10-17 13:28:14 ----A---- C:\Windows\system32\WinSAT.exe
2013-10-17 13:28:11 ----A---- C:\Windows\system32\drivers\bxvbda.sys
2013-10-17 13:28:10 ----A---- C:\Windows\SYSWOW64\d2d1.dll
2013-10-17 13:28:10 ----A---- C:\Windows\system32\vssapi.dll
2013-10-17 13:28:07 ----A---- C:\Windows\system32\MsSpellCheckingFacility.dll
2013-10-17 13:28:06 ----A---- C:\Windows\system32\Windows.Media.Streaming.dll
2013-10-17 13:28:06 ----A---- C:\Windows\system32\RacEngn.dll
2013-10-17 13:28:06 ----A---- C:\Windows\system32\d3d10warp.dll
2013-10-17 13:28:05 ----A---- C:\Windows\system32\uDWM.dll
2013-10-17 13:28:05 ----A---- C:\Windows\system32\MMDevAPI.dll
2013-10-17 13:28:04 ----A---- C:\Windows\system32\provcore.dll
2013-10-17 13:28:03 ----A---- C:\Windows\SYSWOW64\vssapi.dll
2013-10-17 13:28:02 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2013-10-17 13:28:01 ----A---- C:\Windows\system32\WinSATAPI.dll
2013-10-17 13:28:00 ----A---- C:\Windows\SYSWOW64\MMDevAPI.dll
2013-10-17 13:28:00 ----A---- C:\Windows\SYSWOW64\apphelp.dll
2013-10-17 13:27:59 ----A---- C:\Windows\SYSWOW64\Windows.Media.Streaming.dll
2013-10-17 13:27:59 ----A---- C:\Windows\system32\apphelp.dll
2013-10-17 13:27:58 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2013-10-17 13:27:57 ----A---- C:\Windows\SYSWOW64\MsSpellCheckingFacility.dll
2013-10-17 13:27:57 ----A---- C:\Windows\system32\MFPlay.dll
2013-10-17 13:27:57 ----A---- C:\Windows\system32\combase.dll
2013-10-17 13:27:55 ----A---- C:\Windows\SYSWOW64\IPHLPAPI.DLL
2013-10-17 13:27:55 ----A---- C:\Windows\system32\WWAHost.exe
2013-10-17 13:27:55 ----A---- C:\Windows\system32\drivers\csc.sys
2013-10-17 13:27:55 ----A---- C:\Windows\system32\dnsapi.dll
2013-10-17 13:27:54 ----A---- C:\Windows\system32\wlidcredprov.dll
2013-10-17 13:27:54 ----A---- C:\Windows\system32\WinTypes.dll
2013-10-17 13:27:54 ----A---- C:\Windows\system32\taskeng.exe
2013-10-17 13:27:54 ----A---- C:\Windows\system32\fveapi.dll
2013-10-17 13:27:53 ----A---- C:\Windows\system32\mfsvr.dll
2013-10-17 13:27:53 ----A---- C:\Windows\system32\mfsrcsnk.dll
2013-10-17 13:27:53 ----A---- C:\Windows\system32\bcdsrv.dll
2013-10-17 13:27:52 ----A---- C:\Windows\system32\wpnprv.dll
2013-10-17 13:27:52 ----A---- C:\Windows\system32\propsys.dll
2013-10-17 13:27:52 ----A---- C:\Windows\system32\drivers\acpi.sys
2013-10-17 13:27:51 ----A---- C:\Windows\SYSWOW64\WinSATAPI.dll
2013-10-17 13:27:51 ----A---- C:\Windows\system32\VAN.dll
2013-10-17 13:27:50 ----A---- C:\Windows\system32\services.exe
2013-10-17 13:27:50 ----A---- C:\Windows\system32\fveapibase.dll
2013-10-17 13:27:48 ----A---- C:\Windows\system32\mmcss.dll
2013-10-17 13:27:46 ----A---- C:\Windows\SYSWOW64\WWAHost.exe
2013-10-17 13:27:46 ----A---- C:\Windows\SYSWOW64\MFPlay.dll
2013-10-17 13:27:46 ----A---- C:\Windows\system32\PackageStateRoaming.dll
2013-10-17 13:27:45 ----A---- C:\Windows\SYSWOW64\dnsapi.dll
2013-10-17 13:27:45 ----A---- C:\Windows\system32\drivers\fvevol.sys
2013-10-17 13:27:44 ----A---- C:\Windows\SYSWOW64\RacEngn.dll
2013-10-17 13:27:44 ----A---- C:\Windows\system32\TpmTasks.dll
2013-10-17 13:27:44 ----A---- C:\Windows\system32\ProximityService.dll
2013-10-17 13:27:43 ----A---- C:\Windows\SYSWOW64\twinapi.dll
2013-10-17 13:27:43 ----A---- C:\Windows\SYSWOW64\provcore.dll
2013-10-17 13:27:43 ----A---- C:\Windows\SYSWOW64\propsys.dll
2013-10-17 13:27:43 ----A---- C:\Windows\SYSWOW64\PackageStateRoaming.dll
2013-10-17 13:27:43 ----A---- C:\Windows\system32\setbcdlocale.dll
2013-10-17 13:27:43 ----A---- C:\Windows\system32\msvproc.dll
2013-10-17 13:27:43 ----A---- C:\Windows\system32\avrt.dll
2013-10-17 13:27:42 ----A---- C:\Windows\SYSWOW64\VAN.dll
2013-10-17 13:27:42 ----A---- C:\Windows\SYSWOW64\svchost.exe
2013-10-17 13:27:42 ----A---- C:\Windows\SYSWOW64\mfsrcsnk.dll
2013-10-17 13:27:42 ----A---- C:\Windows\SYSWOW64\combase.dll
2013-10-17 13:27:42 ----A---- C:\Windows\SYSWOW64\avrt.dll
2013-10-17 13:27:42 ----A---- C:\Windows\system32\microsoft-windows-kernel-power-events.dll
2013-10-17 13:27:42 ----A---- C:\Windows\system32\drivers\dumpfve.sys
2013-10-17 13:27:41 ----A---- C:\Windows\SYSWOW64\batmeter.dll
2013-10-17 13:27:41 ----A---- C:\Windows\system32\SettingSyncHost.exe
2013-10-17 13:27:41 ----A---- C:\Windows\system32\perfdisk.dll
2013-10-17 13:27:41 ----A---- C:\Windows\system32\batmeter.dll
2013-10-17 13:27:41 ----A---- C:\Windows\system32\aelupsvc.dll
2013-10-17 13:27:40 ----A---- C:\Windows\SYSWOW64\wlidcredprov.dll
2013-10-17 13:27:40 ----A---- C:\Windows\SYSWOW64\WinTypes.dll
2013-10-17 13:27:40 ----A---- C:\Windows\SYSWOW64\perfdisk.dll
2013-10-17 13:27:40 ----A---- C:\Windows\SYSWOW64\mfsvr.dll
2013-10-17 13:27:40 ----A---- C:\Windows\system32\svchost.exe
2013-10-17 13:27:39 ----A---- C:\Windows\system32\user32.dll
2013-10-17 13:27:39 ----A---- C:\Windows\system32\umpnpmgr.dll
2013-10-17 13:27:38 ----A---- C:\Windows\SYSWOW64\taskeng.exe
2013-10-17 13:27:38 ----A---- C:\Windows\system32\winsrv.dll
2013-10-17 13:27:38 ----A---- C:\Windows\system32\lsass.exe
2013-10-17 13:27:38 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2013-10-17 13:27:37 ----A---- C:\Windows\SYSWOW64\SettingSyncHost.exe
2013-10-17 13:27:37 ----A---- C:\Windows\SYSWOW64\msvproc.dll
2013-10-17 13:27:37 ----A---- C:\Windows\SYSWOW64\mfh264enc.dll
2013-10-17 13:27:37 ----A---- C:\Windows\system32\twinapi.dll
2013-10-17 13:27:37 ----A---- C:\Windows\system32\perfnet.dll
2013-10-17 13:27:37 ----A---- C:\Windows\system32\mfh264enc.dll
2013-10-17 13:27:37 ----A---- C:\Windows\system32\lpksetup.exe
2013-10-17 13:27:37 ----A---- C:\Windows\system32\dwm.exe
2013-10-17 13:27:37 ----A---- C:\Windows\system32\DevPropMgr.dll
2013-10-17 13:27:36 ----A---- C:\Windows\SYSWOW64\drvinst.exe
2013-10-17 13:27:36 ----A---- C:\Windows\system32\drvinst.exe
2013-10-17 13:27:35 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2013-10-17 13:27:35 ----A---- C:\Windows\system32\dxgi.dll
2013-10-17 13:27:35 ----A---- C:\Windows\system32\dnsrslvr.dll
2013-10-17 13:27:35 ----A---- C:\Windows\system32\DAFWSD.dll
2013-10-17 13:27:34 ----A---- C:\Windows\SYSWOW64\perfnet.dll
2013-10-17 13:27:34 ----A---- C:\Windows\SYSWOW64\d3d11.dll
2013-10-17 13:27:34 ----A---- C:\Windows\system32\d3d11.dll
2013-10-17 13:27:33 ----A---- C:\Windows\SYSWOW64\webio.dll
2013-10-17 13:27:33 ----A---- C:\Windows\system32\webio.dll
2013-10-17 13:27:33 ----A---- C:\Windows\system32\RpcEpMap.dll
2013-10-17 13:27:33 ----A---- C:\Windows\system32\perfos.dll
2013-10-17 13:27:33 ----A---- C:\Windows\system32\CscMig.dll
2013-10-17 13:27:32 ----A---- C:\Windows\system32\umpo.dll
2013-10-17 13:27:32 ----A---- C:\Windows\system32\lpremove.exe
2013-10-17 13:27:31 ----A---- C:\Windows\system32\vsstrace.dll
2013-10-17 13:27:31 ----A---- C:\Windows\system32\sspicli.dll
2013-10-17 13:27:31 ----A---- C:\Windows\system32\drivers\ws2ifsl.sys
2013-10-17 13:27:30 ----A---- C:\Windows\SYSWOW64\vsstrace.dll
2013-10-17 13:27:30 ----A---- C:\Windows\SYSWOW64\sdbinst.exe
2013-10-17 13:27:30 ----A---- C:\Windows\system32\sdbinst.exe
2013-10-17 13:27:28 ----A---- C:\Windows\SYSWOW64\perfproc.dll
2013-10-17 13:27:28 ----A---- C:\Windows\SYSWOW64\perfos.dll
2013-10-17 13:27:28 ----A---- C:\Windows\SYSWOW64\perfctrs.dll
2013-10-17 13:27:28 ----A---- C:\Windows\system32\sspisrv.dll
2013-10-17 13:27:28 ----A---- C:\Windows\system32\perfproc.dll
2013-10-17 13:27:28 ----A---- C:\Windows\system32\perfctrs.dll
2013-10-17 13:27:27 ----A---- C:\Windows\SYSWOW64\shimeng.dll
2013-10-17 13:27:27 ----A---- C:\Windows\SYSWOW64\eventcls.dll
2013-10-17 13:27:27 ----A---- C:\Windows\system32\shimeng.dll
2013-10-17 13:27:27 ----A---- C:\Windows\system32\MUILanguageCleanup.dll
2013-10-17 13:27:27 ----A---- C:\Windows\system32\lpksetupproxyserv.dll
2013-10-17 13:27:27 ----A---- C:\Windows\system32\LangCleanupSysprepAction.dll
2013-10-17 13:27:27 ----A---- C:\Windows\system32\eventcls.dll
2013-10-17 13:27:26 ----A---- C:\Windows\SYSWOW64\user32.dll
2013-10-17 13:27:26 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2013-10-17 13:27:26 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2013-10-17 13:25:21 ----A---- C:\Windows\SYSWOW64\newdev.dll
2013-10-17 13:25:21 ----A---- C:\Windows\system32\newdev.dll
2013-10-17 13:25:20 ----A---- C:\Windows\SYSWOW64\newdev.exe
2013-10-17 13:25:20 ----A---- C:\Windows\SYSWOW64\ndadmin.exe
2013-10-17 13:25:20 ----A---- C:\Windows\system32\newdev.exe
2013-10-17 13:25:20 ----A---- C:\Windows\system32\ndadmin.exe
2013-10-17 13:25:10 ----A---- C:\Windows\SYSWOW64\WinSCard.dll
2013-10-17 13:25:10 ----A---- C:\Windows\SYSWOW64\Windows.Networking.BackgroundTransfer.dll
2013-10-17 13:25:10 ----A---- C:\Windows\SYSWOW64\openfiles.exe
2013-10-17 13:25:09 ----A---- C:\Windows\SYSWOW64\msftedit.dll
2013-10-17 13:25:08 ----A---- C:\Windows\SYSWOW64\winmmbase.dll
2013-10-17 13:25:08 ----A---- C:\Windows\SYSWOW64\winmm.dll
2013-10-17 13:25:08 ----A---- C:\Windows\SYSWOW64\WerFault.exe
2013-10-17 13:25:08 ----A---- C:\Windows\SYSWOW64\oleaut32.dll
2013-10-17 13:25:07 ----A---- C:\Windows\SYSWOW64\nshwfp.dll
2013-10-17 13:25:07 ----A---- C:\Windows\SYSWOW64\LocationApi.dll
2013-10-17 13:25:07 ----A---- C:\Windows\SYSWOW64\FWPUCLNT.DLL
2013-10-17 13:25:06 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2013-10-17 13:24:55 ----A---- C:\Windows\system32\drivers\USBSTOR.SYS
2013-10-17 13:24:54 ----A---- C:\Windows\system32\wwanmm.dll
2013-10-17 13:24:54 ----A---- C:\Windows\system32\wwanconn.dll
2013-10-17 13:24:54 ----A---- C:\Windows\system32\drivers\sdbus.sys
2013-10-17 13:24:54 ----A---- C:\Windows\system32\drivers\dumpsd.sys
2013-10-17 13:24:53 ----A---- C:\Windows\system32\wwansvc.dll
2013-10-17 13:24:53 ----A---- C:\Windows\system32\wwanprotdim.dll
2013-10-17 13:24:53 ----A---- C:\Windows\system32\Wwanadvui.dll
2013-10-17 13:24:51 ----A---- C:\Windows\system32\wcmsvc.dll
2013-10-17 13:24:51 ----A---- C:\Windows\system32\wcmcsp.dll
2013-10-17 13:24:50 ----A---- C:\Windows\system32\drivers\udfs.sys
2013-10-17 13:24:49 ----A---- C:\Windows\system32\WinSCard.dll
2013-10-17 13:24:49 ----A---- C:\Windows\system32\openfiles.exe
2013-10-17 13:24:49 ----A---- C:\Windows\system32\localspl.dll
2013-10-17 13:24:48 ----A---- C:\Windows\system32\oleaut32.dll
2013-10-17 13:24:47 ----A---- C:\Windows\system32\nshwfp.dll
2013-10-17 13:24:47 ----A---- C:\Windows\system32\IKEEXT.DLL
2013-10-17 13:24:47 ----A---- C:\Windows\system32\drivers\wfplwfs.sys
2013-10-17 13:24:46 ----A---- C:\Windows\system32\Windows.Networking.BackgroundTransfer.dll
2013-10-17 13:24:46 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2013-10-17 13:24:46 ----A---- C:\Windows\system32\BFE.DLL
2013-10-17 13:24:45 ----A---- C:\Windows\system32\msftedit.dll
2013-10-17 13:24:45 ----A---- C:\Windows\system32\LocationApi.dll
2013-10-17 13:24:45 ----A---- C:\Windows\system32\drivers\msgpioclx.sys
2013-10-17 13:24:44 ----A---- C:\Windows\system32\WerFault.exe
2013-10-17 13:24:44 ----A---- C:\Windows\system32\gdi32.dll
2013-10-17 13:24:43 ----A---- C:\Windows\system32\winmmbase.dll
2013-10-17 13:24:43 ----A---- C:\Windows\system32\winmm.dll
2013-10-17 13:24:43 ----A---- C:\Windows\system32\drivers\HdAudio.sys
2013-10-17 13:24:43 ----A---- C:\Windows\system32\drivers\Classpnp.sys
2013-10-17 12:01:09 ----A---- C:\Windows\SYSWOW64\DBCLIENT.DLL
2013-10-17 09:26:57 ----RD---- C:\Windows\BrowserChoice
2013-10-17 09:10:10 ----D---- C:\Windows\system32\MRT
2013-10-17 09:10:07 ----A---- C:\Windows\system32\MRT.exe
2013-10-17 08:47:49 ----A---- C:\Windows\system32\wmp.dll
2013-10-17 08:47:49 ----A---- C:\Windows\system32\tquery.dll
2013-10-17 08:47:47 ----A---- C:\Windows\SYSWOW64\wmp.dll
2013-10-17 08:47:46 ----A---- C:\Windows\system32\mssrch.dll
2013-10-17 08:47:44 ----A---- C:\Windows\SYSWOW64\tquery.dll
2013-10-17 08:47:42 ----A---- C:\Windows\SYSWOW64\mssrch.dll
2013-10-17 08:47:42 ----A---- C:\Windows\system32\ntdll.dll
2013-10-17 08:47:41 ----A---- C:\Windows\system32\MSAudDecMFT.dll
2013-10-17 08:47:40 ----A---- C:\Windows\SYSWOW64\MSAudDecMFT.dll
2013-10-17 08:47:39 ----A---- C:\Windows\SYSWOW64\schannel.dll
2013-10-17 08:47:39 ----A---- C:\Windows\SYSWOW64\mssph.dll
2013-10-17 08:47:39 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2013-10-17 08:47:39 ----A---- C:\Windows\system32\schedsvc.dll
2013-10-17 08:47:39 ----A---- C:\Windows\system32\schannel.dll
2013-10-17 08:47:39 ----A---- C:\Windows\system32\SearchIndexer.exe
2013-10-17 08:47:39 ----A---- C:\Windows\system32\rsaenh.dll
2013-10-17 08:47:39 ----A---- C:\Windows\system32\kd_02_10ec.dll
2013-10-17 08:47:39 ----A---- C:\Windows\system32\drivers\srv2.sys
2013-10-17 08:47:39 ----A---- C:\Windows\system32\drivers\PEAuth.sys
2013-10-17 08:47:39 ----A---- C:\Windows\system32\AudioSes.dll
2013-10-17 08:47:38 ----A---- C:\Windows\SYSWOW64\SearchProtocolHost.exe
2013-10-17 08:47:38 ----A---- C:\Windows\SYSWOW64\rsaenh.dll
2013-10-17 08:47:38 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2013-10-17 08:47:38 ----A---- C:\Windows\SYSWOW64\AudioSes.dll
2013-10-17 08:47:38 ----A---- C:\Windows\SYSWOW64\AudioEng.dll
2013-10-17 08:47:38 ----A---- C:\Windows\system32\Windows.Networking.dll
2013-10-17 08:47:38 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2013-10-17 08:47:38 ----A---- C:\Windows\system32\mssph.dll
2013-10-17 08:47:38 ----A---- C:\Windows\system32\kerberos.dll
2013-10-17 08:47:38 ----A---- C:\Windows\system32\dwmredir.dll
2013-10-17 08:47:38 ----A---- C:\Windows\system32\drivers\srvnet.sys
2013-10-17 08:47:38 ----A---- C:\Windows\system32\conhost.exe
2013-10-17 08:47:38 ----A---- C:\Windows\system32\AudioEng.dll
2013-10-17 08:47:38 ----A---- C:\Windows\system32\audiodg.exe
2013-10-17 08:47:37 ----A---- C:\Windows\SYSWOW64\SearchIndexer.exe
2013-10-17 08:47:37 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2013-10-17 08:47:37 ----A---- C:\Windows\system32\wpncore.dll
2013-10-17 08:47:37 ----A---- C:\Windows\system32\RecoveryDrive.exe
2013-10-17 08:47:36 ----A---- C:\Windows\system32\MFMediaEngine.dll
2013-10-17 08:47:35 ----A---- C:\Windows\SYSWOW64\Windows.Networking.dll
2013-10-17 08:47:35 ----A---- C:\Windows\SYSWOW64\rascfg.dll
2013-10-17 08:47:35 ----A---- C:\Windows\system32\ci.dll
2013-10-17 08:47:34 ----A---- C:\Windows\SYSWOW64\mssvp.dll
2013-10-17 08:47:34 ----A---- C:\Windows\system32\XpsRasterService.dll
2013-10-17 08:47:34 ----A---- C:\Windows\system32\rascfg.dll
2013-10-17 08:47:34 ----A---- C:\Windows\system32\fhengine.dll
2013-10-17 08:47:34 ----A---- C:\Windows\system32\dmvdsitf.dll
2013-10-17 08:47:34 ----A---- C:\Windows\system32\actxprxy.dll
2013-10-17 08:47:33 ----A---- C:\Windows\SYSWOW64\XpsRasterService.dll
2013-10-17 08:47:33 ----A---- C:\Windows\SYSWOW64\wscapi.dll
2013-10-17 08:47:33 ----A---- C:\Windows\SYSWOW64\SearchFilterHost.exe
2013-10-17 08:47:33 ----A---- C:\Windows\SYSWOW64\Robocopy.exe
2013-10-17 08:47:33 ----A---- C:\Windows\SYSWOW64\MFMediaEngine.dll
2013-10-17 08:47:33 ----A---- C:\Windows\system32\SearchFilterHost.exe
2013-10-17 08:47:33 ----A---- C:\Windows\system32\Robocopy.exe
2013-10-17 08:47:33 ----A---- C:\Windows\system32\mfreadwrite.dll
2013-10-17 08:47:33 ----A---- C:\Windows\system32\kdvm.dll
2013-10-17 08:47:33 ----A---- C:\Windows\system32\iuilp.dll
2013-10-17 08:47:33 ----A---- C:\Windows\system32\drivers\pdc.sys
2013-10-17 08:47:33 ----A---- C:\Windows\system32\AUDIOKSE.dll
2013-10-17 08:47:33 ----A---- C:\Windows\system32\AudioEndpointBuilder.dll
2013-10-17 08:47:32 ----A---- C:\Windows\SYSWOW64\mfreadwrite.dll
2013-10-17 08:47:32 ----A---- C:\Windows\SYSWOW64\dmvdsitf.dll
2013-10-17 08:47:32 ----A---- C:\Windows\SYSWOW64\AUDIOKSE.dll
2013-10-17 08:47:32 ----A---- C:\Windows\system32\wscsvc.dll
2013-10-17 08:47:32 ----A---- C:\Windows\system32\kdnet.dll
2013-10-17 08:47:32 ----A---- C:\Windows\system32\drivers\wanarp.sys
2013-10-17 08:47:32 ----A---- C:\Windows\system32\drivers\hidbth.sys
2013-10-17 08:47:32 ----A---- C:\Windows\system32\drivers\dxgmms1.sys
2013-10-17 08:47:31 ----A---- C:\Windows\SYSWOW64\rasser.dll
2013-10-17 08:47:31 ----A---- C:\Windows\SYSWOW64\rasmxs.dll
2013-10-17 08:47:31 ----A---- C:\Windows\SYSWOW64\rasdiag.dll
2013-10-17 08:47:31 ----A---- C:\Windows\SYSWOW64\mssprxy.dll
2013-10-17 08:47:31 ----A---- C:\Windows\SYSWOW64\mssphtb.dll
2013-10-17 08:47:31 ----A---- C:\Windows\SYSWOW64\mssitlb.dll
2013-10-17 08:47:31 ----A---- C:\Windows\SYSWOW64\msshooks.dll
2013-10-17 08:47:31 ----A---- C:\Windows\SYSWOW64\msscntrs.dll
2013-10-17 08:47:31 ----A---- C:\Windows\SYSWOW64\fmifs.dll
2013-10-17 08:47:31 ----A---- C:\Windows\system32\rasser.dll
2013-10-17 08:47:31 ----A---- C:\Windows\system32\rasmxs.dll
2013-10-17 08:47:31 ----A---- C:\Windows\system32\rasdiag.dll
2013-10-17 08:47:31 ----A---- C:\Windows\system32\mssvp.dll
2013-10-17 08:47:31 ----A---- C:\Windows\system32\mssprxy.dll
2013-10-17 08:47:31 ----A---- C:\Windows\system32\mssphtb.dll
2013-10-17 08:47:31 ----A---- C:\Windows\system32\mssitlb.dll
2013-10-17 08:47:31 ----A---- C:\Windows\system32\msshooks.dll
2013-10-17 08:47:31 ----A---- C:\Windows\system32\msscntrs.dll
2013-10-17 08:47:31 ----A---- C:\Windows\system32\GenuineCenter.dll
2013-10-17 08:47:31 ----A---- C:\Windows\system32\fmifs.dll
2013-10-17 08:47:31 ----A---- C:\Windows\system32\fhtask.dll
2013-10-17 08:47:31 ----A---- C:\Windows\system32\fhsvc.dll
2013-10-17 08:47:31 ----A---- C:\Windows\system32\fhsrchph.dll
2013-10-17 08:47:31 ----A---- C:\Windows\system32\fhsrchapi.dll
2013-10-17 08:47:31 ----A---- C:\Windows\system32\fhshl.dll
2013-10-17 08:47:31 ----A---- C:\Windows\system32\fhmanagew.exe
2013-10-17 08:47:31 ----A---- C:\Windows\system32\fhlisten.dll
2013-10-17 08:47:31 ----A---- C:\Windows\system32\fhevents.dll
2013-10-17 08:47:31 ----A---- C:\Windows\system32\fhcleanup.dll
2013-10-17 08:47:31 ----A---- C:\Windows\system32\fhcfg.dll
2013-10-17 08:47:31 ----A---- C:\Windows\system32\fhcat.dll
2013-10-17 08:47:31 ----A---- C:\Windows\system32\fhautoplay.dll
2013-10-17 08:47:31 ----A---- C:\Windows\system32\EncDump.dll
2013-10-17 08:47:31 ----A---- C:\Windows\system32\drivers\ndproxy.sys
2013-10-17 08:47:31 ----A---- C:\Windows\system32\drivers\hidi2c.sys
2013-10-17 08:47:30 ----A---- C:\Windows\SYSWOW64\tzres.dll
2013-10-17 08:47:30 ----A---- C:\Windows\SYSWOW64\spwmp.dll
2013-10-17 08:47:30 ----A---- C:\Windows\SYSWOW64\dxmasf.dll
2013-10-17 08:47:30 ----A---- C:\Windows\system32\wmploc.DLL
2013-10-17 08:47:30 ----A---- C:\Windows\system32\tzres.dll
2013-10-17 08:47:30 ----A---- C:\Windows\system32\spwmp.dll
2013-10-17 08:47:30 ----A---- C:\Windows\system32\fhsvcctl.dll
2013-10-17 08:47:30 ----A---- C:\Windows\system32\dxmasf.dll
2013-10-17 08:47:30 ----A---- C:\Windows\system32\drivers\ndistapi.sys
2013-10-17 08:47:29 ----A---- C:\Windows\SYSWOW64\wmploc.DLL
2013-10-17 08:47:14 ----A---- C:\Windows\system32\Windows.UI.Xaml.dll
2013-10-17 08:47:08 ----A---- C:\Windows\SYSWOW64\Windows.UI.Xaml.dll
2013-10-17 08:47:06 ----A---- C:\Windows\system32\VSSVC.exe
2013-10-17 08:47:06 ----A---- C:\Windows\system32\ubpm.dll
2013-10-17 08:47:06 ----A---- C:\Windows\system32\sysmain.dll
2013-10-17 08:47:06 ----A---- C:\Windows\system32\drivers\rdbss.sys
2013-10-17 08:47:06 ----A---- C:\Windows\system32\AppXDeploymentServer.dll
2013-10-17 08:47:05 ----A---- C:\Windows\system32\BCP47Langs.dll
2013-10-17 08:47:04 ----A---- C:\Windows\SYSWOW64\ubpm.dll
2013-10-17 08:47:04 ----A---- C:\Windows\system32\netprofmsvc.dll
2013-10-17 08:47:03 ----A---- C:\Windows\SYSWOW64\BCP47Langs.dll
2013-10-17 08:47:03 ----A---- C:\Windows\system32\netprofm.dll
2013-10-17 08:47:03 ----A---- C:\Windows\system32\gpprefcl.dll
2013-10-17 08:47:02 ----A---- C:\Windows\system32\mfmp4srcsnk.dll
2013-10-17 08:47:01 ----A---- C:\Windows\SYSWOW64\mfmp4srcsnk.dll
2013-10-17 08:47:01 ----A---- C:\Windows\system32\stobject.dll
2013-10-17 08:47:01 ----A---- C:\Windows\system32\psmsrv.dll
2013-10-17 08:47:01 ----A---- C:\Windows\system32\netplwiz.dll
2013-10-17 08:47:01 ----A---- C:\Windows\system32\Magnify.exe
2013-10-17 08:47:01 ----A---- C:\Windows\system32\bisrv.dll
2013-10-17 08:47:01 ----A---- C:\Windows\system32\AppXDeploymentExtensions.dll
2013-10-17 08:47:00 ----A---- C:\Windows\SYSWOW64\stobject.dll
2013-10-17 08:47:00 ----A---- C:\Windows\SYSWOW64\netprofm.dll
2013-10-17 08:47:00 ----A---- C:\Windows\SYSWOW64\netplwiz.dll
2013-10-17 08:47:00 ----A---- C:\Windows\SYSWOW64\Magnify.exe
2013-10-17 08:47:00 ----A---- C:\Windows\SYSWOW64\gpprefcl.dll
2013-10-17 08:47:00 ----A---- C:\Windows\SYSWOW64\DevicePairing.dll
2013-10-17 08:47:00 ----A---- C:\Windows\SYSWOW64\biwinrt.dll
2013-10-17 08:47:00 ----A---- C:\Windows\system32\wuaext.dll
2013-10-17 08:47:00 ----A---- C:\Windows\system32\taskhostex.exe
2013-10-17 08:47:00 ----A---- C:\Windows\system32\taskhost.exe
2013-10-17 08:47:00 ----A---- C:\Windows\system32\drivers\spaceport.sys
2013-10-17 08:47:00 ----A---- C:\Windows\system32\DevicePairing.dll
2013-10-17 08:47:00 ----A---- C:\Windows\system32\biwinrt.dll
2013-10-17 08:47:00 ----A---- C:\Windows\system32\AuthHost.exe
2013-10-17 08:46:59 ----A---- C:\Windows\SYSWOW64\npmproxy.dll
2013-10-17 08:46:59 ----A---- C:\Windows\SYSWOW64\nlmsprep.dll
2013-10-17 08:46:59 ----A---- C:\Windows\SYSWOW64\nlmproxy.dll
2013-10-17 08:46:59 ----A---- C:\Windows\SYSWOW64\muifontsetup.dll
2013-10-17 08:46:59 ----A---- C:\Windows\system32\wushareduxresources.dll
2013-10-17 08:46:59 ----A---- C:\Windows\system32\muifontsetup.dll
2013-10-17 08:46:50 ----A---- C:\Windows\SYSWOW64\untfs.dll
2013-10-17 08:46:50 ----A---- C:\Windows\SYSWOW64\autochk.exe
2013-10-17 08:46:50 ----A---- C:\Windows\system32\untfs.dll
2013-10-17 08:46:50 ----A---- C:\Windows\system32\autochk.exe
2013-10-17 08:46:49 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2013-10-17 08:46:49 ----A---- C:\Windows\system32\kernel32.dll
2013-10-17 08:46:33 ----A---- C:\Windows\system32\WindowsCodecs.dll
2013-10-17 08:46:31 ----A---- C:\Windows\SYSWOW64\WindowsCodecs.dll
2013-10-17 08:46:31 ----A---- C:\Windows\system32\mstscax.dll
2013-10-17 08:46:30 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2013-10-17 08:46:30 ----A---- C:\Windows\system32\wmpmde.dll
2013-10-17 08:46:30 ----A---- C:\Windows\system32\winmde.dll
2013-10-17 08:46:30 ----A---- C:\Windows\system32\Windows.Globalization.dll
2013-10-17 08:46:29 ----A---- C:\Windows\SYSWOW64\netcfgx.dll
2013-10-17 08:46:29 ----A---- C:\Windows\system32\Windows.Security.Authentication.OnlineId.dll
2013-10-17 08:46:29 ----A---- C:\Windows\system32\TimeBrokerServer.dll
2013-10-17 08:46:29 ----A---- C:\Windows\system32\SystemEventsBrokerServer.dll
2013-10-17 08:46:29 ----A---- C:\Windows\system32\pwcreator.exe
2013-10-17 08:46:29 ----A---- C:\Windows\system32\drivers\storport.sys
2013-10-17 08:46:29 ----A---- C:\Windows\system32\drivers\bthport.sys
2013-10-17 08:46:28 ----A---- C:\Windows\SYSWOW64\winmde.dll
2013-10-17 08:46:28 ----A---- C:\Windows\SYSWOW64\Windows.Security.Authentication.OnlineId.dll
2013-10-17 08:46:28 ----A---- C:\Windows\SYSWOW64\Windows.Globalization.dll
2013-10-17 08:46:28 ----A---- C:\Windows\SYSWOW64\drvstore.dll
2013-10-17 08:46:28 ----A---- C:\Windows\system32\wpdbusenum.dll
2013-10-17 08:46:28 ----A---- C:\Windows\system32\usbmon.dll
2013-10-17 08:46:28 ----A---- C:\Windows\system32\netcfgx.dll
2013-10-17 08:46:28 ----A---- C:\Windows\system32\drvstore.dll
2013-10-17 08:46:28 ----A---- C:\Windows\system32\drivers\vhdmp.sys
2013-10-17 08:46:27 ----A---- C:\Windows\SYSWOW64\SettingSyncInfo.dll
2013-10-17 08:46:27 ----A---- C:\Windows\SYSWOW64\DevDispItemProvider.dll
2013-10-17 08:46:27 ----A---- C:\Windows\system32\WSDPrintProxy.DLL
2013-10-17 08:46:27 ----A---- C:\Windows\system32\NdisImPlatform.dll
2013-10-17 08:46:27 ----A---- C:\Windows\system32\fsquirt.exe
2013-10-17 08:46:27 ----A---- C:\Windows\system32\drivers\tpm.sys
2013-10-17 08:46:27 ----A---- C:\Windows\system32\drivers\storahci.sys
2013-10-17 08:46:27 ----A---- C:\Windows\system32\drivers\rfcomm.sys
2013-10-17 08:46:27 ----A---- C:\Windows\system32\drivers\mouhid.sys
2013-10-17 08:46:27 ----A---- C:\Windows\system32\discan.dll
2013-10-17 08:46:27 ----A---- C:\Windows\system32\DevDispItemProvider.dll
2013-10-17 08:46:26 ----A---- C:\Windows\system32\drivers\monitor.sys
2013-10-17 08:46:26 ----A---- C:\Windows\system32\drivers\BTHUSB.SYS
2013-10-17 08:46:26 ----A---- C:\Windows\system32\drivers\bthenum.sys
2013-10-17 08:46:19 ----A---- C:\Windows\system32\rdpshell.exe
2013-10-17 08:45:39 ----A---- C:\Windows\SYSWOW64\msvcr100_clr0400.dll
2013-10-17 08:45:39 ----A---- C:\Windows\system32\msvcr100_clr0400.dll
2013-10-17 08:44:14 ----A---- C:\Windows\system32\wlidsvc.dll
2013-10-17 08:44:14 ----A---- C:\Windows\system32\mmc.exe
2013-10-17 08:44:13 ----A---- C:\Windows\SYSWOW64\mmc.exe
2013-10-17 08:44:13 ----A---- C:\Windows\system32\srmstormod.dll
2013-10-17 08:44:12 ----A---- C:\Windows\system32\Windows.Media.dll
2013-10-17 08:44:12 ----A---- C:\Windows\system32\setupapi.dll
2013-10-17 08:44:11 ----A---- C:\Windows\SYSWOW64\Windows.Media.dll
2013-10-17 08:44:11 ----A---- C:\Windows\SYSWOW64\wiaacmgr.exe
2013-10-17 08:44:11 ----A---- C:\Windows\SYSWOW64\srmstormod.dll
2013-10-17 08:44:11 ----A---- C:\Windows\SYSWOW64\srmshell.dll
2013-10-17 08:44:11 ----A---- C:\Windows\SYSWOW64\srmscan.dll
2013-10-17 08:44:11 ----A---- C:\Windows\SYSWOW64\srmclient.dll
2013-10-17 08:44:11 ----A---- C:\Windows\SYSWOW64\setupapi.dll
2013-10-17 08:44:11 ----A---- C:\Windows\SYSWOW64\MP4SDECD.DLL
2013-10-17 08:44:11 ----A---- C:\Windows\SYSWOW64\adrclient.dll
2013-10-17 08:44:11 ----A---- C:\Windows\system32\WSDMon.dll
2013-10-17 08:44:11 ----A---- C:\Windows\system32\wiaacmgr.exe
2013-10-17 08:44:11 ----A---- C:\Windows\system32\srmshell.dll
2013-10-17 08:44:11 ----A---- C:\Windows\system32\srmscan.dll
2013-10-17 08:44:11 ----A---- C:\Windows\system32\srmclient.dll
2013-10-17 08:44:11 ----A---- C:\Windows\system32\ncbservice.dll
2013-10-17 08:44:11 ----A---- C:\Windows\system32\MP4SDECD.DLL
2013-10-17 08:44:11 ----A---- C:\Windows\system32\lsm.dll
2013-10-17 08:44:11 ----A---- C:\Windows\system32\iphlpsvc.dll
2013-10-17 08:44:11 ----A---- C:\Windows\system32\inetpp.dll
2013-10-17 08:44:11 ----A---- C:\Windows\system32\drivers\partmgr.sys
2013-10-17 08:44:11 ----A---- C:\Windows\system32\drivers\msgpiowin32.sys
2013-10-17 08:44:11 ----A---- C:\Windows\system32\adrclient.dll
2013-10-17 08:44:10 ----A---- C:\Windows\SYSWOW64\srmtrace.dll
2013-10-17 08:44:10 ----A---- C:\Windows\SYSWOW64\srm_ps.dll
2013-10-17 08:44:10 ----A---- C:\Windows\SYSWOW64\srm.dll
2013-10-17 08:44:10 ----A---- C:\Windows\system32\srmtrace.dll
2013-10-17 08:44:10 ----A---- C:\Windows\system32\srm_ps.dll
2013-10-17 08:44:10 ----A---- C:\Windows\system32\srm.dll
2013-10-17 08:44:10 ----A---- C:\Windows\system32\keepaliveprovider.dll
2013-10-17 08:44:10 ----A---- C:\Windows\system32\httpprxp.dll
2013-10-17 08:44:10 ----A---- C:\Windows\system32\httpprxm.dll
2013-10-17 08:44:10 ----A---- C:\Windows\system32\adhsvc.dll
2013-10-17 08:44:10 ----A---- C:\Windows\system32\adhapi.dll
2013-10-17 08:43:44 ----A---- C:\Windows\system32\drivers\WdFilter.sys
2013-10-17 08:43:44 ----A---- C:\Windows\system32\drivers\WdBoot.sys
2013-10-17 08:43:42 ----A---- C:\Windows\SYSWOW64\synceng.dll
2013-10-17 08:43:42 ----A---- C:\Windows\system32\synceng.dll
2013-10-17 08:43:23 ----A---- C:\Windows\system32\sppsvc.exe
2013-10-17 08:43:22 ----A---- C:\Windows\system32\wuaueng.dll
2013-10-17 08:43:21 ----A---- C:\Windows\system32\WSService.dll
2013-10-17 08:43:21 ----A---- C:\Windows\system32\NotificationUI.exe
2013-10-17 08:43:20 ----A---- C:\Windows\system32\sppobjs.dll
2013-10-17 08:43:18 ----A---- C:\Windows\system32\wuapi.dll
2013-10-17 08:43:18 ----A---- C:\Windows\system32\WSShared.dll
2013-10-17 08:43:18 ----A---- C:\Windows\system32\WinSetupUI.dll
2013-10-17 08:43:17 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2013-10-17 08:43:17 ----A---- C:\Windows\SYSWOW64\WSShared.dll
2013-10-17 08:43:17 ----A---- C:\Windows\SYSWOW64\sppc.dll
2013-10-17 08:43:17 ----A---- C:\Windows\system32\wucltux.dll
2013-10-17 08:43:17 ----A---- C:\Windows\system32\sppwinob.dll
2013-10-17 08:43:17 ----A---- C:\Windows\system32\sppc.dll
2013-10-17 08:43:16 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2013-10-17 08:43:16 ----A---- C:\Windows\SYSWOW64\wups.dll
2013-10-17 08:43:16 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2013-10-17 08:43:16 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2013-10-17 08:43:16 ----A---- C:\Windows\SYSWOW64\WSSync.dll
2013-10-17 08:43:16 ----A---- C:\Windows\SYSWOW64\WSClient.dll
2013-10-17 08:43:16 ----A---- C:\Windows\SYSWOW64\Windows.ApplicationModel.Store.dll
2013-10-17 08:43:16 ----A---- C:\Windows\system32\wuwebv.dll
2013-10-17 08:43:16 ----A---- C:\Windows\system32\WUSettingsProvider.dll
2013-10-17 08:43:16 ----A---- C:\Windows\system32\wups2.dll
2013-10-17 08:43:16 ----A---- C:\Windows\system32\wups.dll
2013-10-17 08:43:16 ----A---- C:\Windows\system32\wudriver.dll
2013-10-17 08:43:16 ----A---- C:\Windows\system32\wuauclt.exe
2013-10-17 08:43:16 ----A---- C:\Windows\system32\wuapp.exe
2013-10-17 08:43:16 ----A---- C:\Windows\system32\WSSync.dll
2013-10-17 08:43:16 ----A---- C:\Windows\system32\WSClient.dll
2013-10-17 08:43:16 ----A---- C:\Windows\system32\Windows.ApplicationModel.Store.dll
2013-10-17 08:43:16 ----A---- C:\Windows\system32\storewuauth.dll
2013-10-17 08:43:16 ----A---- C:\Windows\system32\drivers\dam.sys
2013-10-17 08:43:15 ----A---- C:\Windows\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2013-10-17 08:43:15 ----A---- C:\Windows\SYSWOW64\setupcln.dll
2013-10-17 08:43:15 ----A---- C:\Windows\SYSWOW64\OEMLicense.dll
2013-10-17 08:43:15 ----A---- C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2013-10-17 08:43:15 ----A---- C:\Windows\system32\setupcln.dll
2013-10-17 08:43:15 ----A---- C:\Windows\system32\OEMLicense.dll
2013-10-17 08:42:22 ----A---- C:\Windows\system32\drivers\WdfLdr.sys
2013-10-17 08:42:22 ----A---- C:\Windows\system32\drivers\Wdf01000.sys
2013-10-17 08:42:22 ----A---- C:\Windows\system32\drivers\usbvideo.sys
2013-10-17 08:42:22 ----A---- C:\Windows\system32\drivers\usbcir.sys
2013-10-17 08:42:21 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2013-10-17 08:42:21 ----A---- C:\Windows\system32\rpcrt4.dll
2013-10-17 08:42:16 ----A---- C:\Windows\SYSWOW64\comctl32.dll
2013-10-17 08:42:16 ----A---- C:\Windows\system32\comctl32.dll
2013-10-17 08:41:20 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2013-10-17 08:41:07 ----A---- C:\Windows\system32\drivers\usbprint.sys
2013-10-17 08:41:07 ----A---- C:\Windows\system32\drivers\hidusb.sys
2013-10-17 08:41:07 ----A---- C:\Windows\system32\drivers\hidparse.sys
2013-10-17 08:41:07 ----A---- C:\Windows\system32\drivers\hidclass.sys
2013-10-17 08:40:16 ----A---- C:\Windows\SYSWOW64\cryptnet.dll
2013-10-17 08:40:16 ----A---- C:\Windows\SYSWOW64\certutil.exe
2013-10-17 08:40:16 ----A---- C:\Windows\system32\cryptnet.dll
2013-10-17 08:40:16 ----A---- C:\Windows\system32\certutil.exe
2013-10-17 08:40:06 ----A---- C:\Windows\system32\drivers\FWPKCLNT.SYS
2013-10-17 08:39:22 ----A---- C:\Windows\SYSWOW64\qedit.dll
2013-10-17 08:39:22 ----A---- C:\Windows\system32\qedit.dll
2013-10-17 08:39:21 ----A---- C:\Windows\system32\mshtml.dll
2013-10-17 08:39:07 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2013-10-17 08:38:52 ----A---- C:\Windows\system32\ieframe.dll
2013-10-17 08:38:51 ----A---- C:\Windows\system32\jscript9.dll
2013-10-17 08:38:50 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2013-10-17 08:38:47 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2013-10-17 08:38:47 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2013-10-17 08:38:47 ----A---- C:\Windows\system32\iertutil.dll
2013-10-17 08:38:46 ----A---- C:\Windows\system32\wininet.dll
2013-10-17 08:38:45 ----A---- C:\Windows\SYSWOW64\wininet.dll
2013-10-17 08:38:44 ----A---- C:\Windows\system32\uxtheme.dll
2013-10-17 08:38:44 ----A---- C:\Windows\system32\urlmon.dll
2013-10-17 08:38:43 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2013-10-17 08:38:43 ----A---- C:\Windows\system32\jscript.dll
2013-10-17 08:38:42 ----A---- C:\Windows\SYSWOW64\uxtheme.dll
2013-10-17 08:38:42 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2013-10-17 08:38:42 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2013-10-17 08:38:42 ----A---- C:\Windows\SYSWOW64\jscript.dll
2013-10-17 08:38:42 ----A---- C:\Windows\SYSWOW64\iesysprep.dll
2013-10-17 08:38:42 ----A---- C:\Windows\system32\msfeeds.dll
2013-10-17 08:38:41 ----A---- C:\Windows\SYSWOW64\UXInit.dll
2013-10-17 08:38:41 ----A---- C:\Windows\SYSWOW64\ncryptsslp.dll
2013-10-17 08:38:41 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2013-10-17 08:38:41 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2013-10-17 08:38:41 ----A---- C:\Windows\system32\UXInit.dll
2013-10-17 08:38:41 ----A---- C:\Windows\system32\ncryptsslp.dll
2013-10-17 08:38:41 ----A---- C:\Windows\system32\jsproxy.dll
2013-10-17 08:38:41 ----A---- C:\Windows\system32\iesysprep.dll
2013-10-17 08:38:41 ----A---- C:\Windows\system32\iesetup.dll
2013-10-17 08:38:41 ----A---- C:\Windows\system32\iernonce.dll
2013-10-17 08:38:41 ----A---- C:\Windows\system32\ie4uinit.exe
2013-10-17 08:35:33 ----A---- C:\Windows\SYSWOW64\ReAgentc.exe
2013-10-17 08:35:33 ----A---- C:\Windows\SYSWOW64\msmpeg2vdec.dll
2013-10-17 08:35:33 ----A---- C:\Windows\system32\ReAgentc.exe
2013-10-17 08:35:33 ----A---- C:\Windows\system32\msmpeg2vdec.dll
2013-10-17 08:34:45 ----A---- C:\Windows\system32\drivers\USBXHCI.SYS
2013-10-17 08:34:45 ----A---- C:\Windows\system32\drivers\usbport.sys
2013-10-17 08:34:45 ----A---- C:\Windows\system32\drivers\USBHUB3.SYS
2013-10-17 08:34:45 ----A---- C:\Windows\system32\drivers\usbhub.sys
2013-10-17 08:34:45 ----A---- C:\Windows\system32\drivers\UCX01000.SYS
2013-10-17 08:34:44 ----A---- C:\Windows\system32\drivers\usbuhci.sys
2013-10-17 08:34:44 ----A---- C:\Windows\system32\drivers\usbohci.sys
2013-10-17 08:34:44 ----A---- C:\Windows\system32\drivers\usbehci.sys
2013-10-17 08:34:44 ----A---- C:\Windows\system32\drivers\usbd.sys
2013-10-17 08:34:44 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2013-10-17 08:34:35 ----A---- C:\Windows\SYSWOW64\DWrite.dll
2013-10-17 08:34:35 ----A---- C:\Windows\system32\DWrite.dll
2013-10-17 08:34:27 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2013-10-17 08:34:27 ----A---- C:\Windows\system32\WMVDECOD.DLL
2013-10-17 08:34:19 ----A---- C:\Windows\system32\tssdisai.dll
2013-10-17 08:34:18 ----A---- C:\Windows\SYSWOW64\poqexec.exe
2013-10-17 08:34:18 ----A---- C:\Windows\system32\VmHostAI.dll
2013-10-17 08:34:18 ----A---- C:\Windows\system32\RDWebAI.dll
2013-10-17 08:34:18 ----A---- C:\Windows\system32\poqexec.exe
2013-10-17 08:34:18 ----A---- C:\Windows\system32\appserverai.dll
2013-10-17 08:34:14 ----A---- C:\Windows\system32\win32k.sys
2013-10-17 08:34:14 ----A---- C:\Windows\system32\pcasvc.dll
2013-10-17 08:34:14 ----A---- C:\Windows\system32\pcalua.exe
2013-10-17 08:34:14 ----A---- C:\Windows\system32\pcaevts.dll
2013-10-17 08:34:14 ----A---- C:\Windows\system32\pcadm.dll
2013-10-17 08:34:12 ----A---- C:\Windows\SYSWOW64\msxml6r.dll
2013-10-17 08:34:12 ----A---- C:\Windows\SYSWOW64\msxml6.dll
2013-10-17 08:34:12 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2013-10-17 08:34:12 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2013-10-17 08:34:12 ----A---- C:\Windows\system32\msxml6r.dll
2013-10-17 08:34:12 ----A---- C:\Windows\system32\msxml6.dll
2013-10-17 08:34:12 ----A---- C:\Windows\system32\msxml3.dll
2013-10-17 08:34:11 ----A---- C:\Windows\SYSWOW64\dpnsvr.exe
2013-10-17 08:34:11 ----A---- C:\Windows\SYSWOW64\dpnlobby.dll
2013-10-17 08:34:11 ----A---- C:\Windows\SYSWOW64\dpnhupnp.dll
2013-10-17 08:34:11 ----A---- C:\Windows\SYSWOW64\dpnhpast.dll
2013-10-17 08:34:11 ----A---- C:\Windows\SYSWOW64\dpnet.dll
2013-10-17 08:34:11 ----A---- C:\Windows\SYSWOW64\dpnathlp.dll
2013-10-17 08:34:11 ----A---- C:\Windows\system32\msxml3r.dll
2013-10-17 08:34:11 ----A---- C:\Windows\system32\dpnsvr.exe
2013-10-17 08:34:11 ----A---- C:\Windows\system32\dpnlobby.dll
2013-10-17 08:34:11 ----A---- C:\Windows\system32\dpnhupnp.dll
2013-10-17 08:34:11 ----A---- C:\Windows\system32\dpnhpast.dll
2013-10-17 08:34:11 ----A---- C:\Windows\system32\dpnet.dll
2013-10-17 08:34:11 ----A---- C:\Windows\system32\dpnathlp.dll
2013-10-17 08:34:11 ----A---- C:\Windows\system32\dpnaddr.dll
2013-10-17 08:34:10 ----A---- C:\Windows\SYSWOW64\dpnaddr.dll
2013-10-17 08:33:23 ----A---- C:\Windows\SYSWOW64\duser.dll
2013-10-17 08:33:23 ----A---- C:\Windows\system32\wlroamextension.dll
2013-10-17 08:33:23 ----A---- C:\Windows\system32\duser.dll
2013-10-17 08:33:22 ----A---- C:\Windows\SYSWOW64\wlroamextension.dll
2013-10-17 08:33:22 ----A---- C:\Windows\SYSWOW64\Windows.Networking.Connectivity.dll
2013-10-17 08:33:22 ----A---- C:\Windows\system32\WWanAPI.dll
2013-10-17 08:33:22 ----A---- C:\Windows\system32\Windows.Networking.Connectivity.dll
2013-10-17 08:33:22 ----A---- C:\Windows\system32\taskkill.exe
2013-10-17 08:33:22 ----A---- C:\Windows\system32\ncsi.dll
2013-10-17 08:33:22 ----A---- C:\Windows\system32\hotspotauth.dll
2013-10-17 08:33:22 ----A---- C:\Windows\system32\drivers\ntfs.sys
2013-10-17 08:33:22 ----A---- C:\Windows\system32\drivers\ks.sys
2013-10-17 08:33:21 ----A---- C:\Windows\SYSWOW64\WWanAPI.dll
2013-10-17 08:33:21 ----A---- C:\Windows\SYSWOW64\tasklist.exe
2013-10-17 08:33:21 ----A---- C:\Windows\SYSWOW64\taskkill.exe
2013-10-17 08:33:21 ----A---- C:\Windows\SYSWOW64\nlaapi.dll
2013-10-17 08:33:21 ----A---- C:\Windows\system32\wpd_ci.dll
2013-10-17 08:33:21 ----A---- C:\Windows\system32\wersvc.dll
2013-10-17 08:33:21 ----A---- C:\Windows\system32\tasklist.exe
2013-10-17 08:33:21 ----A---- C:\Windows\system32\nlasvc.dll
2013-10-17 08:33:21 ----A---- C:\Windows\system32\nlaapi.dll
2013-10-17 08:33:21 ----A---- C:\Windows\system32\drivers\crashdmp.sys
2013-10-17 08:33:21 ----A---- C:\Windows\system32\drivers\BthhfHid.sys
2013-10-17 08:33:21 ----A---- C:\Windows\system32\drivers\BtaMPM.sys
2013-10-17 08:33:18 ----A---- C:\Windows\SYSWOW64\crypt32.dll
2013-10-17 08:33:18 ----A---- C:\Windows\system32\crypt32.dll
2013-10-17 08:33:17 ----A---- C:\Windows\SYSWOW64\wintrust.dll
2013-10-17 08:33:17 ----A---- C:\Windows\SYSWOW64\apprepsync.dll
2013-10-17 08:33:17 ----A---- C:\Windows\SYSWOW64\apprepapi.dll
2013-10-17 08:33:17 ----A---- C:\Windows\system32\wintrust.dll
2013-10-17 08:33:17 ----A---- C:\Windows\system32\cryptsvc.dll
2013-10-17 08:33:17 ----A---- C:\Windows\system32\apprepsync.dll
2013-10-17 08:33:17 ----A---- C:\Windows\system32\apprepapi.dll
2013-10-17 08:33:13 ----A---- C:\Windows\SYSWOW64\lpk.dll
2013-10-17 08:33:13 ----A---- C:\Windows\SYSWOW64\fontsub.dll
2013-10-17 08:33:13 ----A---- C:\Windows\SYSWOW64\dciman32.dll
2013-10-17 08:33:13 ----A---- C:\Windows\SYSWOW64\atmlib.dll
2013-10-17 08:33:13 ----A---- C:\Windows\SYSWOW64\atmfd.dll
2013-10-17 08:33:13 ----A---- C:\Windows\system32\lpk.dll
2013-10-17 08:33:13 ----A---- C:\Windows\system32\fontsub.dll
2013-10-17 08:33:13 ----A---- C:\Windows\system32\dciman32.dll
2013-10-17 08:33:13 ----A---- C:\Windows\system32\atmlib.dll
2013-10-17 08:33:13 ----A---- C:\Windows\system32\atmfd.dll
2013-10-17 08:33:12 ----A---- C:\Windows\system32\win32spl.dll
2013-10-17 08:33:12 ----A---- C:\Windows\system32\GdiPlus.dll
2013-10-17 08:33:12 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2013-10-17 08:33:12 ----A---- C:\Windows\system32\drivers\mrxsmb.sys
2013-10-17 08:33:11 ----A---- C:\Windows\SYSWOW64\GdiPlus.dll
2013-10-17 08:33:11 ----A---- C:\Windows\system32\drivers\usb8023.sys
2013-10-17 08:32:54 ----A---- C:\Windows\system32\drivers\http.sys
2013-10-17 08:32:34 ----A---- C:\Windows\SYSWOW64\cryptdlg.dll
2013-10-17 08:32:34 ----A---- C:\Windows\system32\cryptdlg.dll
2013-10-17 08:32:15 ----A---- C:\Windows\system32\consent.exe
2013-10-17 08:32:15 ----A---- C:\Windows\system32\appinfo.dll
2013-10-17 08:32:05 ----A---- C:\Windows\SYSWOW64\ReAgent.dll
2013-10-17 08:32:05 ----A---- C:\Windows\system32\sysreset.exe
2013-10-17 08:32:05 ----A---- C:\Windows\system32\resetengmig.dll
2013-10-17 08:32:05 ----A---- C:\Windows\system32\reseteng.dll
2013-10-17 08:32:05 ----A---- C:\Windows\system32\ReAgent.dll
2013-10-17 08:32:04 ----A---- C:\Windows\SYSWOW64\esent.dll
2013-10-17 08:32:04 ----A---- C:\Windows\system32\esent.dll
2013-10-17 08:24:54 ----A---- C:\Windows\system32\netcfg-15537.txt
2013-10-17 07:26:16 ----A---- C:\Windows\system32\netcfg-151757.txt
2013-10-17 07:24:00 ----A---- C:\Windows\system32\netcfg-15444.txt
2013-10-17 07:20:36 ----A---- C:\Windows\system32\netcfg-429798.txt
2013-10-17 07:17:52 ----A---- C:\Windows\system32\netcfg-266106.txt
2013-10-17 07:17:52 ----A---- C:\Windows\system32\netcfg-266044.txt
2013-10-17 07:13:42 ----A---- C:\Windows\system32\netcfg-15865.txt
2013-10-17 07:13:14 ----A---- C:\Windows\system32\netcfg-1164188.txt
2013-10-17 06:54:05 ----A---- C:\Windows\system32\netcfg-15756.txt
2013-10-17 06:53:38 ----A---- C:\Windows\system32\netcfg-22225056.txt
2013-10-17 06:51:06 ----D---- C:\Windows\Panther
2013-10-17 00:43:29 ----A---- C:\Windows\system32\netcfg-15896.txt
2013-10-17 00:42:59 ----A---- C:\Windows\system32\netcfg-407615.txt
2013-10-17 00:38:10 ----D---- C:\Program Files (x86)\CCleaner
2013-10-17 00:36:28 ----A---- C:\Windows\system32\netcfg-16551.txt
2013-10-17 00:35:56 ----A---- C:\Windows\system32\netcfg-217824.txt
2013-10-17 00:32:37 ----A---- C:\Windows\system32\netcfg-19266.txt
2013-10-17 00:32:04 ----A---- C:\Windows\system32\netcfg-610728.txt
2013-10-17 00:22:26 ----A---- C:\Windows\system32\netcfg-31824.txt
2013-10-16 23:38:36 ----A---- C:\Windows\system32\netcfg-908674.txt
2013-10-16 23:26:16 ----D---- C:\Users\monika\AppData\Roaming\Macromedia
2013-10-16 23:23:49 ----A---- C:\Windows\system32\netcfg-21091.txt
2013-10-16 23:23:10 ----A---- C:\Windows\system32\netcfg-125580.txt
2013-10-16 23:21:25 ----A---- C:\Windows\system32\netcfg-20467.txt
2013-10-16 23:16:20 ----A---- C:\Windows\system32\netcfg-35537.txt
2013-10-16 23:16:09 ----A---- C:\Windows\system32\netcfg-24304.txt
2013-10-16 23:15:24 ----A---- C:\Windows\system32\netcfg-6371221.txt
2013-10-16 22:58:34 ----D---- C:\ProgramData\STORMWARE
2013-10-16 22:57:16 ----A---- C:\Windows\SYSWOW64\msvcr100.dll
2013-10-16 22:57:16 ----A---- C:\Windows\SYSWOW64\mfc100.dll
2013-10-16 22:15:39 ----D---- C:\ProgramData\ESET
2013-10-16 22:15:39 ----D---- C:\Program Files\ESET
2013-10-16 22:12:39 ----A---- C:\Windows\system32\netcfg-2606636.txt
2013-10-16 21:58:51 ----A---- C:\Windows\system32\netcfg-1777958.txt
2013-10-16 21:58:27 ----A---- C:\Windows\system32\netcfg-1754059.txt
2013-10-16 21:58:10 ----A---- C:\Windows\system32\netcfg-1737788.txt
2013-10-16 21:53:18 ----A---- C:\Windows\system32\netcfg-1445006.txt
2013-10-16 21:53:17 ----A---- C:\Windows\system32\netcfg-1444132.txt
2013-10-16 21:51:50 ----A---- C:\Windows\system32\netcfg-1357302.txt
2013-10-16 21:51:50 ----A---- C:\Windows\system32\netcfg-1356881.txt
2013-10-16 21:50:47 ----A---- C:\Windows\system32\netcfg-1293841.txt
2013-10-16 21:50:44 ----A---- C:\Windows\system32\netcfg-1291391.txt
2013-10-16 21:47:10 ----A---- C:\Windows\system32\netcfg-1077530.txt
2013-10-16 21:47:08 ----A---- C:\Windows\system32\netcfg-1074862.txt
2013-10-16 20:57:05 ----D---- C:\Users\monika\AppData\Roaming\Adobe
2013-10-16 20:56:26 ----D---- C:\ProgramData\PRICache
2013-10-16 20:56:19 ----SD---- C:\Users\monika\AppData\Roaming\Microsoft
2013-10-16 20:56:18 ----D---- C:\Windows\CSC
2013-10-16 20:56:15 ----D---- C:\Windows\SoftwareDistribution
2013-10-16 20:55:40 ----A---- C:\Windows\system32\netcfg-68936.txt
2013-10-16 20:54:59 ----SHD---- C:\Recovery
2013-10-16 20:54:38 ----ASH---- C:\hiberfil.sys
2013-10-16 20:52:41 ----A---- C:\Windows\system32\netcfg-78889.txt
2013-10-16 20:52:41 ----A---- C:\Windows\system32\netcfg-78234.txt
2013-10-16 20:52:34 ----A---- C:\Windows\system32\atiicdxx.dat
2013-10-16 20:52:25 ----A---- C:\Windows\system32\netcfg-62010.txt
2013-10-16 20:52:24 ----A---- C:\Windows\system32\netcfg-61479.txt
2013-10-16 20:52:22 ----A---- C:\Windows\system32\netcfg-59155.txt
2013-10-16 20:52:20 ----A---- C:\Windows\system32\netcfg-57423.txt
2013-10-16 20:52:20 ----A---- C:\Windows\system32\netcfg-57189.txt
2013-10-16 20:52:20 ----A---- C:\Windows\system32\netcfg-56955.txt
2013-10-16 20:52:19 ----A---- C:\Windows\system32\netcfg-56690.txt
2013-10-16 20:52:19 ----A---- C:\Windows\system32\netcfg-55957.txt
2013-10-16 20:52:18 ----A---- C:\Windows\system32\netcfg-55645.txt
2013-10-16 20:52:18 ----A---- C:\Windows\system32\netcfg-55489.txt
2013-10-16 20:52:18 ----A---- C:\Windows\system32\netcfg-55208.txt
2013-10-16 20:52:17 ----A---- C:\Windows\system32\netcfg-54912.txt
2013-10-16 20:52:17 ----A---- C:\Windows\system32\netcfg-54600.txt
2013-10-16 20:52:12 ----D---- C:\Windows\Prefetch
2013-10-16 20:51:32 ----ASH---- C:\swapfile.sys
2013-10-16 20:51:32 ----ASH---- C:\pagefile.sys
2013-10-16 20:51:30 ----SHD---- C:\System Volume Information
======List of files/folders modified in the last 1 month======
2013-10-21 22:21:21 ----D---- C:\Windows\Temp
2013-10-21 22:19:30 ----RD---- C:\Windows\System32
2013-10-21 22:18:02 ----RD---- C:\Program Files
2013-10-21 22:11:48 ----D---- C:\Windows\system32\sru
2013-10-20 15:14:21 ----D---- C:\Windows\Inf
2013-10-20 15:14:21 ----A---- C:\Windows\system32\PerfStringBackup.INI
2013-10-20 15:10:35 ----SHD---- C:\Windows\Installer
2013-10-20 15:10:29 ----RD---- C:\Program Files (x86)
2013-10-20 15:10:29 ----D---- C:\Program Files (x86)\Common Files
2013-10-20 15:10:28 ----D---- C:\Windows\SysWOW64
2013-10-20 14:16:05 ----D---- C:\Windows\system32\Drivers
2013-10-20 13:39:12 ----HD---- C:\ProgramData
2013-10-20 13:30:30 ----D---- C:\Windows\system32\DriverStore
2013-10-20 09:57:25 ----D---- C:\Windows\Microsoft.NET
2013-10-19 07:40:50 ----D---- C:\Windows\Logs
2013-10-18 20:13:31 ----D---- C:\Windows\system32\Tasks
2013-10-18 20:10:47 ----D---- C:\Windows\system32\config
2013-10-18 20:08:49 ----SHD---- C:\$Recycle.Bin
2013-10-18 20:07:26 ----RD---- C:\Users
2013-10-18 20:06:01 ----D---- C:\Windows\WinSxS
2013-10-18 20:03:38 ----D---- C:\Windows\system32\Boot
2013-10-18 20:03:38 ----D---- C:\Windows
2013-10-18 20:03:34 ----D---- C:\Windows\SYSWOW64\wbem
2013-10-18 20:03:34 ----D---- C:\Windows\system32\wbem
2013-10-18 20:03:31 ----D---- C:\Windows\SYSWOW64\en-US
2013-10-18 20:03:29 ----D---- C:\Windows\PolicyDefinitions
2013-10-18 20:03:28 ----D---- C:\Windows\system32\en-US
2013-10-18 20:03:22 ----RSD---- C:\Windows\Fonts
2013-10-18 20:03:21 ----RD---- C:\Windows\ToastData
2013-10-18 20:03:03 ----D---- C:\Program Files\Windows Media Player
2013-10-18 20:03:03 ----D---- C:\Program Files (x86)\Windows Media Player
2013-10-18 20:02:54 ----RD---- C:\Windows\ImmersiveControlPanel
2013-10-18 20:02:53 ----D---- C:\Windows\system32\oobe
2013-10-18 20:02:43 ----D---- C:\Windows\apppatch
2013-10-18 20:00:51 ----D---- C:\Windows\CbsTemp
2013-10-18 19:25:26 ----D---- C:\Windows\system32\catroot2
2013-10-17 09:30:28 ----D---- C:\Windows\servicing
2013-10-17 09:27:20 ----D---- C:\Windows\SYSWOW64\migration
2013-10-17 09:27:20 ----D---- C:\Windows\system32\migration
2013-10-17 09:27:19 ----D---- C:\Program Files\Common Files\microsoft shared
2013-10-17 09:27:17 ----D---- C:\Program Files\Windows Defender
2013-10-17 09:27:15 ----D---- C:\Program Files (x86)\Windows Defender
2013-10-17 09:27:13 ----D---- C:\Windows\WinStore
2013-10-17 09:27:06 ----D---- C:\Program Files\Windows Journal
2013-10-17 09:26:55 ----D---- C:\Program Files (x86)\Internet Explorer
2013-10-17 09:26:51 ----D---- C:\Program Files\Internet Explorer
2013-10-17 09:26:00 ----D---- C:\Windows\SYSWOW64\Dism
2013-10-17 09:26:00 ----D---- C:\Program Files\Windows Photo Viewer
2013-10-17 09:26:00 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2013-10-17 09:25:58 ----D---- C:\Windows\system32\Dism
2013-10-17 09:24:39 ----D---- C:\Windows\system32\drivers\UMDF
2013-10-17 09:11:08 ----HD---- C:\Program Files\WindowsApps
2013-10-17 08:59:56 ----D---- C:\Windows\AUInstallAgent
2013-10-17 08:50:52 ----SD---- C:\ProgramData\Microsoft
2013-10-17 06:55:10 ----D---- C:\Windows\system32\wdi
2013-10-17 00:38:35 ----D---- C:\Windows\debug
2013-10-16 22:58:15 ----D---- C:\Windows\system32\restore
2013-10-16 22:38:47 ----D---- C:\Windows\rescache
2013-10-16 21:04:34 ----D---- C:\Windows\system32\CodeIntegrity
2013-10-16 20:54:59 ----D---- C:\Windows\system32\Recovery
2013-10-02 03:38:13 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 ACPI;@acpi.inf,%ACPI.SvcDesc%;Microsoft ACPI Driver; C:\Windows\System32\drivers\ACPI.sys [2012-09-20 425192]
R0 acpiex;Microsoft ACPIEx Driver; C:\Windows\System32\Drivers\acpiex.sys [2012-07-26 77040]
R0 CLFS;@%SystemRoot%\system32\drivers\clfs.sys,-100; C:\Windows\System32\drivers\CLFS.sys [2012-07-26 361200]
R0 CNG;CNG; C:\Windows\System32\Drivers\cng.sys [2012-10-11 562392]
R0 disk;@disk.inf,%disk_ServiceDesc%;Disk Driver; C:\Windows\System32\drivers\disk.sys [2012-07-26 102640]
R0 edevmon;edevmon; C:\Windows\system32\DRIVERS\edevmon.sys [2013-09-16 239296]
R0 EhStorClass;@%SystemRoot%\system32\drivers\EhStorClass.sys,-100; C:\Windows\System32\drivers\EhStorClass.sys [2012-07-26 81136]
R0 FileInfo;@%SystemRoot%\system32\drivers\fileinfo.sys,-100; C:\Windows\System32\drivers\fileinfo.sys [2012-07-26 71920]
R0 FltMgr;@%SystemRoot%\system32\drivers\fltmgr.sys,-10001; C:\Windows\system32\drivers\fltmgr.sys [2012-07-26 374512]
R0 fvevol;@%SystemRoot%\system32\drivers\fvevol.sys,-100; C:\Windows\System32\DRIVERS\fvevol.sys [2012-09-20 465128]
R0 KSecDD;KSecDD; C:\Windows\System32\Drivers\ksecdd.sys [2012-09-20 100072]
R0 KSecPkg;KSecPkg; C:\Windows\System32\Drivers\ksecpkg.sys [2012-10-11 172264]
R0 mountmgr;@%SystemRoot%\system32\drivers\mountmgr.sys,-100; C:\Windows\System32\drivers\mountmgr.sys [2012-07-26 93936]
R0 msisadrv;msisadrv; C:\Windows\System32\drivers\msisadrv.sys [2012-07-26 17136]
R0 Mup;@%systemroot%\system32\drivers\mup.sys,-101; C:\Windows\System32\Drivers\mup.sys [2012-07-26 83696]
R0 NDIS;@%SystemRoot%\system32\drivers\ndis.sys,-200; C:\Windows\system32\drivers\ndis.sys [2013-06-17 997632]
R0 partmgr;@%SystemRoot%\system32\drivers\partmgr.sys,-100; C:\Windows\System32\drivers\partmgr.sys [2013-01-10 91880]
R0 pci;@machine.inf,%pci_svcdesc%;PCI Bus Driver; C:\Windows\System32\drivers\pci.sys [2012-07-26 234224]
R0 pcw;Performance Counters for Windows Driver; C:\Windows\System32\drivers\pcw.sys [2012-07-26 52464]
R0 pdc;@%SystemRoot%\system32\drivers\pdc.sys,-100; C:\Windows\system32\drivers\pdc.sys [2013-03-02 69864]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2012-07-26 217328]
R0 spaceport;@spaceport.inf,%Spaceport_ServiceDesc%;Storage Spaces Driver; C:\Windows\System32\drivers\spaceport.sys [2013-05-04 284416]
R0 storahci;@mshdc.inf,%storahci_ServiceDescription%;Microsoft Standard SATA AHCI Driver; C:\Windows\System32\drivers\storahci.sys [2013-03-02 77544]
R0 Tcpip;@%SystemRoot%\system32\tcpipcfg.dll,-50003; C:\Windows\System32\drivers\tcpip.sys [2013-08-01 2233688]
R0 vdrvroot;@vdrvroot.inf,%vdrvroot_svcdesc%;Microsoft Virtual Drive Enumerator; C:\Windows\System32\drivers\vdrvroot.sys [2012-07-26 36080]
R0 volmgr;@volmgr.inf,%volmgr_svcdesc%;Volume Manager Driver; C:\Windows\System32\drivers\volmgr.sys [2012-07-26 83184]
R0 volmgrx;@%SystemRoot%\system32\drivers\volmgrx.sys,-100; C:\Windows\System32\drivers\volmgrx.sys [2012-07-26 378608]
R0 volsnap;@volume.inf,%VolumeClassName%;Storage volumes; C:\Windows\System32\drivers\volsnap.sys [2013-06-01 327936]
R0 Wdf01000;@%SystemRoot%\system32\drivers\Wdf01000.sys,-1000; C:\Windows\system32\drivers\Wdf01000.sys [2013-06-22 785624]
R0 WFPLWFS;@%SystemRoot%\System32\drivers\wfplwfs.sys,-6000; C:\Windows\system32\DRIVERS\wfplwfs.sys [2013-06-10 96512]
R1 AFD;@%systemroot%\system32\drivers\afd.sys,-1000; C:\Windows\system32\drivers\afd.sys [2012-11-06 560640]
R1 BasicDisplay;BasicDisplay; C:\Windows\System32\drivers\BasicDisplay.sys [2012-07-26 48640]
R1 BasicRender;BasicRender; C:\Windows\System32\drivers\BasicRender.sys [2012-07-26 29696]
R1 Beep;Beep; C:\Windows\system32\drivers\Beep.sys [2012-07-26 7680]
R1 cdrom;@cdrom.inf,%cdrom_ServiceDesc%;CD-ROM Driver; C:\Windows\System32\drivers\cdrom.sys [2012-07-26 174080]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2012-09-20 571392]
R1 Dfsc;@%systemroot%\system32\wkssvc.dll,-1008; C:\Windows\System32\Drivers\dfsc.sys [2012-07-26 118784]
R1 discache;@%systemroot%\system32\drivers\discache.sys,-102; C:\Windows\System32\drivers\discache.sys [2012-07-26 50688]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2013-09-16 239320]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2013-09-16 168256]
R1 Msfs;Msfs; C:\Windows\system32\drivers\Msfs.sys [2012-07-26 26112]
R1 mssmbios;@mssmbios.inf,%mssmbios_svcdesc%;Microsoft System Management BIOS Driver; C:\Windows\System32\drivers\mssmbios.sys [2012-07-26 37616]
R1 NetBIOS;@netnb.inf,%NetBIOS_Desc%;NetBIOS Interface; C:\Windows\system32\DRIVERS\netbios.sys [2012-07-26 46080]
R1 NetBT;@%SystemRoot%\system32\drivers\netbt.sys,-2; C:\Windows\System32\DRIVERS\netbt.sys [2012-07-26 331776]
R1 Npfs;Npfs; C:\Windows\system32\drivers\Npfs.sys [2012-07-26 49152]
R1 npsvctrig;@npsvctrig.inf,%NPSVCTRIG.SvcDisplayName%;Named pipe service trigger provider; C:\Windows\System32\drivers\npsvctrig.sys [2012-07-26 23552]
R1 nsiproxy;@%SystemRoot%\system32\drivers\nsiproxy.sys,-2; C:\Windows\system32\drivers\nsiproxy.sys [2012-07-26 34304]
R1 Null;Null; C:\Windows\system32\drivers\Null.sys [2012-07-26 5632]
R1 Psched;@%SystemRoot%\System32\drivers\pacer.sys,-101; C:\Windows\system32\DRIVERS\pacer.sys [2012-07-26 145408]
R1 rdbss;@%systemroot%\system32\wkssvc.dll,-1000; C:\Windows\system32\DRIVERS\rdbss.sys [2013-05-04 427520]
R1 tdx;@%SystemRoot%\system32\tcpipcfg.dll,-50004; C:\Windows\system32\DRIVERS\tdx.sys [2012-07-26 117248]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\Windows\system32\DRIVERS\vwififlt.sys [2012-07-26 64000]
R1 Wanarpv6;@%systemroot%\system32\rascfg.dll,-32012; C:\Windows\system32\DRIVERS\wanarp.sys [2013-04-09 83456]
R2 epfwwfpr;epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [2013-09-16 157432]
R2 lltdio;@%SystemRoot%\system32\lltdres.dll,-6; C:\Windows\system32\DRIVERS\lltdio.sys [2012-07-26 60416]
R2 luafv;@%systemroot%\system32\drivers\luafv.sys,-100; C:\Windows\system32\drivers\luafv.sys [2012-07-26 134144]
R2 NativeWifiP;@%SystemRoot%\System32\drivers\nwifi.sys,-101; C:\Windows\system32\DRIVERS\nwifi.sys [2012-07-26 427520]
R2 Ndu;@%SystemRoot%\system32\drivers\Ndu.sys,-10001; C:\Windows\system32\drivers\Ndu.sys [2012-07-26 97792]
R2 PEAUTH;PEAUTH; C:\Windows\system32\drivers\peauth.sys [2013-04-09 805376]
R2 rspndr;@%SystemRoot%\system32\lltdres.dll,-5; C:\Windows\system32\DRIVERS\rspndr.sys [2012-07-26 78848]
R2 secdrv;Security Driver; C:\Windows\system32\drivers\secdrv.sys [2012-07-26 23040]
R2 tcpipreg;TCP/IP Registry Compatibility; C:\Windows\System32\drivers\tcpipreg.sys [2012-07-26 45056]
R3 amdkmdag;amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [2012-07-26 11926528]
R3 amdkmdap;amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [2012-06-29 360448]
R3 AmdPPM;@cpu.inf,%AmdPPM.SvcDesc%;AMD Processor Driver; C:\Windows\System32\drivers\amdppm.sys [2012-11-06 88064]
R3 athr;@oem8.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\Windows\system32\DRIVERS\athw8x.sys [2013-08-22 3915264]
R3 bowser;@%systemroot%\system32\browser.dll,-102; C:\Windows\system32\DRIVERS\bowser.sys [2012-07-26 101888]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\Windows\System32\drivers\BthEnum.sys [2013-01-09 51712]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2012-07-26 119808]
R3 BTHUSB;@Bth.inf,%BTHUSB.SvcDesc%;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2013-01-09 74752]
R3 CmBatt;@cmbatt.inf,%CmBatt.SvcDesc%;Microsoft ACPI Control Method Battery Driver; C:\Windows\System32\drivers\CmBatt.sys [2012-07-26 25600]
R3 CompositeBus;@CompositeBus.inf,%CompositeBus.SVCDESC%;Composite Bus Enumerator Driver; C:\Windows\System32\drivers\CompositeBus.sys [2012-07-26 36352]
R3 DXGKrnl;LDDM Graphics Subsystem; C:\Windows\System32\drivers\dxgkrnl.sys [2013-04-16 1455368]
R3 HdAudAddService;@hdaudio.inf,%UAAFunctionDriverForHdAudio.SvcDesc%;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2013-06-26 341504]
R3 HDAudBus;@hdaudbus.inf,%HDAudBus.SVCDESC%;Microsoft UAA Bus Driver for High Definition Audio; C:\Windows\System32\drivers\HDAudBus.sys [2012-09-20 71168]
R3 HTTP;@%SystemRoot%\system32\drivers\http.sys,-1; C:\Windows\system32\drivers\HTTP.sys [2013-03-15 861184]
R3 i8042prt;@msmouse.inf,%i8042prt.SvcDesc%;PS/2 Keyboard and Mouse Port Driver; C:\Windows\System32\drivers\i8042prt.sys [2012-07-26 112640]
R3 kbdclass;@keyboard.inf,%kbdclass.SvcDesc%;Keyboard Class Driver; C:\Windows\System32\drivers\kbdclass.sys [2012-07-26 48368]